aboutsummaryrefslogtreecommitdiffstats
path: root/server
diff options
context:
space:
mode:
Diffstat (limited to 'server')
-rw-r--r--server/sonar-docs/build.gradle9
-rw-r--r--server/sonar-web/build.gradle9
2 files changed, 18 insertions, 0 deletions
diff --git a/server/sonar-docs/build.gradle b/server/sonar-docs/build.gradle
index d072b8fe25e..cea99b44015 100644
--- a/server/sonar-docs/build.gradle
+++ b/server/sonar-docs/build.gradle
@@ -80,6 +80,15 @@ clean.dependsOn(cleanYarn_run)
dependsOn(yarn)
}
+// Check for known vulnerabilities
+yarn_audit {
+ inputs.file('package.json')
+ outputs.cacheIf { false }
+ args = ['--groups', 'dependencies', '--level', 'high']
+ ignoreExitValue = true
+ dependsOn(yarn)
+}
+
task zip(type: Zip) {
def archiveDir = "$version"
duplicatesStrategy DuplicatesStrategy.EXCLUDE
diff --git a/server/sonar-web/build.gradle b/server/sonar-web/build.gradle
index 1a0b4e76deb..7949528eb51 100644
--- a/server/sonar-web/build.gradle
+++ b/server/sonar-web/build.gradle
@@ -42,6 +42,15 @@ build.dependsOn(yarn_run)
dependsOn(yarn)
}
+// Check for known vulnerabilities
+yarn_audit {
+ inputs.file('package.json')
+ outputs.cacheIf { false }
+ args = ['--groups', 'dependencies', '--level', 'high']
+ ignoreExitValue = true
+ dependsOn(yarn)
+}
+
def sources = fileTree(dir: "src") + fileTree(dir: "scripts") + fileTree(dir: "config")
task licenseCheckWeb(type: com.hierynomus.gradle.license.tasks.LicenseCheck) {