CVE-2026-57830: Ollyo Helix Ultimate
Critical severity, CVSS 9.1. EPSS: 0.5% chance of exploitation in the next 30 days.
Joomla Extension - joomshaper.com - Unauthenticated arbitrary file deletion in Helix Ultimate < 2.2.7 - The Joomla extension Helix Ultimate is vulnerable to an unauthenticated arbitrary file deletion.
Affected products
- Ollyo Helix Ultimate: from 1.0, up to and including 2.2.6
Published 2026-07-13. Last modified 2026-07-23.