Ruby 2.5.8 Security Releases
Please consider upgrading Ruby to 2.5.8 in Alpine 3.8, 3.9 and 3.10. The currently shipped version is Ruby 2.5.7.
The released versions fixes several CVEs:
Ruby 2.5.8
- CVE-2020-16255: Unsafe Object Creation Vulnerability in JSON (Additional fix)
- CVE-2020-10933: Heap exposure vulnerability in the socket library
@ncopa FYI
Edited by Robert Pritzkow