Skip to content

Draft: Upgrade stylelint to fix security vulnerability

What does this MR do?

Addresses #298770 (closed). Upgrade the stylelint dev dependency to fix a high level vulnerability. This vulnerability was found with yarn audit --level high at commit ed1b13ae on master. Had discussion with @joshpratt about #297284 (closed) on the gitter Contributors channel and decided to help.

Screenshots (strongly suggested)

image

Does this MR meet the acceptance criteria?

Conformity

Availability and Testing

Security

If this MR contains changes to processing or storing of credentials or tokens, authorization and authentication methods and other items described in the security review guidelines:

  • [-] Label as security and @ mention @gitlab-com/gl-security/appsec
  • [-] The MR includes necessary changes to maintain consistency between UI, API, email, or other methods
  • [-] Security reports checked/validated by a reviewer from the AppSec team

Related to #297284 (closed)

Edited by Judith Weiss

Merge request reports