Comparison Overview
Office of the Assistant Secretary for Health (OASH)

Office of the Assistant Secretary for Health (OASH)
200 Independence Ave SW, Washington, 20201, US
Last Update: 02/04/2026
At the Office of the Assistant Secretary for Health (OASH), we are fueled by a workforce committed to serving as the Secretary’s primary advisor on matters involving the nation’s public health. OASH oversees the U.S. Department of Health and Human Services’ key public h...

City of Cape Town
12 Hertzog Blvd, Cape Town, Western Cape, ZA, 8001
Last Update: 02/04/2026
Cape Town, or the Mother City, is South Africa’s oldest city, its second-most populous and the legislative capital. It is made up of a diverse population, a rich history, world-famous tourist attractions and an exciting calendar of international and local events. More ...
Compliance Ranges Comparison

Office of the Assistant Secretary for Health (OASH)







City of Cape Town






Benchmark & Cyber Underwriting Signals
Incidents vs Government Administration Industry Avg (This Year)
No incidents recorded for Office of the Assistant Secretary for Health (OASH) in 2026.
Incidents vs Government Administration Industry Avg (This Year)
No incidents recorded for City of Cape Town in 2026.
Incident History - Office of the Assistant Secretary for Health (OASH) (X = Date, Y = Severity)
Office of the Assistant Secretary for Health (OASH) cyber incidents detection timeline including parent company and subsidiaries.
Incident History - City of Cape Town (X = Date, Y = Severity)
City of Cape Town cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

Office of the Assistant Secretary for Health (OASH)

City of Cape Town
FAQ
Latest Global CVEs
A vulnerability was found in ggml-org llama.cpp bec4772f6. The impacted element is the function deserialize_tensor of the file ggml/src/ggml-rpc/ggml-rpc.cpp of the component ggml-RPC Server. Performing a manipulation of the argument op/op_params results in deserialization. The attack may be initiated remotely. This vulnerability is distinct from CVE-2026-34159 (GHSA-j8rj-fmpv-wcxw, PR #20908), which only added a buffer==nullptr rejection in create_node() and does not validate op or op_params. The reported GitHub issue was closed automatically due to inactivity.
A vulnerability has been found in CTFd up to 3.8.4. The affected element is the function _is_safe_url of the file CTFd/utils/validators/__init__.py. Such manipulation of the argument Next leads to open redirect. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The name of the patch is 5d8515842fd1ab2c3a9f2dde9ffca907aa334ea9. Upgrading the affected component is recommended.
- https://github.com/CTFd/CTFd/
- https://github.com/CTFd/CTFd/commit/5d8515842fd1ab2c3a9f2dde9ffca907aa334ea9
- https://github.com/CTFd/CTFd/pull/3026
- https://github.com/CTFd/CTFd/releases/tag/3.8.4
- https://mblunt.dev/writeups/ctfd-open-redirect/
- https://vuldb.com/cve/CVE-2026-78145
- https://vuldb.com/submit/882469
- https://vuldb.com/vuln/394533
- https://vuldb.com/vuln/394533/cti
A vulnerability was identified in code-projects Barangay Resident Profiling Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /boarders.php of the component Boarder Management Module. Such manipulation of the argument ID leads to authorization bypass. The attack can be executed remotely. The exploit is publicly available and might be used.
A vulnerability was determined in code-projects Barangay Resident Profiling Management System 1.0. Affected is an unknown function of the file residents.php of the component Resident Search Functionality. This manipulation of the argument Search causes sql injection. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized.
A vulnerability was found in code-projects Barangay Resident Profiling Management System 1.0. This impacts an unknown function of the file /archived_records.php of the component Restore/Delete. The manipulation of the argument resident_id results in authorization bypass. The attack may be launched remotely. The exploit has been made public and could be used.