An issue was discovered on goTenna v1 devices with app 5.5.3 and firmware 0.25.5. The verification token used for sending SMS through a goTenna server is hardcoded in the app.
2025-05-01T18:15:56.247
2025-06-20T16:35:09.850
Analyzed
CVSSv3.1: 7.3 (HIGH)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Operating System | gotenna | mesh_firmware | 0.25.5 | Yes |
| Hardware | gotenna | mesh | - | No |
| Application | gotenna | gotenna | 5.5.3 | Yes |