Exploited Vulnerabilities Daily
🌐 English

← All new entries

CVE-2025-62593: Ray-Project Ray

Ray-Project Ray contains a code injection vulnerability that could allow remote code execution. Developers using Ray as a development tool may be exposed to this vulnerability exploitable through Firefox and Safari.

Vendor
Ray-Project
Product
Ray
Vulnerability
Ray-Project Ray Code Injection Vulnerability
Date added
Aug 17, 2026
CISA due date (U.S. federal agencies)
Aug 20, 2026
Known ransomware campaign use
Unknown
Weakness (CWE)
CWE-94, CWE-352

References

This site summarizes CISA's catalog for information only. It is not security advice — follow your vendor's guidance and official advisories.

Last updated: · Catalog version 2026.10.02