CVE-2025-53649: Switchbot App For Ios/android

Medium severity, CVSS 5.9. EPSS: 0.1% chance of exploitation in the next 30 days.

"SwitchBot" App for iOS/Android contains an insertion of sensitive information into log file vulnerability in versions V6.24 through V9.12. If this vulnerability is exploited, sensitive user information may be exposed to an attacker who has access to the application logs.

Affected products

Published 2025-07-29. Last modified 2026-06-17.