notbugAs an Amazon Associate I earn from qualifying purchases.
Want a good read? Try FreeBSD Mastery: Jails (IT Mastery Book 15)
Want a good monitor light? See my photos
All times are UTC
Ukraine
The recently imposed "must be logged in" restriction is a response to increased bot traffic on the site. This affects search, commits, and vuxml pages.
Search engines are not blocked. Try using "site:www.freshports.org" and your search terms.
After the ports freeze to fix some stuff, the freeze is over. I have some work to do before FreshPorts can start processing commits again before it can start processing again. I've created an issue for that.
Port details on branch 2026Q2
modsecurity3 Intrusion detection and prevention engine
3.0.16 security on this many watch lists=0 search for ports that depend on this port Find issues related to this port Report an issue related to this port View this port on Repology. pkg-fallout 3.0.15Version of this port present on the latest quarterly branch.
Maintainer: wolfgang.gerlach@proton.me search for ports maintained by this maintainer
Port Added: 2026-05-04 17:21:05
Last Update: 2026-06-30 11:35:04
Commit Hash: 950fbcc
Also Listed In: www
License: APACHE20
WWW:
https://www.modsecurity.org/
Description:
ModSecurity is an embeddable web application firewall. It provides protection from a range of attacks against web applications and allows for HTTP traffic monitoring and real-time analysis with no changes to existing infrastructure. It is also an open source project that aims to make the web application firewall technology available to everyone.
Homepage    cgit ¦ Codeberg ¦ GitHub ¦ GitLab ¦ SVNWeb - no subversion history for this port

Manual pages:
FreshPorts has no man page information for this port.
pkg-plist: as obtained via: make generate-plist
Expand this list (40 items)
Collapse this list.
  1. @ldconfig
  2. /usr/local/share/licenses/modsecurity3-3.0.16/catalog.mk
  3. /usr/local/share/licenses/modsecurity3-3.0.16/LICENSE
  4. /usr/local/share/licenses/modsecurity3-3.0.16/APACHE20
  5. bin/modsec-rules-check
  6. include/modsecurity/anchored_set_variable.h
  7. include/modsecurity/anchored_set_variable_translation_proxy.h
  8. include/modsecurity/rule_message.h
  9. include/modsecurity/rule_unconditional.h
  10. include/modsecurity/variable_origin.h
  11. include/modsecurity/transaction.h
  12. include/modsecurity/anchored_variable.h
  13. include/modsecurity/intervention.h
  14. include/modsecurity/collection/collections.h
  15. include/modsecurity/collection/collection.h
  16. include/modsecurity/rule_with_operator.h
  17. include/modsecurity/variable_value.h
  18. include/modsecurity/rules_set.h
  19. include/modsecurity/audit_log.h
  20. include/modsecurity/modsecurity.h
  21. include/modsecurity/debug_log.h
  22. include/modsecurity/rule_with_actions.h
  23. include/modsecurity/rules_set_properties.h
  24. include/modsecurity/rule_marker.h
  25. include/modsecurity/rules.h
  26. include/modsecurity/rules_exceptions.h
  27. include/modsecurity/rules_set_phases.h
  28. include/modsecurity/reading_logs_via_rule_message.h
  29. include/modsecurity/actions/action.h
  30. include/modsecurity/rule.h
  31. lib/libmodsecurity.a
  32. lib/libmodsecurity.so
  33. lib/libmodsecurity.so.3
  34. lib/libmodsecurity.so.3.0.16
  35. libdata/pkgconfig/modsecurity.pc
  36. etc/modsecurity/unicode.mapping
  37. @sample etc/modsecurity/modsecurity.conf.sample
  38. @owner
  39. @group
  40. @mode
Collapse this list.
USE_RC_SUBR (Service Scripts)
  • no SUBR information found for this port
Dependency lines:
  • modsecurity3>0:security/modsecurity3
Conflicts:
CONFLICTS_INSTALL:
  • ap??-mod_security
  • mod_security3
To install the port:
cd /usr/ports/security/modsecurity3/ && make install clean
To add the package, run one of these commands:
  • pkg install security/modsecurity3
  • pkg install modsecurity3
NOTE: If this package has multiple flavors (see below), then use one of them instead of the name specified above.
PKGNAME: modsecurity3
Flavors: there is no flavor information for this port.
distinfo:
TIMESTAMP = 1782762364 SHA256 (modsecurity-v3.0.16.tar.gz) = 739be3c71b1939f14e91afe1eeae654acbd440da11bd29790458840bc315b4c0 SIZE (modsecurity-v3.0.16.tar.gz) = 11784704

Packages (timestamps in pop-ups are UTC):
modsecurity3
ABIaarch64amd64armv6armv7i386powerpcpowerpc64powerpc64le
FreeBSD:13:latest3.0.14_13.0.14_13.0.4_23.0.14_13.0.14_1n/an/an/a
FreeBSD:13:quarterly3.0.14_13.0.14_13.0.83.0.14_13.0.14_1n/an/an/a
FreeBSD:14:latest3.0.163.0.163.0.83.0.14_13.0.163.0.8-3.0.8
FreeBSD:14:quarterly3.0.163.0.16-3.0.14_13.0.163.0.83.0.83.0.8
FreeBSD:15:latest3.0.163.0.16n/a3.0.14_1n/an/a3.0.83.0.8
FreeBSD:15:quarterly3.0.163.0.16n/a-n/an/a--
FreeBSD:16:latest3.0.163.0.16n/a-n/an/a--
Dependencies
NOTE: FreshPorts displays only information on required and default dependencies. Optional dependencies are not covered.
Build dependencies:
  1. gmake>=4.4.1 : devel/gmake
  2. pkgconf>=1.3.0_1 : devel/pkgconf
Library dependencies:
  1. libcurl.so : ftp/curl
  2. libpcre2-8.so : devel/pcre2
  3. libyajl.so : devel/yajl
  4. libmaxminddb.so : net/libmaxminddb
  5. libxml2.so : textproc/libxml2
This port is required by:
for Libraries
  1. security/modsecurity3-nginx
  2. www/nginx-full

Configuration Options:
No options to configure
Options name:
security_modsecurity3
USES:
cpe gmake gnome libtool pkgconfig:build
FreshPorts was unable to extract/find any pkg message
Master Sites:
Expand this list (1 items)
Collapse this list.
  1. https://github.com/owasp-modsecurity/ModSecurity/releases/download/v3.0.16/
Collapse this list.

Number of commits found: 3

Commit History - (may be incomplete: for full details, see links to repositories near top of page)
CommitCreditsLog message
3.0.16
30 Jun 2026 11:35:04
commit hash: 950fbccbed060ba858516528e382b6e8f22066f9commit hash: 950fbccbed060ba858516528e382b6e8f22066f9commit hash: 950fbccbed060ba858516528e382b6e8f22066f9commit hash: 950fbccbed060ba858516528e382b6e8f22066f9 files touched by this commit
Yusuf Yaman (nxjoseph) search for other commits by this committer
Author: Wolfgang Gerlach
security/modsecurity3: Update 3.0.15 => 3.0.16

Changelog:
https://github.com/owasp-modsecurity/ModSecurity/blob/v3.0.16/CHANGES

PR:		296385
Approved by:	osa, vvd (Mentors, implicit)
MFH:		2026Q2
Security:	CVE-2026-52761 (Details not yet available)
Security:	CVE-2026-52747 (Details not yet available)

(cherry picked from commit 9cfd1534f9e4223618cda66aca81768bbc6a3d3b)
3.0.15
30 Jun 2026 11:34:53
commit hash: 87face77e9b33b2198db0bdaa5003254a4ebdb49commit hash: 87face77e9b33b2198db0bdaa5003254a4ebdb49commit hash: 87face77e9b33b2198db0bdaa5003254a4ebdb49commit hash: 87face77e9b33b2198db0bdaa5003254a4ebdb49 files touched by this commit
Yusuf Yaman (nxjoseph) search for other commits by this committer
Author: Bernhard Froehlich
security/modsecurity3: Fix deprecated CPE_VENDOR

(cherry picked from commit 3476a921443fd96f6d8d820e25c29fb2789e2e51)
3.0.15
04 May 2026 17:19:36
commit hash: 1ded7412ae71086e66f8cda8b63f17d5a17ab7e8commit hash: 1ded7412ae71086e66f8cda8b63f17d5a17ab7e8commit hash: 1ded7412ae71086e66f8cda8b63f17d5a17ab7e8commit hash: 1ded7412ae71086e66f8cda8b63f17d5a17ab7e8 files touched by this commit
Jochen Neumeister (joneum) search for other commits by this committer
security/modsecurity3: Update to 3.0.15

Changes: https://github.com/owasp-modsecurity/ModSecurity/blob/v3.0.15/CHANGES
this fix CVE-2026-42268 CVE-2026-30923

Pass maintainership to submitter

PR:             294932
Approved by:    marius.halden@modirum.com
Sponsored by:	Netzkommune GmbH

(cherry picked from commit e07a2381c0622841f54b4b816ce7cf6d510ab5bd)

Number of commits found: 3