Comparison Overview
MFP Sales Limited

MFP Sales Limited
Lucan, Dublin, Ireland, K78 HC63, IE
Last Update: 05/12/2025
MFP is a leading producer of quality plastic building products for construction industry, public utilities and local authorities. Established in 1967, the company is part of the Grafton Group Plc. Resources for the ongoing development of the company have been generated...

Carrier
13995 Pasteur Blvd, Palm Beach Gardens, 33418, US
Last Update: 09/09/2026
Carrier is a global leader in intelligent climate and energy solutions, pioneering sustainable innovations in climate technologies. Founded by Willis Carrier, the inventor of modern air conditioning, we have been shaping industries and enhancing lives for more than a ce...
Compliance Ranges Comparison

MFP Sales Limited







Carrier






Benchmark & Cyber Underwriting Signals
Incidents vs Wholesale Building Materials Industry Avg (This Year)
No incidents recorded for MFP Sales Limited in 2026.
Incidents vs Wholesale Building Materials Industry Avg (This Year)
Carrier has 1.96% fewer incidents than the average of all companies with at least one recorded incident.
Incident History - MFP Sales Limited (X = Date, Y = Severity)
MFP Sales Limited cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Carrier (X = Date, Y = Severity)
Carrier cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

MFP Sales Limited

Carrier
FAQ
Latest Global CVEs
vLLM through 0.29.0 fails to properly clean up decode-side metadata for rejected inference requests in prefill/decode disaggregated deployments. Remote attackers can submit requests with max_tokens=0 to exhaust decode-worker memory without bound until the worker restarts.
- https://github.com/vllm-project/vllm
- https://github.com/vllm-project/vllm/blob/v0.29.0/vllm/distributed/kv_transfer/kv_connector/v1/nixl/push_worker.py#L162-L181
- https://github.com/vllm-project/vllm/pull/55677
- https://www.vulncheck.com/advisories/vllm-through-0.29.0-memory-exhaustion-via-rejected-requests
redis-parser through 3.0.0 contains a denial of service vulnerability in the RESP protocol parser that allows malicious Redis endpoints to crash the client process through unbounded recursion on nested arrays. Attackers can send crafted RESP byte streams with repeated array headers that exhaust the V8 call stack, causing an uncaught RangeError that terminates the Node.js process without triggering error handling callbacks.
- https://github.com/NodeRedis/node-redis-parser
- https://github.com/NodeRedis/node-redis-parser/blob/701655430f5f7d9ca00892a02f7eefcbc1193a98/lib/parser.js#L204-L213
- https://github.com/NodeRedis/node-redis-parser/blob/701655430f5f7d9ca00892a02f7eefcbc1193a98/lib/parser.js#L291-L306
- https://github.com/redis/ioredis/issues/2108
- https://www.vulncheck.com/advisories/redis-parser-through-3.0.0-denial-of-service-via-unbounded-recursion
Improper neutralization of special elements in output used by a downstream component ('injection') in Azure Cosmos DB allows an authorized attacker to elevate privileges over a network.
Server-side request forgery (ssrf) in Azure AI Foundry allows an unauthorized attacker to elevate privileges over a network.
Missing authentication for critical function in Azure AI Foundry allows an unauthorized attacker to elevate privileges over a network.