CVE-2025-53649

Severity CVSS v4.0:
MEDIUM
Type:
CWE-532 Information Exposure Through Log Files
Publication date:
29/07/2025
Last modified:
15/04/2026

Description

"SwitchBot" App for iOS/Android contains an insertion of sensitive information into log file vulnerability in versions V6.24 through V9.12. If this vulnerability is exploited, sensitive user information may be exposed to an attacker who has access to the application logs.