Comparison Overview
Transport for London

Transport for London
5 Endeavour Square, Westfield Avenue,, London , E20 1JN, GB
Last Update: 04/04/2026
Every day, we help millions of people to make journeys across London: By Tube, bus, tram, car, bike – and more. People don’t associate us with journeys by river, on foot or via the air, but we help with that, too. Getting people to where they need to go has been our bus...

World Vision
London, GB
Last Update: 13/09/2026
World Vision is the largest child-focused private charity in the world. Our 33,000+ staff members working in nearly 100 countries have united with our incredible supporters to impact the lives of over 200 million vulnerable children by tackling the root causes of povert...
Compliance Ranges Comparison

Transport for London







World Vision






Benchmark & Cyber Underwriting Signals
Incidents vs Non-profit Organizations Industry Avg (This Year)
No incidents recorded for Transport for London in 2026.
Incidents vs Non-profit Organizations Industry Avg (This Year)
No incidents recorded for World Vision in 2026.
Incident History - Transport for London (X = Date, Y = Severity)
Transport for London cyber incidents detection timeline including parent company and subsidiaries.
Incident History - World Vision (X = Date, Y = Severity)
World Vision cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

Transport for London

World Vision
FAQ
Latest Global CVEs
The web management service in affected RouterOS versions contains an integer underflow in its HTTP request body handling that is reachable before authentication. This can be leveraged by an unauthenticated network attacker to achieve arbitrary code execution as root, or to cause a denial of service, using a single crafted request.
Denuvo Anti-Tamper through 2026-03-04 allows bypass of a hypervisor presence check via CPUID interception (SimpleSvm.sys on AMD; hyperkd.sys and hyperhv.dll on Intel).
PeaZip before 11.3.0, in a non-default configuration, is vulnerable to OS command injection via a filename in an archive because "quotation character already used in the string" is mishandled.
Zilliz Attu before 3.0.0 has a Playground feature that does not require authentication for proxying arbitrary HTTP and HTTPS requests to URLs on the public internet.
The Playground feature of Zilliz Attu before 3.0.0 allows SSRF (proxying of requests to private IP addresses).