fq: update to 0.18.0.
Changes
Improved documentation in more formats. #1346
HTML version available at https://wader.github.io/fq/.
Man page available at doc/fq.1.
AsciiDoc source at doc/fq.1.adoc.
jq compatibility: Add $ARGS, --args and --jsonargs support. #1321
$ fq -n --arg a a --argjson b 1 '$ARGS'
{
"named": {
"a": "a",
"b": 1
},
"positional": []
}
[28 lines not shown]
ocaml-opam: update to 2.5.2.
Provided by upstream, Kate, in wip.
- update from 2.1.3 to 2.5.2 (fixing two CVEs in the process)
- the -full tarball is now used instead of the one autogenerated by
github
- rsync is now a runtime dependency (it is technically optional but it
helps users to have it for the moment)
- ocaml-dune is now explicitly a build dependency but no longer used
as-is. It is now used through gmake
- ocaml-cmdliner, ocaml-re, ocamlgraph, dose3, ocaml-cudf and
ocaml-opam-file-format are no longer dependencies
- the vendored versions of all the dependencies contained by the -full
archive is now used. This allows to simplify the build process
greatly and avoids having to import all the new dependencies on new opam
releases. This is also what a majority of BSD, Linux and macOS distributions
out-there do.
- The opam-solver library is no longer installed. This could not be used
[6 lines not shown]
editors/emacs31-nox11: import emacs31-nox11-31.1
GNU Emacs is an extensible, customizable editor textand more. At its
core is an interpreter for Emacs Lisp, a dialect of the Lisp
programming language with extensions to support text editing. The
features of GNU Emacs include:
- Content-sensitive editing modes, including syntax coloring, for a
wide variety of file types including plain text, source code, and
HTML.
- Complete built-in documentation, including a tutorial for new users.
- Support for many languages and their scripts, including all scripts,
Russian, Greek, Japanese, Chinese, Korean, Thai, Vietnamese, Lao,
Ethiopian, and some Indian scripts.
- Highly customizable, using Emacs Lisp code or a graphical
customization interface.
- A large number of extensions that add other functionality, including
a project planner, mail and news reader, debugger interface,
calendar, and more. Many of these extensions are distributed with
[3 lines not shown]
editors/emacs31: import emacs31-31.1
GNU Emacs is an extensible, customizable editor textand more. At its
core is an interpreter for Emacs Lisp, a dialect of the Lisp
programming language with extensions to support text editing. The
features of GNU Emacs include:
- Content-sensitive editing modes, including syntax coloring, for a
wide variety of file types including plain text, source code, and
HTML.
- Complete built-in documentation, including a tutorial for new users.
- Support for many languages and their scripts, including all scripts,
Russian, Greek, Japanese, Chinese, Korean, Thai, Vietnamese, Lao,
Ethiopian, and some Indian scripts.
- Highly customizable, using Emacs Lisp code or a graphical
customization interface.
- A large number of extensions that add other functionality, including
a project planner, mail and news reader, debugger interface,
calendar, and more. Many of these extensions are distributed with
[3 lines not shown]
sysutils/mirador: import package
An opinionated personal dashboard for your terminal: world clocks, a calendar,
weather, a real task list, notes, a market watchlist, and live CPU and network
charts, laid out how you want them.
It is built for one job, to sit in a terminal tab you leave open all day and
glance at. That single constraint drives every decision below: nothing blinks,
nothing shimmers, and nothing is designed to pull you back to it.
www/anubis: Update to 1.27.0
Changelog:
1.27.0:
Anubis v1.27.0 adds Windows Server support, automatically renames
cookies based on settings to avoid infinite challenge loops, adds
two new localizations, and more.
## Breaking change: cookie names are dynamically created based on
cookie settings
Anubis tries to avoid breaking changes as much as possible, but
sometimes we have to make them for the sake of the users. This is
technically a breaking change in something that is not part of the
public API of Anubis; but some administrators rely heavily on cookie
names in advanced configurations.
It seems that browsers store cookies disambiguated with their
options. This means you can have multiple cookies named the same
[83 lines not shown]
security/acmesh: Update to 3.1.4
* Noticed by he@. Thank you.
Changelog:
3.1.4:
1. Support ACME Renewal Information (ARI, RFC 9773), enabled by
default. Renewals now follow the renewal window suggested by the
CA. Set NO_ARI=1 to disable. The installed cron job now runs every
6 hours to react to ARI renewal windows in time.
2. Support the dns-persist-01 challenge, with --dns-persist-days.
3. A negative --days schedules renewal relative to the cert expiration
date, and can be combined with --valid-to to set a renewal margin.
4. Support ACME account key rollover.
5. Support multiple account emails. --update-account now persists
the new email.
6. Retry failed install/deploy steps on the next renewal.
7. Add bash completion, installed via --install.
8. New DNS providers: Level27, CDMON, Poweradmin, IP-Projects,
[6 lines not shown]
py-imagesize: updated to 2.0.1
2.0.1
Optimize metadata parsing and HTTP range reads.
Fix JPEG2000 box parsing.
Accept single-quoted SVG dimensions.
Return positive heights for top-down BMP images.
Remove the upper Python version cap, migrate packaging to pyproject.toml,
and add Python 3.15 CI coverage.
Bump the package version to 2.0.1 and add recent feedback contributors to
the README.
openssl: updated to 3.6.4
OpenSSL 3.6.4 is a security patch release. The most severe CVE fixed
in this release is Moderate.
This release incorporates the following bug fixes and mitigations:
Fixed QUIC server being able to trigger double free when processing
INITIAL packet.
(CVE-2026-18798)
Fixed heap buffer overflow in CMS key unwrapping.
(CVE-2026-63072)
Fixed invalid pointer dereference in CMP server via crafted protectionAlg.
(CVE-2026-63076)
Fixed unbounded memory growth in QUIC server incoming channel queue.
(CVE-2026-14456)
[27 lines not shown]
croc: Update to 11.3.2
Highlights
Automatically advertises and negotiates experimental-derp-attach-group-v1 in normal supported builds.
Two v11.3.2 peers use eight striped streams over four raw-direct paths with no flags.
Mixed-version peers remain compatible through one-stream legacy Attach.
Raw setup retains one-stream manager fallback, with croc relay fallback in automatic mode.
11.3.1
Highlights
Pins derphole to github.com/schollz/derphole v0.18.2-croc.1 while preserving its upstream module identity.
Adds modular AttachGroup bundle and lifecycle support for the qualified eight-stream/four-path topology.
Keeps automatic AttachGroup advertisement disabled in this release; peers continue using compatible legacy DERP Attach until activation is qualified separately.
Reduces CI cost by avoiding duplicate branch-push validation and reserving full cross-platform builds for main and manual runs.
What’s Changed
DERP transport: connection bundles, client-local providers, clean group-close handling, and safe striped-sender teardown.
Benchmarks: consolidated 8/4 qualification data and benchmark-only build tagging.
[2 lines not shown]