Eclipse Foundation · Eclipse 4Diac Forte · CVE-2026-9158
**Name of the Vulnerable Software and Affected Versions**
Eclipse 4diac FORTE versions 3.0.0 through 3.1.0
**Description**
A specially crafted DELETE connection command sent to the management interface can cause a dangling pointer. This condition enables a use-after-free scenario, where subsequent commands can access memory that has already been freed.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.