PT-2025-40972 · Ruby · Ruby

Published

2025-10-07

·

Updated

2025-10-23

·

CVE-2025-61594

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Ruby versions prior to 3.4.7
Description The URI gem contained a flaw that allowed for credential leakage, bypassing previous fixes. This issue impacts systems utilizing the URI gem and could potentially expose sensitive information.
Recommendations Update to Ruby version 3.4.7 or later. Update the uri gem to the latest version.

Related Identifiers

CVE-2025-61594

Affected Products

Ruby