The go-to resource for upgrading Ruby, Rails, and your dependencies.
Learn about CVE-2008-3657, a critical vulnerability in Ruby 1.8 and 1.9 where missing taint checks in the DL module allowed attackers to bypass $SAFE levels and achieve remote code execution.
Mar 15, 2026