Skip to content

Zero-Day Tracker is built to help you understand a fully patched system and application cannot guarantee security. All the vulnerabilities listed below are the results of our researches and they have not been disclosed to the vendors or public. Though in the past we have clearly supported responsible disclosure of security vulnerability, now we no longer endorse it.

While we are trying to keep the information as accurate as possible, we cannot guarantee that these vulnerabilities are indeed zero-day since it is a known fact that they may have been circled around among the hackers for a long time.

The list below covers some of the vulnerabilities that we have in our lab and this list will be updated when we see fit.

Date
Product
Versions
Type
Severity
Status
2026PDF Architect 9CurrentLocal Privlege EscalationHighActive
Vendor:pdfforge
Patch:No
Platform:Windows
Summary:-
CVSS Score:-
Credits:cobra
2026HP Office Jet Pro 9020 seriesCurrentRemote Code ExecutionCriticalActive
Vendor:HP
Patch:No
Platform:Embedded Device
Summary:-
CVSS Score:-
Credits:0xakm
2026360 Total SecurityCurrentLocal Privlege EscalationHighActive
Vendor:Qihoo 360
Patch:No
Platform:Windows
Summary:-
CVSS Score:-
Credits:jin1337
2026Avast OneCurrentLocal Privlege EscalationHighActive
Vendor:Avast
Patch:No
Platform:Windows
Summary:-
CVSS Score:-
Credits:jin1337
2026AWS VPN ClientCurrentLocal Privlege EscalationHighActive
Vendor:AWS
Patch:No
Platform:Linux
Summary:-
CVSS Score:-
Credits:z22 | qbao
2026Foxit Reader2026.*Remote Code ExecutionCriticalActive
Vendor:Foxit
Patch:No
Platform:Windows
Summary:-
CVSS Score:-
Credits:qbao | cobra
2026TyporaCurrentRemote Code ExecutionCriticalActive
Vendor:Typora
Patch:No
Platform:Windows
Summary:-
CVSS Score:-
Credits:cobra
2025Checkpoint VPNCurrentLocal Privlege EscalationHighActive
Vendor:Checkpoint
Patch:No
Platform:Windows
Summary:-
CVSS Score:-
Credits:cobra
2025Foxit Reader2025-2026Local Privlege EscalationHighActive
Vendor:Foxit
Patch:No
Platform:Windows
Summary:-
CVSS Score:-
Credits:cobra
2024Nitro PDFCurrentRemote Code ExecutionCriticalActive
Vendor:Nitro
Patch:Yes
Platform:Windows
Summary:-
CVSS Score:-
Credits:cobra
2024Foxit Reader2024.*Remote Code ExecutionCriticalKilled
Vendor:Foxit
Patch:Yes
Platform:Windows
Summary:-
CVSS Score:-
Credits:z22 | qbao
2024RocketChatCurrentRemote Code ExecutionCriticalActive
Vendor:RocketChat
Patch:No
Platform:Windows
Summary:-
CVSS Score:-
Credits:cobra
2024BitDefender SafepayCurrentRemote Code ExecutionCriticalActive
Vendor:BitDefender
Patch:No
Platform:Windows
Summary:-
CVSS Score:-
Credits:cobra
2023Softing edgeConnectorCurrentDenial-of-ServiceHighKilled
Vendor:Siemens
Patch:Yes
Platform:-
Summary:-
CVSS Score:-
Credits:hayicle | cobra
2023Triangle WorksCurrentPre-auth Code ExecutionCriticalKilled
Vendor:Microworks
Patch:Yes
Platform:-
Summary:-
CVSS Score:-
Credits:bibo | hayicle | ahihi
2023Firefox / TOR Browser RCECurrentCode ExecutionCriticalKilled
Vendor:Mozilla
Patch:Yes
Platform:Firefox
Summary:-
CVSS Score:-
Credits:N/A
2022Windows LPE #3CurrentLocal Privlege EscalationCriticalKilled
Vendor:Microsoft
Patch:Yes
Platform:Windows
Summary:-
CVSS Score:-
Credits:N/A
2022Windows LPE #2CurrentLocal Privlege EscalationCriticalKilled
Vendor:Microsoft
Patch:Yes
Platform:Windows
Summary:-
CVSS Score:-
Credits:N/A
2022Windows LPECurrentLocal Privlege EscalationCriticalKilled
Vendor:Microsoft
Patch:Yes
Platform:Windows
Summary:-
CVSS Score:-
Credits:N/A
2021YandexCurrentTheft of Sensitive DataHighKilled
Vendor:Yandex
Patch:No
Platform:Android
Summary:-
CVSS Score:-
Credits:z22
2021Yandex BrowserCurrentTheft of Sensitive DataHighKilled
Vendor:Yandex
Patch:No
Platform:Android
Summary:-
CVSS Score:-
Credits:z22
2021ADManager PlusCurrentCode Execution #15CriticalKilled
Vendor:Manage Engine
Patch:No
Platform:Windows
Summary:-
CVSS Score:-
Credits:bmtd
2021ADManager PlusCurrentCode Execution #14CriticalKilled
Vendor:Manage Engine
Patch:No
Platform:Windows
Summary:-
CVSS Score:-
Credits:bmtd
2021ADManager Plus< 7111Code Execution #13CriticalKilled
Vendor:Manage Engine
Patch:Yes
Platform:Windows
Summary:-
CVSS Score:-
Credits:bmtd
2021ADManager Plus< 7111Authentication BypassHighKilled
Vendor:Manage Engine
Patch:Yes
Platform:Windows
Summary:-
CVSS Score:-
Credits:hayicle
2021ADManager Plus< 7111Code Execution #12CriticalKilled
Vendor:Manage Engine
Patch:Yes
Platform:Windows
Summary:-
CVSS Score:-
Credits:m3
2021ADManager Plus< 7111Code Execution #11CriticalKilled
Vendor:Manage Engine
Patch:Yes
Platform:Windows
Summary:-
CVSS Score:-
Credits:m3
2021ADManager Plus< 7111Code Execution #10CriticalKilled
Vendor:Manage Engine
Patch:Yes
Platform:Windows
Summary:-
CVSS Score:-
Credits:m3
2021ADManager Plus< 7111Code Execution #9CriticalKilled
Vendor:Manage Engine
Patch:Yes
Platform:Windows
Summary:-
CVSS Score:-
Credits:m3
2021ADManager Plus< 7111Code Execution #8CriticalKilled
Vendor:Manage Engine
Patch:Yes
Platform:Windows
Summary:-
CVSS Score:-
Credits:m3
2021ADManager Plus< 7111Code Execution #7CriticalKilled
Vendor:Manage Engine
Patch:Yes
Platform:Windows
Summary:-
CVSS Score:-
Credits:qbao
2021ADManager Plus< 7111Code Execution #6CriticalKilled
Vendor:Manage Engine
Patch:Yes
Platform:Windows
Summary:-
CVSS Score:-
Credits:ncd
2021ADManager Plus< 7111Code Execution #5CriticalKilled
Vendor:Manage Engine
Patch:Yes
Platform:Windows
Summary:-
CVSS Score:-
Credits:ncd
2021ADManager Plus< 7111Code Execution #4CriticalKilled
Vendor:Manage Engine
Patch:Yes
Platform:Windows
Summary:-
CVSS Score:-
Credits:ncd
2021ADManager Plus< 7111Code Execution #3CriticalKilled
Vendor:Manage Engine
Patch:Yes
Platform:Windows
Summary:-
CVSS Score:-
Credits:ncd
2021ADManager Plus< 7111Code Execution #2CriticalKilled
Vendor:Manage Engine
Patch:Yes
Platform:Windows
Summary:-
CVSS Score:-
Credits:no3g
2021ADManager Plus< 7111Code Execution #1CriticalKilled
Vendor:Manage Engine
Patch:Yes
Platform:Windows
Summary:-
CVSS Score:-
Credits:z22
2021ADManager Plus< 7111Pre-auth Code Execution #3CriticalKilled
Vendor:Manage Engine
Patch:Yes
Platform:Windows
Summary:-
CVSS Score:-
Credits:bmtd
2021ADManager Plus< 7111Pre-auth Code Execution #2CriticalKilled
Vendor:Manage Engine
Patch:Yes
Platform:Windows
Summary:-
CVSS Score:-
Credits:bmtd
2021ADManager Plus< 7111Pre-auth Code Execution #1CriticalKilled
Vendor:Manage Engine
Patch:Yes
Platform:Windows
Summary:-
CVSS Score:-
Credits:bmtd
2021V-Key App ProtectionCurrentSecurity BypassHighKilled
Vendor:V-Key
Patch:-
Platform:IOS
Summary:-
CVSS Score:-
Credits:hayicle | bmtd
2019McAfee Total Protection16Privilege EscalationCriticalKilled
Vendor:McAfee
Patch:No
Platform:Windows
Summary:-
CVSS Score:-
Credits:pdnx00 | nixspl0it
2017MalwareBytes3.0.4 - 3.2.xCode ExecutionCriticalKilled
Vendor:Malwarebytes
Patch:Yes
Platform:Windows
Summary:-
CVSS Score:-
Credits:pdnx00 | nixspl0it
2017Firefox Quantum< 58Code ExecutionCriticalKilled
Vendor:Mozilla
Patch:Yes
Platform:Windows
Summary:-
CVSS Score:-
Credits:pdnx00 | nixspl0it
20177z> 16Code ExecutionCriticalKilled
Vendor:7z
Patch:No
Platform:Windows / Linux
Summary:-
CVSS Score:-
Credits:pdnx00 | nixspl0it
2017PeaZip> 6.4Code ExecutionCriticalKilled
Vendor:-
Patch:No
Platform:Windows
Summary:-
CVSS Score:-
Credits:pdnx00 | nixspl0it
2017PowerArchiver> 16.1Code ExecutionCriticalKilled
Vendor:ConeXware
Patch:No
Platform:Windows
Summary:-
CVSS Score:-
Credits:pdnx00 | nixspl0it
2016Internet Explorer< 11Code ExecutionCriticalKilled
Vendor:Microsoft
Patch:No
Platform:Windows
Summary:-
CVSS Score:-
Credits:nixspl0it
2015Open WebMail2.52Local File InclusionMediumKilled
Vendor:Open WebMail
Patch:No
Platform:Linux
Summary:-
CVSS Score:-
Credits:xelenonz
2015Open WebMail2.52Remote Code ExecutionCriticalKilled
Vendor:Open WebMail
Patch:No
Platform:Linux
Summary:-
CVSS Score:-
Credits:xelenonz
2015Open WebMail2.52Privilege EscalationCriticalKilled
Vendor:Open WebMail
Patch:No
Platform:Linux
Summary:-
CVSS Score:-
Credits:xelenonz
2015McAfee Agent EPON/AArbitrary File ReadingHighKilled
Vendor:McAfee
Patch:Yes
Platform:Windows
Summary:-
CVSS Score:-
Credits:pdnx00
2013Freewill Gold TradingN/APrivilege EscalationCriticalKilled
Vendor:Freewill
Patch:Yes
Platform:Linux
Summary:-
CVSS Score:-
Credits:pdnx00
2013Freewill Gold TradingN/ACode InjectionCriticalKilled
Vendor:Freewill
Patch:Yes
Platform:Linux
Summary:-
CVSS Score:-
Credits:xelenonz
2013SabreAMF1.4XML External EntityHighKilled
Vendor:Rooftop
Patch:No
Platform:Linux
Summary:-
CVSS Score:-
Credits:xelenonz
2009CPanel11.24.5-RELEASEArbitrary File ViewingMediumKilled
Vendor:cPanel
Patch:Yes
Platform:Linux
Summary:-
CVSS Score:-
Credits:pdnx00
2009CPanel11.24.5-RELEASEPrivilege EscalationCriticalKilled
Vendor:cPanel
Patch:No
Platform:Linux
Summary:-
CVSS Score:-
Credits:pdnx00
2009CPanel11.24.5-RELEASERoot Privilege EscalationCriticalKilled
Vendor:cPanel
Patch:Yes
Platform:Linux
Summary:-
CVSS Score:-
Credits:pdnx00
2008Belkin RouterF5D8233-4 V3, firmware 3.01.29Admin Remote AccessHighKilled
Vendor:Belkin
Patch:Yes
Platform:Linux
Summary:-
CVSS Score:-
Credits:pdnx00
2007PHP GroupwareN/ACode InjectionCriticalKilled
Vendor:Portico Estate
Patch:Yes
Platform:Windows / Linux
Summary:-
CVSS Score:-
Credits:pdnx00
2006D-Link/Cipherium Interet Hotspot (Embedded System)Bonalinx W-1300, firmware 1.5Code ExecutionCriticalKilled
Vendor:D-link
Patch:Yes
Platform:Linux
Summary:-
CVSS Score:-
Credits:pdnx00
2005Sawmill Log Analyzer7.0.X, < 7.1.7Arbitrary File ViewingMediumKilled
Vendor:Sawmill
Patch:Yes
Platform:Windows / Linux
Summary:-
CVSS Score:-
Credits:pdnx00
2005Sawmill Log Analyzer7.0.X, < 7.1.6Arbitrary Directory BrowsingMediumKilled
Vendor:Sawmill
Patch:Yes
Platform:Windows / Linux
Summary:-
CVSS Score:-
Credits:pdnx00
2005Sawmill Log Analyzer7.0.X, < 7.1.6Code ExecutionCriticalKilled
Vendor:Sawmill
Patch:Yes
Platform:Windows / Linux
Summary:-
CVSS Score:-
Credits:pdnx00