Comparison Overview
Mott MacDonald

Mott MacDonald
10 Fleet Place, London, EC4M 7, GB
Last Update: 13/09/2026
We are an engineering, management and development consultancy and one of the largest wholly employee-owned firms of our kind. We plan, design, deliver and maintain the transport, energy, water, defence and security, and buildings infrastructure that is integral to peo...

MRV
Av. Prof. Mario Werneck, 621, Belo Horizonte, 30.455-610, BR
Last Update: 16/09/2026
Some 45 years ago, we set out with the ambitious goal of providing affordable housing, working to make Brazilian dreams come true. Over the last few years, we have crafted and shaped our story, becoming a brand-leading platform that offers a variety of housing solutions...
Compliance Ranges Comparison

Mott MacDonald







MRV






Benchmark & Cyber Underwriting Signals
Incidents vs Civil Engineering Industry Avg (This Year)
No incidents recorded for Mott MacDonald in 2026.
Incidents vs Civil Engineering Industry Avg (This Year)
No incidents recorded for MRV in 2026.
Incident History - Mott MacDonald (X = Date, Y = Severity)
Mott MacDonald cyber incidents detection timeline including parent company and subsidiaries.
Incident History - MRV (X = Date, Y = Severity)
MRV cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

Mott MacDonald

MRV
FAQ
Latest Global CVEs
Exim before 4.100.1 allows SMTP smuggling in which the received message does not match any sent message, and instead depends on crafted data sent after a rejection during DATA processing.
Exim before 4.100.1, when Proxy-Protocol is used with an attacker-controlled proxy, allows attackers to read certain uninitialized data from stack memory.
Exim before 4.100.1, when certain non-default TLS settings are used with GnuTLS, has a use-after-free.
Exim before 4.100.1, when Proxy-Protocol is used with an attacker-controlled proxy, has an out-of-bounds write.
Mistral Vibe before 2.25.5 contains a remote code execution vulnerability in the worktree creation process that executes git hooks before trust validation. Attackers can supply a repository with a crafted post-checkout hook that executes arbitrary shell commands with the privileges of the user running Vibe.
- https://github.com/mistralai/mistral-vibe
- https://github.com/mistralai/mistral-vibe/blob/19b5b74faa78d0816b8d4d4c7d7543fc3520678c/vibe/core/git/repo.py#L411-L431
- https://github.com/mistralai/mistral-vibe/commit/c069ffa1e12fb5f2487b489217c40ab97721d553
- https://github.com/mistralai/mistral-vibe/issues/996
- https://github.com/mistralai/mistral-vibe/releases/tag/v2.25.5
- https://www.vulncheck.com/advisories/mistral-vibe-before-2.25.5-remote-code-execution-via-git-post-checkout