Comparison Overview
Mercy

Mercy
15740 South Outer Forty Road, Chesterfield, 63017 , US
Last Update: 29/03/2026
Mercy, one of the 15 largest U.S. health systems and named the top large system in the U.S. for excellent patient experience by NRC Health, serves millions annually with nationally recognized care and one of the nation’s largest and highest performing Accountable Care O...

Vancouver Coastal Health
11th floor - 601 West Broadway, Vancouver, V5Z 4C2, CA
Last Update: 02/04/2026
Join a team connected by collaboration, support and most importantly, the goal of providing quality patient care. We value career growth with employer-supported training, encourage a culture where everyone’s voice is heard and strive to create a supportive team environm...
Compliance Ranges Comparison

Mercy







Vancouver Coastal Health






Benchmark & Cyber Underwriting Signals
Incidents vs Hospitals and Health Care Industry Avg (This Year)
No incidents recorded for Mercy in 2026.
Incidents vs Hospitals and Health Care Industry Avg (This Year)
No incidents recorded for Vancouver Coastal Health in 2026.
Incident History - Mercy (X = Date, Y = Severity)
Mercy cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Vancouver Coastal Health (X = Date, Y = Severity)
Vancouver Coastal Health cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

Mercy

Vancouver Coastal Health
FAQ
Latest Global CVEs
Improper authorization in Microsoft Exchange Online allows an unauthorized attacker to disclose information over a network.
Authentication bypass by spoofing in Azure HorizonDB allows an unauthorized attacker to elevate privileges over a network.
Exposure of sensitive information to an unauthorized actor in Microsoft Graph allows an authorized attacker to disclose information over a network.
Improper neutralization of special elements in output used by a downstream component ('injection') in Copilot Chat (Microsoft Edge) allows an unauthorized attacker to disclose information over a network.
Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an authorized attacker to execute code over a network.