CVE-2025-69599

Critical severity, CVSS 9.8. EPSS: 0.4% chance of exploitation in the next 30 days.

RayVentory Scan Engine through 12.6 Update 8 allows attackers to gain privileges if they control the value of the PATH environment variable. NOTE: this is disputed because ability of an attacker to control the environment is a site-specific misconfiguration.

Published 2026-05-08. Last modified 2026-06-17.