VYPR
Critical severity9.1NVD Advisory· Published Nov 28, 2023· Updated Jun 17, 2026

CVE-2023-48023

CVE-2023-48023

Description

Anyscale Ray 2.6.3 and 2.8.0 allows /log_proxy SSRF. NOTE: the vendor's position is that this report is irrelevant because Ray, as stated in its documentation, is not intended for use outside of a strictly controlled network environment

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Anyscale/Ray4 versions
    cpe:2.3:a:anyscale:ray:2.6.3:*:*:*:*:*:*:*+ 3 more
    • cpe:2.3:a:anyscale:ray:2.6.3:*:*:*:*:*:*:*
    • cpe:2.3:a:anyscale:ray:2.8.0:*:*:*:*:*:*:*
    • (no CPE)range: 2.6.3, 2.8.0
    • (no CPE)

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.