
Risvold's Inc.
Excellent
None
Excellent
None
Excellent
Danone is a leading global food and beverage company operating in three health-focused, fast-growing, and on-trend Categories: Essential Dairy & Plant-Based products, Waters, and Specialized Nutrition. With a long-standing mission of bringing health through food to as many people as possible, Danone aims to inspire healthier and more sustainable eating and drinking practices while committing to achieve measurable nutritional, social, societal, and environment impact. Danone has defined its โRenewโ strategy to restore growth, competitiveness, and value creation for the long-term. With almost 90,000 employees, and products sold in over 120 markets, Danone generated โฌ27.6 billion in sales in 2023. Danoneโs portfolio includes leading international brands (Actimel, Activia, Alpro, Aptamil, Danette, Danio, Danonino, evian, Nutricia, Nutrilon, and Volvic, among others) as well as strong local and regional brands (including AQUA, Blรฉdina, Bonafont, Cow & Gate, Mizone, Oikos and Silk). Listed on Euronext Paris and present on the OTCQX platform via an ADR (American Depositary Receipt) program, Danone is a component stock of leading sustainability indexes including the ones managed by Moodyโs and Sustainalytics, as well as MSCI ESG Indexes, FTSE4Good Index Series, Bloomberg Gender Equality Index, and Access to Nutrition Index. Danoneโs ambition is to be B CorpTM certified at a global level in 2025.
Security & Compliance Standards Overview
No incidents recorded for Risvold's Inc. in 2025.
No incidents recorded for Danone in 2025.
Risvold's Inc. cyber incidents detection timeline including parent company and subsidiaries
Danone cyber incidents detection timeline including parent company and subsidiaries
Last 3 Security & Risk Events by Company
A weakness has been identified in bftpd up to 6.2. Impacted is the function expand_groups of the file options.c of the component Configuration File Handler. Executing manipulation can lead to heap-based buffer overflow. It is possible to launch the attack on the local host. Attacks of this nature are highly complex. The exploitability is considered difficult. The exploit has been made available to the public and could be exploited. The vendor was contacted early about this disclosure but did not respond in any way.
A security flaw has been discovered in LogicalDOC Community Edition up to 9.2.1. This issue affects some unknown processing of the file /frontend.jsp of the component Add Contact Page. Performing manipulation of the argument First Name/Last Name/Company/Address/Phone/Mobile results in cross site scripting. Remote exploitation of the attack is possible. The exploit has been released to the public and may be exploited. The vendor was contacted early about this disclosure but did not respond in any way.
A vulnerability was identified in toeverything AFFiNE up to 0.24.1. This vulnerability affects unknown code of the component Avatar Upload Image Endpoint. Such manipulation leads to cross site scripting. The attack may be launched remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.
A vulnerability was determined in givanz Vvveb up to 1.0.7.3. This affects the function Import of the file admin/controller/tools/import.php of the component Raw SQL Handler. This manipulation causes sql injection. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized. Patch name: 52204b4a106b2fb02d16eee06a88a1f2697f9b35. It is recommended to apply a patch to fix this issue.
A vulnerability has been found in 70mai X200 up to 20251010. Affected by this vulnerability is an unknown functionality of the component HTTP Web Server. The manipulation leads to use of default credentials. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.