VYPR

Tassos Framework

by Tassos

CVEs (2)

  • CVE-2026-21627CriFeb 20, 2026
    risk 0.62cvss epss 0.02

    The vulnerability was rooted in how the Tassos Framework plugin handled specific AJAX requests through Joomla’s com_ajax entry point. Under certain conditions, internal framework functionality could be invoked without proper restriction.

  • CVE-2026-48906HigMay 27, 2026
    risk 0.53cvss 8.1epss 0.00

    The vulnerability in the Tassos Framework Plugin allows users to delete arbitrary files on the affected sites.