Compare commits

...

1125 Commits

Author SHA1 Message Date
nixpkgs-ci[bot]
021e57b266 [Backport release-26.05] reposilite: 3.5.28 -> 3.6.2 (#556408) 2026-08-25 14:09:56 +00:00
dram
d6fcbc59f8 [Backport release-26.05] Revert "scx.rustscheds: 1.1.2 -> 1.1.3" (#556411) 2026-08-25 13:57:44 +00:00
dram
cd730104e6 Revert "scx.rustscheds: 1.1.2 -> 1.1.3"
(cherry picked from commit 1a09b1f853)
2026-08-25 13:52:39 +00:00
R. Ryantm
0d098bb59b reposilite: 3.5.28 -> 3.6.2
(cherry picked from commit 27a717d2c4)
2026-08-25 13:43:40 +00:00
nixpkgs-ci[bot]
b605c53e91 [Backport release-26.05] jackett: 0.24.2406 -> 0.24.2457 (#556356) 2026-08-25 12:52:24 +00:00
nixpkgs-ci[bot]
cd8d50ec1c [Backport release-26.05] bitwarden-desktop: 2026.7.0 -> 2026.8.0 (#555496) 2026-08-25 12:48:25 +00:00
R. Ryantm
58c5ec2590 jackett: 0.24.2406 -> 0.24.2457
(cherry picked from commit 3e68f8b9f8)
2026-08-25 09:54:54 +00:00
isabel
3d800596f3 [Backport release-26.05] cross-seed: fix better_sqlite3 crash (#556163) 2026-08-25 09:18:31 +00:00
isabel
33ccc4a2cd [Backport release-26.05] python3Packages.exllamav3: 1.4.1 -> 1.4.3 (#556162) 2026-08-25 09:18:00 +00:00
Grimmauld
437919fb06 [Backport release-26.05] linuxPackages.opensnitch-ebpf: fix build with kernel >= 7.2 (#556226) 2026-08-25 08:45:56 +00:00
Arne Keller
4bb95afd61 [Backport release-26.05] javaPackages.compiler.openjdk11: 11.0.32+9 -> 11.0.32.1+1 (#556334) 2026-08-25 07:51:43 +00:00
R. Ryantm
3cd85e94e0 javaPackages.compiler.openjdk11: 11.0.32+9 -> 11.0.32.1+1
(cherry picked from commit e1ff785a43)
2026-08-25 07:46:39 +00:00
teutat3s
f4f698677b [26.05] electron{,-bin,-chromedriver}: 41 -> 43 (#555088) 2026-08-25 06:44:26 +00:00
nixpkgs-ci[bot]
9d221b0844 [Backport release-26.05] ghostfolio: 3.50.0 -> 3.59.1 (#556315) 2026-08-25 06:07:24 +00:00
R. Ryantm
68ec22e143 ghostfolio: 3.50.0 -> 3.59.1
(cherry picked from commit 28e195c0ce)
2026-08-25 05:31:59 +00:00
Ihar Hrachyshka
3dff45fe84 [Backport release-26.05] tabby: mark broken (#556287) 2026-08-25 02:53:04 +00:00
Ihar Hrachyshka
8a37aed654 tabby: mark broken
It's been broken for months for both platforms. Presumably a bump to
0.32 could fix it: https://github.com/NixOS/nixpkgs/pull/485360 but it's
also broken with our rust version and requires an upstream fix first.

(cherry picked from commit 48d4cf12ba)
2026-08-25 02:25:02 +00:00
Nick Cao
fd37132eee [Backport release-26.05] complgen: 0.10.1 -> 0.11.0 (#556209) 2026-08-24 23:58:30 +00:00
Marie Ramlow
885ef57dfc [26.05]: appium-inspector: 2026.5.1 -> 2026.7.1, update to electron v43 (#555974) 2026-08-24 22:06:54 +00:00
nixpkgs-ci[bot]
85589388dd [Backport release-26.05] veracrypt: modernize, build with fuse3 (#556120) 2026-08-24 21:59:48 +00:00
éclairevoyant
7410cab5bc linuxPackages.opensnitch-ebpf: fix build with kernel >= 7.2
(cherry picked from commit b504735d7a)
2026-08-24 21:43:53 +00:00
R. Ryantm
849750a264 complgen: 0.10.1 -> 0.11.0
(cherry picked from commit bef0010cda)
2026-08-24 20:57:23 +00:00
nixpkgs-ci[bot]
d82660fa0d [Backport release-26.05] modrinth-app-unwrapped: 0.17.5 -> 0.18.2 (#555846) 2026-08-24 20:50:07 +00:00
nixpkgs-ci[bot]
67a9b40c08 [Backport release-26.05] croaring: 5.0.0 -> 5.1.0 (#555842) 2026-08-24 20:32:01 +00:00
BatteredBunny
4c9beaa452 cross-seed: fix better_sqlite3 crash
(cherry picked from commit f806455e43)
2026-08-24 19:10:56 +00:00
BatteredBunny
6b958cb5f1 python3Packages.exllamav3: 1.4.1 -> 1.4.3
(cherry picked from commit de97cebb0f)
2026-08-24 19:09:52 +00:00
Pol Dellaiera
41ead07c0d [Backport release-26.05] guix: 1.5.0 -> 1.5.0-unstable-2026-08-23 (#556127) 2026-08-24 17:54:44 +00:00
Liam Hupfer
9f48505d71 guix: 1.5.0 -> 1.5.0-unstable-2026-08-23
Fix pending CVEs noted in a recent Guix blog post.

Link: https://guix.gnu.org/en/blog/2026/guix-substitute-pull-vulnerabilities/
(cherry picked from commit 7befe224f4)
2026-08-24 11:42:36 -05:00
Ethan Carter Edwards
750155f321 guix: set meta.donationPage
Good software deserves our support.

Signed-off-by: Ethan Carter Edwards <ethan@ethancedwards.com>
(cherry picked from commit d08119d755)
2026-08-24 11:42:28 -05:00
Jonas Heinrich
f9b0ea52ed ioquake3: fix riscv cross-compilation (#556068) 2026-08-24 16:28:26 +00:00
teutat3s
79c2937b21 [Backport release-26.05] signal-desktop: 8.21.0 -> 8.24.0 (#555075) 2026-08-24 16:14:59 +00:00
Luj
f06521a5de [Backport release-26.05] perlPackages.CryptOpenSSLRSA: 0.35 -> 0.41 (#556113) 2026-08-24 16:08:50 +00:00
Ryan Omasta
c07a2988e0 veracrypt: modernize, build with fuse3
(cherry picked from commit ad845e4f3d)
2026-08-24 16:07:15 +00:00
Ihar Hrachyshka
41c647ad3b perlPackages.MojoSAML: select padding to accommodate new CryptOpenSSLRSA
(cherry picked from commit f2e1035aa5)
2026-08-24 15:46:32 +00:00
Ihar Hrachyshka
e0ee4840b4 perlPackages.CryptOpenSSLRSA: 0.35 -> 0.41
Changelog: https://metacpan.org/dist/Crypt-OpenSSL-RSA/changes

Among other things, it restores PKCS#1 v1.5 padding for sign()/verify()
in 0.38 which broke proxmox api if deployed on NixOS [1].

[1] https://github.com/SaumonNet/proxmox-nixos/issues/217

(cherry picked from commit a112a05000)
2026-08-24 15:46:31 +00:00
Sandro
74cee24605 [Backport release-26.05] virtualbox: 7.2.14 -> 7.2.16 (#555603) 2026-08-24 14:48:26 +00:00
nixpkgs-ci[bot]
75301f8faf [Backport release-26.05] teamtype: 0.9.1 -> 0.9.2 (#554176) 2026-08-24 14:47:18 +00:00
zowoq
08ce2ecacf [Backport release-26.05] linuxKernel.kernels.linux_zen: 7.1.9 -> 7.1.10 (#556083) 2026-08-24 14:12:56 +00:00
Ryan Omasta
104567047e linuxKernel.kernels.linux_zen: 7.1.9 -> 7.1.10
https://github.com/zen-kernel/zen-kernel/releases/tag/v7.1.10-zen1
Diff: https://github.com/zen-kernel/zen-kernel/compare/v7.1.9-zen1...v7.1.10-zen1
(cherry picked from commit 384f311d61)
2026-08-24 14:08:00 +00:00
Weijia Wang
732c66a1ca [Backport release-26.05] dusklight: fix eval on unsupported systems (#555803) 2026-08-24 13:45:25 +00:00
Jonas Heinrich
b99582ee3d ioquake3: fix riscv cross-compilation
(cherry picked from commit 5252590203)
2026-08-24 15:30:48 +02:00
nixpkgs-ci[bot]
6e73fa5de9 [Backport release-26.05] mailpit: 1.30.7 -> 1.31.0 (#555986) 2026-08-24 12:12:38 +00:00
Vladimír Čunát
3f27fb38bf [Backport release-26.05] thunderbird-153-unwrapped: 153.0.1esr -> 153.1.0esr (#555967) 2026-08-24 12:06:24 +00:00
nixpkgs-ci[bot]
79daf6a389 [Backport release-26.05] acli: 1.3.23-stable -> 1.3.29-stable (#555926) 2026-08-24 11:47:00 +00:00
nixpkgs-ci[bot]
359cc63060 [Backport release-26.05] vivaldi: 8.1.4087.66 -> 8.1.4087.70 (#556030) 2026-08-24 11:46:59 +00:00
h7x4
490c61b9c7 [Backport release-26.05] rsyslog: fix imjournal invalidation reopen busy-loop (#553906) 2026-08-24 11:31:54 +00:00
R. Ryantm
ae86c4d6ed vivaldi: 8.1.4087.66 -> 8.1.4087.70
(cherry picked from commit 9d92957ab8)
2026-08-24 10:21:25 +00:00
Pavol Rusnak
b74eb1afc2 [backport-26.05] trezor-suite 26.4.2 → 26.8.2 (#555994) 2026-08-24 09:20:45 +00:00
Pavol Rusnak
e9aedb8027 trezor-suite: 26.7.4 -> 26.8.2
(cherry picked from commit f776321323)
2026-08-24 11:14:35 +02:00
R. Ryantm
5f99d413da trezor-suite: 26.7.2 -> 26.7.4
(cherry picked from commit 3dcaa8690f)
2026-08-24 11:08:26 +02:00
R. Ryantm
e106ff8307 trezor-suite: 26.6.1 -> 26.7.2
(cherry picked from commit b87548a083)
2026-08-24 11:08:16 +02:00
R. Ryantm
5765a1989e trezor-suite: 26.5.2 -> 26.6.1
(cherry picked from commit 2ec82cb802)
2026-08-24 11:08:16 +02:00
R. Ryantm
400451365c trezor-suite: 26.5.1 -> 26.5.2
(cherry picked from commit 3498375482)
2026-08-24 11:08:16 +02:00
R. Ryantm
4418ab1830 trezor-suite: 26.4.2 -> 26.5.1
(cherry picked from commit 58588d7b45)
2026-08-24 11:07:57 +02:00
R. Ryantm
22ce473136 mailpit: 1.30.7 -> 1.31.0
(cherry picked from commit d8dfcc1487)
2026-08-24 08:46:02 +00:00
nixpkgs-ci[bot]
0a20840b87 [Backport release-26.05] matrix-tuwunel: 1.8.3 -> 1.9.0 (#555955) 2026-08-24 08:39:59 +00:00
tree-sapii
4ddb2791fd appium-inspector: update to electron v43
(cherry picked from commit 38f95b3781)
2026-08-24 09:34:31 +02:00
R. Ryantm
e756fa97aa appium-inspector: 2026.5.1 -> 2026.7.1
(cherry picked from commit b95cbcf199)
2026-08-24 09:34:31 +02:00
taku0
acb8914d92 [Backport release-26.05] thunderbird-latest-bin-unwrapped: 153.0.3 -> 154.0 (#555641) 2026-08-24 07:12:11 +00:00
R. Ryantm
2baece75e5 thunderbird-153-unwrapped: 153.0.1esr -> 153.1.0esr
(cherry picked from commit 3d71a76bac)
2026-08-24 06:37:07 +00:00
tomberek
2df6ecacf6 atlantis: 0.44.0 -> 0.47.1 (#555457) 2026-08-24 05:40:45 +00:00
Sandro
037f96607b [Backport release-26.05] balatro: rename conflicting src attribute (#555316) 2026-08-24 05:32:15 +00:00
nixpkgs-ci[bot]
1da9912829 [Backport release-26.05] foks: 0.1.8 -> 0.1.9 (#555954) 2026-08-24 05:27:32 +00:00
Johannes Arnold
59c8424087 matrix-tuwunel: 1.8.3 -> 1.9.0
(cherry picked from commit 12ad6e8c08)
2026-08-24 05:09:54 +00:00
R. Ryantm
83b329f826 foks: 0.1.8 -> 0.1.9
(cherry picked from commit 45cec779fb)
2026-08-24 05:07:26 +00:00
Sandro
d262ea8001 [Backport release-26.05] koboldcpp: 1.110 -> 1.119 (#555519) 2026-08-24 04:42:47 +00:00
h7x4
5dc6eacef7 [Backport 26.05] maintainers: FlameFlag -> _4evy (#540773) 2026-08-24 04:13:45 +00:00
R. Ryantm
611d9d86eb acli: 1.3.23-stable -> 1.3.29-stable
(cherry picked from commit 16c5fa2d92)
2026-08-24 02:50:18 +00:00
4evy
728f212161 maintainer-list: remove matrix for _4evy
(cherry picked from commit ad695f72c9)
2026-08-24 02:00:00 +03:00
4evy
53d9546058 maintainer-list: update email for _4evy
(cherry picked from commit 105ac009ad)
2026-08-24 02:00:00 +03:00
4evy
3c77fedc2b maintainer-list: fix github & name for _4evy
(cherry picked from commit 5d7a5c6af5)
2026-08-24 02:00:00 +03:00
4evy
8233c4c83f maintainer-list: change email for _4evy
(cherry picked from commit 78634cd306)
2026-08-24 02:00:00 +03:00
4evy
0d87e27ba2 maintainers: rename FlameFlag to _4evy
The raycast-beta maintainer list is one line on release-26.05, so this
backport keeps the branch's existing format.

(cherry picked from commit f179771c84)
2026-08-24 02:00:00 +03:00
Ihar Hrachyshka
a3b98866ee [Backport release-26.05] gpauth: drop binary-eater as a maintainer (#555866) 2026-08-23 22:57:55 +00:00
h7x4
9376eb65a8 [Backport release-26.05] udp514-journal: new package and module (#555498) 2026-08-23 22:08:46 +00:00
Rahul Rameshbabu
db6571cf55 maintainers: remove binary-eater
I am no longer using nixpkgs nor actively participating in reviews. This is a
good opportunity for me to step aside from the gpauth and gpclient packages
since we have good maintainers for the packages.

Signed-off-by: Rahul Rameshbabu <sergeantsagara@protonmail.com>
(cherry picked from commit d9c369bd16)
2026-08-23 21:51:46 +00:00
Rahul Rameshbabu
41f02df5b3 gpauth: remove binary-eater as a maintainer
I am no longer using nixpkgs nor actively participating in reviews. This is a
good opportunity for me to step aside from the gpauth and gpclient packages
since we have good maintainers for the packages.

Signed-off-by: Rahul Rameshbabu <sergeantsagara@protonmail.com>
(cherry picked from commit 5a5e19b4b6)
2026-08-23 21:51:46 +00:00
zowoq
d8e98944a5 staging-nixos-26.05 merge for 2026-08-23 (#555742) 2026-08-23 21:43:53 +00:00
Ihar Hrachyshka
07c791309c [Backport release-26.05] gp{auth,client}: fix build in darwin sandbox (#552862) 2026-08-23 20:48:36 +00:00
Ihar Hrachyshka
681627a756 [Backport release-26.05] python314Packages.pypdfium2: skip test that does not work on ZFS (#555847) 2026-08-23 20:37:42 +00:00
Sandro Jäckel
39ea295047 python314Packages.pypdfium2: skip test that does not work on ZFS
(cherry picked from commit d923aeab06)
2026-08-23 20:26:58 +00:00
R. Ryantm
19efe870dd modrinth-app-unwrapped: 0.17.5 -> 0.18.2
(cherry picked from commit e16b30fb11)
2026-08-23 20:18:59 +00:00
R. Ryantm
c0114d4184 croaring: 5.0.0 -> 5.1.0
(cherry picked from commit 20bcbae252)
2026-08-23 20:06:36 +00:00
Oleksandr Usov
cb5c0c2221 nixos/udp514-journal: add module
(cherry picked from commit f1935fe4c9)
2026-08-23 20:30:37 +01:00
Felix Bargfeldt
b957ca5bb6 [Backport release-26.05] zipline: 4.6.5 -> 4.7.0 (#555778) 2026-08-23 18:42:04 +00:00
liberodark
f2a51cdbc0 dusklight: fix eval on unsupported systems
(cherry picked from commit 37dcac103c)
2026-08-23 17:22:50 +00:00
R. Ryantm
78525d88ed zipline: 4.6.5 -> 4.7.0
(cherry picked from commit c55cf5a424)
2026-08-23 15:34:06 +00:00
zowoq
8721c2e7ea [Backport staging-nixos-26.05] kernel updates for 2026-08-23 (#555751) 2026-08-23 13:58:50 +00:00
zowoq
3a54d6d901 linux_5_10: 5.10.265 -> 5.10.266
(cherry picked from commit bbd159869b)
2026-08-23 13:51:03 +00:00
zowoq
e6bb633e47 linux_5_15: 5.15.216 -> 5.15.217
(cherry picked from commit 407fdbae11)
2026-08-23 13:51:03 +00:00
zowoq
cd3c770e7a linux_6_1: 6.1.183 -> 6.1.184
(cherry picked from commit 959aed65cc)
2026-08-23 13:51:02 +00:00
zowoq
0c09897be6 linux_6_6: 6.6.152 -> 6.6.153
(cherry picked from commit 93c458ec5b)
2026-08-23 13:51:02 +00:00
zowoq
6752da28d9 linux_6_12: 6.12.104 -> 6.12.105
(cherry picked from commit 6145078f60)
2026-08-23 13:51:01 +00:00
zowoq
fc15ce23e0 linux_6_18: 6.18.45 -> 6.18.46
(cherry picked from commit cac0c1ef61)
2026-08-23 13:51:01 +00:00
zowoq
8f8c0ee6a0 linux_7_1: 7.1.9 -> 7.1.10
(cherry picked from commit 5e67bd9257)
2026-08-23 13:51:00 +00:00
Weijia Wang
9854f5e5a6 [Backport release-26.05] vrcx: electron_41 -> electron_42 (#555516) 2026-08-23 10:37:06 +00:00
David McFarland
5550d52dd9 [Backport release-26.05] dotnet: august 2026 releases (#555179) 2026-08-23 10:09:17 +00:00
Gaétan Lepage
e3f1961f6b [Backport release-26.05] nodejs_22: fix riscv64-linux build (#555682) 2026-08-23 09:14:49 +00:00
liberodark
dab05d42d7 nodejs_22: fix riscv64-linux build
(cherry picked from commit 4470fca576)
2026-08-23 08:54:48 +00:00
tomberek
5743fa9712 [26.05] pdm: 2.26.6 -> 2.27.0 (#554967) 2026-08-23 08:36:40 +00:00
isabel
f7f8f24866 [Backport release-26.05] biome: expose json schema over passthru.jsonschema (#555670) 2026-08-23 08:21:04 +00:00
Thierry Delafontaine
2249e70ec3 biome: expose json schema over passthru.jsonschema
(cherry picked from commit e89588c383)
2026-08-23 08:11:30 +00:00
Sandro
501248a80b [26.05] brave: 1.93.129 -> 1.93.138 (#555495) 2026-08-23 07:40:38 +00:00
R. Ryantm
27d27e0301 thunderbird-latest-bin-unwrapped: 153.0.3 -> 154.0
(cherry picked from commit e3bbbd53d7)
2026-08-23 06:35:42 +00:00
tomberek
095b629f2e [Backport release-26.05] python3Packages.selectolax: 0.4.7 -> 0.4.10 (#538778) 2026-08-23 03:56:09 +00:00
Friedrich Altheide
c89d6507cb virtualbox: 7.2.14 -> 7.2.16
(cherry picked from commit 6e6969dc1b)
2026-08-23 03:45:06 +00:00
Ihar Hrachyshka
bd7351040c [Backport release-26.05] python3Packages.mlx: skip flaky test on darwin (#555598) 2026-08-23 03:23:22 +00:00
Ihar Hrachyshka
875c0ff519 python3Packages.mlx: skip flaky test on darwin
(cherry picked from commit 6f699c28af)
2026-08-22 23:11:51 -04:00
nixpkgs-ci[bot]
e599a6d0b8 [Backport release-26.05] necesse-server: 1.3.2-24574169 -> 1.3.2-24650233 (#555586) 2026-08-23 02:37:27 +00:00
R. Ryantm
c864e12481 necesse-server: 1.3.2-24574169 -> 1.3.2-24650233
(cherry picked from commit 38320e7f0d)
2026-08-23 02:12:04 +00:00
nixpkgs-ci[bot]
3256453385 [Backport release-26.05] bookstack: 26.05.2 -> 26.05.3 (#549210) 2026-08-23 01:16:40 +00:00
Gergő Gutyina
ded4642308 [Backport release-26.05] n8n: 2.33.7 -> 2.34.6 (#554853) 2026-08-23 00:37:14 +00:00
Gergő Gutyina
412b310b33 [Backport release-26.05] pocket-id: 2.13.0 -> 2.14.0 (#554863) 2026-08-23 00:33:38 +00:00
nixpkgs-ci[bot]
161db6b93a Merge release-26.05 into staging-nixos-26.05 2026-08-23 00:14:11 +00:00
nixpkgs-ci[bot]
8c420e82e9 [Backport release-26.05] checkstyle: drop nexus-codehaus-snapshot plugin repository (#555546) 2026-08-22 23:44:08 +00:00
Petr Portnov
4181b64c41 checkstyle: drop nexus-codehaus-snapshot plugin repository
(cherry picked from commit f6bc687b51)
2026-08-22 23:39:22 +00:00
Weijia Wang
0ab89a7d8e [Backport release-26.05] powershell: 7.6.4 -> 7.6.5 (#555539) 2026-08-22 23:13:28 +00:00
R. Ryantm
0657e8fec8 powershell: 7.6.4 -> 7.6.5
(cherry picked from commit 32022d77cb)
2026-08-23 01:06:34 +02:00
Weijia Wang
62d7384041 [Backport release-26.05] powershell: 7.6.3 -> 7.6.4 (#555530) 2026-08-22 22:57:43 +00:00
R. Ryantm
1970995798 powershell: 7.6.3 -> 7.6.4
(cherry picked from commit 34fd91c99c)
2026-08-23 00:50:00 +02:00
Weijia Wang
9085f9249d [Backport release-26.05] powershell: 7.6.2 -> 7.6.3 (#555524) 2026-08-22 22:34:00 +00:00
Weijia Wang
9b114381a1 powershell: 7.6.2 -> 7.6.3
(cherry picked from commit 0d748024dc)
2026-08-22 22:23:36 +00:00
Toma
e7b4bcbfd3 [26.05] gale: 1.19.0 -> 1.21.0 (#555267) 2026-08-22 22:10:05 +00:00
SandaruKasa
5958ba8949 koboldcpp: 1.110 -> 1.119
Changelog: https://github.com/LostRuins/koboldcpp/releases/tag/v1.119
(cherry picked from commit 9c77b79f30)
2026-08-22 22:03:31 +00:00
[Assassin]
96637436e2 vrcx: electron_41 -> electron_42
(cherry picked from commit 66c12d70c1)
2026-08-22 21:35:25 +00:00
Andrew Marshall
928acbf331 bitwarden-desktop: 2026.7.0 -> 2026.8.0
Changelog: https://github.com/bitwarden/clients/releases/tag/desktop-v2026.8.0
Diff: https://github.com/bitwarden/clients/compare/desktop-v2026.7.0...desktop-v2026.8.0
(cherry picked from commit 655e56593d)
2026-08-22 20:19:36 +00:00
Oleksandr Usov
48ea9be97e udp514-journal: init at 0.3.0
(cherry picked from commit d347bbc0d2)
2026-08-22 21:18:58 +01:00
Sean Buckley
bdff54af95 brave: 1.93.129 -> 1.93.138
https://community.brave.app/t/release-channel-1-93-138/657228

Not-cherry-picked-because: stable branch still requires x86_64-darwin
2026-08-22 16:13:22 -04:00
nixpkgs-ci[bot]
c94d2bcb47 [Backport release-26.05] obsidian: add startupWMClass to desktop item (#555257) 2026-08-22 18:27:02 +00:00
Sandro
f4c5cf0bca [Backport release-26.05] vaultwarden: 1.37.1 -> 1.37.2 (#555449) 2026-08-22 18:25:44 +00:00
Chris Moultrie
c6ff3b6b90 atlantis: 0.44.0 -> 0.47.1
changelog: https://github.com/runatlantis/atlantis/releases/tag/v0.47.1
(cherry picked from commit 6195b57d6a)
2026-08-22 13:54:10 -04:00
nixpkgs-ci[bot]
d3c5030c1b [Backport release-26.05] buildbox: 1.4.17 -> 1.4.18 (#555453) 2026-08-22 17:28:10 +00:00
R. Ryantm
c52edb45f0 buildbox: 1.4.17 -> 1.4.18
(cherry picked from commit ff545c4876)
2026-08-22 17:23:17 +00:00
Martin Weinelt
e142ff00b0 vaultwarden: 1.37.1 -> 1.37.2
https://github.com/dani-garcia/vaultwarden/releases/tag/1.37.2
(cherry picked from commit b0e56b774e)
2026-08-22 19:17:38 +02:00
nixpkgs-ci[bot]
ca4bb59fff [Backport release-26.05] simplex-chat-desktop: 7.0.0 -> 7.0.1 (#555448) 2026-08-22 17:09:53 +00:00
R. Ryantm
ace77105a8 simplex-chat-desktop: 7.0.0 -> 7.0.1
(cherry picked from commit dc158addc2)
2026-08-22 17:04:48 +00:00
nixpkgs-ci[bot]
a9e6d84f9c [Backport release-26.05] uptime-kuma: 2.5.0 -> 2.5.3 (#555418) 2026-08-22 15:55:05 +00:00
R. Ryantm
8688e3ecd4 uptime-kuma: 2.5.0 -> 2.5.3
(cherry picked from commit 5442278dbf)
2026-08-22 14:59:34 +00:00
Maximilian Bosch
367122bd76 [Backport release-26.05] matrix-synapse: 1.158.0 -> 1.159.0, fix test (#555211) 2026-08-22 14:43:40 +00:00
John Ericson
3ac943b528 [Backport release-26.05] perlPackages.Test2Harness: not broken on Darwin anymore (#555155) 2026-08-22 14:40:19 +00:00
Maximilian Bosch
d1bc25d401 [26.05] grafana: 13.0.6 -> 13.0.7, fix CVE-2026-17183 (#555366) 2026-08-22 14:04:24 +00:00
nixpkgs-ci[bot]
fd03883b4f [Backport release-26.05] nezha: 2.3.2 -> 2.3.7; nezha-theme-admin: 2.2.5 -> 2.3.4 (#555394) 2026-08-22 13:11:39 +00:00
Moraxyc
a1ab0b06fb nezha: 2.3.6 -> 2.3.7
(cherry picked from commit 828057d45f)
2026-08-22 13:06:33 +00:00
Moraxyc
d95e7ee631 nezha: 2.3.2 -> 2.3.6
(cherry picked from commit 59d03d9491)
2026-08-22 13:06:33 +00:00
Moraxyc
fc7961b29d nezha-theme-admin: 2.2.5 -> 2.3.4
(cherry picked from commit 3e1a962be0)
2026-08-22 13:06:32 +00:00
Rick van Schijndel
f664c41651 [Backport release-26.05] libpqxx: Only override stdenv for GCC, not for clang (#555183) 2026-08-22 12:23:14 +00:00
isabel
7e509dde4a [Backport release-26.05] bluesky-pds: fix better_sqlite3 crash (#555368) 2026-08-22 11:41:55 +00:00
isabel
cd4bc50218 bluesky-pds: fix better_sqlite3 crash
downgrade to nodejs 22 for the time being until they fix the
node::ObjectWrap stuff

(cherry picked from commit 740cd992db)
2026-08-22 11:37:15 +00:00
Maximilian Bosch
b7c8d26a0d grafana: 13.0.6 -> 13.0.7, fix CVE-2026-17183
ChangeLog: https://github.com/grafana/grafana/releases#release-v13.0.7
2026-08-22 13:13:08 +02:00
Yt
5160b40a59 [Backport release-26.05] pythonPackages.prefect: 3.7.0 -> 3.8.3 (#555344) 2026-08-22 10:11:19 +00:00
happysalada
240d6afc69 pythonPackages.prefect: 3.7.0 -> 3.8.3
update prefect to latest stable

(cherry picked from commit c48666242e)
2026-08-22 09:54:23 +00:00
Franz Pletz
6e8f89dec8 [Backport release-26.05] jool: 4.1.14 -> 4.1.15 (#555324) 2026-08-22 08:09:58 +00:00
Franz Pletz
dcb25ce403 jool: 4.1.14 -> 4.1.15
(cherry picked from commit 7b1c10af28)
2026-08-22 08:04:59 +00:00
Felix Bühler
9f2a64d74f [Backport release-26.05] docuseal: 2.5.3 -> 3.2.0 (#555315) 2026-08-22 07:56:18 +00:00
Ryan Omasta
25ce43c9b9 balatro: rename conflicting src attribute
(cherry picked from commit d4fb7e627b)
2026-08-22 07:39:36 +00:00
Felix Buehler
01a95d16e1 docuseal: 2.5.3 -> 3.2.0
(cherry picked from commit 6edbfab0fa)
2026-08-22 07:38:53 +00:00
Emily
214e4490eb [Backport release-26.05] ungoogled-chromium: 151.0.7922.169-1 -> 151.0.7922.173-1 (#555202) 2026-08-22 07:13:23 +00:00
@mjones
d50472d333 [Backport release-26.05] nixos/flarum: manage config.php declaratively, guard reinstall with marker file (#550595) 2026-08-22 02:55:12 +00:00
TomaSajt
f973a9ee60 gale: 1.19.0 -> 1.21.0 2026-08-22 03:01:54 +02:00
Jiatao Liang
34569711b7 obsidian: add startupWMClass to desktop item
allows the application launcher to properly associate windows with the
launch icon correctly

(cherry picked from commit 065a2e86ec)
2026-08-22 00:29:23 +00:00
nixpkgs-ci[bot]
ee738b522f Merge release-26.05 into staging-nixos-26.05 2026-08-22 00:13:44 +00:00
Martin Weinelt
7fd8dd0519 [Backport release-26.05] nixos/frigate: use isolated /dev/shm for frame buffers (#555215) 2026-08-21 22:14:14 +00:00
Simonas Kazlauskas
7b693d6c0f nixos/frigate: use isolated /dev/shm for frame buffers
Frigate will create shared memory buffers in /dev/shm and if it finds
them already existing, it will reuse the buffers already there. It doing
so can result in pretty hard to investigate issues if those buffers are
not appropriate.

This is not a problem for the official container-based workflow where
each new container startup will create a fresh `/dev/shm`.

ref: https://github.com/blakeblackshear/frigate/discussions/24048#discussioncomment-18109028
(cherry picked from commit 403a0526e1)
2026-08-21 22:04:45 +00:00
Maximilian Bosch
7fbf39a4df matrix-synapse: 1.158.0 -> 1.159.0
ChangeLog: https://github.com/element-hq/synapse/blob/release-v1.159/CHANGES.md
(cherry picked from commit a464eca85b)
2026-08-21 21:54:31 +00:00
Maximilian Bosch
6868b206c4 python3Packages.matrix-nio: fix encryption support
The latest version uses python-vodozemac instead of olm.

(cherry picked from commit 6a8a936dbf)
2026-08-21 21:54:30 +00:00
Maximilian Bosch
c931db7a23 python3Packages.vodozemac: init at 0.10.0
(cherry picked from commit 99aad4726b)
2026-08-21 21:54:29 +00:00
Weijia Wang
9e9d655c20 [Backport release-26.05] python3Packages.skia-pathops: add wegank as maintainer (#555204) 2026-08-21 21:43:39 +00:00
Weijia Wang
b9cee0d49b python3Packages.skia-pathops: add wegank as maintainer
(cherry picked from commit 7b4cb14ff8)
2026-08-21 21:32:22 +00:00
emilylange
265263d1ac ungoogled-chromium: 151.0.7922.169-1 -> 151.0.7922.173-1
https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0404570826.html

This update includes 7 security fixes.

CVEs:
CVE-2026-76017 CVE-2026-76018 CVE-2026-76019 CVE-2026-76020
CVE-2026-76021 CVE-2026-76022 CVE-2026-76023

(cherry picked from commit 582eaa82f2)
2026-08-21 21:17:20 +00:00
Austin Horstman
a3972adf78 [Backport Release-26.05] teams-for-linux: 2.11.1 -> 2.17.1; Electron 41 -> 42 (#555181) 2026-08-21 21:12:11 +00:00
Leona Maroni
02f39e1bd8 [Backport release-26.05] nginxMainline: 1.31.3 -> 1.31.4 (#555097) 2026-08-21 21:05:36 +00:00
Matt Sturgeon
5e144bc593 [Backport release-26.05] .github: Bump cachix/install-nix-action from 31.11.0 to 31.11.1 (#555193) 2026-08-21 20:42:49 +00:00
dependabot[bot]
f98911681d .github: Bump cachix/install-nix-action from 31.11.0 to 31.11.1
Bumps [cachix/install-nix-action](https://github.com/cachix/install-nix-action) from 31.11.0 to 31.11.1.
- [Release notes](https://github.com/cachix/install-nix-action/releases)
- [Changelog](https://github.com/cachix/install-nix-action/blob/master/RELEASE.md)
- [Commits](630ae543ea...13d8dd58da)

---
updated-dependencies:
- dependency-name: cachix/install-nix-action
  dependency-version: 31.11.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
(cherry picked from commit f91f92f75b)
2026-08-21 20:33:52 +00:00
Leona Maroni
7a195f2775 [26.05] discourse: 2026.1.4 -> 2026.7.1 (#554572) 2026-08-21 20:13:54 +00:00
Yuriy Taraday
ad652ff636 libpqxx: Only override stdenv for GCC, not for clang
This makes sure that libpqxx uses the same naming conventions as
everything else on macOS.

(cherry picked from commit 130148d908)
2026-08-21 20:03:35 +00:00
Austin Horstman
39772b9038 teams-for-linux: Electron 41 -> 42
Electron 41 is being removed because it is EOL. Upstream v2.17.1 uses Electron 42.8.1: https://github.com/IsmaelMartinez/teams-for-linux/releases/tag/v2.17.1

(cherry picked from commit 6d31c123d4)
2026-08-21 14:52:10 -05:00
R. Ryantm
a48a03cf9c teams-for-linux: 2.15.0 -> 2.17.1
(cherry picked from commit 7954dcf569)
2026-08-21 14:52:10 -05:00
R. Ryantm
ee7c8a3bc4 teams-for-linux: 2.14.1 -> 2.15.0
(cherry picked from commit 2cc5736ea4)
2026-08-21 14:52:10 -05:00
R. Ryantm
088dab7fed teams-for-linux: 2.13.0 -> 2.14.1
(cherry picked from commit 45cc1642f9)
2026-08-21 14:52:10 -05:00
R. Ryantm
83e4ecc895 teams-for-linux: 2.12.0 -> 2.13.0
(cherry picked from commit baa2cc5c61)
2026-08-21 14:52:10 -05:00
Austin Horstman
f16c9cfb7b teams-for-linux: 2.11.1 -> 2.12.0
Update teams-for-linux and generate the macOS .icns locally during Darwin builds.

electron-builder 26.15.3 tries to download its icon conversion toolset when only PNG icons are available. Using libicns keeps the build offline and points electron-builder at a prebuilt icon instead.

(cherry picked from commit aa7020f8b8)
2026-08-21 14:52:09 -05:00
David McFarland
0218068907 dotnetCorePackages.sdk_11_0: 11.0.100-preview.6.26359.118 -> 11.0.100-preview.7.26381.103
(cherry picked from commit 590c04c121)
2026-08-21 19:47:06 +00:00
David McFarland
86514a381c dotnetCorePackages.sdk_10_0: 10.0.302 -> 10.0.400
(cherry picked from commit 4862a91901)
2026-08-21 19:47:05 +00:00
David McFarland
82d6944ebd dotnetCorePackages.sdk_9_0: 9.0.316 -> 9.0.317
(cherry picked from commit feb182c722)
2026-08-21 19:47:04 +00:00
David McFarland
74fd02fbfd dotnetCorePackages.sdk_8_0: 8.0.423 -> 8.0.424
(cherry picked from commit 683995f386)
2026-08-21 19:47:04 +00:00
David McFarland
0343a0955b dotnet/source/vmr.nix: fix global.json patching
This allows the sdk version in global.json to be downgraded without
'dotnet --version' failing.

(cherry picked from commit 94da0e0619)
2026-08-21 19:47:04 +00:00
Bjørn Forsman
4f0db8e3eb [Backport release-26.05] nixos/ups: run killpower driver as root (#553713) 2026-08-21 19:10:16 +00:00
Weijia Wang
b2cd5248bc [Backport release-26.05] temurin-bin: fix eval on unsupported systems (#554850) 2026-08-21 18:42:36 +00:00
Yuriy Taraday
568da1c642 perlPackages.Test2Harness: not broken on Darwin anymore
According to https://metacpan.org/dist/Test2-Harness/changes, the issue
might have been fixed in 1.000109, 4 years ago. It works now.

(cherry picked from commit 4985404c53)
2026-08-21 18:29:48 +00:00
nixpkgs-ci[bot]
a66621e59a [Backport release-26.05] tirith: 0.3.1 -> 0.3.3 (#555127) 2026-08-21 18:00:58 +00:00
Emily
60c6ad4cdc [Backport release-26.05] chromium,chromedriver: 151.0.7922.169 -> 151.0.7922.173 (#555008) 2026-08-21 17:12:22 +00:00
Marcus Ramberg
f34956a2af [Backport release-26.05] perlPackages.HashSharedMem: 0.005 -> 0.006 (#555117) 2026-08-21 16:37:06 +00:00
Sandro Jäckel
98f6f8e670 tirith: 0.3.1 -> 0.3.3
Diff: https://github.com/sheeki03/tirith/compare/v0.3.1...v0.3.3

Changelog: https://github.com/sheeki03/tirith/blob/v0.3.3/CHANGELOG.md
(cherry picked from commit 09398a04c2)
2026-08-21 16:18:21 +00:00
Yuriy Taraday
d632c0e981 perlPackages.HashSharedMem: 0.005 -> 0.006
Adapt to these changes:

  * Allow building on Mac OS

  * Move from Module::Build to ExtUtils::MakeMaker

  * Change authorship to Kurt Starsinic

(cherry picked from commit eb9041526d)
2026-08-21 16:01:42 +00:00
Leona Maroni
fff5fc20f2 nginxMainline: 1.31.3 -> 1.31.4
https://nginx.org/en/CHANGES
https://github.com/nginx/nginx/releases/tag/release-1.31.4
(cherry picked from commit 4be16741e9)
2026-08-21 15:26:12 +00:00
teutat3s
5538fbf10c ytdownloader: pin electron version
(cherry picked from commit f304b4ea21)
2026-08-21 16:57:04 +02:00
teutat3s
c93c5eeb81 sharedown: pin electron version
(cherry picked from commit 71c1f46317)
2026-08-21 16:57:04 +02:00
teutat3s
13bfc72a73 musicfree-desktop: pin electron version
(cherry picked from commit a4749ee3c3)
2026-08-21 16:57:04 +02:00
teutat3s
e84de89161 solidtime-desktop: pin electron version
(cherry picked from commit f058b2fb01)
2026-08-21 16:57:03 +02:00
teutat3s
ff64c6f38f electron{,-bin,-chromedriver}: 41 -> 43
Bumps the default electron version to electron_43. electron_41 will be EOL on 2026-08-25.

(cherry picked from commit ec42ba6053)
2026-08-21 16:57:03 +02:00
Maximilian Bosch
6062ba1a1b [Backport release-26.05] matrix-authentication-service: 1.22.0 -> 1.23.0 (#555077) 2026-08-21 14:42:17 +00:00
Nick Cao
770b8a4d6b [Backport release-26.05] keycloak: 26.7.1 -> 26.7.2 (#554896) 2026-08-21 14:28:47 +00:00
Nick Cao
ced65e4e18 [Backport release-26.05] gelly: 1.9.7 -> 1.10.0 (#555063) 2026-08-21 14:18:25 +00:00
Maximilian Bosch
de6d53323d matrix-authentication-service: 1.22.0 -> 1.23.0
ChangeLog: https://github.com/element-hq/matrix-authentication-service/releases/tag/v1.23.0
(cherry picked from commit 7a01b6dd57)
2026-08-21 14:11:00 +00:00
éclairevoyant
bb6385ca31 signal-desktop: 8.21.0 -> 8.24.0
(cherry picked from commit 632e507119)
2026-08-21 14:03:36 +00:00
Francesco Gazzetta
ea554ceebb [Backport release-26.05] luanti: 5.16.1 -> 5.17.0 (#555054) 2026-08-21 13:28:08 +00:00
R. Ryantm
1ef5021ddb gelly: 1.9.7 -> 1.10.0
(cherry picked from commit 420df93f6e)
2026-08-21 13:24:57 +00:00
Weijia Wang
b845e7606d [Backport release-26.05] ffmpeg: fix loongarch64-linux build (#554996) 2026-08-21 13:17:32 +00:00
Francesco Gazzetta
034820840b luanti: 5.16.1 -> 5.17.0
(cherry picked from commit c022cedf34)
2026-08-21 12:49:59 +00:00
Maximilian Bosch
72d42a3ea3 [Backport release-26.05] mautrix-signal: 26.07 -> 26.08 (#554602) 2026-08-21 12:46:19 +00:00
Sefa Eyeoglu
4ce02478f6 [Backport release-26.05] wayvr: 26.7.1 -> 26.8.0, fix xwayland-satellite executable path, fix uidev (#553687) 2026-08-21 12:03:13 +00:00
nixpkgs-ci[bot]
13721a3e0b [Backport release-26.05] {tor,mullvad}-browser: 15.0.19 -> 15.0.20 (#555020) 2026-08-21 11:23:34 +00:00
whispers
b142cfcd1c tor-browser: 15.0.19 -> 15.0.20
changelog: https://gitlab.torproject.org/tpo/applications/tor-browser-build/-/raw/tbb-15.0.20-build1/projects/browser/Bundle-Data/Docs-TBB/ChangeLog.txt
firefox esr: https://www.firefox.com/en-US/firefox/140.14.0/releasenotes/

(cherry picked from commit b6ebb24de4)
2026-08-21 10:59:32 +00:00
whispers
8b04fabbe2 mullvad-browser: 15.0.19 -> 15.0.20
changelog: https://gitlab.torproject.org/tpo/applications/tor-browser-build/-/raw/mb-15.0.20-build1/projects/browser/Bundle-Data/Docs-MB/ChangeLog.txt
firefox esr: https://www.firefox.com/en-US/firefox/140.14.0/releasenotes/

(cherry picked from commit 6a130c9821)
2026-08-21 10:59:25 +00:00
StepBroBD
bb3fbf4032 [Backport release-26.05] ocamlPackages.buildDunePackage: allow multiple dune packages (#555012) 2026-08-21 10:33:26 +00:00
sempiternal-aurora
fbdaaee21b zipperposition: migrate to dunePackages
(cherry picked from commit 62ac3adbe3)
2026-08-21 10:25:55 +00:00
sempiternal-aurora
439464b6ab ocamlPackages.buildDunePackage: allow multiple dune packages
A single `dune-project` file can contain multiple packages that dune can
build. This is a problem, because the default dune build command we use
doesn't search through `dune-project` for dependencies, it assumes that
will have already been built and can be found with findlib. See
zipperposition for an example of this.

Adds a new `dunePackages` argument to allow this, defaulting to `[ pname ]`
for backwards compatibility.

(cherry picked from commit 8c223b0953)
2026-08-21 10:25:55 +00:00
emilylange
811b0ec835 chromium,chromedriver: 151.0.7922.169 -> 151.0.7922.173
https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0404570826.html

This update includes 7 security fixes.

CVEs:
CVE-2026-76017 CVE-2026-76018 CVE-2026-76019 CVE-2026-76020
CVE-2026-76021 CVE-2026-76022 CVE-2026-76023

(cherry picked from commit 86e75d8903)
2026-08-21 10:11:42 +00:00
Weijia Wang
d2a3c3fd40 ffmpeg: fix loongarch64-linux build
(cherry picked from commit 98e164f159)
2026-08-21 09:42:55 +00:00
nixpkgs-ci[bot]
fdbc047739 [Backport release-26.05] fosrl-pangolin: 1.21.0 -> 1.21.1 (#554699) 2026-08-21 09:13:16 +00:00
kirillrdy
bafac769e2 dolibarr: 23.0.3 -> 23.0.4 (#554975) 2026-08-21 08:58:06 +00:00
nixpkgs-ci[bot]
c2d8574959 [Backport release-26.05] lucida-downloader: 0.8.0 -> 0.9.0 (#554982) 2026-08-21 08:53:20 +00:00
R. Ryantm
6f08d10447 lucida-downloader: 0.8.0 -> 0.9.0
(cherry picked from commit 4aa9218c94)
2026-08-21 08:42:32 +00:00
Gaétan Lepage
e416d3fcf4 [Backport release-26.05] tuigreet: 0.11.0 -> 0.11.1 (#554976) 2026-08-21 08:27:27 +00:00
Gaetan Lepage
f56c4e2904 tuigreet: 0.11.0 -> 0.11.1
Diff: https://github.com/tuigreet/tuigreet/compare/0.11.0...0.11.1

Changelog: https://github.com/tuigreet/tuigreet/releases/tag/0.11.1
(cherry picked from commit b2b146ec43)
2026-08-21 08:18:00 +00:00
Gaetan Lepage
882fe4f65d dolibarr: 23.0.3 -> 23.0.4
Diff: https://github.com/Dolibarr/dolibarr/compare/23.0.3...23.0.4

Changelog: https://github.com/Dolibarr/dolibarr/releases/tag/23.0.4
2026-08-21 08:15:32 +00:00
Gaétan Lepage
ec2ee58d96 [Backport release-26.05] tuigreet: 0.9.1 -> 0.11.0, switch to GitHub org (#554907) 2026-08-21 08:10:23 +00:00
Antoine Cotten
319055219d tuigreet: enable __structuredAttrs
(cherry picked from commit 7041f844e2)
2026-08-21 07:51:13 +00:00
Antoine Cotten
c1e3895072 tuigreet: 0.9.1 -> 0.11.0, switch to GitHub org
(cherry picked from commit 48c0223620)
2026-08-21 07:51:12 +00:00
Antoine Cotten
d9fc5456a9 tuigreet: add NotAShelf as maintainer
(cherry picked from commit b219f76d6b)
2026-08-21 07:51:10 +00:00
Antoine Cotten
9e84c3bae3 tuigreet: add antoineco as maintainer
(cherry picked from commit 7b9520ba59)
2026-08-21 07:51:09 +00:00
Antoine Cotten
7cc3160de1 maintainers: add antoineco
(cherry picked from commit b910f531fa)
2026-08-21 07:51:08 +00:00
Gerhard Schwanzer
84f5061fac pdm: 2.26.6 -> 2.27.0
Changelog: https://redirect.github.com/pdm-project/pdm/releases/tag/2.27.0

(cherry picked from commit 84558b8513)

Assisted-by: pi coding agent / Mika (OpenAI gpt-5.6-sol)
2026-08-21 09:12:31 +02:00
Maximilian Bosch
44b4e8026b [Backport staging-nixos-26.05] strace: 7.1 -> 7.2 (#554817) 2026-08-21 05:54:45 +00:00
Silvan Mosberger
faccb699d4 [Backport release-26.05] maintainers/github-teams.json: Automated sync (#554920) 2026-08-21 04:45:33 +00:00
nixpkgs-ci[bot]
048be56254 maintainers/github-teams.json: Automated sync
(cherry picked from commit cc1b7d790a)
2026-08-21 04:29:55 +00:00
Masum Reza
9cbec8363d [Backport staging-nixos-26.05] bcachefs-tools: 1.39.1 -> 1.39.2 (#554897) 2026-08-21 02:13:46 +00:00
Alex Galvin
b85736a0a1 bcachefs-tools: 1.39.1 -> 1.39.2
(cherry picked from commit f66aa0de15)
2026-08-21 02:06:00 +00:00
R. Ryantm
fa5ca9f074 keycloak: 26.7.1 -> 26.7.2
(cherry picked from commit 8200e362ff)
2026-08-21 01:52:39 +00:00
zowoq
88989455cf [Backport release-26.05] gh: 2.97.0 -> 2.98.0 (#554886) 2026-08-21 01:18:05 +00:00
R. Ryantm
2bab4f5bcd gh: 2.97.0 -> 2.98.0
(cherry picked from commit 1fdd467b8d)
2026-08-21 01:06:21 +00:00
nixpkgs-ci[bot]
bc2fc99f9c Merge release-26.05 into staging-nixos-26.05 2026-08-21 00:14:49 +00:00
Austin Eschweiler
391ae68b7b pocket-id: 2.13.0 -> 2.14.0
(cherry picked from commit b3468e23c4)
2026-08-20 23:22:26 +00:00
Gergő Gutyina
b5236bad97 [26.05] pocket-id: 2.12.0 -> 2.13.0 (#553741) 2026-08-20 23:16:15 +00:00
R. Ryantm
87db76381d n8n: 2.33.7 -> 2.34.6
(cherry picked from commit 12bf08467d)
2026-08-20 23:08:06 +00:00
liberodark
690fd394dc temurin-bin: fix eval on unsupported systems
(cherry picked from commit e0ad45d45a)
2026-08-20 23:01:41 +00:00
zowoq
6e85835512 [Backport release-26.05] linuxKernel.kernels.linux_zen: 7.1.8 -> 7.1.9 (#554838) 2026-08-20 22:29:29 +00:00
R. Ryantm
7038069dc6 linuxKernel.kernels.linux_zen: 7.1.8 -> 7.1.9
(cherry picked from commit 96ed975d59)
2026-08-20 22:24:09 +00:00
Emily
5d92f0f1e0 [Backport release-26.05] ungoogled-chromium: 151.0.7922.137-1 -> 151.0.7922.169-1 (#554814) 2026-08-20 22:12:49 +00:00
Michael Daniels
d7ddb26e62 [Backport release-26.05] google-chrome: 151.0.7922.169 -> 151.0.7922.173 (#554825) 2026-08-20 21:35:07 +00:00
Arne Keller
cba330555f yt-dlp: 2026.07.04 -> 2026.08.19 (#554763) 2026-08-20 21:25:23 +00:00
Michael Daniels
f33c891540 google-chrome: 151.0.7922.169 -> 151.0.7922.173
Release note: https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0404570826.html

(cherry picked from commit 72d29f0317)
2026-08-20 21:23:37 +00:00
Nick Cao
c8a3287d06 [Backport release-26.05] still: 0.0.9 -> 0.0.10 (#554757) 2026-08-20 21:12:04 +00:00
Maximilian Bosch
0b150fe6c0 strace: 7.1 -> 7.2
ChangeLog: https://github.com/strace/strace/releases/tag/v7.2
(cherry picked from commit 021625aa63)
2026-08-20 20:49:58 +00:00
networkException
7088f7e433 ungoogled-chromium: 151.0.7922.137-1 -> 151.0.7922.169-1
https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0826575033.html

This update includes 15 security fixes.

CVEs:
CVE-2026-76034 CVE-2026-76036 CVE-2026-76033 CVE-2026-76037
CVE-2026-76044 CVE-2026-76039 CVE-2026-76040 CVE-2026-76035
CVE-2026-76042 CVE-2026-76046 CVE-2026-76043 CVE-2026-76041
CVE-2026-76047 CVE-2026-76038 CVE-2026-76045

(cherry picked from commit 7e468c2f38)
2026-08-20 20:31:11 +00:00
Emily
fd651122ff [Backport release-26.05] chromium,chromedriver: 151.0.7922.137 -> 151.0.7922.169 (#554525) 2026-08-20 20:14:14 +00:00
Pol Dellaiera
38e5003945 [26.05] drupal: 11.3.13 -> 11.3.14 (#551318) 2026-08-20 19:17:50 +00:00
Pol Dellaiera
83105cb0ce [Backport release-26.05] git-pages-cli: 1.8.2 -> 1.10.1 (#554770) 2026-08-20 18:22:09 +00:00
Pol Dellaiera
49341846f7 [Backport release-26.05] git-pages: 0.9.0 -> 0.9.1 (#554767) 2026-08-20 18:10:00 +00:00
R. Ryantm
85a5475377 git-pages-cli: 1.10.0 -> 1.10.1
(cherry picked from commit 89023472da)
2026-08-20 23:38:43 +05:30
R. Ryantm
88241674bb git-pages-cli: 1.9.0 -> 1.10.0
(cherry picked from commit 1c7ed064df)
2026-08-20 23:38:38 +05:30
R. Ryantm
0400f8e037 git-pages-cli: 1.8.2 -> 1.9.0
(cherry picked from commit 9e959ee607)
2026-08-20 23:38:23 +05:30
emilylange
6ada0c948b chromium: don't show misleading Terms of Service dialog on first run
This new dialog was introduced by upstream in [CL 8257374] and
slipped through our testing in [1]. It also managed to break our
nixosTests.chromium VM test. We could just make our VM test use
--no-first-run and have it pass that way, but the [dialog text] is
actively misleading.

[1]: de3a505f98
[CL 8257374]: https://chromium-review.googlesource.com/c/chromium/src/+/8257374i
[dialog text]: https://chromium.googlesource.com/chromium/src/+/151.0.7922.169/components/resources/terms/terms_chromium.txt

(cherry picked from commit f9f52c783c)
2026-08-20 19:57:17 +02:00
R. Ryantm
776d40eb33 git-pages: 0.9.0 -> 0.9.1
(cherry picked from commit 3c67b71d70)
2026-08-20 17:51:23 +00:00
Masum Reza
afcafbfd78 [Backport staging-nixos-26.05] bcachefs-tools: 1.38.8 -> 1.39.1 (#554761) 2026-08-20 17:46:27 +00:00
Chris Moultrie
4b55d3c868 yt-dlp: 2026.07.04 -> 2026.08.19
(cherry picked from commit cc83ff3525)
2026-08-20 19:43:26 +02:00
qubitnano
930c29f5f3 bcachefs-tools: 1.38.8 -> 1.39.1
https://evilpiepirate.org/git/bcachefs-tools.git/tree/Changelog.mdwn
(cherry picked from commit a3f12504d2)
2026-08-20 17:41:27 +00:00
Masum Reza
9155d1c540 [Backport release-26.05] scx.rustscheds: 1.1.2 -> 1.1.3 (#554753) 2026-08-20 17:39:03 +00:00
R. Ryantm
1299311c01 still: 0.0.9 -> 0.0.10
(cherry picked from commit 868d98f599)
2026-08-20 17:37:23 +00:00
Gliczy
3c70986729 scx.rustscheds: 1.1.2 -> 1.1.3
(cherry picked from commit 3314e11296)
2026-08-20 17:28:10 +00:00
teutat3s
a1d1404976 [Backport release-26.05] element-{web,desktop}: 1.12.24 -> 1.12.26 (#554375) 2026-08-20 17:05:06 +00:00
Fernando Rodrigues
056c24feb4 perfect_dark: backport 0-unstable-2026-08-13 (#554422) 2026-08-20 16:10:55 +00:00
Vincent Laporte
86bfd927c9 [Backport release-26.05] coq: fix compilation following https://github.com/rocq-prover/rocq/pull/22327 (#554727) 2026-08-20 16:08:20 +00:00
Pierre Roux
3a69de8879 coq: fix compilation following https://github.com/rocq-prover/rocq/pull/22327
(cherry picked from commit 56d6b47ef0)
2026-08-20 15:48:40 +00:00
Adam C. Stephens
3881de1033 [Backport release-26.05] forgejo-lts: 15.0.6 -> 15.0.7, forgejo: 16.0.2 -> 16.0.3 (#554690) 2026-08-20 15:06:48 +00:00
nixpkgs-ci[bot]
3a022f4ca7 [Backport release-26.05] pdfding: 1.12.0 -> 1.13.0 (#554681) 2026-08-20 14:20:26 +00:00
Jack Rosenberg
dd744b59e6 fosrl-pangolin: 1.21.0 -> 1.21.1
(cherry picked from commit 8956875863)
2026-08-20 13:16:46 +00:00
Marie Ramlow
a05b394a3a forgejo: 16.0.2 -> 16.0.3
Changelog: https://codeberg.org/forgejo/forgejo/milestone/137464
Diff: https://codeberg.org/forgejo/forgejo/compare/v16.0.2..v16.0.3
(cherry picked from commit 2eb3e141ee)
2026-08-20 12:55:05 +00:00
Marie Ramlow
1131b6b4a3 forgejo-lts: 15.0.6 -> 15.0.7
Changelog: https://codeberg.org/forgejo/forgejo/milestone/137461
Diff: https://codeberg.org/forgejo/forgejo/compare/v15.0.6..v15.0.7
(cherry picked from commit 71d3df2e8d)
2026-08-20 12:55:05 +00:00
phanirithvij
24f1048cc2 pdfding: 1.12.0 -> 1.13.0
Diff: https://github.com/mrmn2/PdfDing/compare/v1.12.0...v1.13.0
Changelog: https://github.com/mrmn2/PdfDing/releases/tag/v1.13.0

Signed-off-by: phanirithvij <phanirithvij2000@gmail.com>
(cherry picked from commit 0f212d0be6)
2026-08-20 12:17:23 +00:00
nixpkgs-ci[bot]
f3979f7c1b [Backport release-26.05] openafs: 1.8.16 → 1.8.16.1, patch for Linux kernel 7.2 (#554500) 2026-08-20 12:13:02 +00:00
Vladimír Čunát
10f6b810f8 [Backport release-26.05] thunderbird-latest-unwrapped: 153.0.2 -> 153.0.3 (#553672) 2026-08-20 10:29:56 +00:00
nixpkgs-ci[bot]
91ee11d2dd [Backport release-26.05] pg_exporter: 1.4.0 -> 1.4.1 (#554386) 2026-08-20 09:27:48 +00:00
K900
c9fd8213e3 mesa: 26.1.5 -> 26.1.8 (#554621) 2026-08-20 07:44:16 +00:00
K900
f97555b515 mesa: 26.1.5 -> 26.1.8
Diff: https://gitlab.freedesktop.org/mesa/mesa/-/compare/mesa-26.1.5...26.1.8

Changelog: https://docs.mesa3d.org/relnotes/26.1.8.html

Not-cherry-picked-because: unstable is on 26.2
2026-08-20 10:37:55 +03:00
Sarah Brofeldt
5880666fd9 [Backport release-26.05] ceph: 20.2.2 -> 20.2.3 (#553832) 2026-08-20 05:42:21 +00:00
SchweGELBin
a527458dbf mautrix-signal: 26.07 -> 26.08
(cherry picked from commit 6d5291c735)
2026-08-20 05:40:58 +00:00
SchweGELBin
ac300c7104 libsignal-ffi: 0.97.2 -> 0.100.0
(cherry picked from commit 90648e7970)
2026-08-20 05:40:57 +00:00
mtnash
740a6eb288 discourse: 2026.7.0 -> 2026.7.1
extremely minor update, only changed version and hash

(cherry picked from commit 7191c8573c)
Assisted-by: OpenAI Codex (GPT-5)
2026-08-19 20:31:03 -07:00
mtnash
e9d12b5a3a nixos/discourse: update config to match v2026.7.0
- update nginx settings and default config according to update.py
- disable mini_racer_single_threaded; although this is enabled upstream by default it was observed to cause a segfault

(cherry picked from commit 3bf1127648)
Assisted-by: OpenAI Codex (GPT-5)
2026-08-19 20:31:03 -07:00
mtnash
fad4b5b153 discourse: 2026.1.4 -> 2026.7.0
Update discourse to latest(ish) ESR version from previous, soon-to-be unsupported, ESR version.
Upstream changes: https://releases.discourse.org/changelog/custom?end=v2026.7.0&start=v2026.1.4

Changes:
- simple version / dep updates of all plugins and discourse itself
- updated the update script to correctly handle changes to discourses's architecture, and fixed a bug
  - the NamedTemporaryFiles were not flush()ed, which meant their content was not written
  - discourse now has dependencies under `migrations/` which are specified by path. this requires downloading the `migrations/` directory during the update so `bundle lock` / `bundix` run successfully. the logic for performing this was borrowed from the gitlab package.
  - the hashes for the newly added dart-sass download are automatically updated
- updated some patches to match changes in the targeted code (notification_email, prebuild-asset-processor)
- delete a no longer relevant patch (unicorn_logging_and_timeout) (discourse no longer uses unicorn internally, although the external interface is similar / pretends to still exist)
- added two new patches, safe-exec-from-nix-store and sass_embedded_vendored_dart_sass
  - safe-exec-from-nix-store: add /nix/store to the list of executable paths for the container used to sandbox imagemagick, which by default only contains the standard FHS paths
  - sass_embedded_vendored_dart_sass: patch sass-embedded to use a version of dart-sass provided by the package instead of downloading it's own which would fail. this patch also involves code in default.nix which sets DART_SASS_VENDORED to the path of a downloaded dart-sass version
- updated the comment on prebuild-asset-processor.patch to more accurately reflect what and why it exists

(cherry picked from commit b94714baca)
Assisted-by: OpenAI Codex (GPT-5)
2026-08-19 20:31:02 -07:00
nixpkgs-ci[bot]
e8b9572eee Merge release-26.05 into staging-nixos-26.05 2026-08-20 00:13:46 +00:00
zowoq
2719985204 [Backport release-26.05] linux_xanmod, linux_xanmod_latest: 2026-08-19 (#554530) 2026-08-20 00:13:30 +00:00
eljamm
aba11fc9ca linux_xanmod_latest: 7.1.8 -> 7.1.9
- Changelog: https://dl.xanmod.org/changelog/7.1/ChangeLog-7.1.9-xanmod1.gz
- Diff: https://gitlab.com/xanmod/linux/-/compare/7.1.8-xanmod1..7.1.9-xanmod1?from_project_id=51590166

(cherry picked from commit ffd821cbfd)
2026-08-20 00:08:45 +00:00
eljamm
7c401dabbf linux_xanmod: 6.18.44 -> 6.18.45
- Changelog: https://dl.xanmod.org/changelog/6.18/ChangeLog-6.18.45-xanmod1.gz
- Diff: https://gitlab.com/xanmod/linux/-/compare/6.18.44-xanmod1..6.18.45-xanmod1?from_project_id=51590166

(cherry picked from commit bd7d1168fc)
2026-08-20 00:08:44 +00:00
emilylange
d253fc6e34 chromium,chromedriver: 151.0.7922.137 -> 151.0.7922.169
https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0826575033.html

This update includes 15 security fixes.

CVEs:
CVE-2026-76034 CVE-2026-76036 CVE-2026-76033 CVE-2026-76037
CVE-2026-76044 CVE-2026-76039 CVE-2026-76040 CVE-2026-76035
CVE-2026-76042 CVE-2026-76046 CVE-2026-76043 CVE-2026-76041
CVE-2026-76047 CVE-2026-76038 CVE-2026-76045

(cherry picked from commit de3a505f98)
2026-08-19 23:52:13 +00:00
nixpkgs-ci[bot]
6313f127fc [Backport release-26.05] openbao: 2.6.1 -> 2.6.2 (#554402) 2026-08-19 23:13:34 +00:00
nixpkgs-ci[bot]
442546f47d [Backport release-26.05] flashprog: 1.5 -> 1.6 (#554502) 2026-08-19 22:46:21 +00:00
Felix Singer
52ebc2c9b2 flashprog: 1.5 -> 1.6
https://flashprog.org/wiki/Flashprog/v1.6

Signed-off-by: Felix Singer <felixsinger@posteo.net>
(cherry picked from commit 8ec13bd8e0)
2026-08-19 22:35:08 +00:00
Anders Kaseorg
68ee6a3da2 linuxPackages.openafs: Patch for Linux kernel 7.2
Signed-off-by: Anders Kaseorg <andersk@mit.edu>
(cherry picked from commit 62001c79f8)
2026-08-19 22:29:55 +00:00
Anders Kaseorg
4711a2a19c openafs: 1.8.16 → 1.8.16.1
Signed-off-by: Anders Kaseorg <andersk@mit.edu>
(cherry picked from commit 94ccf1410d)
2026-08-19 22:29:54 +00:00
Martin Weinelt
b56417d66e [Backport release-26.05] nss_latest: 3.126 -> 3.127 (#554491) 2026-08-19 22:24:57 +00:00
Martin Weinelt
e651c28f35 nss_latest: 3.126 -> 3.127
https://github.com/mozilla/nss/blob/master/doc/src/releases/nss_3_127.md
(cherry picked from commit 6cb968ffd1)
2026-08-19 23:57:34 +02:00
nixpkgs-ci[bot]
01ad4f4c98 [Backport release-26.05] upower: 1.91.2 -> 1.91.3 (#553313) 2026-08-19 19:45:35 +00:00
nicoo
4931d460f6 [Backport release-26.05] ironwail: 0.8.1 -> 0.8.2 (#554435) 2026-08-19 19:43:22 +00:00
Sandro
50ea7e2a1f [Backport release-26.05] nixos/gnome: add glycin-thumbnailer and gst-thumbnailers (#554380) 2026-08-19 19:42:29 +00:00
K900
e09241d7ea staging-nixos-26.05 merge for 2026-08-19 (#554437) 2026-08-19 19:42:02 +00:00
R. Ryantm
99948a6146 ironwail: 0.8.1 -> 0.8.2
(cherry picked from commit a1e80a244d)
2026-08-19 19:37:40 +00:00
Martin Weinelt
0b795c68d7 [Backport release-26.05] python3Packages.flask-security: 5.8.1 -> 5.8.2 (#554413) 2026-08-19 19:31:29 +00:00
K900
20a61115b3 [Backport staging-nixos-26.05] Kernel updates for 2026-08-19 (#554414) 2026-08-19 19:24:00 +00:00
isabel
25983f0d6b [Backport release-26.05] wakapi: 2.17.5 -> 2.17.6 (#554421) 2026-08-19 19:23:11 +00:00
Paul Grandperrin
2293ee7df2 perfect_dark: backport 0-unstable-2026-08-13 2026-08-19 21:12:26 +02:00
isabel
48974cc204 wakapi: 2.17.5 -> 2.17.6
Diff: https://github.com/muety/wakapi/compare/2.17.5...2.17.6

Changelog: https://github.com/muety/wakapi/releases/tag/2.17.6
(cherry picked from commit d984e55745)
2026-08-19 19:10:25 +00:00
K900
dff97b63b1 linux_5_10: 5.10.264 -> 5.10.265
(cherry picked from commit 8a3e4a0b34)
2026-08-19 19:06:08 +00:00
K900
71b23c911c linux_5_15: 5.15.215 -> 5.15.216
(cherry picked from commit 6521f09935)
2026-08-19 19:06:07 +00:00
K900
8460691627 linux_6_1: 6.1.182 -> 6.1.183
(cherry picked from commit dcc51e8a1f)
2026-08-19 19:06:07 +00:00
K900
6263859747 linux_6_6: 6.6.151 -> 6.6.152
(cherry picked from commit e100731055)
2026-08-19 19:06:06 +00:00
K900
18de1dc100 linux_6_12: 6.12.103 -> 6.12.104
(cherry picked from commit 5801384b33)
2026-08-19 19:06:05 +00:00
K900
478a1dcfed linux_6_18: 6.18.44 -> 6.18.45
(cherry picked from commit 812fbe2a4f)
2026-08-19 19:06:04 +00:00
K900
55b843cae8 linux_7_1: 7.1.8 -> 7.1.9
(cherry picked from commit 40e92c93fc)
2026-08-19 19:06:03 +00:00
R. Ryantm
e4a91ff9db python3Packages.flask-security: 5.8.1 -> 5.8.2
(cherry picked from commit 36706461e6)
2026-08-19 19:03:31 +00:00
R. Ryantm
62cc1071b0 openbao: 2.6.1 -> 2.6.2
(cherry picked from commit e7acc4a6d7)
2026-08-19 18:46:49 +00:00
Benjamin Sparks
40b6ca8727 pg_exporter: 1.4.0 -> 1.4.1
(cherry picked from commit ce3b2e128d)
2026-08-19 17:33:48 +00:00
Tom Hunze
b264f0d62b glycin-thumbnailer: remove redundant shopt -s failglob
That's a leftover from when we didn't have `enabledLoaders` yet in
#503377.

(cherry picked from commit 64262df5c3)
2026-08-19 17:16:42 +00:00
Tom Hunze
fc917a9b60 nixos/gnome: add glycin-thumbnailer and gst-thumbnailers
These are the new multimedia thumbnailers developed for GNOME.

gst-thumbnailers in particular is useful because it adds support for
video thumbnailing back to GNOME. Video thumbnailing was previously
provided by totem, but totem isn't shipped by default anymore as it was
replaced by showtime.

Adding them to `optionalPackages` as they are not core apps as per [1].

[1] 6be2940aa3/elements/core/meta-gnome-core-apps.bst

(cherry picked from commit a13398a4e7)
2026-08-19 17:16:41 +00:00
Jocelyn Thode
7541a46a7d element-{web,desktop}: 1.12.24 -> 1.12.26
https://github.com/element-hq/element-web/releases/tag/v1.12.26

https://github.com/element-hq/element-web/compare/v1.12.24...v1.12.26
(cherry picked from commit 21f5dea208)
2026-08-19 17:09:29 +00:00
teutat3s
bf9fc09252 [Backport release-26.05] docker: 29.6.2 -> 29.7.2 (#551539) 2026-08-19 17:04:42 +00:00
Sandro
1d79e9bec0 [Backport release-26.05] glycin-thumbnailer: init at 2.1.1 (#535267) 2026-08-19 16:33:40 +00:00
David McFarland
c3b784ae81 [Backport release-26.05] godotPackages.export-template: 4.7.1-stable -> 4.7.2-stable (#554335) 2026-08-19 15:38:04 +00:00
R. Ryantm
e4ee974b80 godotPackages.export-template: 4.7.1-stable -> 4.7.2-stable
(cherry picked from commit 1d6326282f)
2026-08-19 14:55:15 +00:00
Felix Bargfeldt
9facd3597c [Backport release-26.05] whoami: 1.11.0 -> 1.12.0 (#554320) 2026-08-19 14:28:42 +00:00
yaya
a531bed539 [Backport release-26.05] anker-powerconf-c200-linux-tools: init at 0.1.0 (#554318) 2026-08-19 14:19:17 +00:00
lukas-sgx
677a0b8d6a whoami: 1.11.0 -> 1.12.0
(cherry picked from commit 7918111dfb)
2026-08-19 14:14:44 +00:00
Udo Sauer
e70ce5c9d7 anker-powerconf-c200-linux-tools: init at 0.1.0
(cherry picked from commit d2f3663a73)
2026-08-19 14:12:13 +00:00
Sandro
137042beca [release-26.05] lighthouse-steamvr: 1.4.0 -> 1.5.0, fix hash, target cli (#550778) 2026-08-19 14:06:16 +00:00
Sandro
66a8c5bba0 [26.05] opencloud: 7.2.0 -> 7.2.3, opencloud.web: 7.2.0 -> 7.1.4 (#553618) 2026-08-19 14:02:49 +00:00
nixpkgs-ci[bot]
43ba4ff0b9 [Backport release-26.05] upsun: 5.10.8 -> 5.11.0 (#554312) 2026-08-19 14:01:57 +00:00
R. Ryantm
ea92e9275a upsun: 5.10.8 -> 5.11.0
(cherry picked from commit 3a0a7c7578)
2026-08-19 13:56:31 +00:00
nixpkgs-ci[bot]
ee3132cea5 [Backport release-26.05] rustywind: 0.26.0 -> 0.27.0 (#554239) 2026-08-19 10:14:13 +00:00
Arne Keller
7eea313f30 [Backport release-26.05] javaPackages.compiler.openjdk8: 8u502-b07 -> 8u504-b01 (#554220) 2026-08-19 09:48:33 +00:00
R. Ryantm
9af4509390 rustywind: 0.26.0 -> 0.27.0
(cherry picked from commit df5e746cee)
2026-08-19 09:43:08 +00:00
nixpkgs-ci[bot]
b92ff51f37 [Backport release-26.05] mautrix-whatsapp: 26.07 -> 26.08 (#553711) 2026-08-19 09:33:41 +00:00
R. Ryantm
81cac94166 javaPackages.compiler.openjdk8: 8u502-b07 -> 8u504-b01
(cherry picked from commit 1450625dba)
2026-08-19 08:11:55 +00:00
UwU 420
45248efcd1 opencloud.web: 7.2.0 -> 7.1.4
OpenCloud 7.2.3 pins web 7.1.4 from the stable-7.1 branch.

Upstream pin: https://github.com/opencloud-eu/opencloud/blob/v7.2.3/services/web/Makefile#L3-L4

Changelog: https://github.com/opencloud-eu/web/blob/v7.1.4/CHANGELOG.md

Not-cherry-picked-because: master follows OpenCloud's rolling release line
Assisted-by: OpenAI Codex (GPT-5)
2026-08-19 07:15:00 +02:00
phanirithvij
a761343eef teamtype: run all checks on release binary
Signed-off-by: phanirithvij <phanirithvij2000@gmail.com>
(cherry picked from commit 741c1daf01)
2026-08-19 04:50:25 +00:00
Jost Alemann
d3b1672cb6 teamtype: 0.9.1 -> 0.9.2
Changelog: https://github.com/teamtype/teamtype/releases/tag/v0.9.2
Diff: https://github.com/teamtype/teamtype/compare/v0.9.1...v0.9.2
(cherry picked from commit 07ec624b82)
2026-08-19 04:50:24 +00:00
azahi
b18a4b905f [Backport release-26.05] librewolf-unwrapped: 153.0.4-1 -> 154.0-2 (#554094) 2026-08-19 00:58:34 +00:00
nixpkgs-ci[bot]
0ab5084b2a Merge release-26.05 into staging-nixos-26.05 2026-08-19 00:13:20 +00:00
Nick Cao
9483cef9c9 [Backport release-26.05] rust-petname: 3.1.0 -> 3.2.0 (#554090) 2026-08-18 22:51:59 +00:00
nixpkgs-ci[bot]
fd5a412016 [Backport release-26.05] deezer-desktop: 7.1.230 -> 7.1.300 (#554097) 2026-08-18 22:40:12 +00:00
Matt Sturgeon
1f604177f8 [Backport release-26.05] workflows/check: check github-script types (#554095) 2026-08-18 22:38:16 +00:00
R. Ryantm
84f2a0e506 deezer-desktop: 7.1.230 -> 7.1.300
(cherry picked from commit 346fbb535d)
2026-08-18 22:35:01 +00:00
Michael Daniels
cce88f010d workflows/check: check github-script types
(cherry picked from commit e27ea4e33d)
2026-08-18 22:34:22 +00:00
Michael Daniels
31a761940e ci/github-script: add *.tsbuildinfo to gitignore
(cherry picked from commit 7b972175eb)
2026-08-18 22:34:21 +00:00
Marc Bornand
5c3a219902 librewolf-unwrapped: move source to librewolf.dev
Apply path from Hythera https://github.com/NixOS/nixpkgs/pull/553838#pullrequestreview-4961566683

(cherry picked from commit 9ff29eaa74)
2026-08-18 22:30:12 +00:00
Marc Bornand
5e14d9af9b librewolf-unwrapped: 153.0.4-1 -> 154.0-2
(cherry picked from commit adb136cf57)
2026-08-18 22:30:11 +00:00
R. Ryantm
9c876cff4b rust-petname: 3.1.0 -> 3.2.0
(cherry picked from commit f096e00208)
2026-08-18 22:22:17 +00:00
Nick Cao
6390f89a0e [26.05] sing-box: 1.13.18 -> 1.13.19 (#553749) 2026-08-18 21:46:32 +00:00
Michael Daniels
c288838a0f [Backport release-26.05] google-chrome: 151.0.7922.137 -> 151.0.7922.169 (#554069) 2026-08-18 21:46:04 +00:00
Cosima Neidahl
fea5daf467 [Backport release-26.05] palemoon-bin: 34.3.2 -> 34.3.2.1 (#554061) 2026-08-18 21:22:16 +00:00
Michael Daniels
70468eb433 google-chrome: 151.0.7922.137 -> 151.0.7922.169
Changelog: https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_0826575033.html
(cherry picked from commit 7224aa7e44)
2026-08-18 21:20:13 +00:00
nixpkgs-ci[bot]
3defff69b1 [Backport release-26.05] mdns-scanner: 0.27.5 -> 0.28.0 (#554058) 2026-08-18 21:13:41 +00:00
Michael Daniels
3cca71393e [Backport release-26.05] matrix-hookshot: 7.3.2 -> 7.4.0 (#553726) 2026-08-18 21:05:33 +00:00
R. Ryantm
fbe03d3c0c palemoon-bin: 34.3.2 -> 34.3.2.1
(cherry picked from commit 2a27d4027e)
2026-08-18 20:51:06 +00:00
Pascal Dietrich
9641575dae mdns-scanner: 0.27.5 -> 0.28.0
(cherry picked from commit 9f16d83dea)
2026-08-18 20:43:16 +00:00
UwU 420
ebcbbf71bb opencloud: allow local networking in Darwin tests
Assisted-by: OpenAI Codex (GPT-5)
(cherry picked from commit 285d60b4c4)
2026-08-18 22:27:46 +02:00
Sandro
a0236668d0 [26.05] podman: 5.8.2 -> 5.8.6 (#553773) 2026-08-18 19:23:01 +00:00
StepBroBD
e0f04dbf2a [Backport release-26.05] python3Packages.{cryptodatahub,cryptolyzer,cryptoparser}: 1.2.1 -> 1.5.0 (#554022) 2026-08-18 19:07:11 +00:00
phanirithvij
cd62d4fe60 python3Packages.{cryptodatahub,cryptolyzer,cryptoparser}: add update script
Signed-off-by: phanirithvij <phanirithvij2000@gmail.com>
(cherry picked from commit 03388b1ed4)
2026-08-18 18:59:20 +00:00
phanirithvij
166c408099 python3Packages.{cryptodatahub,cryptolyzer,cryptoparser}: 1.2.1 -> 1.5.0
Changelog:
- https://gitlab.com/coroner/cryptodatahub/-/blob/v1.5.0/CHANGELOG.rst
- https://gitlab.com/coroner/cryptolyzer/-/blob/v1.5.0/CHANGELOG.rst
- https://gitlab.com/coroner/cryptoparser/-/blob/v1.5.0/CHANGELOG.rst

Signed-off-by: phanirithvij <phanirithvij2000@gmail.com>
(cherry picked from commit 005d36e620)
2026-08-18 18:59:19 +00:00
Sandro
b6d443a27e [Backport release-26.05] knot-dns: 3.5.6 -> 3.5.7 (#553957) 2026-08-18 18:45:20 +00:00
isabel
02407c8c08 [Backport release-26.05] bluesky-pds: 0.4.5009 -> 0.4.5027 (#554008) 2026-08-18 18:31:38 +00:00
dotlambda
518ff7e696 [Backport staging-nixos-26.05] libgit2: 1.9.3 -> 1.9.4 (#553142) 2026-08-18 18:24:56 +00:00
isabel
7fd1845566 bluesky-pds: 0.4.5009 -> 0.4.5027
Diff: https://github.com/bluesky-social/pds/compare/v0.4.5009...v0.4.5027
(cherry picked from commit 3e2abb1c62)
2026-08-18 18:24:23 +00:00
Sandro
10f7ad7467 mautrix-meta: 26.05 -> 26.07 (#553795) 2026-08-18 17:55:46 +00:00
Felix Bargfeldt
52a8613a85 [Backport release-26.05] olivetin-3k: 3000.18.1 -> 3000.19.0 (#553980) 2026-08-18 16:07:08 +00:00
nixpkgs-ci[bot]
6e51ed5b9a [Backport release-26.05] yazi: wrap ya with runtime dependencies (#553962) 2026-08-18 15:57:58 +00:00
R. Ryantm
e65d525ba2 olivetin-3k: 3000.18.1 -> 3000.19.0
(cherry picked from commit c3201ad09c)
2026-08-18 15:54:20 +00:00
Austin Horstman
6f52645fc1 yazi: wrap ya with runtime dependencies
`ya env` resolves dependency executables through PATH. Wrap `ya` with
the same runtime path as `yazi` so packaged optional and extra
dependencies are visible.

(cherry picked from commit e7b8d7a48a)
2026-08-18 15:07:42 +00:00
Vladimír Čunát
2f37b74cd6 knot-dns: 3.5.6 -> 3.5.7
https://gitlab.nic.cz/knot/knot-dns/-/releases/v3.5.7
(cherry picked from commit 03683e7169)
2026-08-18 14:50:06 +00:00
nixpkgs-ci[bot]
c89e97400f [Backport release-26.05] phpExtensions.blackfire: 2026.7.1 -> 2026.8.2 (#553943) 2026-08-18 14:27:35 +00:00
R. Ryantm
89d5d80816 phpExtensions.blackfire: 2026.7.1 -> 2026.8.2
(cherry picked from commit 331cd44aa1)
2026-08-18 14:22:35 +00:00
nixpkgs-ci[bot]
6105dcb67e [Backport release-26.05] frankenphp: 1.12.6 -> 1.12.7 (#550656) 2026-08-18 13:51:22 +00:00
Martin Weinelt
e35daa58ea [Backport release-26.05] dump_syms: 2.3.8 -> 2.3.9 (#553653) 2026-08-18 13:04:04 +00:00
Erik Skytthe
5b6864b15b rsyslog: fix imjournal invalidation reopen busy-loop
(cherry picked from commit 001d1e1365)
2026-08-18 12:36:56 +00:00
SchweGELBin
2861e8492e mautrix-meta: 26.06 -> 26.07
(cherry picked from commit c9347500b2)
2026-08-18 19:32:41 +07:00
SchweGELBin
c2f4156f5f mautrix-meta: 26.05.1 -> 26.06
(cherry picked from commit 6ceb6613a2)
2026-08-18 19:32:34 +07:00
w191923
de7dcd4a1d mautrix-meta: 26.05 -> 26.05.1
(cherry picked from commit e5049aed76)
2026-08-18 19:32:23 +07:00
Martin Weinelt
e884fd96b7 [Backport release-26.05] Firefox: 153.0.4 -> 154.0; 153.0esr -> 153.1.0esr; 140.13.0esr -> 140.14.0esr (#553768) 2026-08-18 12:15:05 +00:00
Vincent Laporte
2f14835f88 [Backport release-26.05] gajim: 2.4.7.1 -> 2.5.0 (#553848) 2026-08-18 11:11:33 +00:00
nixpkgs-ci[bot]
5618b1af4f [Backport release-26.05] mutter: apply patch to fix HDR with 50.4 (#553545) 2026-08-18 11:04:28 +00:00
Leona Maroni
0926aeb0f5 [Backport release-26.05] gitlab: 19.2.2 -> 19.2.4 (#553843) 2026-08-18 09:59:55 +00:00
Leona Maroni
9fbbaa5738 [Backport release-26.05] gitlab-runner: 18.11.3 -> 19.0.0 (#531517) 2026-08-18 09:47:51 +00:00
Stefan Haan
b1969da45f gajim: 2.4.7.1 -> 2.5.0
(cherry picked from commit 3bb9258551)
2026-08-18 11:31:31 +02:00
Stefan Haan
ce83840718 python3Packages.nbxmpp: 7.2.0 -> 7.3.0
(cherry picked from commit 7f51f22af4)
2026-08-18 11:31:30 +02:00
yaya
12cd579ddd gitlab: 19.2.2 -> 19.2.4
https://gitlab.com/gitlab-org/gitlab/-/blob/v19.2.4-ee/CHANGELOG.md
(cherry picked from commit 11f010c29c)
2026-08-18 09:05:58 +00:00
Vladimír Čunát
c69ae8fb8f [26.05] python3Packages.unearth: fix CVE-2026-73030 (#552441) 2026-08-18 08:33:34 +00:00
Vladimír Čunát
b32084a083 [26.05] python3Packages.pymdown-extensions: 10.21.2 -> 10.21.3 (#551998) 2026-08-18 08:32:30 +00:00
Vladimír Čunát
d981f2da46 [Backport release-26.05] python3Packages.python-engineio: 4.13.1 -> 4.13.2 (#552173) 2026-08-18 08:29:26 +00:00
Vladimír Čunát
244a4118c6 [Backport release-26.05] mysql84: 8.4.10 -> 8.4.11 (#550265) 2026-08-18 08:25:34 +00:00
Vladimír Čunát
c664d6b662 staging-next-26.05 iteration 5 - 2026-08-13 (#552126) 2026-08-18 08:20:33 +00:00
StepBroBD
e30ae87a74 [Backport release-26.05] python3Packages.crypto{datahub,parser,lyzer}: 1.1.0 -> 1.2.1 (#553828) 2026-08-18 08:05:33 +00:00
Vladimír Čunát
19b0151385 Merge branch 'staging-nixos-26.05' into staging-next-26.05 2026-08-18 09:57:19 +02:00
Niklas Hambüchen
0aece09607 ceph: 20.2.2 -> 20.2.3
(cherry picked from commit 1d8e1c790d)
2026-08-18 07:48:09 +00:00
eljamm
369c0ab6e2 python3Packages.cryptolyzer: 1.1.0 -> 1.2.1
Changelog: https://gitlab.com/coroner/cryptolyzer/-/blob/v1.2.1/CHANGELOG.md
(cherry picked from commit 783f6a6cb5)
2026-08-18 07:39:27 +00:00
eljamm
d48feecc7b python3Packages.cryptoparser: 1.1.0 -> 1.2.1
Changelog: https://gitlab.com/coroner/cryptoparser/-/blob/v1.2.1/CHANGELOG.md
(cherry picked from commit ebdef1a337)
2026-08-18 07:39:27 +00:00
R. Ryantm
344d0820d8 python3Packages.cryptodatahub: 1.1.0 -> 1.2.1
(cherry picked from commit 2dc5868ed9)
2026-08-18 07:39:26 +00:00
Yorick
29d87be2ee [Backport release-26.05] victoriametrics: 1.149.0 -> 1.150.0 (#553823) 2026-08-18 07:23:26 +00:00
transcaffeine
824909c608 victoriametrics: 1.149.0 -> 1.150.0
Release notes: https://github.com/VictoriaMetrics/VictoriaMetrics/releases/tag/v1.150.0
Full changelog: https://github.com/VictoriaMetrics/VictoriaMetrics/compare/v1.149.0...v1.150.0

(cherry picked from commit e18e352491)
2026-08-18 07:17:41 +00:00
Yorick
b06aae4f7c [Backport release-26.05] victoriametrics: 1.148.0 -> 1.149.0 (#549908) 2026-08-18 07:08:56 +00:00
Fernando Rodrigues
e63f6f9b2e [Backport release-26.05] pay-respects: Add default parameters to allow configuring the build (#553791) 2026-08-18 03:50:38 +00:00
kintrix007
3a53753565 pay-respects: Add default parameters to allow configuring the build
Added parameters:
`withRuntimeRules`: build with the runtime-rules module (default: yes)
`withRequestAi`: build with the request-ai module (default: yes)

(cherry picked from commit 3c012fc27e)
2026-08-18 03:41:27 +00:00
UwU 420
453eb764bf podman: 5.8.4 -> 5.8.6
Diff: https://github.com/podman-container-tools/podman/compare/v5.8.4...v5.8.6

Changelog: https://github.com/podman-container-tools/podman/blob/v5.8.6/RELEASE_NOTES.md

Security advisory: https://github.com/podman-container-tools/podman/security/advisories/GHSA-fx76-2j3w-2mx6

Assisted-by: OpenAI Codex (GPT-5)
(cherry picked from commit 7f9ff4d0e1)
2026-08-18 03:33:02 +02:00
klea
0925468af0 podman: 5.8.3 -> 5.8.4
Fixes CVE-2026-57231/GHSA-4hq8-gpf5-8p68 (#535959)

(cherry picked from commit d7a368779a)
2026-08-18 03:32:40 +02:00
R. Ryantm
d68504cef7 podman: 5.8.2 -> 5.8.3
(cherry picked from commit b7fedeeae5)
2026-08-18 03:32:37 +02:00
Martin Weinelt
183d42935c firefox-esr-unwrapped: 140 -> 153
(cherry picked from commit 83a9ed7c65)
2026-08-18 01:04:03 +00:00
Martin Weinelt
d42c362b14 firefox-esr-140-unwrapped: 140.13.0esr -> 140.14.0esr
https://www.firefox.com/en-US/firefox/140.14.0/releasenotes/
(cherry picked from commit 6755e615ea)
2026-08-18 01:04:03 +00:00
Martin Weinelt
e0be7510ca firefox-esr-153-unwrapped: 153.0esr -> 153.1.0esr
https://www.firefox.com/en-US/firefox/153.1.0/releasenotes/
(cherry picked from commit e1c03236d7)
2026-08-18 01:04:02 +00:00
Martin Weinelt
d8542c8b25 firefox-bin-unwrapped: 153.0.4 -> 154.0
https://www.firefox.com/en-US/firefox/154.0/releasenotes/
(cherry picked from commit d9483bce6c)
2026-08-18 01:04:01 +00:00
Martin Weinelt
cf5f0febde firefox-unwrapped: 153.0.4 -> 154.0
https://www.firefox.com/en-US/firefox/154.0/releasenotes/
(cherry picked from commit 3502118462)
2026-08-18 01:04:00 +00:00
nixpkgs-ci[bot]
30f53c974a Merge release-26.05 into staging-nixos-26.05 2026-08-18 00:13:42 +00:00
nixpkgs-ci[bot]
350e31906b Merge release-26.05 into staging-next-26.05 2026-08-18 00:12:41 +00:00
Weijia Wang
14ef18cd15 [Backport release-26.05] openbsd: fix eval on riscv64-linux (#553633) 2026-08-17 23:36:28 +00:00
Sizhe Zhao
25483ad515 sing-box: 1.13.18 -> 1.13.19
(cherry picked from commit 41c9a5a4a1)
2026-08-18 07:07:26 +08:00
Austin Eschweiler
2a75bad0e8 pocket-id: 2.12.0 -> 2.13.0
Co-authored-by: Gergő Gutyina <gutyina.gergo.2@gmail.com>
(cherry picked from commit fbf60643de)
2026-08-18 00:43:53 +02:00
Michael Daniels
0c88fcce6c [Backport release-26.05] yocto-cooker: init at 1.5.0 (#535506) 2026-08-17 21:59:50 +00:00
Benjamin Sparks
721ec08866 matrix-hookshot: 7.3.3 -> 7.4.0
Diff: https://github.com/matrix-org/matrix-hookshot/compare/7.3.3...7.4.0

Changelog: https://github.com/matrix-org/matrix-hookshot/blob/7.4.0/CHANGELOG.md

Also includes a platforms tweak to permit building on darwin

(cherry picked from commit 44f82dd660)
2026-08-17 23:42:22 +02:00
Jack Kelly
e5f495b69b nixos/ups: run killpower driver as root
upsdrv starts the driver with `upsdrvctl -u root start`, but
ups-killpower invokes a bare `upsdrvctl shutdown`. Since nut
is built --with-user=nutmon, nut fails to read both /var/lib/nut
and the USB device with "insufficient permissions on everything".
The UPS is then never told to cut its outlets: it keeps draining
battery after the OS has halted, and cannot power-cycle the machine
when mains returns.

Ergo, run the shutdown as root.

(cherry picked from commit f4d444ddff)
2026-08-17 21:12:23 +00:00
SchweGELBin
9652fb4373 mautrix-whatsapp: 26.07 -> 26.08
(cherry picked from commit 92abca22a4)
2026-08-17 20:56:42 +00:00
isabel
b708157eca [26.05] moonlight: 2026.5.2 -> 2026.8.0 (#553703) 2026-08-17 20:31:24 +00:00
isabel
56e9724022 moonlight: 2026.7.0 -> 2026.8.0
Diff: https://github.com/moonlight-mod/moonlight/compare/v2026.7.0...v2026.8.0

Changelog: https://raw.githubusercontent.com/moonlight-mod/moonlight/refs/tags/v2026.8.0/CHANGELOG.md
(cherry picked from commit 4843135c56)
2026-08-17 21:23:33 +01:00
isabel
82dc92561a moonlight: 2026.5.2 -> 2026.7.0
Diff: https://github.com/moonlight-mod/moonlight/compare/v2026.5.2...v2026.7.0

Changelog: https://raw.githubusercontent.com/moonlight-mod/moonlight/refs/tags/v2026.7.0/CHANGELOG.md
(cherry picked from commit 9f4aad68e7)
2026-08-17 21:23:19 +01:00
R. Ryantm
4e0963444b matrix-hookshot: 7.3.2 -> 7.3.3
(cherry picked from commit 8b5c43d823)
2026-08-17 21:57:18 +02:00
Sapphire
78afa39b98 wayvr: add me as maintainer
(cherry picked from commit 22fead9e5f)
2026-08-17 19:04:39 +00:00
Sapphire
122a628dee wayvr: patch uidev rpath so dlopen'd dependencies are found
(cherry picked from commit 01dc282204)
2026-08-17 19:04:39 +00:00
Sapphire
dc86f6fbfa wayvr: fix xwayland-satellite executable path
(cherry picked from commit 95d30c22ff)
2026-08-17 19:04:37 +00:00
Sapphire
e59ddbc141 wayvr: 26.7.1 -> 26.8.0
(cherry picked from commit 2aea93e065)
2026-08-17 19:04:37 +00:00
R. Ryantm
61c91d5aa0 libgit2: 1.9.3 -> 1.9.4
(cherry picked from commit 9dc20fcb55)
2026-08-17 11:56:01 -07:00
Sefa Eyeoglu
bb5d754b35 [Backport release-26.05] oscavmgr: 25.2 -> 26.8.0 (#552352) 2026-08-17 18:53:18 +00:00
Sandro
844ed254c3 [release-26.05] fishPlugins.pure: 4.15.0 -> 4.18.0 (#553178) 2026-08-17 18:49:54 +00:00
Fabian Affolter
a14a60c92d [Backport release-26.05] ffuf: 2.1.0 -> 2.2.1 (#553610) 2026-08-17 18:41:53 +00:00
Sefa Eyeoglu
0cb57bcd02 [Backport release-26.05] home-assistant-custom-components.localthings: init at 0.20.0 (#550590) 2026-08-17 18:40:49 +00:00
Sefa Eyeoglu
07dc729e1f [Backport release-26.05] vencord: 1.15.0 -> 1.15.1 (#553447) 2026-08-17 18:37:12 +00:00
Adam C. Stephens
401ce90c77 [Backport release-26.05] zfs_2_4: more backports (#552496) 2026-08-17 16:57:31 +00:00
R. Ryantm
65bae2469a thunderbird-latest-unwrapped: 153.0.2 -> 153.0.3
(cherry picked from commit 5a97f82253)
2026-08-17 16:32:38 +00:00
R. Ryantm
c9ba69530a dump_syms: 2.3.8 -> 2.3.9
(cherry picked from commit a2b6a1c0c3)
2026-08-17 13:05:55 +00:00
Doron Behar
7ca7d87364 [Backport release-26.05] picard: backport recent nix package updates (#553643) 2026-08-17 12:47:48 +00:00
Ali K. Hamze
c389f32c30 pkgs/by-name: fix typos
Not-cherry-picked-because: large commit modifying many files, leading to merge conflicts if I cherry-pick the entire thing.
2026-08-17 08:24:07 -04:00
Sandro Jäckel
47cd723b1d picard: remove unnecessary brackets
(cherry picked from commit 0c9d1fd9ea)
2026-08-17 08:22:55 -04:00
Sandro Jäckel
6e4b2c728d picard: use pyproject's dependencies
(cherry picked from commit 8cf990d70a)
2026-08-17 08:22:44 -04:00
Sandro Jäckel
fb61a905f5 picard: bump python to 3.13
(cherry picked from commit 3255983a75)
2026-08-17 08:22:31 -04:00
Sandro Jäckel
b4a85980e4 picard: move update script comment to proper update script
(cherry picked from commit e20dc30419)
2026-08-17 08:22:15 -04:00
Ali K. Hamze
0fd8bf0e58 treewide: drop gst-vaapi
Not-cherry-picked-because: this commit modified many files, leading to merge conflicts when cherry-picking.
2026-08-17 08:21:52 -04:00
nixpkgs-ci[bot]
a53ebc7a74 [Backport release-26.05] cargo-tarpaulin: 0.37.0 -> 0.37.2 (#553586) 2026-08-17 12:08:35 +00:00
liberodark
e9e66ee270 openbsd: fix eval on riscv64-linux
(cherry picked from commit 2743a20db7)
2026-08-17 12:02:19 +00:00
K900
5c11f83f0e [Backport release-26.05] linux_7_2: init at 7.2 (#553625) 2026-08-17 11:26:34 +00:00
André Silva
e481d4e532 nixos/all-hardware: add xhci_pci_prom21 to default initrd modules on linux 7.2
Since 7.2, xhci-pci defers AMD 800-series chipset xHCI controllers
(1022:43fc/43fd) to the new xhci_pci_prom21 driver and no longer binds
them itself.

(cherry picked from commit 6c4ad66e46)
2026-08-17 11:21:36 +00:00
André Silva
dc354d6146 nixos/kernel: add xhci_pci_prom21 to default initrd modules on linux 7.2
Since 7.2, xhci-pci defers AMD 800-series chipset xHCI controllers
(1022:43fc/43fd) to the new xhci_pci_prom21 driver and no longer binds
them itself.

(cherry picked from commit 5c6681a09d)
2026-08-17 11:21:35 +00:00
André Silva
c5029b7988 linux_7_2: init at 7.2
(cherry picked from commit f707dbc22d)
2026-08-17 11:21:34 +00:00
taku0
e146e60def [Backport release-26.05] thunderbird-latest-bin-unwrapped: 153.0.1 -> 153.0.3 (#553243) 2026-08-17 11:06:08 +00:00
K900
771e482536 python3Packages.imap-tools: skip tests broken on Python 3.14.7
(cherry picked from commit 3553fcac38)
Same with 3.13.15 as well, apparently:
https://hydra.nixos.org/build/342085659/step/3/log/tail
2026-08-17 13:04:54 +02:00
nixpkgs-ci[bot]
7f0d6147d1 [Backport release-26.05] jackett: 0.24.2335 -> 0.24.2406 (#553584) 2026-08-17 10:38:44 +00:00
Fabian Affolter
06fc4babab ffuf: 2.1.0 -> 2.2.1
Changelog: https://github.com/ffuf/ffuf/releases/tag/v2.2.1
(cherry picked from commit fa7aee2fbb)
2026-08-17 10:38:08 +00:00
yaya
cd7e826163 [26.05] gitlab: 19.0.4 -> 19.2.2 (#553575) 2026-08-17 10:37:01 +00:00
R. Ryantm
edb6e1fbd8 cargo-tarpaulin: 0.37.0 -> 0.37.2
(cherry picked from commit c2eef6c7a9)
2026-08-17 09:42:13 +00:00
UwU 420
4d893bd8ff opencloud: 7.2.0 -> 7.2.3
Diff: https://github.com/opencloud-eu/opencloud/compare/v7.2.0...v7.2.3

Changelog: https://github.com/opencloud-eu/opencloud/blob/v7.2.3/CHANGELOG.md

Assisted-by: OpenAI Codex (GPT-5)
2026-08-17 11:41:42 +02:00
R. Ryantm
cfab7d84f3 jackett: 0.24.2335 -> 0.24.2406
(cherry picked from commit ebbdeecfa8)
2026-08-17 09:38:48 +00:00
nixpkgs-ci[bot]
52da88f041 [Backport release-26.05] ledger-live-desktop: 4.13.1 -> 4.15.0 (#553580) 2026-08-17 09:28:09 +00:00
R. Ryantm
36b61d3730 ledger-live-desktop: 4.13.1 -> 4.15.0
(cherry picked from commit 491cc4d4a6)
2026-08-17 09:23:22 +00:00
Sandro
257f93238a [Backport release-26.05] gitea: 1.27.1 -> 1.27.2 (#552647) 2026-08-17 09:18:17 +00:00
yaya
6f08bfbf65 nixos/gitlab: add another state folder
(cherry picked from commit 52de0c604f)
2026-08-17 11:02:16 +02:00
yaya
cb04852052 gitlab: 19.0.4 -> 19.2.2
https://gitlab.com/gitlab-org/gitlab/-/blob/v19.2.2-ee/CHANGELOG.md
(cherry picked from commit 897899460a)
2026-08-17 11:02:13 +02:00
Leona Maroni
d48b771a57 [Backport release-26.05] proftpd: 1.3.9c -> 1.3.9d (#553544) 2026-08-17 07:16:08 +00:00
Marco "Capypara" Köpcke
1cb1f30576 mutter: apply patch to fix HDR with 50.4
(cherry picked from commit 0638e1cb05)
2026-08-17 07:01:56 +00:00
R. Ryantm
dc50e361d8 proftpd: 1.3.9c -> 1.3.9d
(cherry picked from commit e8a42ba6f7)
2026-08-17 06:59:18 +00:00
nixpkgs-ci[bot]
e01b84f369 [Backport release-26.05] calibre: cleanup (#553484) 2026-08-17 06:52:40 +00:00
Vladimír Čunát
d520eb0c7a [Backport release-26.05] gcc16: 16.1.0 -> 16.2.0 (#551793) 2026-08-17 06:48:44 +00:00
Michele Guerini Rocco
dafbc30bf0 [Backport release-26.05] pdns-recursor: 5.4.4 -> 5.4.5 (#553389) 2026-08-17 05:41:51 +00:00
Vladimír Čunát
0dd31db7e6 [Backport release-26.05] nixos/gitlab: increase postgres max locks per transaction (#553288) 2026-08-17 05:10:17 +00:00
Sandro Jäckel
2b6f6465f2 python3Packages.oslo-log: 8.1.0 -> 8.3.0
Diff: https://github.com/openstack/oslo.log/compare/8.1.0...8.3.0
(cherry picked from commit 71bf968649)
Otherwise it fails, probably after patch-level python3 updates:
https://hydra.nixos.org/build/342302590/step/2/log/tail
2026-08-17 06:58:32 +02:00
Gaetan Lepage
69dd4a4f3c calibre: cleanup
(cherry picked from commit a437cbec63)
2026-08-17 00:42:58 +00:00
nixpkgs-ci[bot]
fa049cf3d9 Merge release-26.05 into staging-nixos-26.05 2026-08-17 00:13:13 +00:00
nixpkgs-ci[bot]
95116ea3e4 Merge release-26.05 into staging-next-26.05 2026-08-17 00:12:13 +00:00
Peder Bergebakken Sundt
33da5f36e5 [Backport release-26.05] calibre: 9.11.0 -> 9.13.0 (#553284) 2026-08-16 22:40:13 +00:00
nixpkgs-ci[bot]
3965a58bcb [Backport release-26.05] kas 5.2 -> 5.4 (#553433) 2026-08-16 21:54:24 +00:00
R. Ryantm
a2151a4e02 vencord: 1.15.0 -> 1.15.1
(cherry picked from commit 96190d181f)
2026-08-16 21:23:57 +00:00
R. Ryantm
fccdbb1a43 kas: 5.3 -> 5.4
(cherry picked from commit ded00ca14f)
2026-08-16 23:06:13 +02:00
R. Ryantm
3b91c7b601 kas: 5.2 -> 5.3
(cherry picked from commit 8fa7495c27)
2026-08-16 23:06:13 +02:00
nixpkgs-ci[bot]
e4c0a9c344 [Backport release-26.05] drawio: 30.2.6 -> 31.1.8 (#553421) 2026-08-16 20:35:53 +00:00
DarkOnion0
ce7487ce6f drawio: 30.2.6 -> 31.1.8
(cherry picked from commit 2aca8be448)
2026-08-16 20:00:37 +00:00
Antoine du Hamel
01f4601e86 [Backport release-26.05] node-core-utils: 7.0.0 -> 7.1.0 (#553393) 2026-08-16 17:58:23 +00:00
R. Ryantm
eabc4f2aa5 node-core-utils: 7.0.0 -> 7.1.0
(cherry picked from commit 96c320d909)
2026-08-16 17:53:47 +00:00
nixpkgs-ci[bot]
dcc07918ba [Backport release-26.05] ghgrab: 2.0.1 -> 2.0.2 (#553386) 2026-08-16 17:43:38 +00:00
rnhmjoj
9ee0926246 pdns-recursor: 5.4.4 -> 5.4.5
(cherry picked from commit a568382fea)
2026-08-16 17:36:01 +00:00
R. Ryantm
76ec27b021 ghgrab: 2.0.1 -> 2.0.2
(cherry picked from commit 1d6bb4f6ce)
2026-08-16 17:20:43 +00:00
nixpkgs-ci[bot]
3e1cc6fcae [Backport release-26.05] mount-zip: 1.12 -> 1.16 (#553374) 2026-08-16 17:13:27 +00:00
Emily
e4e106b4d6 [Backport release-26.05] grafana-loki: 3.7.4 -> 3.7.6 (#553378) 2026-08-16 17:09:27 +00:00
R. Ryantm
bf79e0de04 grafana-loki: 3.7.4 -> 3.7.6
(cherry picked from commit 2fefb3ecfd)
2026-08-16 16:56:57 +00:00
Petr Portnov
df6a682fd7 mount-zip: 1.12 -> 1.16
(cherry picked from commit 8a7b4a4fac)
2026-08-16 16:49:55 +00:00
Maximilian Bosch
46d9d62190 [Backport release-26.05] nextcloud*: 32.0.13 -> 32.0.14, 33.0.7 -> 33.0.8, 34.0.2 -> 34.0.3 (#553333) 2026-08-16 16:25:05 +00:00
nixpkgs-ci[bot]
42adbbee9f [Backport release-26.05] cel-go: 0.30.0 -> 0.31.0 (#553353) 2026-08-16 16:17:48 +00:00
nixpkgs-ci[bot]
ebd922ba64 [Backport release-26.05] modrinth-app-unwrapped: 0.17.3 -> 0.17.5 (#553320) 2026-08-16 16:17:25 +00:00
R. Ryantm
93192ab47b cel-go: 0.30.0 -> 0.31.0
(cherry picked from commit bdd977b758)
2026-08-16 15:15:34 +00:00
nixpkgs-ci[bot]
b5e9d4fc42 [Backport release-26.05] garnet: 2.1.1 -> 2.1.4 (#552958) 2026-08-16 15:13:34 +00:00
nixpkgs-ci[bot]
1dbebf9ace [Backport release-26.05] navidromePlugins.listenbrainz-daily-playlist: 5.0.2 -> 6.0.0 (#552938) 2026-08-16 14:15:49 +00:00
nixpkgs-ci[bot]
c4ea5b5fca [Backport release-26.05] gpac: 26.02.0 -> 26.07.0 (#553009) 2026-08-16 14:09:41 +00:00
Beardhatcode
da3b73c10f nextcloud*.packages: update
(cherry picked from commit 6fbed08655)
2026-08-16 14:09:21 +00:00
Beardhatcode
f1b20bce68 nextcloud34: 34.0.2 -> 34.0.3
(cherry picked from commit bb394468b5)
2026-08-16 14:09:20 +00:00
Beardhatcode
f5de3a8299 nextcloud33: 33.0.7 -> 33.0.8
(cherry picked from commit b5034a788e)
2026-08-16 14:09:20 +00:00
Beardhatcode
a9186cd31f nextcloud32: 32.0.13 -> 32.0.14
(cherry picked from commit 497f6e8dbf)
2026-08-16 14:09:19 +00:00
Peder Bergebakken Sundt
99828d1ab6 [Backport release-26.05] feedparser-sgmllib: init at 2.1.0 (#553300) 2026-08-16 14:07:35 +00:00
nixpkgs-ci[bot]
768714c069 [Backport release-26.05] udisks: 2.11.1 -> 2.11.2 (#550604) 2026-08-16 14:06:35 +00:00
Maximilian Bosch
e17dfc434b [Backport release-26.05] roundcube: 1.7.2 -> 1.7.3 (#553321) 2026-08-16 13:31:38 +00:00
nixpkgs-ci[bot]
74253162af [Backport release-26.05] porxie: 0.3.3 -> 0.3.4 (#553317) 2026-08-16 13:24:52 +00:00
R. Ryantm
b83411c4b8 roundcube: 1.7.2 -> 1.7.3
(cherry picked from commit 2238fdf816)
2026-08-16 13:24:46 +00:00
R. Ryantm
005426b897 modrinth-app-unwrapped: 0.17.3 -> 0.17.5
(cherry picked from commit f87c72c5ac)
2026-08-16 13:24:31 +00:00
R. Ryantm
fbd253fc83 porxie: 0.3.3 -> 0.3.4
(cherry picked from commit 79446bb896)
2026-08-16 13:09:17 +00:00
nixpkgs-ci[bot]
f3f8fd36cf [Backport release-26.05] checkstyle: 13.9.0 -> 13.10.0 (#553287) 2026-08-16 13:05:24 +00:00
nixpkgs-ci[bot]
f13b6c0eaf [Backport release-26.05] vivaldi: 8.1.4087.61 -> 8.1.4087.66 (#553263) 2026-08-16 13:05:05 +00:00
Pavol Rusnak
cff534786a [Backport release-26.05] electrum: 4.8.0 -> 4.8.1 (#553312) 2026-08-16 13:03:18 +00:00
R. Ryantm
b6d3b4b548 upower: 1.91.2 -> 1.91.3
(cherry picked from commit 6a227e7859)
2026-08-16 13:03:14 +00:00
Pavol Rusnak
dfb0b3c4af [Backport release-26.05] electrum: move trezor into default dependencies (#553309) 2026-08-16 13:00:24 +00:00
Ryan Omasta
671880aa1c electrum: 4.8.0 -> 4.8.1
https://github.com/spesmilo/electrum/blob/4.8.1/RELEASE-NOTES
Diff: https://github.com/spesmilo/electrum/compare/4.8.0...4.8.1
(cherry picked from commit 3ffc4733f9)
2026-08-16 12:58:46 +00:00
Pavol Rusnak
d4d2927273 [Backport release-26.05] python3Packages.trezor: 0.20.0 -> 0.20.2 (#553308) 2026-08-16 12:57:16 +00:00
Mark Polyakov
6653219f39 electrum: move trezor into default dependencies
The Trezor dependency (which enables support for the Trezor hardware wallet) was gated behind the
enablePythonEcdsa override prior to this change because the trezor python package used to depend on
the ecdsa python package which is marked insecure. However, modern versions of the trezor package no
longer depend on ecdsa so it should be enabled by default, like the Ledger hardware wallet package.

(cherry picked from commit d0da9f0d59)
2026-08-16 12:55:33 +00:00
Pavol Rusnak
cd8b7116a1 python3Packages.trezor: 0.20.0 -> 0.20.2
(cherry picked from commit efabce55ea)
2026-08-16 12:51:46 +00:00
Vegard Bieker Matthey
c8ab23b487 feedparser-sgmllib: init at 2.1.0
Co-authored-by: h7x4 <h7x4@nani.wtf>
Co-authored-by: Peder Bergebakken Sundt <pbsds@hotmail.com>
(cherry picked from commit 98a5088236)
2026-08-16 12:02:12 +00:00
Vegard Bieker Matthey
23a9453e9e maintainers: add ar4m1s
(cherry picked from commit f390d0d6bd)
2026-08-16 12:02:11 +00:00
Leona Maroni
7a70f11920 nixos/gitlab: increase postgres max locks per transaction
Apparently this is necessary since the PostgreSQL 17.6 update

(cherry picked from commit 917ec3b1c2)
2026-08-16 11:17:37 +00:00
R. Ryantm
f363f9aed5 checkstyle: 13.9.0 -> 13.10.0
(cherry picked from commit f4521e7cfe)
2026-08-16 11:13:28 +00:00
Gergő Gutyina
902b391aff [Backport release-26.05] jetbrains.pycharm: 2026.2 -> 2026.2.0.1 (#550692) 2026-08-16 10:58:55 +00:00
Gaétan Lepage
cce94ce5dd [Backport release-26.05] exo: add CVE-2026-14738 to meta.knownVulnerabilities (#553283) 2026-08-16 10:56:32 +00:00
Vegard Bieker Matthey
a43feb110f calibre: 9.11.0 -> 9.13.0
(cherry picked from commit 8200b7851b)
2026-08-16 10:52:14 +00:00
Gaetan Lepage
74a46296de exo: add CVE-2026-14738 to meta.knownVulnerabilities
(cherry picked from commit da18f5a1e3)
2026-08-16 10:51:43 +00:00
Gergő Gutyina
86038378b4 [Backport release-26.05] pnpm: 11.20.0 -> 11.21.0 (#552474) 2026-08-16 10:18:51 +00:00
nixpkgs-ci[bot]
37b8b28630 [Backport release-26.05] rlottie: 0.2-unstable-2026-07-03 -> 0.2-unstable-2026-08-11 (#553259) 2026-08-16 09:54:10 +00:00
R. Ryantm
6a7accceea vivaldi: 8.1.4087.61 -> 8.1.4087.66
(cherry picked from commit dc146c99d8)
2026-08-16 09:09:15 +00:00
Carl Richard Theodor Schneider
2ca96c19ef rlottie: 0.2-unstable-2026-07-03 -> 0.2-unstable-2026-08-11
(cherry picked from commit 0283bad944)
2026-08-16 08:57:59 +00:00
R. Ryantm
4dd4283c3c fishPlugins.pure: 4.15.0 -> 4.18.0
(cherry picked from commit 2b8b7fa812)
2026-08-16 10:12:50 +02:00
R. Ryantm
6a35eddbbc thunderbird-latest-bin-unwrapped: 153.0.1 -> 153.0.3
(cherry picked from commit 27d23eb607)
2026-08-16 07:26:22 +00:00
nixpkgs-ci[bot]
12d2df701a Merge release-26.05 into staging-nixos-26.05 2026-08-16 00:14:03 +00:00
nixpkgs-ci[bot]
a1a2c2031d Merge release-26.05 into staging-next-26.05 2026-08-16 00:13:01 +00:00
Gaétan Lepage
fd2da4c15b [Backport release-26.05] python3Packages.trafilatura: 2.0.0 -> 2.1.0 (#552645) 2026-08-15 23:17:06 +00:00
Ihar Hrachyshka
cfcaa19e2f [Backport release-26.05] python3Packages.dlinfo: unbreak darwin (#552865) 2026-08-15 23:10:33 +00:00
Gaetan Lepage
0f377af786 python3Packages.trafilatura: 2.0.0 -> 2.1.0
Diff: https://github.com/adbar/trafilatura/compare/v2.0.0...v2.1.0

Changelog: https://github.com/adbar/trafilatura/blob/v2.1.0/HISTORY.md
(cherry picked from commit 7a45c363d5)
2026-08-15 22:54:26 +00:00
Peder Bergebakken Sundt
962eaabef6 [Backport release-26.05] gokrazy: 0-unstable-2026-01-09 -> 0-unstable-2026-07-23 (#548256) 2026-08-15 16:33:40 +00:00
nixpkgs-ci[bot]
35c61c75bb [Backport release-26.05] librewolf-unwrapped: 153.0.3-1 -> 153.0.4-1 (#552894) 2026-08-15 16:26:36 +00:00
thesn10
e37da56733 gpac: 26.02.0 -> 26.07.0
(cherry picked from commit 488aa61815)
2026-08-15 15:10:54 +00:00
Thomas Gerbet
bea2b535ed [Backport release-26.05] fulcio: 1.8.5 -> 1.8.6 (#552997) 2026-08-15 14:51:02 +00:00
Thomas Gerbet
f51b71579e [Backport release-26.05] rekor-cli: 1.5.1 -> 1.5.2 (#552996) 2026-08-15 14:48:55 +00:00
Thomas Gerbet
4e124b8384 [26.05] dracut: fix CVE-2026-15816 (#552368) 2026-08-15 14:43:27 +00:00
R. Ryantm
6e972501f1 fulcio: 1.8.5 -> 1.8.6
(cherry picked from commit ab4d0ac1bc)
2026-08-15 14:38:26 +00:00
R. Ryantm
fad5e1dcc6 rekor-cli: 1.5.1 -> 1.5.2
(cherry picked from commit 1186b0abd0)
2026-08-15 14:37:51 +00:00
nixpkgs-ci[bot]
fb6190b5a8 [Backport release-26.05] ghostfolio: 3.43.0 -> 3.50.0 (#552960) 2026-08-15 12:42:53 +00:00
nixpkgs-ci[bot]
c33b71362c [Backport release-26.05] openlist: 4.2.4 -> 4.2.5 (#552959) 2026-08-15 12:42:52 +00:00
nixpkgs-ci[bot]
ce3ce28614 [Backport release-26.05] acli: 1.3.22-stable -> 1.3.23-stable (#552963) 2026-08-15 12:27:42 +00:00
R. Ryantm
588fcfa25d acli: 1.3.22-stable -> 1.3.23-stable
(cherry picked from commit bac39ad59f)
2026-08-15 12:22:41 +00:00
R. Ryantm
3e1dee931a ghostfolio: 3.43.0 -> 3.50.0
(cherry picked from commit 18c5a9b4a8)
2026-08-15 12:19:52 +00:00
R. Ryantm
e453a86f7c openlist: 4.2.4 -> 4.2.5
(cherry picked from commit 2dd9b87f17)
2026-08-15 12:19:49 +00:00
nixpkgs-ci[bot]
08d159f92f [Backport release-26.05] nezha-agent: 2.3.1 -> 2.3.3 (#552507) 2026-08-15 12:14:21 +00:00
R. Ryantm
214c4062fc garnet: 2.1.1 -> 2.1.4
(cherry picked from commit ea8d5bc3e8)
2026-08-15 11:51:32 +00:00
Gergő Gutyina
b9aab758cd [Backport release-26.05] n8n: 2.32.6 -> 2.33.7 (#552275) 2026-08-15 11:02:33 +00:00
Chris Moultrie
7268f9331c navidromePlugins.listenbrainz-daily-playlist: 5.0.2 -> 6.0.0
(cherry picked from commit ba31f6a0e3)
2026-08-15 10:16:07 +00:00
Ulrik Strid
0e2e9727e5 [Backport release-26.05] msedgedriver: derive maintainers from related package (#552896) 2026-08-15 09:10:29 +00:00
nixpkgs-ci[bot]
c5df947943 [Backport release-26.05] mailpit: 1.30.6 -> 1.30.7 (#552890) 2026-08-15 08:15:31 +00:00
Christoph Hollizeck
5685200458 msedgedriver: derive maintainers from related package
(cherry picked from commit 8dec8c06a9)
2026-08-15 06:33:18 +00:00
Thomas Bemme
01708fbeb4 librewolf-unwrapped: 153.0.3-1 -> 153.0.4-1
(cherry picked from commit c0b889ca22)
2026-08-15 06:26:52 +00:00
R. Ryantm
9734c9d082 mailpit: 1.30.6 -> 1.30.7
(cherry picked from commit 0cd5ed212a)
2026-08-15 05:22:45 +00:00
Ihar Hrachyshka
474c9c3f47 python3Packages.dlinfo: unbreak darwin
(cherry picked from commit 3f90fe0053)
2026-08-15 03:12:32 +00:00
Ihar Hrachyshka
38a515663f gpclient: fix build in darwin sandbox
(cherry picked from commit 8201374f52)
2026-08-15 03:09:41 +00:00
Ihar Hrachyshka
3594775209 gpauth: fix build in darwin sandbox
(cherry picked from commit 9531495b06)
2026-08-15 03:09:40 +00:00
nixpkgs-ci[bot]
fb27b28b2a Merge release-26.05 into staging-nixos-26.05 2026-08-15 00:13:39 +00:00
nixpkgs-ci[bot]
981a5fafe0 Merge release-26.05 into staging-next-26.05 2026-08-15 00:12:43 +00:00
Wolfgang Walther
1fb71ab2be [26.05] postgresql: minor updates August 2026 (#552811) 2026-08-14 22:58:13 +00:00
Wolfgang Walther
354e36e9fd postgresql_18: 18.4 -> 18.6
Release Notes:
https://www.postgresql.org/about/news/postgresql-186-1711-1615-1519-1424-and-19-beta-3-released-3365/

Note: 18.5 was not shipped due to a regression.
(cherry picked from commit 8404bf4895)
2026-08-15 00:18:49 +02:00
Wolfgang Walther
5cf5dcbdff postgresql_17: 17.10 -> 17.11
Release Notes:
https://www.postgresql.org/about/news/postgresql-186-1711-1615-1519-1424-and-19-beta-3-released-3365/

(cherry picked from commit a248c2dd55)
2026-08-15 00:18:47 +02:00
Wolfgang Walther
7d3271b8b4 postgresql_16: 16.14 -> 16.15
Release Notes:
https://www.postgresql.org/about/news/postgresql-186-1711-1615-1519-1424-and-19-beta-3-released-3365/

(cherry picked from commit 78007d9caa)
2026-08-15 00:18:45 +02:00
Wolfgang Walther
e1f5a6dcfd postgresql_15: 15.18 -> 15.19
Release Notes:
https://www.postgresql.org/about/news/postgresql-186-1711-1615-1519-1424-and-19-beta-3-released-3365/

(cherry picked from commit bc40802255)
2026-08-15 00:18:42 +02:00
Wolfgang Walther
a1ffa676ec postgresql_14: 14.23 -> 14.24
Release Notes:
https://www.postgresql.org/about/news/postgresql-186-1711-1615-1519-1424-and-19-beta-3-released-3365/

(cherry picked from commit 25c7c0b6da)
2026-08-15 00:18:38 +02:00
Gaétan Lepage
941144f911 [Backport to release-26.05] codex: 0.133.0 -> 0.146.0 (#552615) 2026-08-14 20:03:07 +00:00
Felix Bargfeldt
3fe07df3b2 [Backport release-26.05] radicle-desktop: 0.14.0 -> 0.15.0 (#552722) 2026-08-14 18:36:26 +00:00
Peder Bergebakken Sundt
e8933cf43b [Backport release-26.05] xwayland-satellite: 0.8.1 -> 0.8.2 (#549311) 2026-08-14 18:24:31 +00:00
Defelo
8f75bfd697 radicle-desktop: 0.14.0 -> 0.15.0
Changelog: https://radicle.network/nodes/seed.radicle.dev/rad:z4D5UCArafTzTQpDZNQRuqswh3ury/tree/CHANGELOG.md
(cherry picked from commit b3e43855f2)
2026-08-14 17:59:59 +00:00
Guillaume Girol
6de8ef858b [26.05] opencloud{,-web}: 7.0.0 -> 7.2.0 (#549569) 2026-08-14 17:44:46 +00:00
Jo
d78b015299 [Backport release-26.05] firefox-{beta,devedition}-unwrapped: 154.0b9 -> 154.0b10 (#552673) 2026-08-14 15:38:33 +00:00
nixpkgs-ci[bot]
9b4c488788 [Backport release-26.05] equibop: 3.2.1 -> 3.2.2 (#552670) 2026-08-14 15:08:31 +00:00
jopejoe1
3c53d70bdb firefox-devedition-unwrapped: 154.0b9 -> 154.0b10
(cherry picked from commit 45f7d9cf82)
2026-08-14 15:05:21 +00:00
jopejoe1
a7b7e5faa3 firefox-beta-unwrapped: 154.0b9 -> 154.0b10
(cherry picked from commit 19ffacf167)
2026-08-14 15:05:20 +00:00
Rexiel Scarlet
770fe309d9 equibop: 3.2.1 -> 3.2.2
(cherry picked from commit 5cc3e6808e)
2026-08-14 14:58:48 +00:00
Peder Bergebakken Sundt
8a36f6afeb [Backport release-26.05] python3Packages.whenever: 0.10.4 -> 0.10.5 (#552658) 2026-08-14 14:46:12 +00:00
Sandro
ef8e29650b [Backport release-26.05] nixos/mautrix-meta: add new instagram mode, fix tests (#551341) 2026-08-14 14:30:27 +00:00
R. Ryantm
2d6708a1fb python3Packages.whenever: 0.10.4 -> 0.10.5
(cherry picked from commit cd99a78cd9)
2026-08-14 13:52:11 +00:00
Sandro Jäckel
875ed9d84d gitea: 1.27.1 -> 1.27.2
Diff: https://github.com/go-gitea/gitea/compare/v1.27.1...v1.27.2

Changelog: https://github.com/go-gitea/gitea/releases/tag/v1.27.2
(cherry picked from commit cfbbc80119)
2026-08-14 13:17:43 +00:00
Rémi NICOLE
7ff4674a68 [Backport release-26.05] nixos/miniflux: fix AppArmor profile (#552423) 2026-08-14 13:16:34 +00:00
Gaetan Lepage
f1c2c2848e python3Packages.courlan: 1.3.2 -> 1.4.0
Changelog: https://github.com/adbar/courlan/blob/v1.4.0/HISTORY.md
(cherry picked from commit f9374fce3c)
2026-08-14 13:04:17 +00:00
Kerstin Humm
d343bd8a91 [Backport release-26.05] mastodon: 4.6.5 -> 4.6.6 (#552623) 2026-08-14 13:03:29 +00:00
Martin Weinelt
845f4e227e Merge remote-tracking branch 'origin/release-26.05' into staging-next-26.05 2026-08-14 14:54:50 +02:00
Francesco Gazzetta
02e08985a2 [Backport release-26.05] domination: 1.3.4 -> 1.3.5 (#552208) 2026-08-14 12:45:00 +00:00
K900
c8e1c4d343 python3Packages.tkinter: apply more hacks to fix tests again
(cherry picked from commit 922901b1b5)
2026-08-14 14:27:15 +02:00
Sandro
2e500957a1 [nixos-26.05] fittrackee: mark as insecure by GHSA-rc38-72q6-pc7w (#551140) 2026-08-14 11:29:43 +00:00
Kerstin Humm
8191a53815 mastodon: 4.6.5 -> 4.6.6
Changelog: https://github.com/mastodon/mastodon/releases/tag/v4.6.6
(cherry picked from commit 3ef7a3f1be)
2026-08-14 11:25:24 +00:00
Chris Moultrie
7feae94c6a fittrackee: mark as insecure by GHSA-rc38-72q6-pc7w 2026-08-14 13:20:46 +02:00
Sandro
d35e2f90da [Backport release-26.05] python3Packages.pypdf: 6.14.2 -> 6.15.0 (#551429) 2026-08-14 11:07:41 +00:00
LarsZauberer
cdbe9e571f codex: 0.145.0 -> 0.146.0
(cherry picked from commit 80909675e4)
2026-08-14 12:39:58 +02:00
Jhony Angulo
b769b19f32 codex: 0.144.4 -> 0.145.0
Remove obsolete WebRTC workaround

(cherry picked from commit fa905e6a72)
2026-08-14 12:39:58 +02:00
R. Ryantm
b32e9fd351 codex: 0.144.1 -> 0.144.4
(cherry picked from commit f361a82ad8)
2026-08-14 12:39:58 +02:00
Jhony Angulo
4dcce686d7 codex: 0.142.5 -> 0.144.1
(cherry picked from commit 4e6c396fbc)
2026-08-14 12:39:58 +02:00
R. Ryantm
d11221ae89 codex: 0.142.3 -> 0.142.5
(cherry picked from commit 38bc3d8f2c)
2026-08-14 12:39:57 +02:00
ultsaza
eebecaba6f codex: 0.142.2 -> 0.142.3
(cherry picked from commit cdc182f67c)
2026-08-14 12:39:57 +02:00
R. Ryantm
fe6ce90b86 codex: 0.142.0 -> 0.142.2
(cherry picked from commit 398e27c348)
2026-08-14 12:39:57 +02:00
Jakob Stender Guldberg
fedb29c13c codex: 0.141.0 -> 0.142.0
(cherry picked from commit 862009492e)
2026-08-14 12:39:57 +02:00
Jhony Elmer Angulo Fabian
295ca5b879 codex: 0.139.0 -> 0.141.0
(cherry picked from commit 00b8fd1da9)
2026-08-14 12:39:57 +02:00
Attila Oláh
16938938ed codex: 0.137.0 -> 0.139.0
Update LTO replacement from "fat" to "thin" to accomodate upstream
change.

Link with explicit lld path on Darwin.

(cherry picked from commit b502e8ddbf)
2026-08-14 12:39:57 +02:00
Marc Scholten
3b9c4bb71e codex: 0.136.0 -> 0.137.0
Assisted-by: Claude Code (Claude Opus 4.8)
(cherry picked from commit 4e336001b4)
2026-08-14 12:39:57 +02:00
Jhony Elmer Angulo Fabian
15971f588e codex: 0.135.0 -> 0.136.0
(cherry picked from commit 4007180d0a)
2026-08-14 12:39:57 +02:00
Jhony Elmer Angulo Fabian
9bc31aac0a codex: 0.134.0 -> 0.135.0
(cherry picked from commit 0d6ed67a90)
2026-08-14 12:39:57 +02:00
Jhony Elmer Angulo Fabian
ee66d2aa7d codex: 0.133.0 -> 0.134.0
(cherry picked from commit 1ae180a454)
2026-08-14 12:36:15 +02:00
Bjørn Forsman
9c4bbd6d6b [Backport release-26.05] prometheus-speedtest-exporter: 1.0.0 -> 1.1.0 (#552591) 2026-08-14 09:09:03 +00:00
R. Ryantm
2849f5553f prometheus-speedtest-exporter: 1.0.0 -> 1.1.0
(cherry picked from commit 6c35fcaa40)
2026-08-14 08:52:40 +00:00
xanderio
101d833204 [release-26.05] libvirt: fix security vulnerabilities (#552326) 2026-08-14 07:49:56 +00:00
K900
694eb45958 [Backport release-26.05] kanidm_1_11: 1.11.0 -> 1.11.1 (#552569) 2026-08-14 07:26:25 +00:00
Tom Herbers
62353f74b1 kanidm_1_11: 1.11.0 -> 1.11.1
Changelog: https://github.com/kanidm/kanidm/releases/tag/v1.11.1
(cherry picked from commit 32edd5f8d3)
2026-08-14 07:21:39 +00:00
Paul Meyer
e5bcd467cf [Backport release-26.05] go_1_27: 1.27rc2 -> 1.27rc3 (#552549) 2026-08-14 07:05:08 +00:00
Paul Meyer
95b632a800 [Backport release-26.05] go_1_25: 1.25.12 -> 1.25.13 (#552550) 2026-08-14 07:04:49 +00:00
Tom Herbers
76bae50072 go_1_25: 1.25.12 -> 1.25.13
Changelog: https://go.dev/doc/devel/release#go1.25.minor
(cherry picked from commit 65a751fbda)
2026-08-14 06:53:49 +00:00
Tom Herbers
37b50c9e12 go_1_27: 1.27rc2 -> 1.27rc3
Announcement: https://groups.google.com/g/golang-announce/c/6X8FgujJjUU
(cherry picked from commit b27a12e4e2)
2026-08-14 06:49:29 +00:00
Vladimír Čunát
caf3d299c8 [Backport staging-next-26.05] go_1_26: 1.26.5 -> 1.26.6 (#552517) 2026-08-14 05:06:17 +00:00
Leon Klingele
a5d32f8c86 go_1_26: 1.26.5 -> 1.26.6
(cherry picked from commit efef4deb45)
2026-08-14 05:01:12 +00:00
OTABI Tomoya
518c5bbfeb [Backport release-26.05] python312: 3.12.13 -> 3.12.14 (#552393) 2026-08-14 04:57:50 +00:00
Vladimír Čunát
e1ad47be2e [Backport staging-next-26.05] openssh, openssh_hpn: 10.4p1, 10.3p1 -> 10.5p1 (#552515) 2026-08-14 04:57:35 +00:00
Morgan Jones
b9a38e5a04 openssh_hpn: 10.3p1 -> 10.5p1
(cherry picked from commit 270ca47688)
2026-08-14 04:49:55 +00:00
Morgan Jones
d6ea029d9c openssh: 10.4p1 -> 10.5p1
(cherry picked from commit b350ef752a)
2026-08-14 04:49:54 +00:00
R. Ryantm
7836af420e nezha-agent: 2.3.1 -> 2.3.3
(cherry picked from commit 96b1e13a76)
2026-08-14 03:10:21 +00:00
K900
89edcbdf47 zfs_unstable: sync backports with zfs_2_4
(cherry picked from commit 0ca42be61b)
2026-08-14 01:34:45 +00:00
K900
598aba2245 zfs_2_4: backport fix for kernel memory corruption
(cherry picked from commit 65f2c6ba8a)
2026-08-14 01:34:40 +00:00
nixpkgs-ci[bot]
016efd924c Merge release-26.05 into staging-nixos-26.05 2026-08-14 00:25:24 +00:00
nixpkgs-ci[bot]
d7ef033e62 Merge release-26.05 into staging-next-26.05 2026-08-14 00:24:33 +00:00
R. Ryantm
394aa214ce pnpm: 11.20.0 -> 11.21.0
(cherry picked from commit 69bdc46745)
2026-08-13 23:38:44 +00:00
nixpkgs-ci[bot]
bf817068f9 [Backport release-26.05] xq-xml: 1.4.0 -> 1.5.0 (#552449) 2026-08-13 22:18:21 +00:00
R. Ryantm
9d1dfa09bc xq-xml: 1.4.0 -> 1.5.0
(cherry picked from commit bbf1ad1197)
2026-08-13 22:03:47 +00:00
Weijia Wang
3a8401f5e6 [Backport release-26.05] wordpress_6_8: 6.8.7 -> 6.8.8, wordpress_6_9: 6.9.6 -> 6.9.7, wordpress_7_0: 7.0.3 -> 7.0.4 (#552425) 2026-08-13 21:46:51 +00:00
Peder Bergebakken Sundt
ad6649968e [Backport release-26.05] fosrl-pangolin: pin nodejs to fix coredump (#552419) 2026-08-13 21:44:31 +00:00
Pavol Rusnak
464e8a4c6c [Backport release-26.05] openocd-adi: 0.12.0-1.3.1-2 -> 0.12.0-1.4.0 (#552426) 2026-08-13 21:43:24 +00:00
Gerhard Schwanzer
360007500c python3Packages.unearth: fix CVE-2026-73030
Apply upstream path normalization and symlink target validation to prevent tar archives from writing outside the extraction directory.

6c78164e7b

Assisted-by: pi coding agent / Mika (OpenAI gpt-5.6-sol)
(cherry picked from commit a34877a5d6)
2026-08-13 23:26:12 +02:00
Peder Bergebakken Sundt
dc8f66a2ba python3Packages.unearth: unbreak with patch from upstream
fixes https://hydra.nixos.org/build/329669767

(cherry picked from commit 605519e2ea)
2026-08-13 23:26:12 +02:00
R. Ryantm
4093de37d6 openocd-adi: 0.12.0-1.3.1-2 -> 0.12.0-1.4.0
(cherry picked from commit ecb3f923f1)
2026-08-13 21:23:22 +00:00
Bart Oostveen
5c976b1024 wordpress_7_0: 7.0.3 -> 7.0.4
Fixes a security vulnerability (privilege escalation).

Fixes: GHSA-8vr3-7mxf-gx8w
Fixes: CVE-2026-65640
Announcement: https://wordpress.org/news/2026/08/wordpress-7-0-4-release/
(cherry picked from commit 3fcbe0d279)
2026-08-13 21:23:20 +00:00
Bart Oostveen
296a032e8d wordpress_6_9: 6.9.6 -> 6.9.7
Fixes a security vulnerability (privilege escalation).

Fixes: GHSA-8vr3-7mxf-gx8w
Fixes: CVE-2026-65640
Announcement: https://wordpress.org/news/2026/08/wordpress-7-0-4-release/
(cherry picked from commit 06d392613a)
2026-08-13 21:23:19 +00:00
Bart Oostveen
b904635f3e wordpress_6_8: 6.8.7 -> 6.8.8
Fixes a security vulnerability (privilege escalation).

Fixes: GHSA-8vr3-7mxf-gx8w
Fixes: CVE-2026-65640
Announcement: https://wordpress.org/news/2026/08/wordpress-7-0-4-release/
(cherry picked from commit 0d7539270d)
2026-08-13 21:23:18 +00:00
Sandro
3b092843f2 [Backport release-26.05] wordpress_7_0: 7.0.2 -> 7.0.3, wordpress_6_9: 6.9.5 -> 6.9.6, wordpress_6_8: 6.8.6 -> 6.8.7, wordpressPackages: update plugins and languages (#550858) 2026-08-13 21:08:14 +00:00
Minijackson
7c3b7ae19c nixosTests.miniflux: Revert "remove apparmor"
This reverts commit 533498ea0a.

(cherry picked from commit 266cedd5f1)
2026-08-13 21:07:21 +00:00
Minijackson
8920474c9e nixos/miniflux: fix AppArmor profile
(cherry picked from commit 72f451bd01)
2026-08-13 21:07:21 +00:00
Jack Rosenberg
9b44e49d0d fosrl-pangolin: pin nodejs to fix coredump
(cherry picked from commit d2c280eeeb)
2026-08-13 20:46:31 +00:00
Robert Helgesson
0b14ae507d [Backport release-26.05] python3Packages.md-toc: fix build (#537552) 2026-08-13 20:34:45 +00:00
Robert Helgesson
e170ab15d3 [Backport release-26.05] recordbox: add gst_all_1.gst-libav (#537460) 2026-08-13 20:33:33 +00:00
nixpkgs-ci[bot]
6ba206edd5 [Backport release-26.05] chiri: 0.9.2 -> 1.0.0 (#552395) 2026-08-13 19:56:54 +00:00
Chloe A
1757cecfa9 chiri: 0.9.2 -> 1.0.0
(cherry picked from commit cbab3010c5)
2026-08-13 19:47:23 +00:00
Martin Weinelt
7e8abe3eb4 python311: 3.11.15 -> 3.11.16
https://docs.python.org/release/3.11.16/whatsnew/changelog.html
(cherry picked from commit 937cdf1063)
2026-08-13 19:45:47 +00:00
Martin Weinelt
6670a73d2b python312: 3.12.13 -> 3.12.14
https://docs.python.org/release/3.12.14/whatsnew/changelog.html
(cherry picked from commit 688b25aceb)
2026-08-13 19:45:46 +00:00
Gerhard Schwanzer
70fadfc15d dracut: fix CVE-2026-15816
Backport the upstream fix to dracut 059 together with its required escape helper. Adapt both patches to the older modules.d/99base path.

Not-cherry-picked-because: release-26.05 uses dracut 059 and requires separate patches
Assisted-by: pi coding agent / Mika (OpenAI gpt-5.6-sol)
2026-08-13 20:14:27 +02:00
Peder Bergebakken Sundt
4a641127ae [release-26.05] python3Packages.whenever: 0.10.0 -> 0.10.4 (#550544) 2026-08-13 17:06:15 +00:00
R. Ryantm
9aedc2cfe6 oscavmgr: 25.2 -> 26.8.0
(cherry picked from commit 185005b130)
2026-08-13 17:02:55 +00:00
nixpkgs-ci[bot]
c23b7b2777 [Backport release-26.05] regclient: 0.11.3 -> 0.11.5 (#552338) 2026-08-13 16:35:16 +00:00
nixpkgs-ci[bot]
8203bb27d1 [Backport release-26.05] buildbox: 1.4.15 -> 1.4.17 (#552314) 2026-08-13 16:07:38 +00:00
Maxime Brunet
dbaa578a08 regclient: 0.11.3 -> 0.11.5
(cherry picked from commit 29a5480f48)
2026-08-13 16:02:10 +00:00
Sandro
5a7702f8ea [Backport release-26.05] python3Packages.udsoncan: init at 1.26.1 (#551580) 2026-08-13 16:01:26 +00:00
Ondrej Mosnáček
64ec292e38 python3packages.udsoncan: fix failing tests in Darwin sandbox
`test/test_connection.py` tries to bind to localhost, which can be
disallowed in the Nix sandbox on Darwin. Add
`__darwinAllowLocalNetworking = true`, which ensures that local
networking is allowed when building the derivation.

(cherry picked from commit 4320f42de1)
2026-08-13 17:40:46 +02:00
Julian Stecklina
9d80977ece libvirt: fix security vulnerabilities
Fixes: CVE-2026-15268
Fixes: CVE-2026-18917
Fixes: CVE-2026-63622
Fixes: CVE-2026-63623
Not-cherry-picked-because: Unstable is already on newer libvirt versions
2026-08-13 17:30:37 +02:00
nixpkgs-ci[bot]
53cb6fa629 [Backport release-26.05] regclient: Remove usage of rec and with (#552303) 2026-08-13 14:51:24 +00:00
Sandro
eb5edb7559 [Backport release-26.05] python3Packages.pygame-ce: 2.5.7 -> 2.5.8 (#552065) 2026-08-13 14:31:11 +00:00
R. Ryantm
93dd59c2c9 buildbox: 1.4.15 -> 1.4.17
(cherry picked from commit 1af0ba5307)
2026-08-13 14:29:31 +00:00
nixpkgs-ci[bot]
ff8722d5e4 [Backport release-26.05] microcode-intel: 20260811 -> 20260812 (#552265) 2026-08-13 13:48:46 +00:00
Maxime Brunet
9f3bec8147 regclient: Remove usage of rec and with
(cherry picked from commit 9587a2345a)
2026-08-13 13:36:28 +00:00
K900
ef9b728603 [Backport release-26.05] samba: 4.23.8 -> 4.23.10 (#550266) 2026-08-13 13:03:57 +00:00
Arsenii Zorin
785367fa91 n8n: 2.32.6 -> 2.33.7
(cherry picked from commit c698d45d41)
2026-08-13 12:27:50 +00:00
Felix Singer
01910c4a14 microcode-intel: 20260811 -> 20260812
Signed-off-by: Felix Singer <felixsinger@posteo.net>
(cherry picked from commit f215f8a8d2)
2026-08-13 11:52:14 +00:00
Thomas Gerbet
ed8301925e [Backport release-26.05] rsyslog: fix CVE-2026-19654 (#552242) 2026-08-13 11:26:04 +00:00
nixpkgs-ci[bot]
9a2fe098f2 [Backport release-26.05] fosrl-pangolin: 1.19.4 -> 1.21.0 (#552237) 2026-08-13 11:07:49 +00:00
Gerhard Schwanzer
d3c01fced9 rsyslog: fix CVE-2026-19654
Guard imptcp regex framing against submitting a negative message length
after oversize-frame recovery.

https://redirect.github.com/rsyslog/rsyslog/security/advisories/GHSA-cj5r-wh2m-7w29
f7f7742282

Assisted-by: pi coding agent / Mika (OpenAI gpt-5.6-sol)
(cherry picked from commit d5f0e62899)
2026-08-13 10:51:24 +00:00
Jack Rosenberg
9c461e1fb9 fosrl-pangolin: 1.19.4 -> 1.21.0
(cherry picked from commit 2c0fe95227)
2026-08-13 10:20:40 +00:00
nixpkgs-ci[bot]
b8c8804a7b [Backport release-26.05] fosrl-pangolin: 1.18.4 -> 1.19.4 (#551915) 2026-08-13 10:07:31 +00:00
Grimmauld
06fd6839aa [Backport release-26.05] freecad: 1.1.1 -> 1.1.3 (#552174) 2026-08-13 09:47:36 +00:00
nixpkgs-ci[bot]
dfe1362628 [Backport release-26.05] fosrl-pangolin: allow edition to be overridden (#552216) 2026-08-13 09:42:04 +00:00
h7x4
c5ad0458d6 [Backport release-26.05] maintainers: shackra -> elzorrorebelde (#551502) 2026-08-13 09:40:18 +00:00
K900
b43e7ce3e5 python3Packages.typing-inspection: skip test broken by Python 3.14.7
(cherry picked from commit 9b55d5e439)
Same with 3.13.15 as well, apparently:
https://hydra.nixos.org/build/342110774/step/2/log/tail
2026-08-13 11:38:10 +02:00
Jenny
6e01e677e8 [26.05] clamav: 1.4.4 -> 1.4.6 (#552218) 2026-08-13 09:34:16 +00:00
Friedrich Altheide
d6cfcc0435 clamav: 1.4.4 -> 1.4.6
Not-cherry-picked-because: 26.05 uses the LTS release of clamav, while unstable uses the latest version
2026-08-13 11:21:04 +02:00
James LaChance
44185a91dc fosrl-pangolin: Allow edition to be specified
Currently the only way to override which "set" is installed is by
replacing strings in the buildPhase with overrideAttrs. This way seems a
bit cleaner, certainly easier and more obvious.

(cherry picked from commit fac55aa3ba)
2026-08-13 09:07:29 +00:00
nixpkgs-ci[bot]
1448fc816c [Backport release-26.05] opengist: 1.15.0 -> 1.15.1 (#551952) 2026-08-13 09:04:22 +00:00
R. Ryantm
9bd28a500f domination: 1.3.4 -> 1.3.5
(cherry picked from commit fc730f1be7)
2026-08-13 08:28:46 +00:00
Thomas Gerbet
e1b12ce52d [Backport release-26.05] rsyslog: 8.2512.0 -> 8.2606.0 (#552165) 2026-08-13 08:16:18 +00:00
Summer Tea
a43caec1cd freecad: add acuteaangle to maintainers
I use this program and am subscribed to releases and security alerts
upstream; I'd be happy to assist in keeping this up to date and tested :)

(cherry picked from commit d9ec8ea40b)
2026-08-13 08:04:18 +00:00
Summer Tea
70d9875ee1 freecad: 1.1.1 -> 1.1.3
(cherry picked from commit 70adbe787e)
2026-08-13 08:04:17 +00:00
Summer Tea
78747c321e freecad: set meta.mainProgram
(cherry picked from commit dfb33d7ba6)
2026-08-13 08:04:17 +00:00
Summer Tea
4df232e986 freecad: add versionCheckHook
(cherry picked from commit 8e41b27566)
2026-08-13 08:04:16 +00:00
R. Ryantm
e4da63833e python3Packages.python-engineio: 4.13.1 -> 4.13.2
(cherry picked from commit 570883644f)
2026-08-13 08:03:50 +00:00
Gerhard Schwanzer
10ecb7d8df rsyslog: 8.2512.0 -> 8.2606.0
Release notes: https://redirect.github.com/rsyslog/rsyslog/releases/tag/v8.2606.0

This release fixes CVE-2026-61548.

Assisted-by: pi coding agent / Mika (OpenAI gpt-5.6-sol)
(cherry picked from commit c1cd70b85a)
2026-08-13 07:40:14 +00:00
nixpkgs-ci[bot]
206d05b405 [Backport release-26.05] golds: 0.8.5 -> 0.8.7 (#551953) 2026-08-13 06:39:45 +00:00
@mjones
8abfc5943a [Backport release-26.05] mattermost: 11.7.7 -> 11.7.8 (#550610) 2026-08-13 06:21:26 +00:00
Bjørn Forsman
2b81c69b32 [Backport release-26.05] tshark: 4.6.7 -> 4.6.8 (#552131) 2026-08-13 06:13:40 +00:00
Ryan Hendrickson
84f53d3011 [Backport release-26.05] jetbrains.rider: 2026.2 -> 2026.2.0.1 (#548125) 2026-08-13 06:08:59 +00:00
nixpkgs-ci[bot]
26c30312e4 [Backport release-26.05] radicle-node{,-unstable}: 1.10.0 -> 1.10.1 (#552066) 2026-08-13 05:57:50 +00:00
R. Ryantm
60e9dc59f5 tshark: 4.6.7 -> 4.6.8
(cherry picked from commit c1c593f2b1)
2026-08-13 05:50:40 +00:00
Vladimír Čunát
3c9d970995 Merge branch 'staging-26.05' into staging-next-26.05 2026-08-13 07:37:45 +02:00
nixpkgs-ci[bot]
631c4749ab [Backport release-26.05] openlinkhub: 0.8.9 -> 0.9.0 (#552109) 2026-08-13 04:35:55 +00:00
Christopher Crouse
8c98ef1b1f openlinkhub: 0.8.9 -> 0.9.0
(cherry picked from commit d368753832)
2026-08-13 03:56:35 +00:00
Fernando Rodrigues
8176b2dea9 [Backport release-26.05] freetube: 0.25.1 -> 0.25.2; pin electron version (#552105) 2026-08-13 03:41:09 +00:00
Jost Alemann
8ea6c8382a freetube: 0.25.1 -> 0.25.2; pin electron version
Changelog:
https://github.com/FreeTubeApp/FreeTube/releases/tag/v0.25.2-beta
Diff:
https://github.com/FreeTubeApp/FreeTube/compare/v0.25.1-beta...v0.25.2-beta

Pinned electron to the same major version as specified in upstreams
pnpm-lock.yaml
(https://github.com/FreeTubeApp/FreeTube/blob/v0.25.2-beta/pnpm-lock.yaml)

(cherry picked from commit 1932e3cb3b)
2026-08-13 03:36:34 +00:00
Fernando Rodrigues
ffe43378ae [Backport release-26.05] freetube: fix Darwin code signing (#551964) 2026-08-13 03:05:08 +00:00
nixpkgs-ci[bot]
cefe507e09 Merge release-26.05 into staging-nixos-26.05 2026-08-13 00:24:26 +00:00
nixpkgs-ci[bot]
f47d69e721 Merge staging-next-26.05 into staging-26.05 2026-08-13 00:23:56 +00:00
nixpkgs-ci[bot]
b97b7ecd27 Merge release-26.05 into staging-next-26.05 2026-08-13 00:23:30 +00:00
Defelo
e09f7bebe0 radicle-node-unstable: 1.10.0 -> 1.10.1
Changelog: https://radicle.network/nodes/seed.radicle.dev/rad:z3gqcJUoA1n9HaHKufZs5FCSGazv5/tree/CHANGELOG.md
(cherry picked from commit b5c4551627)
2026-08-12 23:44:20 +00:00
Defelo
d544362665 radicle-node: 1.10.0 -> 1.10.1
Changelog: https://radicle.network/nodes/seed.radicle.dev/rad:z3gqcJUoA1n9HaHKufZs5FCSGazv5/tree/CHANGELOG.md
(cherry picked from commit aa97414e98)
2026-08-12 23:44:20 +00:00
Peder Bergebakken Sundt
4aa14b2298 python3Packages.pygame-ce: 2.5.7 -> 2.5.8
Changelog: https://github.com/pygame-community/pygame-ce/releases/tag/2.5.8
(cherry picked from commit f02614125e)
2026-08-12 23:41:47 +00:00
Gaétan Lepage
e90e6413ea [Backport release-26.05] cyan-skillfish-governor-smu: init at 0.4.12 (#552060) 2026-08-12 23:25:56 +00:00
liberodark
d6b3ee1b7f cyan-skillfish-governor-smu: init at 0.4.12
(cherry picked from commit 80967a78fa)
2026-08-12 23:16:40 +00:00
Peder Bergebakken Sundt
c285c01f33 [Backport release-26.05] libgsf: 1.14.55 -> 1.14.58 (#548392) 2026-08-12 23:11:41 +00:00
Peder Bergebakken Sundt
e68b0fa3a4 [Backport release-26.05] carps-cups: fix version, homepage, license (#552031) 2026-08-12 22:44:58 +00:00
Emily
4cf5a846f3 [Backport release-26.05] {,ungoogled-}chromium,chromedriver: 151.0.7922.108 -> 151.0.7922.137 (#551986) 2026-08-12 22:20:35 +00:00
Felix Bargfeldt
2f0640d318 [Backport release-26.05] radicle-ci-broker: 0.30.0 -> 0.31.0 (#552045) 2026-08-12 22:10:20 +00:00
R. Ryantm
6e4091a3b6 radicle-ci-broker: 0.30.0 -> 0.31.0
(cherry picked from commit ff6e0f6e94)
2026-08-12 21:52:41 +00:00
UwU 420
e7557380bd nixosTests.opencloud: fix LDAPS and aarch64 WebDriver setup
OpenCloud 7.2 switched the IDM default listener from LDAPS on port 9235 to LDAP on port 9236. Enable the LDAPS listener explicitly because the test configures clients to use it.

Pass geckodriver to Selenium explicitly. Selenium Manager does not support aarch64-linux even though geckodriver is already installed by the test.

Assisted-by: OpenAI Codex (GPT-5)
(cherry picked from commit f54c56f149)
2026-08-12 22:07:03 +02:00
coolcuber
e8135515ee carps-cups: fix version, homepage, license
(cherry picked from commit c3fc4284db)
2026-08-12 20:07:03 +00:00
nixpkgs-ci[bot]
abbffaf878 [Backport release-26.05] freifunk-meshviewer: 13.1.0 -> 13.2.0 (#552025) 2026-08-12 20:01:06 +00:00
R. Ryantm
7fe94e41aa freifunk-meshviewer: 13.1.0 -> 13.2.0
(cherry picked from commit 5f01d23a53)
2026-08-12 19:38:13 +00:00
nixpkgs-ci[bot]
4cd2419312 [Backport release-26.05] go-hass-agent: 14.15.0 -> 14.15.1 (#552018) 2026-08-12 19:34:00 +00:00
R. Ryantm
38e07d9b30 go-hass-agent: 14.15.0 -> 14.15.1
(cherry picked from commit 52d739b263)
2026-08-12 19:04:54 +00:00
nixpkgs-ci[bot]
355c24798c [Backport release-26.05] go-hass-agent: 14.14.1 -> 14.15.0 (#551997) 2026-08-12 18:58:50 +00:00
Gerhard Schwanzer
8308b7cec6 python3Packages.pymdown-extensions: fix security vulnerabilities
Update to 10.21.3 and backport upstream fixes for CVE-2026-61632 and CVE-2026-67422 while retaining the stable 10.x series.

https://redirect.github.com/facelessuser/pymdown-extensions/blob/10.21.3/docs/src/markdown/about/changelog.md

Assisted-by: pi coding agent / Mika (OpenAI gpt-5.6-sol)
Not-cherry-picked-because: master uses breaking 11.x; stable retains 10.x with backported fixes
2026-08-12 20:42:19 +02:00
R. Ryantm
5a14c40bb2 go-hass-agent: 14.14.1 -> 14.15.0
(cherry picked from commit 11c0c89693)
2026-08-12 18:37:52 +00:00
nixpkgs-ci[bot]
04a3babd6d [Backport release-26.05] go-hass-agent: 14.12.0 -> 14.14.1 (#551980) 2026-08-12 18:31:40 +00:00
networkException
d160af909b ungoogled-chromium: 151.0.7922.108-1 -> 151.0.7922.137-1
https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_01815628406.html

This update includes 5 security fixes.

CVEs:
CVE-2026-19556 CVE-2026-19557 CVE-2026-19558 CVE-2026-19559
CVE-2026-19560

(cherry picked from commit 9259541b16)
2026-08-12 18:23:23 +00:00
networkException
4d763be49a chromium,chromedriver: 151.0.7922.108 -> 151.0.7922.137
https://chromereleases.googleblog.com/2026/08/stable-channel-update-for-desktop_01815628406.html

This update includes 5 security fixes.

CVEs:
CVE-2026-19556 CVE-2026-19557 CVE-2026-19558 CVE-2026-19559
CVE-2026-19560

(cherry picked from commit 4097dbc277)
2026-08-12 18:23:22 +00:00
Vladimír Čunát
81812b6774 [26.05] python3Packages.gitpython: 3.1.50 -> 3.1.58 (#548820) 2026-08-12 18:20:48 +00:00
R. Ryantm
6633dd90ce go-hass-agent: 14.12.0 -> 14.14.1
(cherry picked from commit 613167a467)
2026-08-12 18:16:12 +00:00
nixpkgs-ci[bot]
6a45cdfcd6 [Backport release-26.05] go-hass-agent: 14.11.0 -> 14.12.0 (#551963) 2026-08-12 18:07:51 +00:00
nixpkgs-ci[bot]
afd378180b [Backport release-26.05] gocatcli: 1.2.1 -> 1.3.1 (#551960) 2026-08-12 18:07:51 +00:00
nixpkgs-ci[bot]
1ca588fab5 [Backport release-26.05] polychromatic: 0.9.7 -> 0.9.8 (#551958) 2026-08-12 18:07:49 +00:00
nixpkgs-ci[bot]
d4ef4314c4 [Backport release-26.05] sushi: patch to use host gjs, set strictDeps (#547893) 2026-08-12 18:00:06 +00:00
Tyce Herrman
91599af99b freetube: fix Darwin code signing
FreeTube 0.25.1 enables Electron-builder's ad-hoc signing by setting
mac.identity to "-". Electron-builder passes Apple codesign flags that
nixpkgs' sigtool does not support, causing the Darwin build to fail.

Disable Electron-builder signing and let autoSignDarwinBinariesHook add the
required ad-hoc signatures after installation.

Assisted-by: Codex (GPT-5)
(cherry picked from commit fbfce5921b)
2026-08-12 17:57:22 +00:00
R. Ryantm
1c8fc7b49b go-hass-agent: 14.11.0 -> 14.12.0
(cherry picked from commit 87f9dba335)
2026-08-12 17:52:58 +00:00
Peder Bergebakken Sundt
fa53b5de6d [Backport release-26.05] ferdium: 7.1.1 -> 7.1.2 (#551925) 2026-08-12 17:43:18 +00:00
R. Ryantm
ae4fa87806 gocatcli: 1.2.1 -> 1.3.1
(cherry picked from commit bca23cc08d)
2026-08-12 17:41:57 +00:00
Peder Bergebakken Sundt
6ac0c987eb [Backport release-26.05] nixos/boinc: update documentation link (#530087) 2026-08-12 17:40:17 +00:00
Peder Bergebakken Sundt
567f268977 [Backport release-26.05] python3Packages.python-statemachine: 3.2.0 -> 3.2.1 (#550976) 2026-08-12 17:38:33 +00:00
R. Ryantm
b0c077e01d polychromatic: 0.9.7 -> 0.9.8
(cherry picked from commit ffc0540dd4)
2026-08-12 17:35:57 +00:00
Peder Bergebakken Sundt
a5aaf51c92 [Backport release-26.05] archon-lite: 9.4.36 -> 9.5.0 (#550958) 2026-08-12 17:33:38 +00:00
Peder Bergebakken Sundt
37e296751b [26.05] kitty: 0.47.0 -> 0.48.2 (#551420) 2026-08-12 17:28:46 +00:00
R. Ryantm
e3e28c7b0c golds: 0.8.5 -> 0.8.7
(cherry picked from commit 06e908049c)
2026-08-12 17:11:33 +00:00
R. Ryantm
b86b514851 opengist: 1.15.0 -> 1.15.1
(cherry picked from commit 3953abf6d9)
2026-08-12 17:11:09 +00:00
nixpkgs-ci[bot]
33dd95e363 [Backport release-26.05] golds: 0.8.4 -> 0.8.5 (#551936) 2026-08-12 17:03:25 +00:00
R. Ryantm
c3b422514b golds: 0.8.4 -> 0.8.5
(cherry picked from commit 3ea917ad6b)
2026-08-12 16:40:56 +00:00
StepBroBD
ea4e1a0191 [26.05] dokieli: update to 0-unstable-2026-08-10, fix license (#551931) 2026-08-12 16:25:24 +00:00
lucasew
33f0f77673 dokieli: fix license
Source is Apache-2.0; media is CC BY 4.0. MIT was never used.

Assisted-by: Grok (xAI, grok-4.5)
(cherry picked from commit 6e76e11dee)
2026-08-12 13:17:39 -03:00
lucasew
e0800a94b0 dokieli: 0-unstable-2026-05-08 -> 0-unstable-2026-08-10
f037266309...c23e80e4fe

Assisted-by: Grok (xAI, grok-4.5)
(cherry picked from commit 194d2cb355)
2026-08-12 13:17:39 -03:00
phanirithvij
2e6c773e3a dokieli: fix homepage URL redirect
(cherry picked from commit 3fad280091)
2026-08-12 13:17:39 -03:00
Maxim Schuwalow
4a9122c5ea ferdium: 7.1.1 -> 7.1.2
(cherry picked from commit 9df36e71d3)
2026-08-12 15:44:42 +00:00
Jack Rosenberg
307fae0cc8 fosrl-pangolin: 1.18.4 -> 1.19.4
(cherry picked from commit bde45f4b49)
2026-08-12 15:02:59 +00:00
nixpkgs-ci[bot]
e289aca0dd [Backport release-26.05] cargo-shear: 1.13.3 -> 1.13.4 (#551892) 2026-08-12 14:14:31 +00:00
R. Ryantm
29546efbca cargo-shear: 1.13.3 -> 1.13.4
(cherry picked from commit 394932b977)
2026-08-12 13:55:50 +00:00
Peder Bergebakken Sundt
9f78f44a87 [Backport release-26.05] baikal: 0.11.1 -> 0.12.1 (#551702) 2026-08-12 11:48:05 +00:00
Michael Daniels
356e7b5c2f [Backport release-26.05] google-chrome: 151.0.7922.108 -> 151.0.7922.137 (#551817) 2026-08-12 11:19:40 +00:00
R. Ryantm
42134ad62f google-chrome: 151.0.7922.108 -> 151.0.7922.137
(cherry picked from commit 5291ed8f12)
2026-08-12 10:44:05 +00:00
nixpkgs-ci[bot]
e0c84f9d0a [Backport release-26.05] gnome-shell: patch to use host gjs, set strictDeps (#547891) 2026-08-12 09:34:00 +00:00
Weijia Wang
15ffacb0ed gcc16: 16.1.0 -> 16.2.0
(cherry picked from commit 7583ee2e13)
2026-08-12 10:55:54 +02:00
Jonas Heinrich
79372e996f [Backport release-26.05] python3Packages.pymedio: drop (#551778) 2026-08-12 08:21:24 +00:00
Jonas Heinrich
c37755ab3e python3Packages.pymedio: drop
(cherry picked from commit 19f63a1dfc)
2026-08-12 08:09:45 +00:00
Vladimír Čunát
c3f3625b08 [Backport release-26.05] thunderbird-latest-unwrapped: 153.0.1 -> 153.0.2 (#551012) 2026-08-12 07:56:38 +00:00
nixpkgs-ci[bot]
b564088a0a [Backport release-26.05] microcode-intel: 20260512 -> 20260811 (#551740) 2026-08-12 07:24:24 +00:00
Vladimír Čunát
117f72b702 [Backport release-26.05] angie: 1.11.8 -> 1.12.1 (#551756) 2026-08-12 06:52:32 +00:00
Vladimír Čunát
cd5eed6df2 [Backport staging-26.05] gjs: 1.88.0 -> 1.88.1 (#549704) 2026-08-12 06:50:11 +00:00
Vladimír Čunát
e056d3e2a6 [Backport staging-26.05] unbound: 1.25.2 -> 1.26.0 (#550475) 2026-08-12 06:49:10 +00:00
Vladimír Čunát
02fda3ae36 [Backport staging-26.05] libssh2: apply debian patches for CVE-2026-6603[2345] (#550166) 2026-08-12 06:48:48 +00:00
Vladimír Čunát
11c69f23f2 [Backport staging-26.05] libssh: 0.12.1 -> 0.12.2 (#550165) 2026-08-12 06:45:57 +00:00
Vladimír Čunát
c418cc929b [Backport staging-26.05] libxfont_2: 2.0.8 -> 2.0.9 (#550123) 2026-08-12 06:45:27 +00:00
Vladimír Čunát
2903ebdb21 [26.05] python3Packages.cryptography: security patches (#549356) 2026-08-12 06:44:38 +00:00
Vladimír Čunát
2a1b1e76e5 [backport staging-26.05] expat: 2.8.2 -> 2.8.3 (#551651) 2026-08-12 06:41:11 +00:00
Vladimír Čunát
fa0cba2e01 [26.05] python3Packages.datamodel-code-generator: 0.55.0 -> 0.71.0 (#548361) 2026-08-12 06:33:59 +00:00
Vladimír Čunát
0159014715 [26.05] goshs: 2.0.8 -> 2.1.5, fix security issues (#547861) 2026-08-12 06:32:47 +00:00
R. Ryantm
24a8499da5 angie: 1.11.8 -> 1.12.1
(cherry picked from commit 490ce91b62)
2026-08-12 06:31:20 +00:00
R. Ryantm
ce8773e2b2 microcode-intel: 20260512 -> 20260811
(cherry picked from commit 3163e8b153)
2026-08-12 05:25:51 +00:00
Adam C. Stephens
bd06b1f0e1 [release-26.05] matrix-continuwuity: backport SEC26, matrix-continuwuity: backport SEC28 (#551665) 2026-08-12 01:42:07 +00:00
nixpkgs-ci[bot]
5a7b37cee9 [Backport release-26.05] arti: 2.5.0 -> 2.5.1 (#551510) 2026-08-12 01:19:20 +00:00
Philip Johansson
628868905d baikal: 0.11.1 -> 0.12.1
(cherry picked from commit b388e10733)
2026-08-12 01:08:55 +00:00
whispers
2a913d42b6 expat: 2.8.2 -> 2.8.3
changelog: https://github.com/libexpat/libexpat/blob/R_2_8_3/expat/Changes
diff: https://github.com/libexpat/libexpat/compare/R_2_8_2...R_2_8_3

Fixes: CVE-2026-72522
(cherry picked from commit 49076b4ec8)
2026-08-11 20:33:12 -04:00
nixpkgs-ci[bot]
e8f9b6550c Merge release-26.05 into staging-nixos-26.05 2026-08-12 00:23:46 +00:00
nixpkgs-ci[bot]
37dd4fcd6b Merge staging-next-26.05 into staging-26.05 2026-08-12 00:23:17 +00:00
nixpkgs-ci[bot]
8ff7be698a Merge release-26.05 into staging-next-26.05 2026-08-12 00:22:52 +00:00
zowoq
04b552c94e [Backport release-26.05] linuxKernel.kernels.linux_zen: 7.1.5 -> 7.1.8 (#551687) 2026-08-12 00:18:47 +00:00
R. Ryantm
db2a473ec2 linuxKernel.kernels.linux_zen: 7.1.5 -> 7.1.8
(cherry picked from commit aa81653b54)
2026-08-12 00:14:13 +00:00
Bart Oostveen
08b1622eff matrix-continuwuity: backport SEC26
This is a partial backport of https://github.com/NixOS/nixpkgs/pull/551640, backporting a security fix in release v26.7.3 of Continuwuity to v0.5.10.
Original patch: 700fbe472d
See also: https://forgejo.ellis.link/continuwuation/continuwuity/releases/tag/v26.7.3
2026-08-12 01:19:06 +02:00
Bart Oostveen
80dab2a822 matrix-continuwuity: backport SEC28
This is a partial backport of https://github.com/NixOS/nixpkgs/pull/551640, backporting a security fix in release v26.7.3 of Continuwuity to v0.5.10.
Original patch: 49a8f6f53b
See also: https://forgejo.ellis.link/continuwuation/continuwuity/releases/tag/v26.7.3
2026-08-12 01:12:32 +02:00
Nick Cao
7a7eaaf928 [Backport release-26.05] turn-rs: 4.1.4 -> 4.1.5 (#551656) 2026-08-11 22:55:00 +00:00
Jennifer Graul
1ec92d2547 turn-rs: 4.1.4 -> 4.1.5
(cherry picked from commit 6725a87ae3)
2026-08-11 22:41:12 +00:00
Nick Cao
8bf59469f5 [26.05] pcloud: 2.1.0 -> 2.2.1 (#551560) 2026-08-11 22:41:02 +00:00
Weijia Wang
423a63aea0 [Backport release-26.05] treewide: fix eval on unsupported systems Part 2 (#551622) 2026-08-11 21:46:00 +00:00
Cosima Neidahl
eb61293327 [Backport release-26.05] palemoon-bin: 34.3.1 -> 34.3.2 (#551601) 2026-08-11 21:21:07 +00:00
Weijia Wang
2467c8c9a3 [Backport release-26.05] bind: fix riscv64-linux build (#551623) 2026-08-11 21:19:27 +00:00
liberodark
f9a86257f3 bind: fix riscv64-linux build
(cherry picked from commit 4b39738cc4)
2026-08-11 21:03:07 +00:00
liberodark
dbac8e51ca tritonclient: fix eval on unsupported systems
(cherry picked from commit 8d06d746e2)
2026-08-11 21:00:48 +00:00
liberodark
09c6bdfcc6 pgsql-tools: fix eval on unsupported systems
(cherry picked from commit 443c374ee1)
2026-08-11 21:00:48 +00:00
liberodark
f8800d3906 swift: fix eval on unsupported systems
(cherry picked from commit 7a39ad3c85)
2026-08-11 21:00:46 +00:00
liberodark
352750ea17 ovmf: fix eval on unsupported systems
(cherry picked from commit 2df5c9aeae)
2026-08-11 21:00:45 +00:00
liberodark
c7be74d1fd sunshine: fix eval on unsupported systems
(cherry picked from commit 535a749b97)
2026-08-11 21:00:45 +00:00
liberodark
e7a7e167ed furmark: fix eval on unsupported systems
(cherry picked from commit 1e5a4ba362)
2026-08-11 21:00:44 +00:00
Weijia Wang
e54745ad15 [Backport release-26.05] prl-tools: 26.4.0-57513 -> 26.4.1-57516 (#551609) 2026-08-11 20:53:47 +00:00
R. Ryantm
0276525add prl-tools: 26.4.0-57513 -> 26.4.1-57516
(cherry picked from commit 6353cafd49)
2026-08-11 20:47:02 +00:00
Jo
9537cee462 [Backport release-26.05] firefox-{beta,devedition}-unwrapped: 154.0b8 -> 154.0b9 (#551592) 2026-08-11 20:41:43 +00:00
R. Ryantm
d4651aefb9 palemoon-bin: 34.3.1 -> 34.3.2
(cherry picked from commit 10f424263e)
2026-08-11 20:12:58 +00:00
jopejoe1
b002c85a5f firefox-devedition-unwrapped: 154.0b8 -> 154.0b9
(cherry picked from commit 90ad47a34b)
2026-08-11 19:49:55 +00:00
jopejoe1
8b9dd666bc firefox-beta-unwrapped: 154.0b8 -> 154.0b9
(cherry picked from commit 6758a488b2)
2026-08-11 19:49:54 +00:00
dotlambda
53f9fac44b [Backport release-26.05] postfix: 3.11.5 -> 3.11.6 (#551582) 2026-08-11 19:19:31 +00:00
Robert Schütz
ed83849fe5 postfix: 3.11.5 -> 3.11.6
Changelog: https://www.postfix.org/announcements/postfix-3.11.6.html
(cherry picked from commit 6da42faf94)
2026-08-11 19:13:05 +00:00
Ondrej Mosnáček
fa044a5fe8 python3Packages.udsoncan: init at 1.26.1
(cherry picked from commit d011df12cb)
2026-08-11 18:57:18 +00:00
Ondrej Mosnáček
4fd13173ef maintainers: add WOnder93
(cherry picked from commit 3bd3b595b4)
2026-08-11 18:57:17 +00:00
Martin Weinelt
896490c2f5 [Backport release-26.05] Firefox: 153.0.3 -> 153.0.4 (#551574) 2026-08-11 18:46:59 +00:00
Martin Weinelt
101826571b firefox-bin-unwrapped: 153.0.3 -> 153.0.4
https://www.firefox.com/en-US/firefox/153.0.4/releasenotes/
(cherry picked from commit b582e2757d)
2026-08-11 18:41:17 +00:00
Martin Weinelt
2d088f14e4 firefox-unwrapped: 153.0.3 -> 153.0.4
https://www.firefox.com/en-US/firefox/153.0.4/releasenotes/
(cherry picked from commit 4c1cb283d8)
2026-08-11 18:41:16 +00:00
Nadir Ishiguro
e13e07938c pcloud: 2.1.1 -> 2.2.1
upstream changelog:

  - This update adds context menu integration for Nautilus, Caja, Nemo, Dolphin and Thunar file
    managers. We've also fixed an issue where the AppImage failed to launch after being renamed,
    along with additional improvements for a smoother experience.

(cherry picked from commit 211dfafe1a)
2026-08-11 19:35:56 +02:00
Nadir Ishiguro
c58c9f67a9 pcloud: 2.1.0 -> 2.1.1
Upstream changelog:

> 2.1.1(03/06/2026)
> This update improves sync responsiveness, Crypto folder reliability, and recovery when the pCloud Drive mount point is unavailable. New 'Enable hardware acceleration' option in Settings is added to use your graphics card for better performance.
Requires Ubuntu 20.04, Mint 20, Fedora 33, Arch Linux, Debian 11 or later derivative distributions.

(cherry picked from commit 2de6e48317)
2026-08-11 19:35:50 +02:00
nixpkgs-ci[bot]
b194e9c342 [Backport release-26.05] morgen: 4.0.4 -> 4.0.6 (#551543) 2026-08-11 16:19:22 +00:00
R. Ryantm
bf586a9a67 morgen: 4.0.4 -> 4.0.6
(cherry picked from commit 7dbab785d3)
2026-08-11 15:58:20 +00:00
R. Ryantm
e47144b3c2 docker: 29.6.2 -> 29.7.2
(cherry picked from commit 33bf23c59a)
2026-08-11 15:48:01 +00:00
Fabián Heredia Montiel
f09cd53ad9 [26.05] docker-compose: 5.1.4 -> 5.4.0 (#549277) 2026-08-11 15:11:03 +00:00
LIN, Jian
e2723e0990 [Backport release-26.05] emacs30, emacs30-macport: backport ACE mitigation for bug#80574 (#551517) 2026-08-11 14:51:33 +00:00
Lin Jian
70b2bcf4e0 emacs30, emacs30-macport: backport ACE mitigation for bug#80574
https://eshelyaron.com/posts/2026-08-06-emacs-arbitrary-code-execution-returns.html
(cherry picked from commit 6b7b2ab4f5)
2026-08-11 14:46:54 +00:00
R. Ryantm
c1f863178c arti: 2.5.0 -> 2.5.1
(cherry picked from commit c2245c9861)
2026-08-11 14:22:00 +00:00
Sizhe Zhao
4168abc3d2 [26.05] sing-box: 1.13.16 -> 1.13.18 (#551413) 2026-08-11 14:08:08 +00:00
Jorge Javier Araya Navarro
50a61ade1b maintainers: shackra -> elzorrorebelde
I changed the name of my GitHub account, also renamed any references
used.

(cherry picked from commit b792f62e04)
2026-08-11 13:59:21 +00:00
xanderio
2e49fce950 [release-26.05] libvirt: fix CVE-2026-61478 and CVE-2026-61477 (#551428) 2026-08-11 10:40:55 +00:00
nixpkgs-ci[bot]
e907f9f15e [Backport release-26.05] nezha: 2.3.0 -> 2.3.2 (#551416) 2026-08-11 10:35:42 +00:00
Thomas Gerbet
547ae1807b [Backport release-26.05] ladybird: mark vulnerable to CVE-2026-58592 (#551423) 2026-08-11 10:34:36 +00:00
Gerhard Schwanzer
04cbd0d0c5 python3Packages.pypdf: 6.14.2 -> 6.15.0
https://redirect.github.com/py-pdf/pypdf/releases/tag/6.15.0

This release bounds /ToUnicode token parsing and CID width expansion for malformed PDFs.

Assisted-by: pi coding agent / Mika (OpenAI gpt-5.6-sol)
(cherry picked from commit 33932a69a4)
2026-08-11 10:14:53 +00:00
Julian Stecklina
fb45cd4fcc libvirt: fix CVE-2026-61478 and CVE-2026-61477
These patches are from the upcoming 12.6 release of libvirt and apply
cleanly.

Fixes: CVE-2026-61478
Fixes: CVE-2026-61477
Not-cherry-picked-because: Unstable is already on newer libvirt versions
2026-08-11 12:13:21 +02:00
Thomas Gerbet
e0b5f49f51 ladybird: mark vulnerable to CVE-2026-58592
Does not look like it was fixed upstream.
We also appears to be missing proper maintenance within nixpkgs,
the last update has not been backported to 26.05.

Closes #538210

(cherry picked from commit c3e99a04af)
2026-08-11 09:48:57 +00:00
isabel
7181f3b688 [Backport release-26.05] python3Packages.exllamav3: 1.3.0 -> 1.4.1; tabbyapi: 0-unstable-2026-07-31 -> 0-unstable-2026-08-08 (#551249) 2026-08-11 09:09:30 +00:00
R. Ryantm
5f92ca5e8e nezha: 2.3.0 -> 2.3.2
(cherry picked from commit a2403e3f3c)
2026-08-11 09:03:48 +00:00
leiserfg
9f630fbaca kitty: 0.48.1 -> 0.48.2
(cherry picked from commit 774a69f538)
2026-08-11 10:55:55 +02:00
Jost Alemann
02623c6ba4 kitty: 0.48.0 -> 0.48.1
Changelog:
https://sw.kovidgoyal.net/kitty/changelog/#detailed-list-of-changes
Diff: https://github.com/kovidgoyal/kitty/compare/v0.48.0...v0.48.1
(cherry picked from commit e2a84e800f)
2026-08-11 10:55:55 +02:00
Ayush Thoren
2b281d308c kitty: fix libxkbcommon runtime lookup
(cherry picked from commit ec5218c4b6)
2026-08-11 10:55:54 +02:00
Jost Alemann
74bc45357d kitty: 0.47.4 -> 0.48.0
Changelog:
https://sw.kovidgoyal.net/kitty/changelog/#detailed-list-of-changes
Diff: https://github.com/kovidgoyal/kitty/compare/v0.47.4...v0.48.0
(cherry picked from commit f0d0d16840)
2026-08-11 10:55:54 +02:00
leiserfg
4c0b00e6f8 kitty: 0.47.2->0.47.4
(cherry picked from commit 363fc23dd3)
2026-08-11 10:55:54 +02:00
n3tcat
29ca57701f kitty: 0.47.1 -> 0.47.2
(cherry picked from commit b317380e61)
2026-08-11 10:55:54 +02:00
Jost Alemann
9bf55f0336 kitty: 0.47.0 -> 0.47.1
Changelog:
https://sw.kovidgoyal.net/kitty/changelog/#detailed-list-of-changes
Diff: https://github.com/kovidgoyal/kitty/compare/v0.47.0...v0.47.1
(cherry picked from commit 56e52bc01e)
2026-08-11 10:55:54 +02:00
Moraxyc
43cbfa684c sing-box: 1.13.16 -> 1.13.18 2026-08-11 16:30:12 +08:00
taku0
10c9d6d779 [Backport release-26.05] thunderbird-esr-bin-unwrapped: 153.0.1esr -> 153.0.2esr (#550986) 2026-08-11 08:20:00 +00:00
Masum Reza
6624883343 [Backport staging-nixos-26.05] bcachefs-tools: fix riscv build (#551379) 2026-08-11 13:41:29 +05:30
Jenny
249fa2c10c [Backport release-26.05] turn-rs: 4.1.3 -> 4.1.4 (#551374) 2026-08-11 07:54:25 +00:00
Jonas Heinrich
c28688e5dd bcachefs-tools: fix riscv build
(cherry picked from commit 4315f4c998)
2026-08-11 07:52:31 +00:00
R. Ryantm
c4f7b229e9 turn-rs: 4.1.3 -> 4.1.4
(cherry picked from commit b8b623ae1d)
2026-08-11 07:36:03 +00:00
Rémi NICOLE
d2b95c2a1b [Backport release-26.05] gelly: 1.9.5 -> 1.9.7 (#551103) 2026-08-11 07:33:07 +00:00
Jan Tojnar
70cc4559b1 [Backport release-26.05] gnomeExtensions.arcmenu: 67.2 -> 69.2 (#533276) 2026-08-11 06:33:54 +00:00
eymeric
38535a20d9 nixos/tests/matrix/mautrix-meta: fix tests for newer mautrix versions
Co-authored-by: Gemini CLI
(cherry picked from commit 61c0c7acdb)
2026-08-11 03:56:12 +00:00
eymeric
d9e24e7d7d nixos/mautrix-meta: update settings description example generation method
(cherry picked from commit a6a86e4929)
2026-08-11 03:56:11 +00:00
eymeric
c32c500f42 nixos/mautrix-meta: automatically select the right binary based on mode instagram or others
(cherry picked from commit 0ca90c55e0)
2026-08-11 03:56:11 +00:00
eymeric
fe3267a102 mautrix-meta: add mautrix-instagram binary build
(cherry picked from commit 855c958171)
2026-08-11 03:56:11 +00:00
Matt Sturgeon
60109f6415 [Backport release-26.05] ci/github-script: prep for typescript, convert check-target-branch (#551319) 2026-08-11 01:54:36 +01:00
Michael Daniels
e23bb18fa9 ci/github-script/check-target-branch: convert to TypeScript
Only doing this one for now as a proof-of-concept.

(cherry picked from commit 2496d47b76)
2026-08-11 00:45:06 +00:00
Michael Daniels
8e8424fbf0 ci/github-script: check types by default
(cherry picked from commit 7045e3afe1)
2026-08-11 00:45:05 +00:00
Michael Daniels
e34052828c ci/github-script/run: correct variable name
(cherry picked from commit 578ac00958)
2026-08-11 00:45:04 +00:00
Michael Daniels
ca4cf44ba5 ci/github-script/.gitignore: add comparison artifact
Needed by check-target-branch.

(cherry picked from commit 78df5b944f)
2026-08-11 00:45:04 +00:00
Matt Sturgeon
97c27c3c5b editorconfig: indent TS the same as JS
(cherry picked from commit ca4d49e1dd)
2026-08-11 00:45:04 +00:00
Andrew Benbow
52e916f7cc drupal: 11.3.13 -> 11.3.14
Not-cherry-picked-because: there is no commit to the master branch for this particular version, which contains security updates to the 11.3.x series.
2026-08-11 12:42:23 +12:00
Matt Sturgeon
2b7f2ed335 [Backport release-26.05] jetbrains.*: Make libraries for jcef plugin available (#551316) 2026-08-11 00:37:44 +00:00
Marco "Capypara" Köpcke
6781c2fe92 jetbrains.*: switch binary IDEs to use jdk-no-jcef
(cherry picked from commit eadd6f50ff)
2026-08-11 00:33:18 +00:00
Herman Fries
075a746c88 jetbrains.*: Make libraries for jcef plugin available
Currenly fails with Rider.Backend: error while loading
  shared libraries: libstdc++.so.6: cannot open shared object file: No
such file or directory

(cherry picked from commit e9deeb1095)
2026-08-11 00:33:17 +00:00
nixpkgs-ci[bot]
1ec329a440 Merge release-26.05 into staging-nixos-26.05 2026-08-11 00:19:20 +00:00
nixpkgs-ci[bot]
a2dad969ef Merge staging-next-26.05 into staging-26.05 2026-08-11 00:18:57 +00:00
nixpkgs-ci[bot]
a2fd2a7c3d Merge release-26.05 into staging-next-26.05 2026-08-11 00:18:30 +00:00
Gergő Gutyina
b7b64e4e5a [26.05] bitwarden-desktop: 2026.5.0 -> 2026.7.0 (#550426) 2026-08-10 23:56:19 +00:00
Matt Sturgeon
4698645b40 [Backport release-26.05] .github/actions/checkout: bump actions/github-script from 8 to 9 (#551299) 2026-08-10 23:24:55 +00:00
Michael Daniels
749a05e998 .github/dependabot.yml: run on .github/actions/*/* too
Co-authored-by: Matt Sturgeon <matt@sturgeon.me.uk>
(cherry picked from commit d09d53e1c5)
2026-08-10 23:18:42 +00:00
Michael Daniels
b4627648ae .github/actions/checkout: bump actions/github-script from 8 to 9
(cherry picked from commit 632c05cddc)
2026-08-10 23:18:42 +00:00
Michael Daniels
5980a8c0b3 [Backport release-26.05] nixos/technitium-dns-server: set WorkingDirectory on systemd service (#550847) 2026-08-10 23:11:51 +00:00
Matt Sturgeon
a911bc704f [Backport release-26.05] nixos/misskey: fixes for attrTag submodule docs (#551179) 2026-08-10 21:31:30 +00:00
Silvan Mosberger
b43b6e1be7 [Backport release-26.05] maintainers/github-teams.json: Automated sync (#551268) 2026-08-10 21:00:04 +00:00
nixpkgs-ci[bot]
42aa7305e1 maintainers/github-teams.json: Automated sync
(cherry picked from commit 140a0b59a2)
2026-08-10 20:54:07 +00:00
K900
cda8abb45d [Backport release-26.05] linux-firmware: 20260622 -> 20260810 (#551256) 2026-08-10 20:47:44 +00:00
K900
3043fb8cf4 linux-firmware: 20260622 -> 20260810
Diff: 20260622...20260810
(cherry picked from commit 08beff6c9f)
2026-08-10 20:20:07 +00:00
Nick Cao
9ba7ebb150 [Backport release-26.05] matrix-authentication-service: 1.21.0 -> 1.22.0 (#550437) 2026-08-10 20:09:47 +00:00
BatteredBunny
b4146a228d tabbyapi: 0-unstable-2026-07-31 -> 0-unstable-2026-08-08
(cherry picked from commit 1a16ce8a7b)
2026-08-10 19:57:29 +00:00
BatteredBunny
26c49a1f35 python3Packages.exllamav3: 1.3.0 -> 1.4.1
(cherry picked from commit 6b2329f994)
2026-08-10 19:57:28 +00:00
Aaron Andersen
f76518bbed [Backport release-26.05] github-runner: 2.335.1 -> 2.336. 0 (#551102) 2026-08-10 17:05:20 +00:00
d18g
1e96e496b2 nixos/misskey: fixes for attrTag submodule docs
Fix the declaration location of attributes of submodules of attrTag

(cherry picked from commit f3c771e978)
2026-08-10 15:36:45 +00:00
Maximilian Bosch
e200bf997c [Backport release-26.05] nextcloudPackages: update apps (#548059) 2026-08-10 15:28:01 +00:00
nixpkgs-ci[bot]
b67a62f1d7 [Backport release-26.05] forge-mtg: 2.0.13 -> 2.0.14 (#551172) 2026-08-10 15:21:52 +00:00
R. Ryantm
3b08159f45 forge-mtg: 2.0.13 -> 2.0.14
(cherry picked from commit b663521bd7)
2026-08-10 15:16:29 +00:00
nixpkgs-ci[bot]
4014d8bb31 [Backport release-26.05] necesse-server: 1.3.1-24494674 -> 1.3.2-24574169 (#551138) 2026-08-10 13:13:09 +00:00
R. Ryantm
70e75b3856 necesse-server: 1.3.1-24494674 -> 1.3.2-24574169
(cherry picked from commit 00874f5801)
2026-08-10 13:07:43 +00:00
zowoq
36fe352db1 [Backport release-26.05] linux_xanmod, linux_xanmod_latest: 2026-08-10 (#551127) 2026-08-10 12:44:33 +00:00
eljamm
77c78e74fb linux_xanmod_latest: 7.1.6 -> 7.1.8
- Changelog: https://dl.xanmod.org/changelog/7.1/ChangeLog-7.1.8-xanmod1.gz
- Diff: https://gitlab.com/xanmod/linux/-/compare/7.1.6-xanmod1..7.1.8-xanmod1?from_project_id=51590166

(cherry picked from commit 76c75b4d67)
2026-08-10 12:36:22 +00:00
eljamm
3d9ba17bdf linux_xanmod: 6.18.42 -> 6.18.44
- Changelog: https://dl.xanmod.org/changelog/6.18/ChangeLog-6.18.44-xanmod1.gz
- Diff: https://gitlab.com/xanmod/linux/-/compare/6.18.42-xanmod1..6.18.44-xanmod1?from_project_id=51590166

(cherry picked from commit 6832340e94)
2026-08-10 12:36:21 +00:00
R. Ryantm
71cfc7651f gelly: 1.9.5 -> 1.9.7
(cherry picked from commit 7844d6384d)
2026-08-10 11:33:52 +00:00
Oliver Schmidt
da289955fc github-runner: add myself as maintainer
While I am not that much knowleadgeable about the dotnet ecosystem, It
was sufficient enough for me to coordinate the last few release bumps.
Being a maintainer will simplify backporting release bumps to older
releases with the merge-bot.

(cherry picked from commit 14e4152d00)
2026-08-10 11:30:46 +00:00
Oliver Schmidt
2801ceb898 github-runner: 2.335.1 -> 2.336.0
Changelog: https://github.com/actions/runner/releases/tag/v2.336.0
(cherry picked from commit 039812311a)
2026-08-10 11:30:45 +00:00
isabel
a34d696155 [26.05] nixos/feishin: init module (#548895) 2026-08-10 10:14:53 +00:00
nixpkgs-ci[bot]
60a3852950 [Backport release-26.05] matrix-tuwunel: 1.8.2 -> 1.8.3 (#551040) 2026-08-10 09:51:29 +00:00
nixpkgs-ci[bot]
68214ca141 [Backport release-26.05] blackfire: 2026.7.0 -> 2026.8.0 (#551060) 2026-08-10 09:09:03 +00:00
R. Ryantm
161eddce84 blackfire: 2026.7.0 -> 2026.8.0
(cherry picked from commit d77378d8bb)
2026-08-10 09:03:55 +00:00
Weijia Wang
9b3be4b763 [Backport release-26.05] zulu: fix eval on unsupported systems (#551053) 2026-08-10 08:55:51 +00:00
liberodark
1690636bbe zulu: fix eval on unsupported systems
(cherry picked from commit 5e4b381048)
2026-08-10 08:45:48 +00:00
R. Ryantm
3f4b234187 matrix-tuwunel: 1.8.2 -> 1.8.3
(cherry picked from commit 8cc04b1b02)
2026-08-10 08:04:05 +00:00
R. Ryantm
0bb45013a7 thunderbird-latest-unwrapped: 153.0.1 -> 153.0.2
(cherry picked from commit 9376a7b529)
2026-08-10 05:39:07 +00:00
nixpkgs-ci[bot]
7a4b7d5533 [Backport release-26.05] jackett: 0.24.2288 -> 0.24.2335 (#550736) 2026-08-10 05:29:21 +00:00
nixpkgs-ci[bot]
ebc1aceb96 [Backport release-26.05] sonarr: 4.0.18.2971 -> 4.0.19.2979 (#550931) 2026-08-10 05:29:20 +00:00
R. Ryantm
2c942a8dad thunderbird-esr-bin-unwrapped: 153.0.1esr -> 153.0.2esr
(cherry picked from commit 9fcaec41fd)
2026-08-10 02:45:01 +00:00
R. Ryantm
4ca553fdfe python3Packages.python-statemachine: 3.2.0 -> 3.2.1
(cherry picked from commit d4b596aab6)
2026-08-10 01:58:04 +00:00
sophiebsw
ae1fe028e4 archon-lite: 9.4.36 -> 9.5.0
(cherry picked from commit 85615ea409)
2026-08-09 17:44:16 -07:00
nixpkgs-ci[bot]
c4255c5010 Merge release-26.05 into staging-nixos-26.05 2026-08-10 00:20:18 +00:00
nixpkgs-ci[bot]
b6bde2736c Merge staging-next-26.05 into staging-26.05 2026-08-10 00:19:55 +00:00
nixpkgs-ci[bot]
22c4541363 Merge release-26.05 into staging-next-26.05 2026-08-10 00:19:29 +00:00
zowoq
8ec2a51e6d staging-nixos-26.05 merge for 2026-08-09 (#550930) 2026-08-09 23:41:58 +00:00
zowoq
8abef1c5b9 [Backport staging-nixos-26.05] kernel updates for 2026-08-09 (#550939) 2026-08-09 23:33:27 +00:00
zowoq
12b1837faf linux_6_6: 6.6.150 -> 6.6.151
(cherry picked from commit ed11f2c00d)
2026-08-09 23:25:52 +00:00
zowoq
a806b24965 linux_6_12: 6.12.102 -> 6.12.103
(cherry picked from commit 2226b96ba4)
2026-08-09 23:25:52 +00:00
zowoq
5057e4c811 linux_6_18: 6.18.43 -> 6.18.44
(cherry picked from commit 510f4c4b5c)
2026-08-09 23:25:51 +00:00
zowoq
0e4315ce43 linux_7_1: 7.1.7 -> 7.1.8
(cherry picked from commit 256b6f72ed)
2026-08-09 23:25:50 +00:00
zowoq
8c242464b0 linux_testing: 7.2-rc6 -> 7.2-rc7
(cherry picked from commit 63e225c444)
2026-08-09 23:25:49 +00:00
nyanloutre
6049ede12a sonarr: 4.0.18.2971 -> 4.0.19.2979
(cherry picked from commit f688bfedb9)
2026-08-09 22:55:37 +00:00
dram
fcb8fcd6bf [Backport release-26.05] obsidian: fix build on darwin (#550136) 2026-08-09 22:06:10 +00:00
Bjørn Forsman
4f3e097b1a [Backport release-26.05] gnome: 50.3 -> 50.4 (#550867) 2026-08-09 21:22:24 +00:00
Yueh-Shun Li
f76e6ea621 [Backport release-26.05] python3Packages.plover: fix plover_build_utils for GUI plugins (#532085) 2026-08-09 20:18:28 +00:00
Thomas Gerbet
fab0f2095d [Backport release-26.05] keycloak: 26.7.0 -> 26.7.1 (#550806) 2026-08-09 19:40:38 +00:00
Thomas Gerbet
1849af2f45 [26.05] rubyPackages.puma: 7.1.0 -> 7.2.1 (#550788) 2026-08-09 19:30:22 +00:00
Tom Hunze
3a31dd9ea2 mutter: 50.3 -> 50.4
https://gitlab.gnome.org/GNOME/mutter/-/compare/50.3...50.4
(cherry picked from commit c2a0a3ea9b)
2026-08-09 18:23:59 +00:00
Tom Hunze
df616f9ff9 libshumate: 1.6.2 -> 1.6.3
https://gitlab.gnome.org/GNOME/libshumate/-/compare/1.6.2...1.6.3
(cherry picked from commit 427f4afb49)
2026-08-09 18:23:58 +00:00
Tom Hunze
f3c2899745 gvfs: 1.60.1 -> 1.60.2
https://gitlab.gnome.org/GNOME/gvfs/-/compare/1.60.1...1.60.2
(cherry picked from commit 72f9c0ee7a)
2026-08-09 18:23:58 +00:00
Tom Hunze
ac8b2ce976 gnome-user-docs: 50.2 -> 50.4
https://gitlab.gnome.org/GNOME/gnome-user-docs/-/compare/50.2...50.4
(cherry picked from commit e5de747a12)
2026-08-09 18:23:57 +00:00
Tom Hunze
9152a598f2 gnome-shell: 50.3 -> 50.4
https://gitlab.gnome.org/GNOME/gnome-shell/-/compare/50.3...50.4
(cherry picked from commit 99853d1a58)
2026-08-09 18:23:57 +00:00
Tom Hunze
5838863b01 gnome-maps: 50.2 -> 50.3
https://gitlab.gnome.org/GNOME/gnome-maps/-/compare/50.2...50.3
(cherry picked from commit bf330246df)
2026-08-09 18:23:57 +00:00
Tom Hunze
b1c1414564 gnome-initial-setup: 50.0 -> 50.1
https://gitlab.gnome.org/GNOME/gnome-initial-setup/-/compare/50.0...50.1
(cherry picked from commit 3e9fa4911a)
2026-08-09 18:23:56 +00:00
Tom Hunze
b2062cd752 gnome-control-center: 50.3 -> 50.4
https://gitlab.gnome.org/GNOME/gnome-control-center/-/compare/50.3...50.4
(cherry picked from commit 34c4f17ab7)
2026-08-09 18:23:55 +00:00
Tom Hunze
2f396e43ee gexiv2_0_16: 0.16.1 -> 0.16.2
https://gitlab.gnome.org/GNOME/gexiv2/-/compare/0.16.1...0.16.2
(cherry picked from commit 6ce4213ebd)
2026-08-09 18:23:55 +00:00
Tom Hunze
33f260ee26 gdm: 50.1 -> 50.2
https://gitlab.gnome.org/GNOME/gdm/-/compare/50.1...50.2
(cherry picked from commit 949db84c7c)
2026-08-09 18:23:55 +00:00
Bart Oostveen
dee2f938fc wordpressPackages: update plugins and languages
Closes: https://github.com/NixOS/nixpkgs/issues/532248
Closes: https://github.com/NixOS/nixpkgs/issues/527024
Closes: https://github.com/NixOS/nixpkgs/issues/532252
Closes: https://github.com/NixOS/nixpkgs/issues/500147
Fixes: GHSA-hmqg-cxww-wqhq
Fixes: GHSA-3pwp-g2mj-5p3v
See also: https://github.com/WordPress/gutenberg/pull/81279

(cherry picked from commit 60574be3fa)
2026-08-09 17:43:22 +00:00
Bart Oostveen
bb29696e83 wordpress_7_0: 7.0.2 -> 7.0.3
Fixes (high-severity) security vulnerabilities, of which a priviledge escalation and a multitude of XSS vulnerabilities.

Fixes: GHSA-52p2-r8wf-jcrf
Fixes: CVE-2026-64638
Announcement: https://wordpress.org/news/2026/08/wordpress-7-0-3-release/
(cherry picked from commit 73ce0cf011)
2026-08-09 17:43:22 +00:00
Bart Oostveen
462ea1598e wordpress_6_9: 6.9.5 -> 6.9.6
Fixes (high-severity) security vulnerabilities, of which a priviledge escalation and a multitude of XSS vulnerabilities.

Fixes: GHSA-52p2-r8wf-jcrf
Fixes: CVE-2026-64638
Announcement: https://wordpress.org/news/2026/08/wordpress-7-0-3-release/
(cherry picked from commit a4ad8440f6)
2026-08-09 17:43:22 +00:00
Bart Oostveen
ddf5392b30 wordpress_6_8: 6.8.6 -> 6.8.7
Fixes (high-severity) security vulnerabilities, of which a priviledge escalation and a multitude of XSS vulnerabilities.

Fixes: GHSA-52p2-r8wf-jcrf
Fixes: CVE-2026-64638
Announcement: https://wordpress.org/news/2026/08/wordpress-7-0-3-release/
(cherry picked from commit 72d3f61444)
2026-08-09 17:43:21 +00:00
Peder Bergebakken Sundt
bbcbdb407f [Backport release-26.05] mongodb-7_0: 7.0.37 -> 7.0.39 (#550602) 2026-08-09 17:23:10 +00:00
Antoine du Hamel
7df5c7dad3 [Backport staging-26.05] libffi: 3.7.1 -> 3.8.0 (#550849) 2026-08-09 17:00:19 +00:00
Thomas Gerbet
8ae918bc78 [Backport release-26.05] cosign: 3.1.1 -> 3.1.3 (#550809) 2026-08-09 16:44:57 +00:00
R. Ryantm
41ef262cd9 libffi: 3.7.1 -> 3.8.0
(cherry picked from commit a1f5254300)
2026-08-09 16:43:13 +00:00
Dustin Sweigart
d010f50785 nixos/technitium-dns-server: set WorkingDirectory on systemd service
(cherry picked from commit 411a1103c3)
2026-08-09 16:36:09 +00:00
Michael Daniels
1143967251 [Backport release-26.05] CONTRIBUTING: clarify release note conventions (#550835) 2026-08-09 15:59:44 +00:00
Thomas Gerbet
30faacadb1 [Backport release-26.05] rubyPackages.nokogiri: 1.18.10 -> 1.19.4 (#550791) 2026-08-09 15:57:54 +00:00
nixpkgs-ci[bot]
e216476bd5 [Backport release-26.05] searchix: 0.4.9 -> 0.4.10 (#550800) 2026-08-09 15:57:21 +00:00
Michael Daniels
5bf0d84cb1 CONTRIBUTING: clarify release note conventions
(cherry picked from commit 77b21fad9f)
2026-08-09 15:49:38 +00:00
Bjørn Forsman
ba0ed0a149 [Backport release-26.05] gnome: 50.2 -> 50.3 (#550560) 2026-08-09 15:18:54 +00:00
Jo
c281d5448d [Backport release-26.05] firefox-{beta,devedition}-unwrapped: 154.0b4 -> 154.0b8 (#550813) 2026-08-09 15:03:40 +00:00
jopejoe1
00b95e7543 firefox-devedition-unwrapped: 154.0b4 -> 154.0b8
(cherry picked from commit 4c52532978)
2026-08-09 14:57:57 +00:00
jopejoe1
2ea4ff95c3 firefox-beta-unwrapped: 154.0b7 -> 154.0b8
(cherry picked from commit 05f072e8ca)
2026-08-09 14:57:57 +00:00
Thomas Gerbet
d9bb97b448 [Backport release-26.05] python3Packages.banks: 2.4.2 -> 2.4.5 (#550509) 2026-08-09 14:35:53 +00:00
Thomas Gerbet
b9639f0ad5 cosign: 3.1.1 -> 3.1.3
https://github.com/sigstore/cosign/releases/tag/v3.1.3
https://github.com/sigstore/cosign/releases/tag/v3.1.2

Fixes https://github.com/sigstore/cosign/security/advisories/GHSA-fx35-mq7g-6g98

(cherry picked from commit 15738eeffd)
2026-08-09 14:35:38 +00:00
nixpkgs-ci[bot]
81c0f1d066 [Backport release-26.05] megasync: 6.4.0.2 -> 6.5.1.0 (#550803) 2026-08-09 14:30:55 +00:00
R. Ryantm
9180d936ec keycloak: 26.7.0 -> 26.7.1
(cherry picked from commit 9346f2b3bd)
2026-08-09 14:30:11 +00:00
Martin Weinelt
b78c4338eb [Backport staging-26.05] nspr: 4.39 -> 4.40 (#550801) 2026-08-09 14:28:36 +00:00
R. Ryantm
839a0127c5 megasync: 6.4.0.2 -> 6.5.1.0
(cherry picked from commit df478f2ebf)
2026-08-09 14:25:07 +00:00
Martin Weinelt
ce65fffff8 nspr: 4.39 -> 4.40
https://github.com/mozilla/nspr/releases/tag/NSPR_4_40_RTM
(cherry picked from commit 933765c9ec)
2026-08-09 14:08:48 +00:00
R. Ryantm
e7e336c78e searchix: 0.4.9 -> 0.4.10
(cherry picked from commit e7b2fe624d)
2026-08-09 14:05:06 +00:00
Thomas Gerbet
1a6ca4fedc [Backport release-26.05] rclone: 1.74.4 -> 1.75.0 (#549774) 2026-08-09 14:02:11 +00:00
nixpkgs-ci[bot]
554e4fb55d [Backport release-26.05] hey-mail: 1.3.3 -> 1.3.6 (#550524) 2026-08-09 13:57:51 +00:00
Gerhard Schwanzer
2b2e7fda47 rubyPackages.nokogiri: 1.18.10 -> 1.19.4
https://redirect.github.com/sparklemotion/nokogiri/releases/tag/v1.19.4

Assisted-by: pi coding agent / Mika (OpenAI gpt-5.6-sol)
(cherry picked from commit 24c090e8a8)
2026-08-09 13:40:12 +00:00
Peder Bergebakken Sundt
e54d0b3327 [Backport release-26.05] traefik: 3.7.8 -> 3.7.10 (#550527) 2026-08-09 13:40:06 +00:00
Thomas Gerbet
b6639c281a [Backport release-26.05] ocelot-desktop: avoid putting empty segments in PATH and LD_LIBRARY_PATH (#545627) 2026-08-09 13:40:02 +00:00
Gerhard Schwanzer
eca5b84a97 rubyPackages.puma: 7.1.0 -> 7.2.1
https://redirect.github.com/puma/puma/releases/tag/v7.2.1

Fixes CVE-2026-47736 and CVE-2026-47737.

Not-cherry-picked-because: release-26.05 stays on Puma 7 due to Puma 8 breaking changes
Assisted-by: pi coding agent / Mika (OpenAI gpt-5.6-sol)
2026-08-09 15:37:14 +02:00
Thomas Gerbet
bc2bd6853d [Backport release-26.05] coturn: 4.13.1 -> 4.16.0 (#549140) 2026-08-09 13:34:36 +00:00
Thomas Gerbet
02db41faa7 [26.05] brave: 1.92.144 -> 1.93.129 (#548607) 2026-08-09 13:21:15 +00:00
Thomas Gerbet
3fe50e3054 [26.05] nats-server: 2.14.1 -> 2.14.4 (#548749) 2026-08-09 13:11:05 +00:00
Luna Simons
64586c0d9e lighthouse-steamvr: fix hash, target cli
(cherry picked from commit 7f689b4d63)

Reason: previous version bump has an invalid hash as its tag has been replaced upstream.
2026-08-09 15:01:02 +02:00
R. Ryantm
e2a9340623 lighthouse-steamvr: 1.4.0 -> 1.5.0
(cherry picked from commit 2e26b42c70)
2026-08-09 14:59:28 +02:00
Thomas Gerbet
61ba30a734 [26.05] siyuan: 3.7.1 -> 3.7.3 (#548954) 2026-08-09 12:57:47 +00:00
Thomas Gerbet
8a44b034db [Backport release-26.05] freeswitch: 1.10.12 -> 1.11.1 (#545048) 2026-08-09 12:43:16 +00:00
R. Ryantm
8a184f5830 jackett: 0.24.2288 -> 0.24.2335
(cherry picked from commit b26d9b0a55)
2026-08-09 10:33:06 +00:00
nixpkgs-ci[bot]
c7b94f09ad [Backport release-26.05] stremio-linux-shell: 1.1.4 -> 1.2.0 (#550724) 2026-08-09 10:27:46 +00:00
nixpkgs-ci[bot]
fb4f0c1455 [Backport release-26.05] ledger-live-desktop: 4.13.0 -> 4.13.1 (#550731) 2026-08-09 10:14:27 +00:00
R. Ryantm
7bf023e926 ledger-live-desktop: 4.13.0 -> 4.13.1
(cherry picked from commit b307775e73)
2026-08-09 10:09:36 +00:00
Jo
d2802507b0 [Backport release-26.05] firefox-beta-unwrapped: 153.0b13 -> 154.0b7 (#549803) 2026-08-09 09:24:02 +00:00
R. Ryantm
7e251080c8 stremio-linux-shell: 1.1.4 -> 1.2.0
(cherry picked from commit d40fcdd5ae)
2026-08-09 08:54:07 +00:00
R. Ryantm
f223883455 jetbrains.pycharm: 2026.2 -> 2026.2.0.1
(cherry picked from commit 19c7019c1c)
2026-08-09 04:12:05 +00:00
Valentin Silvestre
540d52f2de frankenphp: 1.12.6 -> 1.12.7
(cherry picked from commit 441e940012)
2026-08-09 00:37:42 +00:00
nixpkgs-ci[bot]
d726057cc1 Merge release-26.05 into staging-nixos-26.05 2026-08-09 00:19:09 +00:00
nixpkgs-ci[bot]
d6c6f5709f Merge staging-next-26.05 into staging-26.05 2026-08-09 00:18:46 +00:00
nixpkgs-ci[bot]
ff5f77d9d3 Merge release-26.05 into staging-next-26.05 2026-08-09 00:18:17 +00:00
R. Ryantm
e86b83ae77 mattermost: 11.7.7 -> 11.7.8
(cherry picked from commit 8c4c2ee440)
2026-08-08 21:26:46 +00:00
R. Ryantm
40e39de3df udisks: 2.11.1 -> 2.11.2
(cherry picked from commit e248743ab2)
2026-08-08 20:55:01 +00:00
qubitnano
44914b109a mongodb-7_0: 7.0.37 -> 7.0.39
https://www.mongodb.com/docs/manual/release-notes/7.0-changelog/#7.0.39-changelog

Fixes: CVE-2026-9737
Fixes: CVE-2026-13055
Fixes: CVE-2026-13059
Fixes: CVE-2026-13060
Fixes: CVE-2026-13061
Fixes: CVE-2026-13062
Fixes: CVE-2026-13065
Fixes: CVE-2026-13066
Fixes: CVE-2026-13068
Fixes: CVE-2026-13069
Fixes: CVE-2026-13070
Fixes: CVE-2026-13071
Fixes: CVE-2026-13072
Fixes: CVE-2026-13074
Fixes: CVE-2026-13077
Fixes: CVE-2026-13078
(cherry picked from commit aeda64b2ec)
2026-08-08 20:51:04 +00:00
fsagbuya
347c274419 nixos/flarum: manage config.php declaratively, guard reinstall with marker file
(cherry picked from commit 62e1de51f3)
2026-08-08 20:27:54 +00:00
Sefa Eyeoglu
ed3596f010 home-assistant-custom-components.localthings: init at 0.20.0
https://github.com/mbillow/localthings

Signed-off-by: Sefa Eyeoglu <contact@scrumplex.net>
(cherry picked from commit 73779ccb0d)
2026-08-08 20:21:11 +00:00
Sefa Eyeoglu
8ee6af2e4b python3Packages.smarthings-local: init at 0.1.3
https://github.com/QuiteYellow/SmartThings-Local

Signed-off-by: Sefa Eyeoglu <contact@scrumplex.net>
(cherry picked from commit 619de6ae73)
2026-08-08 20:21:11 +00:00
Tom Hunze
61c26e31dd pangomm_2_48: 2.56.1 -> 2.56.2
https://gitlab.gnome.org/GNOME/pangomm/-/compare/2.56.1...2.56.2
(cherry picked from commit d43473666e)
2026-08-08 18:56:13 +00:00
Tom Hunze
ac5bcf8365 mutter: 50.2 -> 50.3
https://gitlab.gnome.org/GNOME/mutter/-/compare/50.2...50.3
(cherry picked from commit b5f9ec6012)
2026-08-08 18:56:13 +00:00
Tom Hunze
32a9045c32 mm-common: 1.0.7 -> 1.0.8
https://gitlab.gnome.org/GNOME/mm-common/-/compare/1.0.7...1.0.8
(cherry picked from commit bbe8ee46ae)
2026-08-08 18:56:12 +00:00
Tom Hunze
4bdced7017 gnome-shell: 50.2 -> 50.3
https://gitlab.gnome.org/GNOME/gnome-shell/-/compare/50.2...50.3
(cherry picked from commit 93866ee249)
2026-08-08 18:56:12 +00:00
Tom Hunze
1e72eed83d gnome-remote-desktop: 50.1 -> 50.2
https://gitlab.gnome.org/GNOME/gnome-remote-desktop/-/compare/50.1...50.2
(cherry picked from commit 0bfb448840)
2026-08-08 18:56:11 +00:00
Tom Hunze
cb5db36e02 libglycin: 2.1.1 -> 2.1.5
https://gitlab.gnome.org/GNOME/glycin/-/compare/2.1.1...2.1.5
(cherry picked from commit 9c5ec6dfca)
2026-08-08 18:56:11 +00:00
Tom Hunze
93436a780a glibmm_2_68: 2.88.0 -> 2.88.1
https://gitlab.gnome.org/GNOME/glibmm/-/compare/2.88.0...2.88.1
(cherry picked from commit 9aa6438292)
2026-08-08 18:56:11 +00:00
Tom Hunze
a151dcfb13 gexiv2_0_16: 0.16.0 -> 0.16.1
https://gitlab.gnome.org/GNOME/gexiv2/-/compare/0.16.0...0.16.1
(cherry picked from commit b1797c03b7)
2026-08-08 18:56:10 +00:00
R. Ryantm
03b30f1f16 python3Packages.whenever: 0.10.3 -> 0.10.4
(cherry picked from commit def5fdfe8a)
2026-08-08 19:58:14 +02:00
R. Ryantm
693d4e2369 python3Packages.whenever: 0.10.2 -> 0.10.3
(cherry picked from commit 1263a1702a)
2026-08-08 19:58:10 +02:00
R. Ryantm
5a4d46a9c1 python3Packages.whenever: 0.10.0 -> 0.10.2
(cherry picked from commit ddb56a5c06)
2026-08-08 19:58:05 +02:00
R. Ryantm
9d4fb54fed traefik: 3.7.8 -> 3.7.10
(cherry picked from commit fca89ca63a)
2026-08-08 16:23:13 +00:00
R. Ryantm
0a901c5346 hey-mail: 1.3.3 -> 1.3.6
(cherry picked from commit 82a27d0ffd)
2026-08-08 16:11:09 +00:00
K900
cea6672d6b opencloud.web: 7.1.2 -> 7.2.0
Diff: https://github.com/opencloud-eu/web/compare/v7.1.2...v7.2.0

Changelog: https://github.com/opencloud-eu/web/blob/v7.2.0/CHANGELOG.md
(cherry picked from commit 0f718c1de3)
2026-08-08 18:02:56 +02:00
K900
05a341d715 opencloud.web: 7.1.0 -> 7.1.2
Diff: https://github.com/opencloud-eu/web/compare/v7.1.0...v7.1.2

Changelog: https://github.com/opencloud-eu/web/blob/v7.1.2/CHANGELOG.md
(cherry picked from commit 35edb8aaa8)
2026-08-08 18:02:55 +02:00
K900
fb51130d6d opencloud: 7.1.0 -> 7.2.0
Diff: https://github.com/opencloud-eu/opencloud/compare/v7.1.0...v7.2.0

Changelog: https://github.com/opencloud-eu/opencloud/blob/v7.2.0/CHANGELOG.md
(cherry picked from commit cb262ee05d)
2026-08-08 18:02:55 +02:00
K900
ecd4a3a271 opencloud{,-web}: 7.0.0 -> 7.1.0
Diff: https://github.com/opencloud-eu/opencloud/compare/v7.0.0...v7.1.0

Changelog: https://github.com/opencloud-eu/opencloud/blob/v7.1.0/CHANGELOG.md
(cherry picked from commit 3b4b66aa34)
2026-08-08 18:02:55 +02:00
K900
ccc951062d opencloud.idp-web: fix after #487046
(cherry picked from commit 064da749a3)
2026-08-08 18:02:54 +02:00
Ross Smyth
43b3561bb1 opencloud.idp-web: Migrate to pnpmBuildHook
(cherry picked from commit 4bb1c1c90b)
2026-08-08 18:02:54 +02:00
Fabian Affolter
8e31a7d6ce python3Packages.banks: 2.4.4 -> 2.4.5
Diff: https://github.com/masci/banks/compare/v2.4.4...v2.4.5

Changelog: https://github.com/masci/banks/releases/tag/v2.4.5
(cherry picked from commit 5c82996d4d)
2026-08-08 11:03:27 -04:00
Fabian Affolter
f0327695dd python3Packages.banks: 2.4.3 -> 2.4.4
Diff: https://github.com/masci/banks/compare/v2.4.3...v2.4.4

Changelog: https://github.com/masci/banks/releases/tag/v2.4.4
(cherry picked from commit 08b369df1c)
2026-08-08 11:03:27 -04:00
Fabian Affolter
42a46f2965 python3Packages.banks: 2.4.2 -> 2.4.3
Diff: https://github.com/masci/banks/compare/v2.4.2...v2.4.3

Changelog: https://github.com/masci/banks/releases/tag/v2.4.3
(cherry picked from commit 12e285daa7)
2026-08-08 11:03:26 -04:00
R. Ryantm
5465e2c884 unbound: 1.25.2 -> 1.26.0
(cherry picked from commit 35bf5426bf)
2026-08-08 12:51:56 +00:00
Marie Ramlow
0bcb22dfaa bitwarden-desktop: use npmDepsFetcherVersion 2
There is no version 3 yet, hashes will break in the future if we add a
new version.

(cherry picked from commit 4c482de9b9)
2026-08-08 12:20:30 +02:00
Andrew Marshall
ab285a3bb4 bitwarden-desktop: 2026.6.1 -> 2026.7.0
Diff: https://github.com/bitwarden/clients/compare/desktop-v2026.6.1...desktop-v2026.7.0

Changelog: https://github.com/bitwarden/clients/releases/tag/desktop-v2026.7.0
(cherry picked from commit 998099c713)
2026-08-08 12:20:30 +02:00
tree-sapii
befd7d83bd bitwarden-desktop: 2026.6.0 -> 2026.6.1
(cherry picked from commit 0522733558)
2026-08-08 12:20:30 +02:00
Sapi
cf5e3981d6 bitwarden-desktop: 2026.5.0 -> 2026.6.0, migrated to finalAttrs
(cherry picked from commit 63ba3230af)
2026-08-08 12:20:30 +02:00
Sapi
1e1f63fe00 maintainers: add tree-sapii
(cherry picked from commit d19924c50a)
2026-08-08 12:20:30 +02:00
networkException
238cff8c3f matrix-authentication-service: 1.21.0 -> 1.22.0
ChangeLog: https://github.com/element-hq/matrix-authentication-service/releases/tag/v1.22.0
(cherry picked from commit 3446190149)
2026-08-08 09:21:10 +00:00
Michael Hoang
703e84ae93 bitwarden-desktop: drop LLVM pin on macOS
Assisted-by: Claude Opus 4.8 via Claude Code
(cherry picked from commit 68c787708a)
2026-08-08 10:37:31 +02:00
nixpkgs-ci[bot]
144591096e Merge release-26.05 into staging-nixos-26.05 2026-08-08 00:18:21 +00:00
nixpkgs-ci[bot]
195d1353b3 Merge staging-next-26.05 into staging-26.05 2026-08-08 00:17:57 +00:00
nixpkgs-ci[bot]
74f3c0ab0d Merge release-26.05 into staging-next-26.05 2026-08-08 00:17:28 +00:00
Bart Oostveen
97d31d0eb1 samba: 4.23.8 -> 4.23.10
Changelog: https://www.samba.org/samba/history/samba-4.23.9.html, https://www.samba.org/samba/history/samba-4.23.10.html
Fixes: CVE-2026-6949, CVE-2026-58216, CVE-2026-58218, CVE-2026-58221, CVE-2026-58222, CVE-2026-58224
See also: https://www.openwall.com/lists/oss-security/2026/07/29/2

(cherry picked from commit bc93deee13)
2026-08-07 18:24:32 +00:00
Thomas Gerbet
87aa0b9f87 mysql84: 8.4.10 -> 8.4.11
https://dev.mysql.com/doc/relnotes/mysql/8.4/en/news-8-4-11.html

Fixes:
* CVE-2026-60163
* CVE-2026-60315
* CVE-2026-61094
* CVE-2026-60316
* CVE-2026-60178
* CVE-2026-60585
* CVE-2026-61109
* CVE-2026-47064
* CVE-2026-60183
* CVE-2026-60332
* CVE-2026-60331
* CVE-2026-60747
* CVE-2026-47052
* CVE-2026-60145
* CVE-2026-47023
* CVE-2026-60177
* CVE-2026-60182
* CVE-2026-46936
* CVE-2026-60186
* CVE-2026-47012
* CVE-2026-60184
* CVE-2026-60185
* CVE-2026-60187
* CVE-2026-60188
* CVE-2026-60189
* CVE-2026-60191
* CVE-2026-61096
* CVE-2026-61081
* CVE-2026-60190

(cherry picked from commit 782d32e6c8)
2026-08-07 18:23:57 +00:00
whispers
8466e5327d libssh2: apply debian patches for CVE-2026-6603[2345]
Fixes: CVE-2026-66032, CVE-2026-66033, CVE-2026-66034, CVE-2026-66035
(cherry picked from commit 8a969be9f4)
2026-08-07 12:42:12 +00:00
Samuel Dionne-Riel
fc8f57945c libssh: 0.12.1 -> 0.12.2
https://www.libssh.org/2026/07/28/libssh-0-12-2-security-release/

Fixes:
CVE-2026-59843: Denial of service via zero advertised channel packet size
(cherry picked from commit d3bdeb580b)
2026-08-07 12:42:11 +00:00
Sizhe Zhao
15949e5ea9 obsidian: fix build on darwin
(cherry picked from commit c594c220ba)
Signed-off-by: Wölfchen <w-lfchen@posteo.net>
2026-08-07 12:08:14 +02:00
Vladimír Čunát
fb2be328b4 libxfont_2: keep the fontserver support
The update in the previous commit disabled fontserver support:
https://lists.x.org/archives/xorg-announce/2026-August/003735.html
> Fontservers have been deprecated for many years and the vast
> majority of users will not notice this changed default
> (Debian has built with --disable-fc for years).

On 26.05 we might better keep it by explicitly passing `--enable-fc`.
Not-cherry-picked-because: we don't need that much compat on nixpkgs master.
2026-08-07 10:46:58 +02:00
Vladimír Čunát
ad1d399557 libxfont_2: 2.0.8 -> 2.0.9
Fixes: CVE-2026-59679 CVE-2026-44950
https://lists.x.org/archives/xorg-announce/2026-August/003734.html
https://lists.x.org/archives/xorg-announce/2026-August/003735.html
(cherry picked from commit 548c156f10)
2026-08-07 08:42:26 +00:00
nixpkgs-ci[bot]
2db44e0fa7 [Backport staging-26.05] glib: 2.88.1 -> 2.88.3 (#549707) 2026-08-07 07:39:13 +00:00
nixpkgs-ci[bot]
326c6752ec [Backport staging-26.05] gdk-pixbuf: 2.44.6 -> 2.44.7 (#549703) 2026-08-07 07:39:11 +00:00
nixpkgs-ci[bot]
785082aa18 Merge release-26.05 into staging-nixos-26.05 2026-08-07 01:15:36 +00:00
nixpkgs-ci[bot]
1d75227ef0 Merge staging-next-26.05 into staging-26.05 2026-08-07 01:15:11 +00:00
transcaffeine
5178cfc39a victoriametrics: 1.148.0 -> 1.149.0
Release notes: https://github.com/VictoriaMetrics/VictoriaMetrics/releases/tag/v1.149.0
Full changes: https://github.com/VictoriaMetrics/VictoriaMetrics/compare/v1.148.0...v1.149.0

(cherry picked from commit 385d3e39d8)
2026-08-06 15:34:23 +00:00
Grimmauld
01c365522f [Backport staging-26.05] mpg123: 1.33.4 -> 1.33.7 (#549855) 2026-08-06 12:27:57 +00:00
Sergei Trofimovich
ee113d013e mpg123: 1.33.6 -> 1.33.7
Changes: https://www.mpg123.de/#2026-08-02
(cherry picked from commit 9e51429113)
2026-08-06 13:59:21 +02:00
Sergei Trofimovich
9b9b6f786a mpg123: 1.33.5 -> 1.33.6
Changes: https://www.mpg123.de/#2026-06-06
(cherry picked from commit 0fc90c3e06)
2026-08-06 13:59:17 +02:00
Sergei Trofimovich
a04f068245 mpg123: 1.33.4 -> 1.33.5
Changes: https://mpg123.org/#2026-04-25
(cherry picked from commit 57cd8cc8a3)
2026-08-06 13:59:13 +02:00
Antoine du Hamel
5b9c51822b [Backport staging-26.05] llhttp: 9.4.2 -> 9.4.3 (#549697) 2026-08-06 08:19:38 +00:00
R. Ryantm
af38b7121f firefox-beta-unwrapped: 153.0b13 -> 154.0b7
(cherry picked from commit 1e590b71fe)
2026-08-06 08:06:54 +00:00
R. Ryantm
75e3752362 rclone: 1.74.4 -> 1.75.0
(cherry picked from commit 406cce9c0d)
2026-08-06 06:50:35 +00:00
Martin Weinelt
02f11c0e0f [Backport staging-26.05] python314: 3.14.6 -> 3.14.7; python313: 3.13.14 -> 3.13.15 (#549701) 2026-08-06 01:13:17 +00:00
nixpkgs-ci[bot]
f748e2deb9 Merge staging-next-26.05 into staging-26.05 2026-08-06 00:30:07 +00:00
Tom Hunze
18518413c3 glib: 2.88.1 → 2.88.3
https://gitlab.gnome.org/GNOME/glib/-/compare/2.88.1...2.88.2
https://gitlab.gnome.org/GNOME/glib/-/compare/2.88.2...2.88.3
(cherry picked from commit 8f4fcbf26b)
2026-08-06 00:23:40 +00:00
Tom Hunze
6f11c31656 gjs: 1.88.0 -> 1.88.1
https://gitlab.gnome.org/GNOME/gjs/-/compare/1.88.0...1.88.1
(cherry picked from commit 757b81a53b)
2026-08-06 00:10:50 +00:00
Tom Hunze
c44624eeb6 gdk-pixbuf: 2.44.6 -> 2.44.7
https://gitlab.gnome.org/GNOME/gdk-pixbuf/-/compare/2.44.6...2.44.7
(cherry picked from commit 2559a0f304)
2026-08-06 00:10:27 +00:00
Martin Weinelt
33e3b9a634 [Backport staging-26.05] python3Packages.django_5: 5.2.16 -> 5.2.17 (#549254) 2026-08-05 23:53:23 +00:00
Martin Weinelt
2ac419509c python3Packages.django_5: 5.2.16 -> 5.2.17
https://docs.djangoproject.com/en/5.2/releases/5.2.17/
https://www.djangoproject.com/weblog/2026/aug/04/security-releases/

Fixes: CVE-2026-15307, CVE-2026-15337, CVE-2026-15830, CVE-2026-15920

(cherry picked from commit 6cce7828ff)
2026-08-06 01:48:01 +02:00
Martin Weinelt
635910a86a python313: 3.13.14 -> 3.13.15
https://docs.python.org/release/3.13.15/whatsnew/changelog.html

(cherry picked from commit f392f19a94)
2026-08-06 01:07:03 +02:00
Martin Weinelt
78981bc555 python314: 3.14.6 -> 3.14.7
https://docs.python.org/release/3.14.7/whatsnew/changelog.html

(cherry picked from commit 0ef9e3a240)
2026-08-06 01:07:01 +02:00
Sergei Trofimovich
008fca4b33 llhttp: 9.4.2 -> 9.4.3
Changes: https://github.com/nodejs/llhttp/releases/tag/release%2Fv9.4.3
(cherry picked from commit 8d9f27a187)
2026-08-05 22:32:50 +00:00
nixpkgs-ci[bot]
a9cdf4df4b [Backport staging-26.05] libadwaita: 1.9.2 -> 1.9.3 (#549289) 2026-08-05 17:07:45 +00:00
Gerhard Schwanzer
73cf5e935e python3Packages.gitpython: 3.1.57 -> 3.1.58
Includes the six security fixes published in GitPython 3.1.58.

https://redirect.github.com/gitpython-developers/GitPython/blob/3.1.58/doc/source/changes.rst

Assisted-by: pi coding agent / Mika (OpenAI gpt-5.6-sol)
(cherry picked from commit 2740d7bc78)
2026-08-05 07:01:24 +02:00
Gerhard Schwanzer
846cc3e2f3 python3Packages.gitpython: 3.1.51 -> 3.1.57
Includes the security fixes published in GitPython 3.1.52 through 3.1.57.

https://redirect.github.com/gitpython-developers/GitPython/blob/3.1.57/doc/source/changes.rst

Assisted-by: pi coding agent / Mika (OpenAI gpt-5.6-sol)
(cherry picked from commit 1371c6fc0f)
2026-08-05 07:01:15 +02:00
Michael Daniels
94f7778ce7 python3Packages.cryptography: security patches 2026-08-04 20:59:38 -04:00
nixpkgs-ci[bot]
19cf56723d Merge staging-next-26.05 into staging-26.05 2026-08-05 00:33:18 +00:00
HigherOrderLogic
163779839a xwayland-satellite: 0.8.1 -> 0.8.2
(cherry picked from commit 80abbdebac)
2026-08-04 21:46:51 +00:00
Artemis Tosini
7658a675b8 [Backport staging-26.05] boost: backport regression fixes for boost.context (#548497) 2026-08-04 21:00:23 +00:00
Robert Schütz
519a414601 libadwaita: 1.9.2 -> 1.9.3
Diff: https://gitlab.gnome.org/GNOME/libadwaita/-/compare/1.9.2...1.9.3

Changelog: https://gitlab.gnome.org/GNOME/libadwaita/-/blob/1.9.3/NEWS
(cherry picked from commit 6c0c69ed62)
2026-08-04 20:52:17 +00:00
R. Ryantm
22928ba100 bookstack: 26.05.2 -> 26.05.3
(cherry picked from commit d6d67b2166)
2026-08-04 16:50:23 +00:00
airone01
514632eedc docker-compose: 5.3.1 -> 5.4.0
Diff: https://github.com/docker/compose/compare/v5.3.1...v5.4.0
(cherry picked from commit 61f05b6188)
Assisted-by: OpenAI Codex (GPT-5)
2026-08-04 17:37:52 +02:00
airone01
9c79876f95 docker-compose: 5.3.0 -> 5.3.1
Diff: https://github.com/docker/compose/compare/v5.3.0...v5.3.1
(cherry picked from commit b726484492)
Assisted-by: OpenAI Codex (GPT-5)
2026-08-04 17:37:52 +02:00
R. Ryantm
f2f80daf5d docker-compose: 5.2.0 -> 5.3.0
(cherry picked from commit af53f654b1)
Assisted-by: OpenAI Codex (GPT-5)
2026-08-04 17:37:52 +02:00
Holiu
7551c66a0a docker-compose: 5.1.4 -> 5.2.0
(cherry picked from commit 212ca01d6d)
Assisted-by: OpenAI Codex (GPT-5)
2026-08-04 17:37:52 +02:00
Robert Schütz
7be77dd269 coturn: 4.13.1 -> 4.16.0
Diff: https://github.com/coturn/coturn/compare/4.13.1...4.16.0

Changelog: https://github.com/coturn/coturn/blob/4.16.0/ChangeLog
(cherry picked from commit 0e631895ab)
2026-08-04 13:18:27 +00:00
Michael Daniels
20a5386e65 Merge branch 'staging-next-26.05' into staging-26.05 2026-08-03 21:17:33 -04:00
Gerhard Schwanzer
de795435c3 siyuan: 3.7.1 -> 3.7.3
Assisted-by: pi coding agent / Mika (OpenAI gpt-5.6-sol)
(cherry picked from commit 4afb4e6743)
2026-08-04 00:14:59 +02:00
Arne Keller
e9db095dc0 [Backport staging-26.05] zulu: enable __structuredAttrs and strictDeps (#548854) 2026-08-03 21:57:10 +00:00
Harish Rajagopal
482ea6f02c nixos/feishin: init module
(cherry picked from commit fca2615fa3)
2026-08-03 20:35:38 +02:00
Harish Rajagopal
74b58cab88 maintainers: add rharish
(cherry picked from commit 1f6a4dde75)
2026-08-03 20:33:22 +02:00
Gutyina Gergő
a55f6e31f8 zulu: enable __structuredAttrs and strictDeps
(cherry picked from commit f49b48c48e)
2026-08-03 15:39:09 +00:00
Antoine du Hamel
79463ee60d [Backport staging-26.05] nodejs_24: 24.18.1 -> 24.19.0 (#548839) 2026-08-03 14:50:47 +00:00
Antoine du Hamel
0a9b71eb63 nodejs_24: 24.18.1 -> 24.19.0
(cherry picked from commit d14174cf76)
2026-08-03 14:36:31 +00:00
Gerhard Schwanzer
4c01ab6de7 python3Packages.gitpython: 3.1.50 -> 3.1.51
https://redirect.github.com/gitpython-developers/GitPython/blob/3.1.51/doc/source/changes.rst

(cherry picked from commit 65c5a6dac2)
Assisted-by: pi coding agent / Mika (OpenAI gpt-5.6-sol)
2026-08-03 14:55:12 +02:00
R. Ryantm
3a81874bcf nats-server: 2.14.3 -> 2.14.4
(cherry picked from commit 51d6cb46a1)
Assisted-by: pi coding agent / Mika (OpenAI gpt-5.6-sol)
2026-08-03 11:53:59 +02:00
R. Ryantm
12703f5b67 nats-server: 2.14.2 -> 2.14.3
(cherry picked from commit 60f9d957a3)
Assisted-by: pi coding agent / Mika (OpenAI gpt-5.6-sol)
2026-08-03 11:53:58 +02:00
R. Ryantm
1e826ad010 nats-server: 2.14.1 -> 2.14.2
(cherry picked from commit 0ba17dd3af)
Assisted-by: pi coding agent / Mika (OpenAI gpt-5.6-sol)
2026-08-03 11:53:58 +02:00
nixpkgs-ci[bot]
0307f0ffe2 Merge staging-next-26.05 into staging-26.05 2026-08-03 00:36:30 +00:00
Sean Buckley
350fcc3193 brave: 1.92.144 -> 1.93.129
https://community.brave.app/t/release-channel-1-93-129/656295

Not-cherry-picked-because: stable branch still requires x86_64-darwin
2026-08-02 19:00:33 -04:00
Emily
e56b4a08d5 [Backport staging-26.05] gn: enable strictDeps and __structuredAttrs (#548200) 2026-08-02 22:04:22 +00:00
Gerhard Schwanzer
73b331096b goshs: fix CVE-2026-5160
Update goldmark to 1.7.17, the first patched version.

https://pkg.go.dev/vuln/GO-2026-5320

Assisted-by: pi coding agent / Mika (OpenAI gpt-5.6-sol)
(cherry picked from commit ffaf4a6112)
2026-08-02 23:17:43 +02:00
Gerhard Schwanzer
c044340218 goshs: 2.1.4 -> 2.1.5
https://redirect.github.com/goshs-labs/goshs/releases/tag/v2.1.5

Assisted-by: pi coding agent / Mika (OpenAI gpt-5.6-sol)
(cherry picked from commit 336c962146)
2026-08-02 23:17:37 +02:00
Sergei Zimmerman
b5e044308f boost: backport regression fixes for boost.context
Applies the fixes for 1.88 regressions that have caused widespread
breakage in Nix. Currently we are building with 1.89, so only 2 fixes
are relevant [1,2], with the second patch being backported to avoid
conflicts - the issue it addresses doesn't blow up in nix - but it
does in userver and other stuff too probably.

The third patch was authored by NaN-git to unbreak nix with 1.89, so
we apply it to 1.88 (the initial version that had the fiber-specific
exception state changes with fcontext and libstdc++). This is mostly for
consistency and unbreak boost.context on that version.

[1]: https://github.com/boostorg/context/pull/337
[2]: https://github.com/boostorg/context/pull/331

(cherry picked from commit 7bb72161e1)
2026-08-02 18:00:20 +00:00
R. Ryantm
72e4c581f9 libgsf: 1.14.55 -> 1.14.58
(cherry picked from commit fc130d9607)
2026-08-02 11:34:46 +00:00
Gerhard Schwanzer
1f433c15d7 python3Packages.datamodel-code-generator: 0.68.1 -> 0.71.0
Update to the latest stable release, which rejects unsafe customBasePath values before generating Python imports.

https://redirect.github.com/koxudaxi/datamodel-code-generator/releases/tag/0.71.0

Assisted-by: pi coding agent / Mika (OpenAI gpt-5.6-sol)
(cherry picked from commit 2cd3018868)
2026-08-02 10:32:38 +02:00
Martin Weinelt
ac83a6b435 python3Packages.datamodel-code-generator: 0.55.0 -> 0.68.1
https://redirect.github.com/koxudaxi/datamodel-code-generator/releases/tag/0.68.1
(cherry picked from commit e5ffb383ad)
2026-08-02 10:32:38 +02:00
Martin Weinelt
f3b33c28c8 python3Packages.hypothesis-jsonschema: init at 0.23.1
New dependency for datamodel-code-generator.

(cherry picked from commit 31280770c2)
2026-08-02 10:32:37 +02:00
Martin Weinelt
e2da080c23 python3Packages.inline-snapshot: 0.32.5 -> 0.34.2
https://redirect.github.com/15r10nk/inline-snapshot/blob/0.34.2/CHANGELOG.md
(cherry picked from commit 279d557d56)
2026-08-02 10:32:32 +02:00
slashformotion
26e47f38b1 gokrazy: 0-unstable-2026-01-09 -> 0-unstable-2026-07-23
gokrazy does not provide releases, this commit update the package
to the latest git commit on main.

(cherry picked from commit 841d05a8f6)
2026-08-01 23:16:42 +00:00
Marcin Serwin
e6d03305e9 gn: enable strictDeps and __structuredAttrs
Signed-off-by: Marcin Serwin <marcin@serwin.dev>
(cherry picked from commit f048aa98ac)
2026-08-01 20:46:00 +00:00
Gerhard Schwanzer
d5cebb7d79 goshs: fix CVE-2026-66063 and CVE-2026-66064
Backport the upstream fixes for authorization bypasses caused by trailing slashes and multipart upload path traversal.

Assisted-by: pi coding agent / Mika (OpenAI gpt-5.6-sol)
(cherry picked from commit e55b1ddf6b)
2026-08-01 21:05:08 +02:00
Fabian Affolter
a397b48592 goshs: 2.1.3 -> 2.1.4
Diff: https://redirect.github.com/patrickhener/goshs/compare/v2.1.3...v2.1.4

Changelog: https://redirect.github.com/patrickhener/goshs/releases/tag/refs/tags/v2.1.4
(cherry picked from commit 108e222387)
2026-08-01 21:05:08 +02:00
Fabian Affolter
f283f883f6 goshs: 2.1.2 -> 2.1.3
Diff: https://redirect.github.com/patrickhener/goshs/compare/v2.1.2...v2.1.3

Changelog: https://redirect.github.com/patrickhener/goshs/releases/tag/refs/tags/v2.1.3
(cherry picked from commit 3a04fb8bd8)
2026-08-01 21:05:07 +02:00
Fabian Affolter
7459911ed5 goshs: 2.1.1 -> 2.1.2
Diff: https://redirect.github.com/patrickhener/goshs/compare/v2.1.1...v2.1.2

Changelog: https://redirect.github.com/patrickhener/goshs/releases/tag/refs/tags/v2.1.2
(cherry picked from commit 7ce36dfd7f)
2026-08-01 21:05:07 +02:00
R. Ryantm
f34b06ab3f goshs: 2.1.0 -> 2.1.1
(cherry picked from commit f6178d0e76)
2026-08-01 21:05:07 +02:00
Fabian Affolter
93331ab340 goshs: 2.0.9 -> 2.1.0
Diff: https://redirect.github.com/patrickhener/goshs/compare/v2.0.9...v2.1.0

Changelog: https://redirect.github.com/patrickhener/goshs/releases/tag/refs/tags/v2.1.0
(cherry picked from commit 3a28c1d827)
2026-08-01 21:05:07 +02:00
R. Ryantm
ea3454208b goshs: 2.0.8 -> 2.0.9
(cherry picked from commit e82531c5b6)
2026-08-01 21:05:06 +02:00
R. Ryantm
305b133e75 jetbrains.rider: 2026.2 -> 2026.2.0.1
(cherry picked from commit 34d269f274)
2026-08-01 16:30:57 +00:00
Benedikt Ritter
10f8351334 nextcloudPackages: add pantry
(cherry picked from commit 0c27cbdd5c)
2026-08-01 11:45:20 +00:00
Benedikt Ritter
1ecbc850e8 nextcloudPackages: update apps
(cherry picked from commit 531718e98f)
2026-08-01 11:45:19 +00:00
Michael Daniels
e6851207c4 sushi: patch to use host gjs, set strictDeps
(cherry picked from commit 213d934e37)
2026-07-31 20:41:51 +00:00
Michael Daniels
9ddb0a94c2 gnome-shell: patch to use host gjs, set strictDeps
(cherry picked from commit 6220e645d5)
2026-07-31 20:41:45 +00:00
Thomas Gerbet
e7d2ba1b18 ocelot-desktop: avoid putting empty segments in PATH and LD_LIBRARY_PATH
(cherry picked from commit d92de35181)
2026-07-25 14:48:41 +00:00
patka
104ddd0803 freeswitch: 1.10.12 -> 1.11.1
(cherry picked from commit 34bf0414d5)
2026-07-23 22:02:00 +00:00
Marcel
520d91899d python3Packages.selectolax: 0.4.7 -> 0.4.10
Diff: https://github.com/rushter/selectolax/compare/v0.4.7...v0.4.10

Changelog: https://github.com/rushter/selectolax/blob/v0.4.10/CHANGES.md
(cherry picked from commit 2bad535bb1)
2026-07-05 20:38:43 +00:00
Marcel
de47f3d3a8 lexbor: 3.0.0 -> 3.0.0-unstable-2026-05-26
(cherry picked from commit f919ccb9b9)
2026-07-05 20:38:42 +00:00
Sam Estep
03880c41bf python3Packages.md-toc: fix build
Assisted-by: Claude:opus-4.8
(cherry picked from commit 728d61cb51)
2026-07-01 19:41:48 +00:00
winston
f9c6740c59 recordbox: add gst_all_1.gst-libav
(cherry picked from commit 765a316fe1)
2026-07-01 15:07:45 +00:00
Jan-Niklas Burfeind
783d4cee7d yocto-cooker: init at 1.5.0
(cherry picked from commit 3745a9ebfc)
2026-06-26 06:49:10 +00:00
Tom Hunze
639161f559 {libglycin{,-gtk4},glycin-{loaders,thumbnailer}}: use compound license
(cherry picked from commit 68241438a0)
2026-06-25 12:40:01 +00:00
Tom Hunze
0c12353032 glycin-thumbnailer: add package test for building with all loaders
(cherry picked from commit c7cd5a89bb)
2026-06-25 12:40:01 +00:00
Tom Hunze
d1f3aa33e1 glycin-thumbnailer: add thumbnailer package test
(cherry picked from commit aac10d3941)
2026-06-25 12:40:01 +00:00
Tom Hunze
8da22b9259 libglycin: add glycin-thumbnailer to passthru.tests
(cherry picked from commit 3298717b08)
2026-06-25 12:40:01 +00:00
Tom Hunze
3cb4c47bf6 glycin-loaders: don't install thumbnailer files
These are now provided by glycin-thumbnailer.

(cherry picked from commit 53716654ff)
2026-06-25 12:40:01 +00:00
Tom Hunze
96367ea0bd glycin-thumbnailer: init at 2.1.1
(cherry picked from commit d4ccc96bfe)
2026-06-25 12:40:00 +00:00
Tom Hunze
28b57324e6 glycin-loaders: consistently use lib.mesonBool
(cherry picked from commit f527f6d8a8)
2026-06-25 12:40:00 +00:00
Tom Hunze
4f953395df glycin-loaders: allow configuring loaders to build via override
(cherry picked from commit 9b14bd07ee)
2026-06-25 12:40:00 +00:00
Shyam Sunder
03d971804f gnomeExtensions.arcmenu: 67.2 -> 69.2
(cherry picked from commit cb090b1ccf)
2026-06-19 12:14:14 +00:00
Yueh-Shun Li
446e8713bb plover_5: fix plover_build_utils.setup pyside6-rcc and pyside6-uic invocation
(cherry picked from commit 428dff617c)
2026-06-15 21:20:30 +00:00
Yueh-Shun Li
12a56c34a8 python3Packages.plover-combo: init at 2.0.0-unstable-2025-09-11
Add plover-combo to test plover_5's plover_build_utils.setup.BuildUi

(cherry picked from commit 10fdfd6912)
2026-06-15 21:20:30 +00:00
Yueh-Shun Li
f6eaeda255 plover_4, plover_5: add optional-dependencies.gui-qt
(cherry picked from commit 22ecf4e4ab)
2026-06-15 21:20:29 +00:00
Yueh-Shun Li
3002121e44 python3Packages.plover_5: handle PySide6-Essentials exclusion with pythonRemoveDeps
(cherry picked from commit da525beb6c)
2026-06-15 21:20:29 +00:00
yaya
f008c1f470 gitlab-runner: 18.11.3 -> 19.0.0
Diff: https://gitlab.com/gitlab-org/gitlab-runner/-/compare/v18.11.3...v19.0.0

Changelog: https://gitlab.com/gitlab-org/gitlab-runner/blob/v19.0.0/CHANGELOG.md
(cherry picked from commit 8e0a307eaa)
2026-06-14 01:17:57 +00:00
Mario
7f24919d62 nixos/boinc: update documentation link
(cherry picked from commit e1a6d85802)
2026-06-09 21:25:02 +00:00
567 changed files with 12334 additions and 9565 deletions

View File

@@ -23,15 +23,15 @@ insert_final_newline = false
# see https://nixos.org/nixpkgs/manual/#chap-conventions
[*.{bash,css,js,json,lock,md,nix,pl,pm,py,rb,sh,xml}]
[*.{bash,css,js,json,lock,md,nix,pl,pm,py,rb,sh,ts,xml}]
indent_style = space
# Match docbook files, set indent width of one
[*.xml]
indent_size = 1
# Match json/lockfiles/markdown/nix/ruby files, set indent width of two
[*.{js,json,lock,md,nix,rb}]
# Match js/json/lockfiles/markdown/nix/ruby/ts files, set indent width of two
[*.{js,json,lock,md,nix,rb,ts}]
indent_size = 2
# Match all the Bash code in Nix files, set indent width of two

View File

@@ -13,7 +13,7 @@ inputs:
runs:
using: composite
steps:
- uses: actions/github-script@ed597411d8f924073f98dfc5c65a23a2325f34cd # v8.0.0
- uses: actions/github-script@3a2844b7e9c422d3c10d287c895573f7108da1b3 # v9.0.0
env:
MERGED_SHA: ${{ inputs.merged-as-untrusted-at }}
TARGET_SHA: ${{ inputs.target-as-trusted-at }}

View File

@@ -1,7 +1,9 @@
version: 2
updates:
- package-ecosystem: "github-actions"
directory: "/"
directories:
- "/"
- ".github/actions/*/*"
schedule:
interval: "weekly"
labels: []

View File

@@ -59,7 +59,7 @@ jobs:
merged-as-untrusted-at: ${{ inputs.mergedSha }}
target-as-trusted-at: ${{ inputs.targetSha }}
- uses: cachix/install-nix-action@630ae543ea3a38a9a4166f03376c02c50f408342 # v31.11.0
- uses: cachix/install-nix-action@13d8dd58da0234aa297dedd986986ccb8e7f3e24 # v31.11.1
with:
# Sandbox is disabled on MacOS by default.
extra_nix_config: sandbox = true

View File

@@ -134,6 +134,35 @@ jobs:
GH_TOKEN: ${{ steps.app-token.outputs.token || github.token }}
run: gh api /rate_limit | jq
github-script:
runs-on: ubuntu-24.04-arm
timeout-minutes: 5
steps:
- uses: actions/checkout@df4cb1c069e1874edd31b4311f1884172cec0e10 # v6.0.3
with:
persist-credentials: false
sparse-checkout: .github/actions
- name: Checkout merge and target commits
uses: ./.github/actions/checkout
with:
merged-as-untrusted-at: ${{ inputs.mergedSha }}
target-as-trusted-at: ${{ inputs.targetSha }}
- name: Install dependencies to trusted/
run: |
npm ci --package-lock-only=false
echo "$PWD/node_modules/.bin" >> "$GITHUB_PATH"
working-directory: nixpkgs/trusted/ci/github-script
- name: Link trusted/ dependencies to untrusted/
run: ln -s "$PWD/trusted/ci/github-script/node_modules" untrusted/ci/github-script/node_modules
working-directory: nixpkgs
- name: Type-check ci/github-script
run: tsc --build
working-directory: nixpkgs/untrusted/ci/github-script
owners:
runs-on: ubuntu-24.04-arm
timeout-minutes: 5
@@ -142,13 +171,14 @@ jobs:
with:
persist-credentials: false
sparse-checkout: .github/actions
- name: Checkout merge and target commits
uses: ./.github/actions/checkout
with:
merged-as-untrusted-at: ${{ inputs.mergedSha }}
target-as-trusted-at: ${{ inputs.targetSha }}
- uses: cachix/install-nix-action@630ae543ea3a38a9a4166f03376c02c50f408342 # v31.11.0
- uses: cachix/install-nix-action@13d8dd58da0234aa297dedd986986ccb8e7f3e24 # v31.11.1
- uses: cachix/cachix-action@5f2d7c5294214f71b873db4b969586b980625e71 # v17
continue-on-error: true

View File

@@ -139,7 +139,7 @@ jobs:
core.info(`Found pinned.json commit: ${ciPinBumpCommit}`)
- name: Install Nix
uses: cachix/install-nix-action@630ae543ea3a38a9a4166f03376c02c50f408342 # v31.11.0
uses: cachix/install-nix-action@13d8dd58da0234aa297dedd986986ccb8e7f3e24 # v31.11.1
- name: Load supported versions
id: versions
@@ -187,7 +187,7 @@ jobs:
target-as-trusted-at: ${{ inputs.targetSha }}
- name: Install Nix
uses: cachix/install-nix-action@630ae543ea3a38a9a4166f03376c02c50f408342 # v31.11.0
uses: cachix/install-nix-action@13d8dd58da0234aa297dedd986986ccb8e7f3e24 # v31.11.1
- uses: cachix/cachix-action@5f2d7c5294214f71b873db4b969586b980625e71 # v17
continue-on-error: true
@@ -277,7 +277,7 @@ jobs:
merge-multiple: true
- name: Install Nix
uses: cachix/install-nix-action@630ae543ea3a38a9a4166f03376c02c50f408342 # v31.11.0
uses: cachix/install-nix-action@13d8dd58da0234aa297dedd986986ccb8e7f3e24 # v31.11.1
- name: Combine all output paths and eval stats
run: |
@@ -375,7 +375,7 @@ jobs:
with:
github-token: ${{ steps.app-token.outputs.token || github.token }}
script: |
require('./nixpkgs/trusted/ci/github-script/check-target-branch.js')({
require('./nixpkgs/trusted/ci/github-script/check-target-branch.ts')({
github,
context,
core,
@@ -486,7 +486,7 @@ jobs:
merged-as-untrusted-at: ${{ inputs.mergedSha }}
- name: Install Nix
uses: cachix/install-nix-action@630ae543ea3a38a9a4166f03376c02c50f408342 # v31.11.0
uses: cachix/install-nix-action@13d8dd58da0234aa297dedd986986ccb8e7f3e24 # v31.11.1
- name: Ensure flake outputs on all systems still evaluate
run: nix flake check --all-systems --no-build './nixpkgs/untrusted?shallow=1'

View File

@@ -35,7 +35,7 @@ jobs:
with:
merged-as-untrusted-at: ${{ inputs.mergedSha }}
- uses: cachix/install-nix-action@630ae543ea3a38a9a4166f03376c02c50f408342 # v31.11.0
- uses: cachix/install-nix-action@13d8dd58da0234aa297dedd986986ccb8e7f3e24 # v31.11.1
# TODO: Figure out how to best enable caching for the treefmt job. Cachix won't work well,
# because the cache would be invalidated on every commit - treefmt checks every file.
@@ -70,7 +70,7 @@ jobs:
with:
merged-as-untrusted-at: ${{ inputs.mergedSha }}
- uses: cachix/install-nix-action@630ae543ea3a38a9a4166f03376c02c50f408342 # v31.11.0
- uses: cachix/install-nix-action@13d8dd58da0234aa297dedd986986ccb8e7f3e24 # v31.11.1
- uses: cachix/cachix-action@5f2d7c5294214f71b873db4b969586b980625e71 # v17
continue-on-error: true
@@ -100,7 +100,7 @@ jobs:
merged-as-untrusted-at: ${{ inputs.mergedSha }}
target-as-trusted-at: ${{ inputs.targetSha }}
- uses: cachix/install-nix-action@630ae543ea3a38a9a4166f03376c02c50f408342 # v31.11.0
- uses: cachix/install-nix-action@13d8dd58da0234aa297dedd986986ccb8e7f3e24 # v31.11.1
- uses: cachix/cachix-action@5f2d7c5294214f71b873db4b969586b980625e71 # v17
continue-on-error: true

View File

@@ -77,7 +77,7 @@ jobs:
'.github/workflows/pull-request-target.yml',
'.github/workflows/test.yml',
'ci/github-script/bot.js',
'ci/github-script/check-target-branch.js',
'ci/github-script/check-target-branch.ts',
'ci/github-script/commits.js',
'ci/github-script/get-pr-commit-details.js',
'ci/github-script/lint-commits.js',

View File

@@ -571,7 +571,10 @@ If a contributor does not want committers to push to their branch, they must unc
### Release notes
If you removed packages or made some major NixOS changes, write about it in the next release notes in [`nixos/doc/manual/release-notes`](./nixos/doc/manual/release-notes).
If you add or remove a NixOS module, or make other breaking or significant NixOS changes, write about it in the next NixOS release notes in [`nixos/doc/manual/release-notes`](./nixos/doc/manual/release-notes).
If you make major or breaking changes to a package (other than removal), write about it in the next Nixpkgs release notes in [`doc/release-notes`](./doc/release-notes).
Package removals should not get a Nixpkgs release note, [a throwing alias should be added instead](./pkgs/README.md#steps-to-remove-a-package-from-nixpkgs).
### File naming and organisation

View File

@@ -502,7 +502,7 @@ pkgs/by-name/oc/octodns/ @anthonyroussel
pkgs/by-name/te/teleport* @arianvp @justinas @sigma @tomberek @techknowlogick @JuliusFreudenberger
# Warp-terminal
pkgs/by-name/wa/warp-terminal/ @emilytrau @imadnyc @FlameFlag @johnrtitor
pkgs/by-name/wa/warp-terminal/ @emilytrau @imadnyc @4evy @johnrtitor
# Nim
/doc/languages-frameworks/nim.section.md @NixOS/nim

View File

@@ -1,2 +1,5 @@
comparison
comparison.zip
node_modules
step-summary.md
*.tsbuildinfo

View File

@@ -1,3 +1,4 @@
// @ts-nocheck
module.exports = async ({ github, context, core, dry }) => {
const path = require('node:path')
const { DefaultArtifactClient } = await import('@actions/artifact')

View File

@@ -1,4 +1,6 @@
/// @ts-check
import type * as actionsCore from '@actions/core'
import type { context as actionsContext } from '@actions/github'
import type { GitHub } from '@actions/github/lib/utils'
// TODO: should this be combined with the branch checks in prepare.js?
// They do seem quite similar, but this needs to run after eval,
@@ -9,39 +11,47 @@ const { readFile } = require('node:fs/promises')
const { postReview, dismissReviews } = require('./reviews.js')
const reviewKey = 'check-target-branch'
/**
* @param {{
* github: InstanceType<import('@actions/github/lib/utils').GitHub>,
* context: typeof import('@actions/github').context
* core: import('@actions/core')
* dry: boolean
* }} CheckTargetBranchProps
*/
async function checkTargetBranch({ github, context, core, dry }) {
/**
* @type {{
* attrdiff: {
* added: string[],
* changed: string[],
* removed: string[],
* },
* attrdiffByKernel: Record<string, {
* added: string[],
* changed: string[],
* removed: string[],
* }>,
* attrdiffByPlatform: Record<string, {
* added: string[],
* changed: string[],
* removed: string[],
* }>,
* labels: Record<string, boolean>,
* rebuildCountByKernel: Record<string, number>,
* rebuildsByKernel: Record<string, string[]>,
* rebuildsByPlatform: Record<string, string[]>,
* }}
*/
const changed = JSON.parse(
type ChangedPaths = {
attrdiff: {
added: string[]
changed: string[]
removed: string[]
}
attrdiffByKernel: Record<
string,
{
added: string[]
changed: string[]
removed: string[]
}
>
attrdiffByPlatform: Record<
string,
{
added: string[]
changed: string[]
removed: string[]
}
>
labels: Record<string, boolean>
rebuildCountByKernel: Record<string, number>
rebuildsByKernel: Record<string, string[]>
rebuildsByPlatform: Record<string, string[]>
}
async function checkTargetBranch({
github,
context,
core,
dry,
}: {
github: InstanceType<typeof GitHub>
context: typeof actionsContext
core: typeof actionsCore
dry: boolean
}) {
const changed: ChangedPaths = JSON.parse(
await readFile('comparison/changed-paths.json', 'utf-8'),
)
const pull_number = context.payload.pull_request?.number
@@ -155,7 +165,7 @@ async function checkTargetBranch({ github, context, core, dry }) {
reviewKey,
})
} else if (rebuildsAllTests && !isExemptKernelUpdate) {
let branchText
let branchText: string
if (base === 'master' && maxRebuildCount >= 500) {
branchText = '(probably either `staging-nixos` or `staging`)'
} else if (base === 'master') {

View File

@@ -1,3 +1,4 @@
// @ts-nocheck
module.exports = async ({ github, context, core, dry, cherryPicks }) => {
const { execFileSync } = require('node:child_process')
const { classify } = require('../supportedBranches.js')

View File

@@ -1,4 +1,4 @@
// @ts-check
// @ts-nocheck
const { promisify } = require('node:util')
const execFile = promisify(require('node:child_process').execFile)
@@ -16,7 +16,7 @@ const execFile = promisify(require('node:child_process').execFile)
/**
* @param {{
* args: string[]
* core: import('@actions/core'),
* core: typeof import('@actions/core'),
* quiet?: boolean,
* repoPath?: string,
* }} RunGitProps
@@ -40,7 +40,7 @@ async function runGit({ args, repoPath, core, quiet }) {
* of 250 commits and doesn't return the changed files.
*
* @param {{
* core: import('@actions/core'),
* core: typeof import('@actions/core'),
* pr: Awaited<ReturnType<InstanceType<import('@actions/github/lib/utils').GitHub>["rest"]["pulls"]["get"]>>["data"]
* repoPath?: string,
* }} GetCommitMessagesForPRProps

View File

@@ -1,3 +1,4 @@
// @ts-nocheck
const excludeTeams = [
/^voters.*$/,
/^nixpkgs-maintainers$/,

View File

@@ -1,4 +1,3 @@
// @ts-check
const { classify } = require('../supportedBranches.js')
const { getCommitDetailsForPR } = require('./get-pr-commit-details.js')
@@ -6,9 +5,9 @@ const { getCommitDetailsForPR } = require('./get-pr-commit-details.js')
/**
* @param {{
* github: InstanceType<import('@actions/github/lib/utils').GitHub>,
* github: InstanceType<typeof import('@actions/github/lib/utils').GitHub>,
* context: typeof import('@actions/github').context,
* core: import('@actions/core'),
* core: typeof import('@actions/core'),
* repoPath?: string,
* }} LintCommitsProps
*/
@@ -57,7 +56,7 @@ async function lintCommits({ github, context, core, repoPath }) {
/**
* @param {{
* commits: Commit[],
* core: import('@actions/core'),
* core: typeof import('@actions/core'),
* }} CheckCommitMessagesProps
*/
async function checkCommitMessages({ commits, core }) {
@@ -170,7 +169,7 @@ async function checkCommitMessages({ commits, core }) {
/**
* @param {{
* commits: Commit[],
* core: import('@actions/core'),
* core: typeof import('@actions/core'),
* }} CheckGitFieldsProps
*/
async function checkCommitMetadata({ commits, core }) {

View File

@@ -1,12 +1,11 @@
// @ts-check
const { classify } = require('../supportedBranches.js')
const { getCommitDetailsForPR } = require('./get-pr-commit-details')
/**
* @param {{
* github: InstanceType<import('@actions/github/lib/utils').GitHub>,
* github: InstanceType<typeof import('@actions/github/lib/utils').GitHub>,
* context: typeof import('@actions/github').context,
* core: import('@actions/core'),
* core: typeof import('@actions/core'),
* repoPath?: string,
* dry: boolean,
* }} CheckManualFileEditsProps

View File

@@ -1,3 +1,4 @@
// @ts-nocheck
const { classify } = require('../supportedBranches.js')
function runChecklist({

View File

@@ -10,6 +10,11 @@
"@actions/github": "9.1.0",
"bottleneck": "2.19.5",
"commander": "14.0.3"
},
"devDependencies": {
"@tsconfig/node24": "24.0.4",
"@types/node": "24.13.3",
"typescript": "7.0.2"
}
},
"node_modules/@actions/artifact": {
@@ -588,6 +593,19 @@
"protoc-gen-ts": "bin/protoc-gen-ts"
}
},
"node_modules/@protobuf-ts/plugin/node_modules/typescript": {
"version": "3.9.10",
"resolved": "https://registry.npmjs.org/typescript/-/typescript-3.9.10.tgz",
"integrity": "sha512-w6fIxVE/H1PkLKcCPsFqKE7Kv7QUwhU8qQY2MueZXWx5cPZdwFupLgKK3vntcK98BtNHZtAF4LA/yl2a7k8R6Q==",
"license": "Apache-2.0",
"bin": {
"tsc": "bin/tsc",
"tsserver": "bin/tsserver"
},
"engines": {
"node": ">=4.2.0"
}
},
"node_modules/@protobuf-ts/protoc": {
"version": "2.11.1",
"resolved": "https://registry.npmjs.org/@protobuf-ts/protoc/-/protoc-2.11.1.tgz",
@@ -612,6 +630,343 @@
"@protobuf-ts/runtime": "^2.11.1"
}
},
"node_modules/@tsconfig/node24": {
"version": "24.0.4",
"resolved": "https://registry.npmjs.org/@tsconfig/node24/-/node24-24.0.4.tgz",
"integrity": "sha512-2A933l5P5oCbv6qSxHs7ckKwobs8BDAe9SJ/Xr2Hy+nDlwmLE1GhFh/g/vXGRZWgxBg9nX/5piDtHR9Dkw/XuA==",
"dev": true,
"license": "MIT"
},
"node_modules/@types/node": {
"version": "24.13.3",
"resolved": "https://registry.npmjs.org/@types/node/-/node-24.13.3.tgz",
"integrity": "sha512-Dh8vAsV36ig5wa9OX4pXvMc9D3Veibfw2wix0CUwYODLD8nkj9UsLjASr49nPg+2eKzxhBV+v7L8pXvT4e639Q==",
"dev": true,
"license": "MIT",
"dependencies": {
"undici-types": "~7.18.0"
}
},
"node_modules/@typescript/typescript-aix-ppc64": {
"version": "7.0.2",
"resolved": "https://registry.npmjs.org/@typescript/typescript-aix-ppc64/-/typescript-aix-ppc64-7.0.2.tgz",
"integrity": "sha512-MTKKkWB7p/0E9xi1d1tHtZ5PiLkGEMIq88pK2CubZjOsLtYTLqhgIgi6zepFa+9GHZ6h05NMCkQxGKiPXMxXtQ==",
"cpu": [
"ppc64"
],
"license": "Apache-2.0",
"optional": true,
"os": [
"aix"
],
"engines": {
"node": ">=16.20.0"
}
},
"node_modules/@typescript/typescript-darwin-arm64": {
"version": "7.0.2",
"resolved": "https://registry.npmjs.org/@typescript/typescript-darwin-arm64/-/typescript-darwin-arm64-7.0.2.tgz",
"integrity": "sha512-gowzar9MwS/aRWp6f3a4KUqzRjAZjOsmGNCM6LcTgXum+dBfgsBVMN+AgvOCCbguXyick6LJhpBszxMebJ8syA==",
"cpu": [
"arm64"
],
"license": "Apache-2.0",
"optional": true,
"os": [
"darwin"
],
"engines": {
"node": ">=16.20.0"
}
},
"node_modules/@typescript/typescript-darwin-x64": {
"version": "7.0.2",
"resolved": "https://registry.npmjs.org/@typescript/typescript-darwin-x64/-/typescript-darwin-x64-7.0.2.tgz",
"integrity": "sha512-SZ9xZInqApNlNGc9s0W1VSsktYSOe9cFqNOIqmN1Gs8SmkjKZYFt017G4VwPxASInODuAdbTW7sXiFUf893RgA==",
"cpu": [
"x64"
],
"license": "Apache-2.0",
"optional": true,
"os": [
"darwin"
],
"engines": {
"node": ">=16.20.0"
}
},
"node_modules/@typescript/typescript-freebsd-arm64": {
"version": "7.0.2",
"resolved": "https://registry.npmjs.org/@typescript/typescript-freebsd-arm64/-/typescript-freebsd-arm64-7.0.2.tgz",
"integrity": "sha512-W5NH4y/J0plIIS5b2xvTEkU7JFxyqdMAOgf+Ilhl0vHQXKO5dZoxd+C/jEtq56c4F3wk71RB4BMRQ2XdI+bwYQ==",
"cpu": [
"arm64"
],
"license": "Apache-2.0",
"optional": true,
"os": [
"freebsd"
],
"engines": {
"node": ">=16.20.0"
}
},
"node_modules/@typescript/typescript-freebsd-x64": {
"version": "7.0.2",
"resolved": "https://registry.npmjs.org/@typescript/typescript-freebsd-x64/-/typescript-freebsd-x64-7.0.2.tgz",
"integrity": "sha512-UMGDx5sTpzNw3WiPebH7l90IWfJggEd+egHt/q6p7/Cm3zqoV7VxkGXt+3DxPIw8CcmvAB0j3sVVfbhX+M4Tpw==",
"cpu": [
"x64"
],
"license": "Apache-2.0",
"optional": true,
"os": [
"freebsd"
],
"engines": {
"node": ">=16.20.0"
}
},
"node_modules/@typescript/typescript-linux-arm": {
"version": "7.0.2",
"resolved": "https://registry.npmjs.org/@typescript/typescript-linux-arm/-/typescript-linux-arm-7.0.2.tgz",
"integrity": "sha512-gffT3xPz9sR7j/YJExkyPntrI0P2EP9XbOyWzth2/Gs0RstK+90RBcO0ncXoXy/beYll1SXw846Nf2zdnEz0QQ==",
"cpu": [
"arm"
],
"license": "Apache-2.0",
"optional": true,
"os": [
"linux"
],
"engines": {
"node": ">=16.20.0"
}
},
"node_modules/@typescript/typescript-linux-arm64": {
"version": "7.0.2",
"resolved": "https://registry.npmjs.org/@typescript/typescript-linux-arm64/-/typescript-linux-arm64-7.0.2.tgz",
"integrity": "sha512-Qh4eU4/y3yDjnfjjyPYihMj5/ODIlmt+Bzu17OI+fiSRDW57QmU5SiN63exPRNJPKUzcc1INa1NXdrJ+MqHjUQ==",
"cpu": [
"arm64"
],
"license": "Apache-2.0",
"optional": true,
"os": [
"linux"
],
"engines": {
"node": ">=16.20.0"
}
},
"node_modules/@typescript/typescript-linux-loong64": {
"version": "7.0.2",
"resolved": "https://registry.npmjs.org/@typescript/typescript-linux-loong64/-/typescript-linux-loong64-7.0.2.tgz",
"integrity": "sha512-uEHck9i8hoAzXPiYRib1O7miOnz23SxIeVl6F4LXox+qov1K35jHcEW6VHKvZI+pyvl7fZEP4MCU5LYvIq1GuQ==",
"cpu": [
"loong64"
],
"license": "Apache-2.0",
"optional": true,
"os": [
"linux"
],
"engines": {
"node": ">=16.20.0"
}
},
"node_modules/@typescript/typescript-linux-mips64el": {
"version": "7.0.2",
"resolved": "https://registry.npmjs.org/@typescript/typescript-linux-mips64el/-/typescript-linux-mips64el-7.0.2.tgz",
"integrity": "sha512-R4KvAMnE43W5Qeqb0Ly56O3mWMWIAgsMyz36DCaycd5nbg/9kzm0liw3JocfRqyJY0KPmzFjbswozXyW0DnIYA==",
"cpu": [
"mips64el"
],
"license": "Apache-2.0",
"optional": true,
"os": [
"linux"
],
"engines": {
"node": ">=16.20.0"
}
},
"node_modules/@typescript/typescript-linux-ppc64": {
"version": "7.0.2",
"resolved": "https://registry.npmjs.org/@typescript/typescript-linux-ppc64/-/typescript-linux-ppc64-7.0.2.tgz",
"integrity": "sha512-DORx5b3sd/4S7eayxm4FQv+A7CrkUIGRaHiwI8oiHTAI1fAPWhF4J0vAlkC8biAlHSVVwxMQ3tjZ2/DVbnQiiA==",
"cpu": [
"ppc64"
],
"license": "Apache-2.0",
"optional": true,
"os": [
"linux"
],
"engines": {
"node": ">=16.20.0"
}
},
"node_modules/@typescript/typescript-linux-riscv64": {
"version": "7.0.2",
"resolved": "https://registry.npmjs.org/@typescript/typescript-linux-riscv64/-/typescript-linux-riscv64-7.0.2.tgz",
"integrity": "sha512-wf0jqEDOjrPRnKwYRyyJDRo11KMbvMFrU+q4zqKyChODBzvlkbhNQfKvLxQCcwTpdDaXSHZTVuh0JoCrKCUMHQ==",
"cpu": [
"riscv64"
],
"license": "Apache-2.0",
"optional": true,
"os": [
"linux"
],
"engines": {
"node": ">=16.20.0"
}
},
"node_modules/@typescript/typescript-linux-s390x": {
"version": "7.0.2",
"resolved": "https://registry.npmjs.org/@typescript/typescript-linux-s390x/-/typescript-linux-s390x-7.0.2.tgz",
"integrity": "sha512-IkwJc3L7yhytWd/ewjyxNDfOmswCm9GWMJT/ue/dU4aZNbwZeYAetq42VyLmsmSjvoX7z74X6ZaYCtzAr0EuGw==",
"cpu": [
"s390x"
],
"license": "Apache-2.0",
"optional": true,
"os": [
"linux"
],
"engines": {
"node": ">=16.20.0"
}
},
"node_modules/@typescript/typescript-linux-x64": {
"version": "7.0.2",
"resolved": "https://registry.npmjs.org/@typescript/typescript-linux-x64/-/typescript-linux-x64-7.0.2.tgz",
"integrity": "sha512-EYdf2cNg7rgCWJnxCdJ+F3V39O8ihb37eHAu1LK8oAFizgTQbPOK7zHHXbPt8rX24COqODXeI3sIf0fCXG7H/A==",
"cpu": [
"x64"
],
"license": "Apache-2.0",
"optional": true,
"os": [
"linux"
],
"engines": {
"node": ">=16.20.0"
}
},
"node_modules/@typescript/typescript-netbsd-arm64": {
"version": "7.0.2",
"resolved": "https://registry.npmjs.org/@typescript/typescript-netbsd-arm64/-/typescript-netbsd-arm64-7.0.2.tgz",
"integrity": "sha512-+polYF4MF04aPpO5FTkHran9yUQDSXqy5GiSDKpsll5jy3l3+g9QLhpf39T+ePtefhXLOGrLl0QIjkQP6VnelA==",
"cpu": [
"arm64"
],
"license": "Apache-2.0",
"optional": true,
"os": [
"netbsd"
],
"engines": {
"node": ">=16.20.0"
}
},
"node_modules/@typescript/typescript-netbsd-x64": {
"version": "7.0.2",
"resolved": "https://registry.npmjs.org/@typescript/typescript-netbsd-x64/-/typescript-netbsd-x64-7.0.2.tgz",
"integrity": "sha512-8YIT0EHM/3dq10ZOVF/A7pc/YSMtbcecct4rWtexrnSCHOPcpC2KTLXfTCR6vDpnSiY12heNb1GiN/wu+T/FyA==",
"cpu": [
"x64"
],
"license": "Apache-2.0",
"optional": true,
"os": [
"netbsd"
],
"engines": {
"node": ">=16.20.0"
}
},
"node_modules/@typescript/typescript-openbsd-arm64": {
"version": "7.0.2",
"resolved": "https://registry.npmjs.org/@typescript/typescript-openbsd-arm64/-/typescript-openbsd-arm64-7.0.2.tgz",
"integrity": "sha512-APT8+ClYnuYm1u9+kgGXoMj2VzWzcymwh2gNSQVySHfkRDGOTVkoWLjCmOQSaO+PoqQ57B0flRp9SA+7GnnkzQ==",
"cpu": [
"arm64"
],
"license": "Apache-2.0",
"optional": true,
"os": [
"openbsd"
],
"engines": {
"node": ">=16.20.0"
}
},
"node_modules/@typescript/typescript-openbsd-x64": {
"version": "7.0.2",
"resolved": "https://registry.npmjs.org/@typescript/typescript-openbsd-x64/-/typescript-openbsd-x64-7.0.2.tgz",
"integrity": "sha512-yX7s+Q0Dln0Dt9tEzZsAjXXR/+ytBM7AlglaqyeMPxQszJ1JhlJdZ6jLA+IzldHtflX81em7lDao1xXu+aRRkg==",
"cpu": [
"x64"
],
"license": "Apache-2.0",
"optional": true,
"os": [
"openbsd"
],
"engines": {
"node": ">=16.20.0"
}
},
"node_modules/@typescript/typescript-sunos-x64": {
"version": "7.0.2",
"resolved": "https://registry.npmjs.org/@typescript/typescript-sunos-x64/-/typescript-sunos-x64-7.0.2.tgz",
"integrity": "sha512-dLJDGaLZ1D4HPQn62u1n8mBDkJREwMsAkCdkwd4Ieqw+x3TUyTsqY0YiBCtE6H6OzzgGk3iuZ3vFWRS+E8/d1g==",
"cpu": [
"x64"
],
"license": "Apache-2.0",
"optional": true,
"os": [
"sunos"
],
"engines": {
"node": ">=16.20.0"
}
},
"node_modules/@typescript/typescript-win32-arm64": {
"version": "7.0.2",
"resolved": "https://registry.npmjs.org/@typescript/typescript-win32-arm64/-/typescript-win32-arm64-7.0.2.tgz",
"integrity": "sha512-Gyl1Vy6OsWesLzmq+EP0Fb7b4Nid5232AvcA2SFcdYreldpNtYFFofPjnt62y9hQy7VTaZp65ICJjuAQRaVcIQ==",
"cpu": [
"arm64"
],
"license": "Apache-2.0",
"optional": true,
"os": [
"win32"
],
"engines": {
"node": ">=16.20.0"
}
},
"node_modules/@typescript/typescript-win32-x64": {
"version": "7.0.2",
"resolved": "https://registry.npmjs.org/@typescript/typescript-win32-x64/-/typescript-win32-x64-7.0.2.tgz",
"integrity": "sha512-0BQ3HkAHHlKLSp1qRvf3SUhGpGsDuhB/jgFw75guyqbxJqEaS0Cw/VFO8i2nHglJUzQCRtMMR/IBAKE3ETMC4g==",
"cpu": [
"x64"
],
"license": "Apache-2.0",
"optional": true,
"os": [
"win32"
],
"engines": {
"node": ">=16.20.0"
}
},
"node_modules/@typescript/vfs": {
"version": "1.6.1",
"resolved": "https://registry.npmjs.org/@typescript/vfs/-/vfs-1.6.1.tgz",
@@ -1657,16 +2012,37 @@
}
},
"node_modules/typescript": {
"version": "3.9.10",
"resolved": "https://registry.npmjs.org/typescript/-/typescript-3.9.10.tgz",
"integrity": "sha512-w6fIxVE/H1PkLKcCPsFqKE7Kv7QUwhU8qQY2MueZXWx5cPZdwFupLgKK3vntcK98BtNHZtAF4LA/yl2a7k8R6Q==",
"version": "7.0.2",
"resolved": "https://registry.npmjs.org/typescript/-/typescript-7.0.2.tgz",
"integrity": "sha512-8FYau96o3NKOhbjKi/qNvG/W5jhzxkbdm5sj9AbZ/5T5sWqn3hJgLfGx27sRKZWTvyzCP8dLRBTf5tBTSRVUNA==",
"license": "Apache-2.0",
"bin": {
"tsc": "bin/tsc",
"tsserver": "bin/tsserver"
"tsc": "bin/tsc"
},
"engines": {
"node": ">=4.2.0"
"node": ">=16.20.0"
},
"optionalDependencies": {
"@typescript/typescript-aix-ppc64": "7.0.2",
"@typescript/typescript-darwin-arm64": "7.0.2",
"@typescript/typescript-darwin-x64": "7.0.2",
"@typescript/typescript-freebsd-arm64": "7.0.2",
"@typescript/typescript-freebsd-x64": "7.0.2",
"@typescript/typescript-linux-arm": "7.0.2",
"@typescript/typescript-linux-arm64": "7.0.2",
"@typescript/typescript-linux-loong64": "7.0.2",
"@typescript/typescript-linux-mips64el": "7.0.2",
"@typescript/typescript-linux-ppc64": "7.0.2",
"@typescript/typescript-linux-riscv64": "7.0.2",
"@typescript/typescript-linux-s390x": "7.0.2",
"@typescript/typescript-linux-x64": "7.0.2",
"@typescript/typescript-netbsd-arm64": "7.0.2",
"@typescript/typescript-netbsd-x64": "7.0.2",
"@typescript/typescript-openbsd-arm64": "7.0.2",
"@typescript/typescript-openbsd-x64": "7.0.2",
"@typescript/typescript-sunos-x64": "7.0.2",
"@typescript/typescript-win32-arm64": "7.0.2",
"@typescript/typescript-win32-x64": "7.0.2"
}
},
"node_modules/undici": {
@@ -1681,6 +2057,13 @@
"node": ">=14.0"
}
},
"node_modules/undici-types": {
"version": "7.18.2",
"resolved": "https://registry.npmjs.org/undici-types/-/undici-types-7.18.2.tgz",
"integrity": "sha512-AsuCzffGHJybSaRrmr5eHr81mwJU3kjw6M+uprWvCXiNeN9SOGwQ3Jn8jb8m3Z6izVgknn1R0FTCEAP2QrLY/w==",
"dev": true,
"license": "MIT"
},
"node_modules/universal-user-agent": {
"version": "7.0.3",
"resolved": "https://registry.npmjs.org/universal-user-agent/-/universal-user-agent-7.0.3.tgz",

View File

@@ -10,5 +10,10 @@
"@actions/github": "9.1.0",
"bottleneck": "2.19.5",
"commander": "14.0.3"
},
"devDependencies": {
"@tsconfig/node24": "24.0.4",
"@types/node": "24.13.3",
"typescript": "7.0.2"
}
}

View File

@@ -1,3 +1,4 @@
// @ts-nocheck
const { classify } = require('../supportedBranches.js')
const { postReview, dismissReviews } = require('./reviews.js')
const reviewKey = 'prepare'

View File

@@ -1,3 +1,4 @@
// @ts-nocheck
async function handleReviewers({
github,
context,

View File

@@ -1,5 +1,3 @@
// @ts-check
const eventToState = {
COMMENT: 'COMMENTED',
REQUEST_CHANGES: 'CHANGES_REQUESTED',
@@ -16,7 +14,7 @@ const reviewUsers = [
]
/**
* @typedef {InstanceType<import('@actions/github/lib/utils').GitHub>} GitHub
* @typedef {InstanceType<typeof import('@actions/github/lib/utils').GitHub>} GitHub
* @typedef {typeof import('@actions/github').context} Context
*
* @typedef {Awaited<ReturnType<GitHub['rest']['pulls']['listReviews']>>['data'][number]} Review
@@ -27,7 +25,7 @@ const reviewUsers = [
* @param {{
* github: GitHub,
* context: Context,
* core: import('@actions/core'),
* core: typeof import('@actions/core'),
* dry: boolean,
* reviewKey?: string,
* }} DismissReviewsProps
@@ -165,10 +163,10 @@ async function dismissReviews({ github, context, core, dry, reviewKey }) {
* @param {{
* github: GitHub,
* context: Context,
* core: import('@actions/core'),
* core: typeof import('@actions/core'),
* dry: boolean,
* body: string,
* event: keyof eventToState,
* event: keyof typeof eventToState,
* reviewKey: string,
* }} PostReviewProps
*/

View File

@@ -112,8 +112,8 @@ program
.argument('<repo>', 'Name of the GitHub repository to run on (Example: nixpkgs)')
.argument('<pr>', 'Number of the Pull Request to run on')
.action(async (owner, repo, pr, options) => {
const checkCommitMessages = (await import('./check-target-branch.js')).default
await run(checkCommitMessages, owner, repo, pr, options)
const checkTargetBranch = (await import('./check-target-branch.ts')).default
await run(checkTargetBranch, owner, repo, pr, options)
})
program

View File

@@ -1,3 +1,4 @@
// @ts-nocheck
module.exports = async ({ github, context, targetSha }) => {
const { content, encoding } = (
await github.rest.repos.getContent({

View File

@@ -0,0 +1,26 @@
{
"compilerOptions": {
"lib": [
"es2024",
"ESNext.Array",
"ESNext.Collection",
"ESNext.Error",
"ESNext.Iterator",
"ESNext.Promise"
],
"module": "nodenext",
"target": "es2024",
"strict": true,
"esModuleInterop": true,
"skipLibCheck": true,
"moduleResolution": "node16",
"allowImportingTsExtensions": true,
"allowJs": true,
"checkJs": true,
"erasableSyntaxOnly": true,
"verbatimModuleSyntax": true,
"noEmit": true,
}
}

View File

@@ -1,3 +1,4 @@
// @ts-nocheck
module.exports = async ({ github, core, maxConcurrent = 1 }, callback) => {
const Bottleneck = require('bottleneck')

View File

@@ -2,6 +2,7 @@
/*
#!nix-shell -i node -p nodejs
*/
// @ts-nocheck
const typeConfig = {
master: ['development', 'primary'],

View File

@@ -59,6 +59,9 @@ Here is a simple package example.
- The library will be installed using the `angstrom.install` file that dune
generates.
- It also accepts an optional `dunePackages` argument, if there is more than one
dune package that needs to be built (see `zipperposition`)
```nix
{
lib,

View File

@@ -2,11 +2,10 @@
"acme": {
"description": "Maintain ACME-related packages and modules.",
"id": 3806126,
"maintainers": {
"emilazy": 18535642
},
"maintainers": {},
"members": {
"arianvp": 628387,
"emilazy": 18535642,
"m1cr0man": 3044438
},
"name": "ACME"
@@ -60,7 +59,6 @@
"adamcstephens": 2071575,
"ankhers": 750786,
"gleber": 33185,
"minijackson": 1200507,
"yurrriq": 1866448
},
"name": "Beam"
@@ -68,11 +66,10 @@
"boot-security": {
"description": "Maintain support for boot security technologies like Secure Boot",
"id": 18686947,
"maintainers": {
"emilazy": 18535642
},
"maintainers": {},
"members": {
"ElvishJerricco": 1365692
"ElvishJerricco": 1365692,
"emilazy": 18535642
},
"name": "Boot security"
},
@@ -98,8 +95,8 @@
"fgaz": 8182846,
"natsukium": 25083790,
"philiptaron": 43863,
"pyrotelekinetic": 29682759,
"tomodachi94": 68489118
"tomodachi94": 68489118,
"tr3foil": 29682759
},
"members": {},
"name": "Categorization"
@@ -184,7 +181,6 @@
"description": "Improve Darwin-support across Nixpkgs and help maintainers without access to Darwin hardware. Apply to join through https://github.com/NixOS/nixpkgs/issues/323144 to keep the process transparent.",
"id": 2385202,
"maintainers": {
"emilazy": 18535642,
"toonn": 1486805
},
"members": {
@@ -211,10 +207,12 @@
"cideM": 4246921,
"cidkidnix": 67574902,
"copumpkin": 2623,
"delafthi": 50531499,
"devusb": 4951663,
"domenkozar": 126339,
"dwt": 57199,
"eclairevoyant": 848000,
"emilazy": 18535642,
"ethancedwards8": 60861925,
"fiddlerwoaroof": 808745,
"fulsomenko": 14945057,
@@ -580,11 +578,11 @@
"id": 9955829,
"maintainers": {
"RossComputerGuy": 19699320,
"alyssais": 2768870,
"emilazy": 18535642
"alyssais": 2768870
},
"members": {
"Ericson2314": 1055245,
"emilazy": 18535642,
"peterwaller-arm": 52030119,
"rrbutani": 7833358
},
@@ -696,8 +694,8 @@
"eclairevoyant": 848000
},
"members": {
"Eveeifyeve": 88671402,
"daylinmorgan": 47667941
"daylinmorgan": 47667941,
"eveeifyeve": 88671402
},
"name": "nim"
},
@@ -756,16 +754,6 @@
},
"name": "Nixpkgs CI"
},
"nixpkgs-core": {
"description": "Provides leadership for and has authority over Nixpkgs.",
"id": 14317027,
"maintainers": {
"alyssais": 2768870,
"emilazy": 18535642
},
"members": {},
"name": "Nixpkgs core"
},
"nixpkgs-merge-bot": {
"description": "This team exists as a target for triggering the nixpkgs merge bot.",
"id": 13926892,
@@ -800,10 +788,11 @@
"description": "Maintain Pantheon desktop environment and platform",
"id": 4786995,
"maintainers": {
"bobby285271": 20080233,
"davidak": 91113
},
"members": {
"bobby285271": 20080233
"amz-x": 18249234
},
"name": "Pantheon"
},
@@ -907,7 +896,6 @@
"0x4A6F": 9675338
},
"members": {
"DarkKirb": 23011243,
"dramforever": 2818072,
"fgaz": 8182846,
"jonhermansen": 660911
@@ -1001,11 +989,11 @@
"id": 11265412,
"maintainers": {
"RossComputerGuy": 19699320,
"emilazy": 18535642,
"philiptaron": 43863
},
"members": {
"Ericson2314": 1055245,
"emilazy": 18535642,
"reckenrode": 7413633
},
"name": "stdenv"

View File

@@ -257,6 +257,12 @@
githubId = 3417013;
name = "Eske Nielsen";
};
_4evy = {
name = "4evy";
email = "git@evy.pink";
github = "4evy";
githubId = 57304299;
};
_4r7if3x = {
email = "the.artifex@proton.me";
matrix = "@4r7if3x:matrix.org";
@@ -1958,6 +1964,12 @@
githubId = 14838767;
name = "Jacopo Scannella";
};
antoineco = {
email = "hello@acotten.com";
github = "antoineco";
githubId = 3299086;
name = "Antoine Cotten";
};
anton-4 = {
name = "Anton";
github = "Anton-4";
@@ -2102,6 +2114,12 @@
githubId = 8436007;
name = "Aria Edmonds";
};
ar4m1s = {
name = "Aramis";
github = "Ar4m1s";
githubId = 59250656;
matrix = "@vegardbm:matrix.org";
};
arbel-arad = {
email = "arbel@spacetime.technology";
github = "arbel-arad";
@@ -3550,13 +3568,6 @@
githubId = 185443;
name = "Alexey Lebedeff";
};
binary-eater = {
email = "sergeantsagara@protonmail.com";
github = "Binary-Eater";
githubId = 10691440;
name = "Rahul Rameshbabu";
keys = [ { fingerprint = "678A 8DF1 D9F2 B51B 7110 BE53 FF24 7B3E 5411 387B"; } ];
};
binarycat = {
email = "binarycat@envs.net";
github = "lolbinarycat";
@@ -7981,6 +7992,12 @@
githubId = 1365692;
name = "Will Fancher";
};
elzorrorebelde = {
name = "Jorge Javier Araya Navarro";
email = "jorge@esavara.cr";
github = "elzorrorebelde";
githubId = 1055216;
};
emaiax = {
email = "github@emaiax.dev";
github = "emaiax";
@@ -9017,13 +9034,6 @@
name = "Sebastian Neubauer";
keys = [ { fingerprint = "2F93 661D AC17 EA98 A104 F780 ECC7 55EE 583C 1672"; } ];
};
FlameFlag = {
name = "FlameFlag";
email = "github@flameflag.dev";
github = "FlameFlag";
githubId = 57304299;
matrix = "@donteatoreo:matrix.org";
};
Flameopathic = {
email = "flameopathic@gmail.com";
github = "Flameopathic";
@@ -23364,6 +23374,12 @@
githubId = 12279531;
name = "Ricardo Guevara";
};
rharish = {
email = "harish.rajagopals@gmail.com";
github = "rharish101";
githubId = 25344287;
name = "Harish Rajagopal";
};
rhelmot = {
name = "Audrey Dutcher";
github = "rhelmot";
@@ -25123,12 +25139,6 @@
githubId = 5512096;
name = "Sébastien Guimmara";
};
shackra = {
name = "Jorge Javier Araya Navarro";
email = "jorge@esavara.cr";
github = "shackra";
githubId = 1055216;
};
shadaj = {
github = "shadaj";
githubId = 543055;
@@ -28271,6 +28281,12 @@
githubId = 5623227;
name = "Quentin Boyer";
};
tree-sapii = {
email = "supersapiiiiii@gmail.com";
github = "tree-sapii";
githubId = 144389458;
name = "sapii";
};
treemo = {
email = "matthieu.chevrier@treemo.fr";
github = "treemo";
@@ -29886,6 +29902,13 @@
githubId = 1595132;
name = "Kranium Gikos Mendoza";
};
WOnder93 = {
email = "omosnacek@gmail.com";
github = "WOnder93";
githubId = 3041388;
matrix = "@omos:fedora.im";
name = "Ondrej Mosnáček";
};
workflow = {
email = "4farlion@gmail.com";
github = "workflow";

View File

@@ -24,6 +24,8 @@
- [Nezha](https://github.com/nezhahq/nezha), a self-hosted, lightweight server and website monitoring and O&M tool. Available as [services.nezha](#opt-services.nezha.enable).
- [feishin](https://github.com/jeffvli/feishin), a modern self-hosted music player. Available as [services.feishin](#opt-services.feishin.enable).
- [FlapAlerted](https://github.com/Kioubit/FlapAlerted), detects BGP flapping events and provides statistics based on BGP update messages. Available as [services.flap-alerted](#opt-services.flap-alerted.enable).
## Backward Incompatibilities {#sec-release-26.11-incompatibilities}

View File

@@ -108,6 +108,10 @@ in
"pata_qdi"
"pata_winbond"
]
++ lib.optionals (lib.versionAtLeast config.boot.kernelPackages.kernel.version "7.2") [
# xhci-pci defers AMD 800-series chipset controllers to this driver.
"xhci_pci_prom21"
]
++ lib.optionals platform.isx86 [ "vmw_balloon" ]
++ lib.optionals (pkgs.stdenv.hostPlatform.isi686 || pkgs.stdenv.hostPlatform.isx86_64) [
"vmw_vmci"

View File

@@ -759,6 +759,7 @@
./services/logging/syslog-ng.nix
./services/logging/syslogd.nix
./services/logging/SystemdJournal2Gelf.nix
./services/logging/udp514-journal.nix
./services/logging/ulogd.nix
./services/logging/vector.nix
./services/mail/automx2.nix
@@ -1651,6 +1652,7 @@
./services/web-apps/engelsystem.nix
./services/web-apps/ente.nix
./services/web-apps/fediwall.nix
./services/web-apps/feishin.nix
./services/web-apps/fider.nix
./services/web-apps/filebrowser.nix
./services/web-apps/firefly-iii-data-importer.nix

View File

@@ -50,7 +50,7 @@ in
only the hosts listed in {var}`dataDir`/remote_hosts.cfg will be allowed to
connect.
See also: <https://boinc.berkeley.edu/wiki/Controlling_BOINC_remotely#Remote_access>
See also: <https://github.com/BOINC/boinc/wiki/Controlling_BOINC_remotely#remote-access>
'';
};

View File

@@ -435,6 +435,7 @@ in
optionalPackages = [
pkgs.adwaita-icon-theme
nixos-background-info
pkgs.glycin-thumbnailer # Image thumbnailers
pkgs.gnome-backgrounds
pkgs.gnome-bluetooth
pkgs.gnome-color-manager
@@ -443,6 +444,7 @@ in
pkgs.gnome-user-docs
pkgs.glib # for gsettings program
pkgs.gnome-menus
pkgs.gst-thumbnailers # Audio and video thumbnailers
pkgs.gtk3.out # for gtk-launch program
pkgs.xdg-user-dirs # Update user dirs as described in https://freedesktop.org/wiki/Software/xdg-user-dirs/
pkgs.xdg-user-dirs-gtk # Used to create the default bookmarks

View File

@@ -0,0 +1,95 @@
{
config,
lib,
pkgs,
...
}:
let
cfg = config.services.udp514-journal;
description = "Forward syslog from network (udp/514) to journal";
in
{
options = {
services.udp514-journal = {
enable = lib.mkEnableOption "the udp514-journal systemd socket/service";
openFirewall = lib.mkEnableOption "" // {
description = "Whether to open the port in the firewall.";
};
port = lib.mkOption {
type = lib.types.port;
default = 514;
description = "Port to listen on";
};
package = lib.mkPackageOption pkgs "udp514-journal" { };
};
};
config = lib.mkIf cfg.enable {
systemd.sockets.udp514-journal = {
enable = true;
name = "udp514-journal.socket";
inherit description;
listenDatagrams = [ (builtins.toString cfg.port) ];
wantedBy = [ "sockets.target" ];
};
systemd.services.udp514-journal = {
enable = true;
name = "udp514-journal.service";
inherit description;
requires = [
"systemd-journald.socket"
"udp514-journal.socket"
];
serviceConfig = {
Type = "notify";
Restart = "always";
ExecStart = "${cfg.package}/bin/udp514-journal";
DynamicUser = "on";
CapabilityBoundingSet = "";
AmbientCapabilities = "";
ProtectSystem = "strict";
ProtectHome = "on";
PrivateDevices = "on";
PrivateTmp = true;
PrivateUsers = "self";
PrivateNetwork = "on";
RestrictAddressFamilies = [ "AF_UNIX" ];
RestrictNamespaces = true;
RestrictSUIDSGID = true;
RestrictRealtime = true;
LockPersonality = true;
SystemCallArchitectures = "native";
SystemCallFilter = [
"@system-service"
"~@privileged"
"~@resources"
];
ProtectClock = true;
ProtectHostname = true;
ProtectKernelLogs = true;
ProtectKernelModules = true;
ProtectKernelTunables = "on";
ProtectControlGroups = "strict";
ProtectProc = "noaccess";
ProcSubset = "pid";
MemoryDenyWriteExecute = true;
NoNewPrivileges = true;
MemoryMax = "5M";
UMask = "0077";
};
confinement = {
enable = true;
binSh = null;
};
};
networking.firewall.allowedUDPPorts = lib.mkIf cfg.openFirewall [ cfg.port ];
};
meta.maintainers = with lib.maintainers; [ usovalx ];
}

View File

@@ -18,6 +18,7 @@ let
settingsFileUnsubstituted = cfg: settingsFormat.generate "mautrix-meta-config.yaml" cfg.settings;
metaName = name: "mautrix-meta-${name}";
packageName = network: if network == "instagram" then "mautrix-instagram" else "mautrix-meta";
enabledInstances = lib.filterAttrs (
name: config: config.enable
@@ -200,8 +201,10 @@ in
'';
description = ''
{file}`config.yaml` configuration as a Nix attribute set.
Configuration options should match those described in
[example-config.yaml](https://github.com/mautrix/meta/blob/main/example-config.yaml).
Configuration options should match those described in the example configuration.
Get an example configuration by executing one of those commands
- `mautrix-meta -c example.yaml --generate-example-config`
- `mautrix-instagram -c example.yaml --generate-example-config`
Secret tokens should be specified using {option}`environmentFile`
instead
@@ -471,7 +474,7 @@ in
cp '${settingsFile cfg}' '${settingsFile cfg}.tmp'
echo "Generating registration file"
mautrix-meta \
${lib.getExe' upperCfg.package (packageName cfg.settings.network.mode)} \
--generate-registration \
--config='${settingsFile cfg}.tmp' \
--registration='${cfg.registrationFile}'
@@ -568,7 +571,7 @@ in
EnvironmentFile = cfg.environmentFile;
ExecStart = lib.escapeShellArgs [
(lib.getExe upperCfg.package)
(lib.getExe' upperCfg.package (packageName cfg.settings.network.mode))
"--config=${settingsFile cfg}"
];
};

View File

@@ -1285,6 +1285,8 @@ in
services.postgresql = optionalAttrs databaseActuallyCreateLocally {
enable = true;
ensureUsers = singleton { name = cfg.databaseUsername; };
# With the PostgreSQL update to 17.6, the default was no longer enough.
settings.max_locks_per_transaction = lib.mkDefault 128;
};
# Enable rotation of log files
@@ -1455,6 +1457,7 @@ in
"d ${cfg.statePath}/custom_hooks/post-receive.d 0700 ${cfg.user} ${cfg.group} -"
"d ${cfg.statePath}/custom_hooks/update.d 0700 ${cfg.user} ${cfg.group} -"
"d ${gitlabConfig.production.shared.path} 0750 ${cfg.user} ${cfg.group} -"
"d ${gitlabConfig.production.shared.path}/agent_plan_content 0750 ${cfg.user} ${cfg.group} -"
"d ${gitlabConfig.production.shared.path}/artifacts 0750 ${cfg.user} ${cfg.group} -"
"d ${gitlabConfig.production.shared.path}/lfs-objects 0750 ${cfg.user} ${cfg.group} -"
"d ${gitlabConfig.production.shared.path}/packages 0750 ${cfg.user} ${cfg.group} -"

View File

@@ -679,7 +679,7 @@ in
environment = envVars;
serviceConfig = {
Type = "oneshot";
ExecStart = "${cfg.package}/bin/upsdrvctl shutdown";
ExecStart = "${cfg.package}/bin/upsdrvctl -u root shutdown";
};
};

View File

@@ -66,6 +66,7 @@ in
StateDirectory = "technitium-dns-server";
LogsDirectory = "technitium";
WorkingDirectory = "%S/technitium-dns-server";
Restart = "always";
RestartSec = 10;

View File

@@ -787,6 +787,7 @@ in
# Caches
PrivateTmp = true;
TemporaryFileSystem = "/dev/shm:mode=1777,nosuid,nodev";
CacheDirectory = [
"frigate"
# https://github.com/blakeblackshear/frigate/discussions/18129

View File

@@ -641,6 +641,8 @@ in
s3_http_continue_timeout = null;
s3_install_cors_rule = null;
s3_asset_cdn_url = null;
s3_role_arn = null;
s3_role_session_name = null;
max_user_api_reqs_per_minute = 20;
max_user_api_reqs_per_day = 2880;
@@ -667,7 +669,6 @@ in
compress_anon_cache = false;
anon_cache_store_threshold = 2;
allowed_theme_repos = null;
enable_email_sync_demon = false;
max_digests_enqueued_per_30_mins_per_site = 10000;
cluster_name = null;
multisite_config_path = "config/multisite.yml";
@@ -681,6 +682,10 @@ in
allow_impersonation = true;
log_line_max_chars = 160000;
yjit_enabled = false;
# this option is set to `true` in discourse's defaults.
# however, having this option enabled appears to cause a segfault in mini_racer
# see https://github.com/rubyjs/mini_racer/issues/422
mini_racer_single_threaded = false;
};
services.redis.servers.discourse =
@@ -951,27 +956,35 @@ in
# asset pipeline enables this
brotli_static on;
gzip_static on;
add_header Access-Control-Allow-Origin *;
'';
"~ ^/plugins/".extraConfig = cache_1y;
"~ /images/emoji/".extraConfig = cache_1y;
"~ ^/uploads/" = proxy {
extraConfig = cache_1y + ''
extraConfig = ''
proxy_set_header X-Sendfile-Type X-Accel-Redirect;
proxy_set_header X-Accel-Mapping ${cfg.package}/share/discourse/public/=/downloads/;
# custom CSS
location ~ /stylesheet-cache/ {
${cache_1y}
try_files $uri =404;
}
# this allows us to bypass rails
location ~* \.(gif|png|jpg|jpeg|bmp|tif|tiff|ico|webp)$ {
${cache_1y}
try_files $uri =404;
}
# SVG needs an extra header attached
# force attachment so SVGs can't render as a document on direct navigation
location ~* \.(svg)$ {
${cache_1y}
add_header Access-Control-Allow-Origin *;
add_header Content-Disposition attachment;
try_files $uri =404;
}
# thumbnails & optimized images
location ~ /_?optimized/ {
${cache_1y}
try_files $uri =404;
}
'';

View File

@@ -130,6 +130,7 @@ in
SystemCallFilter = [
"@system-service"
"~@privileged"
"@chown"
];
# User and group
DynamicUser = true;

View File

@@ -0,0 +1,156 @@
{
config,
lib,
pkgs,
...
}:
let
cfg = config.services.feishin;
in
{
options.services.feishin = {
enable = lib.mkEnableOption "the web version of Feishin";
package = lib.mkPackageOption pkgs "feishin-web" { };
domain = lib.mkOption {
description = "Domain to use for the virtualhost.";
type = lib.types.str;
};
pathbase = lib.mkOption {
description = "URL path base to use for the virtualhost.";
type = lib.types.str;
default = "";
example = "/music";
};
settings = lib.mkOption {
description = ''
Configuration for the web version of Feishin, specified as key-value pairs.
Refer to <https://github.com/jeffvli/feishin#configuration>, and
<https://github.com/jeffvli/feishin/blob/development/settings.js.template>
for the template.
'';
type = lib.types.attrsOf lib.types.str;
default = {
ANALYTICS_DISABLED = "true";
};
example = {
ANALYTICS_DISABLED = "true";
SERVER_NAME = "My Server";
SERVER_LOCK = "true";
};
};
nginx = {
enable = lib.mkEnableOption "a virtualhost to serve Feishin through nginx";
virtualHost = lib.mkOption {
description = "Extra configuration for the nginx virtualhost for Feishin.";
type = lib.types.submodule (import ../web-servers/nginx/vhost-options.nix { inherit config lib; });
default = { };
example = lib.literalExpression ''
{
serverAliases = [ "feishin.''${config.networking.domain}" ];
}
'';
};
};
caddy = {
enable = lib.mkEnableOption "a virtualhost to serve Feishin through Caddy";
virtualHost = lib.mkOption {
description = "Extra configuration for the Caddy virtualhost for Feishin.";
type = lib.types.submodule (
import ../web-servers/caddy/vhost-options.nix { cfg = config.services.caddy; }
);
default = { };
example = lib.literalExpression ''
{
serverAliases = [ "feishin.''${config.networking.domain}" ];
}
'';
};
};
};
config =
let
resolvedSettings =
cfg.settings // lib.optionalAttrs (cfg.pathbase != "") { PUBLIC_PATH = cfg.pathbase; };
settingsJs = ''
"use strict";
${lib.concatMapAttrsStringSep "\n" (name: value: ''window.${name} = "${value}";'') resolvedSettings}
'';
settingsJsDir = pkgs.writeTextDir "settings.js" settingsJs;
in
lib.mkIf cfg.enable {
services.nginx = lib.mkIf cfg.nginx.enable {
enable = lib.mkDefault true;
virtualHosts."${cfg.domain}" = lib.mkMerge [
cfg.nginx.virtualHost
{
root = lib.mkForce "${cfg.package}";
extraConfig = ''
gzip on;
gzip_vary on;
gzip_proxied any;
gzip_types text/plain text/css application/json application/javascript application/x-javascript text/xml application/xml application/xml+rss text/javascript;
'';
locations."${cfg.pathbase}/" = {
tryFiles = "$uri $uri/ /index.html =404";
};
locations."=${cfg.pathbase}/settings.js" = {
alias = settingsJsDir + "/settings.js";
extraConfig = ''
add_header Cache-Control "no-store";
'';
};
}
];
};
services.caddy = lib.mkIf cfg.caddy.enable {
enable = lib.mkDefault true;
virtualHosts."${cfg.domain}" = lib.mkMerge [
cfg.caddy.virtualHost
{
hostName = lib.mkForce cfg.domain;
extraConfig =
let
baseConfig = ''
encode
handle /settings.js {
header Cache-Control no-store
root ${settingsJsDir}
file_server
}
handle {
root ${cfg.package}
try_files {path} /index.html
file_server
}
'';
in
if (cfg.pathbase == "") then
baseConfig
else
''
handle_path ${cfg.pathbase}/* {
${baseConfig}
}
'';
}
];
};
};
meta.maintainers = with lib.maintainers; [
rharish
BatteredBunny
];
}

View File

@@ -12,17 +12,19 @@ let
# Only placeholders reach the world-readable Nix store; the install
# script substitutes the real secrets at runtime.
dbConfig =
cfg.database
// optionalAttrs (cfg.databasePasswordFile != null) {
password = "@databasePassword@";
};
flarumInstallConfig = pkgs.writeText "config.json" (
builtins.toJSON {
debug = false;
offline = false;
baseUrl = cfg.baseUrl;
databaseConfiguration =
cfg.database
// optionalAttrs (cfg.databasePasswordFile != null) {
password = "@databasePassword@";
};
databaseConfiguration = dbConfig;
adminUser = {
username = cfg.adminUser;
password =
@@ -34,6 +36,25 @@ let
};
}
);
phpFormat = pkgs.formats.php { };
configPhpFile = phpFormat.generate "flarum-config.php" {
debug = false;
database = dbConfig;
url = cfg.baseUrl;
paths = {
api = "api";
admin = "admin";
};
headers = {
poweredByHeader = true;
referrerPolicy = "same-origin";
};
queue = {
driver = "sync";
};
};
in
{
options.services.flarum = {
@@ -268,26 +289,31 @@ in
ln -sf ${cfg.package}/share/php/flarum/public/index.php public/
''
+ optionalString (cfg.createDatabaseLocally && cfg.database.driver == "mysql") ''
if [ ! -f config.php ]; then
install -m 0600 ${flarumInstallConfig} /tmp/flarum-install.json
${optionalString (cfg.initialAdminPasswordFile != null) ''
${pkgs.replace-secret}/bin/replace-secret '@adminPassword@' \
${escapeShellArg cfg.initialAdminPasswordFile} /tmp/flarum-install.json
''}
${optionalString (cfg.databasePasswordFile != null) ''
${pkgs.replace-secret}/bin/replace-secret '@databasePassword@' \
${escapeShellArg cfg.databasePasswordFile} /tmp/flarum-install.json
''}
php flarum install --file=/tmp/flarum-install.json
# config.php contains the database password; stateDir is world-readable
chmod 600 config.php
if [ ! -f .flarum-installed ]; then
if [ ! -f config.php ]; then
install -m 0600 ${flarumInstallConfig} /tmp/flarum-install.json
${optionalString (cfg.initialAdminPasswordFile != null) ''
${pkgs.replace-secret}/bin/replace-secret '@adminPassword@' \
${escapeShellArg cfg.initialAdminPasswordFile} /tmp/flarum-install.json
''}
${optionalString (cfg.databasePasswordFile != null) ''
${pkgs.replace-secret}/bin/replace-secret '@databasePassword@' \
${escapeShellArg cfg.databasePasswordFile} /tmp/flarum-install.json
''}
php flarum install --file=/tmp/flarum-install.json
fi
touch .flarum-installed
fi
''
+ ''
if [ -f config.php ]; then
php flarum migrate
php flarum cache:clear
fi
install -m 0600 ${configPhpFile} config.php
${optionalString (cfg.databasePasswordFile != null) ''
${pkgs.replace-secret}/bin/replace-secret '@databasePassword@' \
${escapeShellArg cfg.databasePasswordFile} config.php
''}
php flarum migrate
php flarum cache:clear
'';
};
};

View File

@@ -214,7 +214,13 @@ in
abi <abi/4.0>,
include <tunables/global>
profile ${cfg.package}/bin/miniflux {
# Flag `attach_disconnected` is necessary
# because the PostgreSQL socket path appears
# as a "disconnected" path: `run/postgresql/.s.PGSQL.XXXX`,
# without the trailing slash, which AppArmor can't resolve.
# The flag prepends a `/`, which isn't recommended,
# but there aren't any alternative currently.
profile ${cfg.package}/bin/miniflux flags=(attach_disconnected) {
include <abstractions/base>
include <abstractions/nameservice>
include <abstractions/ssl_certs>
@@ -222,6 +228,8 @@ in
include "${pkgs.apparmorRulesFromClosure { name = "miniflux"; } cfg.package}"
${cfg.package}/bin/miniflux r,
/run/miniflux/** rw,
/run/postgresql/.s.PGSQL.* rw,
/run/credentials/** r,
include if exists <local/bin.miniflux>
}
'';

View File

@@ -231,7 +231,7 @@ in
webserver = lib.mkOption {
type = lib.types.attrTag {
nginx = lib.mkOption {
type = lib.types.submodule (import ../web-servers/nginx/vhost-options.nix);
type = lib.types.submodule ../web-servers/nginx/vhost-options.nix;
default = { };
description = ''
Extra configuration for the nginx virtual host of Misskey.
@@ -240,7 +240,7 @@ in
};
caddy = lib.mkOption {
type = lib.types.submodule (
import ../web-servers/caddy/vhost-options.nix { cfg = config.services.caddy; }
lib.modules.importApply ../web-servers/caddy/vhost-options.nix { cfg = config.services.caddy; }
);
default = { };
description = ''

View File

@@ -370,6 +370,10 @@ in
"hid_corsair"
]
++ optionals (versionAtLeast kernel.version "7.2") [
# xhci-pci defers AMD 800-series chipset controllers to this driver.
"xhci_pci_prom21"
]
++ optionals pkgs.stdenv.hostPlatform.isx86 [
# Misc. x86 keyboard stuff.
"pcips2"

View File

@@ -560,6 +560,7 @@ in
fastnetmon-advanced = runTest ./fastnetmon-advanced.nix;
fcitx5 = runTest ./fcitx5;
fedimintd = runTest ./fedimintd.nix;
feishin = handleTest ./feishin { };
ferm = runTest ./ferm.nix;
ferretdb = import ./ferretdb.nix { inherit pkgs runTest; };
fider = runTest ./fider.nix;
@@ -1755,6 +1756,7 @@ in
ucarp = runTest ./ucarp.nix;
udisks2 = runTest ./udisks2.nix;
udp-over-tcp = runTest ./udp-over-tcp.nix;
udp514-journal = runTest ./udp514-journal.nix;
ulogd = runTest ./ulogd/ulogd.nix;
umami = runTest ./web-apps/umami.nix;
umurmur = runTest ./umurmur.nix;

View File

@@ -0,0 +1,36 @@
import ../make-test-python.nix (
{ lib, ... }:
{
name = "feishin-caddy";
meta.maintainers = with lib.maintainers; [
rharish
BatteredBunny
];
nodes.machine =
{ pkgs, ... }:
{
services.feishin = {
enable = true;
domain = "localhost:80";
pathbase = "/feishin";
settings = {
ANALYTICS_DISABLED = "true";
};
caddy.enable = true;
caddy.virtualHost.extraConfig = "tls internal";
};
# disable letsencrypt cert fetching
services.caddy.globalConfig = "auto_https disable_certs";
};
testScript = ''
machine.wait_for_unit("caddy.service")
machine.wait_for_open_port(80)
machine.succeed("curl -vvv --fail --show-error --silent --location --insecure http://localhost/feishin/")
assert "<title>Feishin</title>" in machine.succeed("curl --fail --show-error --silent --location --insecure http://localhost/feishin/")
assert "window.ANALYTICS_DISABLED = \"true\";" in machine.succeed("curl --fail --show-error --silent --location --insecure http://localhost/feishin/settings.js")
'';
}
)

View File

@@ -0,0 +1,6 @@
{ system, pkgs, ... }:
{
caddy = import ./caddy.nix { inherit system pkgs; };
nginx = import ./nginx.nix { inherit system pkgs; };
}

View File

@@ -0,0 +1,33 @@
import ../make-test-python.nix (
{ lib, ... }:
{
name = "feishin-nginx";
meta.maintainers = with lib.maintainers; [
rharish
BatteredBunny
];
nodes.machine =
{ pkgs, ... }:
{
services.feishin = {
enable = true;
domain = "localhost";
pathbase = "/feishin";
settings = {
ANALYTICS_DISABLED = "true";
};
nginx.enable = true;
};
};
testScript = ''
machine.wait_for_unit("nginx.service")
machine.wait_for_open_port(80)
machine.succeed("curl -vvv --fail --show-error --silent --location --insecure http://localhost/feishin/")
assert "<title>Feishin</title>" in machine.succeed("curl --fail --show-error --silent --location --insecure http://localhost/feishin/")
assert "window.ANALYTICS_DISABLED = \"true\";" in machine.succeed("curl --fail --show-error --silent --location --insecure http://localhost/feishin/settings.js")
'';
}
)

View File

@@ -69,5 +69,17 @@
# not be world-readable.
machine.succeed("grep -q 'flarum-db-password' /var/lib/flarum/config.php")
machine.succeed("[ $(stat -c %a /var/lib/flarum/config.php) = 600 ]")
# `flarum install` must not rerun on later activations, or it errors out
# since the database already exists.
machine.succeed(
"echo 'create table nixos_test_marker (id int); insert into nixos_test_marker values (1);' "
+ "| sudo -u flarum mysql -u flarum flarum"
)
machine.succeed("systemctl restart flarum-install.service")
machine.succeed(
"echo 'select id from nixos_test_marker;' | sudo -u flarum mysql -u flarum flarum -N | grep -q 1"
)
machine.succeed("[ -f /var/lib/flarum/.flarum-installed ]")
'';
}

View File

@@ -71,6 +71,7 @@ in
];
};
boot.kernelPackages = pkgs.linuxPackages_latest;
networking.jool.enable = true;
networking.jool.siit.default.global.pool6 = "fd::/96";
};
@@ -191,6 +192,7 @@ in
];
};
boot.kernelPackages = pkgs.linuxPackages_latest;
networking.jool.enable = true;
networking.jool.nat64.default = {
bib = [
@@ -206,17 +208,17 @@ in
{
protocol = "TCP";
prefix = "203.0.113.1/32";
"port range" = "40001-65535";
"port range" = "20000-29999";
}
{
protocol = "UDP";
prefix = "203.0.113.1/32";
"port range" = "40001-65535";
"port range" = "20000-29999";
}
{
protocol = "ICMP";
prefix = "203.0.113.1/32";
"port range" = "40001-65535";
"port range" = "20000-29999";
}
# Ports for static BIB entries
{

View File

@@ -90,12 +90,21 @@ in
as_token = "$AS_TOKEN";
hs_token = "$HS_TOKEN";
database = {
type = "postgres";
uri = "postgres:///mautrix-meta-instagram?host=/var/run/postgresql";
bot = {
username = botUserName;
avatar = "";
};
};
bot.username = botUserName;
database = {
type = "postgres";
uri = "postgres:///mautrix-meta-instagram?host=/var/run/postgresql";
};
encryption = {
allow = false;
default = false;
require = false;
};
bridge.permissions."@${userName}:server" = "user";
@@ -127,13 +136,14 @@ in
import functools
import asyncio
from nio import AsyncClient, RoomMessageNotice, RoomCreateResponse, RoomInviteResponse
from nio import AsyncClient, RoomMessageText, RoomCreateResponse, RoomInviteResponse
async def message_callback(matrix: AsyncClient, msg: str, _r, e):
async def message_callback(matrix: AsyncClient, expected_msg: str, expected_sender: str, _r, e):
print("Received matrix text message: ", e)
assert msg in e.body
exit(0) # Success!
if getattr(e, "sender", "") == expected_sender and expected_msg in getattr(e, "body", ""):
print("Success!")
exit(0) # Success!
async def run(homeserver: str):
@@ -151,9 +161,9 @@ in
assert isinstance(response, RoomInviteResponse)
callback = functools.partial(
message_callback, matrix, "Hello, I'm an Instagram bridge bot."
message_callback, matrix, "Hello, I'm a Instagram bridge bot.", "@${botUserName}:${homeserverDomain}"
)
matrix.add_event_callback(callback, RoomMessageNotice)
matrix.add_event_callback(callback, RoomMessageText)
print("Waiting for matrix message...")
await matrix.sync_forever(timeout=30000)
@@ -171,11 +181,10 @@ in
def extract_token(data):
stdout = data[1]
stdout = stdout.strip()
line = stdout.split('\n')[-1]
return line.split(':')[-1].strip("\" '\n")
return stdout.split(':')[-1].strip("\" '\n")
def get_token_from(token, file):
data = server.execute(f"cat {file} | grep {token}")
data = server.execute(f"grep -E '^\\s*{token}:' {file}")
return extract_token(data)
def get_as_token_from(file):

View File

@@ -4,7 +4,7 @@ let
homeserverUrl = "http://server:8008";
username = "alice";
instagramBotUsername = "instagrambot";
facebookBotUsername = "facebookbot";
metaBotUsername = "metabot";
in
{
name = "mautrix-meta-sqlite";
@@ -60,7 +60,16 @@ in
appservice = {
port = 8009;
bot.username = facebookBotUsername;
bot = {
username = metaBotUsername;
avatar = "";
};
};
encryption = {
allow = false;
default = false;
require = false;
};
bridge.permissions."@${username}:server" = "user";
@@ -79,7 +88,16 @@ in
appservice = {
port = 8010;
bot.username = instagramBotUsername;
bot = {
username = instagramBotUsername;
avatar = "";
};
};
encryption = {
allow = false;
default = false;
require = false;
};
bridge.permissions."@${username}:server" = "user";
@@ -136,16 +154,17 @@ in
import functools
import asyncio
from nio import AsyncClient, RoomMessageNotice, RoomCreateResponse, RoomInviteResponse
from nio import AsyncClient, RoomMessageText, RoomCreateResponse, RoomInviteResponse
async def message_callback(matrix: AsyncClient, msg: str, _r, e):
async def message_callback(matrix: AsyncClient, expected_msg: str, expected_sender: str, _r, e):
print("Received matrix text message: ", e)
assert msg in e.body
exit(0) # Success!
if getattr(e, "sender", "") == expected_sender and expected_msg in getattr(e, "body", ""):
print("Success!")
exit(0) # Success!
async def run(username: str, bot_username: str, homeserver: str):
async def run(username: str, bot_username: str, homeserver: str, expected_msg: str):
matrix = AsyncClient(homeserver, f"@{username}:${homeserverDomain}")
response = await matrix.login("foobar")
@@ -161,16 +180,16 @@ in
assert isinstance(response, RoomInviteResponse)
callback = functools.partial(
message_callback, matrix, "Hello, I'm an Instagram bridge bot."
message_callback, matrix, expected_msg, f"@{bot_username}:${homeserverDomain}"
)
matrix.add_event_callback(callback, RoomMessageNotice)
matrix.add_event_callback(callback, RoomMessageText)
print("Waiting for matrix message...")
await matrix.sync_forever(timeout=30000)
if __name__ == "__main__":
asyncio.run(run(sys.argv[1], sys.argv[2], sys.argv[3]))
asyncio.run(run(sys.argv[1], sys.argv[2], sys.argv[3], sys.argv[4]))
''
)
];
@@ -181,11 +200,10 @@ in
def extract_token(data):
stdout = data[1]
stdout = stdout.strip()
line = stdout.split('\n')[-1]
return line.split(':')[-1].strip("\" '\n")
return stdout.split(':')[-1].strip("\" '\n")
def get_token_from(token, file):
data = server.execute(f"cat {file} | grep {token}")
data = server.execute(f"grep -E '^\\s*{token}:' {file}")
return extract_token(data)
def get_as_token_from(file):
@@ -216,8 +234,8 @@ in
client.succeed("register_user ${username} ${homeserverUrl} >&2")
with subtest("ensure messages can be exchanged"):
client.succeed("do_test ${username} ${facebookBotUsername} ${homeserverUrl} >&2")
client.succeed("do_test ${username} ${instagramBotUsername} ${homeserverUrl} >&2")
client.succeed("do_test ${username} ${metaBotUsername} ${homeserverUrl} \"Hello, I'm a Facebook Messenger bridge bot.\" >&2")
client.succeed("do_test ${username} ${instagramBotUsername} ${homeserverUrl} \"Hello, I'm a Instagram bridge bot.\" >&2")
with subtest("ensure as_token and hs_token stays same after restart"):
generated_as_token_facebook = get_as_token_from(config_yaml)
@@ -252,7 +270,7 @@ in
assert generated_hs_token_facebook == new_hs_token_facebook, f"hs_token should stay the same after restart inside the registration file (is: {new_hs_token_facebook}, was: {generated_hs_token_facebook})"
with subtest("ensure messages can be exchanged after restart"):
client.succeed("do_test ${username} ${instagramBotUsername} ${homeserverUrl} >&2")
client.succeed("do_test ${username} ${facebookBotUsername} ${homeserverUrl} >&2")
client.succeed("do_test ${username} ${instagramBotUsername} ${homeserverUrl} \"Hello, I'm a Instagram bridge bot.\" >&2")
client.succeed("do_test ${username} ${metaBotUsername} ${homeserverUrl} \"Hello, I'm a Facebook Messenger bridge bot.\" >&2")
'';
}

View File

@@ -118,7 +118,7 @@ in
(pkgs.writers.writePython3Bin "create_management_room_and_invite_mjolnir"
{
libraries = with pkgs.python3Packages; [
(matrix-nio.override { withOlm = true; })
(matrix-nio.override { withVodozemac = true; })
];
}
''

View File

@@ -29,6 +29,7 @@ in
default =
{ ... }:
{
security.apparmor.enable = true;
services.miniflux = {
enable = true;
inherit adminCredentialsFile;
@@ -38,6 +39,7 @@ in
withoutSudo =
{ ... }:
{
security.apparmor.enable = true;
services.miniflux = {
enable = true;
inherit adminCredentialsFile;
@@ -48,6 +50,7 @@ in
customized =
{ ... }:
{
security.apparmor.enable = true;
services.miniflux = {
enable = true;
config = {
@@ -82,6 +85,7 @@ in
externalDb =
{ ... }:
{
security.apparmor.enable = true;
services.miniflux = {
enable = true;
createDatabaseLocally = false;
@@ -105,6 +109,7 @@ in
machine.succeed(
f"curl 'http://localhost:{port}/v1/me' -u '{user}' -H Content-Type:application/json | grep '\"is_admin\":true'"
)
machine.fail('journalctl -b --no-pager --grep "^audit: .*apparmor=\\"DENIED\\""')
default.start()
withoutSudo.start()

View File

@@ -21,12 +21,14 @@ let
from selenium.webdriver.common.by import By
from selenium.webdriver import Firefox
from selenium.webdriver.firefox.options import Options
from selenium.webdriver.firefox.service import Service
from selenium.webdriver.support.ui import WebDriverWait
from selenium.webdriver.support import expected_conditions as EC
options = Options()
options.add_argument('--headless')
driver = Firefox(options=options)
service = Service(executable_path="${lib.getExe pkgs.geckodriver}")
driver = Firefox(options=options, service=service)
host = sys.argv[1]
user = sys.argv[2]
@@ -71,6 +73,7 @@ in
environment = {
ADMIN_PASSWORD = adminPassword;
IDM_CREATE_DEMO_USERS = "true";
IDM_LDAPS_ADDR = "127.0.0.1:9235";
IDM_LDAPS_CERT = "${certs.${domain}.cert}";
IDM_LDAPS_KEY = "${certs.${domain}.key}";
OC_INSECURE = "false";

View File

@@ -0,0 +1,25 @@
{
lib,
pkgs,
...
}:
{
name = "udp514-journal";
meta.maintainers = with lib.maintainers; [ usovalx ];
containers.machine = {
services.udp514-journal.enable = true;
environment.systemPackages = [ pkgs.netcat ];
};
testScript = ''
start_all()
machine.wait_for_unit("udp514-journal.socket");
# send a test log entry via UDP, RFC 5424 format
machine.execute('echo "<34>1 2026-08-01T00:24:15.123+01:00 router01 - testing" | nc -w1 -u localhost 514')
machine.wait_until_succeeds('journalctl -u udp514-journal --grep "router01 - testing"', timeout = 60)
'';
}

View File

@@ -21,11 +21,11 @@ assert withConplay -> !libOnly;
stdenv.mkDerivation (finalAttrs: {
pname = "${lib.optionalString libOnly "lib"}mpg123";
version = "1.33.4";
version = "1.33.7";
src = fetchurl {
url = "mirror://sourceforge/mpg123/mpg123-${finalAttrs.version}.tar.bz2";
hash = "sha256-OujJ/4Cpe/wOIuifvNdGh+yk/B2zFbEmB/J/ActaR9k=";
hash = "sha256-MdDjWkylZ+ybXr2mwwYrtENdbT6s1u8NlcrdeFTcA+4=";
};
outputs = [

View File

@@ -131,6 +131,11 @@ in
url = "https://gitweb.gentoo.org/proj/emacs-patches.git/plain/emacs/30.2/02_all_ts-query-pred.patch?id=86190bf195b3e17108372d8ad89eb57037180dd2";
hash = "sha256-0GPyfKLSaB09a8hamrSf6lx4Qk8Big4AKMOivkN1wEM=";
})
(fetchpatch {
name = "nullify-read-symbol-shorthands-around-risky-intern-calls-80574.patch";
url = "https://cgit.git.savannah.gnu.org/cgit/emacs.git/patch/?id=8466eb44991707d128110bdc549fad14c8e1d61e";
hash = "sha256-SyRCay2MahCJovtzBHA9M1H9hXhtD5IG3ZFSEUwaWlg=";
})
];
});
@@ -156,6 +161,11 @@ in
url = "https://gitweb.gentoo.org/proj/emacs-patches.git/plain/emacs/30.2/02_all_ts-query-pred.patch?id=86190bf195b3e17108372d8ad89eb57037180dd2";
hash = "sha256-0GPyfKLSaB09a8hamrSf6lx4Qk8Big4AKMOivkN1wEM=";
})
(fetchpatch {
name = "nullify-read-symbol-shorthands-around-risky-intern-calls-80574.patch";
url = "https://cgit.git.savannah.gnu.org/cgit/emacs.git/patch/?id=8466eb44991707d128110bdc549fad14c8e1d61e";
hash = "sha256-SyRCay2MahCJovtzBHA9M1H9hXhtD5IG3ZFSEUwaWlg=";
})
];
});
}

View File

@@ -23,6 +23,26 @@
libGL,
libx11,
# bundled jcef-plugin
alsa-lib,
at-spi2-atk,
at-spi2-core,
atk,
cairo,
cups,
dbus,
libgbm,
libxcb,
libxcomposite,
libxdamage,
libxext,
libxfixes,
libxkbcommon,
libxrandr,
nspr,
nss,
pango,
jdk,
vmopts ? null,
forceWayland ? null,
@@ -88,6 +108,24 @@ lib.extendMkDerivation {
libx11
# required for the bundled jcef-plugin
udev
alsa-lib
at-spi2-atk
at-spi2-core
atk
cairo
cups
dbus
libgbm
libxcb
libxcomposite
libxdamage
libxext
libxfixes
libxkbcommon
libxrandr
nspr
nss
pango
];
nativeBuildInputs = nativeBuildInputs ++ [
@@ -106,6 +144,19 @@ lib.extendMkDerivation {
patch -F3 -p1 < ${../patches/jetbrains-remote-dev.patch}
fi
# The bundled libraries of the remote dev server are not used (see the patch above),
# so drop them. This has to happen before autoPatchelfHook runs, otherwise their
# directory ends up in the RPATH of unrelated binaries, see below.
rm -rf plugins/remote-dev-server/selfcontained
# libjcef.so has "." in its RPATH. autoPatchelfHook follows the RPATHs of the
# libraries it indexes and resolves that "." against the build directory, which
# makes it prefer bundled copies of libraries over the ones from nixpkgs and
# bake build-time-only paths into the RPATHs it writes.
if [ -e plugins/jcef-plugin/jcef/libjcef.so ]; then
patchelf --set-rpath '$ORIGIN' plugins/jcef-plugin/jcef/libjcef.so
fi
vmopts_file=bin/linux/${vmoptsName}
if [[ ! -f $vmopts_file ]]; then
vmopts_file=bin/${vmoptsName}
@@ -179,7 +230,6 @@ lib.extendMkDerivation {
fi
ln -s "$launcher" $out/bin/$pname
rm -rf $out/$pname/plugins/remote-dev-server/selfcontained/
echo -e '#!/usr/bin/env bash\n'"$out/$pname/bin/remote-dev-server.sh"' "$@"' > $out/$pname/bin/remote-dev-server-wrapped.sh
chmod +x $out/$pname/bin/remote-dev-server-wrapped.sh
ln -s "$out/$pname/bin/remote-dev-server-wrapped.sh" $out/bin/$pname-remote-dev-server

View File

@@ -5,18 +5,28 @@
callPackage,
python3,
jetbrains,
jdk,
vmopts ? null,
forceWayland ? false,
}:
let
mkJetBrainsProduct = callPackage ./builder/default.nix { inherit jdk forceWayland vmopts; };
mkJetBrainsSource = callPackage ./source/build.nix { };
jetbrainsBuilder =
jdk:
callPackage ./builder/default.nix {
inherit jdk forceWayland vmopts;
};
mkSrcIde =
path: extras: callPackage path ({ inherit mkJetBrainsProduct mkJetBrainsSource; } // extras);
path: extras:
callPackage path (
{
mkJetBrainsProduct = jetbrainsBuilder jetbrains.jdk;
mkJetBrainsSource = callPackage ./source/build.nix { };
}
// extras
);
_idea-oss = mkSrcIde ./ides/idea-oss.nix { };
@@ -25,7 +35,7 @@ let
path: extras:
callPackage path (
{
inherit mkJetBrainsProduct;
mkJetBrainsProduct = jetbrainsBuilder jetbrains.jdk-no-jcef;
libdbm = _idea-oss.libdbm;
fsnotifier = _idea-oss.fsnotifier;
}

View File

@@ -13,20 +13,20 @@ let
# update-script-start: urls
urls = {
x86_64-linux = {
url = "https://download.jetbrains.com/python/pycharm-2026.2.tar.gz";
hash = "sha256-rDb3wHQ0ZSFb+CJwebdycpRTOMSFwdprkk5WRoBGvVo=";
url = "https://download.jetbrains.com/python/pycharm-2026.2.0.1.tar.gz";
hash = "sha256-SjfLLRVwNVPGHoFNjgFL+kcwhQhHDeX5aMTpZFt3FnU=";
};
aarch64-linux = {
url = "https://download.jetbrains.com/python/pycharm-2026.2-aarch64.tar.gz";
hash = "sha256-O2PS9JDBTFQcmK/YUfIYBpo8iFzq7dm9sA5aByhc+AI=";
url = "https://download.jetbrains.com/python/pycharm-2026.2.0.1-aarch64.tar.gz";
hash = "sha256-8ptqeCpY+rsjJxXbj++XZb/a68brWQ7UYsT5ZWIidCc=";
};
x86_64-darwin = {
url = "https://download.jetbrains.com/python/pycharm-2026.1.4.dmg";
hash = "sha256-Q5hTcYoNUzmAxwcsXJNS4medQjFKWc/Sgkybt4PQPfg=";
};
aarch64-darwin = {
url = "https://download.jetbrains.com/python/pycharm-2026.2-aarch64.dmg";
hash = "sha256-wiOQISfsvBnlpjeyzAPXUJfXOwYwrZ8nGoiRRvQ4YUY=";
url = "https://download.jetbrains.com/python/pycharm-2026.2.0.1-aarch64.dmg";
hash = "sha256-X3YP6mtKkBvBp2UoQWfwX5AjenwwwKTSmP9GUESVDdQ=";
};
};
# update-script-end: urls
@@ -40,8 +40,8 @@ in
product = "PyCharm";
# update-script-start: version
version = "2026.2";
buildNumber = "262.8665.309";
version = "2026.2.0.1";
buildNumber = "262.8665.369";
# update-script-end: version
src = fetchurl (urls.${system} or (throw "Unsupported system: ${system}"));

View File

@@ -24,20 +24,20 @@ let
# update-script-start: urls
urls = {
x86_64-linux = {
url = "https://download.jetbrains.com/rider/JetBrains.Rider-2026.2.tar.gz";
hash = "sha256-7rvEnimFJJbLx/Y5nrR7VuipX8khxNrnwFzKay9tIqc=";
url = "https://download.jetbrains.com/rider/JetBrains.Rider-2026.2.0.1.tar.gz";
hash = "sha256-fpc9aJufO2Qiw7dyr1uOsMHsvBruFuX4D0KY1erpmwo=";
};
aarch64-linux = {
url = "https://download.jetbrains.com/rider/JetBrains.Rider-2026.2-aarch64.tar.gz";
hash = "sha256-fvdgV1Q8gLgYB/ihrpukJW9DqLupZ45JGKad7vovAIo=";
url = "https://download.jetbrains.com/rider/JetBrains.Rider-2026.2.0.1-aarch64.tar.gz";
hash = "sha256-MuK1dvi3fnPdSyETPeEkW4k7hNFPkHYtaKjp/IZzdIU=";
};
x86_64-darwin = {
url = "https://download.jetbrains.com/rider/JetBrains.Rider-2026.1.4.dmg";
hash = "sha256-GfQ5WpKunJ+JhE1VcArm3UxZ5udCbfnS1Kw3D4gZorA=";
};
aarch64-darwin = {
url = "https://download.jetbrains.com/rider/JetBrains.Rider-2026.2-aarch64.dmg";
hash = "sha256-Y+hXTTMqHHGm5pJhQ8yepmZmAzkiF7ylOxroOa9BG6Q=";
url = "https://download.jetbrains.com/rider/JetBrains.Rider-2026.2.0.1-aarch64.dmg";
hash = "sha256-q0UXuh2RuH0sC1kqbjv0QcxmLtml9v3qeLRVcjCCVuw=";
};
};
# update-script-end: urls
@@ -51,8 +51,8 @@ in
product = "Rider";
# update-script-start: version
version = "2026.2";
buildNumber = "262.8665.328";
version = "2026.2.0.1";
buildNumber = "262.8665.385";
# update-script-end: version
src = fetchurl (urls.${system} or (throw "Unsupported system: ${system}"));

View File

@@ -9,6 +9,8 @@
enablePythonEcdsa ? false,
callPackage,
qtwayland,
writableTmpDirAsHomeHook,
}:
let
@@ -22,17 +24,15 @@ let
in
python3.pkgs.buildPythonApplication (finalAttrs: {
pname = "electrum";
version = "4.8.0";
version = "4.8.1";
pyproject = true;
src = fetchurl {
url = "https://download.electrum.org/${finalAttrs.version}/Electrum-${finalAttrs.version}.tar.gz";
hash = "sha256-z14bzs81eJNTMSWSBLTyCmsljDNztG54SVkoTcSqvsM=";
hash = "sha256-71t/YdLItZg6D5yFFVbjpveKncIv5hG7pJxu67a9/b4=";
};
build-system = with python3.pkgs; [
setuptools
];
build-system = [ python3.pkgs.setuptools ];
nativeBuildInputs = [
python3.pkgs.pythonRelaxDepsHook
@@ -67,13 +67,13 @@ python3.pkgs.buildPythonApplication (finalAttrs: {
ledger-bitcoin
cbor2
pyserial
trezor
]
++ lib.optionals enablePythonEcdsa [
# enablePythonEcdsa gates plugins known to pull in python-ecdsa, which we
# avoid by default due to CVE-2024-23342.
ckcc-protocol
keepkey
trezor
bitbox02
]
++ lib.optionals enableQt [
@@ -90,11 +90,9 @@ python3.pkgs.buildPythonApplication (finalAttrs: {
"protobuf"
];
checkInputs =
with python3.pkgs;
lib.optionals enableQt [
pyqt6
];
checkInputs = lib.optionals enableQt [
python3.pkgs.pyqt6
];
disabledTestPaths = lib.optionals (!enableQt) [
"tests/test_qml_types.py"
];
@@ -132,14 +130,15 @@ python3.pkgs.buildPythonApplication (finalAttrs: {
pytestCheckHook
pyaes
pycryptodomex
# avoid homeless-shelter error in tests
writableTmpDirAsHomeHook
];
enabledTestPaths = [ "tests" ];
# avoid homeless-shelter error in tests
preCheck = ''
export PYTHONPATH=${python3.pkgs.protobuf}/${python3.sitePackages}:$PYTHONPATH
export HOME="$(mktemp -d)"
'';
postCheck = ''

View File

@@ -653,6 +653,28 @@ let
# which is annoying, so let's make it use Go from $PATH for
# both (all) architectures instead.
./patches/chromium-151-dawn-use-Go-from-PATH.patch
]
++ lib.optionals (chromiumVersionAtLeast "151.0.7922.169" && !ungoogled) [
# Don't show misleading Terms of Service dialog on first run that literally says [^1]
#
# > This Space Intentionally Blank
# >
# > In official builds this space will show the terms of service.
#
# "official builds" refers to offical Google Chrome builds, not Chromium, for which we
# explicitly set is_official_build=true as gn flag. If this does ever change to something
# actually worthwhile, we can drop this revert and update our VM test to handle this dialog.
# Exclude ungoogled-chromium, as it ships its own variant of this patch.
# [^1]: https://chromium.googlesource.com/chromium/src/+/151.0.7922.169/components/resources/terms/terms_chromium.txt
(fetchpatch {
name = "chromium-151-revert-Show-Linux-first-run-terms-of-service-dialog-by-default.patch";
# https://chromium-review.googlesource.com/c/chromium/src/+/8257374
url = "https://chromium.googlesource.com/chromium/src/+/ae9b17ac975d4b10af762e9344083d858f1347ce^!?format=TEXT";
decode = "base64 -d";
revert = true;
includes = [ "chrome/browser/first_run/first_run.h" ];
hash = "sha256-d1Zm2flZPG++ROF4CCawn9U8T7/qgZFMHTXArqIShTk=";
})
];
postPatch =

View File

@@ -1,10 +1,10 @@
{
"chromium": {
"version": "151.0.7922.108",
"version": "151.0.7922.173",
"chromedriver": {
"version": "151.0.7922.109",
"hash_darwin": "sha256-VzMu90gOs02icI3PgvpNYXeE5c0QjCVB9CpM287roZo=",
"hash_darwin_aarch64": "sha256-5djEbPAayOVr8hr2VfXvlU4W6F+Kd/wiCt5NvQtgoOY="
"version": "151.0.7922.174",
"hash_darwin": "sha256-ZvSYSZVVXOUVNjBkrXNQ04qdUcAj7Z2RbWPt6/rVkdo=",
"hash_darwin_aarch64": "sha256-10cDX124TzB9kIQfx+Jxzz6mgo3Aq/C+Nfwy9BR0F2c="
},
"deps": {
"depot_tools": {
@@ -21,8 +21,8 @@
"DEPS": {
"src": {
"url": "https://chromium.googlesource.com/chromium/src.git",
"rev": "4744b886309d987d292e43232776d2206cccb13d",
"hash": "sha256-1i2IAA5sXyMPBzh6xOIY3CllEDtIS9Buk8Z2Vm1JnYw=",
"rev": "a96602f30358e9b5d256a0464e7e4d4bec223004",
"hash": "sha256-uumIVSzf318Xd1JB9jESXgpLxXlrvMDclOzSFQqweZ8=",
"recompress": true
},
"src/third_party/clang-format/script": {
@@ -92,8 +92,8 @@
},
"src/third_party/angle": {
"url": "https://chromium.googlesource.com/angle/angle.git",
"rev": "a17d5224d83f6018eb6a21a644ad9ef86eac475d",
"hash": "sha256-oXjtHByC3KrLgG3by6OdvID4ViM+2AnSft+fcspbNG0="
"rev": "a17d6c8e92696bc78bcbdaf56fc197ebd0cc1fde",
"hash": "sha256-lz8BqENfeHI31L1EOHWlCcE+tANVwuZVrqVDYXMjqQU="
},
"src/third_party/angle/third_party/glmark2/src": {
"url": "https://chromium.googlesource.com/external/github.com/glmark2/glmark2",
@@ -137,8 +137,8 @@
},
"src/third_party/dawn": {
"url": "https://dawn.googlesource.com/dawn.git",
"rev": "48d9737ff728e6211290d591b203a44cb77a2cc5",
"hash": "sha256-OZkgORs2BdFc4tbKD6gUAzqOA/BQ2K3al1p7zggSv0Q="
"rev": "29256ad98530582b82d1d6b76bae8354f1565e74",
"hash": "sha256-7fh6g+xTrmqa1flbs2NTdiQiaj8N3LShIx3GeqqbZq0="
},
"src/third_party/dawn/third_party/glfw3/src": {
"url": "https://chromium.googlesource.com/external/github.com/glfw/glfw",
@@ -657,8 +657,8 @@
},
"src/third_party/skia": {
"url": "https://skia.googlesource.com/skia.git",
"rev": "86bb2f25f46f4d620b4a26e738f59a9b6c22d2eb",
"hash": "sha256-tnUcFuwWtw0uGNIsU38M54V1MAYFs7/2yjP9Cs1fEHo="
"rev": "7ad44b72c93c242f96f2563edb566439fe816c0a",
"hash": "sha256-hCMg8otfjZU/zzlLZT4ywLFAU1HbXymSTqr7BfQcu5E="
},
"src/third_party/smhasher/src": {
"url": "https://chromium.googlesource.com/external/smhasher.git",
@@ -827,8 +827,8 @@
},
"src/v8": {
"url": "https://chromium.googlesource.com/v8/v8.git",
"rev": "20ad8d002c17ccc7ccfbefc6c4dcf1242fe80921",
"hash": "sha256-J2dblSPMoZTpotDpuPp6beRYv+KtCirqNxEGEQKpqcQ="
"rev": "4b407bc23f23059b1019cde542601c2cf8f70eb2",
"hash": "sha256-TB1A+iIyZOdlbHvim1JOaXOf9uQnoAYqbUL2+PFKUcs="
},
"src/agents/shared": {
"url": "https://chromium.googlesource.com/chromium/agents.git",
@@ -838,7 +838,7 @@
}
},
"ungoogled-chromium": {
"version": "151.0.7922.108",
"version": "151.0.7922.173",
"deps": {
"depot_tools": {
"rev": "94e89b10b92cc9d6e58fc8d1b6474b7d29e8a114",
@@ -850,16 +850,16 @@
"hash": "sha256-T2LdISIkp8fcUli5ZetTqrESBAc7coJhWdJv7I+o9kk="
},
"ungoogled-patches": {
"rev": "151.0.7922.108-1",
"hash": "sha256-EhnX4fkuKTTIF6wztKWitrjNzKUf36fAnr7lUkJqJtQ="
"rev": "151.0.7922.173-1",
"hash": "sha256-m7Wp64ns06DXbjMcLT9Dz6WBBqBGCPkrCuveYZ/VqZ4="
},
"npmHash": "sha256-pF0JtwFpPC4/fodbhSJnQKkczA9WlDg4VqEAy9aDVLg="
},
"DEPS": {
"src": {
"url": "https://chromium.googlesource.com/chromium/src.git",
"rev": "4744b886309d987d292e43232776d2206cccb13d",
"hash": "sha256-1i2IAA5sXyMPBzh6xOIY3CllEDtIS9Buk8Z2Vm1JnYw=",
"rev": "a96602f30358e9b5d256a0464e7e4d4bec223004",
"hash": "sha256-uumIVSzf318Xd1JB9jESXgpLxXlrvMDclOzSFQqweZ8=",
"recompress": true
},
"src/third_party/clang-format/script": {
@@ -929,8 +929,8 @@
},
"src/third_party/angle": {
"url": "https://chromium.googlesource.com/angle/angle.git",
"rev": "a17d5224d83f6018eb6a21a644ad9ef86eac475d",
"hash": "sha256-oXjtHByC3KrLgG3by6OdvID4ViM+2AnSft+fcspbNG0="
"rev": "a17d6c8e92696bc78bcbdaf56fc197ebd0cc1fde",
"hash": "sha256-lz8BqENfeHI31L1EOHWlCcE+tANVwuZVrqVDYXMjqQU="
},
"src/third_party/angle/third_party/glmark2/src": {
"url": "https://chromium.googlesource.com/external/github.com/glmark2/glmark2",
@@ -974,8 +974,8 @@
},
"src/third_party/dawn": {
"url": "https://dawn.googlesource.com/dawn.git",
"rev": "48d9737ff728e6211290d591b203a44cb77a2cc5",
"hash": "sha256-OZkgORs2BdFc4tbKD6gUAzqOA/BQ2K3al1p7zggSv0Q="
"rev": "29256ad98530582b82d1d6b76bae8354f1565e74",
"hash": "sha256-7fh6g+xTrmqa1flbs2NTdiQiaj8N3LShIx3GeqqbZq0="
},
"src/third_party/dawn/third_party/glfw3/src": {
"url": "https://chromium.googlesource.com/external/github.com/glfw/glfw",
@@ -1494,8 +1494,8 @@
},
"src/third_party/skia": {
"url": "https://skia.googlesource.com/skia.git",
"rev": "86bb2f25f46f4d620b4a26e738f59a9b6c22d2eb",
"hash": "sha256-tnUcFuwWtw0uGNIsU38M54V1MAYFs7/2yjP9Cs1fEHo="
"rev": "7ad44b72c93c242f96f2563edb566439fe816c0a",
"hash": "sha256-hCMg8otfjZU/zzlLZT4ywLFAU1HbXymSTqr7BfQcu5E="
},
"src/third_party/smhasher/src": {
"url": "https://chromium.googlesource.com/external/smhasher.git",
@@ -1664,8 +1664,8 @@
},
"src/v8": {
"url": "https://chromium.googlesource.com/v8/v8.git",
"rev": "20ad8d002c17ccc7ccfbefc6c4dcf1242fe80921",
"hash": "sha256-J2dblSPMoZTpotDpuPp6beRYv+KtCirqNxEGEQKpqcQ="
"rev": "4b407bc23f23059b1019cde542601c2cf8f70eb2",
"hash": "sha256-TB1A+iIyZOdlbHvim1JOaXOf9uQnoAYqbUL2+PFKUcs="
},
"src/agents/shared": {
"url": "https://chromium.googlesource.com/chromium/agents.git",

View File

@@ -10,11 +10,11 @@
buildMozillaMach rec {
pname = "firefox-beta";
binaryName = "firefox-beta";
version = "153.0b13";
version = "154.0b10";
applicationName = "Firefox Beta";
src = fetchurl {
url = "mirror://mozilla/firefox/releases/${version}/source/firefox-${version}.source.tar.xz";
sha512 = "fecfb1837d1907d54ed52bc40113804b6637352c2cbe6eb906f950d7749cbece32446b42c392102fa9e16591949619237dc2dbeb13bec18697ddd42e9ce8d4dd";
sha512 = "ddbe3ff45217a16df9eecfac52fcb12425accae76457e7054b20bd085f5b22908940a20448f213c3dc62d1276bb1c81f38194432336ba97459b2c17393ebd3cd";
};
meta = {

View File

@@ -10,13 +10,13 @@
buildMozillaMach rec {
pname = "firefox-devedition";
binaryName = "firefox-devedition";
version = "154.0b4";
version = "154.0b10";
applicationName = "Firefox Developer Edition";
requireSigning = false;
branding = "browser/branding/aurora";
src = fetchurl {
url = "mirror://mozilla/devedition/releases/${version}/source/firefox-${version}.source.tar.xz";
sha512 = "1dae1edf7b97891224d186f469e31cfa0d2c4fbbdfd6d03f74c03b4421902739fee8d359c66b3c2c431318a4212b0e6221456a233fd6a141c96122f3c6e62bea";
sha512 = "e2275579e4769a0690010d8fbba528a0e347d86f0dc981d1702b3e627d9c73f3fd7399d3e618c514bf6a3c0059fa3aa5a29f9cdec802e52955a03b1122ca8d39";
};
# buildMozillaMach sets MOZ_APP_REMOTINGNAME during configuration, but

View File

@@ -9,11 +9,11 @@
buildMozillaMach rec {
pname = "firefox";
version = "140.13.0esr";
version = "140.14.0esr";
applicationName = "Firefox ESR";
src = fetchurl {
url = "mirror://mozilla/firefox/releases/${version}/source/firefox-${version}.source.tar.xz";
sha512 = "937a4103d71c5e1e4bf051821729f6ea70b5c18d444930a487695cc23d74712a0134047248f6ac02305e01becb705426a55b9d89739f02a01eda01ecf5bc27f1";
sha512 = "0609cca9bfaecbff56cdf13458534bd8cfa43f139056867d3b6394a767281599ee600f83165ad25565ced59b552592aa84431357458ccecfbe5bf104dca501c7";
};
meta = {

View File

@@ -8,11 +8,11 @@
buildMozillaMach rec {
pname = "firefox";
version = "153.0esr";
version = "153.1.0esr";
applicationName = "Firefox ESR";
src = fetchurl {
url = "mirror://mozilla/firefox/releases/${version}/source/firefox-${version}.source.tar.xz";
sha512 = "3ea7956ef2fdcaa86430ef922f04484cbb1a3faf447e035107159fcd5ecd8d0a0e4507a332fc3d7b66e4308c38733bd0624affd7629447b89c655a9ea0fb0936";
sha512 = "0e5be18878a1bb8575d4ff03b499a092663fcd1779a05b59b82a8b663a3d7047cf3d6f971faeb3d1262f83b23022a703a2033e8ea38bcbd9c85f44bdd35d86c1";
};
meta = {

View File

@@ -9,10 +9,10 @@
buildMozillaMach rec {
pname = "firefox";
version = "153.0.3";
version = "154.0";
src = fetchurl {
url = "mirror://mozilla/firefox/releases/${version}/source/firefox-${version}.source.tar.xz";
sha512 = "449f30c51c94f53df2ceb45e27d7a2724269c929519159149de9c8f63f797af2c1cb2b5cd0a6aaf67326ccfd0c23c133fd6831b832af1a258632da5a864824bc";
sha512 = "a77cd664982add628681167ef5939bd6bf0c894aa380cca66f9b5fb265947874d1e819d42264f1dd07c843f8a6dc020da268cca9ff1e064fca019de91af9b996";
};
meta = {

View File

@@ -74,7 +74,7 @@ let
mainProgram = "discord";
maintainers = with lib.maintainers; [
artturin
FlameFlag
_4evy
infinidoge
jopejoe1
Scrumplex

View File

@@ -4,26 +4,35 @@
fetchurl,
libxshmfence,
stdenv,
writeShellScript,
nix-update,
jq,
nix,
common-updater-scripts,
}:
let
inherit (stdenv.hostPlatform) system;
throwSystem = throw "ferdium: arch ${system} not supported";
arch =
{
x86_64-linux = "amd64";
aarch64-linux = "arm64";
}
."${stdenv.hostPlatform.system}" or (throw "Unsupported system: ${stdenv.hostPlatform.system}");
.${system} or throwSystem;
hash =
{
amd64-linux_hash = "sha256-1jXo8MMk2EEkLo0n4ICmGJteKProLYKkMF//g63frHs=";
arm64-linux_hash = "sha256-jYDGVZhL0bswowm1H/4aa35lNJalil6ymV34NQM5Gfc=";
x86_64-linux = "sha256-ODQKFjBa2riJY26aPaAfLzuCyLYkB5oYSxIE28nMmwY=";
aarch64-linux = "sha256-CYHoTw6JUyU63iTd9tAbfWVnb48WcZgGtjthqnlAD8I=";
}
."${arch}-linux_hash";
.${system} or throwSystem;
in
mkFranzDerivation rec {
pname = "ferdium";
name = "Ferdium";
version = "7.1.1";
version = "7.1.2";
src = fetchurl {
url = "https://github.com/ferdium/ferdium-app/releases/download/v${version}/Ferdium-linux-${version}-${arch}.deb";
inherit hash;
@@ -31,9 +40,21 @@ mkFranzDerivation rec {
extraBuildInputs = [ libxshmfence ];
passthru = {
updateScript = ./update.sh;
};
passthru.updateScript = writeShellScript "update-ferdium" ''
${lib.getExe nix-update} ferdium --no-src --override-filename pkgs/applications/networking/instant-messengers/ferdium/default.nix
latestVersion=$(nix eval --raw --file . ferdium.version)
if [[ "$latestVersion" == "$UPDATE_NIX_OLD_VERSION" ]]; then
exit 0
fi
for system in x86_64-linux aarch64-linux; do
hash=$(${lib.getExe nix} store prefetch-file --json \
"$(nix eval --raw --file . ferdium.src.url --argstr system "$system")" \
| ${lib.getExe jq} --raw-output .hash)
${lib.getExe' common-updater-scripts "update-source-version"} \
ferdium "$latestVersion" "$hash" --system="$system" \
--ignore-same-version --ignore-same-hash
done
'';
meta = {
description = "All your services in one place built by the community";

View File

@@ -1,12 +0,0 @@
#!/usr/bin/env nix-shell
#!nix-shell -i bash -p git bash curl jq nix-update
set -xe
dirname="$(dirname "$0")"
latestTag=$(curl https://api.github.com/repos/ferdium/ferdium-app/releases/latest | jq -r ".tag_name")
latestVersion="$(expr $latestTag : 'v\(.*\)')"
nix-update --version "$latestVersion" --system aarch64-linux --override-filename "$dirname/default.nix" ferdium
nix-update --version skip --system x86_64-linux --override-filename "$dirname/default.nix" ferdium

View File

@@ -42,14 +42,14 @@
python3.pkgs.buildPythonApplication (finalAttrs: {
pname = "gajim";
version = "2.4.7.1";
version = "2.5.0";
src = fetchFromGitLab {
domain = "dev.gajim.org";
owner = "gajim";
repo = "gajim";
tag = "${finalAttrs.version}+win";
hash = "sha256-/X2Xp1ZnPLTZc1Hf4Kp6R/+mezU6qoUhaT9OskYlnOY=";
tag = finalAttrs.version;
hash = "sha256-3/HQNizXLjeQpCdEK14LMflyNUKF1BI8eli3BGxiH40=";
};
pyproject = true;
@@ -59,11 +59,11 @@ python3.pkgs.buildPythonApplication (finalAttrs: {
adwaita-icon-theme
gtksourceview5
glib-networking
gstreamer
gst-plugins-base
]
++ lib.optionals enableJingle [
farstream
gstreamer
gst-plugins-base
gst-libav
gst-plugins-good
libnice

View File

@@ -60,7 +60,7 @@ buildPythonPackage {
attrs
logbook
pygments
(matrix-nio.override { withOlm = true; })
(matrix-nio.override { withVodozemac = true; })
aiohttp
requests
];

View File

@@ -77,8 +77,8 @@ rec {
thunderbird = thunderbird-latest;
thunderbird-latest = common {
version = "153.0.1";
sha512 = "d69e6c8fd32742cf21752f27bac918eb2234989ae19ca36b5cfd131213c356924d3d48ef9d54c3a256cf5139eb7c38be5f1d1bd9cd2ee7ffccf12b953f3f5d2a";
version = "153.0.3";
sha512 = "6a9271af8473fa6679d4943a35fab0a335e8eb736aebfab4d79e250578faf6090cda19e80708487bec7c2221242b059072dda9ca817478a6d76556594972202b";
updateScript = callPackage ./update.nix {
attrPath = "thunderbirdPackages.thunderbird-latest";
@@ -91,8 +91,8 @@ rec {
thunderbird-153 = common {
applicationName = "Thunderbird ESR";
version = "153.0.1esr";
sha512 = "3773b49b69341aea108a627faa0dd5b7cfb52cdb4c37e625fbb8cbaef7f9166f925ecbc199173302d5bef7994e6bff3b56cd56a3a4c38a9d702cc3e5aeafcf7c";
version = "153.1.0esr";
sha512 = "3d6c82e1489b906e6cf73c3eeb7d7e23de6901a75c704176b996d183a889f24275214999155992789a57a713e6cd073e2752120c3b281136ed34f36f289fbcb4";
updateScript = callPackage ./update.nix {
attrPath = "thunderbirdPackages.thunderbird-153";

View File

@@ -286,7 +286,10 @@ let
+ ''
ln -s $out/lib/coq${suffix} $OCAMLFIND_DESTDIR/coq${suffix}
''
+ lib.optionalString (coqAtLeast "8.14") ''
+ lib.optionalString (coqAtLeast "9.4") ''
ln -s $out/lib/rocqide-server $OCAMLFIND_DESTDIR/rocqide-server
''
+ lib.optionalString (coqAtLeast "8.14" && !coqAtLeast "9.4") ''
ln -s $out/lib/coqide-server $OCAMLFIND_DESTDIR/coqide-server
''
+ lib.optionalString buildIde ''
@@ -315,6 +318,7 @@ let
mainProgram = if buildIde then "coqide" else "coqtop";
};
};
coqrocqide-server = if coqAtLeast "9.4" then "rocqide-server" else "coqide-server";
in
if coqAtLeast "8.21" then
self.overrideAttrs (o: {
@@ -324,12 +328,12 @@ if coqAtLeast "8.21" then
];
buildPhase = ''
runHook preBuild
dune build -p coq-core,coqide-server${lib.optionalString buildIde ",rocqide"} -j $NIX_BUILD_CORES
dune build -p coq-core,${coqrocqide-server}${lib.optionalString buildIde ",rocqide"} -j $NIX_BUILD_CORES
runHook postBuild
'';
installPhase = ''
runHook preInstall
dune install --prefix $out coq-core coqide-server${lib.optionalString buildIde " rocqide"}
dune install --prefix $out coq-core ${coqrocqide-server}${lib.optionalString buildIde " rocqide"}
# coq and rocq are now in different directories, which sometimes confuses coq_makefile
# which expects both in the same /nix/store/.../bin/ directory
# adding symlinks to content it

View File

@@ -33,7 +33,7 @@ stdenv.mkDerivation rec {
homepage = "https://github.com/exeldro/obs-source-record";
maintainers = with lib.maintainers; [
robbins
shackra
elzorrorebelde
];
license = lib.licenses.gpl2Only;
inherit (obs-studio.meta) platforms;

View File

@@ -6,16 +6,16 @@
}:
buildGoModule rec {
pname = "docker-compose";
version = "5.1.4";
version = "5.4.0";
src = fetchFromGitHub {
owner = "docker";
repo = "compose";
tag = "v${version}";
hash = "sha256-sdRxssZ6bRGRB/WPp2BiDTVHQ5LBmNGwXQYBdSpylQg=";
hash = "sha256-BLApJ1RWI2nUM3EDFLWBPwIbT+wUUCqxCRjc7QlkFd4=";
};
vendorHash = "sha256-hgNboIZx5QOGjPadey4f2TKpPw+b2sja6mcwoMjINuY=";
vendorHash = "sha256-NCHNe+aLNsJNtKdgQxyL6cMuu9XxA5ycleHf9gToEks=";
nativeInstallCheckInputs = [ versionCheckHook ];

View File

@@ -424,18 +424,18 @@ in
docker_29 =
let
version = "29.6.2";
version = "29.7.2";
in
callPackage dockerGen {
inherit version;
cliRev = "v${version}";
cliHash = "sha256-WpPSePMCfWAVxCkX1nZyI+sra/Vug009ZPmnVKDaX0I=";
cliHash = "sha256-ZYXRX4IQfUbb21yk/NodO5NH5OeX/KFDL9UdFS1e5ng=";
mobyRev = "docker-v${version}";
mobyHash = "sha256-zrvrZCRUuiZ2vixZNOUFeGmDehHzSI+FzDMzV1gMqMc=";
runcRev = "v1.3.6";
runcHash = "sha256-cBMYZOElWHQ4OkF2NlYJSZrlW4833WD8CRJRkkXeKJc=";
containerdRev = "v2.2.6";
containerdHash = "sha256-Ngo9x847cXFYPnj/0I+g7BeV7e1/5T2YXfA1zkIdiPg=";
mobyHash = "sha256-k28c4cwt+ASVj8FTvM8dgIOL3yqR5wbI21r3LtrVamU=";
runcRev = "v1.4.3";
runcHash = "sha256-I9DruagoSWjrEBB4n+w5rzali5wvD/q3tVQFWPDnLAI=";
containerdRev = "v2.3.3";
containerdHash = "sha256-wa9Pixaq5RRrJucWibbBe4n6s53Pdj+mr5gLoFmDgLU=";
tiniRev = "369448a167e8b3da4ca5bca0b3307500c3371828";
tiniHash = "sha256-jCBNfoJAjmcTJBx08kHs+FmbaU82CbQcf0IVjd56Nuw=";
};

View File

@@ -72,9 +72,9 @@ let
buildType = "release";
# Use maintainers/scripts/update.nix to update the version and all related hashes or
# change the hashes in extpack.nix and guest-additions/default.nix as well manually.
virtualboxVersion = "7.2.14";
virtualboxVersion = "7.2.16";
virtualboxSubVersion = "";
virtualboxSha256 = "384f293184c52fd51bc941c17d753b4019446f53a6b07c828adfb3e61fe0a500";
virtualboxSha256 = "50356ccdaefe8f03537600ec31898b506e3a85ce79b94f26fb6cc1920c9e18eb";
kvmPatchVboxVersion = "7.2.6";
kvmPatchVersion = "20260201";

View File

@@ -5,7 +5,7 @@
}:
fetchurl rec {
pname = "virtualbox-extpack";
version = "7.2.14";
version = "7.2.16";
name = "Oracle_VirtualBox_Extension_Pack-${version}.vbox-extpack";
url = "https://download.virtualbox.org/virtualbox/${version}/${name}";
sha256 =
@@ -13,7 +13,7 @@ fetchurl rec {
# Thus do not use `nix-prefetch-url` but instead plain old `sha256sum`.
# Checksums can also be found at https://download.virtualbox.org/virtualbox/${version}/SHA256SUMS
let
value = "ce4461de974f041435660751b382f987fece831028a8c98572d668eda2eee96d";
value = "d1e268cfa05223fd651703043af09f39dfb90da259ce9ec093d9d9b022f19689";
in
assert (builtins.stringLength value) == 64;
value;

View File

@@ -5,7 +5,7 @@
}:
fetchurl {
url = "http://download.virtualbox.org/virtualbox/${virtualboxVersion}/VBoxGuestAdditions_${virtualboxVersion}.iso";
sha256 = "4f51a073296de31cce53924860549149be5dc339f65dcd1dbf34fd7accefe8fb";
sha256 = "c9349c0231d81c821fc1de7b9592bf07bb7c3f111c3f942ddddc211496ef7a3e";
meta = {
description = "Guest additions ISO for VirtualBox";
longDescription = ''

View File

@@ -18,9 +18,9 @@
libx11,
}:
let
virtualboxVersion = "7.2.14";
virtualboxVersion = "7.2.16";
virtualboxSubVersion = "";
virtualboxSha256 = "384f293184c52fd51bc941c17d753b4019446f53a6b07c828adfb3e61fe0a500";
virtualboxSha256 = "50356ccdaefe8f03537600ec31898b506e3a85ce79b94f26fb6cc1920c9e18eb";
platform =
if stdenv.hostPlatform.isAarch64 then
@@ -96,6 +96,11 @@ stdenv.mkDerivation {
]
++ kernel.moduleBuildDependencies;
# https://github.com/VirtualBox/virtualbox/issues/812
postPatch = ''
substituteInPlace ./src/vboxguest-${virtualboxVersion}_NixOS/vboxvideo/vbox_fb.c --replace-fail "RTLNX_VER_MIN(6,19,0)" "RTLNX_VER_RANGE(6,6,152, 6,6,999) || RTLNX_VER_RANGE(6,12,103, 6,12,999) || RTLNX_VER_RANGE(6,18,44, 6,18,999) || RTLNX_VER_MIN(6,19,0)"
'';
buildPhase = ''
runHook preBuild

View File

@@ -18,6 +18,7 @@ lib.extendMkDerivation {
{
pname,
version,
dunePackages ? [ pname ],
nativeBuildInputs ? [ ],
enableParallelBuilding ? true,
...
@@ -58,14 +59,14 @@ lib.extendMkDerivation {
buildPhase =
args.buildPhase or ''
runHook preBuild
dune build -p ${pname} ''${enableParallelBuilding:+-j $NIX_BUILD_CORES}
dune build -p ${lib.concatStringsSep "," dunePackages} ''${enableParallelBuilding:+-j $NIX_BUILD_CORES}
runHook postBuild
'';
installPhase =
args.installPhase or ''
runHook preInstall
dune install --prefix $out --libdir $OCAMLFIND_DESTDIR ${pname} \
dune install --prefix $out --libdir $OCAMLFIND_DESTDIR ${lib.concatStringsSep " " dunePackages} \
${
if lib.versionAtLeast Dune.version "2.9" then
"--docdir $out/share/doc --mandir $out/share/man"
@@ -78,7 +79,7 @@ lib.extendMkDerivation {
checkPhase =
args.checkPhase or ''
runHook preCheck
dune runtest -p ${pname} ''${enableParallelBuilding:+-j $NIX_BUILD_CORES}
dune runtest -p ${lib.concatStringsSep "," dunePackages} ''${enableParallelBuilding:+-j $NIX_BUILD_CORES}
runHook postCheck
'';

View File

@@ -1,21 +1,21 @@
{
"version": "1.3.22-stable",
"version": "1.3.29-stable",
"sources": {
"aarch64-darwin": {
"url": "https://acli.atlassian.com/darwin/1.3.22-stable/acli_1.3.22-stable_darwin_arm64.tar.gz",
"sha256": "3a9a6ff1bb0bce5902780e26e748b18b9adb4489df67d88ea878f4b7673944ad"
"url": "https://acli.atlassian.com/darwin/1.3.29-stable/acli_1.3.29-stable_darwin_arm64.tar.gz",
"sha256": "b2f6343d13ac8f3c32ea1043aba8317876d845662967793eb00016a2e5b5cf79"
},
"aarch64-linux": {
"url": "https://acli.atlassian.com/linux/1.3.22-stable/acli_1.3.22-stable_linux_arm64.tar.gz",
"sha256": "1a9e86d0b46a62a8f1992c1ef98b3af7e9a9ee3f76d0efa215fe1f2d1b2fd139"
"url": "https://acli.atlassian.com/linux/1.3.29-stable/acli_1.3.29-stable_linux_arm64.tar.gz",
"sha256": "cea39c4eb90c65d8d0cafc869a75fa3b6afaaf4573f8da650f4ae73801f8ec46"
},
"x86_64-darwin": {
"url": "https://acli.atlassian.com/darwin/1.3.22-stable/acli_1.3.22-stable_darwin_amd64.tar.gz",
"sha256": "993fd692700d602fd1e3cff7f1d29f70e44a2ebb8056fbb93bdc8aed1e5cbbd4"
},
"x86_64-linux": {
"url": "https://acli.atlassian.com/linux/1.3.22-stable/acli_1.3.22-stable_linux_amd64.tar.gz",
"sha256": "de9e0a60a556e4119428b9072f6ca787e75b9f9a538aa71ebcc8084deb8ca1a6"
"url": "https://acli.atlassian.com/linux/1.3.29-stable/acli_1.3.29-stable_linux_amd64.tar.gz",
"sha256": "8dcfc7bcf9dc788e7143e93d74445310094977ba1bad2513c6c613460851d34e"
}
}
}

View File

@@ -35,7 +35,7 @@ stdenvNoCC.mkDerivation (finalAttrs: {
homepage = "https://alt-tab-macos.netlify.app";
license = lib.licenses.gpl3Plus;
maintainers = with lib.maintainers; [
FlameFlag
_4evy
emilytrau
];
platforms = lib.platforms.darwin;

View File

@@ -0,0 +1,41 @@
{
lib,
stdenv,
fetchFromGitHub,
nix-update-script,
}:
stdenv.mkDerivation (finalAttrs: {
pname = "anker-powerconf-c200-linux-tools";
version = "0.1.0";
__structuredAttrs = true;
src = fetchFromGitHub {
owner = "erans";
repo = "anker-powerconf-c200-linux-tools";
tag = "v${finalAttrs.version}";
hash = "sha256-txIVTbqxnFQ8GcJgxTp89Qc3U5CXkYolXCO4E1PXHHA=";
};
strictDeps = true;
installPhase = ''
runHook preInstall
mkdir -p "$out"/bin
cp ./build/anker-powerconf-c200-linux-tools "$out"/bin
runHook postInstall
'';
passthru.updateScript = nix-update-script { };
meta = {
description = "Linux CLI tools for the Anker PowerConf C200 webcam";
mainProgram = "anker-powerconf-c200-linux-tools";
homepage = "https://github.com/erans/anker-powerconf-c200-linux-tools";
license = lib.licenses.mit;
maintainers = with lib.maintainers; [ fernsehmuell ];
platforms = lib.platforms.linux;
};
})

View File

@@ -2,7 +2,7 @@
lib,
buildNpmPackage,
copyDesktopItems,
electron_41,
electron_43,
fetchFromGitHub,
makeDesktopItem,
makeWrapper,
@@ -14,22 +14,21 @@
}:
let
electron = electron_41;
version = "2026.5.1";
electron = electron_43;
in
buildNpmPackage (finalAttrs: {
pname = "appium-inspector";
inherit version;
version = "2026.7.1";
src = fetchFromGitHub {
owner = "appium";
repo = "appium-inspector";
tag = "v${version}";
hash = "sha256-SJlTTVTZ/zGIK7Nf35cZ62tdhevXC95MsbiQJCLiVtk=";
tag = "v${finalAttrs.version}";
hash = "sha256-7pxXlY/aifrg4cuGZSgxONF+RPL8P7JcZ6Gobqv2nz4=";
};
npmDepsHash = "sha256-2rjgKS1mIrjOg+YXuMaqKyEQt0utLA4DGxOs0oI4BaQ=";
npmDepsHash = "sha256-W9FWIHhtS2d9xBpIEGB8sWmDfcdyphL+0eCk1+8pu2s=";
npmFlags = [ "--ignore-scripts" ];
nativeBuildInputs = [
@@ -102,7 +101,7 @@ buildNpmPackage (finalAttrs: {
meta = {
description = "GUI inspector for the appium UI automation tool";
homepage = "https://appium.github.io/appium-inspector";
changelog = "https://github.com/appium/appium-inspector/releases/tag/v${version}";
changelog = "https://github.com/appium/appium-inspector/releases/tag/v${finalAttrs.src.tag}";
license = lib.licenses.asl20;
mainProgram = "appium-inspector";
maintainers = with lib.maintainers; [ marie ];

View File

@@ -6,10 +6,10 @@
}:
let
pname = "archon-lite";
version = "9.4.36";
version = "9.5.0";
src = fetchurl {
url = "https://github.com/RPGLogs/Uploaders-archon-lite/releases/download/v${version}/archon-lite-v${version}.AppImage";
hash = "sha256-th48nSDIi2iugtiqjgkI7/QZtBq+BRQjRs1pKweDArI=";
hash = "sha256-ZuALgVtqsYtvnSq8hkJL4A+i4UaEpk+2L3bpSEXrhRM=";
};
extracted = appimageTools.extractType2 { inherit pname version src; };
@@ -20,13 +20,12 @@ appimageTools.wrapType2 {
extraInstallCommands = ''
mkdir -p $out/share/applications
mkdir -p $out/share/icons/hicolor/512x512/apps
cp -r ${extracted}/usr/share/icons/hicolor/512x512/apps/'Archon App Lite.png' $out/share/icons/hicolor/512x512/apps/archon-lite.png
cp -r ${extracted}/usr/share/icons/hicolor/512x512/apps/archon-lite.png $out/share/icons/hicolor/512x512/apps/archon-lite.png
chmod -R +w $out/share/
test ! -e $out/share/icons/hicolor/0x0 # check for regression of https://github.com/electron-userland/electron-builder/issues/5294
cp ${extracted}/'Archon App Lite.desktop' $out/share/applications/archon-lite.desktop
cp ${extracted}/archon-lite.desktop $out/share/applications/archon-lite.desktop
substituteInPlace $out/share/applications/archon-lite.desktop \
--replace-fail "Exec=AppRun --no-sandbox" "Exec=archon-lite" \
--replace-fail "Icon=Archon App Lite" "Icon=archon-lite"
--replace-fail "Exec=AppRun --no-sandbox" "Exec=archon-lite"
'';
passthru.updateScript = nix-update-script { };

View File

@@ -13,7 +13,7 @@
rustPlatform.buildRustPackage (finalAttrs: {
pname = "arti";
version = "2.5.0";
version = "2.5.1";
src = fetchFromGitLab {
domain = "gitlab.torproject.org";
@@ -21,7 +21,7 @@ rustPlatform.buildRustPackage (finalAttrs: {
owner = "core";
repo = "arti";
tag = "arti-v${finalAttrs.version}";
hash = "sha256-jOCFXlBI2xAzgpb7Fa8ap53SpDF6kcRGYnBXcu3vpk4=";
hash = "sha256-fPobYu2ADTeIwpeXyxQKh5yr1zw+yMQfqTkiZMMd8YY=";
};
# Working around a bug in cargo that appears with cargo-auditable, see
@@ -32,7 +32,7 @@ rustPlatform.buildRustPackage (finalAttrs: {
'';
buildAndTestSubdir = "crates/arti";
cargoHash = "sha256-JK6ubp697jZ98ErNrZdFe0mXIez3lUZ5SmAHkyD97WQ=";
cargoHash = "sha256-+JQ+SkRLyLl4RUq69nIUn1zJ/DmYpVEICQO5o85FsNw=";
nativeBuildInputs = lib.optionals stdenv.hostPlatform.isLinux [ pkg-config ];

Some files were not shown because too many files have changed in this diff Show More