8 Hours After the Rails Patch, the Exploit Arrived
This story is from 2026-09-05. It is preserved in the archive; the latest stories are on the live feed.
At 11:09 p.m. on July 29, security firm Rietta finished patching a state government client against CVE-2026-66066 , a remote code execution flaw in Ruby on Rails' ActiveStorage rated 9.5 on the CVSS scale. At 7:10 the next morning, eight hours and one minute later, the first exploit attempt hit tha…
Read the full story at DEV Community — AI ↗
Timeline · 1 report
- 2026-09-05 03:27 · DEV Community — AI
8 Hours After the Rails Patch, the Exploit Arrived