I am trying to create a bubblechart based on the search below. I have tried different methods to create something similar to the edited bubblechart image below, but with no success so far. I hope someone here can possibly help me achieve this, if it is even possible?
I can see that i probably would need to get the eventcodes in a own columns, and same with the count...but how?
I think you can't do it. Bubble charts require three dimensions, but you have only two. See https://docs.splunk.com/Documentation/Splunk/8.0.4/Viz/BubbleChart