Comparison Overview
Apress

Apress
Apress c/o Springer, New York, 10013, US
Last Update: 06/03/2026
Apress, a Springer Nature company, is a publisher dedicated to meeting the information needs of developers, IT professionals, and tech communities worldwide. Our high-quality, practical content helps technology professionals at all levels increase the skills they need ...

Mercado Libre
Buenos Aires, Buenos Aires, C1430DNN, AR
Last Update: 17/07/2026
At Mercado Libre, we are transforming the way people buy, sell, advertise, pay, finance, and ship across Latin America. We are the leading e-commerce and fintech company in the region, with a presence in 18 countries and a team of more than 130,000 people. We are one o...
Compliance Ranges Comparison

Apress







Mercado Libre






Benchmark & Cyber Underwriting Signals
Incidents vs Internet Publishing Industry Avg (This Year)
No incidents recorded for Apress in 2026.
Incidents vs Internet Publishing Industry Avg (This Year)
Mercado Libre has 3.85% fewer incidents than the average of all companies with at least one recorded incident.
Incident History - Apress (X = Date, Y = Severity)
Apress cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Mercado Libre (X = Date, Y = Severity)
Mercado Libre cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

Apress

Mercado Libre
FAQ
Latest Global CVEs
A flaw was found in libsoup. After a CONNECT tunnel is established through an HTTP proxy, libsoup incorrectly attaches the Proxy-Authorization header to subsequent HTTPS requests sent through that tunnel to the destination server. This allows the destination server to capture proxy credentials, leading to information disclosure.
A flaw was found in libsoup. The chunked transfer encoding parser uses a permissive parsing function for chunk sizes that silently accepts inputs violating RFC 9112, including leading whitespace, plus sign prefixes, and trailing invalid characters. When libsoup operates behind a strict frontend proxy, this parsing differential can be exploited to smuggle HTTP requests.
A flaw was found in libsoup. An unsigned integer underflow in the soup_filter_input_stream_read_until() function causes a heap buffer over-read when parsing multipart HTTP responses. A malicious HTTP server can exploit this by sending a crafted multipart response, potentially causing the client application to crash or disclose sensitive heap memory.
Weintek cMT3092X HMI allows a non-privileged user to modify tokens to escalate privileges.
Weintek cMT3092X HMI stores user account passwords in plaintext.