Home/Product/meshtastic firmware
Product

meshtastic firmware

13 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-55292
< 2.7.6
Meshtastic is an open source mesh networking solution. In the current Meshtastic architecture, a Node is identified by their NodeI
8.2HIGH
CVE-2025-53627
>= 2.5.0 and < 2.7.15
Meshtastic is an open source mesh networking solution. The Meshtastic firmware (starting from version 2.5) introduces asymmetric e
5.3MEDIUM
CVE-2025-55293
< 2.6.3
Meshtastic is an open source mesh networking solution. Prior to v2.6.3, an attacker can send NodeInfo with a empty publicKey first
9.4CRITICAL
CVE-2024-47065
< 2.5.1
Meshtastic is an open source mesh networking solution. Prior to 2.5.1, traceroute responses from the remote node are not rate limi
6.5MEDIUM
CVE-2025-53637
< 2.6.6
Meshtastic is an open source mesh networking solution. The main_matrix.yml GitHub Action is triggered by the pull_request_target e
4.1MEDIUM
CVE-2025-24798
>= 1.2.1 and < 2.6.2
Meshtastic is an open source mesh networking solution. From 1.2.1 until 2.6.2, a packet sent to the routing module that contains w
4.3MEDIUM
CVE-2025-52464
>= 2.5.0 and < 2.6.11
Meshtastic is an open source mesh networking solution. In versions from 2.5.0 to before 2.6.11, the flashing procedure of several
8.3HIGH
CVE-2025-24797
< 2.6.2
Meshtastic is an open source mesh networking solution. A fault in the handling of mesh packets containing invalid protobuf data ca
9.4CRITICAL
CVE-2025-21608
>= 2.5.0 and < 2.5.19
Meshtastic is an open source mesh networking solution. In affected firmware versions crafted packets over MQTT are able to appear
5.3MEDIUM
CVE-2024-51500
< 2.5.6
Meshtastic firmware is a device firmware for the Meshtastic project. The Meshtastic firmware does not check for packets claiming t
5.3MEDIUM
CVE-2024-47079
< 2.5.1
Meshtastic is an open source, off-grid, decentralized, mesh network built to run on affordable, low-power devices. Meshtastic firm
6.4MEDIUM
CVE-2024-47078
< 2.5.1
Meshtastic is an open source, off-grid, decentralized, mesh network. Meshtastic uses MQTT to communicate over an internet connecti
8.1HIGH
CVE-2024-45038
< 2.4.1
Meshtastic device firmware is a firmware for meshtastic devices to run an open source, off-grid, decentralized, mesh network built
7.5HIGH
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin