Database/AI/ML frameworks & serving
Ray (dashboard `cpu_profile`): Command injection
CVE-2023-6019AI/ML frameworks & servingcurated
Impact
Command injection → OS command execution, unauthenticated
Who can reach it
Unauthenticated network to the Ray dashboard
What to do
Upgrade to 2.8.1+ and isolate the dashboard
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.