Go 1.27.2 ships with 15 security fixes

Go 1.27.2 and 1.26.9 are out, bundling fifteen standard library and toolchain security fixes, including a checksum bypass in cmd/go around golang.org/fips140 and a pair of html/template escaping bugs involving the yield keyword and consecutive template expressions. Alongside the patch release, a Reddit writeup measures the new 1.27 simd package on a float32 dot product and clocks a 10x speedup on an M4 with no assembly, which is a reasonable excuse to actually read those release notes.