Actions
Patch #44303
closedUpdate Rails to 8.1.3.1
Description
Rails 8.1.3.1 has been released:
https://rubyonrails.org/2026/7/29/Rails-Versions-7-2-3-2-8-0-5-1-and-8-1-3-1-have-been-released
This version of Rails fixes CVE-2026-66066. Redmine is not affected by this vulnerability because it does not use Active Storage for attachments. However, we should still update Rails to 8.1.3.1 to stay up to date.
Related issues
Updated by Go MAEDA about 15 hours ago
- Copied to Patch #44304: Update Rails to 7.2.3.2 added
Updated by Go MAEDA about 15 hours ago
- Status changed from New to Resolved
- Assignee set to Go MAEDA
Updated Rails to 8.1.3.1 in r44303.
Updated by Go MAEDA about 15 hours ago
- Status changed from Resolved to Closed
Merged the change into 7.0-stable branch in r24874.
Updated by Go MAEDA about 14 hours ago
- Category changed from Gems support to Rails support
Actions