News

RubyGems.org Funding Model & A New Path For Community-Led Growth
If you build with Ruby, join us in keeping RubyGems.org, RubyGems, and Bundler secure and sustainable for years to come. Contribute here or share this with your company leadership.
At Baltic Ruby in June, I delivered a keynote on building sustain...

Is It Ruby or Rails? Introducing Our New Discord Bot - FastRuby.io | Rails Upgrade Service
At FastRuby.io, we spend our days deep in Rails codebases, upgrading, refactoring, and occasionally wondering, “Wait… is this method from Ruby or Rails?”.
Now, we’re turning that moment of confusion into a game. We’re excited to introduce Is It R...



Bundler: Bundler v2.7: last release before Bundler 4
A major release of Bundler is finally happening, consolidating unreleased major changes that had been pending for a decade. It will be named Bundler 4 (skipping Bundler 3), so that we can release it in lockstep with RubyGems 4, making the version ...

Polyglot 1.10 - i18n_headers improvements · Polyglot
Jekyll-Polyglot 1.10 is now available. It has vast improvements and changes to the i18n_headers liquid plugin for SEO improvements, and minor adjustments for parallel build idempotency. Community Contributions and Vibe Coding helped with a large p...


CVE-2025-24294: Possible Denial of Service in resolv gem
A denial of service vulnerability has been discovered in the resolv gem bundled with Ruby. This vulnerability has been assigned the CVE identifier CVE-2025-24294. We recommend upgrading the resolv gem.
Details
The vulnerability is caused by an in...
