cb
cvebase
.
~
/
products
/
ollyo
/
helix3
Search CVEs, products, detections…
⌘K
pipeline live
Digest
Docs
Home
/
Products
/
ollyo
/
Ollyo Helix3
Ollyo Helix3 vulnerabilities
1 known vulnerability affecting
ollyo/helix3
.
Track
Version
All versions
Total CVEs
1
CISA KEV
0
Public exploits
1
Exploited in wild
1
Severity breakdown
HIGH
1
Vulnerabilities
Sort
Most important
Highest Priority
Highest EPSS
Highest CVSS
Newest
Oldest
Page 1 of 1
CVE-2026-49049
P1
HIGH
CVSS 7.5
Exploited
PoC
≥ 1.0, ≤ 3.1.1
2026-06-29
CVE-2026-49049 [HIGH] CWE-284 CVE-2026-49049: The Helix3 plugin for Joomla exposes an ajax handler task, that allows unauthenticated attackers to The Helix3 plugin for Joomla exposes an ajax handler task, that allows unauthenticated attackers to delete arbitrary files, write arbitrary JSON files and update template parameters.
nvd
Ollyo Helix3 vulnerabilities | cvebase