On Wed, Dec 28, 2011 at 7:51 AM, Thomas E Enebo <tom.enebo / gmail.com> wrote: >> JRuby 1.6.5.1 is a special release with a single patch applied to our >> JRuby 1.6.5 source to correct CERT vulnerability CERT-2011-003 >> (http://www.ocert.org/advisories/ocert-2011-003.html). ¨Âìì õóåòáò>> recommended to upgrade to JRuby 1.6.5.1 to get this security fix. if i run (the older) jruby w the -1.9 option, would i still be affected? thanks for the update -botp