Comparison Overview
PwC España

PwC España
Paseo de la Castellana, 259 b, Madrid, Comunidad de Madrid, ES, 28046
Last Update: 08/03/2026
Con más de 370.000 profesionales en 149 países -más de 4.400 en España-, PwC es una de las redes de servicios profesionales líderes en el mundo. Nuestro propósito es generar confianza en la sociedad y resolver problemas importantes. Con casi 90 años de experiencia, PwC ...

Ayesa
Parque Científico Tecnológico Cartuja, Sevilla, Andalucía 41092, ES, Sevilla, Sevilla, ES
Last Update: 05/04/2026
Ayesa is a global provider of technology and engineering services with more than 11500 employees in twenty-three countries across Europe, Latin America, Africa and Asia. The company develops and implements digital solutions for the private and public sector and uses the...
Compliance Ranges Comparison

PwC España







Ayesa






Benchmark & Cyber Underwriting Signals
Incidents vs Business Consulting and Services Industry Avg (This Year)
No incidents recorded for PwC España in 2026.
Incidents vs Business Consulting and Services Industry Avg (This Year)
No incidents recorded for Ayesa in 2026.
Incident History - PwC España (X = Date, Y = Severity)
PwC España cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Ayesa (X = Date, Y = Severity)
Ayesa cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

PwC España

Ayesa
FAQ
Latest Global CVEs
Files or directories accessible to external parties in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.
Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.
Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.
NoteGen before 0.32.0 grants the Tauri shell plugin shell:allow-execute capability for bash, python, and python3 with arbitrary arguments in the default desktop capabilities. JavaScript running in the application webview can therefore invoke plugin:shell|execute to run attacker-controlled operating system commands with the privileges of the NoteGen process. In combination with script execution in the webview (for example via chat XSS), this enables full remote code execution on the user's machine.
NoteGen before 0.32.0 renders AI chat responses with markdown-it configured with html:true and injects the result into the DOM via dangerouslySetInnerHTML in chat-preview, without HTML sanitization and with CSP set to null. Attacker-controlled content that reaches the model prompt (for example a malicious skill REFERENCE.md that instructs the model to emit HTML) can cause the model response to include executable markup such as an img onerror handler. When the user views the chat response, that markup runs as JavaScript in the privileged Tauri webview, enabling arbitrary script execution in the application context (cross-site scripting).