- Updated crypto root certificates to NSS 3.125 and OpenSSL to 3.5.8, enhancing TLS security.
Backend changelog updates
Runtime, databases, API services, queues, and backend operations. Follow release notes, breaking changes, security patches, pricing updates, and community reactions from this channel.
Use this Backend changelog channel to compare product release notes, discover risky migrations, and build a weekly digest for the tools in this stack.
Products in this channel
Latest Backend changelog updates
Added crypto.parsePKCS12 and extensive crypto provider enhancements (RSA PSS, EC JWK handling, Hybrid KEMs, PBKDF2 limits, etc.).
Fixed security issues: ACL revocation bypass in queued transactions and added cluster bus authentication warnings with a protected‑mode option.
Fixed ACL revocation bypass where queued commands could access revoked keys
Fixed ACL revocation bypass where queued transaction commands could access revoked keys
Fixed ACL revocation issue allowing queued commands to access revoked keys
Adds security hardening for the cluster bus: warns on unauthenticated bus ports and introduces a protected mode option to enforce TLS authentication.
Added a generic MAC API and OpenSSL provider discovery for ciphers and hashes, plus new experimental DTLS and Web Workers support.