Comparison Overview
MAHLE Powertrain

MAHLE Powertrain
St James Mill Road, Northampton, Northamptonshire, NN5 5TZ, GB
Last Update: 07/03/2026
MAHLE Powertrain provides engineering & consultancy services for the design, testing, development, calibration and integration of hybridised internal combustion engines and electrified powertrain systems. As recognised experts, MAHLE Powertrain are engaged in cutting ed...

CEA
Bâtiment Le Ponant D, Paris, 75015, FR
Last Update: 01/04/2026
The CEA is the French Alternative Energies and Atomic Energy Commission ("Commissariat à l'énergie atomique et aux énergies alternatives"). It is a public body established in October 1945 by General de Gaulle. A leader in research, development and innovation, the CEA m...
Compliance Ranges Comparison

MAHLE Powertrain







CEA






Benchmark & Cyber Underwriting Signals
Incidents vs Research Services Industry Avg (This Year)
No incidents recorded for MAHLE Powertrain in 2026.
Incidents vs Research Services Industry Avg (This Year)
No incidents recorded for CEA in 2026.
Incident History - MAHLE Powertrain (X = Date, Y = Severity)
MAHLE Powertrain cyber incidents detection timeline including parent company and subsidiaries.
Incident History - CEA (X = Date, Y = Severity)
CEA cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

MAHLE Powertrain

CEA
FAQ
Latest Global CVEs
An authenticated user with the read role may read limited amounts of uninitialized stack memory via specially-crafted issuances of the filemd5 command
The $_internalApplyOplogUpdate aggregation pipeline stage can be used to execute a document diff containing a malformed binary diff to return memory out-of-bounds or crash the server. $_internalApplyOplogUpdate can be executed by any authenticated user with access to the aggregate command.
An authorized user could trigger a server crash by running a query with a 2dsphere index on a field that stores a GeoJSON GeometryCollection containing a Polygon with a strict-winding CRS. Strict-winding polygons are intentionally unsupported for indexing, but the guard that rejects them does not inspect members of a GeometryCollection, allowing the unsafe path to be reached which ends with an ensuing null-pointer dereference.
The ldapQueryPassword parameter, when set through the runtime setParameter command, will log the new password to the mongod.log file in plain text.
An authenticated user can cause a MongoDB server to crash or return incorrect results by creating documents that interfere with internal metadata processing during query execution. This stems from insufficient separation between user-controlled document fields and internal metadata in certain execution paths.