Complete index
Zero-Day Vulnerability Archive
Search all tracked zero-day vulnerabilities and narrow the results by year, vendor, software, weakness type, or presence in the CISA and ENISA known exploited vulnerability catalogs.
| CVE | Vendor / Product | Vulnerability | CWE | Discovered | KEV |
|---|---|---|---|---|---|
| CVE-2024-9381 | IvantiIvanti Cloud Services Appliance (CSA) | Path traversal in Ivanti Cloud Services Appliance (CSA) | CWE-22 | — | |
| CVE-2024-44068 | SamsungExynos 850, Exynos 980, Exynos 9820, Exynos 9825, Exynos 990, Exynos W920 | Use-after-free in Samsung products | CWE-416 | — | |
| CVE-2024-41869 | AdobeAdobe Reader | Use-after-free in Adobe Reader and Adobe Acrobat | CWE-416 | — | |
| CVE-2024-7263 | Kingsoft Corp.WPS Office | Input validation error in WPS Office | CWE-20 | — | |
| CVE-2024-26234 | MicrosoftMicrosoft Windows | Improper access control in Microsoft Windows and Windows Server | CWE-284 | — | |
| CVE-2024-3094 | tukaani.orgXZ Utils | Embedded malicious code (backdoor) in XZ Utils | CWE-506 | — | |
| CVE-2023-50358 | QNAP Systems, Inc.QNAP QTS | OS Command Injection in QuTS hero and QNAP QTS | CWE-78 | — | |
| CVE-2024-23842 | Hitron SystemsDVR LGUVR-16H | Use of default credentials in DVR LGUVR-16H | CWE-1392 | — | |
| CVE-2024-22772 | Hitron SystemsDVR LGUVR-8H | Use of default credentials in DVR LGUVR-8H | CWE-1392 | — | |
| CVE-2024-22771 | Hitron SystemsDVR LGUVR-4H | Use of default credentials in DVR LGUVR-4H | CWE-1392 | — | |
| CVE-2024-22770 | Hitron SystemsDVR HVR-16781 | Use of default credentials in DVR HVR-16781 | CWE-1392 | — | |
| CVE-2024-22769 | Hitron SystemsDVR HVR-8781 | Use of default credentials in DVR HVR-8781 | CWE-1392 | — | |
| CVE-2024-22768 | Hitron SystemsDVR HVR-4781 | Use of default credentials in DVR HVR-4781 | CWE-1392 | — | |
| CVE-2023-7102 | Barracuda NetworksEmail Security Gateway (ESG) | Exposed dangerous method or function in Email Security Gateway (ESG) | CWE-749 | — | |
| #VU84436 | Ledger SASconnect-kit | Embedded malicious code (backdoor) in connect-kit | CWE-506 | — | |
| CVE-2023-5360 | WP RoyalRoyal Elementor Addons | Arbitrary file upload in Royal Elementor Addons | CWE-434 | — | |
| CVE-2024-25461 | CreatioTerrasoft CRM | Path traversal in Terrasoft CRM | CWE-22 | — | |
| #VU88961 | MicroWorld TechnologieseScan | Cleartext transmission of sensitive information in eScan | CWE-319 | — | |
| CVE-2023-3595 | Rockwell Automation1756-EN2T Series A | Out-of-bounds write in Rockwell Automation products | CWE-787 | — | |
| CVE-2023-3460 | Ultimate MemberUltimate Member - User Profile & Membership Plugin | Improper Authorization in Ultimate Member - User Profile & Membership Plugin | CWE-285 | — |
Showing 21–40 of 312 results