chore(deps): update node.js to v24 - #285
Conversation
|
Note Reviews pausedIt looks like this branch is under active development. To avoid overwhelming you with review comments due to an influx of new commits, CodeRabbit has automatically paused this review. You can configure this behavior by changing the Use the following commands to manage reviews:
Use the checkboxes below for quick actions:
📝 WalkthroughWalkthroughTwo 🚥 Pre-merge checks | ✅ 3✅ Passed checks (3 passed)
Comment |
Codecov Report✅ All modified and coverable lines are covered by tests. Additional details and impacted files@@ Coverage Diff @@
## main #285 +/- ##
===========================
===========================
🚀 New features to boost your workflow:
|
5f1f9fe to
580252b
Compare
There was a problem hiding this comment.
Actionable comments posted: 1
🤖 Fix all issues with AI agents
In @.nvmrc:
- Line 1: The Node.js version was bumped to 24.12.0 which is a major jump with
breaking changes; run the full test suite under Node 24, rebuild native modules
(npm rebuild / yarn rebuild), and verify package.json for native dependencies
(node-gyp, sqlite3, bcrypt, etc.), then test crypto/TLS paths and API
usage—search code for deprecated/removed APIs such as url.parse, SlowBuffer,
fs.truncate(fd), tls.createSecurePair and update to supported alternatives;
ensure any native addon is rebuilt and CI uses Node 24 before merging.
📜 Review details
Configuration used: Organization UI
Review profile: ASSERTIVE
Plan: Pro
Disabled knowledge base sources:
- Linear integration is disabled by default for public repositories
You can enable these sources in your CodeRabbit configuration.
📒 Files selected for processing (2)
.nvmrcsrc/test/vscode-notebook-perf/.nvmrc
🔇 Additional comments (1)
src/test/vscode-notebook-perf/.nvmrc (1)
1-1: Consistent with root.nvmrc.Both files updated together—ensures test environment matches project runtime.
6709a85 to
fe87eca
Compare
There was a problem hiding this comment.
Actionable comments posted: 1
🤖 Fix all issues with AI agents
In @.nvmrc:
- Line 1: Replace the invalid Node version in .nvmrc from "24.13.0" to the
actual latest "24.12.0", then update package.json to ensure @types/node aligns
(change any pinned or careted node types version to ^22.15.1 if you want Node 24
compatibility) and edit CONTRIBUTING.md to replace any references to "22.15.1"
so all files (.nvmrc, package.json, CONTRIBUTING.md) consistently reference the
corrected versions; update the version strings exactly where they appear (look
for the literal "24.13.0" in .nvmrc, "@types/node" dependency entry in
package.json, and the node version mention in CONTRIBUTING.md).
📜 Review details
Configuration used: Organization UI
Review profile: ASSERTIVE
Plan: Pro
Disabled knowledge base sources:
- Linear integration is disabled by default for public repositories
You can enable these sources in your CodeRabbit configuration.
📒 Files selected for processing (2)
.nvmrcsrc/test/vscode-notebook-perf/.nvmrc
⏰ Context from checks skipped due to timeout of 90000ms. You can increase the timeout in your CodeRabbit configuration to a maximum of 15 minutes (900000ms). (1)
- GitHub Check: Build & Test
🔇 Additional comments (1)
src/test/vscode-notebook-perf/.nvmrc (1)
1-1: Consistent with root.nvmrcupdate.Test environment matches the root configuration. Ensure this version is validated (see root
.nvmrcverification).
ccc075e to
a492c6c
Compare
There was a problem hiding this comment.
Actionable comments posted: 1
🤖 Fix all issues with AI agents
In @.nvmrc:
- Line 1: Update the `@types/node` versions to match Node.js 24: change the root
package.json dependency "@types/node" from "^22.15.1" to "^24.x" and update the
test package's "@types/node" from "^18.15.0" to "^24.x"; run npm install (or
yarn) and then rebuild/typecheck to ensure no type errors, and update any
lockfile (package-lock.json / yarn.lock) accordingly.
📜 Review details
Configuration used: Organization UI
Review profile: ASSERTIVE
Plan: Pro
Disabled knowledge base sources:
- Linear integration is disabled by default for public repositories
You can enable these sources in your CodeRabbit configuration.
📒 Files selected for processing (2)
.nvmrcsrc/test/vscode-notebook-perf/.nvmrc
⏰ Context from checks skipped due to timeout of 90000ms. You can increase the timeout in your CodeRabbit configuration to a maximum of 15 minutes (900000ms). (2)
- GitHub Check: Audit - Production
- GitHub Check: Build & Test
🔇 Additional comments (1)
src/test/vscode-notebook-perf/.nvmrc (1)
1-1: Consistent with root.nvmrc.Test fixture aligned correctly.
✏️ Tip: You can disable this entire section by setting review_details to false in your review settings.
a492c6c to
2537816
Compare
There was a problem hiding this comment.
Actionable comments posted: 1
🤖 Fix all issues with AI agents
In `@src/test/vscode-notebook-perf/.nvmrc`:
- Line 1: The .nvmrc bump to "24.13.0" requires validating the test environment:
switch to Node 24 (per .nvmrc), run a clean install (npm ci or yarn install
--frozen-lockfile), rebuild native modules (npm rebuild --update-binary or
rebuild node-gyp modules) and recompile any native addons, then run the full
test suite (npm test / yarn test) and CI pipeline to catch OpenSSL/V8-related
breakages; if tests fail due to weak keys or OpenSSL errors, update or
regenerate TLS keys/certs and adjust any native module build flags or dependency
versions accordingly.
♻️ Duplicate comments (1)
.nvmrc (1)
1-1: Past migration concerns still apply.The version bump is correct, but the breaking changes, native module rebuilds, and
@types/nodeversion mismatch flagged in earlier reviews remain unaddressed. Verify these before merging.
4ff660e to
fd507b7
Compare
4f95b23 to
12f9535
Compare
There was a problem hiding this comment.
Actionable comments posted: 1
🤖 Fix all issues with AI agents
In @.nvmrc:
- Line 1: Update TypeScript Node type definitions to match the Node version in
.nvmrc: bump the root package.json dependency "@types/node" from ^22.15.1 to a
^24.x range, and also update the test environment dependency in
src/test/vscode-notebook-perf/package.json from ^18.15.0 to a compatible ^24.x
version; run npm/yarn install and adjust any type-specific code or tsconfig
settings if type errors appear after upgrading.
12f9535 to
8d81d2d
Compare
fdb4432 to
989c2d6
Compare
dd3cbb5 to
1d75b96
Compare
1818781 to
89f586e
Compare
9a431c3 to
ad3a484
Compare
b01a5fb to
d68e1a6
Compare
0175bcc to
03ae6b2
Compare
ed8cb6a to
b28f1c1
Compare
b28f1c1 to
ecefb08
Compare
This PR contains the following updates:
22.21.1→24.19.0Release Notes
nodejs/node (node)
v24.19.0: 2026-08-03, Version 24.19.0 'Krypton' (LTS), @aduh95Compare Source
Notable Changes
d08872b530] - (SEMVER-MINOR) buffer: implementblob.textStream()(Matthew Aitken) #6403635222948be] - (SEMVER-MINOR) deps: update OpenSSL build config to support compression (Tim Perry) #62217d6ab039f24] - (SEMVER-MINOR) doc: updateblockListstability status to release candidate (alphaleadership) #630501da05fb79d] - doc: markstream.composestable (Matteo Collina) #625623c1636dabf] - (SEMVER-MINOR) esm: add--experimental-import-textflag (Efe) #62300e323e877be] - (SEMVER-MINOR) fs: support caller-suppliedreadFile()buffers (Matteo Collina) #63634c1248c9544] - (SEMVER-MINOR) http: addhttpValidationoption to configure header value validation (RajeshKumar11) #61597a534b65815] - (SEMVER-MINOR) net: supportTCP_KEEPINTVLandTCP_KEEPCNTinsetKeepAlive(Guy Bedford) #63825a23cdec683] - (SEMVER-MINOR) perf_hooks: sample delay per event loop iteration (Pablo Erhard) #629357428b57a37] - (SEMVER-MINOR) src: allow empty--experimental-config-file(Marco Ippolito) #61610e57597173c] - (SEMVER-MINOR) stream: exposeReadableStreamTee(Matteo Collina) #641955396235993] - (SEMVER-MINOR) tls: report negotiated TLS groups (Filip Skokan) #641195e901b5cd9] - (SEMVER-MINOR) tls: addcertificateCompressionoption (Tim Perry) #62217Commits
676467fa9f] - benchmark: trim down the argon2 sets (Filip Skokan) #64218a77a2000b7] - benchmark: add child_process async path baselines (Yagiz Nizipli) #63929dd4482e915] - buffer: remove unreachable overflow check in atob (haramjeong) #60161081c41eb86] - buffer: add fast api for isUtf8 and isAscii (Gürgün Dayıoğlu) #64169d08872b530] - (SEMVER-MINOR) buffer: implement blob.textStream() (Matthew Aitken) #640366e2f7e6013] - build: remove redundant intermediate node_aix_shared (Chengzhong Wu) #6374787e0675f51] - build: build codecache and snapshot with libnode (Chengzhong Wu) #6362632174a7bae] - build: support setting an emulator from configure script (Ivan Trubach) #5389969cfb2f240] - build: remove duplicated node_use_sqlite and node_use_ffi conditions (Chengzhong Wu) #6362937ac6e8cb5] - build: add manually-dispatched stress-test workflow (Joyee Cheung) #641182424207191] - build: suppress compiler warnings for histogram (Richard Lau) #6398063502b7404] - build,win: fix VS2022 arm64 PGO build (Stefan Stojanovic) #63413fe4e4055d0] - child_process: fix permission model propagation via NODE_OPTIONS (Matteo Collina) #63972aa2f3c066e] - child_process: pass spawn options to the binding positionally (Yagiz Nizipli) #63930fcf32cf77a] - child_process: serialize advanced IPC messages natively (Yagiz Nizipli) #639337907134734] - crypto: reject small-order EdDSA points during verify (Filip Skokan) #64026b505cd5465] - crypto: support non-byte WebCrypto lengths and cSHAKE (Filip Skokan) #639880f54a872e2] - crypto: share WebCrypto method and usage helpers (Filip Skokan) #63975824ec11c05] - crypto: refactor keyObject.toCryptoKey() and SubtleCrypto.getPublicKey() (Filip Skokan) #6362273aba92689] - crypto: coerce -0 to +0 before native calls (Filip Skokan) #63556c83b79874e] - crypto: reject invalid raw key imports (Filip Skokan) #63134934fda64b9] - crypto: improve accuracy of SubtleCrypto.supports (Filip Skokan) #63104e392e1f791] - crypto: fix large DH generator validation (Tobias Nießen) #64092e75a363e70] - crypto: use EVP_MAC for HMAC on OpenSSL >=3 (Filip Skokan) #63942adbaf7af9b] - crypto: make webcrypto aliasKeyFormat directional (Filip Skokan) #63910bb1aea8897] - crypto: fix unhandled error in Hash._transform (Haram Jeong) #6326112c87732c1] - crypto: handle cipher context allocation failures (Tian Teng) #63542858496b453] - crypto: deduplicate X509 subject matching logic (Tobias Nießen) #636449a29cb0964] - crypto: fix warnings in test_node_crypto.cc (Maya Lekova) #634908bb536066d] - crypto: optimize normalizeAlgorithm dispatch hot path (Filip Skokan) #62756329e5496ff] - crypto,tls: do not ignore BN_get_word error (Tobias Nießen) #6389597b7a3f9c7] - debugger: add --max-hit option to probe mode (Joyee Cheung) #637049098585c5e] - debugger: add more logs to probe mode (Joyee Cheung) #6366359cca26cd5] - debugger: surface inspector failures in probe mode (Joyee Cheung) #634372922290eae] - debugger: disambiguate probe location binding (Joyee Cheung) #632866fb2c2c7e2] - debugger: lazily wait for initial break output (Trivikram Kamat) #63969688e792551] - debugger: defer probe pause handling until startup (Trivikram Kamat) #636081ac93cc05a] - debugger: await initialization after run and restart (Trivikram Kamat) #6360792a909cf72] - debugger,test: deflake resume failure test and add debug logs (Joyee Cheung) #635248b37af8b11] - deps: V8: backportbef0d9c(Joyee Cheung) #621328832126422] - deps: V8: cherry-pick64b36b4(Dan Carney) #6171275990c2cd6] - deps: update googletest to8b53336(Node.js GitHub Bot) #641818500c7ba86] - deps: update sqlite to 3.53.3 (Node.js GitHub Bot) #64180dc78091b45] - deps: c-ares: cherry-pick8ba37af(René) #64110873cc72125] - deps: update googletest to0b1e895(Node.js GitHub Bot) #640391d3d166538] - deps: update acorn to 8.17.0 (Node.js GitHub Bot) #6390135222948be] - (SEMVER-MINOR) deps: update OpenSSL build config to support compression (Tim Perry) #62217e40cee5f79] - deps: upgrade npm to 11.17.0 (npm team) #6385785c6d46606] - deps: add ngtcp2_fmt.c to build configuration (ngtcp2.gyp) (沈鸿飞) #63821d2ea8b7a8c] - deps: update googletest to7140cd4(Node.js GitHub Bot) #6377525b4d57bb6] - deps: update sqlite to 3.53.2 (Node.js GitHub Bot) #63774a96368e4c7] - deps: update zlib to 1.3.2.1-motley-3246f1b (Node.js GitHub Bot) #63773b59f1f5f37] - deps: update amaro to 1.1.10 (Node.js GitHub Bot) #636700b3b56ee95] - deps: update googletest to8736d2c(Node.js GitHub Bot) #63669aa67b5b9c4] - dgram: add synchronous Socket connectSync() (Guy Bedford) #63932ef38374875] - dgram: add synchronous Socket.prototype.bindSync() (Guy Bedford) #638386edc3a9967] - dgram: skip dns.lookup() for literal IP addresses (Ruben Bridgewater) #64133d4cfe2d8ac] - dns: coerce -0 to +0 in lookup and resolver inputs (Filip Skokan) #6355691c9ce5a45] - doc: improvefs.StatFsproperties descriptions (aymanxdev) #6257854e21675fa] - doc: fix inconsistencies in CJS code snippets (Antoine du Hamel) #6319964c23daa76] - doc: remove typo comma from man page (Vas Sudanagunta) #63080bc943cd34a] - doc: update Http2SecureServer.on("timeout") default value (YuSheng Chen) #64187a46bc452a6] - doc: add note on visibility of CI failures to new contributor guide (Stewart X Addison) #64256c0fb52506c] - doc: clarify HTTP/1.1 response ordering (Matteo Collina) #64213d3073a7ba6] - doc: recommend node-stress-single-test for flaky tests (Trivikram Kamat) #64223bb9951ead0] - doc: fix typo in examples (Vas Sudanagunta) #64184fe674e96fc] - doc: clarify defense-in-depth issues (Matteo Collina) #64215faad042184] - doc: add guide and answers to FAQs for first-time contributors (Joyee Cheung) #6368579d685adf3] - doc: updateHttp2Server.close&Http2SecureServer.close(YuSheng Chen) #63298744e40e05e] - doc: update list of people inSECURITY.md(Richard Lau) #64152185f57c4a4] - doc: add missing option to man page (Richard Lau) #641568933303568] - doc: fix callback example import in fs docs (Kamal Rawal) #639123a0549dacb] - doc: fix keepAliveTimeout default in http.createServer options (Jahanzaib iqbal) #639745a35e48d08] - doc: add sxa GPG key (ed25519) (Stewart X Addison) #6419366e7f815f1] - doc: add aduh95 to last security release steward (Antoine du Hamel) #63981a7e35040dd] - doc: fix typo in util.md (Daijiro Wachi) #63961d74b3a7e90] - doc: clarify callback exceptions (Matteo Collina) #63939b7a8f8fabd] - doc: fix incorrect test runner mock examples (Kimaswa Emmanuel Yusufu) #63656f11aa690cd] - doc: fix typo in cli.md (Daijiro Wachi) #63883df85f50269] - doc: fix typo in vm.md (Daijiro Wachi) #63881a00a567175] - doc: fix typo in packages.md (Daijiro Wachi) #63882206c1b8437] - doc: fix a/an article typos in module, util, and dns (Daijiro Wachi) #63766e3e5ef1cff] - doc: update npm supported versions link (hojeong park) #63672e3c4852413] - doc: fix AES-OCB IV length in SubtleCrypto.supports example (Anshika Jain) #637170b3fbc82d7] - doc: add webstreams to args forpipelinefromstream/promises(David Sanders) #6362862078a8328] - doc: fix "used to sent" → "used to send" in http2 (Daijiro Wachi) #63700fd74eefb23] - doc: clarify tty raw mode applies to input processing only (Muhammad Zeeshan) #6343842cd7e47de] - doc: add worker_threads history entries (Bob Put) #63545d6ab039f24] - (SEMVER-MINOR) doc: updateblockListstability status to release candidate (alphaleadership) #6305056bdd87378] - doc: move hyperlinks outside of text blocks (Aviv Keller) #634931da05fb79d] - doc: mark stream.compose stable (Matteo Collina) #625627bb6dab70c] - doc,crypto: mark argon2 and encap/decap as stable (Filip Skokan) #639241a4edb3c22] - doc,lib: align WebCrypto names with spec (Filip Skokan) #635183c1636dabf] - (SEMVER-MINOR) esm: add--experimental-import-textflag (Efe) #62300e0f211ca79] - events: improveaddAbortListenerperf by caching options object (Raz Luvaton) #52367a124429b36] - fs: do not treat EPERM as ENOTEMPTY on Windows (Kirill Saied) #63709e323e877be] - (SEMVER-MINOR) fs: support caller-supplied readFile() buffers (Matteo Collina) #63634a41b4824d7] - fs: prevent spurious recursive watch events on prefix siblings (Marco) #63095c63e00e3a5] - fs: ignore deleted dirs in recursive watch scan (Trivikram Kamat) #63686d3d7cd05e3] - fs: coerce -0 to +0 in mode flags and watch intervals (Filip Skokan) #635566f6387ecb3] - gyp: update deps gypfiles (Nad Alaba) #63117592544af44] - http: document and validate options.path when it's in absolute-form (Joyee Cheung) #64108c1248c9544] - (SEMVER-MINOR) http: add httpValidation option to configure header value validation (RajeshKumar11) #6159785a223bf15] - http: fix drain event with cork/uncork (David Evans) #640388b060a9628] - inspector: fix crash when writing to closed inspector socket (ympark2011) #64209e68a3d33ac] - inspector: fix inspector.close() documented behavior (Chengzhong Wu) #63837d3682930b7] - lib: fix missing lazyDOMException import (Filip Skokan) #64033af9ea9cfcf] - lib: reject string "0" in validatePort when allowZero is false (Daijiro Wachi) #64174cd1ea26110] - lib: use__proto__: nullwhen callingObjectDefineProperty(Antoine du Hamel) #642395b264398ce] - lib: lazily initialize kEvents and kHandlers maps (Guilherme Araújo) #63702823efe8c71] - lib: improve control abstraction coverage in frozen intrinsics (Renegade334) #636987f4af5568f] - lib: add Iterator global to primordials (Renegade334) #63698c8f3f5e5a5] - lib: makeNavigator#languagegetter throw on invalidthis(Mohamed Sayed) #636011ebbbd59cf] - lib: optimize webidl conversion options (Filip Skokan) #6275688590d1bb7] - meta: bump actions/checkout from 6.0.2 to 6.0.3 (dependabot[bot]) #637260ea9cb9630] - meta: bump actions/upload-artifact from 7.0.0 to 7.0.1 (dependabot[bot]) #62850f7275a0864] - meta: fix linter warning instale.yml(Antoine du Hamel) #642813a77d21d8c] - meta: bump actions/cache from 5.0.5 to 6.1.0 (dependabot[bot]) #6424884e2836c95] - meta: bump github/codeql-action/autobuild from 4.36.1 to 4.36.2 (dependabot[bot]) #6424709f800eec6] - meta: bump github/codeql-action/analyze from 4.36.1 to 4.36.2 (dependabot[bot]) #642466df1f97e64] - meta: bump codecov/codecov-action from 6.0.1 to 7.0.0 (dependabot[bot]) #64244737eb89651] - meta: bump rtCamp/action-slack-notify from 2.3.3 to 2.4.0 (dependabot[bot]) #64243dac3cd8b8f] - meta: bump github/codeql-action/init from 4.36.1 to 4.36.2 (dependabot[bot]) #64242108a6bc481] - meta: bump github/codeql-action/upload-sarif from 4.36.1 to 4.36.2 (dependabot[bot]) #6424034d09a725d] - meta: clarify V8 flags are outside threat model (Matteo Collina) #64224944d9bc25f] - meta: move one or more collaborators to emeritus (Node.js GitHub Bot) #64057cc22555402] - meta: update status of past strategic initiatives (Joyee Cheung) #63480da7a21931e] - meta: speed up stale bot (Aviv Keller) #640757bfcf7ca56] - meta: bump github/codeql-action from 4.35.3 to 4.36.1 (dependabot[bot]) #63724db6c983cdd] - meta: bump actions/cache from 5.0.4 to 5.0.5 (dependabot[bot]) #628479e4f1339d1] - meta: bump codecov/codecov-action from 6.0.0 to 6.0.1 (dependabot[bot]) #6372592c98d3ade] - meta: bump actions/stale from 10.2.0 to 10.3.0 (dependabot[bot]) #63728bbd3ffde89] - meta: bump step-security/harden-runner from 2.19.0 to 2.19.4 (dependabot[bot]) #63727a6dd675c82] - module: enable import support for addons by default (Chengzhong Wu) #64221fb2ccb15a1] - module: use file: URL as sourceURL for type-stripped CommonJS (Joyee Cheung) #63705b9e17dc424] - net: early TCP binding via synchronous net.BoundSocket (Guy Bedford) #63951a534b65815] - (SEMVER-MINOR) net: support TCP_KEEPINTVL and TCP_KEEPCNT in setKeepAlive (Guy Bedford) #63825c55dd030e6] - net: coerce -0 to +0 in BlockList prefixes (Filip Skokan) #63556a23cdec683] - (SEMVER-MINOR) perf_hooks: sample delay per event loop iteration (Pablo Erhard) #62935f08b83bc1d] - perf_hooks: add NODE_PERFORMANCE_GC_MINOR_MARK_SWEEP constant (Attila Szegedi) #638778d58e1b415] - process: fix finalization cleanup ref tracking (Trivikram Kamat) #64087c757e3ef59] - sqlite: do not leave database open after failed open (Yagiz Nizipli) #6385487064a096b] - sqlite: fix stack-use-after-scope with function callback (ndossche) #636407428b57a37] - (SEMVER-MINOR) src: allow empty --experimental-config-file (Marco Ippolito) #61610d7946c9c07] - src: add test flag to config file (Marco Ippolito) #60798a642657d71] - src: rename config file testRunner to test (Marco Ippolito) #60798818b43d09e] - src: do not enable wasm trap handler if there's not enough vmem (Joyee Cheung) #62132af5e1a9729] - src: fix escaping of single quotes in task runner (Antoine du Hamel) #640898a5d3bc168] - src: abstract tracing agent for both legacy and perfetto (Chengzhong Wu) #64053ce6f29e45b] - src: avoid redundant call tostd::get_if<>()(Tobias Nießen) #6409496478050f2] - src: omit unconvertible names in cjs_lexer::Parse (Yagiz Nizipli) #639430147ed746e] - src: guard OpenSSL compression header include (Filip Skokan) #640098d2858a9c4] - src: handle empty MaybeLocal in cjs_lexer::Parse (Yagiz Nizipli) #63885e5289d180f] - src: do not track weakBaseObjects as childrens ofRealms (Anna Henningsen) #63842e8352ff754] - src: allow tracking children inMemoryTrackerwith weak edges (Anna Henningsen) #63842a408f279c5] - src: use C++14 deprecated attribute forNODE_DEPRECATED(Anna Henningsen) #637554b5eb7b72d] - src: add cleanup hooks tonode::ObjectWrap(Anna Henningsen) #6364244976c6071] - src: fix edge case when deflateInit2() fails with Z_VERSION_ERROR (Nora Dossche) #634765b3bb284f3] - src: add Latin1 fast path in StringBytes::Encode utf8 (Mert Can Altin) #633857cdad636c4] - src: fix crash when reading length on Storage.prototype (Mohamed Sayed) #63529c438250c68] - stream: cut per-chunk overhead in WHATWG streams (Matteo Collina) #64252291c127947] - stream: reduce allocations on WHATWG streams hot paths (Matteo Collina) #638763d91aeb434] - stream: optimize pipeTo promise handling (Matteo Collina) #63572fcbff00a44] - stream: preserve half-open duplexes in async iteration (Efe) #64275e57597173c] - (SEMVER-MINOR) stream: expose ReadableStreamTee (Matteo Collina) #64195a48edf40e8] - stream: proxy first own method in Readable.wrap() (Daijiro Wachi) #64048f58c5bafcf] - stream: fix Writable.toWeb() desiredSize for non-object-mode (Matteo Collina) #629867261276f45] - stream: fix Utf8Stream stall after full write of multi-byte data (Daijiro Wachi) #639641558986b78] - stream: only pass the expected number of parameters to callbacks (Antoine du Hamel) #63909edef89ba6a] - stream: fix dropped first chunk in Utf8Stream buffer mode (Daijiro Wachi) #63833915e3e2f42] - stream: check done before backpressure in stream reader (Daijiro Wachi) #636992d29628b5b] - test: update WPT for WebCryptoAPI to03a1476(Node.js GitHub Bot) #6390089e23b70c4] - test: deflake test-debugger-probe-timeout (Joyee Cheung) #6354754ca514414] - test: make blob desiredSize assertion robust (Trivikram Kamat) #6410601cbe530eb] - test: update WPT for urlpattern to11a459a(Node.js GitHub Bot) #640376fcd3cf516] - test: improve lcov reporter snapshot diagnostics (Trivikram Kamat) #64049f50a55d7e5] - test: keep finalization close fixture ref alive (Trivikram Kamat) #640853085714530] - test: fix typo from overriden to overridden (parkhojeong) #634039f5347e8df] - test: mark hr-time WPT flaky on macos15-x64 (Trivikram Kamat) #6405444b4fe4246] - test: use one-off agent in http consumed timeout test (Trivikram Kamat) #640522f567edaca] - test: fix flaky test-runner coverage threshold test (Trivikram Kamat) #64051a56fbb2d36] - test: tolerate duplicate watch change events (Trivikram Kamat) #63937b636f4769c] - test: mark test-debugger-run-after-quit-restart as flaky on macOS (Matteo Collina) #64006ba23eb9717] - test: update WPT for url tod4598eb(Node.js GitHub Bot) #63899bc420f20d8] - test: update WPT for urlpattern to23aac92(Node.js GitHub Bot) #63898d2c9c07af8] - test: add tests for 3 methods in utils (Daijiro Wachi) #637654e00c8ec2e] - test: mark SEA tests flaky on linux arm debug (Trivikram Kamat) #63743a17cf06d12] - test: validate ERR_INVALID_THIS for scheduler methods (Daijiro Wachi) #63764d59d7fdd16] - test: add coverage outside SEA (Daijiro Wachi) #6374471a32d31bf] - test: update WPT for urlpattern to2f28df5(Node.js GitHub Bot) #6377128c77ab174] - test: make Brotli 16GB test wait for backpressure (Trivikram Kamat) #633899a81921d4a] - test: add regression test for usingObjectWrapin worker (Mohamed Akram) #6364288ab61f2f8] - test: accept SIGILL aborts in async-hooks tests (Trivikram Kamat) #63687b4f5c86463] - test: add more test cases for pathToFileURL (Rafael Gonzaga) #63293812a66f0ac] - test: update test426-fixtures to2965987(Node.js GitHub Bot) #636682bf0de838d] - test: cover webcrypto prototype pollution systematically (Filip Skokan) #63520bec6856ae8] - test,debugger: add test for type stripping in debugger probe mode (Joyee Cheung) #63748a2b9095e03] - test_runner: avoid recompiling coverage globs for every file (sangwook) #6367502fbff446f] - test_runner: cacheshouldSkipFileCoverageresult per URL (sangwook) #63675094869354a] - test_runner: ignore erased TS lines in coverage (Matteo Collina) #6351068edc2b009] - test_runner: fix suite diagnostic chanel end (Moshe Atlow) #63533659d5bf068] - test_runner: add parentId to test events with testId (Moshe Atlow) #63435eaebeb8b88] - test_runner: fix hooks test context (Moshe Atlow) #63285d03d96889b] - test_runner: add tags option and tag-name filter (Chemi Atlow) #63221e8c3db1364] - test_runner: addgetTestContext()(Moshe Atlow) #62501345c591d10] - test_runner: filter execArgv fallback for child tests (Trivikram Kamat) #640562f47fb23bf] - test_runner: improve coverage failure diagnostics (Trivikram Kamat) #64050260cf1ac89] - test_runner: add timestamp to JUnit reporter testsuites (sangwook) #6402924140eafdf] - test_runner: remove unused shuffleArrayWithSeed (Daijiro Wachi) #63847b7fdb4891a] - test_runner: fix watch cwd with isolation none (Trivikram Kamat) #63690e48b307e09] - timers: reuse Timeout objects in setStreamTimeout (Matteo Collina) #642545396235993] - (SEMVER-MINOR) tls: report negotiated TLS groups (Filip Skokan) #64119a653e9bb57] - tls: handle large RSA exponents in X.509 cert (Tobias Nießen) #640935e901b5cd9] - (SEMVER-MINOR) tls: add certificateCompression option (Tim Perry) #622173abcfa723c] - tls: route event listener exceptions through error handlers (Antoine du Hamel) #63822eaba4cd59d] - tools: bump the eslint group in /tools/eslint with 8 updates (dependabot[bot]) #642497d7ea1dbca] - tools: update c-ares updater script (Antoine du Hamel) #64194976827cd71] - tools: validate version number in release proposal commit message lint (Antoine du Hamel) #64070cc0c586b52] - tools: update sccache to v0.16.0 (Michaël Zasso) #63078f0a35fa56a] - tools: bump js-yaml from 4.1.1 to 4.2.0 in /tools/lint-md (dependabot[bot]) #63948dafbd23240] - tools: bump js-yaml from 4.1.1 to 4.2.0 in /tools/eslint (dependabot[bot]) #639470ae1552650] - tools: update the llhttp updater script (Antoine du Hamel) #638193623586d1f] - tools: align Bash snippets in GHA withlint-shconventions (Antoine du Hamel) #6382964b130ce1d] - tools: bump the eslint group in /tools/eslint with 7 updates (dependabot[bot]) #637304900cac251] - tools: fix zlib updater script (Antoine du Hamel) #637078edf3abafc] - typings: add typing for crypto (Filip Skokan) #64122d5be94e820] - url: fix URLSearchParams(null) to prudce null= per spec (Marco) #63782ee66a3851c] - util: fix OOM in inspect color stack formatting (Ijtihed Kilani) #64022e26f183699] - util: fix scientific notation formatting (Daijiro Wachi) #638237993e3e476] - util: fix -0 formatting when numericSeparator is enabled (Daijiro Wachi) #6381538758a7789] - util: remove style caches from styleText slow path (Guilherme Araújo) #6370646a0ca256a] - watch: print name of changed file that triggers restart (Marco) #63781e1582818ad] - watch: cancel pending restart on shutdown (Trivikram Kamat) #633839a208668b0] - zlib: validate flush king for all streams (Ic3b3rg) #63746928981d803] - zlib: validate flush kind for brotli streams (Ic3b3rg) #63746fd0fb00164] - zlib: expose rejectGarbageAfterEnd option (Filip Skokan) #64023e334d30b4c] - zlib: reject trailing gzip members in web streams (Filip Skokan) #640237433c3df2e] - zlib: coerce -0 to +0 for crc32 seeds (Filip Skokan) #63556v24.18.1: 2026-07-29, Version 24.18.1 'Krypton' (LTS), @juanarbolCompare Source
This is a security release.
Notable Changes
Configuration
📅 Schedule: (UTC)
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR was generated by Mend Renovate. View the repository job log.