The foldername parameter in Bolt 5.1.7 was discovered to have incorrect input validation, allowing attackers to perform directory enumeration or cause a Denial of Service (DoS) via a crafted input.
https://github.com/Accenture/AARO-Bugs/blob/master/AARO-CVE-List.md