Comparison Overview
OneMain Financial

OneMain Financial
Baltimore , US
Last Update: 30/03/2026
OneMain Financial (NYSE: OMF) is the leader in offering nonprime customers responsible access to credit and is dedicated to improving the financial well-being of hardworking Americans. We look beyond credit scores to help people get the money they need today and reach t...

State Street
One Lincoln St, Boston, 02111, US
Last Update: 04/04/2026
At State Street, we deliver leading investment platforms, data, expertise, and solutions that accelerate performance and better decision making. With over 200 years of global financial leadership, we equip institutional investors through a comprehensive suite of capabil...
Compliance Ranges Comparison

OneMain Financial







State Street






Benchmark & Cyber Underwriting Signals
Incidents vs Financial Services Industry Avg (This Year)
No incidents recorded for OneMain Financial in 2026.
Incidents vs Financial Services Industry Avg (This Year)
No incidents recorded for State Street in 2026.
Incident History - OneMain Financial (X = Date, Y = Severity)
OneMain Financial cyber incidents detection timeline including parent company and subsidiaries.
Incident History - State Street (X = Date, Y = Severity)
State Street cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

OneMain Financial

State Street
FAQ
Latest Global CVEs
An issue in the SBN UDP interface of NASA cFS v7.0.1 allows attackers to cause a Denial of Service (DoS) via transmitting a crafted SBN frame.
A stack-based buffer overflow vulnerability exists in the cmd_edl function of OreSat Firmware v1.0. The vulnerability is triggered when processing the edl fw_flash command, where the <filename> argument is copied to a 64-byte stack buffer via memcpy without proper length validation. An attacker with physical access to the UART3 serial interface can exploit this vulnerability by sending a maliciously crafted command with an oversized filename parameter,
Adobe Campaign Classic (ACC) is affected by a Violation of Secure Design Principles vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized read access. Exploitation of this issue does not require user interaction.
Adobe Campaign Classic (ACC) is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An attacker could exploit this vulnerability to gain elevated privileges. Exploitation of this issue does not require user interaction.
Adobe Campaign Classic (ACC) is affected by a Server-Side Request Forgery (SSRF) vulnerability that could result in privilege escalation. Exploitation of this issue does not require user interaction. Scope is changed.