Comparison Overview
automobile.it srl

automobile.it srl
undefined, Milano, undefined, undefined, IT
Last Update: 29/12/2025
automobile.it è un sito di annunci di auto usate, nuove, Km 0 e a noleggio di proprietà del gruppo Adevinta. Semplificando il processo di ricerca e adottando un approccio amichevole, automobile.it aiuta gli utenti a trovare la loro prossima auto. Il sito si rivolge a pe...

TVS Motor Company
Hosur, Tamil Nadu , Hosur, 635109, IN
Last Update: 03/04/2026
TVS Motor Company is a reputed two and three-wheeler manufacturer globally, championing progress through Mobility with a focus on sustainability. Rooted in our 100-year legacy of Trust, Value, and Passion for Customers and Exactness, we take pride in making internationa...
Compliance Ranges Comparison

automobile.it srl







TVS Motor Company






Benchmark & Cyber Underwriting Signals
Incidents vs Motor Vehicle Manufacturing Industry Avg (This Year)
No incidents recorded for automobile.it srl in 2026.
Incidents vs Motor Vehicle Manufacturing Industry Avg (This Year)
No incidents recorded for TVS Motor Company in 2026.
Incident History - automobile.it srl (X = Date, Y = Severity)
automobile.it srl cyber incidents detection timeline including parent company and subsidiaries.
Incident History - TVS Motor Company (X = Date, Y = Severity)
TVS Motor Company cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

automobile.it srl

TVS Motor Company
FAQ
Latest Global CVEs
Files or directories accessible to external parties in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.
Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.
Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.
NoteGen before 0.32.0 grants the Tauri shell plugin shell:allow-execute capability for bash, python, and python3 with arbitrary arguments in the default desktop capabilities. JavaScript running in the application webview can therefore invoke plugin:shell|execute to run attacker-controlled operating system commands with the privileges of the NoteGen process. In combination with script execution in the webview (for example via chat XSS), this enables full remote code execution on the user's machine.
NoteGen before 0.32.0 renders AI chat responses with markdown-it configured with html:true and injects the result into the DOM via dangerouslySetInnerHTML in chat-preview, without HTML sanitization and with CSP set to null. Attacker-controlled content that reaches the model prompt (for example a malicious skill REFERENCE.md that instructs the model to emit HTML) can cause the model response to include executable markup such as an img onerror handler. When the user views the chat response, that markup runs as JavaScript in the privileged Tauri webview, enabling arbitrary script execution in the application context (cross-site scripting).