Petlibro manufactures connected pet-care devices and smart feeders, a consumer IoT product category where the exposed attack surface combines cloud connectivity, user account systems, and remote device control. Vulnerabilities affecting this vendor skew strongly toward critical-severity outcomes and cluster around authentication and authorization flaws—including improper index-based information disclosure, authentication bypass through alternate channels, missing authentication on critical functions, and missing authorization controls—reflecting common weaknesses in IoT platforms where access controls and credential validation are inadequately enforced. Defenders should prioritize securing accounts and network access to affected devices; live severity and exploitation figures are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Petlibro over time
Signals from CVEs in this vendor scope (6 CVEs).
6 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-3653CRITICAL Petlibro Smart Pet Feeder Platform versions up to 1.7.31 contains an improper access control vulnerability that allows unauthorized device manipulation by accepting arbitrary seria | Jan 4, 2026 | 9.8 | 32 | NO | NO |
CVE-2025-15115CRITICAL Petlibro Smart Pet Feeder Platform versions up to 1.7.31 contains an authentication bypass vulnerability that allows unauthenticated attackers to access any user account by exploit | Jan 4, 2026 | 9.8 | 31 | NO | NO |
CVE-2025-3654CRITICAL Petlibro Smart Pet Feeder Platform versions up to 1.7.31 contains an information disclosure vulnerability that allows unauthorized access to device hardware information by exploiti | Jan 4, 2026 | 9.8 | 30 | NO | NO |
CVE-2025-3646HIGH Petlibro Smart Pet Feeder Platform versions up to 1.7.31 contains an authorization bypass vulnerability that allows unauthorized users to add users as shared owners to any device b | Jan 4, 2026 | 8.2 | 28 | NO | NO |
CVE-2025-3660HIGH Petlibro Smart Pet Feeder Platform versions up to 1.7.31 contains a broken access control vulnerability that allows authenticated users to access other users' pet data by exploitin | Jan 4, 2026 | 8.2 | 26 | NO | NO |
CVE-2025-3652MEDIUM Petlibro Smart Pet Feeder Platform versions up to 1.7.31 contains an information disclosure vulnerability that allows unauthorized access to private audio recordings by exploiting | Jan 4, 2026 | 5.3 | 20 | NO | NO |
Signals from CVEs in this vendor scope (6 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Petlibro.
Media articles that mention a CVE ID that affects a product developed by Petlibro — matched by CVE ID, not by vendor name.