Comparison Overview
NVR, Inc.

NVR, Inc.
11700 Plaza America Dr, Reston, 20190, US
Last Update: 16/09/2026
NVR, Inc. is a Top 5 US Homebuilder and an industry leading company. With 75 years of experience building quality homes and successful careers, and our standing as the most profitable publicly traded homebuilding company in the US, NVR has developed our reputation fo...

Fluor Corporation
6700 Las Colinas Blvd., Irving, 75039, US
Last Update: 14/09/2026
Fluor Corporation is a global engineering, procurement and construction company. We work with leaders in the energy, infrastructure, life sciences, advanced technologies, mining and metals industries, as well as government agencies, to build a better world. Since our f...
Compliance Ranges Comparison

NVR, Inc.







Fluor Corporation






Benchmark & Cyber Underwriting Signals
Incidents vs Construction Industry Avg (This Year)
No incidents recorded for NVR, Inc. in 2026.
Incidents vs Construction Industry Avg (This Year)
No incidents recorded for Fluor Corporation in 2026.
Incident History - NVR, Inc. (X = Date, Y = Severity)
NVR, Inc. cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Fluor Corporation (X = Date, Y = Severity)
Fluor Corporation cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

NVR, Inc.

Fluor Corporation
FAQ
Latest Global CVEs
Exim before 4.100.1 allows SMTP smuggling in which the received message does not match any sent message, and instead depends on crafted data sent after a rejection during DATA processing.
Exim before 4.100.1, when Proxy-Protocol is used with an attacker-controlled proxy, allows attackers to read certain uninitialized data from stack memory.
Exim before 4.100.1, when certain non-default TLS settings are used with GnuTLS, has a use-after-free.
Exim before 4.100.1, when Proxy-Protocol is used with an attacker-controlled proxy, has an out-of-bounds write.
Mistral Vibe before 2.25.5 contains a remote code execution vulnerability in the worktree creation process that executes git hooks before trust validation. Attackers can supply a repository with a crafted post-checkout hook that executes arbitrary shell commands with the privileges of the user running Vibe.
- https://github.com/mistralai/mistral-vibe
- https://github.com/mistralai/mistral-vibe/blob/19b5b74faa78d0816b8d4d4c7d7543fc3520678c/vibe/core/git/repo.py#L411-L431
- https://github.com/mistralai/mistral-vibe/commit/c069ffa1e12fb5f2487b489217c40ab97721d553
- https://github.com/mistralai/mistral-vibe/issues/996
- https://github.com/mistralai/mistral-vibe/releases/tag/v2.25.5
- https://www.vulncheck.com/advisories/mistral-vibe-before-2.25.5-remote-code-execution-via-git-post-checkout