Vulnerability Details CVE-2025-32890
An issue was discovered on goTenna Mesh devices with app 5.5.3 and firmware 1.1.12. It uses a custom implementation of encryption without any additional integrity checking mechanisms. This leaves messages malleable to an attacker that can access the message.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 0.8%
CVSS Severity
CVSS v3 Score 5.3
Products affected by CVE-2025-32890
-
cpe:2.3:a:gotenna:gotenna:5.5.3
-
-
cpe:2.3:o:gotenna:mesh_firmware:1.1.12