Comparison Overview
NHLBI – Blood Research & Education

NHLBI – Blood Research & Education
Bethesda, US
Last Update: 05/12/2025
The National Heart, Lung, and Blood Institute (NHLBI) has several major research goals in blood diseases. One is to ensure the adequacy and safety of the nation’s blood supply. A second is to support efforts to treat and cure blood disorders, such as supporting scientif...

PPD
168 3rd Ave, Waltham, 02451, US
Last Update: 01/04/2026
The PPD™ clinical research business of Thermo Fisher Scientific, the world leader in serving science, enables customers to accelerate innovation and drug development through patient-centered strategies and data analytics. Our services, which span multiple therapeutic ar...
Compliance Ranges Comparison

NHLBI – Blood Research & Education







PPD






Benchmark & Cyber Underwriting Signals
Incidents vs Research Services Industry Avg (This Year)
No incidents recorded for NHLBI – Blood Research & Education in 2026.
Incidents vs Research Services Industry Avg (This Year)
No incidents recorded for PPD in 2026.
Incident History - NHLBI – Blood Research & Education (X = Date, Y = Severity)
NHLBI – Blood Research & Education cyber incidents detection timeline including parent company and subsidiaries.
Incident History - PPD (X = Date, Y = Severity)
PPD cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

NHLBI – Blood Research & Education

PPD
FAQ
Latest Global CVEs
A flaw was found in libsoup. After a CONNECT tunnel is established through an HTTP proxy, libsoup incorrectly attaches the Proxy-Authorization header to subsequent HTTPS requests sent through that tunnel to the destination server. This allows the destination server to capture proxy credentials, leading to information disclosure.
A flaw was found in libsoup. The chunked transfer encoding parser uses a permissive parsing function for chunk sizes that silently accepts inputs violating RFC 9112, including leading whitespace, plus sign prefixes, and trailing invalid characters. When libsoup operates behind a strict frontend proxy, this parsing differential can be exploited to smuggle HTTP requests.
A flaw was found in libsoup. An unsigned integer underflow in the soup_filter_input_stream_read_until() function causes a heap buffer over-read when parsing multipart HTTP responses. A malicious HTTP server can exploit this by sending a crafted multipart response, potentially causing the client application to crash or disclose sensitive heap memory.
Weintek cMT3092X HMI allows a non-privileged user to modify tokens to escalate privileges.
Weintek cMT3092X HMI stores user account passwords in plaintext.