Adlered's vulnerability footprint centers on the Bolo Solo product, a modestly represented but niche offering that carries a durable signal of serious-outcome severity skew across its disclosures. The recurring weakness classes—path traversal, unrestricted file uploads, untrusted deserialization, improper access control, and input-validation flaws—reflect common attack vectors in web and application frameworks where input handling and access boundaries are critical control points. Current exploitation activity, severity breakdowns, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Adlered over time
Signals from CVEs in this vendor scope (6 CVEs).
6 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-41009CRITICAL File Upload vulnerability in adlered bolo-solo v.2.6 allows a remote attacker to execute arbitrary code via a crafted script to the authorization field in the header. | Sep 5, 2023 | 9.8 | 32 | NO | NO |
CVE-2026-1813CRITICAL A vulnerability was found in bolo-blog bolo-solo up to 2.6.4. Affected is an unknown function of the file src/main/java/org/b3log/solo/bolo/pic/PicUploadProcessor.java of the compo | Feb 4, 2026 | 9.8 | 30 | NO | NO |
CVE-2026-1812CRITICAL A vulnerability has been found in bolo-blog bolo-solo up to 2.6.4. This impacts the function importFromCnblogs of the file src/main/java/org/b3log/solo/bolo/prop/BackupService.java | Feb 3, 2026 | 9.8 | 29 | NO | NO |
CVE-2026-1811HIGH A flaw has been found in bolo-blog bolo-solo up to 2.6.4. This affects the function importFromMarkdown of the file src/main/java/org/b3log/solo/bolo/prop/BackupService.java of the | Feb 3, 2026 | 8.8 | 28 | NO | NO |
CVE-2026-1691HIGH A vulnerability has been found in bolo-solo up to 2.6.4. This impacts the function importMarkdownsSync of the file src/main/java/org/b3log/solo/bolo/prop/BackupService.java of the | Jan 30, 2026 | 8.8 | 27 | NO | NO |
CVE-2026-1810HIGH A vulnerability was detected in bolo-blog bolo-solo up to 2.6.4. The impacted element is the function unpackFilteredZip of the file src/main/java/org/b3log/solo/bolo/prop/BackupSer | Feb 3, 2026 | 8.8 | 25 | NO | NO |
Signals from CVEs in this vendor scope (6 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Adlered.
Media articles that mention a CVE ID that affects a product developed by Adlered — matched by CVE ID, not by vendor name.