Comparison Overview

Lancaster Arts

VS

Bricolage Production Company

Lancaster Arts

Lancaster University, Lancaster, LA1 4YW, GB
Last Update: 2025-12-09

Lancaster Arts: where ideas, people and places connect. Based at Lancaster University in the north west of England Lancaster Arts encompasses the Nuffield Theatre, the Great Hall and the Peter Scott Gallery. We have a long-established artistic reputation for the creation, development and presentation of cutting edge contemporary arts and are proud to be part of Arts Council England’s portfolio as a combined arts organisation.

NAICS: 7111
NAICS Definition: Performing Arts Companies
Employees: 19
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Bricolage Production Company

937 Liberty Avenue, 1st Fl, Pittsburgh, Pennsylvania, 15222, US
Last Update: 2025-12-12
Between 750 and 799

Bricolage Production Company is a theater in downtown Pittsburgh that develops and produces cutting-edge, adventurous work that entertains, involves, and engages audiences. Bricolage envisions theater not as a passive experience, but as a vehicle for heightened involvement for artist and audience alike. Our approach encourages artists to take the creative risks necessary to create full-blooded, high-quality theatrical experiences that challenge audiences to engage in new ways, react, and express openly their opinions about our work – to have a stake in the creative discussion.

NAICS: 711
NAICS Definition:
Employees: 5
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/lancaster-arts-at-lancaster-university.jpeg
Lancaster Arts
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/bricolagepgh.jpeg
Bricolage Production Company
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
Lancaster Arts
100%
Compliance Rate
0/4 Standards Verified
Bricolage Production Company
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Performing Arts Industry Average (This Year)

No incidents recorded for Lancaster Arts in 2025.

Incidents vs Performing Arts Industry Average (This Year)

No incidents recorded for Bricolage Production Company in 2025.

Incident History — Lancaster Arts (X = Date, Y = Severity)

Lancaster Arts cyber incidents detection timeline including parent company and subsidiaries

Incident History — Bricolage Production Company (X = Date, Y = Severity)

Bricolage Production Company cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/lancaster-arts-at-lancaster-university.jpeg
Lancaster Arts
Incidents

No Incident

https://images.rankiteo.com/companyimages/bricolagepgh.jpeg
Bricolage Production Company
Incidents

No Incident

FAQ

Bricolage Production Company company demonstrates a stronger AI Cybersecurity Score compared to Lancaster Arts company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

Historically, Bricolage Production Company company has disclosed a higher number of cyber incidents compared to Lancaster Arts company.

In the current year, Bricolage Production Company company and Lancaster Arts company have not reported any cyber incidents.

Neither Bricolage Production Company company nor Lancaster Arts company has reported experiencing a ransomware attack publicly.

Neither Bricolage Production Company company nor Lancaster Arts company has reported experiencing a data breach publicly.

Neither Bricolage Production Company company nor Lancaster Arts company has reported experiencing targeted cyberattacks publicly.

Neither Lancaster Arts company nor Bricolage Production Company company has reported experiencing or disclosing vulnerabilities publicly.

Neither Lancaster Arts nor Bricolage Production Company holds any compliance certifications.

Neither company holds any compliance certifications.

Neither Lancaster Arts company nor Bricolage Production Company company has publicly disclosed detailed information about the number of their subsidiaries.

Lancaster Arts company employs more people globally than Bricolage Production Company company, reflecting its scale as a Performing Arts.

Neither Lancaster Arts nor Bricolage Production Company holds SOC 2 Type 1 certification.

Neither Lancaster Arts nor Bricolage Production Company holds SOC 2 Type 2 certification.

Neither Lancaster Arts nor Bricolage Production Company holds ISO 27001 certification.

Neither Lancaster Arts nor Bricolage Production Company holds PCI DSS certification.

Neither Lancaster Arts nor Bricolage Production Company holds HIPAA certification.

Neither Lancaster Arts nor Bricolage Production Company holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

NXLog Agent before 6.11 can load a file specified by the OPENSSL_CONF environment variable.

Risk Information
cvss3
Base: 8.1
Severity: HIGH
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
Description

uriparser through 0.9.9 allows unbounded recursion and stack consumption, as demonstrated by ParseMustBeSegmentNzNc with large input containing many commas.

Risk Information
cvss3
Base: 2.9
Severity: HIGH
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
Description

A vulnerability was detected in Mayan EDMS up to 4.10.1. The affected element is an unknown function of the file /authentication/. The manipulation results in cross site scripting. The attack may be performed from remote. The exploit is now public and may be used. Upgrading to version 4.10.2 is sufficient to fix this issue. You should upgrade the affected component. The vendor confirms that this is "[f]ixed in version 4.10.2". Furthermore, that "[b]ackports for older versions in process and will be out as soon as their respective CI pipelines complete."

Risk Information
cvss2
Base: 5.0
Severity: LOW
AV:N/AC:L/Au:N/C:N/I:P/A:N
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

MJML through 4.18.0 allows mj-include directory traversal to test file existence and (in the type="css" case) read files. NOTE: this issue exists because of an incomplete fix for CVE-2020-12827.

Risk Information
cvss3
Base: 4.5
Severity: HIGH
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:L/I:N/A:L
Description

A half-blind Server Side Request Forgery (SSRF) vulnerability exists in kube-controller-manager when using the in-tree Portworx StorageClass. This vulnerability allows authorized users to leak arbitrary information from unprotected endpoints in the control plane’s host network (including link-local or loopback services).

Risk Information
cvss3
Base: 5.8
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:N/A:N