Complete index
Zero-Day Vulnerability Archive
Search all tracked zero-day vulnerabilities and narrow the results by year, vendor, software, weakness type, or presence in the CISA and ENISA known exploited vulnerability catalogs.
| CVE | Vendor / Product | Vulnerability | CWE | Discovered | KEV |
|---|---|---|---|---|---|
| CVE-2024-51378 | CyberPanelCyberPanel | Improper Authentication in CyberPanel | CWE-287 | CISA KEVENISA KEV | |
| CVE-2024-51567 | CyberPanelCyberPanel | Improper authentication in CyberPanel | CWE-287 | CISA KEVENISA KEV | |
| CVE-2024-20481 | Cisco Systems, IncCisco Secure Firewall Adaptive Security Appliance (ASA) | Missing Release of Resource after Effective Lifetime in Cisco Firewall Threat Defense (FTD) and Cisco Adaptive Security Appliance (ASA) | CWE-772 | CISA KEVENISA KEV | |
| CVE-2024-47575 | Fortinet, IncFortiManager | Missing authentication for critical function in FortiManager | CWE-306 | CISA KEVENISA KEV | |
| CVE-2024-9680 | MozillaMozilla Firefox | Use-after-free in Mozilla products | CWE-416 | CISA KEVENISA KEV | |
| CVE-2024-43572 | MicrosoftMicrosoft Windows | Input validation error in Microsoft Windows and Windows Server | CWE-20 | CISA KEVENISA KEV | |
| CVE-2024-43573 | MicrosoftMicrosoft Internet Explorer | Universal cross-site scripting in Microsoft products | CWE-79 | CISA KEVENISA KEV | |
| CVE-2024-9381 | IvantiIvanti Cloud Services Appliance (CSA) | Path traversal in Ivanti Cloud Services Appliance (CSA) | CWE-22 | — | |
| CVE-2024-9380 | IvantiIvanti Cloud Services Appliance (CSA) | OS Command Injection in Ivanti Cloud Services Appliance (CSA) | CWE-78 | CISA KEVENISA KEV | |
| CVE-2024-9379 | IvantiIvanti Cloud Services Appliance (CSA) | SQL injection in Ivanti Cloud Services Appliance (CSA) | CWE-89 | CISA KEVENISA KEV | |
| CVE-2024-44068 | SamsungExynos 850, Exynos 980, Exynos 9820, Exynos 9825, Exynos 990, Exynos W920 | Use-after-free in Samsung products | CWE-416 | — | |
| CVE-2024-43047 | QualcommFirmware | Use After Free in Qualcomm products | CWE-416 | CISA KEVENISA KEV | |
| CVE-2024-9537 | ScienceLogicSL1 | Input validation error in SL1 | CWE-20 | CISA KEVENISA KEV | |
| CVE-2025-0411 | 7-zip.org7-Zip | Security features bypass in 7-Zip | CWE-254 | CISA KEVENISA KEV | |
| CVE-2024-8963 | IvantiIvanti Cloud Services Appliance (CSA) | Path traversal in Ivanti Cloud Services Appliance (CSA) | CWE-22 | CISA KEVENISA KEV | |
| CVE-2024-41869 | AdobeAdobe Reader | Use-after-free in Adobe Reader and Adobe Acrobat | CWE-416 | — | |
| CVE-2024-43461 | MicrosoftMicrosoft Internet Explorer | Spoofing attack in Microsoft products | CWE-451 | CISA KEVENISA KEV | |
| CVE-2024-38226 | MicrosoftMicrosoft Publisher | Protection Mechanism Failure in Microsoft Office and Microsoft Publisher | CWE-693 | CISA KEVENISA KEV | |
| CVE-2024-38217 | MicrosoftMicrosoft Windows | Protection Mechanism Failure in Microsoft Windows and Windows Server | CWE-693 | CISA KEVENISA KEV | |
| CVE-2024-38014 | MicrosoftMicrosoft Windows | Improper privilege management in Microsoft Windows and Windows Server | CWE-269 | CISA KEVENISA KEV |
Showing 21–40 of 99 results