Details
-
Task
-
Resolution: Done
-
Neutral
-
None
-
None
Description
We currently bundle the source to front-end libraries such as CKEditor directly in UI, see: https://git.magnolia-cms.com/projects/PLATFORM/repos/ui/browse/magnolia-ui-vaadin-common-widgets/src/main/resources/VAADIN/js/ckeditor
If we depended via Maven or NPM on them, e.g. via Maven in the case of CKEditor: https://mvnrepository.com/artifact/org.webjars/ckeditor/4.19.0
Then Renovate (which we would need to enable for UI once this is done) would be able to pick up on new upgrades and prevent CVEs.
Checklists
Acceptance criteria