
A critical security flaw, identified as CVE-2024-54143, in OpenWrt’s Attended Sysupgrade (ASU) feature has raised substantial concerns among users about the potential for malicious firmware injection. Discovered by Flatt Security researcher RyotaK, this vulnerability holds a severity score of 9.3 out of 10, underscoring its dangerous potential. The flaw involves a combination of a command injection issue within the image










