aboutsummaryrefslogtreecommitdiffstats
path: root/server/sonar-web/build.gradle
diff options
context:
space:
mode:
Diffstat (limited to 'server/sonar-web/build.gradle')
-rw-r--r--server/sonar-web/build.gradle7
1 files changed, 7 insertions, 0 deletions
diff --git a/server/sonar-web/build.gradle b/server/sonar-web/build.gradle
index 2ee42455291..9b4254cb95a 100644
--- a/server/sonar-web/build.gradle
+++ b/server/sonar-web/build.gradle
@@ -62,6 +62,13 @@ task dependency_audit(type: Exec) {
commandLine osAdaptiveCommand(['npm', 'run', 'audit-ci'])
}
+task dependencyCheckAggregate_prerequisites(type: Exec) {
+ // the OWASP tool does not support yarn and its yarn.lock files, so node modules
+ // should be explicitly installed (yarn install) before running the audit
+ // See https://github.com/jeremylong/DependencyCheck/issues/2393
+ commandLine osAdaptiveCommand(['yarn', 'install', '--immutable'])
+}
+
def sources = fileTree(dir: "src") + fileTree(dir: "scripts") + fileTree(dir: "config") + fileTree(dir: "__mocks__")
task licenseCheckWeb(type: com.hierynomus.gradle.license.tasks.LicenseCheck) {