ruby dependencies

  1. CVE-2026-35611 Addressable ReDoS: Availability Attack Risk in Ruby URI Templates

    CVE-2026-35611 is another reminder that availability bugs can be every bit as disruptive as code-execution flaws, especially when they live inside a widely reused dependency. Microsoft describes the issue as a regular expression denial of service in Addressable templates, warning that the...