CyberSecurityBoardThreat Intel · CVEs · Products

Tag: CVE-2026-66066

Cyber Companies

Ethiack: Cybersecurity Research Firm

Ethiack is a cybersecurity research firm credited with independently reporting CVE-2026-66066 to the Ruby on Rails team. Researchers André Baptista, Bruno Mendes,…

CVE-2026-66066 Ethiack vulnerability research
July 29, 2026
Cyber Companies

GMO Flatt Security: Cybersecurity Company

GMO Flatt Security is a cybersecurity company that independently reported CVE-2026-66066. Researcher RyotaK was credited for the discovery.

CVE-2026-66066 GMO Flatt Security vulnerability research
July 29, 2026
Cyber Products

Ruby on Rails: Web Application Framework

Ruby on Rails is an open-source web application framework. A critical vulnerability in its Active Storage component, CVE-2026-66066, allows unauthenticated file reads…

Active Storage CVE-2026-66066 Ruby on Rails web framework
July 29, 2026
Cyber Products

libvips: Image Processing Library

libvips is an image processing library used by Active Storage. Versions prior to 8.13 are vulnerable to CVE-2026-66066, which allows unsafe operations…

CVE-2026-66066 image processing libvips vulnerability
July 29, 2026
Cyber Products

ruby-vips: Ruby Binding for libvips

ruby-vips is the Ruby binding for the libvips image processing library. Version 2.2.1 or later is required to mitigate CVE-2026-66066 by calling…

CVE-2026-66066 libvips Ruby ruby-vips
July 29, 2026