A security flaw has been identified in Ray, a development tool used by some teams to build and manage websites. This is a code injection vulnerability, which means an attacker could potentially run unauthorized, harmful code on systems where the Ray tool is active.
The vulnerability can be exploited when Ray is accessed through Firefox or Safari web browsers. If you or your development team use Ray as part of your website workflow, this issue could expose your development environment to unauthorized access or control by malicious actors.
Source: CISA Known Exploited Vulnerabilities Catalog — https://nvd.nist.gov/vuln/detail/CVE-2025-62593