"SwitchBot" App for iOS/Android contains an insertion of sensitive information into log file vulnerability in versions V6.24 through V9.12. If this vulnerability is exploited, sensitive user information may be exposed to an attacker who has access to the application logs.
Metrics
Affected Vendors & Products
References
History
Wed, 30 Jul 2025 11:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Google
Google android Switchbot Switchbot switchbot App |
|
Vendors & Products |
Google
Google android Switchbot Switchbot switchbot App |
Tue, 29 Jul 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 29 Jul 2025 05:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | "SwitchBot" App for iOS/Android contains an insertion of sensitive information into log file vulnerability in versions V6.24 through V9.12. If this vulnerability is exploited, sensitive user information may be exposed to an attacker who has access to the application logs. | |
Weaknesses | CWE-532 | |
References |
| |
Metrics |
cvssV3_0
|

Status: PUBLISHED
Assigner: jpcert
Published: 2025-07-29T04:41:35.880Z
Updated: 2025-07-29T13:58:10.661Z
Reserved: 2025-07-08T06:34:47.546Z
Link: CVE-2025-53649

Updated: 2025-07-29T13:58:07.420Z

Status : Awaiting Analysis
Published: 2025-07-29T05:15:32.317
Modified: 2025-07-29T14:14:29.590
Link: CVE-2025-53649

No data.