Ray-Project Ray: Ray-Project Ray Code Injection Vulnerability

  • Thursday, 20th August, 2026
  • 22:06pm

A security vulnerability has been identified in Ray, a development tool created by Ray Project. This is a code injection flaw, which could allow unauthorized parties to run malicious code remotely on systems that use the tool.

Developers who use Ray as part of their workflow may be exposed to this risk. The vulnerability can be exploited when accessing Ray through the Firefox or Safari web browsers.

Source: CISA Known Exploited Vulnerabilities Catalog — https://nvd.nist.gov/vuln/detail/CVE-2025-62593

« Back