There is a serious vulnerability in Rails which is outlined here: Possible arbitrary file read and remote code execution in Active Storage variant processing
Roe was already fairly protected against this issue but this update puts further protections in place. It’s also available in v0.3.0-nightly.4 if you’re using the nightly builds.
If you download Roe 0.2.0, make sure to update to 0.2.1 in Admin → Updates & Deploy.
Full release notes and download here: https://codeberg.org/waotw/roe/releases/tag/v0.2.1