Comparison Overview
OpenSync

OpenSync
325 Lytton Ave, Palo Alto, 94301, US
Last Update: 12/02/2026
OpenSync, originally a proprietary device middle layer, has been made open-source since 2018, to promote innovation, eliminate vendor lock-in, and speed up time-to-market. The framework efficiently deploys and manages consumer services on a massively scalable and divers...

Pitney Bowes
27 Waterview Dr, Shelton, 06484, US
Last Update: 29/04/2026
Pitney Bowes is a technology-driven company that provides digital shipping solutions, mailing innovation, and financial services to clients around the world – including more than 90 percent of the Fortune 500. Small businesses to large enterprises, and government entiti...
Compliance Ranges Comparison

OpenSync







Pitney Bowes






Benchmark & Cyber Underwriting Signals
Incidents vs Software Development Industry Avg (This Year)
No incidents recorded for OpenSync in 2026.
Incidents vs Software Development Industry Avg (This Year)
Pitney Bowes has 188.46% more incidents than the average of all companies with at least one recorded incident.
Incident History - OpenSync (X = Date, Y = Severity)
OpenSync cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Pitney Bowes (X = Date, Y = Severity)
Pitney Bowes cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

OpenSync

Pitney Bowes
FAQ
Latest Global CVEs
A flaw was found in libsoup. After a CONNECT tunnel is established through an HTTP proxy, libsoup incorrectly attaches the Proxy-Authorization header to subsequent HTTPS requests sent through that tunnel to the destination server. This allows the destination server to capture proxy credentials, leading to information disclosure.
A flaw was found in libsoup. The chunked transfer encoding parser uses a permissive parsing function for chunk sizes that silently accepts inputs violating RFC 9112, including leading whitespace, plus sign prefixes, and trailing invalid characters. When libsoup operates behind a strict frontend proxy, this parsing differential can be exploited to smuggle HTTP requests.
A flaw was found in libsoup. An unsigned integer underflow in the soup_filter_input_stream_read_until() function causes a heap buffer over-read when parsing multipart HTTP responses. A malicious HTTP server can exploit this by sending a crafted multipart response, potentially causing the client application to crash or disclose sensitive heap memory.
Weintek cMT3092X HMI allows a non-privileged user to modify tokens to escalate privileges.
Weintek cMT3092X HMI stores user account passwords in plaintext.