Comparison Overview
George at Asda

George at Asda
George House, Lutterworth, GB
Last Update: 26/02/2026
George is a true giant in UK fashion retail. Number one for value in the UK, we have 4.5 million active dot com users and presence in 580 Asda stores. We also direct sell to over 150 countries. And we’ve been reimagining fashion retail since 1989. We want to bring JOY ...

Bata Group
Avenue d'ouchy 61, Lausanne, 1006, CH
Last Update: 01/04/2026
The Bata Group is one of the world's leading manufacturers and retailers of quality footwear. A global concern with more than 32,000 employees, 21 production facilities, over 5,300 stores in more than 70 countries across the globe, Bata has been providing the best shoes...
Compliance Ranges Comparison

George at Asda







Bata Group






Benchmark & Cyber Underwriting Signals
Incidents vs Retail Apparel and Fashion Industry Avg (This Year)
No incidents recorded for George at Asda in 2026.
Incidents vs Retail Apparel and Fashion Industry Avg (This Year)
No incidents recorded for Bata Group in 2026.
Incident History - George at Asda (X = Date, Y = Severity)
George at Asda cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Bata Group (X = Date, Y = Severity)
Bata Group cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

George at Asda

Bata Group
FAQ
Latest Global CVEs
Files or directories accessible to external parties in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.
Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.
Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.
NoteGen before 0.32.0 grants the Tauri shell plugin shell:allow-execute capability for bash, python, and python3 with arbitrary arguments in the default desktop capabilities. JavaScript running in the application webview can therefore invoke plugin:shell|execute to run attacker-controlled operating system commands with the privileges of the NoteGen process. In combination with script execution in the webview (for example via chat XSS), this enables full remote code execution on the user's machine.
NoteGen before 0.32.0 renders AI chat responses with markdown-it configured with html:true and injects the result into the DOM via dangerouslySetInnerHTML in chat-preview, without HTML sanitization and with CSP set to null. Attacker-controlled content that reaches the model prompt (for example a malicious skill REFERENCE.md that instructs the model to emit HTML) can cause the model response to include executable markup such as an img onerror handler. When the user views the chat response, that markup runs as JavaScript in the privileged Tauri webview, enabling arbitrary script execution in the application context (cross-site scripting).