New Features and Changes
VISULOX Release 4.3.2 (January 2026)
- SEC: Apache updated to version 2.4.66
SEC: Tomcat updated to version 9.0.112
- SEC: Added missing HTTP Headers (VSLX-146)
- REDACT feature for Command Connect output (VSLX-101)
- ENH: SSH-Agent implemented into Command Connect and File Transfer client (VSLX-142)
- ENH: Command Connect / FT Client host URIs for CyberArk (VSLX-143)
- ENH: Enforced Workspace disconnect (applications suspended) after a configured time (VSLX-159)
- ENH: Enforced application session disconnect after a configured time (VSLX-159)
- ENH: Mod evasiv for gateway (VSLX-190)
- ENH: Display of upload/download size in Transit Zone (VSLX-170)
- ENH: Changed password view on hover to on click (VSLX-183)
- FIX: SCX Validation Info (VSLX-128)
- FIX: Updated Hyperscan packages for Red Hat 9 / Oracle Linux 9 (VSLX-171)
- FIX: Updated mesa packages for Red Hat 9 / Oracle Linux 9 (VSLX-172)
- FIX: vlxjwm.tcl: JWM warning: bad color (VSLX-190)
- FIX: New updated React-dom library version 19.2.0 (VS-1928)
- All enhancements and fixes of previous released hotfixes are included.
ENH = Enhancement, FIX = Fixed, SEC= Security CVE = Common Vulnerabilities and Exposures
VS = VISULOX Support Ticket, VD = VISULOX Development Task, VSLX = New VISULOX Devolpment Task
VISULOX Release 4.3.1 (August 2025)
- SEC: Apache updated to version 2.4.64
SEC: Tomcat updated to version 9.0.107
- FIX: Integrity X11 Check only on VISULOX Portal Servers (VSLX-110)
- All enhancements and fixes of previous released hotfixes are included.
ENH = Enhancement, FIX = Fixed, SEC= Security CVE = Common Vulnerabilities and Exposures
VS = VISULOX Support Ticket, VD = VISULOX Development Task, VSLX = New VISULOX Devolpment Task
VISULOX Release 4.3.0 (May 2025)
- SEC: Apache updated to version 2.4.63
- SEC: Tomcat updated to version 9.0.104
- ENH: Entra/3rdParty integration (VSLX-7)
- ENH: Improved landing page configuration (VSLX-39)
ENH: Transit file hash displayed in event stream (VSLX-34)
- ENH: Added VISULOX accesspoint edit color (VSLX-47)
- ENH: Added VISULOX accesspoint logo (VSLX-50)
- ENH: Printing on Oracle Linux 9 (VD-2429)
- ENH: Added SELinux context to /opt/visulox/var/log (VD-2490)
- ENH: Added the application description to VISULOX Cockpit (VD-2501)
- ENH: Send access request info about approved access to all available approvers (VD-2505)
FIX: Session transfer (VSLX-46)
FIX: MFAToken WAIT status disappears from Cockpit session view (VSLX-55)
- FIX: ttagw not among existing services (VSLX-61)
- FIX: Cockpit Archive database timeout (VSLX-63)
FIX: Mailinggroups with direct user assignment (VSLX-64)
FIX: VISULOX Portal Service - PID Files - Permissions (VSLX-67)
ENH = Enhancement, FIX = Fixed, SEC= Security CVE = Common Vulnerabilities and Exposures
VS = VISULOX Support Ticket, VD = VISULOX Development Task, VSLX = New VISULOX Devolpment Task
VISULOX Release 4.2.0 (November 2024)
- SEC: Tomcat updated to version 9.0.90
- SEC: JK Connector updated to version 1.2.50
- ENH: New end2end / VLX Monitoring (VD-2022)
- ENH: Microsoft Entra authentication supported (VD-2425)
- ENH: Printing on OL9 supported (VD-2429)
- ENH: Authentication for local users via PAM (VD-2430)
- ENH: Variable %%TTA_UserSecurityEquivalent%% replaces the user for freerdp (VD-2464)
- FIX: Updated versions of several Javascript files (VD-2188)
- FIX: Window Management with VISULOX Cockpit on MAC (VD-2254)
- FIX: Accesspoint expected boolean value (VD-2474)
FIX: x11forwarding tunnel not used (VD-2481)
- FIX: Sessioncache permissions (VD-2483)
ENH = Enhancement, FIX = Fixed, SEC= Security CVE = Common Vulnerabilities and Exposures
VS = VISULOX Support Ticket, VD = VISULOX Development Task
VISULOX Release 4.1.1 (August 2024)
- SEC: Apache updated to version 2.4.62
- SEC: Redesign session token (VD-2416)
- SEC: Session fixation (VD-2417)
- FIX: Special chars in Distinguished Name (VD-2431)
ENH = Enhancement, FIX = Fixed, SEC= Security CVE = Common Vulnerabilities and Exposures
VS = VISULOX Support Ticket, VD = VISULOX Development Task
VISULOX Release 4.1.0 (July 2024)
- SEC: Apache updated to version 2.4.61
- SEC: Tomcat updated to version 9.0.88
- ENH: Updated mobile view capabilities
- ENH: New design for File Exchange
- ENH: Client certificates
- ENH: Revised 3rd party authentication
- ENH: Asynchronous OCR implemented - not for existing films (VD-2331)
- ENH: Improved HTML5 Client performance with enhanced Graphics enabled (VD-1730)
- ENH: Availability probing maintenance mode for VISULOX Gateways (VD-1879)
- ENH: More OTP configuration events (VD-2080)
- ENH: Unified log formats (VD-2172)
ENH: More options for Command Connect (Arrange/Iconify (fix)on/off) (VD-2242)
ENH: Improved cache handling for Apache header (VD-2267)
- ENH: Checkout link for approver (VD-2306)
- ENH: Control consent and captcha based on the accesspoint (VD-2320)
- ENH: Command Connect/Guard option to configure the terminal (VD-2328)
- FIX: Discard editing or deleting admin elements (VD-1656)
- FIX: Latest versions of several Javascript files (VD-1730)
- FIX: %USER% variable for alternate File Transfer users (VD-2256)
- FIX: VNC-Viewer (lastest version) works with -resource and vlxResource and vlxPwd (VD-2280)
ENH = Enhancement, FIX = Fixed, SEC= Security CVE = Common Vulnerabilities and Exposures
VS = VISULOX Support Ticket, VD = VISULOX Development Task
VISULOX Release 4.0.1 (December 2023)
- Oracle Linux / Red Hat 7 deprecated
- SEC: Several adjustments after pentests (VD-2165)
- SEC: Several adjustments after pentests (VD-2167)
- SEC: Support for new Java-11 (VD-2221)
- ENH: Additional color for login page (VD-2161)
- ENH: Backend Captcha (VD-2166)
- ENH: Configuration option to hide PIN values in frontend (VD-2193)
- ENH: User feedback in VISULOX Cockpit for messages to users (VD-2202)
- ENH: Filtering application online states in VISULOX Cookpit (VD-2203)
- ENH: Privat host management import / export (VD-2208)
- ENH: Client language taken into account (VD-2210)
- ENH: Alternate sshpass prompt detection (VD-2218)
- ENH: Audit usage of VISULOX Portal Console (VD-2229)
- FIX: Handling passcache secrets via piping on CLI (VD-1984)
- FIX: Sporadic Workspace timeout (VD-2220)
ENH = Enhancement, FIX = Fixed, SEC= Security CVE = Common Vulnerabilities and Exposures
VS = VISULOX Support Ticket, VD = VISULOX Development Task
VISULOX Release 4.0.0 (September 2023)
- New improved login and Workspace
Captcha, Password Reset, Application Request via Workspace, Checkout Zone, Quick Upload Section,
Favourites, Application Groups, Recently Used, Running applications, Force Authentication, enhanced Search and Sort - SEC: New Tomcat version for VISULOX Gateway and VISULOX Portal
- ENH: Bruce Force prevention (VD-1947)
- ENH: Policy based OTP setup (VD-1978)
- ENH: Support of Native Client on Ubuntu 22.04 (VD-1982)
- ENH: OTP with SHA1 and SHA256 (VD-1993)
- ENH: transitimport validates characters in filenames (VD-2010)
- ENH: Diskprotection for VISULOX Filestore (VD-2011)
- ENH: New VISULOX end2end Monitoring (VD-2017)
- ENH: Sandbox for VISULOX Transit Shell and Firefox Wrapper - vlxjail (VD-2038)
- ENH: PAM user authentication (VD-2107)
ENH = Enhancement, FIX = Fixed, SEC= Security CVE = Common Vulnerabilities and Exposures
VS = VISULOX Support Ticket, VD = VISULOX Development Task
VISULOX Release 3.6.3 (July 2023)
- SEC: New Apache version for VISULOX Gateway and VISULOX Portal
- ENH: Mailinggroups in GUI and CLI (VD-1986)
- ENH: Mailinggroup CLI parameter for Access Policy (VD-2006)
ENH: Filetransit with project tagging (VD-1977)
- ENH: Diskprotection extended to file store (VD-2008)
- ENH: RD Gateway authenication with common user (VD-1996)
- FIX: HTML5 client in Firefox version 106 and later is now supported (VD-1992)
- FIX: Cleanup of temp file (VD-2021)
- FIX: LDAP Connection with umlauts (VD-2012)
FIX: Transitimport with "space" in filename (VD-2004)
ENH = Enhancement, FIX = Fixed, SEC= Security CVE = Common Vulnerabilities and Exposures
VS = VISULOX Support Ticket, VD = VISULOX Development Task
VISULOX Release 3.6.1 (March 2023)
- Actionlinks in mails for access and transit approval (VD-1919)
- ActionlInks in mails for external MFA (VD-1933)
- VISULOX Runtime Environment 1.2 (VD-1872)
- SEC: Protecting sgdadmin URL (VD-1715)
- ENH: File check script for Microsoft Defender (VD-1827)
- ENH: All scripts can have additional arguments (VD-1921)
- ENH: Mail client with templates (VD-1926)
- ENH: VISULOX freeRDP applications with RDP configuration file (VD-1988)
- ENH: RD Gateway authentication with common user (VD-1996)
- ENH: Diskprotection extended to File Store (VD-2008)
- ENH: Transitimport validates characters in filename (VD-2010)
- FIX: MFA does not fail on Gateway timeout (VD-1102)
ENH = Enhancement, FIX = Fixed, SEC= Security CVE = Common Vulnerabilities and Exposures
VS = VISULOX Support Ticket, VD = VISULOX Development Task
VISULOX Release 3.5.0 (October 2022)
- New VISULOX logging facility based on journald
- New licensed module: OCR extension
- VISULOX Runtime Environment updated to VISULOX RTE 1.2
- ENH: Update to ETCD v3.5 (VD-1659)
- ENH: License usage reports (VD-1702)
- ENH: visulox portal admin command to change the VISULOX Portal Admin (VD-1713)
- ENH: visulox status command with fields parameter (VD-1733)
- ENH: Presave internal rejected files in Transit Zone (VD-1738)
- ENH: Prevent Unix bash history tracking during login, using vlxUnix.exp (VD-1734)
- ENH: New datasource is enabled by default (VD-1755)
- ENH: Separate MFA request during login process (VD-1626, VD-1769)
- ENH: RHEL8 IDM (VERSION: 4.9.6, API_VERSION: 2.245) supported (VD-1770)
- ENH: Testing and howto for VISULOX Transit on Ubuntu (VD-1804)
- ENH: Live player in session controller (VD-1809)
- ENH: Provide VLX Resource to standard application connections Unix/Windows (VD-1810)
- ENH: Event content search in online player (VD-1816)
- ENH: New default VISULOX window manager: JVM (VD-1818)
- ENH: Update to VISULOX RTE 1.2 (VD-1828)
- ENH: Configurable GUI offset for Session Conmtroller (VD-1846)
- FIX: Several text / message corrections and renaming
- FIX: MFA does not fail on Gateway timeout (VD-1102)
- FIX: Warning of unconfigured action scripts in Integrity-Check removed (VD-1729)
- FIX: Latest versions of some javscript files (VD-1730)
- FIX: Accounts with "password never expires" handled correctly in VISULOX Cockpit (VD-1731)
- FIX: Firefox Wrapper now in extra archive (VD-1732)
- FIX: Command Guard script validation in VISULOX Cockpit (VD-1752)
- FIX: LDAP pagesize is configurable (VD-1832)
ENH = Enhancement, FIX = Fixed, SEC= Security CVE = Common Vulnerabilities and Exposures
VS = VISULOX Support Ticket, VD = VISULOX Development Task
VISULOX Release 3.4.1 (May 2022)
- CVE-2021-42340 CVE-2021-40438
- SEC: Extended header for X-XSS-Protection (VD-1666)
- ENH: Support pull external OTP validation (VD-1102)
- ENH: Offline player canvas with scaling and scrollbars (VD-1657)
- ENH: Added visulox-gateway support command (VD-1673)
- ENH: Login feedback based on policy (VD-1681)
- ENH: Sort on filesize and filesignature in Cockpit Archive File View (VD-1695)
- ENH: License usage reports (VD-1702)
- ENH: MFA script for RSA SecureID added (VD-1710)
- ENH: Update VISULOX Logos (VD-1712)
- FIX: Wrong download URLs for client after update (VD-1591)
- FIX: Command Connect re-arrange during login optimized (VD-1665)
- FIX: Missing CLI option in Transit Policy
recording on|off (VD-1679) - FIX: Offline player style issues (VD-1680)
- FIX: store migrate on archive (VD-1694)
- FIX: VLXNODE: host and user profile with the same name (VD-1699)
- FIX: Curl and proxy (VD-1696)
- FIX: VISULOX transit import fails with relative path to file (VD-1703)
ENH = Enhancement, FIX = Fixed, SEC= Security CVE = Common Vulnerabilities and Exposures
VS = VISULOX Support Ticket, VD = VISULOX Development Task
VISULOX Release 3.4.0 (March 2022)
- BigUpload will be discontinued and is now integrated in File Transfer
- ENH: Checkout password displayed in File Checkout Area, Reports and in VISULOX Cockpit (VD-1285)
- ENH: Integrity-Check of database connection (VD-1545)
- ENH: Recorder improved (smaller files) (VD-1572)
- ENH: Gateway IP listed in VLX Cockpit / Online view (VD-1584)
- ENH: Checkout password displayed in Workspace and event table (VD-1589)
- ENH: Better usablity during download of large files (VD-1597)
- ENH: Extended webserver header for security reasons (VD-1603)
- ENH: Extended check for transitmapping (VD-1604)
- ENH: Better Integrity Check in VISULOX X11 Forwarding (VD-1606)
- ENH: visulox transit delete supported (VD-1609)
- ENH: GUI title with serveral placeholders (VD-1614)
- ENH: Integrity-Check verifies FQDN length (VD-1625)
- ENH: Improved Integriity-Checks (VD-1630)
- ENH: New archive mode: nosnapshot (VD-1644)
- FIX: Matching objects in VISULOX Command Line Interface (VD-847)
- FIX: Adding an Archive Server to VISULOX Cluster without restart (VD-984)
- FIX: yum update on local gateway setups (VD-1582)
- FIX: Wrong download URLs for client after update (VD-1591)
- FIX: Matching objects in VLX Commandline Interface (VD-847) (VD-1608)
- FIX: SIEM integration with error logging (VD-1617)
- FIX: Returncode of visulox status of several commands corrected (VD-1621)
- FIX: Webservice user now uses logical name (VD-1636)
- FIX: Command Connect handles resource with wrong password (VD-1641)
- FIX: Large snaphot creation removed in session controller (VD-1647)
ENH = Enhancement, FIX = Fixed, CVE = Common Vulnerabilities and Exposures
VS = VISULOX Support Ticket, VD = VISULOX Development Task
VISULOX Release 3.3.3 (November 2021)
- Major update for VISULOX PORTAL
- CVE-2021-35649 CVE-2021-35650 CVE-2021-33037
- ENH: Handling five digit toplevel domains (VD-1579) (VS-920)
- ENH; Recoder optimization (VD-1572) (VD-1574)
- ENH: Placeholders in messages (VD-1562)
- ENH: VISULOX PORTAL uses pam stack only for local Unix users (VD-1560)
- ENH: More design parameters added (VD-1536)
- ENH: With no Transit Policy, the Transit Policy and the Transit Zone is disabled in Workspace (VD-1541)
ENH: Integrity-Check supports timedatectl (VD-1535)
- ENH: Template and configuration for load balancer probing file (VD-1559)
- ENH: Fluxbox design (VD-1491)
- FIX: Player handling with screen change before recording started (VD-1580)
- FIX: Cookpit - correction in application creation (VD-1471)
- FIX: Cookpit - correction in application creation / AppWizzard vlx Controls (VD-1465)
- FIX: Upload multiple selected files in FT-Client (VD-1368)
- FIX: bindfs not cancelled correctly in Big Upload mode - additional fixes (VD-1517)
- FIX: File Transfer with spaces in directory (VD1526)
- FIX: Core file Fluxbox (VD-1563)
FIX: Error closing Command Connect (VD-886)
ENH = Enhancement, FIX = Fixed, CVE = Common Vulnerabilities and Exposures
VS = VISULOX Support Ticket, VD = VISULOX Development Task
VISULOX Release 3.3.2 (September 2021)
- ENH: Customizable Login / Workspace color design and company logos (VD-1513)
- ENH: SMS Kannel interface support timeout (VD-1519)
- FIX: Resize Command Connect shell arrangement (VD-1511)
- FIX: bindfs not cancelled correctly in Big Upload (VD-1517)
- FIX: (Security) information process table reduced (VD-1421)
ENH = Enhancement, FIX = Fixed, CVE = Common Vulnerabilities and Exposures
VS = VISULOX Support Ticket, VD = VISULOX Development Task
VISULOX Release 3.3.1 (August 2021)
- CVE-2019-17567 CVE-2020-1935 CVE-2020-1938 CVE-2020-8284 CVE-2020-8285
CVE-2020-8286 CVE-2020-13938 CVE-2020-13950 CVE-2019-17569 CVE-2021-2446
CVE-2021-2447 CVE-2021-22901 CVE-2021-25122 CVE-2021-25329 CVE-2021-26690
CVE-2021-26691 CVE-2021-30641 CVE-2021-31618 CVE-2020-35452 - ENH: end2end availability monitoring (VD-1302)
- ENH: VISULOX PORTAL configuration from VISULOX Service without registration (VD-1420)
- FIX: Connection AD with dh key too small (VD-1494)
- FIX: Application Assistant and application presentation (VD-1488)
ENH = Enhancement, FIX = Fixed, CVE = Common Vulnerabilities and Exposures
VS = VISULOX Support Ticket, VD = VISULOX Development Task
VISULOX Release 3.3 (June 2021)
- VISULOX PORTAL Service Embedded
- VISULOX Helpdesk is no longer available
- RPM package signatures can be used for the VISULOX RPM packages
- New Application Assistant in VISULOX Cockpit
ENH: Branding of login page (.Access Branding) (VD-1459)
- ENH: Accesspoint management (VD-1477)
- ENH: end2end monitoring (How to setup VISULOX end2end monitoring) (VD-1302)
- ENH: Integrity-Check for Transit Zone (VD-1455)
- ENH: Access consent during login (VD-1444)
CVE: CVE-2021-2248 CVE-2021-3450 CVE-2021-2177 CVE-2021-2221
ENH = Enhancement, FIX = Fixed, CVE = Common Vulnerabilities and Exposures
VS = VISULOX Support Ticket, VD = VISULOX Development Task