Comparison Overview
DRUNK ELEPHANT

DRUNK ELEPHANT
N/A
Last Update: 19/02/2026
Our Philosophy We are committed to using only ingredients that either directly benefit the health of the skin or support the integrity of our formulations. We never take into account whether something is synthetic or natural, instead choosing ingredients based on bioco...

Beiersdorf
Unnastraße 48, Hamburg, 20253, DE
Last Update: 15/09/2026
Beiersdorf has been a pioneer in innovative, high-quality skin care products and groundbreaking skin research for over 140 years. Our internationally beloved brands, including NIVEA – the world’s no. 1 skin care brand –, Eucerin, Hansaplast, La Prairie and Chantecaille,...
Compliance Ranges Comparison

DRUNK ELEPHANT







Beiersdorf






Benchmark & Cyber Underwriting Signals
Incidents vs Personal Care Product Manufacturing Industry Avg (This Year)
No incidents recorded for DRUNK ELEPHANT in 2026.
Incidents vs Personal Care Product Manufacturing Industry Avg (This Year)
No incidents recorded for Beiersdorf in 2026.
Incident History - DRUNK ELEPHANT (X = Date, Y = Severity)
DRUNK ELEPHANT cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Beiersdorf (X = Date, Y = Severity)
Beiersdorf cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

DRUNK ELEPHANT

Beiersdorf
FAQ
Latest Global CVEs
Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in The Wikimedia Foundation Mediawiki - CentralAuth extension allows Stored XSS. This issue affects Mediawiki - CentralAuth extension: before 1.46.1, 1.45.5, 1.43.10.
Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Wikimedia Foundation MediaWiki - WikiLambda extension allows Stored XSS. This issue affects MediaWiki - WikiLambda extension: before 1.46.1.
Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in The Wikimedia Foundation Mediawiki - Refreshed skin allows Stored XSS. This issue affects Mediawiki - Refreshed skin: before 1.46.1, 1.45.5, 1.43.10.
XML injection (aka blind XPath injection) vulnerability in The Wikimedia Foundation Mediawiki - EasyTimeline extension allows XML Injection. This issue affects Mediawiki - EasyTimeline extension: before 1.46.1, 1.45.5, 1.43.10.
anchorme through 3.0.8 contains a regular expression denial of service vulnerability in the IPv6 host extraction regex due to catastrophic backtracking. Attackers can supply specially crafted input strings with repeated patterns to cause exponential regex engine backtracking, blocking the Node.js event loop and denying service to other requests.
- https://gist.github.com/mmadersbacher/46050b4224eb979431986cdef1dd2ad3
- https://github.com/alexcorvi/anchorme.js
- https://github.com/alexcorvi/anchorme.js/blob/f3ae9850baa344f27b46bb149e9b891831d273b1/src/index.ts#L109
- https://www.npmjs.com/package/anchorme
- https://www.vulncheck.com/advisories/anchorme-through-3.0.8-regular-expression-denial-of-service