Complete index
Zero-Day Vulnerability Archive
Search all tracked zero-day vulnerabilities and narrow the results by year, vendor, software, weakness type, or presence in the CISA and ENISA known exploited vulnerability catalogs.
| CVE | Vendor / Product | Vulnerability | CWE | Discovered | KEV |
|---|---|---|---|---|---|
| CVE-2024-5274 | GoogleGoogle Chrome | Type Confusion in Google Chromium | CWE-843 | CISA KEVENISA KEV | |
| CVE-2024-4947 | GoogleGoogle Chrome | Type Confusion in Google Chromium | CWE-843 | CISA KEVENISA KEV | |
| CVE-2024-30040 | MicrosoftMicrosoft Windows | Security features bypass in Microsoft products | CWE-254 | CISA KEVENISA KEV | |
| CVE-2024-30051 | MicrosoftMicrosoft Windows | Heap-based buffer overflow in Microsoft Windows and Windows Server | CWE-122 | CISA KEVENISA KEV | |
| CVE-2024-4761 | GoogleGoogle Chrome | Out-of-bounds write in Google Chromium | CWE-787 | CISA KEVENISA KEV | |
| CVE-2024-4671 | GoogleGoogle Chrome | Use-after-free in Google Chromium | CWE-416 | CISA KEVENISA KEV | |
| CVE-2024-20359 | Cisco Systems, IncCisco Secure Firewall Adaptive Security Appliance (ASA) | Code Injection in Cisco Adaptive Security Appliance (ASA) and Cisco Firewall Threat Defense (FTD) | CWE-94 | CISA KEVENISA KEV | |
| CVE-2024-20353 | Cisco Systems, IncCisco Secure Firewall Adaptive Security Appliance (ASA) | Infinite loop in Cisco Adaptive Security Appliance (ASA) and Cisco Firewall Threat Defense (FTD) | CWE-835 | CISA KEVENISA KEV | |
| CVE-2024-4040 | CrushFTPCrushFTP | External Control of File Name or Path in CrushFTP | CWE-73 | CISA KEVENISA KEV | |
| CVE-2024-3400 | Palo Alto Networks, Inc.Palo Alto PAN-OS | Command Injection in Palo Alto PAN-OS | CWE-77 | CISA KEVENISA KEV | |
| CVE-2024-26234 | MicrosoftMicrosoft Windows | Improper access control in Microsoft Windows and Windows Server | CWE-284 | — | |
| CVE-2024-29988 | MicrosoftMicrosoft Windows | Protection mechanism failure in Microsoft Windows and Windows Server | CWE-693 | CISA KEVENISA KEV | |
| CVE-2024-29748 | GooglePixel | Improper input validation in Pixel | CWE-20 | CISA KEVENISA KEV | |
| CVE-2024-29745 | GooglePixel | Information exposure in Pixel | CWE-200 | CISA KEVENISA KEV | |
| CVE-2025-27920 | Srimax Software SystemOutput Messenger | Path traversal in Output Messenger | CWE-22 | CISA KEVENISA KEV | |
| CVE-2024-3094 | tukaani.orgXZ Utils | Embedded malicious code (backdoor) in XZ Utils | CWE-506 | — | |
| CVE-2024-26169 | MicrosoftMicrosoft Windows | Permissions, Privileges, and Access Controls in Microsoft Windows and Windows Server | CWE-264 | CISA KEVENISA KEV | |
| CVE-2024-23296 | Apple Inc.Apple iOS | Buffer overflow in iPadOS and Apple iOS | CWE-119 | CISA KEVENISA KEV | |
| CVE-2024-23225 | Apple Inc.Apple iOS | Buffer overflow in iPadOS and Apple iOS | CWE-119 | CISA KEVENISA KEV | |
| CVE-2024-21338 | MicrosoftMicrosoft Windows | Buffer overflow in Microsoft Windows and Windows Server | CWE-119 | CISA KEVENISA KEV |
Showing 61–80 of 99 results