CISA KEV mitigation for Ray CVE-2025-62593
Public Sector Action
Summary
Hide ▲
Show ▼
CISA added Ray's CVE-2025-62593 to the KEV catalog and told FCEB agencies to apply fixes and mitigations by August 20, 2026, escalating an actively exploited flaw into a federal remediation deadline. The issue can enable browser-based remote code execution through DNS rebinding in Firefox and Safari, putting exposed Ray deployments at risk. The fix is available in Ray 2.52.0, but unpatched systems remain vulnerable until the deadline is met.
Related Happenings
Ray browser-based RCE flaw (CVE-2025-62593)
Vulnerability
H score43
First: 18.08.2026 09:34
Last: 18.08.2026 09:34
Sources 1
How related:
"The vulnerability in question relates to CVE-2025-62593 (CVSS score: 9.4), which can result in remote code execution via web browsers like Mozilla Firefox and Apple Safari by means of a DNS rebinding attack."
About this happening:
CISA added CVE-2025-62593 in Ray to its KEV catalog after evidence of active exploitation, raising the risk of browser-based remote code execution for expo...
Ray browser-based RCE flaw (CVE-2025-62593)
VulnerabilityHow related: "The vulnerability in question relates to CVE-2025-62593 (CVSS score: 9.4), which can result in remote code execution via web browsers like Mozilla Firefox and Apple Safari by means of a DNS rebinding attack."
About this happening: CISA added CVE-2025-62593 in Ray to its KEV catalog after evidence of active exploitation, raising the risk of browser-based remote code execution for expo...
SonicWall security patch release for CVE-2026-15409
Security Patch Release
H score54
First: 15.07.2026 00:23
Last: 15.07.2026 00:23
Sources 1
About this happening:
SonicWall released hotfix security updates for SMA1000 appliances after confirming active exploitation of CVE-2026-15409 and CVE-2026-15410. The fixes are availabl...
SonicWall security patch release for CVE-2026-15409
Security Patch ReleaseAbout this happening: SonicWall released hotfix security updates for SMA1000 appliances after confirming active exploitation of CVE-2026-15409 and CVE-2026-15410. The fixes are availabl...
Linux kernel rxgk local DirtyDecrypt/DirtyCBC privilege-escalation flaw (CVE-2026-31635)
Vulnerability
H score41
First: 18.05.2026 10:18
Last: 18.05.2026 10:18
Sources 1
About this happening:
A proof-of-concept exploit has been released for DirtyDecrypt/DirtyCBC (CVE-2026-31635), a recently patched Linux kernel flaw in rxgk_decrypt_skb() that can en...
Linux kernel rxgk local DirtyDecrypt/DirtyCBC privilege-escalation flaw (CVE-2026-31635)
VulnerabilityAbout this happening: A proof-of-concept exploit has been released for DirtyDecrypt/DirtyCBC (CVE-2026-31635), a recently patched Linux kernel flaw in rxgk_decrypt_skb() that can en...
Linux distros patch release for Fragnasia (CVE-2026-46300)
Security Patch Release
H score25
First: 14.05.2026 10:34
Last: 14.05.2026 10:34
Sources 1
About this happening:
Linux distros are rolling out patches for CVE-2026-46300, a high-severity kernel flaw that can let unprivileged local attackers gain root on vulnerable Linux systems....
Linux distros patch release for Fragnasia (CVE-2026-46300)
Security Patch ReleaseAbout this happening: Linux distros are rolling out patches for CVE-2026-46300, a high-severity kernel flaw that can let unprivileged local attackers gain root on vulnerable Linux systems....
Cisco security patch release for CVE-2026-20188
Security Patch Release
H score35
First: 06.05.2026 21:06
Last: 06.05.2026 21:06
Sources 1
About this happening:
Cisco released security updates for CVE-2026-20188, a high-severity DoS vulnerability in Crosswork Network Controller (CNC) and Network Services Orchestrator (NS...
Cisco security patch release for CVE-2026-20188
Security Patch ReleaseAbout this happening: Cisco released security updates for CVE-2026-20188, a high-severity DoS vulnerability in Crosswork Network Controller (CNC) and Network Services Orchestrator (NS...
Timeline
-
18.08.2026 09:34 2 articles · 3h ago
CISA adds Ray CVE-2025-62593 to the KEV catalog
Legal Policy Action UpdateCISA added CVE-2025-62593 in Ray to the Known Exploited Vulnerabilities (KEV) catalog after evidence of active exploitation and recommended that Federal Civilian Executive Branch agencies apply necessary fixes and mitigations by August 20, 2026. The flaw can enable browser-based remote code execution through DNS rebinding in Mozilla Firefox and Apple Safari, especially against developers running Ray in development or testing environments and some network-adjacent Ray instances.
Show sources
- CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE — thehackernews.com — 18.08.2026 09:34
- CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE — thehackernews.com — 18.08.2026 09:34