Rails patches critical Active Storage flaw with RCE potential
A critical vulnerability in the Active Storage framework can allow an unauthenticated attacker to read arbitrary files from a Rails application, and potentially escalate to remote code execution (RCE). [...]
This is a summary aggregated from Bleeping Computer. Read the complete article on the original site:
Read full article at Bleeping Computer