From 6aca711858cc8d4b011384977c543d65ed17aeab Mon Sep 17 00:00:00 2001 From: Richard Lau Date: Mon, 13 Feb 2023 17:01:39 +0000 Subject: 2023-02-16, Version 14.21.3 'Fermium' (LTS) This is a security release. Notable changes: The following CVEs are fixed in this release: * CVE-2023-23918: Node.js Permissions policies can be bypassed via process.mainModule (High) * CVE-2023-23920: Node.js insecure loading of ICU data through ICU_DATA environment variable (Low) * OpenSSL 1.1.1t * npm 6.14.18 PR-URL: https://github.com/nodejs-private/node-private/pull/389 Refs: https://nodejs.org/en/blog/vulnerability/february-2023-security-releases --- CHANGELOG.md | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) (limited to 'CHANGELOG.md') diff --git a/CHANGELOG.md b/CHANGELOG.md index 794ba07b20..59845c84f1 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -99,7 +99,8 @@ release. 16.0.0
-14.21.2
+14.21.3
+14.21.2
14.21.1
14.21.0
14.20.1
-- cgit v1.2.1