CVE-2025-4098: Horner Automation Cscape

High severity, CVSS 8.4. EPSS: 0.3% chance of exploitation in the next 30 days.

Horner Automation Cscape version 10.0 (10.0.415.2) SP1 is vulnerable to an out-of-bounds read vulnerability that could allow an attacker to disclose information and execute arbitrary code on affected installations of Cscape.

Affected products

Published 2025-05-08. Last modified 2026-06-17.