The Things Network develops LoRaWAN-stack software and infrastructure components for long-range, low-power IoT networking, a specialized niche within the broader IoT ecosystem. Its observed vulnerability profile centers on open-redirect weaknesses in authentication and redirection handling within the LoRaWAN stack, a pattern typical of web-facing gateway and management interfaces. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Thethingsnetwork over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-26494MEDIUM lorawan-stack is an open source LoRaWAN network server. Prior to version 3.24.1, an open redirect exists on the login page of the lorawan stack server, allowing an attacker to supp | Apr 24, 2023 | 6.1 | 21 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Thethingsnetwork.
Media articles that mention a CVE ID that affects a product developed by Thethingsnetwork — matched by CVE ID, not by vendor name.