Anyscale Ray Server-Side Request Forgery (CVE-2023-48023)

Related Vulnerabilities: CVE-2023-48023  

Check Point Reference: CPAI-2023-1484 Date Published: 6 Feb 2024 Severity: Critical Last Updated: Tuesday 06 February, 2024 Source: Industry Reference:CVE-2023-48023
Protection Provided by:

Security Gateway
R81, R80, R77, R75

Who is Vulnerable? Anyscale Ray 2.6.3
Anyscale Ray 2.8.0 Vulnerability Description A server-side request forgery vulnerability exists in Anyscale Ray. Successful exploitation would allow attackers to create HTTP requests on behalf of the vulnerable server.