← Volver al buscador de CVEs

CVE-2026-49049

Helix3

Descripción

The Helix3 plugin for Joomla exposes an ajax handler task, that allows unauthenticated attackers to delete arbitrary files, write arbitrary JSON files and update template parameters.

CVSS 7.5EPSS 17.701%Riesgo 1.94
Ver fuente
Publicación
2026-06-29 15:16:41
Versiones afectadas
unknown
Tipo
Aplicación web
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N