All 3 CVE vulnerabilities found in concurrent-ruby, with AI-generated Chinese analysis, references, and POCs.
Vendor: ruby-concurrency
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-54906 | concurrent-ruby: ReadWriteLock allows wrong-thread write release and stray read-release counter corruption CWE-414 | - | - | 2026-06-24 |
| CVE-2026-54904 | concurrent-ruby: `AtomicReference#update` livelocks when the stored value is `Float::NAN` CWE-835 | 8.2 | High | 2026-06-24 |
| CVE-2026-54905 | concurrent-ruby: `ReentrantReadWriteLock` read-count overflow grants a write lock without exclusivity CWE-128 | - | - | 2026-06-24 |
All 3 known CVE vulnerabilities affecting concurrent-ruby with full Chinese analysis, references, and POCs where available.