Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download

Comparison Overview

Promena Strategic Procurement SoftwarePromena Strategic Procurement Software
VS
MeituanMeituan
Promena Strategic Procurement Software

Promena Strategic Procurement Software

Çagla Sokak, Üsküdar, Istanbul, 34700, TR

Last Update: 29/03/2026

View Profile
Between 700 and 749
https://www.promena.net/en
749/1000Moderate

Promena is a strategic procurement and sourcing solution at the forefront of integrating cutting-edge technology with a deep understanding of global and regional market dynamics. This unique combination of technological expertise and market insight enables us to offer e...

NAICS:511
NAICS Definition:N/A
Employees:7
Subsidiaries:53
12-month incidents
0
Known data breaches
0
Attack type number
0
Meituan

Meituan

Wangjing International R&D Park, No.6 Wangjing East Road, Chaoyang District, Beijing, CN, 100102

Last Update: 19/05/2026

View Profile
780/1000Fair

Adhering to the ‘Retail + Technology’ strategy, Meituan commits to its mission that 'We help people eat better, live better'. Since its establishment in March 2010, Meituan has advanced the digital upgrading of services and goods retail on both supply and demand sides....

NAICS:5112
NAICS Definition:Software Publishers
Employees:41,158
Subsidiaries:2
12-month incidents
0
Known data breaches
0
Attack type number
1

Compliance Ranges Comparison

Based On Specific Ai Models Category
Promena Strategic Procurement Software

Promena Strategic Procurement Software

-
ISO 27001Not verified
ISO 27001
-
SOC2 Type 1Not verified
SOC2 Type 1
-
SOC2 Type 2Not verified
SOC2 Type 2
-
GDPRNot verified
GDPR
-
PCI DSSNot verified
PCI DSS
-
HIPAANot verified
HIPAA
Meituan

Meituan

-
ISO 27001Not verified
ISO 27001
-
SOC2 Type 1Not verified
SOC2 Type 1
-
SOC2 Type 2Not verified
SOC2 Type 2
-
GDPRNot verified
GDPR
-
PCI DSSNot verified
PCI DSS
-
HIPAANot verified
HIPAA

Benchmark & Cyber Underwriting Signals

Incidents vs Software Development Industry Avg (This Year)

No incidents recorded for Promena Strategic Procurement Software in 2026.

Incidents

Incidents vs Software Development Industry Avg (This Year)

No incidents recorded for Meituan in 2026.

Incidents

Incident History - Promena Strategic Procurement Software (X = Date, Y = Severity)

Promena Strategic Procurement Software cyber incidents detection timeline including parent company and subsidiaries.

No timeline data available
R - Ransomware
C - Cyber Attack
D - Data Breach
V - Vulnerability

Incident History - Meituan (X = Date, Y = Severity)

Meituan cyber incidents detection timeline including parent company and subsidiaries.

R - Ransomware
C - Cyber Attack
D - Data Breach
V - Vulnerability

Notable Incidents

Last Cyber / HR Incidents / Global...
Promena Strategic Procurement Software

Promena Strategic Procurement Software

Incidents
No explicit notable incidents reported.
Meituan

Meituan

Incidents
🔒 Incident : Data Leak
MEI231827722

FAQ

Between Promena Strategic Procurement Software company and Meituan company, which one has the best AI Cybersecurity Score ?
Between Promena Strategic Procurement Software company and Meituan company, which one has experienced more cyber incidents in the past ?
Between Promena Strategic Procurement Software company and Meituan company, which one has experienced more cyber incidents this year ?
Between Promena Strategic Procurement Software company and Meituan company, which one has experienced at least one ransomware attack ?
Between Promena Strategic Procurement Software company and Meituan company, which one has experienced at least one data breach ?
Between Promena Strategic Procurement Software company and Meituan company, which one has experienced at least one targeted cyberattack ?
Between Promena Strategic Procurement Software company and Meituan company, which one has experienced at least one vulnerability ?
Between Promena Strategic Procurement Software company and Meituan company, which one holds the most compliance certifications ?
Between Promena Strategic Procurement Software company and Meituan company, which one holds the fewest compliance certifications ?
Between Promena Strategic Procurement Software company and Meituan company, which one has the most subsidiaries ?
Between Promena Strategic Procurement Software company and Meituan company, which one has the largest number of employees ?
Between Promena Strategic Procurement Software and Meituan, which company holds both SOC 2 Type 1 certifications ?
Between Promena Strategic Procurement Software and Meituan, which company holds both SOC 2 Type 2 certifications ?
Which company is ISO 27001 certified - Promena Strategic Procurement Software or Meituan ?
Which company is PCI DSS compliant - Promena Strategic Procurement Software or Meituan ?
Between Promena Strategic Procurement Software and Meituan, which company complies with HIPAA regulations for healthcare data ?
Between Promena Strategic Procurement Software and Meituan, which company complies with GDPR requirements ?

Latest Global CVEs

CVE-2026-26422
SUMMARY

clash-verge-service-ipc before 2.3.0 has a world-reachable IPC endpoint, leading to local privilege escalation.

PUBLISHED
Date2026-06-06
UPDATED
Date2026-06-06
RISK INFORMATION (Score: 8.4)
CVSS3
Base Score: 8.4
Complexity: LOW
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
IMPACT SCORE
5.9
EXPLOITABILITY
2.5
CVE-2026-11441
SUMMARY

A vulnerability was identified in theonedev onedev up to 15.0.5. This vulnerability affects the function canAccessIssue of the file /issues/ of the component Pull Request Handler. Such manipulation of the argument issue leads to improper authorization. It is possible to launch the attack remotely. Upgrading to version 15.0.6 is able to resolve this issue. It is advisable to upgrade the affected component.

PUBLISHED
Date2026-06-06
UPDATED
Date2026-06-06
RISK INFORMATION (Score: 6.3)
CVSS2
Base Score: 6.5
Complexity: LOW
AV:N/AC:L/Au:S/C:P/I:P/A:P
CVSS3
Base Score: 6.3
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
CVSS4
Base Score: 5.3
Complexity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
IMPACT SCORE
3.4
EXPLOITABILITY
2.8
CVE-2026-11440
SUMMARY

A vulnerability was determined in theonedev onedev up to 15.0.5. This affects an unknown part of the file /repositories/{projectId}/default-branch of the component REST API. This manipulation of the argument project.defaultBranch causes improper authorization. It is possible to initiate the attack remotely. Upgrading to version 15.0.6 is able to mitigate this issue. Upgrading the affected component is advised.

PUBLISHED
Date2026-06-06
UPDATED
Date2026-06-06
RISK INFORMATION (Score: 6.3)
CVSS2
Base Score: 6.5
Complexity: LOW
AV:N/AC:L/Au:S/C:P/I:P/A:P
CVSS3
Base Score: 6.3
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
CVSS4
Base Score: 5.3
Complexity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
IMPACT SCORE
3.4
EXPLOITABILITY
2.8
CVE-2026-11439
SUMMARY

A vulnerability was found in theonedev onedev up to 15.0.5. Affected by this issue is some unknown functionality of the file /projects/ of the component Parent Project Handler. The manipulation of the argument project.parentId results in improper authorization. The attack may be performed from remote. Upgrading to version 15.0.6 can resolve this issue. It is recommended to upgrade the affected component.

PUBLISHED
Date2026-06-06
UPDATED
Date2026-06-06
RISK INFORMATION (Score: 6.3)
CVSS2
Base Score: 6.5
Complexity: LOW
AV:N/AC:L/Au:S/C:P/I:P/A:P
CVSS3
Base Score: 6.3
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
CVSS4
Base Score: 5.3
Complexity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
IMPACT SCORE
3.4
EXPLOITABILITY
2.8
CVE-2026-11438
SUMMARY

A vulnerability has been found in theonedev onedev up to 15.0.5. Affected by this vulnerability is an unknown functionality of the file /projects. The manipulation of the argument project.forkedFromId leads to improper authorization. The attack is possible to be carried out remotely. Upgrading to version 15.0.6 addresses this issue. Upgrading the affected component is recommended.

PUBLISHED
Date2026-06-06
UPDATED
Date2026-06-06
RISK INFORMATION (Score: 6.3)
CVSS2
Base Score: 6.5
Complexity: LOW
AV:N/AC:L/Au:S/C:P/I:P/A:P
CVSS3
Base Score: 6.3
Complexity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
CVSS4
Base Score: 5.3
Complexity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
IMPACT SCORE
3.4
EXPLOITABILITY
2.8