cb
cvebase
.
~
/
products
/
anyscale_inc
/
ray
Search CVEs, products, detections…
⌘K
pipeline live
Digest
Docs
Home
/
Products
/
anyscale_inc
/
Anyscale Inc Ray
Anyscale Inc Ray vulnerabilities
1 known vulnerability affecting
anyscale_inc/ray
.
Track
Version
All versions
Total CVEs
1
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH
1
Vulnerabilities
Sort
Most important
Highest Priority
Highest EPSS
Highest CVSS
Newest
Oldest
Page 1 of 1
CVE-2026-57516
P3
HIGH
CVSS 8.8
fixed in 2.56.0
2026-07-01
CVE-2026-57516 [HIGH] CWE-502 CVE-2026-57516: Ray prior to 2.56.0 contains an unsafe deserialization vulnerability in the WebDataset reader that a Ray prior to 2.56.0 contains an unsafe deserialization vulnerability in the WebDataset reader that allows attackers to achieve remote code execution by supplying a malicious tar archive to the read_webdataset() function. The _default_decoder() function in webdataset_datasource.py unconditionally calls pickle.loads() on tar entries with .pkl/.pickle ex
nvd
Anyscale Inc Ray vulnerabilities | cvebase