Cyber Resilience
← All news
Confirmed

CISA Adds One Known Exploited Vulnerability to Catalog

Our takeCISA added CVE-2025-62593, a code injection vulnerability in Ray, to the KEV catalog after confirming active exploitation. Patch it today if you run Ray.
Sources (3)
What this means for you — Security leader:CISA added CVE-2025-62593 (Ray code injection) to the KEV catalog. Federal agencies must remediate per BOD 26-04; all others should treat it as immediate triage priority and patch or restrict exposure now.
What this means for you — Lean IT orgs:CISA confirmed active exploitation of a code injection flaw in Ray (CVE-2025-62593). Check whether any of your tools or cloud services use Ray, and ask your vendor for their patch status immediately.
What this means for you — MSP:CISA added CVE-2025-62593 (Ray code injection) to KEV. Review client environments for any use of Ray-Project components and prioritize patching or network restrictions; update runbooks for this class of RCE.
What this means for you — Researcher:CISA added CVE-2025-62593 (Ray code injection) to the KEV catalog based on confirmed active exploitation. Patch or isolate affected Ray deployments promptly.