CVE-2025-53649
Severity CVSS v4.0:
MEDIUM
Type:
CWE-532
Information Exposure Through Log Files
Publication date:
29/07/2025
Last modified:
15/04/2026
Description
"SwitchBot" App for iOS/Android contains an insertion of sensitive information into log file vulnerability in versions V6.24 through V9.12. If this vulnerability is exploited, sensitive user information may be exposed to an attacker who has access to the application logs.
Impact
Base Score 4.0
5.90
Severity 4.0
MEDIUM
Base Score 3.x
5.10
Severity 3.x
MEDIUM



