Zero-Day Vulnerability Archive | Cybersecurity Help


Complete index

Zero-Day Vulnerability Archive

Search all tracked zero-day vulnerabilities and narrow the results by year, vendor, software, weakness type, or presence in the CISA and ENISA known exploited vulnerability catalogs.

Archive results

80 vulnerabilities found

Filtered zero-day vulnerability archive
CVEVendor / ProductVulnerabilityCWEDiscoveredKEV
CVE-2026-48027NxNx Console VSCode ExtensionEmbedded malicious code in Nx Console VSCode ExtensionCWE-506CISA KEVENISA KEV
CVE-2026-45498MicrosoftWindows DefenderInput validation error in Windows DefenderCWE-20CISA KEVENISA KEV
CVE-2026-41091MicrosoftMicrosoft Malware Protection EngineLink following in Microsoft Malware Protection EngineCWE-59CISA KEVENISA KEV
CVE-2026-42897MicrosoftMicrosoft Exchange ServerStored cross-site scripting in Microsoft Exchange ServerCWE-79CISA KEVENISA KEV
CVE-2026-20182Cisco Systems, IncCatalyst SD-WAN Controller (formerly SD-WAN vSmart)Improper authentication in Cisco Systems, Inc productsCWE-287CISA KEVENISA KEV
CVE-2026-6973IvantiEndpoint Manager Mobile (formerly MobileIron Core)Input validation error in Endpoint Manager Mobile (formerly MobileIron Core)CWE-20CISA KEVENISA KEV
CVE-2026-8398Disk Soft LtdDaemon ToolsEmbedded malicious code (backdoor) in Daemon ToolsCWE-506CISA KEVENISA KEV
CVE-2026-0300Palo Alto Networks, Inc.Palo Alto PAN-OSOut-of-bounds write in Palo Alto PAN-OSCWE-787CISA KEVENISA KEV
CVE-2026-7473Arista NetworksArista Extensible Operating System (EOS)Incomplete Comparison with Missing Factors in Arista Extensible Operating System (EOS)CWE-1023CISA KEVENISA KEV
CVE-2026-41940cPanel, InccPanelImproper authentication in cPanelCWE-287CISA KEVENISA KEV
CVE-2026-33825MicrosoftWindows DefenderInsufficient Granularity of Access Control in Windows DefenderCWE-1220CISA KEVENISA KEV
CVE-2026-32201MicrosoftMicrosoft SharePoint ServerInput validation error in Microsoft SharePoint ServerCWE-20CISA KEVENISA KEV
CVE-2026-34621AdobeAdobe AcrobatPrototype pollution in Adobe Reader and Adobe AcrobatCWE-1321CISA KEVENISA KEV
CVE-2026-34424NextendSmart Slider 3Embedded malicious code (backdoor) in Smart Slider 3CWE-506
CVE-2026-35616Fortinet, IncFortiClientEMSMissing authorization in FortiClientEMSCWE-862CISA KEVENISA KEV
CVE-2026-5281GoogleGoogle ChromeUse-after-free in Google ChromiumCWE-416CISA KEVENISA KEV
CVE-2026-3502TrueConfTrueConf client for WindowsDownload of code without integrity check in TrueConf client for WindowsCWE-494CISA KEVENISA KEV
#VU124720axiosaxiosEmbedded malicious code (backdoor) in axiosCWE-506
CVE-2026-33634Aqua SecuritytrivyEmbedded malicious code (backdoor) in Aqua Security productsCWE-506CISA KEVENISA KEV
CVE-2026-21992OracleOracle Identity Manager ConnectorMissing Authentication for Critical Function in Identity Manager and Oracle Web Services ManagerCWE-306

Showing 41–60 of 80 results