Comparison Overview
Intuit Mailchimp

Intuit Mailchimp
675 Ponce De Leon Ave. NE, Atlanta, 30308, US
Last Update: 20/04/2026
The Mailchimpossibilities are endless when you create, automate, and optimize your marketing with Mailchimp.

WordFly
1326 5th Ave, Seattle, US
Last Update: 02/04/2026
Grow your audience with email and SMS built for arts, culture and experiences. Easily create beautiful email marketing and sms. Publish landing pages and forms. Collect valuable customer insights with our survey tools and manage events with WordFly's RSVP system. Co...
Compliance Ranges Comparison

Intuit Mailchimp







WordFly






Benchmark & Cyber Underwriting Signals
Incidents vs Software Development Industry Avg (This Year)
No incidents recorded for Intuit Mailchimp in 2026.
Incidents vs Software Development Industry Avg (This Year)
No incidents recorded for WordFly in 2026.
Incident History - Intuit Mailchimp (X = Date, Y = Severity)
Intuit Mailchimp cyber incidents detection timeline including parent company and subsidiaries.
Incident History - WordFly (X = Date, Y = Severity)
WordFly cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

Intuit Mailchimp

WordFly
FAQ
Latest Global CVEs
Fides is an open-source privacy engineering platform. From version 2.33.0 to before version 2.84.5, there is a DOM-based XSS vulnerability in fides.js via the fides_description override. This issue has been patched in version 2.84.5.
WACRM prior to commit 73041bf contain an authorization bypass vulnerability in the automation engine that allows authenticated attackers to access and modify contacts belonging to other tenants by supplying an arbitrary caller-controlled contact_id in the POST request body without tenant ownership verification. Attackers can exploit the service-role client that bypasses row-level security to modify victim contact fields including name, email, and company across tenant boundaries using only a known contact UUID.
Namespace attributes are not encoded correctly during HTML serialization. This allows bypassing the cross-site scripting prevention mechanism of typo3/html-sanitizer before version 2.3.2.
When ALLOW_INSECURE_RAW_TEXT is enabled, whitespace-variant closing tags (e.g., </style\t>) are not recognized by the sanitizer but accepted by browsers as valid end tags, allowing subsequent content to escape sanitization. This allows bypassing the cross-site scripting prevention mechanism of typo3/html-sanitizer before version 2.3.2.
Headplane is a feature-complete Web UI for Headscale. Prior to versions 0.6.3 and 0.7.0-beta.3, Headplane was vulnerable to a path traversal / authorization bypass in the Headscale API client used by node and user rename operations. This issue has been patched in versions 0.6.3 and 0.7.0-beta.3.