2026-08-03, Version 26.6.0 (Current), @aduh95
2026-08-05T08:51:51Z•a27e45ba0e39c484bd516781854a29064e3be2a7a443cf9c7a6fefbe2f8a0d39
CVE-2026-56846CVE-2026-56848CVE-2026-56850CVE-2026-58040CVE-2026-58041CVE-2026-58042CVE-2026-58043CVE-2026-58045CurrentDNSHTTP/2HTTPS/TLSJavaScript-runtimeLTSNode.jsSQLitepermissionssecurity-releasesoftware-updatezlib
What happened
Node.js release feed covering Current and LTS versions 26.6.0, 24.19.0, 26.5.1, 24.18.1, and 22.23.2. The July 29 security releases address multiple high- and medium-severity vulnerabilities affecting HTTP/2 resource handling, permission enforcement, HTTPS identity/session reuse, SQLite iterators, DNS response processing, and zlib buffer bounds. Earlier and later entries also include feature and maintenance updates.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- nodejs_node_releases
- Record identifier
- a27e45ba0e39c484bd516781854a29064e3be2a7a443cf9c7a6fefbe2f8a0d39
- Enrichment time
- 2026-08-05T08:51:51Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.