We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
2 parents ec4b158 + 3b1e164 commit 1416ef6Copy full SHA for 1416ef6
lib/private/legacy/response.php
@@ -84,7 +84,7 @@ public static function addSecurityHeaders() {
84
* @see \OCP\AppFramework\Http\Response::getHeaders
85
*/
86
$policy = 'default-src \'self\'; '
87
- . 'script-src \'self\' \'unsafe-eval\' \'nonce-'.\OC::$server->getContentSecurityPolicyNonceManager()->getNonce().'\'; '
+ . 'script-src \'self\' \'nonce-'.\OC::$server->getContentSecurityPolicyNonceManager()->getNonce().'\'; '
88
. 'style-src \'self\' \'unsafe-inline\'; '
89
. 'frame-src *; '
90
. 'img-src * data: blob:; '
0 commit comments