I'd reeeaally like to see a second group of dedicated maintainers that are more concerned about security to step up to the plate, fast. The guys behind Ronin are doing great, but they are really just 2 guys battling against a community which have a track record of producing a code base that has had 8 code execution and 8 SQL injection vulnerabilities so far.
http://www.cvedetails.com/product/22569/Rubyonrails-Rails.ht...
http://www.cvedetails.com/product/22568/Rubyonrails-Ruby-On-...