Comparison Overview
Rabobank New Zealand

Rabobank New Zealand
32 Hood St, Hamilton , 3204, NZ
Last Update: 18/01/2026
We’re part of the international Rabobank Group, the world’s leading specialist in food and agribusiness banking. Rabobank started 120 years ago in the Netherlands as a small cooperative set up by farmers to serve the banking needs of rural communities. Today, we’re fo...

Federal Bank
Federal Towers, Head Office, Ernakulam, 683101, IN
Last Update: 01/04/2026
Federal Bank, one of the leading private sector banks with presence across the country, began its journey from humble backgrounds to reach the stature of an institution with national prominence & character. With a rich legacy of 7 decades, the Bank aspires to be the mos...
Compliance Ranges Comparison

Rabobank New Zealand







Federal Bank






Benchmark & Cyber Underwriting Signals
Incidents vs Banking Industry Avg (This Year)
No incidents recorded for Rabobank New Zealand in 2026.
Incidents vs Banking Industry Avg (This Year)
No incidents recorded for Federal Bank in 2026.
Incident History - Rabobank New Zealand (X = Date, Y = Severity)
Rabobank New Zealand cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Federal Bank (X = Date, Y = Severity)
Federal Bank cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

Rabobank New Zealand

Federal Bank
FAQ
Latest Global CVEs
Fides is an open-source privacy engineering platform. From version 2.33.0 to before version 2.84.5, there is a DOM-based XSS vulnerability in fides.js via the fides_description override. This issue has been patched in version 2.84.5.
WACRM prior to commit 73041bf contain an authorization bypass vulnerability in the automation engine that allows authenticated attackers to access and modify contacts belonging to other tenants by supplying an arbitrary caller-controlled contact_id in the POST request body without tenant ownership verification. Attackers can exploit the service-role client that bypasses row-level security to modify victim contact fields including name, email, and company across tenant boundaries using only a known contact UUID.
Namespace attributes are not encoded correctly during HTML serialization. This allows bypassing the cross-site scripting prevention mechanism of typo3/html-sanitizer before version 2.3.2.
When ALLOW_INSECURE_RAW_TEXT is enabled, whitespace-variant closing tags (e.g., </style\t>) are not recognized by the sanitizer but accepted by browsers as valid end tags, allowing subsequent content to escape sanitization. This allows bypassing the cross-site scripting prevention mechanism of typo3/html-sanitizer before version 2.3.2.
Headplane is a feature-complete Web UI for Headscale. Prior to versions 0.6.3 and 0.7.0-beta.3, Headplane was vulnerable to a path traversal / authorization bypass in the Headscale API client used by node and user rename operations. This issue has been patched in versions 0.6.3 and 0.7.0-beta.3.