A security flaw has been identified in Ray, a tool some website developers use to build and test their projects. This is a code injection vulnerability, meaning bad actors could exploit it to run unauthorized, harmful code on any system where Ray is installed.
The vulnerability can be exploited by attackers using Firefox or Safari web browsers. If you use Ray as part of your website development process, this flaw could put your development environment and any connected systems at risk of compromise.
Source: CISA Known Exploited Vulnerabilities Catalog — https://nvd.nist.gov/vuln/detail/CVE-2025-62593