Error?? - Question | JoomShaper

Error??

D

Dagmar

Helix Framework 3 weeks ago

Hi, what is this? We have a ot off code on our home We've temporarily hidden the mega menu as a workaround, but we urgently need a solution. Domain: orgamed-dortmund.de!

Link Screenshot: https://hidrive.ionos.com/lnk/W1XOBnzJS

0
5 Answers
J
jcalvert
Accepted Answer
3 weeks ago #229286

I believe this is code injected into your Joomla database, in the menu table, due to a vulnerability in the JoomShaper Helix Ultimate plugin, which is used by JoomShaper templates.

There are critical updates needed for SP Page Builder, Helix, and Helix Ultimate:

https://www.joomshaper.com/blog/security-update-for-joomla-3-users

To fix this, you need to quarantine this website... take it offline. Then you need to restore the site from an uninfected backup, in a staging location not publicly accessible. Then you need to apply all the plugin updates: Helix Ultimate 2.2.9, Helix 3.1.2, Helix Ajax 3.1.2. Also Page Builder Pro 6.6.2. Then you can bring the restored site back online.

0
D
Dagmar
Accepted Answer
3 weeks ago #229290

Why are you sending me information about Joomla 3? This is a Joomla 6 site.

0
Rashida Rahman
Rashida Rahman
Accepted Answer
Support Agent 3 weeks ago #229336

Hi there!

Sorry to hear about the trouble you are facing there.

Regarding the recent security issues, we released security patches as soon as the vulnerability was identified and published detailed guidance for all affected users on how to secure their websites. We strongly recommend that users apply the patch or update to the latest version as soon as possible.

Please check the details of the blog post.

https://www.joomshaper.com/blog/security-update-for-joomla-3-users

There were several featured forum posts published as soon as we identified the security issues and released the corresponding updates for SP Page Builder, Helix3, and Helix Ultimate.

https://www.joomshaper.com/forum

The blog post was published later, after we decided to release security patches for Joomla 3 users as well, even though Joomla 3 has been end-of-life and unsupported for quite some time. That's why the blog post title specifically highlights Joomla 3.

However, if you read the full article, you'll also find information relevant to the latest supported Joomla versions and the corresponding security updates.

I hope this clarifies the reason behind the blog post title.

Best regards,

0
J
jcalvert
Accepted Answer
3 weeks ago #229292

Because they mistitled the blog article. The blog article applies to Joomla 3, 4, 5, 6.

0
Toufiq
Toufiq
Accepted Answer
Senior Staff 3 weeks ago #229331

Hi there,

Thank you for reaching out, and I apologize for any inconvenience caused by this oversight.

Please go to Template Settings → Custom Code and check whether there are any custom scripts added. If you find any, temporarily remove or disable them and then check if the issue persists.

Best regards,

Toufiqur Rahman (Team Lead, Support)

0