Zero-Day Vulnerability Archive | Cybersecurity Help


Complete index

Zero-Day Vulnerability Archive

Search all tracked zero-day vulnerabilities and narrow the results by year, vendor, software, weakness type, or presence in the CISA and ENISA known exploited vulnerability catalogs.

Archive results

688 vulnerabilities found

Filtered zero-day vulnerability archive
CVEVendor / ProductVulnerabilityCWEDiscoveredKEV
CVE-2026-15409SonicWallSonicWall SMA 1000Server-Side Request Forgery (SSRF) in SonicWall SMA 1000CWE-918CISA KEVENISA KEV
CVE-2026-56164MicrosoftMicrosoft SharePoint ServerMissing Authentication for Critical Function in Microsoft SharePoint ServerCWE-306CISA KEVENISA KEV
CVE-2026-56155MicrosoftMicrosoft WindowsInsufficient granularity of access control in Microsoft Windows and Windows ServerCWE-1220CISA KEVENISA KEV
CVE-2026-12569PTCWindchillInput validation error in Windchill and FlexPLMCWE-20CISA KEVENISA KEV
CVE-2026-20262Cisco Systems, IncCatalyst SD-WAN Manager (formerly SD-WAN vManage)Path traversal in Catalyst SD-WAN Manager (formerly SD-WAN vManage)CWE-22CISA KEVENISA KEV
CVE-2026-48558simple-helpSimpleHelpImproper authentication in SimpleHelpCWE-287CISA KEVENISA KEV
CVE-2026-35273OraclePeopleSoft Enterprise PeopleToolsInput validation error in PeopleSoft Enterprise PeopleToolsCWE-20CISA KEVENISA KEV
CVE-2026-50751Check Point Software TechnologiesGaiaImproper authentication in GaiaCWE-287CISA KEVENISA KEV
CVE-2026-28318SolarWindsServ-U FTP ServerImproper handling of exceptional conditions in Serv-U FTP ServerCWE-755CISA KEVENISA KEV
CVE-2026-20245Cisco Systems, IncCatalyst SD-WAN Manager (formerly SD-WAN vManage)Improper Encoding or Escaping of Output in Catalyst SD-WAN Manager (formerly SD-WAN vManage)CWE-116CISA KEVENISA KEV
CVE-2026-54420LiteSpeed TechnologiesLiteSpeed User-End cPanel PluginImproper access control in LiteSpeed User-End cPanel Plugin and LiteSpeed WHM PluginCWE-284CISA KEVENISA KEV
CVE-2025-48595GoogleGoogle AndroidImproper input validation in Google AndroidCWE-20CISA KEVENISA KEV
CVE-2026-48172LiteSpeed TechnologiesLiteSpeed User-End cPanel PluginIncorrect Privilege Assignment in LiteSpeed User-End cPanel Plugin and LiteSpeed WHM PluginCWE-266CISA KEVENISA KEV
CVE-2026-34926Trend MicroApex OneRelative Path Traversal in Apex OneCWE-23CISA KEVENISA KEV
CVE-2026-45321TanStackarktype-adapterEmbedded malicious code in TanStack productsCWE-506CISA KEVENISA KEV
CVE-2026-48027NxNx Console VSCode ExtensionEmbedded malicious code in Nx Console VSCode ExtensionCWE-506CISA KEVENISA KEV
CVE-2026-45498MicrosoftWindows DefenderInput validation error in Windows DefenderCWE-20CISA KEVENISA KEV
CVE-2026-41091MicrosoftMicrosoft Malware Protection EngineLink following in Microsoft Malware Protection EngineCWE-59CISA KEVENISA KEV
CVE-2026-42897MicrosoftMicrosoft Exchange ServerStored cross-site scripting in Microsoft Exchange ServerCWE-79CISA KEVENISA KEV
CVE-2026-20182Cisco Systems, IncCatalyst SD-WAN Controller (formerly SD-WAN vSmart)Improper authentication in Cisco Systems, Inc productsCWE-287CISA KEVENISA KEV

Showing 21–40 of 688 results