Comparison Overview
BarnesCare

BarnesCare
5000 Manchester Ave, St Louis, Missouri, undefined, US
Last Update: 10/03/2026
BarnesCare is the occupational medicine division of BJC HealthCare. BarnesCare has worked with St. Louis businesses since 1946, applying the best occupational medicine to evaluate and treat your employees. Our goal is to keep your employees healthy and safe by working ...

NSW Health
1 Reserve Road, St. Leonards, 2065, AU
Last Update: 01/04/2026
With more than 170,000 staff and 228 hospitals, there are millions of ways we are enriching the health of the NSW community every day. In front of a patient, working in a kitchen, developing new treatments, or at a desk, each one of our staff is a vital member o...
Compliance Ranges Comparison

BarnesCare







NSW Health






Benchmark & Cyber Underwriting Signals
Incidents vs Hospitals and Health Care Industry Avg (This Year)
No incidents recorded for BarnesCare in 2026.
Incidents vs Hospitals and Health Care Industry Avg (This Year)
No incidents recorded for NSW Health in 2026.
Incident History - BarnesCare (X = Date, Y = Severity)
BarnesCare cyber incidents detection timeline including parent company and subsidiaries.
Incident History - NSW Health (X = Date, Y = Severity)
NSW Health cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

BarnesCare

NSW Health
FAQ
Latest Global CVEs
An authenticated user with the read role may read limited amounts of uninitialized stack memory via specially-crafted issuances of the filemd5 command
The $_internalApplyOplogUpdate aggregation pipeline stage can be used to execute a document diff containing a malformed binary diff to return memory out-of-bounds or crash the server. $_internalApplyOplogUpdate can be executed by any authenticated user with access to the aggregate command.
An authorized user could trigger a server crash by running a query with a 2dsphere index on a field that stores a GeoJSON GeometryCollection containing a Polygon with a strict-winding CRS. Strict-winding polygons are intentionally unsupported for indexing, but the guard that rejects them does not inspect members of a GeometryCollection, allowing the unsafe path to be reached which ends with an ensuing null-pointer dereference.
The ldapQueryPassword parameter, when set through the runtime setParameter command, will log the new password to the mongod.log file in plain text.
An authenticated user can cause a MongoDB server to crash or return incorrect results by creating documents that interfere with internal metadata processing during query execution. This stems from insufficient separation between user-controlled document fields and internal metadata in certain execution paths.