Comparison Overview

Newell Brands

VS

The Hershey Company

Newell Brands

6655 Peachtree Dunwoody Rd, Atlanta, GA, US, 30328
Last Update: 2026-04-03
Between 750 and 799

Newell Brands (NASDAQ: NWL) is a leading global consumer goods company with a strong portfolio of well-known brands, including Rubbermaid, Sharpie, Graco, Coleman, Rubbermaid Commercial Products, Yankee Candle, Paper Mate, FoodSaver, Dymo, EXPO, Elmer’s, Oster, NUK, Spontex and Campingaz. We are focused on delighting consumers by lighting up everyday moments.

NAICS: 30
NAICS Definition: Manufacturing
Employees: 14,503
Subsidiaries: 6
12-month incidents
0
Known data breaches
0
Attack type number
0

The Hershey Company

19 E Chocolate Ave, Hershey, 17033, US
Last Update: 2026-03-28

The Hershey Company is headquartered in Hershey, Pa., and is an industry-leading snacks company with a purpose to make more moments of goodness through its iconic brands. Hershey has approximately 20,000 employees around the world who work every day to deliver delicious, quality products. The company has more than 70 brands around the world that drive more than $11 billion in annual revenues, including such beloved brands like HERSHEY'S, REESE'S, KIT KAT®, JOLLY RANCHER, ICE BREAKERS, SHAQ-A-LICIOUS, SKINNYPOP and DOT'S HOMESTYLE PRETZEL'S. For more than 130 years, Hershey has been committed to operating responsibly and supporting its people and communities. Hershey founder, Milton Hershey, created Milton Hershey School in 1909, and since then, the company has focused on helping children succeed through access to education.

NAICS: 30
NAICS Definition: Manufacturing
Employees: 10,732
Subsidiaries: 2
12-month incidents
0
Known data breaches
1
Attack type number
1

Compliance Badges Comparison

Security & Compliance Standards Overview

https://images.rankiteo.com/companyimages/newellbrands.jpeg
Newell Brands
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
https://images.rankiteo.com/companyimages/the-hershey-company.jpeg
The Hershey Company
ISO 27001
ISO 27001 certification not verified
Not verified
SOC2 Type 1
SOC2 Type 1 certification not verified
Not verified
SOC2 Type 2
SOC2 Type 2 certification not verified
Not verified
GDPR
GDPR certification not verified
Not verified
PCI DSS
PCI DSS certification not verified
Not verified
HIPAA
HIPAA certification not verified
Not verified
Compliance Summary
Newell Brands
100%
Compliance Rate
0/4 Standards Verified
The Hershey Company
0%
Compliance Rate
0/4 Standards Verified

Benchmark & Cyber Underwriting Signals

Incidents vs Manufacturing Industry Average (This Year)

No incidents recorded for Newell Brands in 2026.

Incidents vs Manufacturing Industry Average (This Year)

No incidents recorded for The Hershey Company in 2026.

Incident History — Newell Brands (X = Date, Y = Severity)

Newell Brands cyber incidents detection timeline including parent company and subsidiaries

Incident History — The Hershey Company (X = Date, Y = Severity)

The Hershey Company cyber incidents detection timeline including parent company and subsidiaries

Notable Incidents

Last 3 Security & Risk Events by Company

https://images.rankiteo.com/companyimages/newellbrands.jpeg
Newell Brands
Incidents

No Incident

https://images.rankiteo.com/companyimages/the-hershey-company.jpeg
The Hershey Company
Incidents

Date Detected: 9/2023
Type:Breach
Attack Vector: Unauthorized Access to Email Accounts
Blog: Blog

FAQ

The Hershey Company company demonstrates a stronger AI Cybersecurity Score compared to Newell Brands company, reflecting its advanced cybersecurity posture governance and monitoring frameworks.

The Hershey Company company has historically faced a number of disclosed cyber incidents, whereas Newell Brands company has not reported any.

In the current year, The Hershey Company company and Newell Brands company have not reported any cyber incidents.

Neither The Hershey Company company nor Newell Brands company has reported experiencing a ransomware attack publicly.

The Hershey Company company has disclosed at least one data breach, while Newell Brands company has not reported such incidents publicly.

Neither The Hershey Company company nor Newell Brands company has reported experiencing targeted cyberattacks publicly.

Neither Newell Brands company nor The Hershey Company company has reported experiencing or disclosing vulnerabilities publicly.

Neither Newell Brands nor The Hershey Company holds any compliance certifications.

Neither company holds any compliance certifications.

Newell Brands company has more subsidiaries worldwide compared to The Hershey Company company.

Newell Brands company employs more people globally than The Hershey Company company, reflecting its scale as a Manufacturing.

Neither Newell Brands nor The Hershey Company holds SOC 2 Type 1 certification.

Neither Newell Brands nor The Hershey Company holds SOC 2 Type 2 certification.

Neither Newell Brands nor The Hershey Company holds ISO 27001 certification.

Neither Newell Brands nor The Hershey Company holds PCI DSS certification.

Neither Newell Brands nor The Hershey Company holds HIPAA certification.

Neither Newell Brands nor The Hershey Company holds GDPR certification.

Latest Global CVEs (Not Company-Specific)

Description

A vulnerability was found in Nothings stb up to 1.26. Impacted is the function stbtt_InitFont_internal in the library stb_truetype.h of the component TTF File Handler. Performing a manipulation results in out-of-bounds read. Remote exploitation of the attack is possible. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.

Risk Information
cvss2
Base: 5.0
Severity: LOW
AV:N/AC:L/Au:N/C:N/I:N/A:P
cvss3
Base: 4.3
Severity: LOW
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
cvss4
Base: 5.3
Severity: LOW
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

V-SFT versions 6.2.10.0 and prior contain an out-of-bounds read in VS6ComFile!get_macro_mem_COM. Opening a crafted V7 file may lead to information disclosure from the affected product.

Risk Information
cvss3
Base: 7.8
Severity: LOW
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
cvss4
Base: 8.4
Severity: LOW
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

V-SFT versions 6.2.10.0 and prior contain a stack-based buffer overflow in VS6ComFile!CSaveData::_conv_AnimationItem. Opening a crafted V7 file may lead to arbitrary code execution on the affected product.

Risk Information
cvss3
Base: 7.8
Severity: LOW
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
cvss4
Base: 8.4
Severity: LOW
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

V-SFT versions 6.2.10.0 and prior contain an out-of-bounds read vulnerability in VS6MemInIF!set_temp_type_default. Opening a crafted V7 file may lead to information disclosure from the affected product.

Risk Information
cvss3
Base: 7.8
Severity: LOW
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
cvss4
Base: 8.4
Severity: LOW
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Description

V-SFT versions 6.2.10.0 and prior contain an out-of-bounds read vulnerability in VS6ComFile!load_link_inf. Opening a crafted V7 file may lead to information disclosure from the affected product.

Risk Information
cvss3
Base: 7.8
Severity: LOW
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
cvss4
Base: 8.4
Severity: LOW
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X