<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 23:22:41 +0000</lastBuildDate>
    <item>
      <title>CVE-2026-27482 — Ray: Dashboard DELETE endpoints allow unauthenticated browser-triggered DoS (Serve shutdown / job deletion)</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2026-27482</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; ray-project ray&lt;/p&gt;
&lt;p&gt;Ray is an AI compute engine. In versions 2.53.0 and below, thedashboard HTTP server blocks browser-origin POST/PUT but does not cover DELETE, and key DELETE endpoints are unauthenticated by default. If the dashboard/agent is reachable (e.g., --dashboard-host=0.0.0.0), a web page via DNS rebinding or same-network access can issue DELETE requests that shut down Serve or delete jobs without user interaction. This is a drive-by availability impact. The fix for this vulnerability is to update to Ray 2.54.0 or higher.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; ray-project ray&lt;/p&gt;
&lt;p&gt;Ray is an AI compute engine. In versions 2.53.0 and below, thedashboard HTTP server blocks browser-origin POST/PUT but does not cover DELETE, and key DELETE endpoints are unauthenticated by default. If the dashboard/agent is reachable (e.g., --dashboard-host=0.0.0.0), a web page via DNS rebinding or same-network access can issue DELETE requests that shut down Serve or delete jobs without user interaction. This is a drive-by availability impact. The fix for this vulnerability is to update to Ray 2.54.0 or higher.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2026-27482</guid>
    </item>
    <item>
      <title>GHSA-q5fh-2hc8-f6rq — Ray dashboard DELETE endpoints allow unauthenticated browser-triggered DoS (Serve shutdown / job deletion)</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-q5fh-2hc8-f6rq</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: ray&lt;/p&gt;
&lt;p&gt;### Summary&lt;/p&gt;
&lt;p&gt;Ray’s dashboard HTTP server blocks browser-origin POST/PUT but does not cover DELETE, and key DELETE endpoints are unauthenticated by default. If the dashboard/agent is reachable (e.g., --dashboard-host=0.0.0.0), a web page via DNS rebinding or same-network access can
  issue DELETE requests that shut down Serve or delete jobs without user interaction. This is a drive-by availability impact.&lt;/p&gt;
&lt;p&gt;### Details&lt;/p&gt;
&lt;p&gt;- Middleware: python/ray/dashboard/http_server_head.py#get_browsers_no_post_put_middleware only checks POST/PUT via is_browser_request (UA/Origin/Sec-Fetch heuristics). DELETE is not gated.
  - Endpoints lacking browser protection/auth by default:
      - python/ray/dashboard/modules/serve/serve_head.py: @routes.delete(&amp;#34;/api/serve/applications/&amp;#34;) calls serve.shutdown().
      - python/ray/dashboard/modules/job/job_head.py: @routes.delete(&amp;#34;/api/jobs/{job_or_submission_id}&amp;#34;).
      - python/ray/dashboard/modules/job/job_agent.py: @routes.delete(&amp;#34;/api/job_agent/jobs/{job_or_submission_id}&amp;#34;) (not wrapped with deny_browser_requests either).
  - Dashboard token auth is optional and off by default; binding to 0.0.0.0 is common for remote access.&lt;/p&gt;
&lt;p&gt;### PoC&lt;/p&gt;
&lt;p&gt;Prereqs: dashboard reachable (e.g., ray start --head --dashboard-host=0.0.0.0), no token auth.&lt;/p&gt;
&lt;p&gt;1. Start Serve (or have jobs present).
  2. From any browser-reachable origin (DNS rebinding or same-LAN page), issue a DELETE fetch:&lt;/p&gt;
&lt;p&gt;```  
fetch(&amp;#34;http://&amp;lt;dashboard-host&amp;gt;:8265/api/serve/applications/&amp;#34;, {
    m…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: ray&lt;/p&gt;
&lt;p&gt;### Summary&lt;/p&gt;
&lt;p&gt;Ray’s dashboard HTTP server blocks browser-origin POST/PUT but does not cover DELETE, and key DELETE endpoints are unauthenticated by default. If the dashboard/agent is reachable (e.g., --dashboard-host=0.0.0.0), a web page via DNS rebinding or same-network access can
  issue DELETE requests that shut down Serve or delete jobs without user interaction. This is a drive-by availability impact.&lt;/p&gt;
&lt;p&gt;### Details&lt;/p&gt;
&lt;p&gt;- Middleware: python/ray/dashboard/http_server_head.py#get_browsers_no_post_put_middleware only checks POST/PUT via is_browser_request (UA/Origin/Sec-Fetch heuristics). DELETE is not gated.
  - Endpoints lacking browser protection/auth by default:
      - python/ray/dashboard/modules/serve/serve_head.py: @routes.delete(&amp;#34;/api/serve/applications/&amp;#34;) calls serve.shutdown().
      - python/ray/dashboard/modules/job/job_head.py: @routes.delete(&amp;#34;/api/jobs/{job_or_submission_id}&amp;#34;).
      - python/ray/dashboard/modules/job/job_agent.py: @routes.delete(&amp;#34;/api/job_agent/jobs/{job_or_submission_id}&amp;#34;) (not wrapped with deny_browser_requests either).
  - Dashboard token auth is optional and off by default; binding to 0.0.0.0 is common for remote access.&lt;/p&gt;
&lt;p&gt;### PoC&lt;/p&gt;
&lt;p&gt;Prereqs: dashboard reachable (e.g., ray start --head --dashboard-host=0.0.0.0), no token auth.&lt;/p&gt;
&lt;p&gt;1. Start Serve (or have jobs present).
  2. From any browser-reachable origin (DNS rebinding or same-LAN page), issue a DELETE fetch:&lt;/p&gt;
&lt;p&gt;```  
fetch(&amp;#34;http://&amp;lt;dashboard-host&amp;gt;:8265/api/serve/applications/&amp;#34;, {
    m…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-q5fh-2hc8-f6rq</guid>
    </item>
  </channel>
</rss>
