« Volver al listado

RAY Project

RAY Project RAY: vulnerabilidades y CVE

RAY Project RAY tiene 3 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.

CVE3
Últimos 12 meses0
Críticas1
Explotadas activamente0

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2023-6020Alta (7.5)15%—16 nov 2023
LFI in Ray's /static/ directory allows attackers to read any file on the server without authentication.
CVE-2023-6021Alta (7.5)37%—16 nov 2023
LFI in Ray's log API endpoint allows attackers to read any file on the server without authentication. The issue is fixed in version 2.8.1+. Ray maintainers' response can be found here:…
CVE-2023-6019Crítica (9.8)75%—16 nov 2023
A command injection existed in Ray's cpu_profile URL parameter allowing attackers to execute os commands on the system running the ray dashboard remotely without authentication. The issue is fixed in version 2.8.1+. Ray…