Critical Ruby on Rails Vulnerability in Attackers’ Crosshairs
Hackers are exploiting a critical-severity Ruby on Rails vulnerability that leads to remote code execution (RCE), VulnCheck warns.
Tracked as CVE-2026-66066 (CVSS score of 9.5) and referred to as KindaRails2Shell, the flaw is described as an arbitrary file read leading to secret exposure, RCE, and lateral movement.
The security defect was disclosed in late July, when Ruby on Rails rolled out patches for it, urging the immediate patching of all Rails applications that rely on libvips for Active Storage image processing and allow image uploads from untrusted users.
Shortly after, security researchers reverse-engineered the bug and released technical information and proof-of-concept (PoC) code targeting it, and Rails published forensic tools to help detect exploitation attempts.
Rails explained that KindaRails2Shell was rooted in the different methods used by different libraries and functions to read arbitrary files.
While Rails may rely on the client-supplied content type to interpret a blob as...
Copyright of this story solely belongs to securityweek.com. To see the full text click HERE