Comparison Overview
Abercrombie & Fitch Co.

Abercrombie & Fitch Co.
Columbus, OH, US
Last Update: 28/03/2026
Abercrombie & Fitch Co. (NYSE: ANF) is a global, digitally led omnichannel specialty retailer of apparel and accessories catering to kids through millennials with assortments curated for their specific lifestyle needs. The company operates a family of brands, includin...

Hy-Vee, Inc.
5820 Westown Parkway, West Des Moines, 50266, US
Last Update: 02/04/2026
Hy-Vee, Inc. is an employee-owned corporation operating more than 563 business units across nine Midwestern states with sales of more than $13 billion annually. The supermarket chain is synonymous with quality, variety, convenience, healthy lifestyles, culinary expertis...
Compliance Ranges Comparison

Abercrombie & Fitch Co.







Hy-Vee, Inc.






Benchmark & Cyber Underwriting Signals
Incidents vs Retail Industry Avg (This Year)
No incidents recorded for Abercrombie & Fitch Co. in 2026.
Incidents vs Retail Industry Avg (This Year)
No incidents recorded for Hy-Vee, Inc. in 2026.
Incident History - Abercrombie & Fitch Co. (X = Date, Y = Severity)
Abercrombie & Fitch Co. cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Hy-Vee, Inc. (X = Date, Y = Severity)
Hy-Vee, Inc. cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

Abercrombie & Fitch Co.

Hy-Vee, Inc.
FAQ
Latest Global CVEs
Improper authorization in Microsoft Exchange Online allows an unauthorized attacker to disclose information over a network.
Authentication bypass by spoofing in Azure HorizonDB allows an unauthorized attacker to elevate privileges over a network.
Exposure of sensitive information to an unauthorized actor in Microsoft Graph allows an authorized attacker to disclose information over a network.
Improper neutralization of special elements in output used by a downstream component ('injection') in Copilot Chat (Microsoft Edge) allows an unauthorized attacker to disclose information over a network.
Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an authorized attacker to execute code over a network.