Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-32882


An issue was discovered on goTenna v1 devices with app 5.5.3 and firmware 0.25.5. The app uses a custom implementation of encryption without any additional integrity checking mechanisms. This leaves messages malleable to an attacker that can access the message.


Published

2025-05-01T18:15:55.127

Last Modified

2025-06-20T16:52:25.717

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 5.3 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-353

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System gotenna mesh_firmware 0.25.5 Yes
Hardware gotenna mesh - No
Application gotenna gotenna 5.5.3 Yes

References