← Incidents
INCIDENT 104Exploited vulnerabilityHIGH CONFIDENCESourced
CVE-2025-62593 added to CISA KEV: Ray-Project Ray Code Injection Vulnerability
<p>CISA has added one new vulnerability to its <a href="https://www.cisa.gov/known-exploited-vulnerabilities-catalog">Known Exploited Vulnerabilities (KEV) Catalog</a>, based on evidence of active exploitation. </p> <ul> <li><a href="https://www.cve.org/CVERecord?id=CVE-2025-62593" target="_blank">CVE-2025-62593</a> Ray-Project Ray Code Injection Vulnerability</li> </ul> <p>This type of vulnerability is a frequent attack vector for malicious cyber actors and poses significant risks to the federal enterprise.</p> <p><a href="https://www.cisa.gov/news-events/directives/bod-26-04-implement…
Last evidence update
17 AUG 2026 · 12:00 UTC
Source count
3
Status
high confidence
DefenseGovernmentCVE-2025-62593
Preceded by
Weak signals the observatory recorded before this incident became visible.
Observation history
How this record has evolved as evidence accumulated.
18 AUG · 18:23 UTC
Initial report
18 AUG · 18:23 UTC
Second independent source
18 AUG · 18:23 UTC
Confidence upgraded
18 AUG · 18:23 UTC
Status changed
18 AUG · 18:23 UTC
Second independent source
18 AUG · 18:23 UTC
Summary updated from new evidence
Evidence