Is Ruby 1.9.3p551 patched?
Current stable (4.0.5): 100/100
1.9.3p551 has 11 open critical-or-high vulnerabilities. Run 2.7.7 or later to clear them. See what 2.7.7 fixes →
Summary iPlain-English security status for Ruby 1.9.3p551, built from its CVEs, active-exploitation data, end-of-life date and latest release.
Ruby 1.9.3p551 is part of the 1.9 release line. 16 known vulnerabilities affect it. The minimum safe version is 2.7.7 — upgrade to it or later to clear the open critical/high issues. The latest supported Ruby release is 4.0.5.
Known issues affecting 1.9.3p551
Exploited first, then by exploitation probability.
CVE-2021-28966 HIGH EPSS 58% → fixed in 3.0.1 CVE-2017-10784 HIGH EPSS 16% → see advisory CVE-2018-8780 CRITICAL EPSS 10% → fixed in 2.5.1 CVE-2017-14064 CRITICAL EPSS 9% → see advisory CVE-2017-9229 HIGH EPSS 5% → see advisory CVE-2021-28965 HIGH EPSS 5% → fixed in 3.0.1 CVE-2019-16254 MEDIUM EPSS 4% → see advisory CVE-2022-28739 HIGH EPSS 4% → fixed in 3.1.2 CVE-2020-25613 HIGH EPSS 4% → see advisory CVE-2015-9096 MEDIUM EPSS 4% → see advisory CVE-2017-9225 CRITICAL EPSS 3% → see advisory CVE-2021-31810 MEDIUM EPSS 3% → see advisory CVE-2021-41819 HIGH EPSS 3% → fixed in 3.0.3 CVE-2020-5247 MEDIUM EPSS 2% → see advisory CVE-2023-28756 MEDIUM EPSS 2% → see advisory CVE-2015-7551 HIGH EPSS 1% → see advisoryOther Ruby versions
Check another release line of Ruby.
Frequently asked
Is Ruby 1.9.3p551 patched?
Ruby 1.9.3p551 has 11 open critical-or-high vulnerabilities. The minimum safe version is 2.7.7 — upgrade to 2.7.7 or later to clear them.
What version should I upgrade Ruby 1.9.3p551 to?
Upgrade Ruby 1.9.3p551 to at least 2.7.7 to clear its 11 open critical-or-high vulnerabilities.
What is the latest version of Ruby?
The latest supported Ruby release is 4.0.5.
Is Ruby 1.9.3p551 still receiving security updates?
Yes — the 1.9 line is still supported and receiving security updates. The latest release is 4.0.5.
Informational only, from public data (NVD · CISA KEV · EPSS · endoflife.date), and can lag or miss vendor-specific fixes. Always confirm against Ruby's official advisory before you patch or upgrade — Ruby official site ↗