Comparison Overview

Festival Baltimore

VS

Madison Ballet

Festival Baltimore

1000 Hilltop Circle, Baltimore, Maryland, 21250, US
Last Update: 2025-12-10

Festival Baltimore is a classical music festival based at University of Maryland, Baltimore County, featuring world-class performing artists and faculty. It's driving idea is to share the unique experience of hearing collections of works of the greatest classical composers of the past and present in their entirety. It is a rare opportunity to hear the complete works of a particular kind within one night performed by the same artist. Our festival provides a sequence of such nights with a wide range of styles and types of works, along with an opportunity for young aspiring students to work on and perform one of them. The 2019 Festival embraces collections of works by composers of four centuries. Each concert focuses on one specific genre - the piano, violin or viola sonata, the string or piano trio; or specific genre - black art song. Guests of the Festival Baltimore will experience an elucidating retrospective look through the specific genre in a heritage of a given composer. Don't miss a chance to embrace a musician's lifetime in one concert! ​ Festival Baltimore is made possible with financial support and personal contribution of the members of the Music for Minds, Inc., a 501(c)3 non-profit organization.

NAICS: 7111
NAICS Definition: Performing Arts Companies
Employees: 1
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Madison Ballet

6734 Odana Rd, Madison, Wisconsin, 53719, US
Last Update: 2025-12-09
Between 750 and 799

As the resident ballet company of the Overture Center for the Arts and Wisconsin’s second largest dance organization, we bring world-class ballet to the greater Madison area. We are training the next generation of world-class dancers and inspiring all generations of audiences. We create opportunities to experience the power of dance, on and off the stage, for all ages, genders and races. We pioneer change within our community. We don't just lift the curtain. We work to eliminate the boundary completely.

NAICS: 711
NAICS Definition:
Employees: 35
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/festival-baltimore.jpeg
Festival Baltimore
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/madison-ballet.jpeg
Madison Ballet
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
Festival Baltimore
100%
Compliance Rate
0/4 Standards Verified
Madison Ballet
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Performing Arts Industry Average (This Year)

No incidents recorded for Festival Baltimore in 2025.

Incidents vs Performing Arts Industry Average (This Year)

No incidents recorded for Madison Ballet in 2025.

Incident History — Festival Baltimore (X = Date, Y = Severity)

Festival Baltimore cyber incidents detection timeline including parent company and subsidiaries

Incident History — Madison Ballet (X = Date, Y = Severity)

Madison Ballet cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/festival-baltimore.jpeg
Festival Baltimore
Incidents

No Incident

https://images.rankiteo.com/companyimages/madison-ballet.jpeg
Madison Ballet
Incidents

No Incident

FAQ

Both Festival Baltimore company and Madison Ballet company demonstrate a comparable AI Cybersecurity Score, with strong governance and monitoring frameworks in place.

Historically, Madison Ballet company has disclosed a higher number of cyber incidents compared to Festival Baltimore company.

In the current year, Madison Ballet company and Festival Baltimore company have not reported any cyber incidents.

Neither Madison Ballet company nor Festival Baltimore company has reported experiencing a ransomware attack publicly.

Neither Madison Ballet company nor Festival Baltimore company has reported experiencing a data breach publicly.

Neither Madison Ballet company nor Festival Baltimore company has reported experiencing targeted cyberattacks publicly.

Neither Festival Baltimore company nor Madison Ballet company has reported experiencing or disclosing vulnerabilities publicly.

Neither Festival Baltimore nor Madison Ballet holds any compliance certifications.

Neither company holds any compliance certifications.

Neither Festival Baltimore company nor Madison Ballet company has publicly disclosed detailed information about the number of their subsidiaries.

Madison Ballet company employs more people globally than Festival Baltimore company, reflecting its scale as a Performing Arts.

Neither Festival Baltimore nor Madison Ballet holds SOC 2 Type 1 certification.

Neither Festival Baltimore nor Madison Ballet holds SOC 2 Type 2 certification.

Neither Festival Baltimore nor Madison Ballet holds ISO 27001 certification.

Neither Festival Baltimore nor Madison Ballet holds PCI DSS certification.

Neither Festival Baltimore nor Madison Ballet holds HIPAA certification.

Neither Festival Baltimore nor Madison Ballet holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

LibreChat is a ChatGPT clone with additional features. In versions 0.8.0 and below, there is no handler for JSON parsing errors; SyntaxError from express.json() includes user input in the error message, which gets reflected in responses. User input (including HTML/JavaScript) can be exposed in error responses, creating an XSS risk if Content-Type isn't strictly enforced. This issue does not have a fix at the time of publication.

Risk Information
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

LibreChat is a ChatGPT clone with additional features. In versions 0.8.0 and below, when creating prompts, JSON requests are sent to define and modify the prompts via PATCH endpoint for prompt groups (/api/prompts/groups/:groupId). However, the request bodies are not sufficiently validated for proper input, enabling users to modify prompts in a way that was not intended as part of the front end system. The patchPromptGroup function passes req.body directly to updatePromptGroup() without filtering sensitive fields. This issue is fixed in version 0.8.1.

Risk Information
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

LibreChat is a ChatGPT clone with additional features. In versions 0.8.0 and below, when a user posts a question, the iconURL parameter of the POST request can be modified by an attacker. The malicious code is then stored in the chat which can then be shared to other users. When sharing chats with a potentially malicious “tracker”, resources loaded can lead to loss of privacy for users who view the chat link that is sent to them. This issue is fixed in version 0.8.1.

Risk Information
cvss4
Base: 8.6
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:N/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

MaxKB is an open-source AI assistant for enterprise. Versions 2.3.1 and below have improper file permissions which allow attackers to overwrite the built-in dynamic linker and other critical files, potentially resulting in privilege escalation. This issue is fixed in version 2.4.0.

Risk Information
cvss3
Base: 8.8
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Description

MaxKB is an open-source AI assistant for enterprise. In versions 2.3.1 and below, the tool module allows an attacker to escape the sandbox environment and escalate privileges under certain concurrent conditions. This issue is fixed in version 2.4.0.

Risk Information
cvss3
Base: 8.8
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H