CVE-2025-32889: Gotenna

High severity, CVSS 8.8. EPSS: 0.2% chance of exploitation in the next 30 days.

An issue was discovered on goTenna v1 devices with app 5.5.3 and firmware 0.25.5. The verification token used for sending SMS through a goTenna server is hardcoded in the app.

Affected products

  • Gotenna Gotenna: version 5.5.3 only
  • Gotenna Mesh Firmware: version 0.25.5 only

Published 2025-05-01. Last modified 2026-06-17.