An issue was discovered on goTenna v1 devices with app 5.5.3 and firmware 0.25.5. All packets sent over RF are also sent over UART with USB Shell, allowing someone with local access to gain information about the protocol and intercept sensitive data.
                
            References
                    | Link | Resource | 
|---|---|
| https://github.com/Dollarhyde/goTenna_v1_and_Mesh_vulnerabilities | Third Party Advisory | 
| https://gotenna.com | Product | 
Configurations
                    History
                    20 Jun 2025, 16:45
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2025-05-01 18:15
Updated : 2025-06-20 16:45
NVD link : CVE-2025-32886
Mitre link : CVE-2025-32886
CVE.ORG link : CVE-2025-32886
JSON object : View
Products Affected
                gotenna
- gotenna
- mesh_firmware
- mesh
CWE
                
                    
                        
                        CWE-923
                        
            Improper Restriction of Communication Channel to Intended Endpoints
