Comparison Overview
Morrison Express

Morrison Express
8F, 360 Rueiguang Road, Taipei, 114, TW
Last Update: 02/04/2026
Established in 1972, Morrison Express is a privately-held company operated by a professional management team. We have successfully transformed from a Taiwan-based freight forwarder focusing on Taiwan-US route to a global player with over 2000 employees operating over ...

Arvato
Reinhard-Mohn-Str., Gütersloh, DE, 33333
Last Update: 02/04/2026
𝗪𝗲 𝘀𝗵𝗮𝗽𝗲 𝘀𝘂𝗽𝗽𝗹𝘆 𝗰𝗵𝗮𝗶𝗻𝘀 𝗴𝗹𝗼𝗯𝗮𝗹𝗹𝘆 Logistics seems so simple – just goods in, goods out. For us there is so much more to it. By combining deep industry expertise with the right technologies, we develop innovative supply chain management and e-c...
Compliance Ranges Comparison

Morrison Express







Arvato






Benchmark & Cyber Underwriting Signals
Incidents vs Transportation, Logistics, Supply Chain and Storage Industry Avg (This Year)
No incidents recorded for Morrison Express in 2026.
Incidents vs Transportation, Logistics, Supply Chain and Storage Industry Avg (This Year)
No incidents recorded for Arvato in 2026.
Incident History - Morrison Express (X = Date, Y = Severity)
Morrison Express cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Arvato (X = Date, Y = Severity)
Arvato cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

Morrison Express

Arvato
FAQ
Latest Global CVEs
Files or directories accessible to external parties in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.
Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.
Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.
NoteGen before 0.32.0 grants the Tauri shell plugin shell:allow-execute capability for bash, python, and python3 with arbitrary arguments in the default desktop capabilities. JavaScript running in the application webview can therefore invoke plugin:shell|execute to run attacker-controlled operating system commands with the privileges of the NoteGen process. In combination with script execution in the webview (for example via chat XSS), this enables full remote code execution on the user's machine.
NoteGen before 0.32.0 renders AI chat responses with markdown-it configured with html:true and injects the result into the DOM via dangerouslySetInnerHTML in chat-preview, without HTML sanitization and with CSP set to null. Attacker-controlled content that reaches the model prompt (for example a malicious skill REFERENCE.md that instructs the model to emit HTML) can cause the model response to include executable markup such as an img onerror handler. When the user views the chat response, that markup runs as JavaScript in the privileged Tauri webview, enabling arbitrary script execution in the application context (cross-site scripting).