Loading HuntDB...

GHSA-j9vg-w22p-v5v2

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

In the goTenna Pro application, the encryption keys are stored along with a static IV on the device. This allows for complete decryption of keys stored on the device. This allows an attacker to decrypt all encrypted communications that include P2P, Group, and broadcast messages that use these keys.

Related CVEs

Key Information

GHSA ID
GHSA-j9vg-w22p-v5v2
Published
September 26, 2024 6:31 PM
Last Modified
October 7, 2024 6:31 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: July 12, 2025 6:29 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.