Debian Package Tracker
Register | Log in
Subscribe

ruby-graphql

GraphQL language and runtime for Ruby

Choose email to subscribe with

general
  • source: ruby-graphql (main)
  • version: 2.2.17-1
  • maintainer: Debian Ruby Team (archive) (DMD)
  • uploaders: Pirate Praveen [DMD]
  • arch: all
  • std-ver: 4.6.2
  • VCS: Git (Browse, QA)
versions [more versions can be listed by madison] [old versions available from snapshot.debian.org]
[pool directory]
  • o-o-stable: 1.8.4-1
  • oldstable: 1.11.4-1
  • stable: 1.13.15-1
  • testing: 2.2.17-1
  • unstable: 2.2.17-1
versioned links
  • 1.8.4-1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 1.11.4-1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 1.13.15-1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 2.2.17-1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
binaries
  • ruby-graphql
action needed
A new upstream version is available: 2.5.8 high
A new upstream version 2.5.8 is available, you should consider packaging it.
Created: 2021-11-20 Last update: 2025-06-09 12:30
1 security issue in bullseye high

There is 1 open security issue in bullseye.

1 important issue:
  • CVE-2025-27407: graphql-ruby is a Ruby implementation of GraphQL. Starting in version 1.11.5 and prior to versions 1.11.8, 1.12.25, 1.13.24, 2.0.32, 2.1.14, 2.2.17, and 2.3.21, loading a malicious schema definition in `GraphQL::Schema.from_introspection` (or `GraphQL::Schema::Loader.load`) can result in remote code execution. Any system which loads a schema by JSON from an untrusted source is vulnerable, including those that use GraphQL::Client to load external schemas via GraphQL introspection. Versions 1.11.8, 1.12.25, 1.13.24, 2.0.32, 2.1.14, 2.2.17, and 2.3.21 contain a patch for the issue.
Created: 2025-03-13 Last update: 2025-04-12 04:30
1 security issue in bookworm high

There is 1 open security issue in bookworm.

1 important issue:
  • CVE-2025-27407: graphql-ruby is a Ruby implementation of GraphQL. Starting in version 1.11.5 and prior to versions 1.11.8, 1.12.25, 1.13.24, 2.0.32, 2.1.14, 2.2.17, and 2.3.21, loading a malicious schema definition in `GraphQL::Schema.from_introspection` (or `GraphQL::Schema::Loader.load`) can result in remote code execution. Any system which loads a schema by JSON from an untrusted source is vulnerable, including those that use GraphQL::Client to load external schemas via GraphQL introspection. Versions 1.11.8, 1.12.25, 1.13.24, 2.0.32, 2.1.14, 2.2.17, and 2.3.21 contain a patch for the issue.
Created: 2025-03-13 Last update: 2025-04-12 04:30
lintian reports 7 warnings normal
Lintian reports 7 warnings about this package. You should make the package lintian clean getting rid of them.
Created: 2025-04-10 Last update: 2025-04-10 00:32
Standards version of the package is outdated. wishlist
The package should be updated to follow the last version of Debian Policy (Standards-Version 4.7.2 instead of 4.6.2).
Created: 2024-04-07 Last update: 2025-04-07 07:24
news
[rss feed]
  • [2025-04-12] ruby-graphql 2.2.17-1 MIGRATED to testing (Debian testing watch)
  • [2025-04-06] Accepted ruby-graphql 2.2.17-1 (source) into unstable (Samuel Henrique)
  • [2024-02-14] ruby-graphql 2.2.5-3 MIGRATED to testing (Debian testing watch)
  • [2024-02-04] Accepted ruby-graphql 2.2.5-3 (source) into unstable (Pirate Praveen) (signed by: Praveen Arimbrathodiyil)
  • [2024-01-16] Accepted ruby-graphql 2.2.5-2 (source) into experimental (Pirate Praveen) (signed by: Praveen Arimbrathodiyil)
  • [2024-01-15] Accepted ruby-graphql 2.2.5-1 (source) into experimental (Pirate Praveen) (signed by: Praveen Arimbrathodiyil)
  • [2023-12-21] ruby-graphql 1.13.20-1 MIGRATED to testing (Debian testing watch)
  • [2023-12-15] Accepted ruby-graphql 1.13.20-1 (source) into unstable (Pirate Praveen) (signed by: Praveen Arimbrathodiyil)
  • [2022-08-21] ruby-graphql 1.13.15-1 MIGRATED to testing (Debian testing watch)
  • [2022-08-15] Accepted ruby-graphql 1.13.15-1 (source) into unstable (Vivek K J) (signed by: Praveen Arimbrathodiyil)
  • [2021-12-13] ruby-graphql 1.11.10-1 MIGRATED to testing (Debian testing watch)
  • [2021-12-07] Accepted ruby-graphql 1.11.10-1 (source) into unstable (Pirate Praveen) (signed by: Praveen Arimbrathodiyil)
  • [2021-11-25] ruby-graphql 1.11.8-3 MIGRATED to testing (Debian testing watch)
  • [2021-11-19] Accepted ruby-graphql 1.11.8-3 (source) into unstable (Daniel Leidert)
  • [2021-11-02] ruby-graphql 1.11.8-2 MIGRATED to testing (Debian testing watch)
  • [2021-08-31] Accepted ruby-graphql 1.11.8-2 (source) into unstable (Pirate Praveen) (signed by: Praveen Arimbrathodiyil)
  • [2021-04-17] Accepted ruby-graphql 1.11.8-1 (source) into experimental (Abraham Raji) (signed by: Praveen Arimbrathodiyil)
  • [2020-12-04] Accepted ruby-graphql 1.11.4-1~bpo10+1 (source all) into buster-backports (Pirate Praveen) (signed by: Praveen Arimbrathodiyil)
  • [2020-12-02] ruby-graphql 1.11.4-1 MIGRATED to testing (Debian testing watch)
  • [2020-11-26] Accepted ruby-graphql 1.11.4-1 (source) into unstable (Abraham Raji) (signed by: Sruthi Chandran)
  • [2020-04-28] Accepted ruby-graphql 1.10.7-2~bpo10+1 (source all) into buster-backports (Pirate Praveen) (signed by: Praveen Arimbrathodiyil)
  • [2020-04-28] ruby-graphql 1.10.7-2 MIGRATED to testing (Debian testing watch)
  • [2020-04-23] Accepted ruby-graphql 1.10.7-2 (source) into unstable (Pirate Praveen) (signed by: Praveen Arimbrathodiyil)
  • [2020-04-19] Accepted ruby-graphql 1.10.7-1 (source) into experimental (Pirate Praveen) (signed by: Praveen Arimbrathodiyil)
  • [2020-04-10] Accepted ruby-graphql 1.9.19-1~bpo10+1 (source all) into buster-backports (Pirate Praveen) (signed by: Praveen Arimbrathodiyil)
  • [2020-03-04] ruby-graphql 1.9.19-1 MIGRATED to testing (Debian testing watch)
  • [2020-02-27] Accepted ruby-graphql 1.9.19-1 (source) into unstable (Daniel Leidert)
  • [2020-02-27] Accepted ruby-graphql 1.10.3-1 (source) into experimental (Daniel Leidert)
  • [2019-12-20] Accepted ruby-graphql 1.9.16-1~bpo10+1 (source all) into buster-backports, buster-backports (Pirate Praveen) (signed by: Praveen Arimbrathodiyil)
  • [2019-12-06] ruby-graphql 1.9.16-1 MIGRATED to testing (Debian testing watch)
  • 1
  • 2
bugs [bug history graph]
  • all: 0
links
  • homepage
  • lintian (0, 7)
  • buildd: logs, reproducibility
  • popcon
  • browse source code
  • edit tags
  • other distros
  • security tracker
  • screenshots
  • debci
ubuntu Ubuntu logo [Information about Ubuntu for Debian Developers]
  • version: 2.2.17-1

Debian Package Tracker — Copyright 2013-2025 The Distro Tracker Developers
Report problems to the tracker.debian.org pseudo-package in the Debian BTS.
Documentation — Bugs — Git Repository — Contributing