mirror of
https://github.com/scm-manager/scm-manager.git
synced 2025-10-26 08:06:09 +01:00
Adjust security headers to allow pdf rendering
This commit is contained in:
@@ -42,8 +42,8 @@ public class SecurityHeadersFilter extends HttpFilter {
|
||||
response.setHeader("X-Content-Type-Options", "nosniff");
|
||||
response.setHeader("Content-Security-Policy",
|
||||
"form-action 'self'; " +
|
||||
"object-src 'none'; " +
|
||||
"frame-ancestors 'none'; " +
|
||||
"object-src 'self'; " +
|
||||
"frame-ancestors 'self'; " +
|
||||
"block-all-mixed-content"
|
||||
);
|
||||
response.setHeader("Permissions-Policy",
|
||||
|
||||
Reference in New Issue
Block a user