FreeBSD/doc df4e42b — documentation/content/en/books/handbook/containers _index.adoc

containers: Extend and improve the firewall section
DeltaFile
+71-14documentation/content/en/books/handbook/containers/_index.adoc
+71-141 files

FreeBSD/ports fba05c9 — emulators/libdsk Makefile, emulators/xcpc Makefile

Reset maintainership for pixel at hugbox.org ports

Maintainer's mail bounces:
pixel at hugbox.org: all relevant MX records point to non-existent hosts
DeltaFile
+1-1emulators/xcpc/Makefile
+1-1emulators/libdsk/Makefile
+2-22 files

FreeBSD/ports 95aeb97 — sysutils/ansible-sshjail Makefile, sysutils/ansible-sshjail/files patch-sshjail.py

sysutils/ansible-sshjail: Add doas & fix deprecation warnings

Upstream:
- https://github.com/austinhyde/ansible-sshjail/pull/46
- https://github.com/austinhyde/ansible-sshjail/pull/47

Sponsored by:   SkunkWerks, GmbH
DeltaFile
+43-11sysutils/ansible-sshjail/files/patch-sshjail.py
+1-1sysutils/ansible-sshjail/Makefile
+44-122 files

FreeBSD/ports 0e416b9 — net-mgmt/uptime-kuma Makefile distinfo, net-mgmt/uptime-kuma/files extra-patch-node__modules_cpu-features

net-mgmt/uptime-kuma: Update to 2.5.5

Sponsored by:   SkunkWerks, GmbH
DeltaFile
+48-0net-mgmt/uptime-kuma/files/extra-patch-node__modules_cpu-features
+5-5net-mgmt/uptime-kuma/distinfo
+3-1net-mgmt/uptime-kuma/Makefile
+56-63 files

FreeBSD/ports 78b0255 — net-im/signal-desktop Makefile, textproc/obsidian Makefile

*/*: Bump port revision after electron43 update (322e420684b7)
DeltaFile
+1-1textproc/obsidian/Makefile
+1-1net-im/signal-desktop/Makefile
+2-22 files

FreeBSD/ports 322e420 — devel/electron43/files patch-electron_spec_api-browser-window-spec.ts patch-electron_spec_api-app-spec.ts, devel/electron43/files/packagejsons yarn.lock

devel/electron43: Update to 43.7.7

Changelog:
- https://github.com/electron/electron/releases/tag/v43.7.4
- https://github.com/electron/electron/releases/tag/v43.7.5
- https://github.com/electron/electron/releases/tag/v43.7.6
- https://github.com/electron/electron/releases/tag/v43.7.7

Reported by:    GitHub (watch releases)
DeltaFile
+756-2,043devel/electron43/files/packagejsons/yarn.lock
+1,000-0devel/electron43/files/packagejsons/.yarn/releases/yarn-4.18.0.cjs
+0-945devel/electron43/files/packagejsons/.yarn/releases/yarn-4.12.0.cjs
+205-0devel/electron43/files/patch-electron_spec_api-app.spec.ts
+0-196devel/electron43/files/patch-electron_spec_api-app-spec.ts
+0-191devel/electron43/files/patch-electron_spec_api-browser-window-spec.ts
+1,961-3,37587 files not shown
+2,916-4,12993 files

FreeBSD/ports 9dea99d — devel/mimalloc distinfo Makefile

devel/mimalloc: Update to 3.5.4
DeltaFile
+5-4devel/mimalloc/Makefile
+3-3devel/mimalloc/distinfo
+8-72 files

FreeBSD/ports 51e1542 — net-mgmt/victoria-logs pkg-plist Makefile

net-mgmt/victoria-logs: upgrade to 1.53.0
DeltaFile
+5-5net-mgmt/victoria-logs/distinfo
+2-3net-mgmt/victoria-logs/Makefile
+2-0net-mgmt/victoria-logs/pkg-plist
+9-83 files

FreeBSD/ports 85c75d1 — devel/boost_build Makefile pkg-plist

devel/boost_build: add missed files to plist (+)

PR:     299035
MFH:    2026Q4
(cherry picked from commit 7fb3fbc9ed03ed4409223aba30a32f2857f9e960)
DeltaFile
+4-0devel/boost_build/pkg-plist
+1-0devel/boost_build/Makefile
+5-02 files

FreeBSD/ports 7fb3fbc — devel/boost_build Makefile pkg-plist

devel/boost_build: add missed files to plist (+)

PR:     299035
MFH:    2026Q4
DeltaFile
+4-0devel/boost_build/pkg-plist
+1-0devel/boost_build/Makefile
+5-02 files

FreeBSD/ports 3129dbe — databases/postgresql-plv8js/files patch-plv8.h patch-plv8.cc, devel/cbang/files patch-src_cbang_js_v8_Value.cpp patch-config_v8_____init____.py

devel/cbang: databases/postgresql-plv8js: Chase v8 upgrade

V8 15.4 headers refuse to compile ("Non-CppGC MicrotaskQueue definition
is not supported") unless the embedder defines V8_CPPGC_MICROTASK_QUEUE,
matching how lang/v8 itself is built.

databases/postgresql-plv8js: pass the define in CXXFLAGS.

devel/cbang: define it in the v8 scons config before the v8.h header
check, which otherwise fails and silently disables V8 support, breaking
packaging.  Also record it in cbang/config.h for consumers.
DeltaFile
+175-0databases/postgresql-plv8js/files/patch-plv8__func.cc
+65-0devel/cbang/files/patch-src_cbang_net_URI.cpp
+60-0databases/postgresql-plv8js/files/patch-plv8.cc
+44-0databases/postgresql-plv8js/files/patch-plv8.h
+21-0devel/cbang/files/patch-config_v8_____init____.py
+20-0devel/cbang/files/patch-src_cbang_js_v8_Value.cpp
+385-011 files not shown
+482-1117 files

FreeBSD/ports 09ca853 — lang/v8 distinfo Makefile, lang/v8/files patch-build_toolchain_gcc__toolchain.gni patch-build_config_linux_pkg-config.py

lang/v8: update to 15.4.80.20 (Chrome 154 stable)

- Update to 15.4.80.20 (Chrome 154.0.8037.97 stable pin)
- Update sub-dependency revisions from DEPS
- Add patch-.gn: use python3 from PATH instead of the hermetic
  CPython CIPD package, which is not fetched; this also avoids a
  host_cpu reference unsupported by devel/gn in the dotfile
- Add USES=llvm:min=20,build for proper LLVM toolchain selection
- Add 3 new sub-dependencies: cpu_features (chromium wrapper),
  disarm, fadec
- Add ObtainCurrentThreadStackReservedLimit() for FreeBSD
- Remove upstreamed wasm-shuffle-reducer.cc patch
- Remove libcppgc.so and libthird_party_protobuf_protobuf_lite.so
  (merged/removed upstream)
- Remove stale v8_use_libm_trig_functions GN arg (removed upstream)
- Specify explicit ALL_TARGET to avoid building test targets
- Regenerate all patches for new version
- Use USES=elfctl to mark d8, v8_shell, mksnapshot and mkgrokdump
  as wxneeded: V8's JIT maps its code range read+write+execute and

    [8 lines not shown]
DeltaFile
+168-61lang/v8/Makefile
+0-180lang/v8/files/patch-182d9c05e78
+27-97lang/v8/files/patch-build_config_compiler_BUILD.gn
+57-17lang/v8/distinfo
+23-23lang/v8/files/patch-build_config_linux_pkg-config.py
+11-32lang/v8/files/patch-build_toolchain_gcc__toolchain.gni
+286-41045 files not shown
+817-63451 files

FreeBSD/ports b40e2d1 — www/phalcon Makefile distinfo

www/phalcon: update to 5.22.1.
DeltaFile
+3-3www/phalcon/distinfo
+1-1www/phalcon/Makefile
+4-42 files

FreeBSD/ports 369efb3 — www/remark42 Makefile, www/remark42/files remark.in

www/remark42: stop baking REMARK_URL at build time

Since 1.17.0 the server fills the {% REMARK_URL %} placeholder into
the embedded frontend at serve time, using the REMARK_URL it was
started with.  The port was still substituting the placeholder with
http://127.0.0.1:8080 before embedding, which left nothing for the
server to fill in, so the widget pointed at an unreachable host
whenever a page omitted remark_config.host.

- Drop the build-time substitution and the REMARK_URL make variable;
  remark_url in rc.conf now reaches the frontend as well.
- Document remark_remark_web_root in the rc script.
DeltaFile
+1-4www/remark42/Makefile
+3-0www/remark42/files/remark.in
+4-42 files

FreeBSD/ports c25c56b — www/redmine61 pkg-plist Makefile, www/redmine61/files patch-Gemfile

www/redmine61: update to 6.1.5

Security and bug fix release: fixes two private data leaks via
the REST API.

Upstream now pins Rails 7.2.4; keep the dependency floor at
7.2.3.2, the version currently in the tree.
DeltaFile
+3-3www/redmine61/distinfo
+2-2www/redmine61/files/patch-Gemfile
+1-1www/redmine61/pkg-plist
+1-1www/redmine61/Makefile
+7-74 files

FreeBSD/ports d9448a0 — www/redmine70 Makefile pkg-plist, www/redmine70/files patch-Gemfile

www/redmine70: update to 7.0.2

Security and bug fix release: fixes two private data leaks via
the REST API and a DOM-based XSS via clipboard HTML paste.

Upstream now pins Rails 8.1.4; keep the dependency floor at
8.1.3.1, the version currently in the tree.
DeltaFile
+3-3www/redmine70/distinfo
+2-2www/redmine70/files/patch-Gemfile
+3-1www/redmine70/pkg-plist
+1-1www/redmine70/Makefile
+9-74 files

FreeBSD/src ec3ebfa — sbin/fsck_msdosfs fat.c

MFC: fsck_msdosfs: fix head bitmap over-allocation on 32-bit platforms

bitmap_ctor() computed the allocation size as

        roundup2(bits, LONG_BIT) / (LONG_BIT / 8)

The dividend is a count of bits, so converting it to bytes requires
dividing by 8 (bits per byte), not by LONG_BIT / 8 (bytes per long).
The two divisors happen to coincide on LP64, but on ILP32 platforms
the head bitmap was allocated at twice the required size; for a
FAT32 file system with close to 2^28 clusters, that is 64 MiB instead
of 32 MiB.

The extra half of the allocation was never accessed, so there is no
functional change other than the reduced memory footprint.

Pull Request:   https://github.com/freebsd/freebsd-src/pull/2440

(cherry picked from commit 269002da453895fc935101afefeb02d2c7d10360)
DeltaFile
+1-1sbin/fsck_msdosfs/fat.c
+1-11 files

FreeBSD/src 70f6696 — sbin/fsck_msdosfs fat.c

MFC: fsck_msdosfs: fix head bitmap over-allocation on 32-bit platforms

bitmap_ctor() computed the allocation size as

        roundup2(bits, LONG_BIT) / (LONG_BIT / 8)

The dividend is a count of bits, so converting it to bytes requires
dividing by 8 (bits per byte), not by LONG_BIT / 8 (bytes per long).
The two divisors happen to coincide on LP64, but on ILP32 platforms
the head bitmap was allocated at twice the required size; for a
FAT32 file system with close to 2^28 clusters, that is 64 MiB instead
of 32 MiB.

The extra half of the allocation was never accessed, so there is no
functional change other than the reduced memory footprint.

Pull Request:   https://github.com/freebsd/freebsd-src/pull/2440

(cherry picked from commit 269002da453895fc935101afefeb02d2c7d10360)
DeltaFile
+1-1sbin/fsck_msdosfs/fat.c
+1-11 files

FreeBSD/ports aa93431 — math/R-cran-psych Makefile distinfo

math/R-cran-psych: Update to 2.6.9

Changelog: https://cran.r-project.org/web/packages/psych/news.html
DeltaFile
+3-3math/R-cran-psych/distinfo
+1-1math/R-cran-psych/Makefile
+4-42 files

FreeBSD/ports 2e09da7 — misc/py-pytorch Makefile distinfo

misc/py-pytorch: update 2.14.0 → 2.14.1
DeltaFile
+3-3misc/py-pytorch/distinfo
+2-3misc/py-pytorch/Makefile
+5-62 files

FreeBSD/ports e6ef81d — devel/py-pytest-recorder distinfo Makefile

devel/py-pytest-recorder: update 0.6.6 → 1.0.0
DeltaFile
+4-4devel/py-pytest-recorder/Makefile
+3-3devel/py-pytest-recorder/distinfo
+7-72 files

FreeBSD/ports 9580ea6 — www/domoticz distinfo Makefile, www/domoticz/files patch-appversion.h patch-CMakeLists.txt

www/domoticz: update to 2026.4

Changelog: https://github.com/domoticz/domoticz/blob/development/History.txt
DeltaFile
+221-35www/domoticz/pkg-plist
+42-117www/domoticz/files/patch-CMakeLists.txt
+17-5www/domoticz/Makefile
+5-3www/domoticz/distinfo
+6-0www/domoticz/files/patch-appversion.h
+291-1605 files

FreeBSD/ports b5d08d8 — www/caddy-custom Makefile

www/caddy-custom: Fix build with BUILD_AS_NON_ROOT=yes

Two fixes:
1. Establish a GOCACHE and GOPATH for BUILD_AS_NON_ROOT so it doesn't
   try to use /nonexistant/go (patch by Brad Ackerman).
2. Reset PORTREVISION (Vick Khera). I added a note in caddy/Makefile
   so maybe I'll remember in the future.

PR:             295182
DeltaFile
+2-2www/caddy-custom/Makefile
+2-21 files

FreeBSD/ports 813092b — devel/luv distinfo pkg-descr

devel/luv: Update to 1.53.0-0

Changes: https://github.com/luvit/luv/releases/tag/1.53.0-0
DeltaFile
+6-6devel/luv/Makefile
+9-1devel/luv/pkg-descr
+3-3devel/luv/distinfo
+18-103 files

FreeBSD/ports ed65a90 — www/caddy Makefile distinfo

www/caddy: Update to 2.11.6

Changes: https://github.com/caddyserver/caddy/releases/tag/v2.11.6

There are some breaking changes in this release, so you should read
that list. They are primarily security-tightening changes and should
be invisible to most users. If you were relying on uploading files in
headers rather than the body, you'll want to make some changes.
DeltaFile
+5-5www/caddy/distinfo
+2-2www/caddy/Makefile
+7-72 files

FreeBSD/ports acafdff — games/xray-16 Makefile distinfo

games/xray-16: Update 2921-january-2025-rc1.20260601 => 2921-january-2025-rc1.20261001

Commit log:
https://github.com/OpenXRay/xray-16/compare/11b8c4e...d4979c2

PR:             299010
Sponsored by:   UNIS Labs (vvd, commit patch)
DeltaFile
+5-5games/xray-16/distinfo
+3-3games/xray-16/Makefile
+8-82 files

FreeBSD/src 6948f4d — sys/kern kern_sendfile.c

sendfile: keep the lowat hack more conservative

First, record the original lowat value and later in the wait/EAGAIN loop
look at the original value, rather than on the value that we just faked.
This eliminates some blank syscalls, where socket was reported as writable
and immediate write instantly fails.  In my testing the ratio of such
syscalls was really small, under 2%, however in a different scenario this
negative effect can be more profound.

Second, cap the lowat growth to 1/2 of original socket buffer size, rather
than to current size.  The problem was there before, but it became more
profound after 587c6c121504.

Note: we are considering to evaluate if the lowat hack is needed at all.

Reviewed by:            tuexen
Differential Revision:  https://reviews.freebsd.org/D60106
DeltaFile
+6-3sys/kern/kern_sendfile.c
+6-31 files

FreeBSD/src e65b707 — sys/netinet tcp_input.c

tcp: use SB_AUTOSIZE flag to tell if socket buffer was set

The check against V_tcp_sendspace is not a correct one, as a buffer may
grow larger than the initial value.  The conjunction was always false up
until 587c6c121504, and only after it the bug surfaced.

If we already grow our buffer past the value stored in the hostcache,
prefer our value.

Reviewed by:            tuexen
Differential Revision:  https://reviews.freebsd.org/D60105
DeltaFile
+6-11sys/netinet/tcp_input.c
+6-111 files

FreeBSD/ports 517bee7 — editors/emacs-devel Makefile distinfo

editors/emacs-devel: Update to 2026-10-01 snapshot

Highlights:
- Unicode 18.0 support
- Tramp 2.9.0-pre
- Org 9.8.10

Commit log:     https://github.com/emacs-mirror/emacs/compare/30a6d006700b...60a68b1b5d9b
Sponsored by:   The FreeBSD Foundation
DeltaFile
+3-3editors/emacs-devel/distinfo
+2-2editors/emacs-devel/Makefile
+5-52 files

FreeBSD/ports 6bf6814 — cad/klayout Makefile distinfo, cad/klayout/files patch-src_gsiqt_qtbasic_gsiQtGuiExternals.h

cad/klayout: Update 0.30.10 => 0.30.12

Release Notes:
https://www.klayout.de/development.html#0.30.12

Changelog:
https://github.com/KLayout/klayout/blob/v0.30.12/Changelog

PR:             299028
Sponsored by:   UNIS Labs (vvd, commit patch)
MFH:            2026Q4

(cherry picked from commit bbdf3f9c05267471d7af70f1042da1d761a91ec1)
DeltaFile
+10-0cad/klayout/files/patch-src_gsiqt_qtbasic_gsiQtGuiExternals.h
+3-3cad/klayout/distinfo
+1-1cad/klayout/Makefile
+14-43 files