FreeBSD/ports 2febb6dmultimedia/openshot pkg-plist distinfo, multimedia/openshot/files patch-src_settings___default.settings patch-src_classes_info.py

multimedia/openshot: Update 3.3.0 => 3.4.0

Changelog:
https://github.com/OpenShot/openshot-qt/releases/tag/v3.4.0

PR:     285958
DeltaFile
+247-7multimedia/openshot/pkg-plist
+3-3multimedia/openshot/distinfo
+3-3multimedia/openshot/files/patch-src_settings___default.settings
+2-3multimedia/openshot/Makefile
+2-2multimedia/openshot/files/patch-src_classes_info.py
+2-2multimedia/openshot/files/patch-src_windows_preferences.py
+259-206 files

FreeBSD/ports e76e0d4multimedia/libopenshot pkg-plist Makefile, multimedia/libopenshot/files patch-src_FFmpegWriter.cpp patch-src_FFmpegReader.cpp

multimedia/libopenshot: Update 0.4.0 => 0.5.0

Changelog:
https://github.com/OpenShot/libopenshot/releases/tag/v0.5.0

- Fix build with python 3.12+.
- Register the dependency on libpython correctly.

PR:     285958
DeltaFile
+20-7multimedia/libopenshot/files/patch-src_FFmpegWriter.cpp
+21-6multimedia/libopenshot/files/patch-src_FFmpegReader.cpp
+11-0multimedia/libopenshot/files/patch-src_FFmpegUtilities.h
+10-1multimedia/libopenshot/pkg-plist
+4-5multimedia/libopenshot/Makefile
+3-3multimedia/libopenshot/distinfo
+69-222 files not shown
+72-258 files

FreeBSD/ports e188803audio/libopenshot-audio distinfo Makefile, audio/libopenshot-audio/files patch-CMakeLists.txt

audio/libopenshot-audio: Update 0.4.0 => 0.5.0

Changelog:
https://github.com/OpenShot/libopenshot-audio/releases/tag/v0.5.0

PR:     285958
DeltaFile
+3-3audio/libopenshot-audio/distinfo
+3-3audio/libopenshot-audio/files/patch-CMakeLists.txt
+1-2audio/libopenshot-audio/Makefile
+7-83 files

FreeBSD/ports 96ec4badatabases/mariadb106-server/files patch-client_mysqltest.cc

databases/mariadb106-server: Add missing patch
DeltaFile
+10-0databases/mariadb106-server/files/patch-client_mysqltest.cc
+10-01 files

FreeBSD/ports 90a07b0databases/mariadb1011-server distinfo Makefile, databases/mariadb1011-server/files patch-client_mysqltest.cc

databases/mariadb1011-server: Update to 10.11.16
DeltaFile
+10-0databases/mariadb1011-server/files/patch-client_mysqltest.cc
+3-3databases/mariadb1011-server/distinfo
+1-1databases/mariadb1011-server/Makefile
+14-43 files

FreeBSD/ports ad9d2fex11/waybar Makefile distinfo, x11/waybar/files patch-no-systemctl patch-man_waybar-menu.5.scd

x11/waybar: Update to 0.15.0

- Pet port(clippy|fmt)

ChangeLog:      https://github.com/Alexays/Waybar/releases/tag/0.15.0
Reported by:    Alexis Rouillard <notifications at github.com>
DeltaFile
+0-34x11/waybar/files/patch-no-systemctl
+12-12x11/waybar/Makefile
+17-0x11/waybar/files/patch-man_waybar-menu.5.scd
+17-0x11/waybar/files/patch-resources_config.jsonc
+3-3x11/waybar/distinfo
+49-495 files

FreeBSD/ports e4a45b3databases/mariadb114-server/files patch-client_mysqltest.cc

databases/mariadb114-server: Add missing patch file

* Unbreak build

PR:             293044
Reported by:    <lysfjord daniel smokepit net>
DeltaFile
+10-0databases/mariadb114-server/files/patch-client_mysqltest.cc
+10-01 files

FreeBSD/ports 6c95e06www/mod_http2 distinfo Makefile

www/mod_http2: Update to 2.0.38
DeltaFile
+3-3www/mod_http2/distinfo
+1-1www/mod_http2/Makefile
+4-42 files

FreeBSD/ports 5c29b07databases/mariadb106-server distinfo Makefile

databases/mariadb106-server: Update to 10.6.25
DeltaFile
+3-3databases/mariadb106-server/distinfo
+1-1databases/mariadb106-server/Makefile
+4-42 files

FreeBSD/ports 544cb02www/angie Makefile, www/angie-module-brotli Makefile

www/angie: Update 1.11.2 => 1.11.3 (fix CVE-2026-1642, possible MITM attack)

Security: An attacker in a man-in-the-middle (MITM) position before a
proxied server using TLS, given conditions beyond the attacker's
control, could inject plaintext data into the response before the TLS
handshake begins (CVE-2026-1642); the fix was ported from nginx 1.29.5.

Changelog:
https://en.angie.software/angie/docs/oss_changes/#angie-1-11-3

- Bump PORTREVISION in www/angie-module-*.
- Fix using of ANGIE_PORTREVISION in RUN_DEPENDS for modules.
- Replace INSTALL_MAN with INSTALL_DATA for documentation.
- Unroll "for" loops with 1-2 items - simplify Makefile and call
  "INSTALL_*" 1 time instead of several.

PR:             293034
Security:       CVE-2026-1642
MFH:            2026Q1
(cherry picked from commit 8622849d0c2ee6d2e534f2bd12d8c6d603799f12)
DeltaFile
+8-12www/angie/Makefile
+7-7www/angie-module-brotli/Makefile
+6-7www/angie-module-njs/Makefile
+6-6www/angie-module-lua/Makefile
+5-7www/angie-module-zstd/Makefile
+5-5www/angie-module-geoip2/Makefile
+37-4420 files not shown
+77-8426 files

FreeBSD/ports 1f843bfwww/angie Makefile, www/angie-module-auth-jwt Makefile

www/angie*: Bump PORTREVISION after www/angie update

pkg does not honor RUN_DEPENDS versions, hence it fails to re-install
module packages after updates to www/angie. The only workaround is
bumping PORTREVISION for *all* modules.

PR:     292648
(cherry picked from commit 8d40b7a5a4a168f1594633d1a747f089e572b66a)
DeltaFile
+10-2www/angie/Makefile
+1-1www/angie-module-brotli/Makefile
+1-1www/angie-module-auth-jwt/Makefile
+1-1www/angie-module-auth-spnego/Makefile
+1-1www/angie-module-auth-totp/Makefile
+1-1www/angie-module-cache-purge/Makefile
+15-717 files not shown
+32-2423 files

FreeBSD/ports 1f9e8d6www/angie distinfo, www/angie-module-jwt Makefile

www/angie-module-jwt: update 3.4.3 => 3.4.4

No actual changes/updates to the code, but we keep the module version
up-to-date anyways.

Changes:
- Add GutHub Sponsors username to FUNDING.yml
- docs: add pre-buildt Ubuntu/Debian package installation instructions
- Update README.md
- Update nginx to 1.28.1-alpine3.23 (docker)
https://github.com/max-lt/nginx-jwt-module/compare/v3.4.3...v3.4.4

PR:     292925
(cherry picked from commit b1e5a37450ef8a349a2ab758e2ff2423e9c90d9c)
DeltaFile
+3-3www/angie/distinfo
+2-2www/angie-module-jwt/Makefile
+5-52 files

FreeBSD/ports a554910www/angie distinfo, www/angie-module-njs Makefile

www/angie-module-njs: Update 0.9.4 => 0.9.5

Changelog:
https://github.com/nginx/njs/releases/tag/0.9.5

Commit log:
https://github.com/nginx/njs/compare/0.9.4...0.9.5

PR:     292649
(cherry picked from commit 6199a57500c0f60876e2118222d918a2b3b66d92)
DeltaFile
+2-2www/angie-module-njs/Makefile
+2-2www/angie/distinfo
+4-42 files

FreeBSD/ports c111786www/angie distinfo Makefile

www/angie: Update 1.11.1 => 1.11.2

This release mainly fixes 3 linux-specifig bugs (docker and BPF-related).

Changelog:
https://git.angie.software/web-server/angie/releases/tag/Angie-1.11.2

Commit log:
https://git.angie.software/web-server/angie/compare/Angie-1.11.1..Angie-1.11.2

PR:     292648
(cherry picked from commit 21629ec6ecb0d3701581471e5fd20f28ee514265)
DeltaFile
+3-3www/angie/distinfo
+1-1www/angie/Makefile
+4-42 files

FreeBSD/ports 8622849www/angie Makefile, www/angie-module-brotli Makefile

www/angie: Update 1.11.2 => 1.11.3 (fix CVE-2026-1642, possible MITM attack)

Security: An attacker in a man-in-the-middle (MITM) position before a
proxied server using TLS, given conditions beyond the attacker's
control, could inject plaintext data into the response before the TLS
handshake begins (CVE-2026-1642); the fix was ported from nginx 1.29.5.

Changelog:
https://en.angie.software/angie/docs/oss_changes/#angie-1-11-3

- Bump PORTREVISION in www/angie-module-*.
- Fix using of ANGIE_PORTREVISION in RUN_DEPENDS for modules.
- Replace INSTALL_MAN with INSTALL_DATA for documentation.
- Unroll "for" loops with 1-2 items - simplify Makefile and call
  "INSTALL_*" 1 time instead of several.

PR:             293034
Security:       CVE-2026-1642
MFH:            2026Q1
DeltaFile
+8-12www/angie/Makefile
+7-7www/angie-module-brotli/Makefile
+6-7www/angie-module-njs/Makefile
+6-6www/angie-module-lua/Makefile
+5-7www/angie-module-zstd/Makefile
+5-5www/angie-module-geoip2/Makefile
+37-4420 files not shown
+77-8426 files

FreeBSD/ports 169111cdatabases/mariadb114-server distinfo Makefile

databases/mariadb114-server: Update to 11.4.10
DeltaFile
+3-3databases/mariadb114-server/distinfo
+1-1databases/mariadb114-server/Makefile
+4-42 files

FreeBSD/ports f172046devel/jujutsu distinfo Makefile.crates

devel/jujutsu: update to version 0.38.0

For the complete list of changes see:

    https://github.com/jj-vcs/jj/releases/tag/v0.38.0
DeltaFile
+263-255devel/jujutsu/distinfo
+130-126devel/jujutsu/Makefile.crates
+2-3devel/jujutsu/Makefile
+4-0devel/jujutsu/pkg-plist
+399-3844 files

FreeBSD/ports a1ebf7dsecurity/vuxml/vuln 2026.xml

security/vuxml: Document Roundcube vulnerabilities
DeltaFile
+26-0security/vuxml/vuln/2026.xml
+26-01 files

FreeBSD/ports 892da16net-im/py-zapzap distinfo Makefile

net-im/py-zapzap: Update to 6.2.10

ChangeLog:      https://github.com/rafatosta/zapzap/releases/tag/6.2.10
Reported by:    Rafael Tosta <notifications at github.com>
DeltaFile
+3-3net-im/py-zapzap/distinfo
+1-1net-im/py-zapzap/Makefile
+4-42 files

FreeBSD/ports e96a3detextproc/obsidian distinfo Makefile

textproc/obsidian: Update to 1.11.7
DeltaFile
+3-3textproc/obsidian/distinfo
+2-3textproc/obsidian/Makefile
+5-62 files

FreeBSD/ports e1b1500japanese/migemo Makefile

japanese/migemo: Update WWW
DeltaFile
+1-1japanese/migemo/Makefile
+1-11 files

FreeBSD/ports 235153bdevel/gitaly distinfo, net/gitlab-agent distinfo

www/gitlab: patch update to 18.8.3

Changes:        https://about.gitlab.com/releases/2026/02/04/gitlab-18-8-3-released/
DeltaFile
+13-13devel/gitaly/distinfo
+6-6www/gitlab/distinfo
+5-5www/gitlab-pages/distinfo
+5-5net/gitlab-agent/distinfo
+5-5www/gitlab-workhorse/distinfo
+1-1www/gitlab/Makefile.common
+35-356 files

FreeBSD/ports 85206e0devel/electron37 Makefile

devel/electron37: Deprecate and set to expire on 2026-03-31
DeltaFile
+4-1devel/electron37/Makefile
+4-11 files

FreeBSD/ports 0e6242bdevel/electron40 Makefile, devel/electron40/files patch-chrome_browser_about__flags.cc patch-sandbox_policy_openbsd_sandbox__openbsd.cc

devel/electron40: Add port: Build cross-platform desktop apps with JavaScript, HTML, and CSS

Build cross platform desktop apps with JavaScript, HTML, and CSS.

It's easier than you think.

If you can build a website, you can build a desktop app. Electron is a
framework for creating native applications with web technologies like
JavaScript, HTML, and CSS. It takes care of the hard parts so you can
focus on the core of your application.

WWW: https://electronjs.org/
DeltaFile
+14,570-0devel/electron40/files/packagejsons/yarn.lock
+942-0devel/electron40/files/packagejsons/.yarn/releases/yarn-4.12.0.cjs
+502-0devel/electron40/files/patch-chrome_browser_about__flags.cc
+420-0devel/electron40/Makefile
+399-0devel/electron40/files/patch-sandbox_policy_openbsd_sandbox__openbsd.cc
+399-0devel/electron40/files/patch-services_device_hid_hid__service__fido.cc
+17,232-01,629 files not shown
+58,203-11,635 files

FreeBSD/ports 8c49a1earchivers/lxqt-archiver Makefile, net-im/nheko Makefile

*/*: Bump PORTREVISION for known Qt private API abusers

Qt 6.10.2 edition.

These ports are known to directly use or link to a library that uses the
Qt private API and must be rebuilt with every Qt update.

Qt *public* API/ABI compatability is excellent, so most consumers don't
need to necessarily be rebuilt between patch or even minor releases, but
use of the private API breaks this compatibility between even patch
releases and its use is highly discouraged.

This list [1] is based on histortical data. We don't have time to
revisit every port on the list with each Qt update, so if your port has
dropped Qt private headers and was bumped in error, please remove it
yourself if you have write access to the Wiki or alert someone on kde@.

[1] https://wiki.freebsd.org/KDE/Qt
DeltaFile
+1-1net-im/nheko/Makefile
+1-1security/lxqt-openssh-askpass/Makefile
+1-1security/lxqt-sudo/Makefile
+1-1sysutils/lxqt-admin/Makefile
+1-1archivers/lxqt-archiver/Makefile
+1-1sysutils/lxqt-policykit/Makefile
+6-620 files not shown
+26-2126 files

FreeBSD/ports 30e17b5security/vuxml/vuln 2026.xml

security/vuxml: Add www/qt6-webengine < 6.10.2
DeltaFile
+42-0security/vuxml/vuln/2026.xml
+42-01 files

FreeBSD/ports b4a5f82devel/qt6-base/files patch-src_corelib_thread_qthread__unix.cpp, misc/qt6-examples pkg-plist

Qt6: Update to 6.10.2

January 29, 2026 by Jani Heikkinen

Qt 6.10.2 is now available for download. As a patch release, Qt 6.10.2
doesn’t introduce new features, but it delivers around 300 bug fix,
security improvements, and quality enhancements on top of Qt 6.10.1.
For a full overview of the most notable changes, take a look at the Qt
6.10.2 release notes.

Announcement:
https://www.qt.io/blog/qt-6.10.2-released
Release notes:
https://code.qt.io/cgit/qt/qtreleasenotes.git/about/qt/6.10.2/release-note.md

FreeBSD ports changes:
devel/qt6-base:
- Disable the reduced_relocations feature. Prior to Qt 6.10.0, this was
  only enabled if the compiler was GCC, but we are seeing crashes in

    [32 lines not shown]
DeltaFile
+1,261-0www/qt6-webengine/files/patch-security-rollup
+0-610www/qt6-webengine/files/patch-QTBUG-139335
+0-229x11-toolkits/qt6-declarative/files/patch-QTBUG-142331
+125-34misc/qt6-examples/pkg-plist
+0-122x11-toolkits/qt6-declarative/files/patch-QTBUG-142514
+7-24devel/qt6-base/files/patch-src_corelib_thread_qthread__unix.cpp
+1,393-1,01968 files not shown
+1,603-1,20874 files

FreeBSD/ports 19d4e3dmail/wanderlust distinfo Makefile

mail/wanderlust: Update to the snapshot on 2025-10-29
DeltaFile
+3-3mail/wanderlust/distinfo
+2-3mail/wanderlust/Makefile
+5-62 files

FreeBSD/ports 7fe7bcdwww/emacs-w3m distinfo Makefile

www/emacs-w3m: Update to the snapshot on 2025-12-29
DeltaFile
+3-3www/emacs-w3m/distinfo
+2-3www/emacs-w3m/Makefile
+5-62 files

FreeBSD/ports ac1cc0deditors/semi distinfo Makefile

editors/semi: Update to the snapshot on 2025-11-30
DeltaFile
+3-3editors/semi/distinfo
+2-3editors/semi/Makefile
+5-62 files