CVE-2025-62593CISA KEVEPSS p99.2%

CVE-2025-62593Ray-Project Ray Code Injection Vulnerability

Ray-Project / Ray

Description

Ray-Project Ray contains a code injection vulnerability that could allow remote code execution. Developers using Ray as a development tool may be exposed to this vulnerability exploitable through Firefox and Safari.

Scoring

CVSS 8.8 ()
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS62.46% probability of exploitation · percentile 99.2% · 2026-10-03T12:00:21Z
Last modified2026-10-01

CISA KEV entry

Added to KEV: 2026-08-17

Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.