Node.js v22.13.1 (LTS) has been released as a security update, addressing CVE-2025-23083, CVE-2025-23085, CVE-2025-23084, and CVE-2025-22150. These fixes include preventing path traversal in normalize() on Windows, addressing HTTP2 memory leaks, and improving permission models. The release includes updates to various binaries and source code for different platforms.

2m read timeFrom nodejs.org
Post cover image
Table of contents
Notable ChangesCommitsSHASUMS

Sort: