Add search by username, full name, or email for blocked users
No matching updates in this bucket.
Rails updates in 2026-w34
Adds a public preview of GitHub Copilot integration in Slack, exposing Copilot CLI and app capabilities via the @GitHub bot.
Introduces collaborative GitHub Copilot agent sessions directly within Microsoft Teams discussions
Users can now pin saved issue views directly in the repository’s issues sidebar for one‑click access
Adds Windows 11 arm64 runner image with Visual Studio 2026 to GitHub‑hosted runners
Introduce a new "Mitigated" dismissal reason for code scanning alerts, enabling dismissal when external controls reduce risk.
Introduces a dedicated workflow path for CodeQL code‑quality actions
Adds audit log events for enabling, disabling, and updating GitHub Code Quality settings per repository
Introduces source modeling for JavaScript, TypeScript, and Vue in CodeQL.
Add a Trends tab to the organization-level Code Quality dashboard for viewing code quality changes over time
Added enterprise‑managed settings to GitHub Copilot for JetBrains for plugin governance, MCP server access, OpenTelemetry, and permission modes.
Introduce token-type and user-specific actions to deauthorize and revoke credentials during security incidents.
Fixed multiple critical security vulnerabilities including CVE‑2026‑62356, heap out‑of‑bounds write, use‑after‑free, and TLS client certificate authentication bypass.
Fixed several critical CVE‑2026‑62356 vulnerabilities: buffer overflow, out‑of‑bounds access, use‑after‑free, and ACL bypass in commands like SORT, GEORADIUS, and XREADGROUP.
Fixed multiple heap OOB write and use‑after‑free vulnerabilities in CMSketch loading, TopK cleanup, and TLS pending data handling.
Fixed multiple heap and out‑of‑bounds write vulnerabilities (CVE‑2026‑62356) including CMSketch RDB loading and TopK cleanup
Fixed multiple memory corruption vulnerabilities including OOB writes, use‑after‑free, and out‑of‑bounds reads in RDB loading, CMSketch, TopK cleanup, TLS pending data, ACL checks, and vector set handling.
Fixed multiple use‑after‑free vulnerabilities affecting TLS pending data handling and the blocked client list.
Fixed multiple use‑after‑free vulnerabilities in TLS pending data handling and blocked‑client list processing.
Fixed a use‑after‑free vulnerability in TLS pending‑data handling when a command closes another pending connection.