Skip to content
Permalink

Comparing changes

Choose two branches to see what’s changed or to start a new pull request. If you need to, you can also or learn more about diff comparisons.

Open a pull request

Create a new pull request by comparing changes across two branches. If you need to, you can also . Learn more about diff comparisons here.
base repository: nodejs/node
Failed to load repositories. Confirm that selected base ref is valid, then try again.
Loading
base: 05a8e91b5e0cd694eb2ef869242a3e77d44f6ca1
Choose a base ref
...
head repository: nodejs/node
Failed to load repositories. Confirm that selected head ref is valid, then try again.
Loading
compare: 4788fb7ab8b660031e0aab1a870c8461c69c0ad1
Choose a head ref
  • 3 commits
  • 15 files changed
  • 1 contributor

Commits on Aug 27, 2026

  1. crypto: fix RSA-PSS oversized salt handling

    Let OpenSSL handle representable salt lengths so verification of an
    impossible length resolves false. Guard values outside the native int32
    parameter range to prevent SignJob from silently ignoring them.
    
    Move the digest-size helper next to HKDF, its remaining consumer.
    
    Signed-off-by: Filip Skokan <panva.ip@gmail.com>
    PR-URL: #65550
    Reviewed-By: Aviv Keller <me@aviv.sh>
    Reviewed-By: James M Snell <jasnell@gmail.com>
    panva authored and nodejs-github-bot committed Aug 27, 2026
    Configuration menu
    Copy the full SHA
    1a6ab3c View commit details
    Browse the repository at this point in the history
  2. crypto: fix private SPKI export error

    Reject SPKI export of a private asymmetric key with InvalidAccessError
    as required by the algorithm export steps. Let wrapKey propagate the
    same export failure.
    
    Signed-off-by: Filip Skokan <panva.ip@gmail.com>
    PR-URL: #65550
    Reviewed-By: Aviv Keller <me@aviv.sh>
    Reviewed-By: James M Snell <jasnell@gmail.com>
    panva authored and nodejs-github-bot committed Aug 27, 2026
    Configuration menu
    Copy the full SHA
    3615979 View commit details
    Browse the repository at this point in the history
  3. crypto: validate JWK usages before key_ops

    Check requested usages against the JWK public or private key type
    before validating key_ops. This preserves the SyntaxError precedence
    specified for RSA, EC, CFRG, ML-DSA, and ML-KEM imports.
    
    Signed-off-by: Filip Skokan <panva.ip@gmail.com>
    PR-URL: #65550
    Reviewed-By: Aviv Keller <me@aviv.sh>
    Reviewed-By: James M Snell <jasnell@gmail.com>
    panva authored and nodejs-github-bot committed Aug 27, 2026
    Configuration menu
    Copy the full SHA
    4788fb7 View commit details
    Browse the repository at this point in the history
Loading