diff options
Diffstat (limited to 'server/sonar-web/build.gradle')
-rw-r--r-- | server/sonar-web/build.gradle | 7 |
1 files changed, 7 insertions, 0 deletions
diff --git a/server/sonar-web/build.gradle b/server/sonar-web/build.gradle index 2ee42455291..9b4254cb95a 100644 --- a/server/sonar-web/build.gradle +++ b/server/sonar-web/build.gradle @@ -62,6 +62,13 @@ task dependency_audit(type: Exec) { commandLine osAdaptiveCommand(['npm', 'run', 'audit-ci']) } +task dependencyCheckAggregate_prerequisites(type: Exec) { + // the OWASP tool does not support yarn and its yarn.lock files, so node modules + // should be explicitly installed (yarn install) before running the audit + // See https://github.com/jeremylong/DependencyCheck/issues/2393 + commandLine osAdaptiveCommand(['yarn', 'install', '--immutable']) +} + def sources = fileTree(dir: "src") + fileTree(dir: "scripts") + fileTree(dir: "config") + fileTree(dir: "__mocks__") task licenseCheckWeb(type: com.hierynomus.gradle.license.tasks.LicenseCheck) { |