Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Paul Asadoorian

Researcher fromEclypsium
#19144of 53,633
14Total CVSS
Vulnerabilities · 2
Medium
1
Critical
1
PT-2026-25916
4.7
2026-03-17
Jetkvm · Jetkvm · CVE-2026-32294
**Name of the Vulnerable Software and Affected Versions** JetKVM versions prior to 0.5.4 **Description** The software does not verify the authenticity of downloaded firmware files. An attacker positioned between the user and the server, or a compromised update server, could modify the firmware and its SHA256 hash to bypass the verification process. **Recommendations** Update to version 0.5.4 or later.
PT-2026-25917
9.3
2026-03-17
Jetkvm · Jetkvm · CVE-2026-32295
**Name of the Vulnerable Software and Affected Versions** JetKVM versions prior to 0.5.4 **Description** The software does not limit the rate of login requests, which allows for brute-force attempts to guess credentials. This impacts KVM-over-IP devices lacking brute-force protection. **Recommendations** Update JetKVM to version 0.5.4 or later.