Comparison Overview
Yum China

Yum China
No. 20, Tianyaoqiao Road, Shanghai, 200030, CN
Last Update: 07/05/2026
Yum China Holdings, Inc. (the “Company” or “Yum China”) (NYSE: YUMC and HKEX: 9987) is China’s largest restaurant company with a mission to make every life taste beautiful. From a single restaurant in 1987, the Company now operates over 14,000 restaurants in over 1,900 ...

Chipotle Mexican Grill
610 Newport Center Dr, Newport Beach, California, US, 92660
Last Update: 03/07/2026
Chipotle Mexican Grill, Inc. (NYSE: CMG) is cultivating a better world by serving responsibly sourced, classically-cooked, real food with wholesome ingredients without artificial colors, flavors or preservatives. Chipotle has over 3,800 restaurants in the United States,...
Compliance Ranges Comparison

Yum China







Chipotle Mexican Grill






Benchmark & Cyber Underwriting Signals
Incidents vs Restaurants Industry Avg (This Year)
No incidents recorded for Yum China in 2026.
Incidents vs Restaurants Industry Avg (This Year)
No incidents recorded for Chipotle Mexican Grill in 2026.
Incident History - Yum China (X = Date, Y = Severity)
Yum China cyber incidents detection timeline including parent company and subsidiaries.
Incident History - Chipotle Mexican Grill (X = Date, Y = Severity)
Chipotle Mexican Grill cyber incidents detection timeline including parent company and subsidiaries.
Notable Incidents

Yum China

Chipotle Mexican Grill
FAQ
Latest Global CVEs
Mattermost versions 10.11.x <= 10.11.20, 11.7.x <= 11.7.5 Mattermost fails to remove thread membership records when a user is removed from or leaves a team, which allows a previously removed user who is later re-invited to the team to view private channel thread root post content and metadata via the team threads API.. Mattermost Advisory ID: MMSA-2026-00682
Mattermost Desktop App versions <=6.2 6.2.2.0 fail to redact the pre-auth secret when generating a diagnostics report, which allows a local attacker with access to a user's diagnostics report or log files to obtain the plaintext pre-auth secret configured for a connected server via inspecting the Server Connectivity (Step-3) diagnostics output. Mattermost Advisory ID: MMSA-2026-00716
A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown part of the file /BSHRM1.php. Performing a manipulation of the argument course results in cross site scripting. Remote exploitation of the attack is possible. The exploit has been released to the public and may be used for attacks.
An issue in O2OA v.10.0.2 allows a local attacker to execute arbitrary code via the the sandbox mechanism of the Invoke script execution.
An issue in Halo 2.25.4 allows a remote attacker to execute arbitrary code via the PluginEndpoint.java, installFromUri method, and DefaultPluginApplicationContextFactory components