Comparison Overview

KADIST

VS

Gallery Aferro

KADIST

3295 20th Street, San Francisco, California, 94110, US
Last Update: 2026-04-04
Between 750 and 799

KADIST is a non-profit contemporary art organization that believes artists make an important contribution to a progressive society through their artwork, which often addresses key issues relevant to the present day. Dedicated to exhibiting the work of artists represented in its collection, KADIST encourages this engagement and affirms contemporary art’s relevance within social discourse. Its local hubs in Paris and San Francisco organize exhibitions, physical and online programs, and host residencies. KADIST stays apprised of developments in contemporary art via a global advisor network, and develops collaborations internationally, including with leading museums, facilitating new connections across cultures and vibrant conversations about contemporary art and society.

NAICS: 712
NAICS Definition:
Employees: 39
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Gallery Aferro

73 Market Street, Newark, NJ, 07102, US
Last Update: 2026-04-04
Between 750 and 799

The mission of Gallery Aferro is to bring cultural education and aesthetic engagement with contemporary issues to all people equally, and to create an environment where artists can gather and share physical and intellectual resources. We are working towards an arts community that is available to everyone, without sacrificing standards or quality of experience.

NAICS: 712
NAICS Definition: Museums, Historical Sites, and Similar Institutions
Employees: 6
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/kadist-art-foundation.jpeg
KADIST
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
KADIST
100%
Compliance Rate
0/4 Standards Verified
Gallery Aferro
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Museums, Historical Sites, and Zoos Industry Average (This Year)

No incidents recorded for KADIST in 2026.

Incidents vs Museums, Historical Sites, and Zoos Industry Average (This Year)

No incidents recorded for Gallery Aferro in 2026.

Incident History — KADIST (X = Date, Y = Severity)

KADIST cyber incidents detection timeline including parent company and subsidiaries

Incident History — Gallery Aferro (X = Date, Y = Severity)

Gallery Aferro cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/kadist-art-foundation.jpeg
KADIST
Incidents

No Incident

https://images.rankiteo.com/companyimages/gallery-aferro.jpeg
Gallery Aferro
Incidents

FAQ

Gallery Aferro company demonstrates a stronger AI Cybersecurity Score compared to KADIST company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

Historically, Gallery Aferro company has disclosed a higher number of cyber incidents compared to KADIST company.

In the current year, Gallery Aferro company and KADIST company have not reported any cyber incidents.

Neither Gallery Aferro company nor KADIST company has reported experiencing a ransomware attack publicly.

Neither Gallery Aferro company nor KADIST company has reported experiencing a data breach publicly.

Neither Gallery Aferro company nor KADIST company has reported experiencing targeted cyberattacks publicly.

Neither KADIST company nor Gallery Aferro company has reported experiencing or disclosing vulnerabilities publicly.

Neither KADIST nor Gallery Aferro holds any compliance certifications.

Neither company holds any compliance certifications.

Neither KADIST company nor Gallery Aferro company has publicly disclosed detailed information about the number of their subsidiaries.

KADIST company employs more people globally than Gallery Aferro company, reflecting its scale as a Museums, Historical Sites, and Zoos.

Neither KADIST nor Gallery Aferro holds SOC 2 Type 1 certification.

Neither KADIST nor Gallery Aferro holds SOC 2 Type 2 certification.

Neither KADIST nor Gallery Aferro holds ISO 27001 certification.

Neither KADIST nor Gallery Aferro holds PCI DSS certification.

Neither KADIST nor Gallery Aferro holds HIPAA certification.

Neither KADIST nor Gallery Aferro holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

nimiq/core-rs-albatross is a Rust implementation of the Nimiq Proof-of-Stake protocol based on the Albatross consensus algorithm. Prior to version 1.3.0, two peer-facing consensus request handlers assume that the history index is always available and call blockchain.history_store.history_index().unwrap() directly. That assumption is false by construction. HistoryStoreProxy::history_index() explicitly returns None for the valid HistoryStoreProxy::WithoutIndex state. when a full node is syncing or otherwise running without the history index, a remote peer can send RequestTransactionsProof or RequestTransactionReceiptsByAddress and trigger an Option::unwrap() panic on the request path. This issue has been patched in version 1.3.0.

Risk Information
cvss3
Base: 5.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Description

PraisonAI is a multi-agent teams system. Prior to version 1.5.95, FileTools.download_file() in praisonaiagents validates the destination path but performs no validation on the url parameter, passing it directly to httpx.stream() with follow_redirects=True. An attacker who controls the URL can reach any host accessible from the server including cloud metadata services and internal network services. This issue has been patched in version 1.5.95.

Risk Information
cvss3
Base: 8.6
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N
Description

PraisonAI is a multi-agent teams system. Prior to version 4.5.97, OAuthManager.validate_token() returns True for any token not found in its internal store, which is empty by default. Any HTTP request to the MCP server with an arbitrary Bearer token is treated as authenticated, granting full access to all registered tools and agent capabilities. This issue has been patched in version 4.5.97.

Risk Information
cvss3
Base: 9.1
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Description

PraisonAI is a multi-agent teams system. Prior to version 4.5.97, the PraisonAI Gateway server accepts WebSocket connections at /ws and serves agent topology at /info with no authentication. Any network client can connect, enumerate registered agents, and send arbitrary messages to agents and their tool sets. This issue has been patched in version 4.5.97.

Risk Information
cvss3
Base: 9.1
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Description

PraisonAI is a multi-agent teams system. Prior to version 4.5.90, MCPToolIndex.search_tools() compiles a caller-supplied string directly as a Python regular expression with no validation, sanitization, or timeout. A crafted regex causes catastrophic backtracking in the re engine, blocking the Python thread for hundreds of seconds and causing a complete service outage. This issue has been patched in version 4.5.90.

Risk Information
cvss3
Base: 6.5
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H