QID 996081
Date Published: 2023-11-28
QID 996081: Python (Pip) Security Update for ray (GHSA-3pww-qvr8-6mhp)
LFI in Ray's log API endpoint allows attackers to read any file on the server without authentication.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Refer to Github security advisory GHSA-3pww-qvr8-6mhp for updates and patch information.
Vendor References
- GHSA-3pww-qvr8-6mhp -
github.com/advisories/GHSA-3pww-qvr8-6mhp
CVEs related to QID 996081
Software Advisories
| Advisory ID | Software | Component | Link |
|---|