Comparison Overview
Cabka

Cabka
Kurfürstendamm 11, Berlin, 10719, DE
Last Update: 20/03/2026
Cabka is creating clever and transformative packaging solutions for moving goods around the world. We take plastic waste and transform it into reusable transport packaging. This is how we turn the used into the useful. Transformation is our power because we know that wh...

Amcor
Thurgauerstrasse 34, Zurich, CH, CH-8050
Last Update: 01/04/2026
As a global leader in packaging solutions for consumer and healthcare products, our industry-leading innovation capabilities, global scale and technical expertise help our customers grow and meet the needs of millions of consumers every day. We accelerate the possible b...
Compliance Ranges Comparison

Cabka







Amcor






Benchmark & Cyber Underwriting Signals
Incidents vs Packaging and Containers Manufacturing Industry Avg (This Year)
Cabka has 0.0% fewer incidents than the average of same-industry companies with at least one recorded incident.
Incidents vs Packaging and Containers Manufacturing Industry Avg (This Year)
No incidents recorded for Amcor in 2026.
Incident History - Cabka (X = Date, Y = Severity)
Cabka cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Amcor (X = Date, Y = Severity)
Amcor cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

Cabka

Amcor
FAQ
Latest Global CVEs
OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture industry. In versions 3.4.0 through 3.4.12, a crafted HTJ2K-compressed EXR file causes an unconditional process abort in any application that calls exr_start_read() on untrusted input, resulting in denial of service. The crash is triggered by a QCD marker whose lower five bits are zero, which OpenEXR passes into the vendored OpenJPH library while constructing the codestream and evaluating its quantization delta parameters. OpenJPH uses an assertion rather than a recoverable error to validate those bits, so any invalid value calls abort() directly and cannot be intercepted by surrounding error handling, a problem compounded by OpenEXR wrapping only its internal HT header parser in error handling while leaving the later codestream read and construction calls unprotected. This issue has been resolved in version 3.4.13.
A vulnerability has been found in Faveo Helpdesk up to 2.0.3. Affected is the function unlink of the file app/Http/Controllers/Admin/helpdesk/SettingsController.php of the component Logo Handler. Such manipulation of the argument data1 leads to path traversal. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The project was informed of the problem early through an issue report but has not responded yet.
A flaw has been found in Faveo Helpdesk up to 2.0.3. This impacts the function FormController::post_ticket_reply of the file app/Http/Controllers/Client/helpdesk/FormController.php of the component post-ticket-reply Endpoint. This manipulation causes missing authentication. The attack can be initiated remotely. The exploit has been published and may be used. The project was informed of the problem early through an issue report but has not responded yet.
Unauthenticated Arbitrary File Deletion in MasterStudy LMS <= 3.7.42 versions.
Unauthenticated Cross Site Scripting (XSS) in Stripe Payments <= 2.1.2 versions.