mirror of
https://github.com/firefly-iii/firefly-iii.git
synced 2025-02-25 18:45:27 -06:00
Solve a problem with inline displaying of file attachments.
This commit is contained in:
parent
2ec310da18
commit
8088c28235
@ -37,7 +37,6 @@ class SecureHeaders
|
|||||||
*
|
*
|
||||||
* @param \Illuminate\Http\Request $request
|
* @param \Illuminate\Http\Request $request
|
||||||
* @param \Closure $next
|
* @param \Closure $next
|
||||||
* @param string|null $guard
|
|
||||||
*
|
*
|
||||||
* @return mixed
|
* @return mixed
|
||||||
*/
|
*/
|
||||||
@ -51,6 +50,7 @@ class SecureHeaders
|
|||||||
}
|
}
|
||||||
$csp = [
|
$csp = [
|
||||||
"default-src 'none'",
|
"default-src 'none'",
|
||||||
|
"object-src 'self'",
|
||||||
sprintf("script-src 'self' 'unsafe-eval' 'unsafe-inline' %s", $google),
|
sprintf("script-src 'self' 'unsafe-eval' 'unsafe-inline' %s", $google),
|
||||||
"style-src 'self' 'unsafe-inline'",
|
"style-src 'self' 'unsafe-inline'",
|
||||||
"base-uri 'self'",
|
"base-uri 'self'",
|
||||||
|
Loading…
Reference in New Issue
Block a user