
@securityweekly @anton_chuvakin Good research. But about CVE-2026-32290 – GL-iNet Comet KVM insufficient verification of firmware authenticity… isn’t it the whole point of these devices that you could just run your own firmware (opensource) on it also? Like openwrt
Post summary
The tweet highlights a firmware authenticity flaw in GL‑iNet Comet KVM (CVE‑2026‑32290) but provides no PoC, exploit, patch, or evidence of active exploitation, offering only a brief technical remark.

