Comparison Overview
Surmodics, Inc.

Surmodics, Inc.
9924 West 74th Street, Eden Prairie, MN, US, 55344
Last Update: 31/03/2026
Surmodics is the global leader in surface modification technologies for intravascular medical devices and a leading provider of chemical components for in vitro diagnostic (IVD) immunoassay tests and microarrays. Surmodics is pursuing highly differentiated medical devic...

Smith+Nephew
5 Hatters Lane, Watford, Hertfordshire, GB, WD18 8YE
Last Update: 12/09/2026
Smith+Nephew is a global medical technology company. We design and manufacture technology that takes the limits off living. We support healthcare professionals to return their patients to health and mobility, helping them to perform at their fullest potential. From our...
Compliance Ranges Comparison

Surmodics, Inc.







Smith+Nephew






Benchmark & Cyber Underwriting Signals
Incidents vs Medical Equipment Manufacturing Industry Avg (This Year)
No incidents recorded for Surmodics, Inc. in 2026.
Incidents vs Medical Equipment Manufacturing Industry Avg (This Year)
No incidents recorded for Smith+Nephew in 2026.
Incident History - Surmodics, Inc. (X = Date, Y = Severity)
Surmodics, Inc. cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Smith+Nephew (X = Date, Y = Severity)
Smith+Nephew cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

Surmodics, Inc.

Smith+Nephew
FAQ
Latest Global CVEs
Exim before 4.100.1 allows SMTP smuggling in which the received message does not match any sent message, and instead depends on crafted data sent after a rejection during DATA processing.
Exim before 4.100.1, when Proxy-Protocol is used with an attacker-controlled proxy, allows attackers to read certain uninitialized data from stack memory.
Exim before 4.100.1, when certain non-default TLS settings are used with GnuTLS, has a use-after-free.
Exim before 4.100.1, when Proxy-Protocol is used with an attacker-controlled proxy, has an out-of-bounds write.
Mistral Vibe before 2.25.5 contains a remote code execution vulnerability in the worktree creation process that executes git hooks before trust validation. Attackers can supply a repository with a crafted post-checkout hook that executes arbitrary shell commands with the privileges of the user running Vibe.
- https://github.com/mistralai/mistral-vibe
- https://github.com/mistralai/mistral-vibe/blob/19b5b74faa78d0816b8d4d4c7d7543fc3520678c/vibe/core/git/repo.py#L411-L431
- https://github.com/mistralai/mistral-vibe/commit/c069ffa1e12fb5f2487b489217c40ab97721d553
- https://github.com/mistralai/mistral-vibe/issues/996
- https://github.com/mistralai/mistral-vibe/releases/tag/v2.25.5
- https://www.vulncheck.com/advisories/mistral-vibe-before-2.25.5-remote-code-execution-via-git-post-checkout