Comparison Overview
Hapag-Lloyd Cruises

Hapag-Lloyd Cruises
Heidenkamspweg 58, Hamburg, 20097, DE
Last Update: 23/01/2026
Hapag-Lloyd Cruises gilt im deutschsprachigen Raum als führende Kreuzfahrtmarke im Luxus- und Expeditionsbereich. Zur Flotte gehören aktuell fünf Schiffe. Unsere Schiffe sind klein, individuell und herausragend in ihrer Klasse: Die weltweit besten Luxusschiffe EUROPA u...

Costa Crociere S.p.A.
Piazza Piccapietra 48, Genova, IT, 16121
Last Update: 29/09/2026
Costa belongs to the Carnival Corporation & plc Group, listed on the London and New York stock exchanges, the largest cruise company in the world. Costa, the only Italian cruise company flying the Italian flag, has been sailing the world’s seas for more than 75 years,...
Compliance Ranges Comparison

Hapag-Lloyd Cruises







Costa Crociere S.p.A.






Benchmark & Cyber Underwriting Signals
Incidents vs Travel Arrangements Industry Avg (This Year)
No incidents recorded for Hapag-Lloyd Cruises in 2026.
Incidents vs Travel Arrangements Industry Avg (This Year)
No incidents recorded for Costa Crociere S.p.A. in 2026.
Incident History - Hapag-Lloyd Cruises (X = Date, Y = Severity)
Hapag-Lloyd Cruises cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Costa Crociere S.p.A. (X = Date, Y = Severity)
Costa Crociere S.p.A. cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

Hapag-Lloyd Cruises

Costa Crociere S.p.A.
FAQ
Latest Global CVEs
The web management service in affected RouterOS versions contains an integer underflow in its HTTP request body handling that is reachable before authentication. This can be leveraged by an unauthenticated network attacker to achieve arbitrary code execution as root, or to cause a denial of service, using a single crafted request.
Denuvo Anti-Tamper through 2026-03-04 allows bypass of a hypervisor presence check via CPUID interception (SimpleSvm.sys on AMD; hyperkd.sys and hyperhv.dll on Intel).
PeaZip before 11.3.0, in a non-default configuration, is vulnerable to OS command injection via a filename in an archive because "quotation character already used in the string" is mishandled.
Zilliz Attu before 3.0.0 has a Playground feature that does not require authentication for proxying arbitrary HTTP and HTTPS requests to URLs on the public internet.
The Playground feature of Zilliz Attu before 3.0.0 allows SSRF (proxying of requests to private IP addresses).