Skip to content

Conversation

@jasnow
Copy link
Contributor

@jasnow jasnow commented Oct 7, 2025

1 brand new advisory: gems/uri/CVE-2025-61594.yml (based on ruby-lang post)

@postmodern postmodern merged commit 190de50 into rubysec:master Oct 7, 2025
1 check passed
@hudakh
Copy link

hudakh commented Oct 27, 2025

I'm new to this so sorry if this sounds obvious. Should this not be added to rubies as well? Some ruby versions would have the vulnerable version of the gem bundled.

https://www.ruby-lang.org/en/news/2025/10/23/ruby-3-3-10-released/

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants