Ray-Project Ray: Ray-Project Ray Code Injection Vulnerability

  • Wednesday, 19th August, 2026
  • 10:05am

A security flaw has been identified in Ray, a development tool used by many teams building websites and applications. This is a code injection vulnerability, a type of security issue that allows untrusted parties to insert and run their own unauthorized code on systems that use the affected tool.

This specific vulnerability could be exploited to carry out remote code execution, meaning attackers could run harmful commands on your development systems from a distance. The flaw can be triggered through the Firefox and Safari web browsers, so any teams using Ray as part of their development process for projects hosted with our services may be exposed to this risk.

Source: CISA Known Exploited Vulnerabilities Catalog — https://nvd.nist.gov/vuln/detail/CVE-2025-62593

« Back