Comparison Overview
Starbucks China

Starbucks China
徐汇区桂箐路65号, 上海市, 上海市, CN, 200233
Last Update: 22/03/2026
星巴克咖啡公司自1999年进入中国以来,秉承“激发并孕育人文精神——每人、每杯、每个社区”的公司使命,我们始终致力于在中国成为一家与众不同的公司:在传承经典咖啡文化的同时,关爱我们的伙伴,为顾客提供超越期望的星巴克体验,并为所在社区的繁荣做出自己的贡献。目前星巴克已经在中国大陆130多个城市开设了3,000多家门店,拥有40,000名身穿绿围裙的星巴克伙伴。 我们热爱我们的咖啡。星巴克始终致力于通过道德采购,烘焙并提供高品质的阿拉比卡咖啡豆。我们还在中国云南普洱建立了星巴克中国咖啡种植者支持中心,旨在整合...

EXPRESS
1 Express Drive, Columbus, 43230, US
Last Update: 02/04/2026
EXPRESS is a multichannel fashion brand dedicated to creating confidence and inspiring self-expression. Since its launch in 1980, the brand has embraced a design philosophy rooted in modern, confident and effortless style. Whether dressing for work, everyday or special ...
Compliance Ranges Comparison

Starbucks China







EXPRESS






Benchmark & Cyber Underwriting Signals
Incidents vs Retail Industry Avg (This Year)
No incidents recorded for Starbucks China in 2026.
Incidents vs Retail Industry Avg (This Year)
No incidents recorded for EXPRESS in 2026.
Incident History - Starbucks China (X = Date, Y = Severity)
Starbucks China cyber incidents detection timeline including parent company and subsidiaries.
Incident History - EXPRESS (X = Date, Y = Severity)
EXPRESS cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

Starbucks China

EXPRESS
FAQ
Latest Global CVEs
A maliciously crafted PDF file, when parsed through Autodesk Revit, can force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process.
A flaw was found in udisks2. A local attacker with an active console session can exploit insufficient authorization checking on the 'as-user' option in the org.freedesktop.UDisks2.Filesystem.Mount() D-Bus method. This allows the attacker to spoof the 'as-user' parameter, mounting filesystems on behalf of arbitrary users, including privileged accounts. This can lead to local privilege escalation through mount point injection and manipulation of the mount namespace visible to privileged users.
A maliciously crafted BMP file, when parsed through certain Autodesk products, can force a Untrusted Pointer Dereference vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process.
A maliciously crafted TIF file, when parsed through certain Autodesk products during image import, can cause an Out-of-Bounds Read in the image handling library. A malicious actor can leverage this vulnerability to cause a denial of service
PILOS (Platform for Interactive Live-Online Seminars) is a frontend for BigBlueButton. From 2.1.0 until 4.14.1, PILOS does not send a Cross-Origin-Opener-Policy response header, so pages opened by PILOS via a link that opens a new browsing context (e.g., target="_blank") retain a window.opener reference back to the originating PILOS tab. A malicious destination page reached this way can use window.opener to navigate or manipulate the original PILOS tab, a technique known as reverse tabnabbing, potentially redirecting an authenticated user to a phishing page that mimics PILOS. This issue is fixed in version 4.14.1.