Comparison Overview
MPA HANNOVER

MPA HANNOVER
Nienburger Straße 3, Hannover, 30167, DE
Last Update: 02/04/2026
MPA HANNNOVER carries out material tests for the construction and mechanical engineering sectors. At the three locations, raw materials, building materials, building products and types, constructions, pipelines and technical equipment, rotating abrasives and corrosion p...

Swiss Federal Administration
Eigerstrasse 71, Bern, 3003, CH
Last Update: 03/04/2026
Seven departments, the Federal Chancellery and around 70 administrative units make up the Federal Administration. With around 38,000 employees, we are one of the largest employers in Switzerland. Everyone who works for the Federal Administration actively contributes t...
Compliance Ranges Comparison

MPA HANNOVER







Swiss Federal Administration






Benchmark & Cyber Underwriting Signals
Incidents vs Government Administration Industry Avg (This Year)
No incidents recorded for MPA HANNOVER in 2026.
Incidents vs Government Administration Industry Avg (This Year)
No incidents recorded for Swiss Federal Administration in 2026.
Incident History - MPA HANNOVER (X = Date, Y = Severity)
MPA HANNOVER cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Swiss Federal Administration (X = Date, Y = Severity)
Swiss Federal Administration cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

MPA HANNOVER

Swiss Federal Administration
FAQ
Latest Global CVEs
Fides is an open-source privacy engineering platform. From version 2.33.0 to before version 2.84.5, there is a DOM-based XSS vulnerability in fides.js via the fides_description override. This issue has been patched in version 2.84.5.
WACRM prior to commit 73041bf contain an authorization bypass vulnerability in the automation engine that allows authenticated attackers to access and modify contacts belonging to other tenants by supplying an arbitrary caller-controlled contact_id in the POST request body without tenant ownership verification. Attackers can exploit the service-role client that bypasses row-level security to modify victim contact fields including name, email, and company across tenant boundaries using only a known contact UUID.
Namespace attributes are not encoded correctly during HTML serialization. This allows bypassing the cross-site scripting prevention mechanism of typo3/html-sanitizer before version 2.3.2.
When ALLOW_INSECURE_RAW_TEXT is enabled, whitespace-variant closing tags (e.g., </style\t>) are not recognized by the sanitizer but accepted by browsers as valid end tags, allowing subsequent content to escape sanitization. This allows bypassing the cross-site scripting prevention mechanism of typo3/html-sanitizer before version 2.3.2.
Headplane is a feature-complete Web UI for Headscale. Prior to versions 0.6.3 and 0.7.0-beta.3, Headplane was vulnerable to a path traversal / authorization bypass in the Headscale API client used by node and user rename operations. This issue has been patched in versions 0.6.3 and 0.7.0-beta.3.