Comparison Overview
MeteoStar

MeteoStar
99 Inverness Dr E, Englewood, Colorado, 80112, US
Last Update: 13/02/2026
MeteoStar develops meteorologic software and products to domestic and international customers. First and foremost - we are data integrators. As a part of the OTT Hydromet Group, we are the only software company in a family of hardware sensor companies. We integrate w...

Canva
Kippax St, Surry Hills, New South Wales, AU, 2010
Last Update: 20/09/2026
We're a global online visual communications platform on a mission to empower the world to design. Featuring a simple drag-and-drop user interface and a vast range of templates ranging from presentations, documents, websites, social media graphics, posters, apparel to vi...
Compliance Ranges Comparison

MeteoStar







Canva






Benchmark & Cyber Underwriting Signals
Incidents vs Software Development Industry Avg (This Year)
No incidents recorded for MeteoStar in 2026.
Incidents vs Software Development Industry Avg (This Year)
Canva has 197.03% more incidents than the average of all companies with at least one recorded incident.
Incident History - MeteoStar (X = Date, Y = Severity)
MeteoStar cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Canva (X = Date, Y = Severity)
Canva cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

MeteoStar

Canva
FAQ
Latest Global CVEs
HTTP/2 servers could end up crashing due to inadvertently modifying its HPACK encoder concurrently. This happens because the server modifies the HPACK encoder from two goroutines without synchronization: one uses the encoder to encode a HEADERS frame as part of a response sent to a client and the other modifies the encoder's table size when handling a SETTINGS frame containing SETTINGS_HEADER_TABLE_SIZE that a client sends. A malicious client can repeatedly send a request while changing the header table size to crash the server.
Multiple ECH outer extension references are not permitted under RFC 9849; previously, a client could send a well-crafted packet that could trigger memory exhaustion in the server process by specifying multiple references. We now reject these as malformed and curb the memory amplification vector as a result.
A trusted template author may have previously written a valid template wherein the use of the 'yield' keyword would not be correctly escaped. We now ensure that valid keyword uses are escaped and non-keyword uses are not escaped.
Improper certificate validation in Microsoft Partner Center allows an unauthorized attacker to elevate privileges over a network.
Authorization bypass through user-controlled key in Microsoft Bookings allows an unauthorized attacker to elevate privileges over a network.