FreeBSD/ports 96ec4badatabases/mariadb106-server/files patch-client_mysqltest.cc

databases/mariadb106-server: Add missing patch
DeltaFile
+10-0databases/mariadb106-server/files/patch-client_mysqltest.cc
+10-01 files

FreeBSD/ports 90a07b0databases/mariadb1011-server distinfo Makefile, databases/mariadb1011-server/files patch-client_mysqltest.cc

databases/mariadb1011-server: Update to 10.11.16
DeltaFile
+10-0databases/mariadb1011-server/files/patch-client_mysqltest.cc
+3-3databases/mariadb1011-server/distinfo
+1-1databases/mariadb1011-server/Makefile
+14-43 files

FreeBSD/ports ad9d2fex11/waybar Makefile distinfo, x11/waybar/files patch-no-systemctl patch-man_waybar-menu.5.scd

x11/waybar: Update to 0.15.0

- Pet port(clippy|fmt)

ChangeLog:      https://github.com/Alexays/Waybar/releases/tag/0.15.0
Reported by:    Alexis Rouillard <notifications at github.com>
DeltaFile
+0-34x11/waybar/files/patch-no-systemctl
+12-12x11/waybar/Makefile
+17-0x11/waybar/files/patch-man_waybar-menu.5.scd
+17-0x11/waybar/files/patch-resources_config.jsonc
+3-3x11/waybar/distinfo
+49-495 files

OPNSense/core 766c6cesrc/etc/inc/plugins.inc.d unbound.inc, src/opnsense/mvc/app/controllers/OPNsense/Unbound/forms dialogHostOverride.xml

Services: Unbound DNS: Overrides - persist PTR configuration and allow the user to deselect it, closes https://github.com/opnsense/core/pull/9753
DeltaFile
+5-5src/etc/inc/plugins.inc.d/unbound.inc
+9-0src/opnsense/mvc/app/controllers/OPNsense/Unbound/forms/dialogHostOverride.xml
+5-1src/opnsense/mvc/app/models/OPNsense/Unbound/Unbound.xml
+3-0src/opnsense/mvc/app/views/OPNsense/Unbound/overrides.volt
+22-64 files

FreeBSD/ports e4a45b3databases/mariadb114-server/files patch-client_mysqltest.cc

databases/mariadb114-server: Add missing patch file

* Unbreak build

PR:             293044
Reported by:    <lysfjord daniel smokepit net>
DeltaFile
+10-0databases/mariadb114-server/files/patch-client_mysqltest.cc
+10-01 files

FreeBSD/ports 6c95e06www/mod_http2 distinfo Makefile

www/mod_http2: Update to 2.0.38
DeltaFile
+3-3www/mod_http2/distinfo
+1-1www/mod_http2/Makefile
+4-42 files

FreeBSD/ports 5c29b07databases/mariadb106-server distinfo Makefile

databases/mariadb106-server: Update to 10.6.25
DeltaFile
+3-3databases/mariadb106-server/distinfo
+1-1databases/mariadb106-server/Makefile
+4-42 files

FreeBSD/src 641eb26sbin/mount mount.8

mount.8: document nosymfollow option

Document the nosymfollow mount option in more details.
Forgotten in 5ddc8ded1dbe650b7d83240a1f86a1eb6e2b9b5a

(cherry picked from commit a067eb525e10acc9d7e1f3b1a8a6dfeca42b4424)
DeltaFile
+7-2sbin/mount/mount.8
+7-21 files

FreeBSD/src b043ee5bin/ln symlink.7

symlink.7: add a new section "mount options"

Add a new section "mount options" to explain
the mount option nosymfollow in more details.

Differential Revision:  https://reviews.freebsd.org/D54530

(cherry picked from commit a2c87d4f88e1bfe3b7007fa7148ebc7d37fc54cc)
DeltaFile
+19-2bin/ln/symlink.7
+19-21 files

FreeBSD/src b80d241bin/ln symlink.7

symlink.7: add a new section "mount options"

Add a new section "mount options" to explain
the mount option nosymfollow in more details.

Differential Revision:  https://reviews.freebsd.org/D54530

(cherry picked from commit a2c87d4f88e1bfe3b7007fa7148ebc7d37fc54cc)
DeltaFile
+19-2bin/ln/symlink.7
+19-21 files

NetBSD/pkgsrc sNvbwccdoc pkg-vulnerabilities

   pkg-vulnerabilities: add last days CVEs

   + asterisk, calibre, chromium,
     codeblocks (no details, probably not reported upstream, assume not fixed),
     dnsmasq, glpi, gnupg22, go,
     libsoup (fixed upstream, latest stable release affected),
     magento,
     micropython (fixed upstream, next release should contain the fix),
     moodle, mupdf, phppgadmin, py-django, py-wagtail, vim
VersionDeltaFile
1.729+62-1doc/pkg-vulnerabilities
+62-11 files

FreeBSD/ports 544cb02www/angie Makefile, www/angie-module-brotli Makefile

www/angie: Update 1.11.2 => 1.11.3 (fix CVE-2026-1642, possible MITM attack)

Security: An attacker in a man-in-the-middle (MITM) position before a
proxied server using TLS, given conditions beyond the attacker's
control, could inject plaintext data into the response before the TLS
handshake begins (CVE-2026-1642); the fix was ported from nginx 1.29.5.

Changelog:
https://en.angie.software/angie/docs/oss_changes/#angie-1-11-3

- Bump PORTREVISION in www/angie-module-*.
- Fix using of ANGIE_PORTREVISION in RUN_DEPENDS for modules.
- Replace INSTALL_MAN with INSTALL_DATA for documentation.
- Unroll "for" loops with 1-2 items - simplify Makefile and call
  "INSTALL_*" 1 time instead of several.

PR:             293034
Security:       CVE-2026-1642
MFH:            2026Q1
(cherry picked from commit 8622849d0c2ee6d2e534f2bd12d8c6d603799f12)
DeltaFile
+8-12www/angie/Makefile
+7-7www/angie-module-brotli/Makefile
+6-7www/angie-module-njs/Makefile
+6-6www/angie-module-lua/Makefile
+5-7www/angie-module-zstd/Makefile
+5-5www/angie-module-geoip2/Makefile
+37-4420 files not shown
+77-8426 files

FreeBSD/ports 1f843bfwww/angie Makefile, www/angie-module-auth-jwt Makefile

www/angie*: Bump PORTREVISION after www/angie update

pkg does not honor RUN_DEPENDS versions, hence it fails to re-install
module packages after updates to www/angie. The only workaround is
bumping PORTREVISION for *all* modules.

PR:     292648
(cherry picked from commit 8d40b7a5a4a168f1594633d1a747f089e572b66a)
DeltaFile
+10-2www/angie/Makefile
+1-1www/angie-module-brotli/Makefile
+1-1www/angie-module-auth-jwt/Makefile
+1-1www/angie-module-auth-spnego/Makefile
+1-1www/angie-module-auth-totp/Makefile
+1-1www/angie-module-cache-purge/Makefile
+15-717 files not shown
+32-2423 files

FreeBSD/ports 1f9e8d6www/angie distinfo, www/angie-module-jwt Makefile

www/angie-module-jwt: update 3.4.3 => 3.4.4

No actual changes/updates to the code, but we keep the module version
up-to-date anyways.

Changes:
- Add GutHub Sponsors username to FUNDING.yml
- docs: add pre-buildt Ubuntu/Debian package installation instructions
- Update README.md
- Update nginx to 1.28.1-alpine3.23 (docker)
https://github.com/max-lt/nginx-jwt-module/compare/v3.4.3...v3.4.4

PR:     292925
(cherry picked from commit b1e5a37450ef8a349a2ab758e2ff2423e9c90d9c)
DeltaFile
+3-3www/angie/distinfo
+2-2www/angie-module-jwt/Makefile
+5-52 files

FreeBSD/ports a554910www/angie distinfo, www/angie-module-njs Makefile

www/angie-module-njs: Update 0.9.4 => 0.9.5

Changelog:
https://github.com/nginx/njs/releases/tag/0.9.5

Commit log:
https://github.com/nginx/njs/compare/0.9.4...0.9.5

PR:     292649
(cherry picked from commit 6199a57500c0f60876e2118222d918a2b3b66d92)
DeltaFile
+2-2www/angie-module-njs/Makefile
+2-2www/angie/distinfo
+4-42 files

FreeBSD/ports c111786www/angie distinfo Makefile

www/angie: Update 1.11.1 => 1.11.2

This release mainly fixes 3 linux-specifig bugs (docker and BPF-related).

Changelog:
https://git.angie.software/web-server/angie/releases/tag/Angie-1.11.2

Commit log:
https://git.angie.software/web-server/angie/compare/Angie-1.11.1..Angie-1.11.2

PR:     292648
(cherry picked from commit 21629ec6ecb0d3701581471e5fd20f28ee514265)
DeltaFile
+3-3www/angie/distinfo
+1-1www/angie/Makefile
+4-42 files

FreeBSD/doc a123fe0website/content/en/cgi man.cgi

update FreeBSD stable/14
DeltaFile
+3-3website/content/en/cgi/man.cgi
+3-31 files

NetBSD/src 4G9T9FBexternal/bsd/ntp/dist/include ntp_lists.h

   Restore NULL pointer check from upstream. Should fix PR 59973.

   Pullup-11.
VersionDeltaFile
1.9+2-2external/bsd/ntp/dist/include/ntp_lists.h
+2-21 files

OpenBSD/ports hjmam4ggames/choria/patches patch-src_stats_cpp patch-src_config_h

   Add missing patches forgotten when updating.

   pointed out by sthen@
VersionDeltaFile
1.1+12-0games/choria/patches/patch-src_stats_cpp
1.1+11-0games/choria/patches/patch-src_config_h
+23-02 files

FreeBSD/ports 8622849www/angie Makefile, www/angie-module-brotli Makefile

www/angie: Update 1.11.2 => 1.11.3 (fix CVE-2026-1642, possible MITM attack)

Security: An attacker in a man-in-the-middle (MITM) position before a
proxied server using TLS, given conditions beyond the attacker's
control, could inject plaintext data into the response before the TLS
handshake begins (CVE-2026-1642); the fix was ported from nginx 1.29.5.

Changelog:
https://en.angie.software/angie/docs/oss_changes/#angie-1-11-3

- Bump PORTREVISION in www/angie-module-*.
- Fix using of ANGIE_PORTREVISION in RUN_DEPENDS for modules.
- Replace INSTALL_MAN with INSTALL_DATA for documentation.
- Unroll "for" loops with 1-2 items - simplify Makefile and call
  "INSTALL_*" 1 time instead of several.

PR:             293034
Security:       CVE-2026-1642
MFH:            2026Q1
DeltaFile
+8-12www/angie/Makefile
+7-7www/angie-module-brotli/Makefile
+6-7www/angie-module-njs/Makefile
+6-6www/angie-module-lua/Makefile
+5-7www/angie-module-zstd/Makefile
+5-5www/angie-module-geoip2/Makefile
+37-4420 files not shown
+77-8426 files

OPNSense/core ccffd88src/opnsense/mvc/app/controllers/OPNsense/Kea DhcpController.php

Services: Kea DHCP: Kea DHCPv4/6 / Subnets - missing root node, closes https://github.com/opnsense/core/issues/9762
DeltaFile
+2-2src/opnsense/mvc/app/controllers/OPNsense/Kea/DhcpController.php
+2-21 files

OPNSense/core 68ff0dcsrc/opnsense/mvc/app/controllers/OPNsense/Routing/forms dialogEditGateway.xml

System: Gateways: Configuration - remove "upstream" from grid as priority already reflects the proper data, closes https://github.com/opnsense/core/issues/9751

The grid was added in https://github.com/opnsense/core/commit/7f9d1046639d5bea43f24ef80dadef913b54b739, but shouldn't have been due to type issues of the raw field, see also https://github.com/opnsense/core/commit/8069d72bacc651b0506a1a093d5206008f92731e
DeltaFile
+1-3src/opnsense/mvc/app/controllers/OPNsense/Routing/forms/dialogEditGateway.xml
+1-31 files

FreeNAS/freenas 37fab1asrc/middlewared/middlewared/plugins network.py, src/middlewared/middlewared/plugins/interface sync.py unconfigure.py

NAS-139670 / 26.0.0-BETA.1 / add unconfigure_impl and remove interface.unconfigure (#18160)

DeltaFile
+54-15src/middlewared/middlewared/plugins/interface/sync.py
+66-0src/middlewared/middlewared/plugins/interface/unconfigure.py
+14-44src/middlewared/middlewared/plugins/network.py
+1-27src/middlewared/middlewared/plugins/interface/configure.py
+1-1src/middlewared/middlewared/plugins/interface/addresses.py
+136-875 files

HardenedBSD/src 0c59b12. ObsoleteFiles.inc, sys/arm/broadcom/bcm2835 bcm2835_bsc.c

Merge branch 'freebsd/current/main' into hardened/current/master
DeltaFile
+1-1sys/kern/imgact_elf.c
+1-1sys/arm/broadcom/bcm2835/bcm2835_bsc.c
+1-1sys/fs/nfsserver/nfs_nfsdstate.c
+1-1sys/dev/qlnx/qlnxe/ecore_cxt.c
+1-1sys/dev/mlx4/mlx4_core/mlx4_main.c
+1-0ObsoleteFiles.inc
+6-56 files

HardenedBSD/ports d77ef08devel/electron40 Makefile, devel/electron40/files patch-chrome_browser_about__flags.cc patch-sandbox_policy_openbsd_sandbox__openbsd.cc

Merge branch 'freebsd/main' into hardenedbsd/main
DeltaFile
+14,570-0devel/electron40/files/packagejsons/yarn.lock
+942-0devel/electron40/files/packagejsons/.yarn/releases/yarn-4.12.0.cjs
+263-255devel/jujutsu/distinfo
+502-0devel/electron40/files/patch-chrome_browser_about__flags.cc
+420-0devel/electron40/Makefile
+399-0devel/electron40/files/patch-sandbox_policy_openbsd_sandbox__openbsd.cc
+17,096-2551,648 files not shown
+58,681-4361,654 files

NetBSD/pkgsrc-wip 8cb6a3elibrewolf Makefile distinfo

librewolf: update to 147.0.3
DeltaFile
+5-4librewolf/Makefile
+3-3librewolf/distinfo
+8-72 files

FreeBSD/ports 169111cdatabases/mariadb114-server distinfo Makefile

databases/mariadb114-server: Update to 11.4.10
DeltaFile
+3-3databases/mariadb114-server/distinfo
+1-1databases/mariadb114-server/Makefile
+4-42 files

HardenedBSD/ports 169111cdatabases/mariadb114-server distinfo Makefile

databases/mariadb114-server: Update to 11.4.10
DeltaFile
+3-3databases/mariadb114-server/distinfo
+1-1databases/mariadb114-server/Makefile
+4-42 files

OpenBSD/src EKnV0U3usr.sbin/rpki-client aspa.c

   Enforce canonical encoding for ASPA eContent

   from draft-ietf-sidrops-aspa-profile-22:

   "An ASID value of 0 can only be encoded in the providers field as
    a single item list, i.e., an element for AS 0 MUST NOT appear
    alongside any other elements."

   with/OK tb@
VersionDeltaFile
1.42+6-1usr.sbin/rpki-client/aspa.c
+6-11 files

OpenBSD/ports 52UvPLVsecurity/py-ropper Makefile distinfo, security/py-ropper/pkg PLIST

   update to py3-ropper-1.13.13
VersionDeltaFile
1.9+33-1security/py-ropper/pkg/PLIST
1.20+14-12security/py-ropper/Makefile
1.5+2-2security/py-ropper/distinfo
+49-153 files