what stackpulse tracks
Node.js releases from GitHub
StackPulse watches Node.js release notes and keeps the original source link close to every summary.
JavaScript runtime built on Chrome’s V8 engine StackPulse turns upstream changelogs into scannable summaries with risky changes, deprecations, migration notes, and source links.
what stackpulse tracks
StackPulse watches Node.js release notes and keeps the original source link close to every summary.
upgrade risk
Risky changes are separated from normal feature notes so you can scan upgrade impact before changing production dependencies.
migration notes
Migration steps and recommended actions are only shown when the upstream release notes support them.
This release includes updates to dependencies such as OpenSSL, ICU, and npm, along with enhancements to Node-API for SharedArrayBuffer support. Security updates include root certificate updates and OpenSSL patches.
Developers using Node-API with SharedArrayBuffer or relying on updated dependencies like OpenSSL and npm are affected.
Update to version 22.23.3 to benefit from the latest security patches and features.
This release introduces several new features and improvements, including enhanced crypto functionality, new utility methods, and expanded support for file system and networking operations.
Developers using crypto, file system, networking, and performance monitoring features will benefit from the new functionalities.
Update to version 26.10.0 to take advantage of the new features and improvements.
This release introduces several new features including a generic MAC API, OpenSSL provider discovery for ciphers and hashes, and Web Workers support. It also enables the FFI module by default and adds new performance monitoring capabilities.
Developers using Node.js crypto, ffi, performance hooks, or workers may benefit from new APIs and features.
Review the new features and APIs to leverage improvements in crypto, performance monitoring, and worker threads.
This release includes updates to dependencies such as Undici and OpenSSL, along with deprecation notices and security posture refinements for experimental features.
Developers using `Server.prototype._listen2` in `node:net` are affected by its deprecation.
Update code to avoid using `Server.prototype._listen2` in `node:net`.
This release includes updates to OpenSSL and root certificates, along with several new features in the crypto, net, and util modules. Performance improvements and new capabilities in histogram handling are also notable.
Developers using Node.js for cryptographic operations or performance-sensitive applications may benefit from the updates.
Consider updating to take advantage of new features and security updates.
This is an out-of-band release to fix an issue where `node --version` incorrectly reported an alpha version in v26.8.0.
Users who installed Node.js v26.8.0 and saw an incorrect alpha version reported by `node --version` are affected.
Update to Node.js v26.8.1 if you encountered incorrect version reporting in v26.8.0.
This release introduces several new features and improvements, including enhanced crypto APIs, performance optimizations, and new benchmarking tools. Notable changes include the addition of SIV and GCM-SIV modes in the Cipher/Decipher APIs, improved histogram implementation, and syntax highlighting in the REPL.
Developers using cryptographic APIs, SQLite, or REPL will benefit from new features and improvements.
Update to version 26.8.0 to take advantage of new features and security updates.
This release introduces several new features and improvements, including enhancements to `AsyncLocalStorage`, `Buffer`, and `crypto` modules. It also adds new capabilities to the `test_runner` and `wasm` modules, alongside updates to root certificates.
Developers using `AsyncLocalStorage`, `Buffer`, `crypto`, `test_runner`, and `wasm` modules will benefit from new features and improvements.
Update to version 24.20.0 to take advantage of new features and security updates.
This release introduces several notable changes, including support for loading private keys through STORE loaders in the crypto module, the addition of Perfetto support for tracing, and updates to root certificates. It also includes minor improvements and bug fixes across various modules.
Developers using the crypto module, tracing, or the test runner may be affected by the new features and updates.
Review the release notes and update your code to leverage new features and improvements.
This release introduces minor enhancements to the FFI and test runner modules, along with various bug fixes and documentation updates.
Developers using the FFI and test runner modules may benefit from the new features.
Update to version 26.6.0 to utilize the new features and improvements.
Node.js v24.19.0 introduces several new features including `blob.textStream()` for buffers, experimental ESM import text flag, and enhanced TCP keep-alive options. The release also includes stability updates for various modules and performance improvements.
Developers using Node.js may benefit from new features like `blob.textStream()` and improved TLS support, but no breaking changes are introduced.
Consider updating to take advantage of new features and improvements.
This is a critical security release addressing multiple vulnerabilities in HTTP/2, HTTPS, DNS, SQLite, and permission systems. The update includes 12 security fixes with varying severity levels.
Users of Node.js HTTP/2, HTTPS, DNS, SQLite, and permission systems are affected by security vulnerabilities.
Upgrade to Node.js v24.18.1 immediately to patch multiple security vulnerabilities.
This is a critical security release addressing multiple vulnerabilities in HTTP/2, HTTPS, permissions, DNS, SQLite and zlib components. The update includes 11 security fixes with varying severity levels.
All users of Node.js v26.x are affected by multiple security vulnerabilities across HTTP/2, HTTPS, DNS, permissions, SQLite, and zlib modules.
Upgrade to Node.js v26.5.1 immediately to patch multiple security vulnerabilities.
This is a security-focused release addressing multiple vulnerabilities across HTTP/2, HTTPS, DNS, permissions, and zlib modules. The update includes critical fixes for memory handling, session reuse, and permission enforcement.
Users relying on HTTP/2, HTTPS, DNS, permissions, or zlib functionality are affected by these security vulnerabilities.
Upgrade to version 22.23.2 immediately to mitigate security risks.
This release introduces new experimental features including blob.textStream() and ReadableStreamTee, along with performance improvements for buffer operations and TLS group reporting.
Developers using buffer, ESM, stream, perf_hooks, or tls modules may benefit from the new features and improvements.
Update to Node.js v26.5.0 to leverage new features and performance improvements.
This release introduces several enhancements including support for caller-supplied buffers in fs.readFile(), package maps in the loader, and new TCP keepalive options. It also adds a minimal node:vfs subsystem and dispatches node:fs/promises to mounted VFS instances.
Developers using fs, net, tls, or loader modules may benefit from the new features.
Consider updating to take advantage of new features and improvements.
This release introduces several notable changes, including updates to root certificates, enhancements to the HTTP and crypto modules, and improvements to buffer handling. It also adds new Web Cryptography algorithms and increases the default Buffer.poolSize.
Developers using the crypto, buffer, and HTTP modules may be affected by the changes.
Review the changes and update your code as necessary to leverage new features and ensure compatibility.
This release addresses an unexpected behavior introduced by the recent security release (22.23.0), focusing on build and HTTP improvements.
Users affected by the unexpected behavior in the previous security release (22.23.0) should update.
Upgrade to version 22.23.1 to resolve the unexpected behavior.
Security release addressing multiple CVEs affecting TLS, crypto, http2, dns, and permission systems.
All users using Node.js's TLS, crypto, http2, dns, or permission features are affected and should upgrade immediately.
Upgrade to Node.js v26.3.1 immediately to mitigate security vulnerabilities.
This release primarily focuses on addressing multiple security vulnerabilities across various modules, including TLS, crypto, HTTP/2, and DNS. It includes fixes for issues such as hostname normalization, WebCrypto cipher output length, and memory growth prevention in HTTP/2.
Users relying on TLS, crypto, HTTP/2, DNS, and permission modules are affected by these security fixes.
Upgrade to Node.js v24.17.0 to mitigate the identified security vulnerabilities.