Comparison Overview
_

_
N/A
Last Update: 09/11/2025
Conheça mais sobre as pessoas que fazem a beleza do Grupo Boticário acontecer todos os dias. E, também, a beleza que o Grupo Boticário faz por elas.

Natura
Av. Alexandre Colares, 1.188, Vila Jaguara, São Paulo, São Paulo, BR, 05106-0000
Last Update: 28/03/2026
Founded in 1969, Natura is a Brazilian multinational in the cosmetics and personal care segment, a leader in direct sales in Brazil, and recognized for protecting the Amazon social biodiversity through its sustainable business model. Cruelty free. 100% vegan. With 7,000...
Compliance Ranges Comparison

_







Natura






Benchmark & Cyber Underwriting Signals
Incidents vs Personal Care Product Manufacturing Industry Avg (This Year)
No incidents recorded for _ in 2026.
Incidents vs Personal Care Product Manufacturing Industry Avg (This Year)
No incidents recorded for Natura in 2026.
Incident History - _ (X = Date, Y = Severity)
_ cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Natura (X = Date, Y = Severity)
Natura cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

_

Natura
FAQ
Latest Global CVEs
An authenticated user with the read role may read limited amounts of uninitialized stack memory via specially-crafted issuances of the filemd5 command
The $_internalApplyOplogUpdate aggregation pipeline stage can be used to execute a document diff containing a malformed binary diff to return memory out-of-bounds or crash the server. $_internalApplyOplogUpdate can be executed by any authenticated user with access to the aggregate command.
An authorized user could trigger a server crash by running a query with a 2dsphere index on a field that stores a GeoJSON GeometryCollection containing a Polygon with a strict-winding CRS. Strict-winding polygons are intentionally unsupported for indexing, but the guard that rejects them does not inspect members of a GeometryCollection, allowing the unsafe path to be reached which ends with an ensuing null-pointer dereference.
The ldapQueryPassword parameter, when set through the runtime setParameter command, will log the new password to the mongod.log file in plain text.
An authenticated user can cause a MongoDB server to crash or return incorrect results by creating documents that interfere with internal metadata processing during query execution. This stems from insufficient separation between user-controlled document fields and internal metadata in certain execution paths.