Vulnerabilities > Razer > Synapse > High

DATE CVE VULNERABILITY TITLE RISK
2023-09-14 CVE-2022-47631 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Razer Synapse
Razer Synapse through 3.7.1209.121307 allows privilege escalation due to an unsafe installation path and improper privilege management.
local
high complexity
razer CWE-367
7.8
2022-03-23 CVE-2021-44226 Uncontrolled Search Path Element vulnerability in Razer Synapse
Razer Synapse before 3.7.0228.022817 allows privilege escalation because it relies on %PROGRAMDATA%\Razer\Synapse3\Service\bin even if %PROGRAMDATA%\Razer has been created by any unprivileged user before Synapse is installed.
local
low complexity
razer CWE-427
7.3