Comparison Overview

Midwest Molding Inc.

VS

Berry Global, Inc.

Midwest Molding Inc.

8245 Estates Pkwy., Plain City, OH, 43064, US
Last Update: 2025-03-14 (UTC)

Excellent

Midwest Molding Inc. is an ISO 9001 certified injection molding company. By utilizing state of the art manufacturing technologies and techniques, we produce custom, high quality, cost competitive plastic parts and assemblies. โ€ข COMPANY OVERVIEW: ๏ƒ˜ 35 all electric high precision injection machines โ€“ up to 1,000 ton. ๏ƒ˜ All machines automated including servo axis and servo articulating robots. ๏ƒ˜ Produce over 170 million plastic parts per year. ๏ƒ˜ Over 90,000 sq. ft. of manufacturing space ๏ƒ˜ ISO 9001 certified ๏ƒ˜ Outstanding Customer Quality rating ๏ƒ˜ Climate controlled facilities. โ€ข CAPABILITIES: ๏ƒ˜ Provide turn key customer solutions, from product concept to mass production. ๏ƒ˜ Project Management throughout project and/or specific areas of particular projects. ๏ƒ˜ Engineering support for projects throughout the process and manufacturing. ๏ƒ˜ Mold Design and Tool Building resources. ๏ƒ˜ Prototyping available for all projects. ๏ƒ˜ Part Design assistance when required by customer. ๏ƒ˜ Clean Room molding with filtration in place. ๏ƒ˜ Engineered grade resins and high temperature materials. ๏ƒ˜ 1-day lead times in many cases, with quick turnaround in all cases. ๏ƒ˜ Experienced with hot runner tools and molding with hot runner systems. ๏ƒ˜ Hydraulic cores and power packs available for the more complicated molds. ๏ƒ˜ In house assembly and automated assembly equipment to aid part production. ๏ƒ˜ In-mold labeling experience. โ€ข INDUSTIRES SERVED: AUTOMOTIVE, MEDICAL, AGRICULTURAL, ELECTRONICS, OFFICE PRODUCTS, CONSTRUCTION, STORAGE, RESTAURANT AND CONSUMER GOODS. โ€ข EQUIPMENT: ๏ƒ˜ High precision all electric servo drive injection machines for precision and repeatability. ๏ƒ˜ Servo driven 5-axis Robots for part removal and Value added operations. ๏ƒ˜ Automatic material handling systems in place. ๏ƒ˜ Material Dryer systems for material management and product quality per hydroscopic materials. ๏ƒ˜ Closed loop temperature control units for accurate and precise temperature control.

NAICS: 326
NAICS Definition:
Employees: 20
Subsidiaries: 0
12-month incidents
0
Known data breaches
0
Attack type number
0

Berry Global, Inc.

101 Oakley Street, Evansville, IN, 47710, US
Last Update: 2025-03-04 (UTC)

Excellent

Between 900 and 1000

At Berry Global Group, Inc. (NYSE: BERY), we create innovative packaging solutions that we believe make life better for people and the planet. We do this every day by leveraging our unmatched global capabilities, sustainability leadership, and deep innovation expertise to serve customers of all sizes around the world. Harnessing the strength in our diversity and industry-leading talent of over 40,000 global employees across more than 250 locations, we partner with customers to develop, design, and manufacture innovative products with an eye toward the circular economy. The challenges we solve and the innovations we pioneer benefit our customers at every stage of their journey. For more information, visit our website at berryglobal.com. Notice to Berry Global Candidates for Employment: We will never ask for money during the application, recruitment, or onboarding process. If you come across this during your job search, then it may be an individual falsifying their information.

NAICS: 3261
NAICS Definition: Plastics Product Manufacturing
Employees: 12,748
Subsidiaries: 1
12-month incidents
0
Known data breaches
0
Attack type number
0

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/midwest-molding-inc.jpeg
Midwest Molding Inc.
โ€”
ISO 27001
Not verified
โ€”
SOC 2
Not verified
โ€”
GDPR
No public badge
โ€”
PCI DSS
No public badge
https://images.rankiteo.com/companyimages/berryglobal.jpeg
Berry Global, Inc.
โ€”
ISO 27001
Not verified
โ€”
SOC 2
Not verified
โ€”
GDPR
No public badge
โ€”
PCI DSS
No public badge
Compliance Summary
Midwest Molding Inc.
100%
Compliance Rate
0/4 Standards Verified
Berry Global, Inc.
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Plastics Manufacturing Industry Average (This Year)

No incidents recorded for Midwest Molding Inc. in 2025.

Incidents vs Plastics Manufacturing Industry Average (This Year)

No incidents recorded for Berry Global, Inc. in 2025.

Incident History โ€” Midwest Molding Inc. (X = Date, Y = Severity)

Midwest Molding Inc. cyber incidents detection timeline including parent company and subsidiaries

Incident History โ€” Berry Global, Inc. (X = Date, Y = Severity)

Berry Global, Inc. cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/midwest-molding-inc.jpeg
Midwest Molding Inc.
Incidents

No Incident

https://images.rankiteo.com/companyimages/berryglobal.jpeg
Berry Global, Inc.
Incidents

No Incident

FAQ

Both Midwest Molding Inc. company and Berry Global, Inc. company demonstrate a comparable AI risk posture, with strong governance and monitoring frameworks in place.

Historically, Berry Global, Inc. company has disclosed a higher number of cyber incidents compared to Midwest Molding Inc. company.

In the current year, Berry Global, Inc. company and Midwest Molding Inc. company have not reported any cyber incidents.

Neither Berry Global, Inc. company nor Midwest Molding Inc. company has reported experiencing a ransomware attack publicly.

Neither Berry Global, Inc. company nor Midwest Molding Inc. company has reported experiencing a data breach publicly.

Neither Berry Global, Inc. company nor Midwest Molding Inc. company has reported experiencing targeted cyberattacks publicly.

Neither Midwest Molding Inc. company nor Berry Global, Inc. company has reported experiencing or disclosing vulnerabilities publicly.

Berry Global, Inc. company has more subsidiaries worldwide compared to Midwest Molding Inc. company.

Berry Global, Inc. company employs more people globally than Midwest Molding Inc. company, reflecting its scale as a Plastics Manufacturing.

Latest Global CVEs (Not Company-Specific)

Description

Better Auth is an authentication and authorization library for TypeScript. In versions prior to 1.3.26, unauthenticated attackers can create or modify API keys for any user by passing that user's id in the request body to the `api/auth/api-key/create` route. `session?.user ?? (authRequired ? null : { id: ctx.body.userId })`. When no session exists but `userId` is present in the request body, `authRequired` becomes false and the user object is set to the attacker-controlled ID. Server-only field validation only executes when `authRequired` is true (lines 280-295), allowing attackers to set privileged fields. No additional authentication occurs before the database operation, so the malicious payload is accepted. The same pattern exists in the update endpoint. This is a critical authentication bypass enabling full an unauthenticated attacker can generate an API key for any user and immediately gain complete authenticated access. This allows the attacker to perform any action as the victim user using the api key, potentially compromise the user data and the application depending on the victim's privileges. Version 1.3.26 contains a patch for the issue.

Risk Information
cvss4
Base: 9.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Allstar is a GitHub App to set and enforce security policies. In versions prior to 4.5, a vulnerability in Allstarโ€™s Reviewbot component caused inbound webhook requests to be validated against a hard-coded, shared secret. The value used for the secret token was compiled into the Allstar binary and could not be configured at runtime. In practice, this meant that every deployment using Reviewbot would validate requests with the same secret unless the operator modified source code and rebuilt the component - an expectation that is not documented and is easy to miss. All Allstar releases prior to v4.5 that include the Reviewbot code path are affected. Deployments on v4.5 and later are not affected. Those who have not enabled or exposed the Reviewbot endpoint are not exposed to this issue.

Risk Information
cvss4
Base: 4.6
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Multiple cross-site scripting (XSS) vulnerabilities with Calendar events in Liferay Portal 7.4.3.35 through 7.4.3.111, and Liferay DXP 2023.Q4.0 through 2023.Q4.5, 2023.Q3.1 through 2023.Q3.7, 7.4 update 35 through update 92, and 7.3 update 25 through update 36 allow remote attackers to inject arbitrary web script or HTML via a crafted payload injected into a userโ€™s (1) First Name, (2) Middle Name or (3) Last Name text field.

Risk Information
cvss4
Base: 4.8
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:A/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Python Social Auth is a social authentication/registration mechanism. In versions prior to 5.6.0, upon authentication, the user could be associated by e-mail even if the `associate_by_email` pipeline was not included. This could lead to account compromise when a third-party authentication service does not validate provided e-mail addresses or doesn't require unique e-mail addresses. Version 5.6.0 contains a patch. As a workaround, review the authentication service policy on e-mail addresses; many will not allow exploiting this vulnerability.

Risk Information
cvss4
Base: 6.3
Severity: HIGH
CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:L/VI:L/VA:N/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

Confidential Containers's Trustee project contains tools and components for attesting confidential guests and providing secrets to them. In versions prior to 0.15.0, the attestation-policy endpoint didn't check if the kbs-client submitting the request was actually authenticated (had the right key). This allowed any kbs-client to actually change the attestation policy. Version 0.15.0 fixes the issue.

Risk Information
cvss4
Base: 8.7
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X