Jetkvm · Jetkvm · CVE-2026-32294
**Name of the Vulnerable Software and Affected Versions**
JetKVM versions prior to 0.5.4
**Description**
The software does not verify the authenticity of downloaded firmware files. An attacker positioned between the user and the server, or a compromised update server, could modify the firmware and its SHA256 hash to bypass the verification process.
**Recommendations**
Update to version 0.5.4 or later.