Ray-Project Ray: Ray-Project Ray Code Injection Vulnerability

  • Thursday, 20th August, 2026
  • 16:06pm

A code injection vulnerability has been discovered in Ray, a tool many developers use to build and test websites and applications. This type of flaw can let unauthorized people run harmful custom code on systems where Ray is installed, which may lead to those systems being taken over remotely by bad actors.

The vulnerability can be exploited through common web browsers including Firefox and Safari. If you use Ray as part of your website or application development process, your development environment and any connected systems may be at risk if this flaw is taken advantage of.

Source: CISA Known Exploited Vulnerabilities Catalog — https://nvd.nist.gov/vuln/detail/CVE-2025-62593

« Back