Comparison Overview
eSimChoice

eSimChoice
Leawood, US
Last Update: 14/02/2026
Save money on your roaming charges at eSimChoice.com. With several data bundles to choose from, in over 200 countries - staying connected has never been easier. eSimChoice allows travellers to arrive connected, whilst avoiding the large roaming charges typically passe...

Totalplay
Avenida San Jerónimo 252, Álvaro Obregón, 01090, MX
Last Update: 01/04/2026
Somos una empresa orgullosamente mexicana, líder en tecnología, telecomunicaciones y entretenimiento. Estamos siempre a la vanguardia con el objetivo de llevar a nuestros clientes lo mejor en conectividad, ya sea para que estén cerca de los que más quieren ó puedan alc...
Compliance Ranges Comparison

eSimChoice







Totalplay






Benchmark & Cyber Underwriting Signals
Incidents vs Telecommunications Industry Avg (This Year)
No incidents recorded for eSimChoice in 2026.
Incidents vs Telecommunications Industry Avg (This Year)
No incidents recorded for Totalplay in 2026.
Incident History - eSimChoice (X = Date, Y = Severity)
eSimChoice cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Totalplay (X = Date, Y = Severity)
Totalplay cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

eSimChoice

Totalplay
FAQ
Latest Global CVEs
Files or directories accessible to external parties in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.
Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.
Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.
NoteGen before 0.32.0 grants the Tauri shell plugin shell:allow-execute capability for bash, python, and python3 with arbitrary arguments in the default desktop capabilities. JavaScript running in the application webview can therefore invoke plugin:shell|execute to run attacker-controlled operating system commands with the privileges of the NoteGen process. In combination with script execution in the webview (for example via chat XSS), this enables full remote code execution on the user's machine.
NoteGen before 0.32.0 renders AI chat responses with markdown-it configured with html:true and injects the result into the DOM via dangerouslySetInnerHTML in chat-preview, without HTML sanitization and with CSP set to null. Attacker-controlled content that reaches the model prompt (for example a malicious skill REFERENCE.md that instructs the model to emit HTML) can cause the model response to include executable markup such as an img onerror handler. When the user views the chat response, that markup runs as JavaScript in the privileged Tauri webview, enabling arbitrary script execution in the application context (cross-site scripting).