17 hours ago
grafana

12.3.2

Download page What's new highlights

Features and enhancements

Bug fixes

18 hours ago
grafana

12.2.4

Download page What's new highlights

Features and enhancements

Bug fixes

19 hours ago
grafana

12.1.6

Download page What's new highlights

Features and enhancements

Bug fixes

21 hours ago
grafana

12.0.9

Download page What's new highlights

Features and enhancements

Bug fixes

22 hours ago
MeiliSearch

v1.34.2

This patch fixes an accidental breaking change in v1.34.1 where Meilisearch would not start with a configuration file if experimental_allowed_ip_networks was not defined.

  • Meilisearch Cloud users do not need to update as they were not affected by this regression
  • We recommend that OSS users upgrade to v1.34.2

Full Changelog: https://github.com/meilisearch/meilisearch/compare/v1.34.1...v1.34.2

23 hours ago
openssl

OpenSSL 3.0.19

OpenSSL 3.0.19 is a security patch release. The most severe CVE fixed in this release is High.

This release incorporates the following bug fixes and mitigations:

  • Fixed Stack buffer overflow in CMS AuthEnvelopedData parsing. (CVE-2025-15467)

  • Fixed Heap out-of-bounds write in BIO_f_linebuffer on short writes. (CVE-2025-68160)

  • Fixed Unauthenticated/unencrypted trailing bytes with low-level OCB function calls. (CVE-2025-69418)

  • Fixed Out of bounds write in PKCS12_get_friendlyname() UTF-8 conversion. (CVE-2025-69419)

  • Fixed Missing ASN1_TYPE validation in TS_RESP_verify_response() function. (CVE-2025-69420)

  • Fixed NULL Pointer Dereference in PKCS12_item_decrypt_d2i_ex() function. (CVE-2025-69421)

  • Fixed Missing ASN1_TYPE validation in PKCS#12 parsing. (CVE-2026-22795)

  • Fixed ASN1_TYPE Type Confusion in the PKCS7_digest_from_attributes() function. (CVE-2026-22796)

23 hours ago
openssl

OpenSSL 3.3.6

OpenSSL 3.3.6 is a security patch release. The most severe CVE fixed in this release is High.

This release incorporates the following bug fixes and mitigations:

  • Fixed Stack buffer overflow in CMS AuthEnvelopedData parsing. (CVE-2025-15467)

  • Fixed NULL dereference in SSL_CIPHER_find() function on unknown cipher ID. (CVE-2025-15468)

  • Fixed TLS 1.3 CompressedCertificate excessive memory allocation. (CVE-2025-66199)

  • Fixed Heap out-of-bounds write in BIO_f_linebuffer on short writes. (CVE-2025-68160)

  • Fixed Unauthenticated/unencrypted trailing bytes with low-level OC function calls. (CVE-2025-69418)

  • Fixed Out of bounds write in PKCS12_get_friendlyname() UTF-8 conversion. (CVE-2025-69419)

  • Fixed Missing ASN1_TYPE validation in TS_RESP_verify_response() function. (CVE-2025-69420)

  • Fixed NULL Pointer Dereference in PKCS12_item_decrypt_d2i_ex() function. (CVE-2025-69421)

  • Fixed Missing ASN1_TYPE validation in PKCS#12 parsing. (CVE-2026-22795)

  • Fixed ASN1_TYPE Type Confusion in the PKCS7_digest_from_attributes() function. (CVE-2026-22796)

23 hours ago
grafana

11.6.10

Download page What's new highlights

Features and enhancements

Bug fixes

23 hours ago
openssl

OpenSSL 3.4.4

OpenSSL 3.4.4 is a security patch release. The most severe CVE fixed in this release is High.

This release incorporates the following bug fixes and mitigations:

  • Fixed Improper validation of PBMAC1 parameters in PKCS#12 MAC verification. (CVE-2025-11187)

  • Fixed Stack buffer overflow in CMS AuthEnvelopedData parsing. (CVE-2025-15467)

  • Fixed NULL dereference in SSL_CIPHER_find() function on unknown cipher ID. (CVE-2025-15468)

  • Fixed TLS 1.3 CompressedCertificate excessive memory allocation. (CVE-2025-66199)

  • Fixed Heap out-of-bounds write in BIO_f_linebuffer on short writes. (CVE-2025-68160)

  • Fixed Unauthenticated/unencrypted trailing bytes with low-level OCB function calls. (CVE-2025-69418)

  • Fixed Out of bounds write in PKCS12_get_friendlyname() UTF-8 conversion. (CVE-2025-69419)

  • Fixed Missing ASN1_TYPE validation in TS_RESP_verify_response() function. (CVE-2025-69420)

  • Fixed NULL Pointer Dereference in PKCS12_item_decrypt_d2i_ex() function. (CVE-2025-69421)

  • Fixed Missing ASN1_TYPE validation in PKCS#12 parsing. (CVE-2026-22795)

  • Fixed ASN1_TYPE Type Confusion in the PKCS7_digest_from_attributes() function. (CVE-2026-22796)