Comparison Overview
Atrium Windows & Doors

Atrium Windows & Doors
None, None, None, None, US, None
Last Update: 03/04/2026
For more than 50 years, Atrium Corporation has offered the highest quality window and door products to builders, contractors and distributors in the residential construction industry. Dedicated to meeting the needs of its customers, the Atrium family of brands provides ...

ASSA ABLOY Group
Klarabergsviadukten 90, Stockholm, SE-10723, SE
Last Update: 02/04/2026
Let’s create a safer and more open world – together! ASSA ABLOY is the global leader in access solutions with sales of SEK 150 billion and 63,000 employees. The Group has operations in over 70 countries and sales worldwide. ASSA ABLOY’s innovations enable safe, secure ...
Compliance Ranges Comparison

Atrium Windows & Doors







ASSA ABLOY Group






Benchmark & Cyber Underwriting Signals
Incidents vs Wholesale Building Materials Industry Avg (This Year)
No incidents recorded for Atrium Windows & Doors in 2026.
Incidents vs Wholesale Building Materials Industry Avg (This Year)
No incidents recorded for ASSA ABLOY Group in 2026.
Incident History - Atrium Windows & Doors (X = Date, Y = Severity)
Atrium Windows & Doors cyber incidents detection timeline including parent company and subsidiaries.
Incident History - ASSA ABLOY Group (X = Date, Y = Severity)
ASSA ABLOY Group cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

Atrium Windows & Doors

ASSA ABLOY Group
FAQ
Latest Global CVEs
Files or directories accessible to external parties in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.
Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.
Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.
NoteGen before 0.32.0 grants the Tauri shell plugin shell:allow-execute capability for bash, python, and python3 with arbitrary arguments in the default desktop capabilities. JavaScript running in the application webview can therefore invoke plugin:shell|execute to run attacker-controlled operating system commands with the privileges of the NoteGen process. In combination with script execution in the webview (for example via chat XSS), this enables full remote code execution on the user's machine.
NoteGen before 0.32.0 renders AI chat responses with markdown-it configured with html:true and injects the result into the DOM via dangerouslySetInnerHTML in chat-preview, without HTML sanitization and with CSP set to null. Attacker-controlled content that reaches the model prompt (for example a malicious skill REFERENCE.md that instructs the model to emit HTML) can cause the model response to include executable markup such as an img onerror handler. When the user views the chat response, that markup runs as JavaScript in the privileged Tauri webview, enabling arbitrary script execution in the application context (cross-site scripting).