CVE-2026-41486Anyscale · Ray
Vulnerability data via NVD (ingested)
Ray is an AI compute engine. From version 2.54.0 to before version 2.55.0, Ray Data registers custom Arrow extension types (ray.data.arrow_tensor, ray.data.arrow_tensor_v2, ray.data.arrow_variable_shaped_tensor) globally in PyArrow. When PyArrow reads a Parquet file containing one of these extension types, it calls __arrow_ext_deserialize__ on the field's metadata bytes. Ray's implementation passes these bytes directly to cloudpickle.loads(), achieving arbitrary code execution during schema parsing, before any row data is read. This issue has been patched in version 2.55.0.
External references
Search for exposed instances
Shodan + Censys queries derived from NVD's CPE data. The vuln tag catches assets Shodan has explicitly linked to this CVE; the product / banner fingerprints find exposed instances even when the vuln tag was never applied (which is common).
vuln:CVE-2026-41486product:"Anyscale Ray" version:"2.54.0"http.html:"Ray"More intel sources (5)
vuln:CVE-2026-41486vulnerabilities.cve_id: CVE-2026-41486CVE-2026-41486CVE-2026-41486"CVE-2026-41486" exploit -site:nvd.nist.gov