> On March 26, 2019, a malicious version of the popular bootstrap-sass package, that has been downloaded a total of 28 million times to date, was published to the official RubyGems repository. Version
3.2.0.3 includes a stealthy backdoor that gives attackers remote command execution on server-side Rails applications.