Comparison Overview
VRChat Inc.

VRChat Inc.
VRChat, San Francisco, 94122, US
Last Update: 12/06/2026
VRChat, Inc. is one of the leading Virtual World platforms, hosting one of the largest active online communities of users and creators. We have secured key investment from major partners, allowing us to grow and develop VRChat for the foreseeable future. Dive into VRCha...

Booking.com
Oosterdokskade 163, Amsterdam, 1011 DL, NL
Last Update: 20/04/2026
A career at Booking.com is all about the journey, helping you explore new challenges in a place where you can be your best self. With plenty of exciting twists, turns and opportunities along the way. We’ve always been pioneers, on a mission to shape the future of trav...
Compliance Ranges Comparison

VRChat Inc.







Booking.com






Benchmark & Cyber Underwriting Signals
Incidents vs Software Development Industry Avg (This Year)
VRChat Inc. has 86.92% more incidents than the average of same-industry companies with at least one recorded incident.
Incidents vs Software Development Industry Avg (This Year)
Booking.com has 288.35% more incidents than the average of all companies with at least one recorded incident.
Incident History - VRChat Inc. (X = Date, Y = Severity)
VRChat Inc. cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Booking.com (X = Date, Y = Severity)
Booking.com cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

VRChat Inc.

Booking.com
FAQ
Latest Global CVEs
Mattermost versions 10.11.x <= 10.11.20, 11.7.x <= 11.7.5 Mattermost fails to remove thread membership records when a user is removed from or leaves a team, which allows a previously removed user who is later re-invited to the team to view private channel thread root post content and metadata via the team threads API.. Mattermost Advisory ID: MMSA-2026-00682
Mattermost Desktop App versions <=6.2 6.2.2.0 fail to redact the pre-auth secret when generating a diagnostics report, which allows a local attacker with access to a user's diagnostics report or log files to obtain the plaintext pre-auth secret configured for a connected server via inspecting the Server Connectivity (Step-3) diagnostics output. Mattermost Advisory ID: MMSA-2026-00716
A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown part of the file /BSHRM1.php. Performing a manipulation of the argument course results in cross site scripting. Remote exploitation of the attack is possible. The exploit has been released to the public and may be used for attacks.
An issue in O2OA v.10.0.2 allows a local attacker to execute arbitrary code via the the sandbox mechanism of the Invoke script execution.
An issue in Halo 2.25.4 allows a remote attacker to execute arbitrary code via the PluginEndpoint.java, installFromUri method, and DefaultPluginApplicationContextFactory components