https://reddit.com/r/netsec/comments/1vauljz/kindarails2shell_arbitrary_file_read_to_rce_in/: KindaRails2Shell: arbitrary file read to RCE in Rails Active Storage via libvips (CVE-2026-66066)
Published Jul 30, 2026
·Updated
Affected Software
1 affected component
Ruby on Rails Active Storage (vips variant processor)>7.2.3.1<7.2.3.2, >8.0.5.0<8.0.5.1, >8.1.3.0<8.1.3.1
Frequently Asked Questions
1
What is the severity of CVE-2026-66066?
CVE-2026-66066 has a high severity rating due to its ability to allow arbitrary file reads leading to remote code execution.
2
How do I fix CVE-2026-66066?
To fix CVE-2026-66066, upgrade to Rails version 7.2.3.2 or later.
3
What versions of Rails are affected by CVE-2026-66066?
CVE-2026-66066 affects stock Rails versions 7.x and 8.x when using the vips variant processor.
4
Is Magick affected by CVE-2026-66066?
No, only the vips processor is affected by CVE-2026-66066; Magick is not impacted.
5
Does CVE-2026-66066 require authentication to exploit?
In certain setups, CVE-2026-66066 does not require authentication, making it more dangerous.