Comparison Overview
Flora & Fauna

Flora & Fauna
3/91 Campbell St, Surry Hills, 2010, AU
Last Update: 29/03/2026
Flora & Fauna is Australia’s kindest store — your trusted destination for 100% vegan, cruelty-free and low-impact products. From skincare to snacks, baby care to bathroom swaps, everything we stock meets strict ethical standards. No greenwashing, no nasties — just bet...

Harbor Freight Tools
26677 Agoura Road, Calabasas, 91302, US
Last Update: 07/09/2026
We're a 45 year-old, $8 billion national tool retailer with the energy, enthusiasm, and growth potential of a start-up. We have over 1,600 stores in 48 states across the country and are opening several new locations every week. We offer our customers more than 7,000 too...
Compliance Ranges Comparison

Flora & Fauna







Harbor Freight Tools






Benchmark & Cyber Underwriting Signals
Incidents vs Retail Industry Avg (This Year)
No incidents recorded for Flora & Fauna in 2026.
Incidents vs Retail Industry Avg (This Year)
No incidents recorded for Harbor Freight Tools in 2026.
Incident History - Flora & Fauna (X = Date, Y = Severity)
Flora & Fauna cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Harbor Freight Tools (X = Date, Y = Severity)
Harbor Freight Tools cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

Flora & Fauna

Harbor Freight Tools
FAQ
Latest Global CVEs
HTTP/2 servers could end up crashing due to inadvertently modifying its HPACK encoder concurrently. This happens because the server modifies the HPACK encoder from two goroutines without synchronization: one uses the encoder to encode a HEADERS frame as part of a response sent to a client and the other modifies the encoder's table size when handling a SETTINGS frame containing SETTINGS_HEADER_TABLE_SIZE that a client sends. A malicious client can repeatedly send a request while changing the header table size to crash the server.
Multiple ECH outer extension references are not permitted under RFC 9849; previously, a client could send a well-crafted packet that could trigger memory exhaustion in the server process by specifying multiple references. We now reject these as malformed and curb the memory amplification vector as a result.
A trusted template author may have previously written a valid template wherein the use of the 'yield' keyword would not be correctly escaped. We now ensure that valid keyword uses are escaped and non-keyword uses are not escaped.
Improper certificate validation in Microsoft Partner Center allows an unauthorized attacker to elevate privileges over a network.
Authorization bypass through user-controlled key in Microsoft Bookings allows an unauthorized attacker to elevate privileges over a network.