A use-after-free vulnerability has been discovered in the pthread-based getaddrinfo timeout handler of Ruby. This vulnerability has been assigned the CVE identifier CVE-2026-46727 . This issue has been fixed in Ruby 4.0.5.
CVE-2026-46727: Use-after-free in pthread-based getaddrinfo timeout handler
calendar_today
May 20, 2026
domain
ruby