Vulnerability index

Browse CVEs

7 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2026-57516 Ray prior to 2.56.0 contains an unsafe deserialization vulnerability in the WebDataset reader that allows attackers to achieve remote code execution … Ray 2.56.0+ Fix from $1,9502026-07-01 HIGH 8.8 CVE-2026-41486 Ray is an AI compute engine. From version 2.54.0 to before version 2.55.0, Ray Data registers custom Arrow extension types (ray.data.arrow_tensor, ra… Ray Patch available Fix from $1,9502026-05-08 HIGH 7.5 CVE-2026-32981 A path traversal vulnerability was identified in Ray Dashboard (default port 8265) in Ray versions prior to 2.8.1. Due to improper validation and san… Ray 2.8.1+ Fix from $1,9502026-03-17 MEDIUM 6.5 CVE-2026-27482 Ray is an AI compute engine. In versions 2.53.0 and below, thedashboard HTTP server blocks browser-origin POST/PUT but does not cover DELETE, and key… Ray 2.54.0+ Fix from $1,6002026-02-21 HIGH 8.8 CVE-2025-62593 KEV Ray is an AI compute engine. Prior to version 2.52.0, developers working with Ray as a development tool can be exploited via a critical RCE vulnerabi… Ray Patch available Fix from $1,9502025-11-26 CRITICAL 9.1 CVE-2023-48023EPSS 35% Anyscale Ray 2.6.3 and 2.8.0 allows /log_proxy SSRF. NOTE: the vendor's position is that this report is irrelevant because Ray, as stated in its docu… Ray No fix yet Fix from $2,3002023-11-28 CRITICAL 9.8 CVE-2023-48022EPSS 84% Anyscale Ray 2.6.3 and 2.8.0 allows a remote attacker to execute arbitrary code via the job submission API. NOTE: the vendor's position is that this … Ray No fix yet Fix from $2,3002023-11-28