packages/lang
Hirokazu MORIKAWA a8b6b3b551 node: bump to 22.23.2
This is a security release.
Notable Changes
* (CVE-2026-56846) http2: retain header memory in session accounting (Matteo Collina) – High
* (CVE-2026-56848) http2: defer rst stream while in scope (Matteo Collina) – High
* (CVE-2026-58043) permission: avoid granting radix split nodes (RafaelGSS) – High
* (CVE-2026-56850) https: distinguish PFX object-array agent keys (RafaelGSS) – Medium
* (CVE-2026-58040) https: bind identity checks to session reuse (Matteo Collina) – Medium
* (CVE-2026-58042) dns: handle large resolveAny address replies (RafaelGSS) – Medium
* (CVE-2026-58045) zlib: throw on out-of-bounds write buffers (RafaelGSS) – Medium
* (CVE-2026-56847) permission: enforce fs write permission for trace events (RafaelGSS) – Low
* (CVE-2026-58039) permission: check final report output path (RafaelGSS) – Low
* (CVE-2026-58044) http: reject requests exceeding max header count (Matteo Collina) – Low
* deps: update llhttp to 9.4.3 (Paolo Insogna)
* deps: update undici to 6.28.0 (Node.js GitHub Bot)

Signed-off-by: Hirokazu MORIKAWA <morikw2@gmail.com>
2026-08-02 09:35:26 +02:00
..
chicken-scheme
erlang erlang: fix PKG_CPE_ID escaping for apk ADB format 2026-05-24 15:57:57 +03:00
golang golang: bump 1.26 to 1.26.5 2026-07-12 20:58:26 +02:00
lua luasec: add Lua 5.4 variant 2026-07-31 09:46:08 +03:00
node node: bump to 22.23.2 2026-08-02 09:35:26 +02:00
node-javascript-obfuscator
node-yarn
perl tree-wide: remove redundant test.sh files 2026-07-04 23:42:46 +03:00
php8 php8: update to 8.4.23 2026-07-13 21:54:20 +02:00
php8-pecl-dio
php8-pecl-http
php8-pecl-imagick
php8-pecl-krb5
php8-pecl-raphf
php8-pecl-redis
php8-pecl-xdebug
python python-certifi: update to 2026.7.22 2026-07-27 09:35:43 +03:00
quickjs quickjs: add basic evaluation test 2026-06-09 01:19:46 +03:00
ruby
rust rust: fix host build on x64 Darwin 2026-06-09 14:28:34 +02:00
tcl
vala vala: update to 0.56.19 2026-06-03 13:06:55 +03:00