cloud-gov / cg-site

The cloud.gov website

Home Page:https://cloud.gov

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Update mermaid and netlify-cms to fix outdated javascript libraries

pburkholder opened this issue · comments

The ZAP scans, and our 3pao, have fingered us for some outdated javascript libraries.

mermaid and netlify-cms both have outdatedmoment.js.

Bumping mermaid in the past has resulted in bugs (even within 8.x): #1838

We can do without netlify-cms IMO, but maybe others rely on it.

Acceptance Criteria

  • ZAP scan is clean for javascript libraries

@pburkholder should be good via #2369, let me know when we scan next to confirm

Completed a ZAP scan, no vulnerable JS libraries flagged