Added information about the zlib version update in the changelog
diff --git a/docs/CHANGES b/docs/CHANGES
index 3c6a877..85c1542 100644
--- a/docs/CHANGES
+++ b/docs/CHANGES
@@ -75,6 +75,10 @@
     af_debug_hints_
     ```
 
+  - The internal  zlib library was  updated to version  1.2.13.  Note,
+    however, that  FreeType is *not* affected  by CVE-2022-37434 since
+    it doesn't use the `inflateGetHeader` function.
+
 
 ======================================================================