Product
high
advisory
Remote Code Execution and Arbitrary File Read in Ruby on Rails Active Storage
1 CVE 1 IOCA vulnerability (CVE-2026-66066) in Ruby on Rails Active Storage allows unauthenticated attackers to achieve arbitrary file read and remote code execution during the variant processing phase.
PoC
Active Storage +10
1c
1i
updated