Comparison Overview
COMO Foundation

COMO Foundation
6B Orange Grove Road , Singapore , 258332, SG
Last Update: 01/04/2026
COMO Foundation is the philanthropic arm of the COMO Group (Club 21, COMO Hotels and Resorts, COMO Shambhala, COMO Dempsey). We work with innovative, ambitious non-profit organisations to close the gender gap for some of the most underserved women and girls globally. I...

AIESEC
5605 Avenue de Gaspé, Montreal, CA
Last Update: 29/03/2026
AIESEC develops leadership among youth aged 18 to 30 and contributes to strengthening the global employability market by providing an end-to-end international talent recruitment solution for Enterprises, NGOs, and Start-ups. AIESEC is the world's largest youth-run orga...
Compliance Ranges Comparison

COMO Foundation







AIESEC






Benchmark & Cyber Underwriting Signals
Incidents vs Non-profit Organizations Industry Avg (This Year)
No incidents recorded for COMO Foundation in 2026.
Incidents vs Non-profit Organizations Industry Avg (This Year)
No incidents recorded for AIESEC in 2026.
Incident History - COMO Foundation (X = Date, Y = Severity)
COMO Foundation cyber incidents detection timeline including parent company and subsidiaries.
Incident History - AIESEC (X = Date, Y = Severity)
AIESEC cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

COMO Foundation

AIESEC
FAQ
Latest Global CVEs
An authenticated user with the read role may read limited amounts of uninitialized stack memory via specially-crafted issuances of the filemd5 command
The $_internalApplyOplogUpdate aggregation pipeline stage can be used to execute a document diff containing a malformed binary diff to return memory out-of-bounds or crash the server. $_internalApplyOplogUpdate can be executed by any authenticated user with access to the aggregate command.
An authorized user could trigger a server crash by running a query with a 2dsphere index on a field that stores a GeoJSON GeometryCollection containing a Polygon with a strict-winding CRS. Strict-winding polygons are intentionally unsupported for indexing, but the guard that rejects them does not inspect members of a GeometryCollection, allowing the unsafe path to be reached which ends with an ensuing null-pointer dereference.
The ldapQueryPassword parameter, when set through the runtime setParameter command, will log the new password to the mongod.log file in plain text.
An authenticated user can cause a MongoDB server to crash or return incorrect results by creating documents that interfere with internal metadata processing during query execution. This stems from insufficient separation between user-controlled document fields and internal metadata in certain execution paths.