Comparison Overview
K-FLEX

K-FLEX
Roncello, IT
Last Update: 02/04/2026
K-FLEX is an Italian company specialising in the development of innovative solutions designed to improve living and working environments, prioritising well-being and energy efficiency. K-FLEX has production facilities and company networks around the globe in order to s...

Builders FirstSource
6031 Connection Dr, Suite 400, Irving, TX, US, 75039
Last Update: 30/03/2026
Builders FirstSource is the nation’s largest supplier of structural building products, value-added components and services to the professional market for new residential construction and repair and remodeling. Our focus is on providing unparalleled service to both large...
Compliance Ranges Comparison

K-FLEX







Builders FirstSource






Benchmark & Cyber Underwriting Signals
Incidents vs Wholesale Building Materials Industry Avg (This Year)
No incidents recorded for K-FLEX in 2026.
Incidents vs Wholesale Building Materials Industry Avg (This Year)
No incidents recorded for Builders FirstSource in 2026.
Incident History - K-FLEX (X = Date, Y = Severity)
K-FLEX cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Builders FirstSource (X = Date, Y = Severity)
Builders FirstSource cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

K-FLEX

Builders FirstSource
FAQ
Latest Global CVEs
A flaw was found in libsoup. After a CONNECT tunnel is established through an HTTP proxy, libsoup incorrectly attaches the Proxy-Authorization header to subsequent HTTPS requests sent through that tunnel to the destination server. This allows the destination server to capture proxy credentials, leading to information disclosure.
A flaw was found in libsoup. The chunked transfer encoding parser uses a permissive parsing function for chunk sizes that silently accepts inputs violating RFC 9112, including leading whitespace, plus sign prefixes, and trailing invalid characters. When libsoup operates behind a strict frontend proxy, this parsing differential can be exploited to smuggle HTTP requests.
A flaw was found in libsoup. An unsigned integer underflow in the soup_filter_input_stream_read_until() function causes a heap buffer over-read when parsing multipart HTTP responses. A malicious HTTP server can exploit this by sending a crafted multipart response, potentially causing the client application to crash or disclose sensitive heap memory.
Weintek cMT3092X HMI allows a non-privileged user to modify tokens to escalate privileges.
Weintek cMT3092X HMI stores user account passwords in plaintext.