PT-2026-4100 · Unknown · Synergy Project Manager

Published

2026-01-22

·

Updated

2026-01-23

·

CVE-2025-68898

CVSS v3.1

5.8

Medium

VectorAV:N/AC:H/PR:N/UI:R/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions cjjparadoxmax Synergy Project Manager versions through 1.5
Description The Synergy Project Manager software contains a flaw related to improper input handling during web page generation, which allows for Stored Cross-site Scripting (XSS). This means that malicious scripts can be injected into web pages viewed by other users. The affected software is Synergy Project Manager.
Recommendations Versions prior to or equal to 1.5 should be updated.

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-68898

Affected Products

Synergy Project Manager