Complete index
Zero-Day Vulnerability Archive
Search all tracked zero-day vulnerabilities and narrow the results by year, vendor, software, weakness type, or presence in the CISA and ENISA known exploited vulnerability catalogs.
| CVE | Vendor / Product | Vulnerability | CWE | Discovered | KEV |
|---|---|---|---|---|---|
| CVE-2024-21287 | OracleOracle Agile PLM Framework | Missing Authorization in Oracle Agile PLM Framework | CWE-862 | CISA KEVENISA KEV | |
| CVE-2024-0012 | Palo Alto Networks, Inc.Palo Alto PAN-OS | Improper authentication in Palo Alto PAN-OS | CWE-287 | CISA KEVENISA KEV | |
| CVE-2024-11120 | GeoVisionGV-DSP_LPR_V3, GV-VS11, GV-VS12, GVLX 4 V2, GVLX 4 V3 | OS Command Injection in GeoVision products | CWE-78 | CISA KEVENISA KEV | |
| CVE-2024-57968 | AdvantiveVeraCore | Path traversal in VeraCore | CWE-22 | CISA KEVENISA KEV | |
| CVE-2024-43451 | MicrosoftMicrosoft Windows | Information disclosure in Microsoft products | CWE-200 | CISA KEVENISA KEV | |
| CVE-2024-49039 | MicrosoftMicrosoft Windows | Improper Authentication in Microsoft Windows and Windows Server | CWE-287 | CISA KEVENISA KEV | |
| CVE-2024-9474 | Palo Alto Networks, Inc.Palo Alto PAN-OS | OS Command Injection in Palo Alto PAN-OS | CWE-78 | CISA KEVENISA KEV | |
| CVE-2024-43093 | GoogleGoogle Android | Improper input validation in Google Android | CWE-20 | CISA KEVENISA KEV | |
| CVE-2024-51378 | CyberPanelCyberPanel | Improper Authentication in CyberPanel | CWE-287 | CISA KEVENISA KEV | |
| CVE-2024-51567 | CyberPanelCyberPanel | Improper authentication in CyberPanel | CWE-287 | CISA KEVENISA KEV | |
| CVE-2024-20481 | Cisco Systems, IncCisco Secure Firewall Adaptive Security Appliance (ASA) | Missing Release of Resource after Effective Lifetime in Cisco Firewall Threat Defense (FTD) and Cisco Adaptive Security Appliance (ASA) | CWE-772 | CISA KEVENISA KEV | |
| CVE-2024-47575 | Fortinet, IncFortiManager | Missing authentication for critical function in FortiManager | CWE-306 | CISA KEVENISA KEV | |
| CVE-2024-9680 | MozillaMozilla Firefox | Use-after-free in Mozilla products | CWE-416 | CISA KEVENISA KEV | |
| CVE-2024-43572 | MicrosoftMicrosoft Windows | Input validation error in Microsoft Windows and Windows Server | CWE-20 | CISA KEVENISA KEV | |
| CVE-2024-43573 | MicrosoftMicrosoft Internet Explorer | Universal cross-site scripting in Microsoft products | CWE-79 | CISA KEVENISA KEV | |
| CVE-2024-9380 | IvantiIvanti Cloud Services Appliance (CSA) | OS Command Injection in Ivanti Cloud Services Appliance (CSA) | CWE-78 | CISA KEVENISA KEV | |
| CVE-2024-9379 | IvantiIvanti Cloud Services Appliance (CSA) | SQL injection in Ivanti Cloud Services Appliance (CSA) | CWE-89 | CISA KEVENISA KEV | |
| CVE-2024-43047 | QualcommFirmware | Use After Free in Qualcomm products | CWE-416 | CISA KEVENISA KEV | |
| CVE-2024-9537 | ScienceLogicSL1 | Input validation error in SL1 | CWE-20 | CISA KEVENISA KEV | |
| CVE-2025-0411 | 7-zip.org7-Zip | Security features bypass in 7-Zip | CWE-254 | CISA KEVENISA KEV |
Showing 161–180 of 670 results