| Commits from the 2026Q1 branch |
|
FreshPorts has everything you want to know about FreeBSD software, ports, packages,
applications, whatever term you want to use.
Yesterday's Commits | Main Branch
|
|
Tuesday, 10 Feb 2026
|
23:15 Tiago Gasiba (tiga) 2026Q1
sysutils/android-file-transfer: Improve port Makefile
- fixes to qt6 components in Makefile
MFH: 2026Q1
(cherry picked from commit ffafa186f95899d0b3727b63aafd59b23e40d726)
15759b5 |
20:18 Po-Chuan Hsieh (sunpoet) 2026Q1
devel/py-python-semantic-release: Allow build with py-python-gitlab 7.0.0+
- Bump PORTREVISION for package change
PR: 291991
Reported by: pkg-fallout
(cherry picked from commit 0fec15ec217d1745d6b53cdb2b9881c5fa4b4731)
d92b800 |
20:18 Po-Chuan Hsieh (sunpoet) 2026Q1
devel/py-pydantic-yaml: Allow build with py-ruamel.yaml 0.19.0+
- Bump PORTREVISION for package change
It fixes build after 7e7493383b5e027b27e9136282856b66b1d2fa3d.
Reported by: pkg-fallout
(cherry picked from commit 7ed18480dcc71a1aaea178f8010aff94404e98d4)
b545961 |
20:18 Po-Chuan Hsieh (sunpoet) 2026Q1
- www/node25 25.3.0
V8 JavaScript for client and server
www/node25: Update to 25.3.0
Changes: https://github.com/nodejs/node/releases
https://github.com/nodejs/node/blob/main/doc/changelogs/CHANGELOG_V25.md
Security: CVE-2025-55130, CVE-2025-55131, CVE-2025-55132, CVE-2025-59465,
CVE-2025-59466, CVE-2026-21636, CVE-2026-21637
(cherry picked from commit 9facae53987d6fde4664a65c6fd889c4b46b549b)
912d635 |
20:18 Po-Chuan Hsieh (sunpoet) 2026Q1
- www/node24 24.13.0
V8 JavaScript for client and server
www/node24: Update to 24.13.0
Changes: https://github.com/nodejs/node/releases
https://github.com/nodejs/node/blob/main/doc/changelogs/CHANGELOG_V24.md
Security: CVE-2025-55130, CVE-2025-55131, CVE-2025-55132, CVE-2025-59465,
CVE-2025-59466, CVE-2026-21637
(cherry picked from commit 8a9209550d0b6d4f911e724ad6d27da9be78cc75)
c9a6a55 |
20:18 Po-Chuan Hsieh (sunpoet) 2026Q1
- www/node22 22.22.0
V8 JavaScript for client and server
www/node22: Update to 22.22.0
Changes: https://github.com/nodejs/node/releases
https://github.com/nodejs/node/blob/main/doc/changelogs/CHANGELOG_V22.md
Security: CVE-2025-55130, CVE-2025-55131, CVE-2025-55132, CVE-2025-59465,
CVE-2025-59466, CVE-2026-21637
(cherry picked from commit dd052a3b3b6a00cc732f5ceb911534e745f9c4ec)
0f74efd |
20:18 Po-Chuan Hsieh (sunpoet) 2026Q1
- www/node20 20.20.0
V8 JavaScript for client and server
www/node20: Update to 20.20.0
Changes: https://github.com/nodejs/node/releases
https://github.com/nodejs/node/blob/main/doc/changelogs/CHANGELOG_V20.md
Security: CVE-2025-55130, CVE-2025-55131, CVE-2025-55132, CVE-2025-59465,
CVE-2025-59466, CVE-2026-21637
(cherry picked from commit 033d7d9a722e8e5ab847bb98e10445fce5fbf1fe)
01dea38 |
20:18 Po-Chuan Hsieh (sunpoet) 2026Q1
textproc/translate-toolkit: Allow build with py-ruamel.yaml 0.19.0+
- Bump PORTREVISION for package change
It fixes build after 7e7493383b5e027b27e9136282856b66b1d2fa3d.
Reported by: pkg-fallout
(cherry picked from commit 6bebb158d657822d5964f63acb61920f7b6b62a1)
89e4820 |
19:57 Tiago Gasiba (tiga) 2026Q1
sysutils/android-file-transfer: Update to qt6
- qt5 is being deprecated, so move to qt6
MFH: 2026Q1
(cherry picked from commit b734a7a6046f029df5ad776a4b3b64fa96c34b3f)
f9268f8 |
19:29 Dimitry Andric (dim) 2026Q1
- lang/clisp 2.49.95+20241228_2
Common Lisp implementation
lang/clisp: fix build with clang >= 20
With clang 20 or higher lang/clisp fails to build, with errors similar to:
./lisp.run -B . -N locale -E UTF-8 -Emisc 1:1 -Epathname 1:1 -norc -m 2MW -M
interpreted.mem -q -c compiler.lisp -o ./
;; Compiling file
/wrkdirs/usr/ports/lang/clisp/work/clisp-c3ec11bab87cfdbeba01523ed88ac2a16b22304d/src/compiler.lisp
...
*** - LIST-INIT-START: start index 44801 too large for
(#(NIL
#S(HASH-TABLE :TEST STABLEHASH-EQ
#:WARN-IF-NEEDS-REHASH-AFTER-GC T
(#<BUILT-IN-CLASS SYMBOL> .
#<COMPILED-FUNCTION CLOS::MAKE-INSTANCE-<EMF-1>-1>)
(#<STANDARD-CLASS FUNCALLABLE-STANDARD-CLASS> .
#<SYSTEM-FUNCTION CLOS::%MAKE-INSTANCE>)
(#<STANDARD-CLASS STANDARD-CLASS> .
#<SYSTEM-FUNCTION CLOS::%MAKE-INSTANCE>)))
CLOS::COMPUTE-APPLICABLE-METHODS-EFFECTIVE-METHOD
#<STANDARD-GENERIC-FUNCTION MAKE-INSTANCE>)
0 errors, 0 warnings
*** Error code 1
The problems are caused by clisp's usage of -fwrapv, where the
developers implicitly assume this also makes pointer wrapping defined.
After https://github.com/llvm/llvm-project/commit/1295aa2e814 however,
-fwrapv no longer implies that, and you either have to add a clang
specific -fwrapv-pointer option, or use -fno-strict-overflow, which
works for both clang and gcc.
PR: 292672
Approved by: maintainer timeout (2 weeks)
MFH: 2026Q1
(cherry picked from commit d8ec68ea76d97ff43e709b813629c862a6bf8211)
c7b2e56 |
15:42 Robert Clausecker (fuz) 2026Q1
- devel/efivar 39_2
Tools and libraries to work with EFI variables
devel/efivar: exorcise -march=native
This fixes the build on powerpc64le.
Should also avoid the usual problems caused by -march=native.
Approved by: portmgr (build fix blanket)
MFH: 2026Q1
Sponsored by: Raptor Computing Systems, LLC
(cherry picked from commit 31cb697698ac528a3836564ffbaf68604866f622)
1c898b1 |
15:42 Robert Clausecker (fuz) 2026Q1
devel/kBuild: fix build on powerpc*
Add architecture-specific code to kHlpAssertBreakpoint() so that
the build progresses on powerpc-derived platforms.
This whole thing can probably be replaced with just
#define kHlpAssertBreakpoint __builtin_trap
but I have decided for the minimal invasive change for now.
Approved by: portmgr (build fix blanket)
Sponsored by: Raptor Computing Systems, LLC
MFH: 2026Q1
Please enter the commit message for your changes. Lines starting
(cherry picked from commit 982b130cfc058aa9bdc19933d2993393970e5833)
76c25ab |
15:42 Robert Clausecker (fuz) Author: Kristofer Peterson 2026Q1
games/xrobots: use portable fileno() instead of (*FILE)->_file
PR: 292939, 291610
MFH: 2026Q1
(cherry picked from commit ac2ba2b1dcbbeca1847f9deb06810483add94834)
5ddfedf |
15:42 Robert Clausecker (fuz) Author: Kristofer Peterson 2026Q1
games/xpipeman: use portable fileno() instead of (*FILE)->_file
PR: 292939, 291610
MFH: 2026Q1
(cherry picked from commit 003fed6b7b152ddf56b71d18380432a9b24f5b06)
da36f67 |
14:24 Vladimir Druzenko (vvd) Author: Matthias Wolf 2026Q1
net/keycloak: Update 26.5.2 => 26.5.3
Release Notes:
https://www.keycloak.org/2026/02/keycloak-2653-released
https://github.com/keycloak/keycloak/releases/tag/26.5.3
PR: 293082
Security: CVE-2026-1609
Security: CVE-2026-1529
Security: CVE-2026-1486
Security: CVE-2025-14778
MFH: 2026Q1
(cherry picked from commit 53ed2d6632b1d550d80c91001ce319b54c4a4577)
cd3e2b5 |
08:16 Bernard Spil (brnrd) 2026Q1
security/openssl-quictls: Unbreak port
* And mark expiration (long overdue)
MFH: 2026Q1
(cherry picked from commit ddbbc1e781e1c148534832f83ec4fac52d429c6a)
13abb57 |
08:15 Bernard Spil (brnrd) 2026Q1
security/openssl111: Unbreak port
MFH: 2026Q1
(cherry picked from commit d117e83d514d968e040d50e61daddb5beea3c1b0)
5efe9f1 |
01:41 Wen Heping (wen) 2026Q1
- www/moodle50 5.0.5
Course management system based on social constructionism
www/moodle50: Update to 5.0.5
(cherry picked from commit a70eeaa723f19cce2d02e808b06b50c130129a5c)
a3dad41 |
01:40 Wen Heping (wen) 2026Q1
- www/moodle45 4.5.9
Course management system based on social constructionism
www/moodle45: Update to 4.5.9
(cherry picked from commit 2e2ad6fc2617c8bdd4f46e73024b46d2f6fe3e71)
f71a3f7 |
01:40 Wen Heping (wen) 2026Q1
- www/moodle51 5.1.2
Course management system based on social constructionism
www/moodle51: Update to 5.1.2
(cherry picked from commit 88b5373dd8c3c4de7676df638c26b6c08e0080cd)
3c7a39d |
|
Monday, 9 Feb 2026
|
20:37 Michael Osipov (michaelo) Author: Sir l33tname 2026Q1
devel/py-Js2Py: Apply upstream patch for Python 3.12 support
Co-authored-by: Michael Osipov <michaelo@FreeBSD.org>
PR: 289085
MFH: 2026Q1
(cherry picked from commit 37e1f72f44e412445a2e97bc85e159b218390243)
c35267d |
19:59 Michael Osipov (michaelo) Author: Matthew Wener 2026Q1
devel/py-cheetah3: Update to 3.4.0.post5
PR: 288781
Approved by: FreeBSD@ShaneWare.Biz (maintainer)
MFH: 2026Q1
(cherry picked from commit 2e6d82e1496847bd48c2622450a9a8e110d2d946)
7a1a1a6 |
19:32 Roman Bogorodskiy (novel) 2026Q1
security/p11-kit: update to 0.26.2
(cherry picked from commit a8abb5097b47035b1bc7953facf713d03fe3670d)
7578e2e |
16:23 Vladimir Druzenko (vvd) Author: Yamagi 2026Q1
- x11/tint 17.0.2
Lightweight freedesktop-compliant panel/taskbar/systray/clock
x11/tint: Update 16.7 => 17.0.2, unbreak on 16
* Upstream changes are mostly bugfixes. See CHANGELOG for details:
https://gitlab.com/o9000/tint2/-/blob/17.0.2/ChangeLog
* tint2conf was ported to GTK 3.0. Update dependencies accordingly.
* Unbreak build on 16.0-CURRENT.
* Replace PORTVERSION with DISTVERSION.
* Remove unnecessary dependencies from LIB_DEPENDS.
* Switch to bzip2 tarball.
* Use default GL_TAGNAME instead of hash.
* Fix warnings from portclippy.
PR: 293022
MFH: 2026Q1
(cherry picked from commit a6cf5e4cc913b5340cd555d484a5e9fe8fd0ab77)
91f70d7 |
13:38 Vladimir Druzenko (vvd) 2026Q1
- net-im/tox 0.2.22,1
ProjectTox-Core library, a decentralized and secure messenger
net-im/tox: Update 0.2.21 => 0.2.22
Changelog:
https://github.com/TokTok/c-toxcore/releases/tag/v0.2.22
- make test work without errors.
- Rework DAEMON option, make it deafult.
- Remove old patch - disabled functions work without errors in runtime.
PR: 293052
MFH: 2026Q1
(cherry picked from commit 752275596aaac169de95e3e4ae7952c76461956d)
24fcefb |
09:07 Alex Dupre (ale) 2026Q1
- mail/roundcube 1.6.13,1
Fully skinnable XHTML/CSS webmail written in PHP
mail/roundcube: update to 1.6.13 release.
PR: 293042
Submitted by: Christos Chatzaras <chris@cretaforce.gr>
(cherry picked from commit 76befb6e1759924fbda7fd61c6b9a4f5cc8e0ac7)
7c0c22a |
|
Sunday, 8 Feb 2026
|
18:54 Jan Beich (jbeich) 2026Q1
- www/gallery-dl 1.31.6
Command-line program to download image galleries and collections
www/gallery-dl: update to 1.31.6
Changes: https://github.com/mikf/gallery-dl/releases/tag/v1.31.6
Reported by: GitHub (watch releases)
(cherry picked from commit 7cfce72085d165d714bff56c07a1b3761a53b611)
ead2919 |
18:41 Colin Percival (cperciva) 2026Q1
misc/freebsd-release-manifests: Add 14.4-BETA1 MANIFEST files
Approved by: re (implicit)
Sponsored by: OpenSats Initiative
(cherry picked from commit b694ec50dabea14d1b773723659fc61541a16705)
964fa85 |
13:57 Vladimir Druzenko (vvd) Author: Sebastian Oswald 2026Q1
- www/angie 1.11.3
Efficient, powerful and scalable reverse proxy and web server
- www/angie-module-auth-jwt 0.9.0_3,1
Angie auth-jwt dynamic module
- www/angie-module-auth-spnego 1.1.3_3,1
Angie auth-spnego dynamic module
- www/angie-module-auth-totp 1.1.0_3,1
Angie auth-totp dynamic module
- www/angie-module-brotli 1.0.0.r_3,1
Angie Brotli dynamic module
- www/angie-module-cache-purge 2.5.5_2,1
Angie cache_purge dynamic module
- www/angie-module-dav-ext 3.0.0_3,1
Angie dav-ext dynamic module
- www/angie-module-echo 0.64_3,1
Angie echo dynamic module
- www/angie-module-enhanced-memcached 0.3_3,1
Angie enhanced memcached dynamic module
- www/angie-module-eval 2016.06.10_3,1
Angie eval dynamic module
(Only the first 10 of 25 items in this commit are shown above. )
www/angie: Update 1.11.2 => 1.11.3 (fix CVE-2026-1642, possible MITM attack)
Security: An attacker in a man-in-the-middle (MITM) position before a
proxied server using TLS, given conditions beyond the attacker's
control, could inject plaintext data into the response before the TLS
handshake begins (CVE-2026-1642); the fix was ported from nginx 1.29.5.
Changelog:
https://en.angie.software/angie/docs/oss_changes/#angie-1-11-3
- Bump PORTREVISION in www/angie-module-*.
- Fix using of ANGIE_PORTREVISION in RUN_DEPENDS for modules.
- Replace INSTALL_MAN with INSTALL_DATA for documentation.
- Unroll "for" loops with 1-2 items - simplify Makefile and call
"INSTALL_*" 1 time instead of several.
PR: 293034
Security: CVE-2026-1642
MFH: 2026Q1
(cherry picked from commit 8622849d0c2ee6d2e534f2bd12d8c6d603799f12)
544cb02 |
13:57 Vladimir Druzenko (vvd) Author: Sebastian Oswald 2026Q1
- www/angie 1.11.2_1
Efficient, powerful and scalable reverse proxy and web server
- www/angie-module-auth-jwt 0.9.0_2,1
Angie auth-jwt dynamic module
- www/angie-module-auth-spnego 1.1.3_2,1
Angie auth-spnego dynamic module
- www/angie-module-auth-totp 1.1.0_2,1
Angie auth-totp dynamic module
- www/angie-module-brotli 1.0.0.r_2,1
Angie Brotli dynamic module
- www/angie-module-cache-purge 2.5.5_1,1
Angie cache_purge dynamic module
- www/angie-module-dav-ext 3.0.0_2,1
Angie dav-ext dynamic module
- www/angie-module-echo 0.64_2,1
Angie echo dynamic module
- www/angie-module-enhanced-memcached 0.3_2,1
Angie enhanced memcached dynamic module
- www/angie-module-eval 2016.06.10_2,1
Angie eval dynamic module
(Only the first 10 of 23 items in this commit are shown above. )
www/angie*: Bump PORTREVISION after www/angie update
pkg does not honor RUN_DEPENDS versions, hence it fails to re-install
module packages after updates to www/angie. The only workaround is
bumping PORTREVISION for *all* modules.
PR: 292648
(cherry picked from commit 8d40b7a5a4a168f1594633d1a747f089e572b66a)
1f843bf |
13:57 Vladimir Druzenko (vvd) Author: Sebastian Oswald 2026Q1
www/angie-module-jwt: update 3.4.3 => 3.4.4
No actual changes/updates to the code, but we keep the module version
up-to-date anyways.
Changes:
- Add GutHub Sponsors username to FUNDING.yml
- docs: add pre-buildt Ubuntu/Debian package installation instructions
- Update README.md
- Update nginx to 1.28.1-alpine3.23 (docker)
https://github.com/max-lt/nginx-jwt-module/compare/v3.4.3...v3.4.4
PR: 292925
(cherry picked from commit b1e5a37450ef8a349a2ab758e2ff2423e9c90d9c)
1f9e8d6 |
13:56 Vladimir Druzenko (vvd) Author: Sebastian Oswald 2026Q1
www/angie-module-njs: Update 0.9.4 => 0.9.5
Changelog:
https://github.com/nginx/njs/releases/tag/0.9.5
Commit log:
https://github.com/nginx/njs/compare/0.9.4...0.9.5
PR: 292649
(cherry picked from commit 6199a57500c0f60876e2118222d918a2b3b66d92)
a554910 |
13:56 Vladimir Druzenko (vvd) Author: Sebastian Oswald 2026Q1
- www/angie 1.11.2
Efficient, powerful and scalable reverse proxy and web server
www/angie: Update 1.11.1 => 1.11.2
This release mainly fixes 3 linux-specifig bugs (docker and BPF-related).
Changelog:
https://git.angie.software/web-server/angie/releases/tag/Angie-1.11.2
Commit log:
https://git.angie.software/web-server/angie/compare/Angie-1.11.1..Angie-1.11.2
PR: 292648
(cherry picked from commit 21629ec6ecb0d3701581471e5fd20f28ee514265)
c111786 |
00:20 Vladimir Druzenko (vvd) 2026Q1
- net/freerdp3 3.22.0
Free implementation of Remote Desktop Protocol
net/freerdp3: 3.21.0 => 3.22.0
Changelog:
https://github.com/FreeRDP/FreeRDP/releases/tag/3.22.0
While here cleanup port.
Security: CVE-2026-23948
Security: CVE-2026-24682
Security: CVE-2026-24683
Security: CVE-2026-24676
Security: CVE-2026-24677
Security: CVE-2026-24678
Security: CVE-2026-24684
Security: CVE-2026-24679
Security: CVE-2026-24681
Security: CVE-2026-24675
Security: CVE-2026-24491
Security: CVE-2026-24680
MFH: 2026Q1
(cherry picked from commit e0aed1875d26d554f2796741b3e9456dea90ddee)
7e83d86 |
|
Saturday, 7 Feb 2026
|
18:40 Thomas Zander (riggs) 2026Q1
- net/traefik 3.6.7
High availability reverse proxy and load balancer
net/traefik: Update to upstream release 3.6.7
Details:
- Bugfix release, see
https://github.com/traefik/traefik/releases/tag/v3.6.7
- Addresses a potential DoS vulnerability, see
https://github.com/traefik/traefik/security/advisories/GHSA-cwjm-3f7h-9hwq
- This may require an update to the traefik configuration:
https://doc.traefik.io/traefik/v3.6/migrate/v3/#v367
MFH: 2026Q1
Security: CVE-2026-22045
(cherry picked from commit a18d213f915268dbb7346b8ff1550ed418c3afff)
cf182c9 |
17:39 Jesús Daniel Colmenares Oviedo (dtxdf) 2026Q1
multimedia/navidrome: Update to 0.60.0, Take maintainership
- Fix 'github.com/navidrome/navidrome/adapters/taglib: invalid flag in
pkg-config --cflags: --define-prefix'
- Build assets using a Makejail which simplify a lot.
- Use NAVIDROME_{USER|GROUP} that are more descriptive.
PR: 293000
Security: a6effa17-1fd4-4895-8471-d5c684d7807c
MFH: 2026Q1
(cherry picked from commit 697778ed05fc34ccdf021dced373ace656600a22)
702ce78 |
16:38 Vladimir Druzenko (vvd) Author: Matthias Wolf 2026Q1
net/keycloak: Update 26.4.7 => 26.5.2
Release Notes:
https://www.keycloak.org/2026/01/keycloak-2650-released
https://www.keycloak.org/2026/01/keycloak-2651-released
https://www.keycloak.org/2026/01/keycloak-2652-released
PR: 293007
Security: CVE-2025-67735
Security: CVE-2025-66560
Security: CVE-2025-14559
MFH: 2026Q1
(cherry picked from commit f8fee70b48a9351df21ee7c78949b6d736768bd2)
01a98ab |
15:11 Charlie Li (vishwin) Author: Trond Endrestøl 2026Q1
lang/Makefile: Remove python-doc-pdf-a4
PR: 292970
Approved by: blanket
Fixes: 5e61a90f3a23 (lang/python-doc-pdf-a4: remove)
(cherry picked from commit c004847f8206c4c5425103d8127f2a2480195fb1)
33dc8c0 |
|
Friday, 6 Feb 2026
|
23:47 Vladimir Druzenko (vvd) 2026Q1
filesystems/moosefs3-*: Update 3.0.117 => 3.0.118, deprecate
Changelog:
https://github.com/moosefs/moosefs/releases/tag/v3.0.118
3.0.118 is last release in 3.x.
3.x reached EoL 2025-03-31, use filesystems/moosefs-* 4.x instead.
While here remove unnecessary GNU_CONFIGURE_MANPREFIX.
PR: 289966
Approved by: Piotr R. Konopelko (MooseFS) <piotr.konopelko@moosefs.com>
(maintainer)
MFH: 2026Q1
(cherry picked from commit e32dc5361334b9364589e4a463a324d3d23626c4)
543794e |
23:47 Vladimir Druzenko (vvd) 2026Q1
filesystems/moosefs2-*: Deprecate
2.x reached EoL 2017-12-31, use filesystems/moosefs-* 4.x instead.
PR: 289966
Approved by: Piotr R. Konopelko (MooseFS) <piotr.konopelko@moosefs.com>
(maintainer)
MFH: 2026Q1
(cherry picked from commit 90502fc3f14485b41b09d30bcfed7b08a5b6155f)
9b212ec |