Comparison Overview
JW Marriott Bucharest Grand Hotel

JW Marriott Bucharest Grand Hotel
Calea 13 Septembrie 90, Bucharest, 050726, RO
Last Update: 25/01/2026
Located in an area of historic and national interest, JW Marriott Bucharest Grand Hotel in Romania is the only five-star, hotel in the district and is in close proximity to the stately Palace of Parliament and People’s Salvation Cathedral. Culturally rich and with a s...

Best Western Hotels & Resorts
6201 N 24th Parkway, Phoenix, 85016, US
Last Update: 04/04/2026
Best Western Hotels & Resorts headquartered in Phoenix, Arizona, is a privately held hotel company within the BWH℠ Hotels global enterprise. With 19 brands and approximately 4,300 hotels in over 100 countries and territories worldwide*, BWH Hotels suits the needs of dev...
Compliance Ranges Comparison

JW Marriott Bucharest Grand Hotel







Best Western Hotels & Resorts






Benchmark & Cyber Underwriting Signals
Incidents vs Hospitality Industry Avg (This Year)
No incidents recorded for JW Marriott Bucharest Grand Hotel in 2026.
Incidents vs Hospitality Industry Avg (This Year)
No incidents recorded for Best Western Hotels & Resorts in 2026.
Incident History - JW Marriott Bucharest Grand Hotel (X = Date, Y = Severity)
JW Marriott Bucharest Grand Hotel cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Best Western Hotels & Resorts (X = Date, Y = Severity)
Best Western Hotels & Resorts cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

JW Marriott Bucharest Grand Hotel

Best Western Hotels & Resorts
FAQ
Latest Global CVEs
Fides is an open-source privacy engineering platform. From version 2.33.0 to before version 2.84.5, there is a DOM-based XSS vulnerability in fides.js via the fides_description override. This issue has been patched in version 2.84.5.
WACRM prior to commit 73041bf contain an authorization bypass vulnerability in the automation engine that allows authenticated attackers to access and modify contacts belonging to other tenants by supplying an arbitrary caller-controlled contact_id in the POST request body without tenant ownership verification. Attackers can exploit the service-role client that bypasses row-level security to modify victim contact fields including name, email, and company across tenant boundaries using only a known contact UUID.
Namespace attributes are not encoded correctly during HTML serialization. This allows bypassing the cross-site scripting prevention mechanism of typo3/html-sanitizer before version 2.3.2.
When ALLOW_INSECURE_RAW_TEXT is enabled, whitespace-variant closing tags (e.g., </style\t>) are not recognized by the sanitizer but accepted by browsers as valid end tags, allowing subsequent content to escape sanitization. This allows bypassing the cross-site scripting prevention mechanism of typo3/html-sanitizer before version 2.3.2.
Headplane is a feature-complete Web UI for Headscale. Prior to versions 0.6.3 and 0.7.0-beta.3, Headplane was vulnerable to a path traversal / authorization bypass in the Headscale API client used by node and user rename operations. This issue has been patched in versions 0.6.3 and 0.7.0-beta.3.