Comparison Overview
The Boxoffice Company

The Boxoffice Company
Los Angeles, US
Last Update: 01/04/2026
Boxoffice is the world’s #1 provider of media, technology, and data for the global film industry. The company operates a global network of media brands (AlloCine, AdoroCinema, SensaCine, Espinof, Filmstarts, MoviePilot and Beyazperde) reaching over 74M movie fans across...

NetSuite
2300 Oracle Way, Austin, 78741, US
Last Update: 19/06/2026
Founded in 1998, Oracle NetSuite is the world’s first cloud computing company and the leader in AI-powered cloud enterprise resource planning (ERP) and business management software. NetSuite provides an AI-powered, unified cloud business system that helps organizations...
Compliance Ranges Comparison

The Boxoffice Company







NetSuite






Benchmark & Cyber Underwriting Signals
Incidents vs Software Development Industry Avg (This Year)
No incidents recorded for The Boxoffice Company in 2026.
Incidents vs Software Development Industry Avg (This Year)
No incidents recorded for NetSuite in 2026.
Incident History - The Boxoffice Company (X = Date, Y = Severity)
The Boxoffice Company cyber incidents detection timeline including parent company and subsidiaries.
Incident History - NetSuite (X = Date, Y = Severity)
NetSuite cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

The Boxoffice Company

NetSuite
FAQ
Latest Global CVEs
Files or directories accessible to external parties in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.
Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.
Origin validation error in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.
NoteGen before 0.32.0 grants the Tauri shell plugin shell:allow-execute capability for bash, python, and python3 with arbitrary arguments in the default desktop capabilities. JavaScript running in the application webview can therefore invoke plugin:shell|execute to run attacker-controlled operating system commands with the privileges of the NoteGen process. In combination with script execution in the webview (for example via chat XSS), this enables full remote code execution on the user's machine.
NoteGen before 0.32.0 renders AI chat responses with markdown-it configured with html:true and injects the result into the DOM via dangerouslySetInnerHTML in chat-preview, without HTML sanitization and with CSP set to null. Attacker-controlled content that reaches the model prompt (for example a malicious skill REFERENCE.md that instructs the model to emit HTML) can cause the model response to include executable markup such as an img onerror handler. When the user views the chat response, that markup runs as JavaScript in the privileged Tauri webview, enabling arbitrary script execution in the application context (cross-site scripting).