From 8a6a5cdeb3152795c0ded8e1259221e860be7c9f Mon Sep 17 00:00:00 2001 From: Essem Date: Fri, 9 Jun 2023 11:13:33 -0500 Subject: [PATCH] Fix CSP --- packages/backend/src/server/web/index.ts | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/packages/backend/src/server/web/index.ts b/packages/backend/src/server/web/index.ts index c6748fd80..55a125fac 100644 --- a/packages/backend/src/server/web/index.ts +++ b/packages/backend/src/server/web/index.ts @@ -418,7 +418,7 @@ router.get("/notes/:note", async (ctx, next) => { ctx.set("Cache-Control", "public, max-age=15"); ctx.set( "Content-Security-Policy", - "default-src 'self' 'unsafe-inline'; img-src '*'; frame-ancestors '*'", + "default-src 'self' 'unsafe-inline'; img-src *; frame-ancestors *", ); return;