"SwitchBot" App for iOS/Android contains an insertion of sensitive information into log file vulnerability in versions V6.24 through V9.12. If this vulnerability is exploited, sensitive user information may be exposed to an attacker who has access to the application logs.
References
Configurations
No configuration.
History
29 Jul 2025, 14:14
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
29 Jul 2025, 05:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-07-29 05:15
Updated : 2025-07-29 14:14
NVD link : CVE-2025-53649
Mitre link : CVE-2025-53649
CVE.ORG link : CVE-2025-53649
JSON object : View
Products Affected
No product.
CWE
CWE-532
Insertion of Sensitive Information into Log File