Rails LTS has been conceived as a drop-in replacement for Rails 2.3, 3.2, and 4.2. However, we do recommend...
Please choose a guide for your version of Ruby on Rails: Installing Rails 2.3 LTS Installing Rails 3.2 LTS
This document describes how to swap out the official Rails 2.3 gems with Rails 2.3 LTS. If you have installed...
This document describes install Rails 2.3 LTS when you are not using Bundler and you do not want to upgrade...
This document describes how to swap out the official Rails 3.2 gems with Rails 3.2 LTS. If you have installed...
This document describes how to swap out the official Rails 4.2 gems with Rails 4.2 LTS. If you have installed...
This document describes how to swap out the official Rails 5.2 gems with Rails 5.2 LTS. If you have installed...
This document describes how to swap out the official Rails 6.1 gems with Rails 6.1 LTS. If you have installed...
This document describes how to configure Rails LTS and how to take advantage of its optional security features.
This document assumes you have installed Rails LTS before and want to update to a new version of the Rails...
Rails 3.2 LTS, 4.2 LTS, 5.2 LTS Run the following command: bundle show rails This will display the path of...
Starting with Rails LTS 2.3.18.19, it is possible to run Rails LTS with modern versions of RubyGems (2.6.13 at the...
We use a mailing list to inform customers about security vulnerabilities and new releases of Rails LTS. You can subscribe...
When running bundle install --verbose on Bundler versions 1.12+, you might see errors of the form HTTP 403 Forbidden https://...
Please choose a Changelog for your version of Ruby on Rails: Rails 2.3 LTS Changelog Rails 3.2 LTS Changelog
August 14th 2025, Rails version 2.3.18.60 Backported fixes for two vulnerabilies. Read the announcement. This includes: Dangerous transformation methods in...
August 14th 2025, Rails version 3.2.22.50 Backported fixes for two vulnerabilies. Read the announcement. This includes: Dangerous transformation methods in...
August 14th 2025, Rails version 4.2.11.40 Backported fixes for two vulnerabilies. Read the announcement. This includes: Dangerous transformation methods in...
August 14th 2025, Rails version 5.2.8.33 Backported fixes for two vulnerabilies. Read the announcement. This includes: Dangerous transformation methods in...
August 14th 2025, Rails version 6.1.7.29 Backported fixes for two vulnerabilies. Read the announcement. This includes: Dangerous transformation methods in...
This is a list of known CVEs relevant for Rails LTS 2.3+. All CVEs are fixed in all versions of...
Rails 2.3 and 3.2 LTS use ActionDispatch::Http::ParamsHashWithIndifferentAccess to represent params hashes, similar to Rails 5's ActionController::Parameters...
Rails LTS (<= 4.2) contains a fix for CVE-2021-22885, but this includes a breaking change you can opt out...
Rails LTS is a service of makandra, a team of Ruby developers and Linux system engineers based in Germany. We...