Zero-Day Vulnerability Archive | Cybersecurity Help


Complete index

Zero-Day Vulnerability Archive

Search all tracked zero-day vulnerabilities and narrow the results by year, vendor, software, weakness type, or presence in the CISA and ENISA known exploited vulnerability catalogs.

Archive results

670 vulnerabilities found

Filtered zero-day vulnerability archive
CVEVendor / ProductVulnerabilityCWEDiscoveredKEV
CVE-2024-21338MicrosoftMicrosoft WindowsBuffer overflow in Microsoft Windows and Windows ServerCWE-119CISA KEVENISA KEV
CVE-2024-1709ConnectWiseScreenConnectAuthentication bypass using an alternate path or channel in ScreenConnectCWE-288CISA KEVENISA KEV
CVE-2024-21410MicrosoftMicrosoft Exchange ServerExposure of Resource to Wrong Sphere in Microsoft Exchange ServerCWE-668CISA KEVENISA KEV
CVE-2024-21412MicrosoftMicrosoft WindowsSecurity features bypass in Microsoft Windows and Windows ServerCWE-254CISA KEVENISA KEV
CVE-2024-21351MicrosoftMicrosoft WindowsSecurity features bypass in Microsoft Windows and Windows ServerCWE-254CISA KEVENISA KEV
CVE-2024-21762Fortinet, IncFortiOSOut-of-bounds write in FortiOSCWE-787CISA KEVENISA KEV
CVE-2024-21893Pulse Secure moved to IvantiIvanti Connect Secure (formerly Pulse Connect Secure)Server-Side Request Forgery (SSRF) in Ivanti Policy Secure (formerly Pulse Policy Secure) and Ivanti Connect Secure (formerly Pulse Connect Secure)CWE-918CISA KEVENISA KEV
CVE-2024-23222Apple Inc.Apple iOSType confusion in WebKitGTK+ and WPE WebKitCWE-843CISA KEVENISA KEV
CVE-2023-6549CitrixCitrix NetScaler GatewayBuffer overflow in Citrix Netscaler ADC and Citrix NetScaler GatewayCWE-119CISA KEVENISA KEV
CVE-2023-6548CitrixCitrix NetScaler GatewayCode Injection in Citrix Netscaler ADC and Citrix NetScaler GatewayCWE-94CISA KEVENISA KEV
CVE-2024-0519GoogleGoogle ChromeBuffer overflow in Google ChromiumCWE-119CISA KEVENISA KEV
CVE-2024-21887Pulse Secure moved to IvantiIvanti Connect Secure (formerly Pulse Connect Secure)OS Command Injection in Ivanti Policy Secure (formerly Pulse Policy Secure) and Ivanti Connect Secure (formerly Pulse Connect Secure)CWE-78CISA KEVENISA KEV
CVE-2023-46805Pulse Secure moved to IvantiIvanti Connect Secure (formerly Pulse Connect Secure)Improper Authentication in Ivanti Policy Secure (formerly Pulse Policy Secure) and Ivanti Connect Secure (formerly Pulse Connect Secure)CWE-287CISA KEVENISA KEV
CVE-2023-7024GoogleGoogle ChromeHeap-based buffer overflow in Google ChromiumCWE-122CISA KEVENISA KEV
CVE-2023-47565QNAP Systems, Inc.QVROS Command Injection in QVRCWE-78CISA KEVENISA KEV
CVE-2023-49897FXCAE1021OS Command Injection in AE1021PE and AE1021CWE-78CISA KEVENISA KEV
CVE-2023-42917Apple Inc.Apple iOSBuffer overflow in WebKitGTK+ and WPE WebKitCWE-119CISA KEVENISA KEV
CVE-2023-42916Apple Inc.Apple iOSOut-of-bounds read in WebKitGTK+ and WPE WebKitCWE-125CISA KEVENISA KEV
CVE-2023-6345GoogleGoogle ChromeInteger overflow in Google ChromiumCWE-190CISA KEVENISA KEV
CVE-2023-6448UnitronicsUnitronics VisionUse of default credentials in Unitronics VisionCWE-1392CISA KEVENISA KEV

Showing 221–240 of 670 results