Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
3016 articles · 159595 vulns · 36/41 feeds (7d)
589
+53 today
Exploited (7d)
265
+50 today
Critical (7d)
1636
CISA KEV
172
Pre-CVE
3016
+417 today
Articles (7d)

Threat Briefing

Global

Loading...

About Zero Day Monitor

Open-source vulnerability intelligence for security teams. The platform scans 41 security feeds, analyzes articles with AI, and surfaces the threats that matter. Track trending CVEs, discover zero-days before they get a CVE ID, and monitor your vendor stack for supply-chain risks.

Trending
Ranked by source count
Zero-Days
Pre-CVE detection
Verification
Community-driven
Open Source
AGPL-3.0 licensed
Learn more about the projectSign in for personalized features

Vulnerabilities

7.8
microsoft · CVE-2026-41091 — Microsoft Defender Elevation of Privilege VulnerabilityKEVEXPLOITEDPATCHED
malware_protection_engine· CVSS 7.8· CWE-59
149🔥
18 art.
0
May 20, 2026
7.8
microsoft · CVE-2026-33825 — Microsoft Defender Elevation of Privilege VulnerabilityKEVEXPLOITEDPATCHED
defender_antimalware_platform· CVSS 7.8· CWE-1220
149🔥
23 art.
0
Apr 14, 2026
7.9
linux · CVE-2026-43284 — xfrm: esp: avoid in-place decrypt on shared skb fragsKEVEXPLOITEDPATCHED
linux_kernel· CVSS 7.9· CWE-20
143🔥
37 art.
0
May 8, 2026
7.9
linux · CVE-2026-43500 — rxrpc: Also unshare DATA/RESPONSE packets when paged frags are presentKEVEXPLOITEDPATCHED
linux_kernel· CVSS 7.9· CWE-20
133🔥
21 art.
0
May 11, 2026
4.0
microsoft · CVE-2026-45498 — Microsoft Defender Denial of Service VulnerabilityKEVEXPLOITEDPATCHED
defender_antimalware_platform· CVSS 4.0· CWE-400
133🔥
11 art.
0
May 20, 2026
9.8
burst statistics · CVE-2026-8181 — Burst Statistics 3.4.0 - 3.4.1.1 - Authentication Bypass to Admin Account TakeoverKEVEXPLOITED
burst statistics – privacy-friendly wordpress analytics (google analytics alternative)· CVSS 9.8· CWE-287
127🔥
4 art.
0
May 14, 2026
9.8
kirki · CVE-2026-8206 — Kirki 6.0.0 - 6.0.6 - Unauthenticated Privilege Escalation via 'handle_forgot_password'KEVEXPLOITED
kirki – freeform page builder, website builder & customizer· CVSS 9.8· CWE-269
124🔥
3 art.
0
Jun 2, 2026
9.8
microsoft · CVE-2026-41089 — Windows Netlogon Remote Code Execution VulnerabilityKEVEXPLOITEDPATCHED
windows_server_2012· CVSS 9.8· CWE-121
114🔥
12 art.
0
May 12, 2026
9.8
drupal · CVE-2026-9082 — Drupal core - Highly critical - SQL injection - SA-CORE-2026-004KEVEXPLOITEDPATCHED
drupal· CVSS 9.8· CWE-89
112🔥
15 art.
0
May 20, 2026
9.1
fortinet · CVE-2026-35616 — CVE-2026-35616: A improper access control vulnerability in Fortinet FortiClientEMS 7.4.5 through 7.4.6 may allow an unauthenticated attaKEVEXPLOITEDPATCHED
forticlientems· CVSS 9.1· CWE-284
103🔥
24 art.
0
Apr 4, 2026
→ View full list

Pre-CVE Events

View all
ZERO-DAYMalicious Code Injection via Axios npm Package Maintainer Account Takeover
axiosMEDIUM1 sourcesverified
ZERO-DAYADV990001 Latest Servicing Stack Updates
1 sourcesverified
Multiple Critical Vulnerabilities in VMware Tanzu Products
broadcomCRITICAL1 sources
Peer-to-Peer (P2P) Patch Distribution for Vulnerability Remediation
1 sources
AI Used to Decrypt Medieval Ciphers
1 sources

Latest news

View all
[B]microsoftCVE-2026-32201
Security Alert: Microsoft Releases April 2026 Security Updates
[B]adobe
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB25-119)
[B]microsoft
Security Alert: Microsoft Releases May 2026 Security Updates
[B]microsoft
Security Alert: Microsoft Releases March 2026 Security Updates
[B]adobe
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB26-44)
[B]microsoftCVE-2025-62221
Security Alert: Microsoft Releases December 2025 Security Updates
[B]trend microCVE-2026-34926
Security Alert: Alert Regarding Multiple Vulnerabilities in Trend Micro Products Including TrendAI Apex One
[B]adobeCVE-2026-27220
Security Alert: Alert Regarding Vulnerabilities in Adobe Acrobat and Reader (APSB26-26)