Comparison Overview

Arcadia Books Ltd

VS

VGL Publishing AG

Arcadia Books Ltd

W1W 7AB, GB
Last Update: 2025-11-29

Literary fiction Translated fiction EuroCrime BlackAmber BlackAmber Inspirations Bliss Books The Maia Press Travel Biography/Memoirs Gender Studies Gay Award-winning independent publishing house (IPG Diversity Award 2009 & 2008, Sunday Times Small Publisher of the Year, Independent Book Trade Hero of the Year Our authors have won the Independent Foreign Fiction Prize and the International Dagger, and have been longlisted or shortlisted for the Orange Prize, the Man Booker, the Commonwealth Writers' Prize, the IMPAC.

NAICS: 511
NAICS Definition: Publishing Industries (except Internet)
Employees: 5
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

VGL Publishing AG

Oranienstraße 6, Berlin, 10997, DE
Last Update: 2025-11-29
Between 750 and 799

Die VGL Publishing AG betreibt Vergleichsseiten wie vergleich.org, welt.de/vergleich, heimwerker.de und viele weitere Plattformen, die unseren Lesern klare, verlässliche und leicht verständliche Kaufberatung für Produkte und Dienstleistungen des täglichen Bedarfs bieten. Seit unserer Gründung im Jahr 2014 haben wir uns mit über 5 Millionen monatlichen Lesern zu einer der führenden Vergleichsplattformen Deutschlands entwickelt – und sind inzwischen auch international aktiv. Zu unseren internationalen Portalen gehören miglioreconsiglio.it (Italien), meilleurs.fr (Frankreich), mejoraelige.es (Spanien) und pickbest.co.uk (Vereinigtes Königreich). Bei VGL arbeiten über 65 festangestellte Mitarbeiterinnen und Mitarbeiter sowie zahlreiche freie Kolleginnen und Kollegen – sowohl in unserem Berliner Büro als auch remote von verschiedenen Standorten aus – gemeinsam an einer Mission: Kaufberatung einfach, kostenlos und für alle zugänglich zu machen – national wie international. --- VGL Publishing AG operates leading comparison platforms such as vergleich.org, welt.de/vergleich, heimwerker.de, and many more — offering readers clear, reliable, and easy-to-understand buying advice for everyday products and services. Since our founding in 2014, we’ve grown to become one of Germany’s leading product comparison platforms, reaching more than 5 million readers each month — and we’re now expanding internationally. Our international portfolio includes miglioreconsiglio.it (Italy), meilleurs.fr (France), mejoraelige.es (Spain), and pickbest.co.uk (United Kingdom). At VGL, more than 65 full-time employees and numerous freelancers work together from our Berlin office and remotely across different locations — united by one mission: to make product advice simple, free, and accessible for everyone — in Germany and beyond. Connect by ti team internet. www.teaminternet.com

NAICS: 511
NAICS Definition: Publishing Industries (except Internet)
Employees: 75
Subsidiaries: 23
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/defaultcompany.jpeg
Arcadia Books Ltd
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/vgl-verlagsgesellschaft-mbh.jpeg
VGL Publishing AG
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
Arcadia Books Ltd
100%
Compliance Rate
0/4 Standards Verified
VGL Publishing AG
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Book and Periodical Publishing Industry Average (This Year)

No incidents recorded for Arcadia Books Ltd in 2025.

Incidents vs Book and Periodical Publishing Industry Average (This Year)

No incidents recorded for VGL Publishing AG in 2025.

Incident History — Arcadia Books Ltd (X = Date, Y = Severity)

Arcadia Books Ltd cyber incidents detection timeline including parent company and subsidiaries

Incident History — VGL Publishing AG (X = Date, Y = Severity)

VGL Publishing AG cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/defaultcompany.jpeg
Arcadia Books Ltd
Incidents

No Incident

https://images.rankiteo.com/companyimages/vgl-verlagsgesellschaft-mbh.jpeg
VGL Publishing AG
Incidents

No Incident

FAQ

Arcadia Books Ltd company demonstrates a stronger AI Cybersecurity Score compared to VGL Publishing AG company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

Historically, VGL Publishing AG company has disclosed a higher number of cyber incidents compared to Arcadia Books Ltd company.

In the current year, VGL Publishing AG company and Arcadia Books Ltd company have not reported any cyber incidents.

Neither VGL Publishing AG company nor Arcadia Books Ltd company has reported experiencing a ransomware attack publicly.

Neither VGL Publishing AG company nor Arcadia Books Ltd company has reported experiencing a data breach publicly.

Neither VGL Publishing AG company nor Arcadia Books Ltd company has reported experiencing targeted cyberattacks publicly.

Neither Arcadia Books Ltd company nor VGL Publishing AG company has reported experiencing or disclosing vulnerabilities publicly.

Neither Arcadia Books Ltd nor VGL Publishing AG holds any compliance certifications.

Neither company holds any compliance certifications.

VGL Publishing AG company has more subsidiaries worldwide compared to Arcadia Books Ltd company.

VGL Publishing AG company employs more people globally than Arcadia Books Ltd company, reflecting its scale as a Book and Periodical Publishing.

Neither Arcadia Books Ltd nor VGL Publishing AG holds SOC 2 Type 1 certification.

Neither Arcadia Books Ltd nor VGL Publishing AG holds SOC 2 Type 2 certification.

Neither Arcadia Books Ltd nor VGL Publishing AG holds ISO 27001 certification.

Neither Arcadia Books Ltd nor VGL Publishing AG holds PCI DSS certification.

Neither Arcadia Books Ltd nor VGL Publishing AG holds HIPAA certification.

Neither Arcadia Books Ltd nor VGL Publishing AG holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

ThingsBoard in versions prior to v4.2.1 allows an authenticated user to upload malicious SVG images via the "Image Gallery", leading to a Stored Cross-Site Scripting (XSS) vulnerability. The exploit can be triggered when any user accesses the public API endpoint of the malicious SVG images, or if the malicious images are embedded in an `iframe` element, during a widget creation, deployed to any page of the platform (e.g., dashboards), and accessed during normal operations. The vulnerability resides in the `ImageController`, which fails to restrict the execution of JavaScript code when an image is loaded by the user's browser. This vulnerability can lead to the execution of malicious code in the context of other users' sessions, potentially compromising their accounts and allowing unauthorized actions.

Risk Information
cvss4
Base: 6.2
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:N/VI:N/VA:N/SC:H/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Mattermost versions 11.0.x <= 11.0.2, 10.12.x <= 10.12.1, 10.11.x <= 10.11.4, 10.5.x <= 10.5.12 fail to to verify that the token used during the code exchange originates from the same authentication flow, which allows an authenticated user to perform account takeover via a specially crafted email address used when switching authentication methods and sending a request to the /users/login/sso/code-exchange endpoint. The vulnerability requires ExperimentalEnableAuthenticationTransfer to be enabled (default: enabled) and RequireEmailVerification to be disabled (default: disabled).

Risk Information
cvss3
Base: 9.9
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Description

Mattermost versions 11.0.x <= 11.0.2, 10.12.x <= 10.12.1, 10.11.x <= 10.11.4, 10.5.x <= 10.5.12 fail to sanitize team email addresses to be visible only to Team Admins, which allows any authenticated user to view team email addresses via the GET /api/v4/channels/{channel_id}/common_teams endpoint

Risk Information
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Description

Exposure of email service credentials to users without administrative rights in Devolutions Server.This issue affects Devolutions Server: before 2025.2.21, before 2025.3.9.

Description

Exposure of credentials in unintended requests in Devolutions Server.This issue affects Server: through 2025.2.20, through 2025.3.8.