Comparison Overview

WEL Companies, Inc

VS

Yellow

WEL Companies, Inc

PO Box 5610, De Pere, Wisconsin, 54115, US
Last Update: 2025-03-04 (UTC)
Between 750 and 799

WEL Companies is a leading temperature controlled warehouse and transportation provider with locations in Wisconsin, Pennsylvania, Georgia, and Florida. Most locations are AIB Certified Superior. We are a full service integrated logistics provider with many fortune 500 companies.

NAICS: 484
NAICS Definition: Truck Transportation
Employees: 407
Subsidiaries: 5
12-month incidents
0
Known data breaches
0
Attack type number
0

Yellow

501 Commerce St. Suite, 1120, None, Nashville, TN, US, 37203
Last Update: 2025-07-28 (UTC)
Between 700 and 749

Yellow, a Fortune 500 company headquartered in Nashville, TN is one of the largest super-regional less-than-truckload (LTL) companies in North America. Nearly 100 years ago, Yellow created the LTL industry, and now it comprises four successful regional LTL companies and an in-house logistics brokerage, Yellow Logistics. Through its team of dedicated and determined professionals, Yellow offers industry-leading and award-winning shipping and supply chain solutions to help our customers deliver like never before. Visit MyYellow.com to learn more.

NAICS: 484
NAICS Definition: Truck Transportation
Employees: 12,505
Subsidiaries: 5
12-month incidents
0
Known data breaches
1
Attack type number
1

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/wel-companies-wisconsin-express-lines-.jpeg
WEL Companies, Inc
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/yellowcorporation.jpeg
Yellow
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
WEL Companies, Inc
100%
Compliance Rate
0/4 Standards Verified
Yellow
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Truck Transportation Industry Average (This Year)

No incidents recorded for WEL Companies, Inc in 2025.

Incidents vs Truck Transportation Industry Average (This Year)

No incidents recorded for Yellow in 2025.

Incident History — WEL Companies, Inc (X = Date, Y = Severity)

WEL Companies, Inc cyber incidents detection timeline including parent company and subsidiaries

Incident History — Yellow (X = Date, Y = Severity)

Yellow cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/wel-companies-wisconsin-express-lines-.jpeg
WEL Companies, Inc
Incidents

No Incident

https://images.rankiteo.com/companyimages/yellowcorporation.jpeg
Yellow
Incidents

Date Detected: 7/2018
Type:Breach
Attack Vector: Phishing
Blog: Blog

FAQ

WEL Companies, Inc company demonstrates a stronger AI Cybersecurity Score compared to Yellow company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

Yellow company has historically faced a number of disclosed cyber incidents, whereas WEL Companies, Inc company has not reported any.

In the current year, Yellow company and WEL Companies, Inc company have not reported any cyber incidents.

Neither Yellow company nor WEL Companies, Inc company has reported experiencing a ransomware attack publicly.

Yellow company has disclosed at least one data breach, while WEL Companies, Inc company has not reported such incidents publicly.

Neither Yellow company nor WEL Companies, Inc company has reported experiencing targeted cyberattacks publicly.

Neither WEL Companies, Inc company nor Yellow company has reported experiencing or disclosing vulnerabilities publicly.

Neither WEL Companies, Inc nor Yellow holds any compliance certifications.

Neither company holds any compliance certifications.

Both Yellow company and WEL Companies, Inc company have a similar number of subsidiaries worldwide.

Yellow company employs more people globally than WEL Companies, Inc company, reflecting its scale as a Truck Transportation.

Neither WEL Companies, Inc nor Yellow holds SOC 2 Type 1 certification.

Neither WEL Companies, Inc nor Yellow holds SOC 2 Type 2 certification.

Neither WEL Companies, Inc nor Yellow holds ISO 27001 certification.

Neither WEL Companies, Inc nor Yellow holds PCI DSS certification.

Neither WEL Companies, Inc nor Yellow holds HIPAA certification.

Neither WEL Companies, Inc nor Yellow holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘percentage’ parameter in all versions up to, and including, 5.4.5 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

Risk Information
cvss3
Base: 6.4
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N
Description

The ComboServlet in Liferay Portal 7.4.0 through 7.4.3.111, and older unsupported versions, and Liferay DXP 2023.Q4.0 through 2023.Q4.2, 2023.Q3.1 through 2023.Q3.5, 7.4 GA through update 92, 7.3 GA through update 35, and older unsupported versions does not limit the number or size of the files it will combine, which allows remote attackers to create very large responses that lead to a denial of service attack via the URL query string.

Risk Information
cvss4
Base: 6.9
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A relative path traversal vulnerability was discovered in Productivity Suite software version 4.4.1.19. The vulnerability allows an unauthenticated remote attacker to interact with the ProductivityService PLC simulator and delete arbitrary directories on the target machine.

Risk Information
cvss3
Base: 4.0
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:L/A:N
cvss4
Base: 6.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A relative path traversal vulnerability was discovered in Productivity Suite software version 4.4.1.19. The vulnerability allows an unauthenticated remote attacker to interact with the ProductivityService PLC simulator and create arbitrary directories on the target machine.

Risk Information
cvss3
Base: 4.0
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:L/A:N
cvss4
Base: 6.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

A relative path traversal vulnerability was discovered in Productivity Suite software version 4.4.1.19. The vulnerability allows an unauthenticated remote attacker to interact with the ProductivityService PLC simulator and delete arbitrary files on the target machine.

Risk Information
cvss3
Base: 7.5
Severity: HIGH
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:L/A:H
cvss4
Base: 8.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:L/VA:H/SC:N/SI:L/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X