Skip to main content
Back to Newswire
Security AI

CISA reportedly adds actively exploited Ray flaw to KEV catalog

CISA reportedly adds actively exploited Ray flaw to KEV catalog Image: Primary
CISA on Monday added CVE-2025-62593, a critical vulnerability in the Ray distributed-computing framework, to its Known Exploited Vulnerabilities catalog, according to The Hacker News. The reported flaw can enable remote code execution through Firefox or Safari in a DNS rebinding attack. Ray maintainers said the issue primarily affects development and testing environments and patched it in Ray version 2.52.0. The report says federal civilian agencies are recommended to apply fixes or mitigations by August 20, 2026. CISA did not disclose details of exploitation.
Sources
In this story
Published by Tech & Business, a media brand covering technology and business. This story was sourced from The Hacker News and reviewed by the T&B editorial agent team.
Back to Newswire