Complete index
Zero-Day Vulnerability Archive
Search all tracked zero-day vulnerabilities and narrow the results by year, vendor, software, weakness type, or presence in the CISA and ENISA known exploited vulnerability catalogs.
| CVE | Vendor / Product | Vulnerability | CWE | Discovered | KEV |
|---|---|---|---|---|---|
| CVE-2020-10148 | SolarWindsOrion Platform | Improper Authentication in Orion Platform | CWE-287 | CISA KEVENISA KEV | |
| #VU48956 | Unknown | Embedded malicious code (backdoor) in Orion Platform | CWE-506 | — | |
| #VU48952 | wpecommerce, alexanderfoxcEasy WP SMTP | Improper access control in Easy WP SMTP | CWE-284 | — | |
| CVE-2020-16017 | GoogleGoogle Chrome | Use-after-free in Google Chrome | CWE-416 | CISA KEVENISA KEV | |
| CVE-2020-16013 | GoogleGoogle Chrome | Improperly implemented security check for standard in Google Chrome | CWE-358 | CISA KEVENISA KEV | |
| CVE-2020-27950 | Apple Inc.macOS | Out-of-bounds read in macOS | CWE-125 | CISA KEVENISA KEV | |
| CVE-2020-27932 | Apple Inc.macOS | Type Confusion in macOS | CWE-843 | CISA KEVENISA KEV | |
| CVE-2020-27930 | Apple Inc.macOS | Memory corruption in macOS | CWE-119 | CISA KEVENISA KEV | |
| CVE-2020-16010 | GoogleGoogle Chrome for Android | Heap-based buffer overflow in Google Chrome for Android | CWE-122 | CISA KEVENISA KEV | |
| CVE-2020-16009 | GoogleGoogle Chrome | Improperly implemented security check for standard in Google Chrome | CWE-358 | CISA KEVENISA KEV | |
| CVE-2020-17087 | MicrosoftMicrosoft Windows | Buffer overflow in Microsoft Windows and Windows Server | CWE-119 | CISA KEVENISA KEV | |
| CVE-2020-14871 | OracleOracle Solaris | Improper input validation in Oracle Solaris | CWE-20 | CISA KEVENISA KEV | |
| CVE-2020-15999 | freetype.orgFreeType | Heap-based buffer overflow in FreeType | CWE-122 | CISA KEVENISA KEV | |
| CVE-2020-25213 | mndpsingh287File Manager | Arbitrary file upload in File Manager | CWE-434 | CISA KEVENISA KEV | |
| CVE-2020-3569 | Cisco Systems, IncCisco IOS XR | Resource exhaustion in Cisco IOS XR | CWE-400 | CISA KEVENISA KEV | |
| CVE-2020-3566 | Cisco Systems, IncCisco IOS XR | Resource exhaustion in Cisco IOS XR and Cisco ASR 9000 Series Aggregation Services Routers | CWE-400 | CISA KEVENISA KEV | |
| CVE-2020-1380 | MicrosoftMicrosoft Internet Explorer | Buffer overflow in Microsoft Internet Explorer | CWE-119 | CISA KEVENISA KEV | |
| CVE-2020-1464 | MicrosoftMicrosoft Windows | Cryptographic issues in Microsoft Windows and Windows Server | CWE-310 | CISA KEVENISA KEV | |
| CVE-2022-38028 | MicrosoftMicrosoft Windows | Permissions, Privileges, and Access Controls in Microsoft Windows and Windows Server | CWE-264 | CISA KEVENISA KEV | |
| #VU27929 | XootiXLogin/Signup Popup ( Inline Form + Woocommerce ) | Stored cross-site scripting in Login/Signup Popup ( Inline Form + Woocommerce ) | CWE-79 | — |
Showing 1–20 of 39 results