So not quite like Krebs, but a security aggregator that has been around for a very long time is Packetstorm. [1] Some corporate firewalls have a category to block Packetstorm due to their storage of PoC exploit code. They usually have terse articles, PoC source code, advisories, links to security related stories. Another aggregator closer to ZDNet style would be ThreatPost [2]
Beyond those sites, there are sometimes articles posted by Tavis Ormandy from Google on interesting 0-day exploits but they are not all on one website AFAIK.
[1] - https://packetstormsecurity.com/
[2] - https://threatpost.com/