Comparison Overview
Promontory Club

Promontory Club
8758 N Promontory Ranch Rd, Park City, 84098, US
Last Update: 01/04/2026
Promontory Club is private, high-end mountain club community located in Park City, Utah, catering to a multi-generational membership with robust amenities and world class golf. Promontory has received universal acclaim as a destination where life’s greatest moments natu...

Anywhere Real Estate Inc.
Madison, New Jersey, US
Last Update: 31/03/2026
Anywhere Real Estate Inc. (NYSE: HOUS) is moving the real estate industry to what's next. A leader of integrated residential real estate services, Anywhere includes franchise, brokerage, relocation, and title and settlement businesses, as well as mortgage and title insu...
Compliance Ranges Comparison

Promontory Club







Anywhere Real Estate Inc.






Benchmark & Cyber Underwriting Signals
Incidents vs Real Estate Industry Avg (This Year)
No incidents recorded for Promontory Club in 2026.
Incidents vs Real Estate Industry Avg (This Year)
Anywhere Real Estate Inc. has 3.85% fewer incidents than the average of all companies with at least one recorded incident.
Incident History - Promontory Club (X = Date, Y = Severity)
Promontory Club cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Anywhere Real Estate Inc. (X = Date, Y = Severity)
Anywhere Real Estate Inc. cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

Promontory Club

Anywhere Real Estate Inc.
FAQ
Latest Global CVEs
Files or directories accessible to external parties in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.
Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.
Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.
NoteGen before 0.32.0 grants the Tauri shell plugin shell:allow-execute capability for bash, python, and python3 with arbitrary arguments in the default desktop capabilities. JavaScript running in the application webview can therefore invoke plugin:shell|execute to run attacker-controlled operating system commands with the privileges of the NoteGen process. In combination with script execution in the webview (for example via chat XSS), this enables full remote code execution on the user's machine.
NoteGen before 0.32.0 renders AI chat responses with markdown-it configured with html:true and injects the result into the DOM via dangerouslySetInnerHTML in chat-preview, without HTML sanitization and with CSP set to null. Attacker-controlled content that reaches the model prompt (for example a malicious skill REFERENCE.md that instructs the model to emit HTML) can cause the model response to include executable markup such as an img onerror handler. When the user views the chat response, that markup runs as JavaScript in the privileged Tauri webview, enabling arbitrary script execution in the application context (cross-site scripting).