Government Rails Site Hit Hours After CVE Patch
Summary
Rietta reports patching a government Ruby on Rails ActiveStorage CVE-2026-66066 within hours, with a CVSS 9.5 score and rapid exploitation attempts. The article covers patching workflows, embargo timeline, attack patterns, and practical defense advice for regulated environments, plus Rietta's Rails security expertise.