{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/products/ray--2.52.0/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:anyscale:ray:*:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":8.8,"id":"CVE-2025-62593"}],"_cs_exploited":true,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["Ray (\u003c 2.52.0)"],"_cs_severities":["high"],"_cs_tags":[],"_cs_type":"threat","_cs_vendors":["Ray-Project"],"content_html":"\u003cp\u003eCISA has officially added CVE-2025-62593 to its Known Exploited Vulnerabilities (KEV) Catalog, citing clear evidence of active exploitation in the wild. This vulnerability affects the Ray project, an open-source framework widely used for scaling distributed AI and Python applications. The flaw is identified as a code injection vulnerability that allows unauthenticated attackers to execute arbitrary code within the context of a Ray cluster. Given the widespread use of Ray in distributed compute environments, this vulnerability presents a significant risk to organizations managing AI infrastructure. As per CISA’s Binding Operational Directive (BOD) 26-04, federal agencies are required to prioritize the remediation of this vulnerability on all publicly exposed assets to prevent complete system compromise.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation of CVE-2025-62593 enables malicious actors to achieve remote code execution on the targeted Ray cluster. This compromise can lead to full system takeover, data exfiltration from compute nodes, and the potential for lateral movement within the broader organizational network or cloud environment. The criticality of this vulnerability is elevated by its current exploitation status, making it a high-priority target for threat actors seeking to compromise distributed AI compute resources.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eImmediately audit all public-facing and internal Ray cluster deployments to determine if they are running vulnerable versions impacted by CVE-2025-62593.\u003c/li\u003e\n\u003cli\u003eApply vendor-provided security patches to all affected Ray instances as the primary mitigation strategy.\u003c/li\u003e\n\u003cli\u003eImplement network segmentation and restrictive firewall policies to ensure that Ray dashboard and API endpoints are not exposed to the public internet.\u003c/li\u003e\n\u003cli\u003eConduct a review of system logs for unauthorized command execution or unexpected outbound network connections originating from Ray nodes, as per the guidelines in BOD 26-04.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-09-09T18:53:25Z","date_published":"2026-08-17T15:45:51Z","id":"https://feed.craftedsignal.io/briefs/2026-08-cve-2025-62593-ray/","summary":"CISA has added CVE-2025-62593, a code injection vulnerability in the Ray framework, to its Known Exploited Vulnerabilities catalog following reports of active exploitation.","title":"Active Exploitation of Code Injection Vulnerability in Ray","url":"https://feed.craftedsignal.io/briefs/2026-08-cve-2025-62593-ray/"}],"language":"en","title":"CraftedSignal Threat Feed - Ray (\u003c 2.52.0)","version":"https://jsonfeed.org/version/1.1"}