Comparison Overview
iQor

iQor
6700 N. Andrews Ave., Ste. 600 , Fort Lauderdale, FL, US, 33309
Last Update: 02/04/2026
iQor CXBPO™ is a trusted partner in intelligent customer experience solutions for global brands and a portfolio company of Mill Point Capital. With 47,000+ employees across 11 countries, iQor combines three decades of expertise with AI-driven innovation to optimize perf...

Firstsource
2nd, 3rd, 4th & 5th Floor, Paradigm B, Mindspace, Mumbai, 400064, IN
Last Update: 15/07/2026
Established in 2001, Firstsource Solutions Limited, an RP-Sanjiv Goenka Group company, is a specialized BPS partner with hyper-focused, domain-centered teams and cutting-edge tech, data, and analytics. We help our clients across healthcare, banking and financial servi...
Compliance Ranges Comparison

iQor







Firstsource






Benchmark & Cyber Underwriting Signals
Incidents vs Outsourcing and Offshoring Consulting Industry Avg (This Year)
No incidents recorded for iQor in 2026.
Incidents vs Outsourcing and Offshoring Consulting Industry Avg (This Year)
Firstsource has 1.96% fewer incidents than the average of all companies with at least one recorded incident.
Incident History - iQor (X = Date, Y = Severity)
iQor cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Firstsource (X = Date, Y = Severity)
Firstsource cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

iQor

Firstsource
FAQ
Latest Global CVEs
Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in The Wikimedia Foundation Mediawiki - CentralAuth extension allows Stored XSS. This issue affects Mediawiki - CentralAuth extension: before 1.46.1, 1.45.5, 1.43.10.
Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Wikimedia Foundation MediaWiki - WikiLambda extension allows Stored XSS. This issue affects MediaWiki - WikiLambda extension: before 1.46.1.
Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in The Wikimedia Foundation Mediawiki - Refreshed skin allows Stored XSS. This issue affects Mediawiki - Refreshed skin: before 1.46.1, 1.45.5, 1.43.10.
XML injection (aka blind XPath injection) vulnerability in The Wikimedia Foundation Mediawiki - EasyTimeline extension allows XML Injection. This issue affects Mediawiki - EasyTimeline extension: before 1.46.1, 1.45.5, 1.43.10.
anchorme through 3.0.8 contains a regular expression denial of service vulnerability in the IPv6 host extraction regex due to catastrophic backtracking. Attackers can supply specially crafted input strings with repeated patterns to cause exponential regex engine backtracking, blocking the Node.js event loop and denying service to other requests.
- https://gist.github.com/mmadersbacher/46050b4224eb979431986cdef1dd2ad3
- https://github.com/alexcorvi/anchorme.js
- https://github.com/alexcorvi/anchorme.js/blob/f3ae9850baa344f27b46bb149e9b891831d273b1/src/index.ts#L109
- https://www.npmjs.com/package/anchorme
- https://www.vulncheck.com/advisories/anchorme-through-3.0.8-regular-expression-denial-of-service