Node.js v22.22.1 is out ๐ฅ
Release notes ๐
nodejs.org/en/blog/rele...
Node.js v22.22.1 is out ๐ฅ
Release notes ๐
nodejs.org/en/blog/rele...
Node.js v20.20.1 is out ๐
This is the last planned release before v20 goes End-of-Life โ
Release notes ๐
nodejs.org/en/blog/rele...
Announcing the @nodejs.org LTS Upgrade and Modernization Program! ๐
We're helping enterprises move safely off end-of-life Node.js versions to reduce security risks with our partnerNodeSource.
Modern Node.js is safer Node.js. Details:
openjsf.org/blog/nodejs-...
New @nodejs.org 25.8.0 release is out: nodejs.org/en/blog/rele...
Node.js release day! @ruyadorno.com and I just released Node.js 24.14.0 and 25.7.0, full changelog and download links at nodejs.org/en/blog/rele... and nodejs.org/en/blog/rele...
We have made our HackerOne policies even more strict. Now, if you don't have any Signal, you shouldn't be able to report through HackerOne. We advise you to contact any of the Security Release Stewards via OpenJS Slack.
nodejs.org/en/blog/anno...
GitHub is funding open source security work across dozens of projects, including OpenJS projects like @nodejs.org and Webpack.
Strong ecosystems are built through sustained investment in the software supply chain, and we appreciate @github.com's continued support of open source maintainers. ๐ซถ
Node.js patch release day! Full changelog and download links at nodejs.org/en/blog/rele... and nodejs.org/en/blog/rele...
New Node.js codemod โจ Migrate from Chalk to Node.js util styleText nodejs.org/en/blog/migr...
Big news ๐ The OpenJS Foundation is bringing a dedicated summit to RenderATL 2026. ๐ฅ
Created by and for the JavaScript and Node.js community. Expect technical talks, real world lessons, and practical takeaways.
Check out the details + register for the conference: hubs.la/Q040sX130
That and more in v25.5.0, now out! Full changelog and download links in nodejs.org/en/blog/rele...
โ ๏ธ The Node.js Project now requires a HackerOne Signal score of 1.0 or higher to submit vulnerability reports. This will help our team streamline reports and support effective security reviews.
nodejs.org/en/blog/anno...
Node.js v25.4.0 is out! ๐
โข require(esm) now stable and a new CLI flag: --require-module
โข http setGlobalProxyFromEnv() added
โข Multiple APIs promoted to stable (heapsnapshot, build snapshot, v8.queryObjects)
โข Root CAs updated to NSS 3.117
More in: nodejs.org/en/blog/rele...
Today, we published a security release for @nodejs.org that fixes a critical bug affecting virtually every production Node.js app.
If you use React Server Components, Next.js, or ANY APM tool (Datadog, New Relic, OpenTelemetry), your app could be vulnerable to DoS attacks.
๐
We appreciate your patience and understanding as we work to deliver a secure and reliable release.
Updates are now available for the 25.x, 24.x, 22.x, 20.x Node.js release lines to address:
- 3 high severity issues
- 4 medium severity issues
- 1 low severity issue
nodejs.org/en/blog/vuln...
๐จOur team has decided to postpone the release to Tuesday, January 13th, 2026. This additional time will allow us to properly test all backports and re-run CITGM to ensure the highest quality for our users.
The guide is still in progress, but currently covers JavaScript packages without a build step.
More to come. Feedback, issues, and PRs are welcome!
https://github.com/nodejs/package-examples
The Node.js package configuration guide is now live! ๐
Whether you're creating your first package or migrating to ESM, this guide walks you through it with examples.
https://nodejs.github.io/package-examples
It's a new year ๐ Are you currently hiring for a role that includes using Node.js? Reply with a link to the opening and any relevant context.
If you're not, we'd appreciate a repost for visibility ๐
Hey @nodejs.org community!
Weโre looking for your feedback on our beta documentation layout!
๐ nodejs-api-docs-tooling.vercel.app
Share your thoughts by replying to this post, or open an issue:
๐ github.com/nodejs/doc-k...
The docs are built for you, so your input truly makes a difference ๐
How did Node.js help you in 2025, and what security changes do you want next year?
Drop your thoughts below. Your feedback shapes the work ahead. ๐ฃ๏ธ
โ ๏ธ Node.js security release has been postponed โ ๏ธ
We have decided to delay the security release further to January 7th 2026 to ensure the team has enough time to prepare the releases and avoid distruptions during the holiday season.
nodejs.org/en/blog/vuln...
โ ๏ธ The security release has been postponed to the 18th of December. The team is working on a challenging patch.
Node.js v24.12.0 (LTS) is out ๐
nodejs.org/en/blog/rele...
Working in an enterprise setup with corporate proxies or custom CAs? Node.js has native support for that.
No external dependency required, just configure and continue ๐
Details: https://nodejs.org/en/learn/http/enterprise-network-configuration
โ๏ธNode.js Security release pre-alert โ๏ธ
We will release new versions of v20, v22, v24, v25 release lines on or shortly after the 15th of December 2025 in order to address:
* 3 high severity issues.
* 1 low severity issue.
* 1 medium severity issue.
nodejs.org/en/blog/vuln...
JavaScript is 30. Still running the web & still our favorite. ๐โจ
The OpenJS Foundation is grateful for every contributor who has shaped its path, and we look forward to the continued growth of this community.
SEMVER MAJORS ARE BORING ๐จ
Major releases mostly bring breaking changes, not shiny new features. The fun stuff? Thatโs hiding in the minors.
@rafaelgss.dev talks about why you should follow the minor releases in our latest JavaScript Security Snapshot.
Node.js v20.19.6 is out ๐ฅณ
Release notes:
nodejs.org/en/blog/rele...