As cited
Citation snapshot as of .
vulnerabilities
CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE
The U.S. Cybersecurity and Infrastructure Security Agency added a critical vulnerability in Ray, an open-source Python distributed computing framework, to its Known Exploited Vulnerabilities catalog. The flaw is being actively exploited and can enable remote code execution through a browser-based attack vector.
Why it matters: Organizations using Ray for AI and machine learning workloads face immediate risk from active exploitation; patching or isolating Ray deployments should be prioritized.
- Source published
- First seen by Cybersecurity Tracker