Ruby
LanguageRuby 4.0 is the newest actively maintained release, currently at patch 4.0.6. 3 of 15 tracked cycles remain supported. The next cycle scheduled to reach end-of-life is 3.3, on March 31, 2027.
Support pattern
How Ruby has behaved across the cycles tracked here, rather than what its policy documents state. Useful for judging how much runway a version is likely to have before you commit to it.
Support windows have stayed consistent across the tracked history, so past cycles are a reasonable guide to what a new one will get.
Computed from release and end-of-life dates tracked for Ruby. Medians are used rather than averages so one unusually short or long release does not skew the figure. Cycles with no recorded end-of-life date are excluded from the support window.
How Ruby versioning, EOL & security support work
Ruby releases a new major or minor version annually, on December 25th, and tracks each branch's support status on its official branches page. Each branch moves through named phases, normal maintenance, then security maintenance, before being marked end of life.
Ruby vulnerabilities are reported privately, either through Ruby's HackerOne program or by email to [email protected], specifically not through the public bug tracker. The security team fixes confirmed issues, ships a patch release, and only then publishes details. Since fixes are only backported to branches still in normal or security maintenance, a branch already marked EOL receives nothing for any vulnerability found afterward.
Sources: Ruby Maintenance Branches, Ruby Security page
Release lifecycle
Get an email when Ruby ships a release, announces an end-of-life date, or moves a date it already announced.
Get Ruby alerts