Vulnerabilities
CVE-2026-1691 - bolo-solo SnakeYAML BackupService.java importMarkdownsSync deserialization
CVE ID : CVE-2026-1691 Published : Jan. 30, 2026, 5:16 p.m. | 1 hour, 8 minutes ago Description : A vulnerability has been found in bolo-solo up to 2.6.4. This impacts the function importMarkdownsSync of the file src/main/java/org/b3log/solo/bolo/prop/BackupService.java of the component SnakeYAML. Such manipulation leads to deserialization. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. Severity: 6.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...