CVE Tools

Gotenna

28 CVEs tracked since 2024. Since Sep 2024, none of them reached CISA KEV.

Gotenna CVEs per month

Sep 2024 to May 2025. Point at a month, or focus the strip and use the arrow keys.
Gotenna CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2024-09190
2024-10null or fewer
2024-11null or fewer
2024-12null or fewer
2025-01null or fewer
2025-02null or fewer
2025-03null or fewer
2025-04null or fewer
2025-0590

Products

The products that kept showing up in Gotenna's monthly top three, with their CVEs summed over those months.

  1. Gotenna Pro101 month
  2. Pro101 month
  3. Gotenna91 month
  4. Mesh Firmware91 month
  5. Pro Atak Plugin91 month

Latest CVEs

The 15 most recently published vulnerabilities affecting Gotenna.

  1. CVE-2025-32884An issue was discovered on goTenna Mesh devices with app 5.5.3 and firmware 1.1.12. By default, a GID is the user's phone number unless they specifically opt out. A phone number is very sensitive i...4.3
  2. CVE-2025-32887An issue was discovered on goTenna v1 devices with app 5.5.3 and firmware 0.25.5. A command channel includes the next hop. which can be intercepted and used to break frequency hopping.7.1
  3. CVE-2025-32882An issue was discovered on goTenna v1 devices with app 5.5.3 and firmware 0.25.5. The app uses a custom implementation of encryption without any additional integrity checking mechanisms. This leave...5.3
  4. CVE-2025-32889An issue was discovered on goTenna v1 devices with app 5.5.3 and firmware 0.25.5. The verification token used for sending SMS through a goTenna server is hardcoded in the app.7.3
  5. CVE-2025-32885An issue was discovered on goTenna v1 devices with app 5.5.3 and firmware 0.25.5. The app there makes it possible to inject any custom message (into existing v1 networks) with any GID and Callsign ...6.5
  6. CVE-2025-32881An issue was discovered on goTenna v1 devices with app 5.5.3 and firmware 0.25.5. By default, the GID is the user's phone number unless they specifically opt out. A phone number is very sensitive i...4.3
  7. CVE-2025-32890An issue was discovered on goTenna Mesh devices with app 5.5.3 and firmware 1.1.12. It uses a custom implementation of encryption without any additional integrity checking mechanisms. This leaves m...5.3
  8. CVE-2025-32888An issue was discovered on goTenna Mesh devices with app 5.5.3 and firmware 1.1.12. The verification token used for sending SMS through a goTenna server is hardcoded in the app.7.3
  9. CVE-2025-32886An issue was discovered on goTenna v1 devices with app 5.5.3 and firmware 0.25.5. All packets sent over RF are also sent over UART with USB Shell, allowing someone with local access to gain informa...4.0
  10. CVE-2024-43814goTenna Pro ATAK Plugin Insertion of Sensitive Information Into Sent Data4.3
  11. CVE-2024-41715goTenna Pro ATAK Plugin Observable Response Discrepancy4.3
  12. CVE-2024-41931goTenna Pro ATAK Plugin Insertion of Sensitive Information Into Sent Data4.3
  13. CVE-2024-41722goTenna Pro ATAK Plugin Weak Authentication6.5
  14. CVE-2024-45723goTenna Pro ATAK Plugin Use of Cryptographically Weak Pseudo-Random Number Generator6.5
  15. CVE-2024-45838goTenna Pro ATAK Plugin Cleartext Transmission of Sensitive Information4.3

The record

Peak rank
#38 in Sep 2024
Busiest month shown
Sep 2024, 19 CVEs
Months with a KEV entry
0 since Sep 2024
Monthly snapshots
2 since 2024
Gotenna's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store