Razer
3 CVEs tracked since 2017. Since Aug 2017, none of them reached CISA KEV.
Razer CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2017-08 | 3 | 0 |
Products
The products that kept showing up in Razer's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 15 most recently published vulnerabilities affecting Razer.
- CVE-2026-18606Razer RzUpdateService Named Pipe RzUpdateService.exe privileges management7.8
- CVE-2025-9870Razer Synapse 3 RazerPhilipsHueUninstall Link Following Local Privilege Escalation Vulnerability7.8
- CVE-2025-9871Razer Synapse 3 Chroma Connect Link Following Local Privilege Escalation Vulnerability7.8
- CVE-2025-9869Razer Synapse 3 Macro Module Link Following Local Privilege Escalation Vulnerability7.8
- CVE-2025-27811A local privilege escalation in the razer_elevation_service.exe in Razer Synapse 4 through 4.0.86.2502180127 allows a local attacker to escalate their privileges via a vulnerable COM interface in t...7.8
- CVE-2022-47631Razer Synapse through 3.7.1209.121307 allows privilege escalation due to an unsafe installation path and improper privilege management. Attackers can place DLLs into %PROGRAMDATA%\Razer\Synapse3\Se...7.8
- CVE-2023-3514RazerCentralSerivce Unsafe Named Pipe Permission Escalation of Privilege Vulnerability7.8
- CVE-2023-3513RazerCentralService Unsafe Deserialization Escalation of Privilege7.8
- CVE-2022-45697Arbitrary File Delete vulnerability in Razer Central before v7.8.0.381 when handling files in the Accounts directory.7.8
- CVE-2022-47632Razer Synapse before 3.7.0830.081906 allows privilege escalation due to an unsafe installation path, improper privilege management, and improper certificate validation. Attackers can place maliciou...6.8
- CVE-2022-29014A local file inclusion vulnerability in Razer Sila Gaming Router v2.0.441_api-2.0.418 allows attackers to read arbitrary files.7.5
- CVE-2022-29013A command injection in the command parameter of Razer Sila Gaming Router v2.0.441_api-2.0.418 allows attackers to execute arbitrary commands via a crafted POST request.9.8
- CVE-2021-44226Razer Synapse before 3.7.0228.022817 allows privilege escalation because it relies on %PROGRAMDATA%\Razer\Synapse3\Service\bin even if %PROGRAMDATA%\Razer has been created by any unprivileged user ...7.3
- CVE-2021-30494Multiple system services installed alongside the Razer Synapse 3 software suite perform privileged operations on entries within the Razer Chroma SDK subkey. These privileged operations consist of f...5.5
- CVE-2021-30493Multiple system services installed alongside the Razer Synapse 3 software suite perform privileged operations on entries within the ChromaBroadcast subkey. These privileged operations consist of fi...5.5
The record
- Peak rank
- #128 in Aug 2017
- Busiest month shown
- Aug 2017, 3 CVEs
- Months with a KEV entry
- 0 since Aug 2017
- Monthly snapshots
- 1 since 2017