Skip to content
RayGHSA-3pww-qvr8-6mhp

Ray Path Traversal vulnerability

Critical9.3CVE-2023-6021 · Published Nov 16, 2023 · updated Sep 10, 2026

LFI in Ray's log API endpoint allows attackers to read any file on the server without authentication. The issue is fixed in version 2.8.1+. Ray maintainers response can be found here: https://www.anyscale.com/blog/update-on-ray-cves-cve-2023-6019-cve-2023-6020-cve-2023-6021-cve-2023-48022-cve-2023-48023

GitHub advisory

Affected versions

PackageAffectedFixed in
ray
PyPI
< 2.8.12.8.1
Details and references

More Ray advisories

All Ray
Advisory
Ray's New Token Authentication is Disabled By Default
CriticalNov 27, 2025
Ray is vulnerable to Critical RCE via Safari & Firefox Browsers through DNS Rebinding Attack
CriticalNov 26, 2025
ray vulnerable to Insertion of Sensitive Information into Log File
Medium6.4Mar 6, 2025
Ray has arbitrary code execution via jobs submission API
Critical9.8Nov 28, 2023
Ray Missing Authorization vulnerability
Critical9.3Nov 16, 2023
Ray OS Command Injection vulnerability
Critical9.8Nov 16, 2023

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.