Comparison Overview
ReflectionBio – By Patients, For Patients

ReflectionBio – By Patients, For Patients
No. 1 Science Park East Avenue, Pak Shek Kok, New Territories, Hong Kong SAR,, undefined, CN
Last Update: 02/04/2026
Reflection Biotechnologies (ReflectionBio®) is a patient-driven biotech company. Founded by a rare disease patient, we apply the “By Patients, For Patients” approach for patients to combine efforts in driving #RareDisease and #OrphanDrug R&D. We focus on developing gene...

Biocon
Hosur Road, Electronics City, Bangalore, Karnataka, IN, 560100
Last Update: 02/04/2026
Biocon: Enhancing Global Healthcare Biocon Limited, publicly listed in 2004, is India's largest and fully-integrated, innovation-led biopharmaceutical company. It is an emerging global biopharmaceutical enterprise serving customers in over 120 countries. Driven by a...
Compliance Ranges Comparison

ReflectionBio – By Patients, For Patients







Biocon






Benchmark & Cyber Underwriting Signals
Incidents vs Biotechnology Research Industry Avg (This Year)
No incidents recorded for ReflectionBio – By Patients, For Patients in 2026.
Incidents vs Biotechnology Research Industry Avg (This Year)
No incidents recorded for Biocon in 2026.
Incident History - ReflectionBio – By Patients, For Patients (X = Date, Y = Severity)
ReflectionBio – By Patients, For Patients cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Biocon (X = Date, Y = Severity)
Biocon cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

ReflectionBio – By Patients, For Patients

Biocon
FAQ
Latest Global CVEs
An authenticated user with the read role may read limited amounts of uninitialized stack memory via specially-crafted issuances of the filemd5 command
The $_internalApplyOplogUpdate aggregation pipeline stage can be used to execute a document diff containing a malformed binary diff to return memory out-of-bounds or crash the server. $_internalApplyOplogUpdate can be executed by any authenticated user with access to the aggregate command.
An authorized user could trigger a server crash by running a query with a 2dsphere index on a field that stores a GeoJSON GeometryCollection containing a Polygon with a strict-winding CRS. Strict-winding polygons are intentionally unsupported for indexing, but the guard that rejects them does not inspect members of a GeometryCollection, allowing the unsafe path to be reached which ends with an ensuing null-pointer dereference.
The ldapQueryPassword parameter, when set through the runtime setParameter command, will log the new password to the mongod.log file in plain text.
An authenticated user can cause a MongoDB server to crash or return incorrect results by creating documents that interfere with internal metadata processing during query execution. This stems from insufficient separation between user-controlled document fields and internal metadata in certain execution paths.