| Commits from the 2026Q3 branch |
|
FreshPorts has everything you want to know about FreeBSD software, ports, packages,
applications, whatever term you want to use.
Yesterday's Commits | Main Branch
|
|
Wednesday, 16 Sep 2026
|
08:10 Koichiro Iwao (meta) 2026Q3
devel/ruby-build: Update to 20260916
Changes: https://github.com/rbenv/ruby-build/releases/tag/v20260916
Changes: https://github.com/rbenv/ruby-build/releases/tag/v20260915
(cherry picked from commit 92922b10d52271305cb8c8c91ed9ebb931377525)
7544769 |
|
Tuesday, 15 Sep 2026
|
23:44 Colin Percival (cperciva) 2026Q3
misc/freebsd-release-manifests: Remove EoL releases
Approved by: re (implicit)
(cherry picked from commit 1caa9b4f58573bd820ceb8b3a5448a40049d2683)
04fe3b8 |
21:16 Vladimir Druzenko (vvd) 2026Q3
- www/tomcat9 9.0.122
Open-source Java web server by Apache, 9.0.x branch
www/tomcat9: Update 9.0.121 => 9.0.122
Changelog:
https://tomcat.apache.org/tomcat-9.0-doc/changelog.html#Tomcat_9.0.122_(remm)
Sponsored by: UNIS Labs
MFH: 2026Q3
(cherry picked from commit ad4f5e7dd72ab36ea83a218a4545a9e16dc7ebca)
490efdd |
19:22 Gleb Popov (arrowd) 2026Q3
textproc/libkolabxml: Mark deprecated
(cherry picked from commit 107d1fa182f91254cec8809ec2e3fbe2f9b91d1a)
ec0ae3f |
17:46 Christoph Moench-Tegeder (cmt) 2026Q3
- mail/thunderbird 156.0
Mozilla Thunderbird is standalone mail and news that stands above
mail/thunderbird: update to 156.0 (rc1)
Release Notes:
https://www.thunderbird.net/en-US/thunderbird/156.0/releasenotes/
(cherry picked from commit 2f0fb361f926b9efe64715819603c94b56cfc069)
c17915a |
17:30 Yuri Victorovich (yuri) 2026Q3
- math/libmesh 1.8.4
Numerical simulation of partial differential equations
math/libmesh: Broken om i386
Reported by: fallout
(cherry picked from commit b8ff35e0fbdcaa602802b74be5657a6b033ba6ab)
2cbea406 |
16:16 Yusuf Yaman (nxjoseph) Author: Guillaume Ballet 2026Q3
net-p2p/go-ethereum: Update 1.17.2 => 1.17.5
Changes:
* Clef tool has been moved to https://github.com/ethereum/clef
* Drop dependency on hidapi as it seems no longer required.
* Pebble v2 is now supported as a key-value store backend.
* API Changes
- memory: words are 0x-prefixed and padded to 32 bytes
- storage: keys and values are 0x-prefixed
- error: omitted when empty (previously serialized as "")
https://github.com/ethereum/go-ethereum/releases/tag/v1.17.3
https://github.com/ethereum/go-ethereum/releases/tag/v1.17.4
https://github.com/ethereum/go-ethereum/releases/tag/v1.17.5
PR: 298514
Approved by: Enrique Fynn <me@enriquefynn.com> (maintainer)
Approved by: osa, vvd (Mentors, implicit)
MFH: 2026Q3
(cherry picked from commit 9addc34680674bfd74f85db9aba8249f2659675b)
aaccc19 |
14:38 Vladimir Druzenko (vvd) Author: geoffroy desvernay 2026Q3
mail/sympa: Update 6.2.78 => 6.2.80
Changelog:
https://github.com/sympa-community/sympa/blob/6.2.80/NEWS.md
Improve port:
- Remove unnecessary GNU_CONFIGURE_MANPREFIX.
- Remove unused ICONSDIR.
- Fix antipattern BUILD_DEPENDS=RUN_DEPENDS.
- Fix warning from portclippy.
PR: 298519 283227
Sponsored by: UNIS Labs (vvd, improve port)
Co-authored-by: Vladimir Druzenko <vvd@FreeBSD.org>
MFH: 2026Q3
(cherry picked from commit 00e774dc9c7575932f14bd8bdfde7619935e8e67)
299c79d |
14:38 Vladimir Druzenko (vvd) Author: FiLiS 2026Q3
mail/sympa: Update WWW
The website for the community of Sympa have moved to the
new domain "sympa.community".
PR: 297888
Approved by: Geoffroy Desvernay <dgeo@centrale-med.fr>
(maintainer timeout, 2+ weeks)
Approved by: osa, vvd (Mentors, implicit)
(cherry picked from commit b5beeff440fe0d7c0ec15d72e30bcefb6b30343f)
f6d6892 |
14:38 Vladimir Druzenko (vvd) Author: Mikael Urankar 2026Q3
mail/sympa: Update to 6.2.78
PR: 296993
Approved by: Geoffroy Desvernay (maintainer)
(cherry picked from commit 6d37b11fb72c94d0eedfeb734cb84092e9cc17f6)
834bc04 |
14:08 Vladimir Druzenko (vvd) 2026Q3
www/tomcat-devel: Update 11.0.25 => 11.0.26
Changelog:
https://tomcat.apache.org/tomcat-11.0-doc/changelog.html#Tomcat_11.0.26_(markt)
Sponsored by: UNIS Labs
MFH: 2026Q3
(cherry picked from commit 98833b1f3afd55588df84e9b3b5a8567338b8593)
f7eece9 |
14:08 Vladimir Druzenko (vvd) 2026Q3
- www/tomcat110 11.0.26
Open-source Java web server by Apache, 11.0.x branch
www/tomcat110: Update 11.0.25 => 11.0.26
Changelog:
https://tomcat.apache.org/tomcat-11.0-doc/changelog.html#Tomcat_11.0.26_(markt)
Sponsored by: UNIS Labs
MFH: 2026Q3
(cherry picked from commit 64e45b06c0a3664d785a7e97edfcf01f3ce4961a)
2d16775d |
14:07 Vladimir Druzenko (vvd) 2026Q3
- www/tomcat101 10.1.60
Open-source Java web server by Apache, 10.1.x branch
www/tomcat101: Update 10.1.59 => 10.1.60
Changelog:
https://tomcat.apache.org/tomcat-10.1-doc/changelog.html#Tomcat_10.1.60_(schultz)
Sponsored by: UNIS Labs
MFH: 2026Q3
(cherry picked from commit 88d3596b78344a4037923eb5cb2ad93703c26958)
681c537 |
12:54 Gleb Popov (arrowd) 2026Q3
audio/libcoverart: Mark deprecated
PR: 298440
Approved by: jhale (maintainer)
(cherry picked from commit fd37c532af0d3c51d0b877f02f63bf2a24f7b38d)
94ded800 |
12:32 Hiroki Tagato (tagattie) 2026Q3
- devel/electron42 42.11.1
Build cross-platform desktop apps with JavaScript, HTML, and CSS
devel/electron42: Use esbuild binary provided by npm package registry
The chromium upstream expects a specific version of esbuild for
building, which is sometimes different from the one we have in the
ports tree. To prevent such a discrepancy, always use the binary of
the same version as the upstream one which is provided by the npm
package registry.
Reported by: Andrea Venturoli <ml@netfence.it> (via ports)
(cherry picked from commit c8ee96bf65adf08ff9c8a7a87cc7829eeb4858d3)
fa692c5 |
11:41 Kai Knoblich (kai) 2026Q3
- games/anki 26.09
Flashcard trainer with spaced repetition
games/anki: Update to 26.09
* Migrate to Yarn v4 to be in sync with upstream. To ensure that the
preinstalled Yarn v4 is actually used, a few minor workarounds and a
new variable PREINSTALLED_YARN are required.
The latter is necessary because, with Yarn v2 and newer, environment
variables prefixed with YARN_ can no longer be used.
* Sort pkg-plist while I'm here.
Changelog:
https://github.com/ankitects/anki/releases/tag/26.09
MFH: 2026Q3
Security: ce54d883-b060-11f1-b187-901b0edee044
(cherry picked from commit 65434f71218e5a8114ea642231acaeb609ced7bd)
5dab6d5 |
11:38 Kai Knoblich (kai) 2026Q3
- games/anki 26.08.1
Flashcard trainer with spaced repetition
games/anki: Update to 26.08.1
Changelog:
https://github.com/ankitects/anki/releases/tag/26.08.1
(cherry picked from commit 129eb038c94eaf612d43f7d8b45ff28114fa0568)
ba14599 |
11:38 Kai Knoblich (kai) 2026Q3
- games/anki 26.08
Flashcard trainer with spaced repetition
games/anki: Update to 26.08
* Switch to USES=npm and adjust/remove the relevant parts.
Although Yarn v4 is already being used according to "package.json",
stick with Yarn v1 for now to complete a 1:1 migration from the before
to the after state with respect to the used tools during build.
Changelog:
https://github.com/ankitects/anki/releases/tag/26.08
(cherry picked from commit 9b3e128970f2c53a39eed9b0157514459a5b131f)
fb26c0a |
03:37 Yuri Victorovich (yuri) 2026Q3
- www/py-yt-dlp 2026.08.19
Program for downloading videos from various platforms (devel files)
- www/yt-dlp 2026.08.19
Command-line program for downloading videos from various platforms
www/{,py-}yt-dlp: update 2026.06.09 → 2026.08.19
(cherry picked from commit ece2973bbf55587b226d09646fddbb2d041d3c0e)
649a169 |
03:27 Yuri Victorovich (yuri) 2026Q3
- www/srt 1.5.6
Secure Reliable Transport (SRT) Protocol
www/srt: Update WWW
The previous commit for 1.5.6 resolved the following CVEs:
* CVE-2026-55869: Heap-Based Buffer Overflow in KMREQ Handling
* CVE-2026-55868: Encryption State Machine Downgrade
ChangeLog: https://github.com/Haivision/srt/releases/tag/v1.5.6
(cherry picked from commit 88c18f3c4026ce1b5bdf10c758e5ea31da414706)
baf7cfb |
03:27 Yuri Victorovich (yuri) 2026Q3
- www/srt 1.5.6
Secure Reliable Transport (SRT) Protocol
www/srt: update 1.5.5 → 1.5.6
(cherry picked from commit 52763c825cdc227b0d635c5210deb94870fb4da2)
97159dd |
03:27 Yuri Victorovich (yuri) Author: Juhani Krekelä 2026Q3
- www/srt 1.5.5_1
Secure Reliable Transport (SRT) Protocol
www/srt: add SRTFFPLAY option
PR: 293009
(cherry picked from commit 7bf6e3c5bc1be48baacd5c7256c7a2621b2842ac)
1b69519 |
00:59 Vladimir Druzenko (vvd) Author: Tobias Rehbein 2026Q3
games/freeciv21: Update 3.1.2 => 3.1.3
Changelog:
https://github.com/longturn/freeciv21/releases/tag/v3.1.3
PR: 298444
Sponsored by: UNIS Labs (vvd, commit patch)
MFH: 2026Q3
(cherry picked from commit ab9b0dae6a5e47f58aee3fe0f123e558c869ee25)
73dd2e4c |
00:59 Vladimir Druzenko (vvd) Author: Tobias Rehbein 2026Q3
games/freeciv21: Update 3.1.1 => 3.1.2
While here, drop the custom variable FC21_VERSION and use standard
variables instead.
Changelog: https://github.com/longturn/freeciv21/releases/tag/v3.1.2
PR: 297212
Reported by: Tobias Rehbein <tobias.rehbein@web.de> (maintainer)
(cherry picked from commit 66168c364250bb2d978740f89aa046befc65547a)
aa52691 |
|
Monday, 14 Sep 2026
|
23:51 Yusuf Yaman (nxjoseph) Author: Boris Korzun 2026Q3
- net/kafka 4.3.1
Distributed streaming platform
net/kafka: Update 4.3.0 => 4.3.1
While here:
- Fix incorrect behaviour of log4j2 in rc.d script.
- Sort SUB_LIST (pet portfmt).
Release Announcement:
https://kafka.apache.org/blog/2026/06/25/apache-kafka-4.3.1-release-announcement/
Upgrading Notes:
https://kafka.apache.org/43/getting-started/upgrade/#upgrading-to-431
Release Notes:
https://downloads.apache.org/kafka/4.3.1/RELEASE_NOTES.html
PR: 298075
Approved by: Pavel Timofeev <timp87@gmail.com> (maintainer timeout, 2 weeks)
Approved by: osa, vvd (Mentors, implicit)
MFH: 2026Q3
(cherry picked from commit 2a931b245eac4ba051225af64aa4ebb63d4edb76)
602759e |
21:42 Christoph Moench-Tegeder (cmt) 2026Q3
mail/thunderbird-esr: update to 153.3.0 (rc1)
Release Notes:
https://www.thunderbird.net/en-US/thunderbird/153.3.0esr/releasenotes/
(cherry picked from commit b3ecd66fdfaf12ad21079105cd97b0a722550fef)
60c4ec8 |
21:32 Vladimir Druzenko (vvd) Author: Thibault Payet 2026Q3
- multimedia/ffmpeg4 4.4.8
Realtime audio/video encoder/converter and streaming server (legacy 4.* series)
multimedia/ffmpeg4: Update 4.4.7 => 4.4.8
Changelog:
https://git.ffmpeg.org/gitweb/ffmpeg.git/blob_plain/n4.4.8:/Changelog
https://github.com/FFmpeg/FFmpeg/blob/n4.4.8/Changelog
While here replace spaces with tabs.
PR: 298492
Sponsored by: UNIS Labs (vvd, commit patch)
MFH: 2026Q3
(cherry picked from commit 41af21de2d1b8205cee5f38d6b410e9964e3e4cd)
4b703c5 |
20:40 Vladimir Druzenko (vvd) Author: Martin Filla 2026Q3
- www/librewolf 155.0.1
Custom version of Firefox, focused on privacy, security and freedom
www/librewolf: Update 154.0.1-3 => 155.0.1-1
Release Notes:
https://www.firefox.com/en-US/firefox/155.0.1/releasenotes/
PR: 298478
Sponsored by: UNIS Labs (vvd, commit patch)
MFH: 2026Q3
(cherry picked from commit 17e40b092b4f18b37a8434be80a99d4e4240fdf6)
a0760a8 |
20:15 Nuno Teixeira (eduardo) 2026Q3
sysutils/siegfried: Update to 1.11.7
ChangeLog:
https://github.com/richardlehane/siegfried/blob/main/CHANGELOG.md#v1117-2026-09-14
MFH: 2026Q3
(cherry picked from commit 1b36c384dc1b0cd7c3a02a21d0c1768b08532abe)
75789a3 |
19:36 Rodrigo Osorio (rodrigo) 2026Q3
- net/rsync 3.5.0_1
Network file distribution/synchronization utility
net/rsync: fix force-change patch
Fix force-change issue, where --force-change
cannot descend into an immutable directory after
3.5.0 update.
PR: 298358
Reported by: Eero Hänninen <fax@nohik.ee>
MFH: 2026Q3
(cherry picked from commit b13f87c3bf553786da39f8b93c91d155cc049afd)
b57e3bf |
18:19 Hajimu UMEMOTO (ume) 2026Q3
japanese/mozc-server: Fix build with python 3.12 and later
(cherry picked from commit 4b7cbcc275ae33646e304909659de2d202dd0044)
Approved by: hrs
4bd3058 |
15:53 Gleb Popov (arrowd) 2026Q3
- net/libcapn 1.1.0_1
C Library to interact with Apple Push Notification Service
net/libcapn: Mark deprecated
PR: 298438
Approved by: Gasol Wu <gasol.wu@gmail.com> (maintainer)
(cherry picked from commit d7f47e906fedc61268cdcd16ea861c14a5168973)
8511683 |
15:48 Gleb Popov (arrowd) 2026Q3
- games/OpenTomb 2018.02.03.a_3
Open-source Tomb Raider 1-5 engine remake
games/OpenTomb: Mark deprecated
PR: 298431
Approved by: pkubaj (maintainer)
(cherry picked from commit fa1b35f56a7535267b59229af60a05ba95a015b3)
6b1dc6c |
11:38 Kai Knoblich (kai) 2026Q3
textproc/py-pypa-docs-theme: Deprecate/Set to expire
* Upstream archived the repository in 2024 and there are no consumers
left in the tree.
* Bump PORTREVISION to get users noticed about the deprecation.
MFH: 2026Q3
(cherry picked from commit 5b57df799f802495f1facdf08b320af000121f1e)
4d8dbeb |
10:56 Yusuf Yaman (nxjoseph) Author: Denny Page 2026Q3
net/mcast-bridge: Update 1.6.0 => 1.7.0
Changelog:
https://github.com/dennypage/mcast-bridge/releases/tag/v1.7.0
PR: 298464
Approved by: osa, vvd (Mentors, implicit)
MFH: 2026Q3
(cherry picked from commit 42832f6735d3d33d73a84893aab633e712fdc201)
5122c9c |
|
Sunday, 13 Sep 2026
|
22:24 Yusuf Yaman (nxjoseph) Author: Mamadou Babaei 2026Q3
- www/gitea 1.27.3
Compact self-hosted Git service
www/gitea: Security update 1.27.2 => 1.27.3
Release Notes:
https://blog.gitea.com/release-of-1.27.3/
PR: 298072
Approved by: ports@foss-daily.org (maintainer timeout, 2 weeks)
Approved by: osa, vvd (Mentors, implicit)
Security: CVE-2026-66877
Security: CVE-2026-71184
Security: CVE-2026-68957
Security: CVE-2026-60010
Security: CVE-2026-70406
Security: CVE-2026-63792
Security: CVE-2026-66874
Security: CVE-2026-68964
Security: CVE-2026-67577
Security: CVE-2026-66849
Security: CVE-2026-73135
Security: CVE-2026-78433
Security: CVE-2026-70407
Security: CVE-2026-73126
Security: CVE-2026-70400
Security: CVE-2026-70396
Security: CVE-2026-63021
Security: CVE-2026-62925
Security: CVE-2026-73273
Security: CVE-2026-60021
Security: CVE-2026-60018
Security: CVE-2026-73130
Security: CVE-2026-70402
Security: CVE-2026-66853
Security: CVE-2026-71301
Security: CVE-2026-73504
MFH: 2026Q3
(cherry picked from commit 8d487ea14372a33ef975d55d684f2df6825fb867)
344a598 |
21:52 Yusuf Yaman (nxjoseph) Author: Daniel Bell 2026Q3
sysutils/ngbuddy: Update 1.0 => 1.1
This update also corrects rc.d service order
reported by feld@ in PR 298188.
While here, update maintainer address.
Commit log:
https://github.com/bellhyve/ngbuddy/compare/v1.0...v1.1
PR: 298371
Approved by: osa, vvd (Mentors, implicit)
MFH: 2026Q3
(cherry picked from commit 9daead358475786175c3d923c4d8812179895800)
23b3990 |
19:39 R. Christian McDonald (rcm) 2026Q3
security/strongswan: Update 6.0.7 => 6.1.0
Changelog:
https://github.com/strongswan/strongswan/releases/tag/6.1.0
PR: 298372
MFH: 2026Q3
Security: CVE-2026-78123
Security: CVE-2026-78124
Security: CVE-2026-78126
Security: CVE-2026-78127
Security: CVE-2026-78129
Security: CVE-2026-78130
Security: CVE-2026-78131
Security: CVE-2026-78132
Security: CVE-2026-78133
Security: CVE-2026-78134
Security: CVE-2026-78135
Sponsored by: Rubicon Communications, LLC ("Netgate")
(cherry picked from commit 5a7f75878c1b8dabb3b333f523eba2c1c958ed8a)
28b521d |
15:30 Vladimir Druzenko (vvd) 2026Q3
www/waterfox: Update 6.7.1.1 => 6.7.3
Release Notes:
https://www.waterfox.com/releases/6.7.2/
https://www.waterfox.com/releases/6.7.3/
Changelog:
https://github.com/BrowserWorks/waterfox/releases/tag/6.7.2
https://github.com/BrowserWorks/waterfox/releases/tag/6.7.3
PR: 298443
Approved by: Martin Filla <freebsd@sysctl.cz> (maintainer)
Sponsored by: UNIS Labs
MFH: 2026Q3
(cherry picked from commit a06489e807ece44cb89c2839c2acb2e8a5adbd0e)
b36e54e |
15:08 Yusuf Yaman (nxjoseph) Author: Thierry Lelegard 2026Q3
multimedia/tsduck: Update 3.44 => 3.45
While here:
- Add LICENSE_FILE.
- Remove new line between *_DEPENDS (pet portlint).
Changelog:
https://github.com/tsduck/tsduck/blob/v3.45-4798/CHANGELOG.txt
PR: 298457
Approved by: osa, vvd (Mentors, implicit)
MFH: 2026Q3
(cherry picked from commit dfaab63897358b72fa1f2de582feb0bb8cb3c8d9)
ef78eb4 |
15:04 Michael Osipov (michaelo) Author: Po-Chuan Hsieh 2026Q3
- ftp/curl 8.22.0
Command line tool and library for transferring data with URLs
ftp/curl: Update to 8.22.0
- Remove TLS_SRP option
Changes: https://curl.se/changes.html
Security: CVE-2026-13608, CVE-2026-18924, CVE-2026-19931, CVE-2026-80229,
CVE-2026-80230, CVE-2026-80231, CVE-2026-80255, CVE-2026-82208, CVE-2026-82209
(cherry picked from commit 83a2de6dcfaf4075aab01ae67a883604a16ff828)
4b24fb9 |
14:01 Thomas Zander (riggs) 2026Q3
audio/musicpd: Update to upstream release 0.24.15
Bugfix release, see
https://raw.githubusercontent.com/MusicPlayerDaemon/MPD/v0.24.15/NEWS
MFH: 2026Q3
(cherry picked from commit 14fadd7044e10e6bd2112bb9031133d7ffb10ac3)
804ea056 |
11:49 Dag-Erling Smørgrav (des) 2026Q3
www/forgejo15: Update to 15.0.8
Changelog:
*
https://codeberg.org/forgejo/forgejo/src/branch/forgejo/release-notes-published/15.0.8.md
MFH: 2026Q3
(cherry picked from commit ce4dafed2c9b1f4e58fd379e8acc5e2b9e1fc542)
3d3771b |
08:12 Gleb Popov (arrowd) 2026Q3
devel/libevdevplus: Mark deprecated
Approved by: bapt (maintainer)
(cherry picked from commit 1d0be47ce96e27838990761e58b3476a9f772cc3)
d800f3d |
08:10 Gleb Popov (arrowd) 2026Q3
security/kickpass: Mark deprecated
Approved by: bapt (maintainer)
(cherry picked from commit 7b0eb8730432b3746f46ab48cabd930493dc6cca)
0364e831 |
|
Saturday, 12 Sep 2026
|
23:12 Yusuf Yaman (nxjoseph) Author: Alexander Moisseev 2026Q3
net-mgmt/rubygem-oxidized: Fix rc script restart race with daemon(8)
PR: 298397
Approved by: Nick Hilliard <nick@foobar.org> (maintainer)
Approved by: osa, vvd (Mentors, implicit)
MFH: 2026Q3
(cherry picked from commit 76fac30da491935c886be15985b2d30c543d1018)
2cb2b25 |
19:22 Thomas Zander (riggs) 2026Q3
multimedia/mkvtoolnix: Update to upstream release 101.0
Details:
- Mostly bug fixes this time, see
https://mkvtoolnix.download/doc/NEWS.md
MFH: 2026Q3
(cherry picked from commit 7479dba97836779234899b5792e1b0968bdc2089)
f472458 |
17:19 Gleb Popov (arrowd) 2026Q3
- devel/libarea 20191031_2
CAM-related software for profile and pocketing operations
devel/libarea: Mark deprecated
(cherry picked from commit 1c68488dc6145e53b522d8de6c1de89d63fe80c1)
2def6eb |
17:18 Vladimir Druzenko (vvd) 2026Q3
multimedia/tautulli: Update 2.16.0 => 2.18.1 (14 CVEs)
Changelog:
https://github.com/Tautulli/Tautulli/blob/v2.18.1/CHANGELOG.md
PR: 295759
Approved by: christer.edwards@gmail.com (maintainer, timeout 2 weeks)
Security: CVE-2026-49995
Security: CVE-2026-45381
Security: CVE-2026-52835
Security: CVE-2026-54915
Security: CVE-2026-41065
Security: CVE-2026-40605
Security: CVE-2026-43984
Security: CVE-2026-43986
Security: CVE-2026-43985
Security: CVE-2026-28505
Security: CVE-2026-31831
Security: CVE-2026-31799
Security: CVE-2026-32275
Security: CVE-2026-31804
Sponsored by: UNIS Labs
MFH: 2026Q3
(cherry picked from commit 404b001f83102a2d1885d25248f3f09c763d5a52)
6c6880b |
17:10 R. Christian McDonald (rcm) 2026Q3
security/strongswan: Take over maintainership
PR: 298404
Approved by: diizzy, vvd
MFH: 2026Q3
Sponsored by: Rubicon Communications, LLC ("Netgate")
(cherry picked from commit e0d875b0cc31ff6f10dd3cf6090fd8d10e1d27cf)
12c2126 |
17:03 Vladimir Druzenko (vvd) 2026Q3
audio/fossmixer: Fix i386 build
PR: 297843
Approved by: Jani Salonen <salojan@goto10.co> (maintainer, timeout 2 weeks)
Sponsored by: UNIS Labs (vvd, commit patch)
MFH: 2026Q3
(cherry picked from commit 98d95165bf1546bd6a0816659ab3c568905aba38)
07c92ce |
16:05 Yusuf Yaman (nxjoseph) 2026Q3
net-im/matterircd: Build with Go 1.26 on quarterly
The 2026Q3 branch still defaults to Go 1.25, while upstream's go.mod
requires Go 1.26, so the build fails with GOTOOLCHAIN=local.
This is a direct commit to the branch: main already defaults to Go 1.26
and builds the port with plain USES=go:modules.
Reported by: Corey Halpin <chalpin@cs.wisc.edu> (maintainer, by mail)
Approved by: osa, vvd (Mentors, implicit)
49de8ee |
14:26 Gleb Popov (arrowd) 2026Q3
graphics/qcomicbook: Mark deprecated
(cherry picked from commit 892389fd9fc50c5cf570434052a922c881005ed6)
cdad73c |
14:26 Gleb Popov (arrowd) 2026Q3
- devel/kdbg 3.0.1_3
Graphical user interface around gdb using KDE
devel/kdbg: Mark deprecated
PR: 289584
(cherry picked from commit d3720208bbcc251c3b668d012399bb2b8fb825b4)
419b940 |
14:23 Gleb Popov (arrowd) 2026Q3
textproc/kiss-templates: Mark deprecated
(cherry picked from commit 9d1d72208fa451e1cd8ba7878139ddf6e40f1bb6)
de1840f |
|
Friday, 11 Sep 2026
|
19:57 Siva Mahadevan (siva) 2026Q3
bsd.sites.mk: use static CDN to download rust crates
static.crates.io is the recommended upstream download
path. This avoids "403 Forbidden" rate limiting results
when trying to download crates too fast. This also
seems to improve download speeds/latency.
As per https://crates.io/data-access#crate-content,
> Crates can be downloaded directly from the crates.io CDN
> [...]
> No rate limits apply to static.crates.io at present.
And as per https://crates.io/data-access#api,
> you are welcome to use the crates.io API provided you abide by the following
limits:
> * A maximum of 1 request per second, and
> * A user-agent header that identifies your application.
PR: 298395
Reviewed by: mikael
Differential Revision: https://reviews.freebsd.org/D59575
(cherry picked from commit bc18f00c490cd54dfe38e2d94d8c4feae2815f0f)
8f48a1c |
18:55 Nuno Teixeira (eduardo) 2026Q3
security/gopass: Update to 1.17.2
ChangeLog: https://github.com/gopasspw/gopass/releases/tag/v1.17.2
https://github.com/gopasspw/gopass/releases/tag/v1.17.1
MFH: 2026Q3
(cherry picked from commit 211be70dc71f5b55bb84e4f7496ecfc00e4d71f9)
04f24b2 |
18:54 Nuno Teixeira (eduardo) 2026Q3
security/gopass: Update to 1.17.0
ChangeLog: https://github.com/gopasspw/gopass/releases/tag/v1.17.0
(cherry picked from commit ff5fe3fd162f87b5b04483ea41b0dd90072ee6ea)
42d75fa |
18:33 Nuno Teixeira (eduardo) 2026Q3
security/cryptopp-modern: Update to 2026.9.1
ChangeLog:
https://github.com/cryptopp-modern/cryptopp-modern/releases/tag/2026.9.1
MFH: 2026Q3
(cherry picked from commit a481ad6449f3e67daebf914d71a59c8867ba09b3)
3c776c0 |
18:33 Nuno Teixeira (eduardo) 2026Q3
security/cryptopp-modern: Add TOOLS option
TOOLS option will install cryptest toguether with TestData and TestVectors,
allowing the installed binary to run cryptest v and cryptest tv as post-install
checks.
PR: 297278
(cherry picked from commit 9bdadd2ec97025b8d949fe39df30d97b4046242e)
761a115 |
18:33 Nuno Teixeira (eduardo) 2026Q3
security/cryptopp-modern: Update to 2026.8.1
- Put testing as safe
ChangeLog:
https://github.com/cryptopp-modern/cryptopp-modern/releases/tag/2026.8.1
(cherry picked from commit 3dc2a6a2f1615a1162afd061f4ac6b63287458d9)
bb46197 |
18:33 Nuno Teixeira (eduardo) 2026Q3
security/cryptopp-modern: Update to 2026.8.0
- Build with -DCRYPTOPP_BUILD_SHARED=ON
- Set tests as TESTING_UNSAFE
ChangeLog:
https://github.com/cryptopp-modern/cryptopp-modern/releases/tag/2026.8.0
(cherry picked from commit 3b83c364ef8a8b4636b04b04fd568c852a870fa6)
3c4e385 |
15:13 Nicola Vitale (nivit) 2026Q3
games/polyglot: Mark DEPRECATED
- This software is obsolete[1] and the original master site is no longer
available
- Add an expiration date
- Bump PORTREVISION
[1] https://chessprogramming.org/PolyGlot#retirement
(cherry picked from commit 4e79f0763739f8e1cc6c45e4e3a56a1131684833)
69eb8f2 |
10:37 Jimmy Olgeni (olgeni) 2026Q3
net/redpanda-connect: Build with Go 1.26 on quarterly
The 2026Q3 branch still defaults to Go 1.25, while upstream's go.mod
requires go >= 1.26.6, so the build fails with GOTOOLCHAIN=local.
This is a direct commit to the branch: main already defaults to Go 1.26
and builds the port with plain USES=go:modules.
adf6a0c |
10:37 Jimmy Olgeni (olgeni) 2026Q3
net/redpanda-connect: Update to 4.109.0
Security: 5d69ee28-adb9-11f1-9d0e-4c526214c986
(cherry picked from commit 773bebfb52c033c548f2b7c44a77597c6ff6a86d)
b44acdc |
10:37 Jimmy Olgeni (olgeni) 2026Q3
net/redpanda-connect: Update to 4.108.0
(cherry picked from commit bc6bd8472100c8b13a5e53defeab893b922de77a)
a58c05f |
10:37 Jimmy Olgeni (olgeni) 2026Q3
net/redpanda-connect: Update to 4.107.2
(cherry picked from commit ac1195b3e9401688f26905c86d5c25c3960d7cf5)
a1ab155 |
10:37 Jimmy Olgeni (olgeni) 2026Q3
net/redpanda-connect: Update to 4.107.1
(cherry picked from commit 975170c9930fae7a75c433475ed9d5f63ea48464)
5a68f2a |
10:37 Jimmy Olgeni (olgeni) 2026Q3
net/redpanda-connect: Set the version at build time
(cherry picked from commit afd3efee4bdfaedd4962bc5d23799f4263253779)
30099ec |
10:37 Jimmy Olgeni (olgeni) 2026Q3
net/redpanda-connect: Update to 4.107.0
(cherry picked from commit 82cf3ac11d49dc792fd658c659fa67f1d4e52f4c)
2fcfdf4 |
10:37 Jimmy Olgeni (olgeni) 2026Q3
net/redpanda-connect: Update to 4.106.0
(cherry picked from commit 71fc27fec8488ca7ec64de9c1f35489b8c5cd9a5)
c1485dc |
10:37 Jimmy Olgeni (olgeni) 2026Q3
net/redpanda-connect: Update to 4.104.0
(cherry picked from commit cb2572e6607b6758ba7dbdce2543ab5f5e032c0b)
5c4fc36 |
10:37 Jimmy Olgeni (olgeni) 2026Q3
net/redpanda-connect: Update to 4.103.1
(cherry picked from commit ae7dc13cff22c5692abb1c28e5c075c8d4492122)
a99c392 |
10:29 Ashish SHUKLA (ashish) 2026Q3
security/tailscale: Update to 1.102.4
MFH: 2026Q3
(cherry picked from commit 350532af8e4d5743e2744802ab1e940202d42073)
f8f43ef |
|
Thursday, 10 Sep 2026
|
21:05 Nuno Teixeira (eduardo) 2026Q3
- math/add 20260909
Full-screen editing calculator
math/add: Update to 20260909
ChangeLog: https://invisible-island.net/add/CHANGES.html#index-t20260909
MFH: 2026Q3
(cherry picked from commit a591a2b1f4871832d771835e51b14b5c0a456098)
63868a1 |
20:54 Hiroki Tagato (tagattie) 2026Q3
Mk/Uses/npm.mk: Add new variable NPM_PREFETCH_ARCHS
A node modules archive created by the prefetch function may vary
depending on the architecture, especially if the archive contains
architecture-specific node modules.
This variable can be used to indicate which architectures the node
modules archives are prepared for.
If you prepared the archives for amd64 and aarch64 architecutres,
specify:
NPM_PREFETCH_ARCHS= aarch64 amd64
(cherry picked from commit 0b23ce8d9eea396f867085461ad8761c80da7173)
3730290 |
20:54 Hiroki Tagato (tagattie) 2026Q3
Mk/Uses/npm.mk: Always use X' for denoting BLOB data type
SQLite's .dump always uses X' (capital X) for BLOB. So it's better we
use X' in the code for securing reproducibility of node modules
tarball created by pnpm.
Also, conversion from x' to X' in output dump file in case x' is
accidentally mixed in.
Reported by: pkg-fallout
(cherry picked from commit f3216dad74a016485bfcf09c6acbc830129cdf86)
48f1d60 |
20:54 Hiroki Tagato (tagattie) Author: Bryan Everly 2026Q3
Mk/Uses/npm.mk: Fix typo (!defied -> !defined)
PR: 297455
Reported by: Bryan Everly <bryan@theeverlys.com>
(cherry picked from commit df0c9b0dabc8975edfa75747711d5709bd6ea92b)
3e26142 |
20:54 Hiroki Tagato (tagattie) Author: Shin-ichi Nagamura 2026Q3
Mk/Uses/npm.mk: Quote TMPDIR and WRKDIR in shell comparisons
When TMPDIR is unset, the generated shell command becomes:
if [ != ${WRKDIR} ]; then
and /bin/sh reports:
[: !=: unexpected operator
Quoting both variables fixes the issue.
PR: 297181
Reported by: Shin-ichi Nagamura <core@zsc.jp>
(cherry picked from commit cbeb1be34ba3107114345e52c6b57adc2ec34060)
58dd07b |
20:54 Hiroki Tagato (tagattie) 2026Q3
Mk/Uses/npm.mk: Copy pnpm-workspace.yaml from PKGJSONSDIR to WRKSRC when it
exists
(cherry picked from commit b700ef8ce3d6fb688dc59a428f6cd4edeb961c2f)
a3e5136 |
20:54 Hiroki Tagato (tagattie) 2026Q3
Mk/Uses/npm.mk: Remove temp directory in pnpm store before making archive
Leaving the directory in place may cause the node modules archive to
be unreproducible.
(cherry picked from commit 89e5e41d60c17231cadec381931ae4f095e1752a)
862270f |
20:54 Hiroki Tagato (tagattie) 2026Q3
Mk/Uses/npm.mk: Unbreak make index
In the previous commit, NPM_VER_MAJOR and NPM_VER_MINOR are left
undefined when NPM_VER is manually specified. This change corrects the
error.
Reported by: Xavier Humbert <xavier@groumpf.org> (via ports),
antoine (via ports-committers)
Fixes: dad28f35db5a (Mk/Uses/npm.mk: Correct NPM version comparison)
(cherry picked from commit ed58cdeda4a8c595ead11be29c8548b2153d6d47)
f1ec3ee |
20:54 Hiroki Tagato (tagattie) 2026Q3
Mk/Uses/npm.mk: Correct NPM version comparison
Assuming NPM version follows the semantic versioning, NPM_VER:R was
used to obtain the major and the minor version of NPM. However, when
the minor version is equal or greater than 10, the comparison
NPM:R >= 11.3 does not make sense. This change corrects version
comparison using major and minor combination.
(cherry picked from commit dad28f35db5afc535469fdffc9b6042e5dc25871)
8ffb09f |
20:14 Christoph Moench-Tegeder (cmt) 2026Q3
- www/firefox 156.0,2
Web browser based on the browser portion of Mozilla
www/firefox: update to 156.0 (rc1)
Release Notes (soon):
https://www.firefox.com/en-US/firefox/156.0/releasenotes/
(cherry picked from commit fe9b504c67fb9aca4f8ebbdc5152bd02620fded9)
2735185 |
20:13 Christoph Moench-Tegeder (cmt) 2026Q3
- security/nss 3.129
Libraries to support development of security-enabled applications
security/nss: update to 3.129
Release Notes:
https://firefox-source-docs.mozilla.org/security/nss/releases/nss_3_129.html
Also, while cleaning up patches for bugs fixed upstream, remove parts
for long unsupported architectures.
(cherry picked from commit 9c22f6eb5b81a94b0986dc3768177c9cd7458a3d)
a748612 |
19:58 Yusuf Yaman (nxjoseph) Author: Leo Vandewoestijne 2026Q3
- dns/knot3 3.6.0
High performance authoritative-only DNS server
dns/{knot3,py-libknot}: Update 3.5.8 => 3.6.0
Changelog:
https://www.knot-dns.cz/2026-09-08-version-360.html
PR: 298376
Approved by: osa, vvd (Mentors, implicit)
MFH: 2026Q3
(cherry picked from commit 916220ef151d57692cff0f97c7d1b89e99005d76)
e3a4958 |
15:26 Dave Cottlehuber (dch) Author: hayzamjs 2026Q3
- sysutils/sylve 0.3.1
Lightweight GUI for managing bhyve, jails, ZFS, and networking
sysutils/sylve: Update to 0.3.1
Changelog: https://github.com/AlchemillaHQ/Sylve/releases/tag/v0.3.1
Sponsored by: The FreeBSD Foundation
Differential Revision: https://reviews.freebsd.org/D59480
(cherry picked from commit 458dbcf55b55c6f387272c5d47f4f6c8d4962ca5)
Approved by: maintainer
Event: EuroBSDcon Devsummit 2026
d94cd8f |
10:04 Vladimir Druzenko (vvd) Author: Herbert J. Skuhra 2026Q3
databases/sqlcipher: Update 4.17.0 => 4.19.0
Releae Notes:
https://www.zetetic.net/blog/2026/08/18/sqlcipher-4.18.0-release/
https://www.zetetic.net/blog/2026/09/08/sqlcipher-4.19.0-release/
PR: 297978
Approved by: jharris@widomaker.com (maintainer, timeout 2 weeks)
Sponsored by: UNIS Labs (vvd, commit patch)
MFH: 2026Q3
(cherry picked from commit 78c872a443eee7eb5e9747ac5dd4e3c1fda03777)
83cde95 |
06:50 Koichiro Iwao (meta) Author: Po-Chuan Hsieh 2026Q3
devel/ruby-build: Update to 20260902
Changes: https://github.com/rbenv/ruby-build/releases
(cherry picked from commit 8c52286f1b68f7b75bc1dd0af75ed0930e93c000)
ca5794b |
06:50 Koichiro Iwao (meta) 2026Q3
- net/xrdp-devel 0.10.80.b20260702_1,1
Open source Remote Desktop Protocol (RDP) server (development version)
net/xrdp-devel: Use canonical spelling of USERS/GROUPS
Applying D59324 to net/xrdp-devel as well.
Reported by: cperciva
Fixes: df5ed26f9502 ("net/xrdp-devel: Update to 0.10.80.b20241229 4c8c773")
Sponsored by: Amazon
Sponsored by: Cybertrust Japan
Differential Revision: https://reviews.freebsd.org/D59324
(cherry picked from commit af5bb2f2d8a6cdced3afa592dc490fb49ed0484b)
d2c7882 |
06:45 Koichiro Iwao (meta) Author: Colin Percival 2026Q3
- net/xrdp 0.10.6.1_1,1
Open source Remote Desktop Protocol (RDP) server
net/xrdp: Use canonical spelling of USERS/GROUPS
When the _xrdp user and group were added, they were listed as
USER= _xrdp
GROUP= _xrdp
which did not result in the user and group being created when the
package is installed.
Reviewed by: meta
Fixes: ee46045d223a ("net/xrdp: Update to 0.10.2-rc.1")
Sponsored by: Amazon
Differential Revision: https://reviews.freebsd.org/D59324
(cherry picked from commit 6e9e6da50fe9a5b1d4260a57a041e68b72694b6a)
dc7e183 |
00:45 Jan Beich (jbeich) 2026Q3
games/veloren-weekly: update to s20260909
Changes: https://gitlab.com/veloren/veloren/-/compare/f64ec65731...b2bf67917f
(cherry picked from commit b9f4dad8e5557c819e671e32ff4e546d486d6c46)
8fc9772 |
00:45 Jan Beich (jbeich) 2026Q3
- www/gallery-dl 1.32.11
Command-line program to download image galleries and collections
www/gallery-dl: update to 1.32.11
Changes: https://github.com/mikf/gallery-dl/releases/tag/v1.32.11
Reported by: GitHub (watch releases)
(cherry picked from commit 7c47912b306b6849f0ab28a65466bafcaf1bc57b)
1971a6d |
|
Wednesday, 9 Sep 2026
|
20:12 Jochen Neumeister (joneum) 2026Q3
security/ca_root_nss: Update to 3.129
Changes to the certificate store since 3.128:
- Removed Izenpe.com (server distrust after 2026-04-15, Mozilla bug
2017322: the attribute was set on the PKCS#11 trust object instead of
the certificate object, so it did not take effect until now)
Changelog:
https://groups.google.com/a/mozilla.org/g/dev-tech-crypto/c/ux-yy4Yk33U
MFH: 2026Q3
Sponsored by: Netzkommune GmbH
(cherry picked from commit f2f3940dcd641a9624fd40229d8c1b58fabdbd48)
4d48429 |
17:32 Christoph Moench-Tegeder (cmt) 2026Q3
- mail/thunderbird 155.0.1
Mozilla Thunderbird is standalone mail and news that stands above
mail/thunderbird: update to 155.0.1 (rc1)
Release Notes (soon):
https://www.thunderbird.net/en-US/thunderbird/155.0.1/releasenotes/
(cherry picked from commit a1df2f74ad168693fc6a8195c3d84489856d0d99)
ebdad45 |
17:31 Christoph Moench-Tegeder (cmt) 2026Q3
- www/firefox-esr 153.3.0,2
Web browser based on the browser portion of Mozilla
www/firefox-esr: update to 153.3.0 (rc1)
Release Notes (soon):
https://www.firefox.com/en-US/firefox/153.3.0/releasenotes/
(cherry picked from commit 48648a2733817eddd3f37a7d8ec32508560b261f)
c9fd955 |
16:26 Yusuf Yaman (nxjoseph) Author: Manuel Sabban 2026Q3
security/crowdsec: Security update 1.7.8 => 1.8.1
This update brings security fixes, bug fixes and improvements.
Changelogs:
- https://github.com/crowdsecurity/crowdsec/releases/tag/v1.8.0
- https://github.com/crowdsecurity/crowdsec/releases/tag/v1.8.1
PR: 298349
Approved by: osa, vvd (Mentors, implicit)
Security: GHSA-g2x2-jgfg-pg7g
Security: GHSA-rh69-4vqj-9gj8
MFH: 2026Q3
(cherry picked from commit 9f6b595fad9ab6fa1307c85cf8b2b6d8cd263cbc)
3bb6520 |
|
Tuesday, 8 Sep 2026
|
22:38 Vladimir Druzenko (vvd) Author: Generic Rikka 2026Q3
benchmarks/py-reframe-hpc: Update 4.10.2 => 4.10.3
Changelog:
https://github.com/reframe-hpc/reframe/releases/tag/v4.10.3
PR: 298318
Sponsored by: UNIS Labs (vvd, commit patch)
MFH: 2026Q3
(cherry picked from commit 5e7d6af56be652867e67258f422b0b8f94a80ff4)
68f1845 |