Comparison Overview
FPT Japan

FPT Japan
3-5-19 Mita, Minatoku, Tokyo 108-0073, JP
Last Update: 01/05/2026
FPTジャパンホールディングスは、FPTコーポレーションの子会社であるFPTソフトウェアの日本法人です。 FPTソフトウェアは、ベトナムに本社を置くグローバルなテクノロジーおよびITサービスプロバイダーであり、2024年の売上は12.2億USドル、30か国に33,000人以上の社員を擁しています。同社は、高度なアナリティクス、AI、デジタルプラットフォーム、クラウド、ハイパーオートメーション、IoT、ローコードなどの分野で世界水準のサービスを提供し、複雑化するビジネス環境における課題解決や新たなビジネスの創出を支援しています。これ...

Capgemini
Place de l'Étoile, Paris, 75017, FR
Last Update: 01/04/2026
Capgemini is an AI-powered global business and technology transformation partner, delivering tangible business value. We imagine the future of organizations and make it real with AI, technology and people. With our strong heritage of nearly 60 years, we are a responsibl...
Compliance Ranges Comparison

FPT Japan







Capgemini






Benchmark & Cyber Underwriting Signals
Incidents vs IT Services and IT Consulting Industry Avg (This Year)
No incidents recorded for FPT Japan in 2026.
Incidents vs IT Services and IT Consulting Industry Avg (This Year)
No incidents recorded for Capgemini in 2026.
Incident History - FPT Japan (X = Date, Y = Severity)
FPT Japan cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Capgemini (X = Date, Y = Severity)
Capgemini cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

FPT Japan

Capgemini
FAQ
Latest Global CVEs
Notepad++ is a free and open-source source code editor. Prior to 8.9.7, the Notepad++ Windows 11 x64 and ARM64 installer passes the attacker-influenced installation directory `$INSTDIR` from PowerEditor/installer/nppSetup.nsi into a PowerShell `-Command` string used by RegisterMSIX to invoke Add-AppxPackage, allowing PowerShell subexpression syntax such as `$()` in the installation path to execute commands in the installer's security context when the context menu component is selected. This issue is fixed in version 8.9.7.
calibre is an e-book manager. Prior to 9.12.0, the calibre Content Server endpoint POST /book-update-annotations/{library_id}/{book_id}/{fmt} in src/calibre/srv/books.py omits needs_db_write=True, causing Router.dispatch() to skip ctx.check_for_write_access() before update_annotations() passes attacker-controlled JSON to db.merge_annotations_for_book(), which allows a readonly user or an anonymous user on an unauthenticated deployment to persist unauthorized book annotation changes. This issue is fixed in version 9.12.0.
calibre is an e-book manager. Prior to 9.12.0, calibre processes attacker-controlled composite_template metadata from a malicious EPUB, OPF, PDF, or similar file through program: and a nested template() call whose formatter does not inherit allow_python_templates=False, allowing a nested python: template to reach compile_python_template and execute arbitrary Python code when the file is opened or imported. This issue is fixed in version 9.12.0.
Kestra is an open-source, event-driven orchestration platform. Prior to 2.0.0, Kestra's core/src/main/java/io/kestra/core/runners/pebble/functions/HttpFunction.java passes the user-controlled http() uri argument to URI.create() and the server-side HTTP client without restricting private, loopback, or link-local destinations, allowing an unauthenticated attacker to import and execute a flow that accesses internal services or cloud metadata.
Kestra is an open-source, event-driven orchestration platform. Prior to 2.0.0-rc6, Kestra's worker/src/main/java/io/kestra/worker/endpoint/WorkerEndpoint.java serves GET /worker without authentication and serializes the complete live Task object, which can expose commands, environment variables, HTTP headers, connection details, plaintext credentials, and execution identifiers while the main API on port 8080 remains protected. This issue is fixed in 2.0.0-rc6.