fray 3.5.210

The open-source WAF security testing platform 'fray' version 3.5.210 was found to contain a critical Remote Code Execution (RCE) vulnerability. This flaw allows attackers to execute arbitrary code on systems running the tool, potentially compromising the entire security infrastructure where fray is deployed, including WAF/CDN environments.

Open-source WAF Security Testing Platform — 7,200+ attack payloads, 98 WAF/CDN fingerprints, AI-powered bypass engine, recon pipeline, beautiful CLI output