RayGHSA-6cxr-8q3m-jwrr
Ray Missing Authorization vulnerability
Critical9.3CVE-2023-6020 · Published Nov 16, 2023 · updated Sep 10, 2026
LFI in Ray's /static/ directory allows attackers to read any file on the server without authentication. The issue is fixed in version 2.8.1+. Ray maintainers response can be found here: https://www.anyscale.com/blog/update-on-ray-cves-cve-2023-6019-cve-2023-6020-cve-2023-6021-cve-2023-48022-cve-2023-48023
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| ray PyPI | < 2.8.1 | 2.8.1 |
Details and references
More Ray advisories
All Ray| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Nov 272025 | Ray's New Token Authentication is Disabled By Default | Critical | No fix yet |
| Nov 262025 | Ray is vulnerable to Critical RCE via Safari & Firefox Browsers through DNS Rebinding Attack | Critical | 2.52.0 |
| Mar 62025 | ray vulnerable to Insertion of Sensitive Information into Log File | Medium6.4 | 2.43.0 |
| Nov 282023 | Ray has arbitrary code execution via jobs submission API | Critical9.8 | No fix yet |
| Nov 162023 | Ray Path Traversal vulnerability | Critical9.3 | 2.8.1 |
| Nov 162023 | Ray OS Command Injection vulnerability | Critical9.8 | 2.8.1 |