Synergy logoSynergy logo

Security advisories

Every security advisory we have published for Synergy, with the versions each one affects and the version that fixed it. Each one links to its full advisory on GitHub.

Privilege escalation through Daemon IPC server

high
Identifier
CVE-2026-41477
Affected versions
>= 1.4.9
Fixed in
1.20.1
CVSS
7.8 (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
Published
May 6, 2026

Clipboard deserialization global-buffer-overflow

medium
Identifier
CVE-2026-41476
Affected versions
<= 1.20.0
Fixed in
1.20.1
CVSS
Not scored
Published
May 6, 2026

TLS multiplexer DoS on failed `SSL_accept`

high
Identifier
CVE-2026-44296
Affected versions
<= 1.20.0
Fixed in
1.20.1
CVSS
7.5 (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
Published
May 6, 2026