Codesys Visualization
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in Codesys Visualization.
By the Year
In 2026 there have been 1 vulnerability in Codesys Visualization. Last year, in 2025 Visualization had 1 security vulnerability published. At the current rates, it appears that the number of vulnerabilities last year and this year may equal out.
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 1 | 0.00 |
| 2025 | 1 | 0.00 |
| 2024 | 0 | 0.00 |
| 2023 | 0 | 0.00 |
| 2022 | 1 | 5.30 |
It may take a day or so for new Visualization vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Codesys Visualization Security Vulnerabilities
Auth Data Leakage via Concurrent Login in Visualization Service
CVE-2026-0393
- May 21, 2026
The affected product may expose credentials remotely between low privileged visualization users during concurrent login operations due to insufficient isolation of authentication data. The vulnerability affects only login operations within an active visualization session.
Insufficiently Protected Credentials
Untrusted Pointer Deref in UCanCode E-XD++ ActiveX TKDrawCADCtrl Enables RCE
CVE-2017-20211
- November 12, 2025
UCanCode E-XD++ Visualization Enterprise Suite contains an untrusted pointer dereference vulnerability via the TKDRAWCAD.TKDrawCADCtrl.1 ActiveX control. This is because it exposes a RotateShape method that dereferences a user-supplied pointer without sufficient validation. A crafted input may cause the control to dereference an attacker-controlled pointer, enabling remote code execution in the context of the hosting process. The vulnerability requires user interaction (instantiation of the ActiveX control via a web page or a file).
Untrusted pointer offset
CVE-2022-1989: CODESYS Visualization <V4.2.0.0 Unauth User Enumeration
CVE-2022-1989
5.3 - Medium
- August 23, 2022
All CODESYS Visualization versions before V4.2.0.0 generate a login dialog vulnerable to information exposure allowing a remote, unauthenticated attacker to enumerate valid users.
Side Channel Attack
Stay on top of Security Vulnerabilities
Want an email whenever new vulnerabilities are published for Codesys Visualization or by Codesys? Click the Watch button to subscribe.