- Fixed improper handling of URI SAN types, preventing certificate verification bypass (CVE‑2021‑44531).
- Patched string injection in SAN handling and corrected multi‑value RDN processing to stop name‑constraint bypasses (CVE‑2021‑44532, CVE‑2021‑44533).
- Mitigated prototype pollution in console.table by using a null prototype (CVE‑2022‑21824).