This is a security release. Notable changes: The following CVEs are fixed in this release: * CVE-2023-23918: Node.js Permissions policies can be bypassed via process.mainModule (High) * CVE-2023-23920: Node.js insecure loading of ICU data through ICU_DATA environment variable (Low) * OpenSSL 1.1.1t * npm 6.14.18 PR-URL: https://github.com/nodejs-private/node-private/pull/389 Refs: https://nodejs.org/en/blog/vulnerability/february-2023-security-releases |
||
|---|---|---|
| .. | ||
| api | ||
| api_assets | ||
| changelogs | ||
| guides | ||
| .eslintrc.yaml | ||
| abi_version_registry.json | ||
| first_timer_badge.png | ||
| full-white-stripe.jpg | ||
| node.1 | ||
| osx_installer_logo.png | ||
| template.html | ||
| thin-white-stripe.jpg | ||