Comparison Overview
DBR & CO

DBR & CO
436 Seventh Avenue, Suite 2800, Pittsburgh, 15219, US
Last Update: 05/06/2026
DBR & CO is a nationally recognized Registered Investment Advisor (RIA) specializing in building tailored financial plans and investment programs for individuals, multi-generational families, retirement plan sponsors, and institutions. Our goals-based advisory approach ...

BlackRock
50 Hudson Yards, New York, NY, US, 10001
Last Update: 19/07/2026
BlackRock is a global asset manager and technology provider dedicated to helping more and more people experience financial well-being. We help millions of people invest to build savings that serve them throughout their lives. We always start with our clients’ needs a...
Compliance Ranges Comparison

DBR & CO







BlackRock






Benchmark & Cyber Underwriting Signals
Incidents vs Financial Services Industry Avg (This Year)
No incidents recorded for DBR & CO in 2026.
Incidents vs Financial Services Industry Avg (This Year)
No incidents recorded for BlackRock in 2026.
Incident History - DBR & CO (X = Date, Y = Severity)
DBR & CO cyber incidents detection timeline including parent company and subsidiaries.
Incident History - BlackRock (X = Date, Y = Severity)
BlackRock cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

DBR & CO

BlackRock
FAQ
Latest Global CVEs
A flaw was found in libsoup. After a CONNECT tunnel is established through an HTTP proxy, libsoup incorrectly attaches the Proxy-Authorization header to subsequent HTTPS requests sent through that tunnel to the destination server. This allows the destination server to capture proxy credentials, leading to information disclosure.
A flaw was found in libsoup. The chunked transfer encoding parser uses a permissive parsing function for chunk sizes that silently accepts inputs violating RFC 9112, including leading whitespace, plus sign prefixes, and trailing invalid characters. When libsoup operates behind a strict frontend proxy, this parsing differential can be exploited to smuggle HTTP requests.
A flaw was found in libsoup. An unsigned integer underflow in the soup_filter_input_stream_read_until() function causes a heap buffer over-read when parsing multipart HTTP responses. A malicious HTTP server can exploit this by sending a crafted multipart response, potentially causing the client application to crash or disclose sensitive heap memory.
Weintek cMT3092X HMI allows a non-privileged user to modify tokens to escalate privileges.
Weintek cMT3092X HMI stores user account passwords in plaintext.