CVE-2026-0393: CODESYS Visualization - Insufficiently Protected Credentials
The affected product may expose credentials remotely between low privileged visualization users during concurrent login operations due to insufficient isolation of authentication data. The vulnerability affects only login operations within an active visualization session.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-0393?
CVE-2026-0393 has a medium severity rating of 6.9 according to the CVSS scoring system.
How do I fix CVE-2026-0393?
To mitigate CVE-2026-0393, ensure that the authentication data is properly isolated and securely handled during concurrent login operations.
What type of vulnerabilities does CVE-2026-0393 expose?
CVE-2026-0393 exposes insufficiently protected credentials during concurrent login operations in CODESYS Visualization.
Who is affected by CVE-2026-0393?
Users with low privileges on CODESYS Visualization may be affected during active visualization sessions.
When was CVE-2026-0393 published?
CVE-2026-0393 was published on May 21, 2026.