Comparison Overview
Holland

Holland
700 S Waverly Rd, Holland, MI, 49423, US
Last Update: 04/12/2025
Founded in 1929 in Holland, Mich., Holland has long been recognized for delivering the most next-day service lanes in its territory and annually records one of the lowest claim ratios in the industry. Originally committed to serving the central United States, Holland ha...

STEF
93 Boulevard Malesherbes, Paris, 75008, FR
Last Update: 14/09/2026
STEF group is the European leader for temperature controlled logistics and transport. Our 22,000 employees in 8 countries are dedicated to serve everyday agrifood, distribution, foodservice and seafood players with the highest standards of security, rapidity and quality...
Compliance Ranges Comparison

Holland







STEF






Benchmark & Cyber Underwriting Signals
Incidents vs Truck Transportation Industry Avg (This Year)
No incidents recorded for Holland in 2026.
Incidents vs Truck Transportation Industry Avg (This Year)
No incidents recorded for STEF in 2026.
Incident History - Holland (X = Date, Y = Severity)
Holland cyber incidents detection timeline including parent company and subsidiaries.
Incident History - STEF (X = Date, Y = Severity)
STEF cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

Holland

STEF
FAQ
Latest Global CVEs
Authorization Bypass Through User-Controlled Key vulnerability in Ultimate Member Ultimate Member ultimate-member allows Privilege Escalation.This issue affects Ultimate Member: from n/a through 2.13.1.
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Addons, Templates) unlimited-elements-for-elementor allows Reflected XSS.This issue affects Unlimited Elements For Elementor (Free Widgets, Addons, Templates): from n/a through 2.0.20.
Improper Validation of Specified Quantity in Input vulnerability in Themeum Kirki kirki allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Kirki: from n/a through 6.3.1.
OpenAM before 16.1.3 contains a server-side request forgery vulnerability that allows attackers able to register or modify OAuth 2.0 clients to make OpenAM fetch internal resources via an unvalidated jwks_uri. Attackers can trigger unauthenticated fetches through client-authentication and ID-token validation to probe internal hosts, metadata endpoints or local files, or exhaust request threads for denial of service.
OpenAM before 16.1.3 contains an improper authorization vulnerability that allows delegated administrators to destroy sessions outside their realms because realm checks use the requester's realm. Authenticated accounts holding the iplanet-am-session-destroy-sessions attribute can supply a target session identifier or handle to forcibly log out users in any realm.