Complete index
Zero-Day Vulnerability Archive
Search all tracked zero-day vulnerabilities and narrow the results by year, vendor, software, weakness type, or presence in the CISA and ENISA known exploited vulnerability catalogs.
| CVE | Vendor / Product | Vulnerability | CWE | Discovered | KEV |
|---|---|---|---|---|---|
| CVE-2022-29499 | MitelMiVoice Connect | OS Command Injection in MiVoice Connect | CWE-78 | CISA KEVENISA KEV | |
| CVE-2022-30190 | MicrosoftMicrosoft Word | OS Command Injection in Microsoft Windows and Windows Server | CWE-78 | CISA KEVENISA KEV | |
| CVE-2022-24086 | AdobeAdobe Commerce (formerly Magento Commerce) | OS Command Injection in Adobe Commerce (formerly Magento Commerce) and Magento Open Source | CWE-78 | CISA KEVENISA KEV | |
| CVE-2012-2311 | PHP GroupPHP | OS command injection in PHP | CWE-78 | — | |
| CVE-2007-3896 | MicrosoftMicrosoft Windows | OS command injection in Microsoft Windows and Windows Server | CWE-78 | — | |
| CVE-2007-4925 | EWirePayment Client | OS command injection in Payment Client | CWE-78 | — |
Showing 21–26 of 26 results