Verified vulnerability record
CVE-2026-49049
Helix3 extension for Joomla
Helix3 extension for Joomla
Evidence
Active exploitation observed
Independent exploitation attestation added to the KEV Intelligence record.
Sensor telemetry
2 attempts · 1 sensor
First-party observations recorded across 1 attacker IP.
Actionable artifact
Proof of concept available
Public PoC material increases practical exploitability.
Evidence, telemetry, and action stay attached to the CVE.
Browse exploited CVEs →