Security News Rails patches critical Active Storage flaw with RCE potential BleepingComputer Daniel Bender 01 Aug 2026 Share A critical vulnerability in the Active Storage framework can allow an unauthenticated attacker to read arbitrary files from a Rails application, and potentially escalate to remote code execution (RCE).