CVE-2026-57830

Joomla Extension - joomshaper.com - Unauthenticated arbitrary file deletion in Helix Ultimate < 2.2.7 - The Joomla extension Helix Ultimate is vulnerable to an unauthenticated arbitrary file deletion.
Configurations

Configuration 1 (hide)

cpe:2.3:a:ollyo:helix_ultimate:*:*:*:*:*:joomla\!:*:*

History

23 Jul 2026, 16:17

Type Values Removed Values Added
Summary (en) The Joomla extension Helix Ultimate is vulnerable to an unauthenticated arbitrary file deletion. (en) Joomla Extension - joomshaper.com - Unauthenticated arbitrary file deletion in Helix Ultimate < 2.2.7 - The Joomla extension Helix Ultimate is vulnerable to an unauthenticated arbitrary file deletion.

14 Jul 2026, 18:18

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.1
References () https://www.joomshaper.com/joomla-templates/helixultimate - () https://www.joomshaper.com/joomla-templates/helixultimate - Product
CPE cpe:2.3:a:ollyo:helix_ultimate:*:*:*:*:*:joomla\!:*:*
First Time Ollyo
Ollyo helix Ultimate

13 Jul 2026, 08:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-07-13 08:16

Updated : 2026-07-23 16:17


NVD link : CVE-2026-57830

Mitre link : CVE-2026-57830

CVE.ORG link : CVE-2026-57830


JSON object : View

Products Affected

ollyo

  • helix_ultimate
CWE
CWE-862

Missing Authorization