helmet.go removed wildcard directive.
This commit is contained in:
parent
f8cdf3a511
commit
3225e64052
@ -268,7 +268,7 @@ func (csp *CSP) value() string {
|
||||
|
||||
sb.WriteString(fmt.Sprintf(
|
||||
"style-src %s; ",
|
||||
cspNormalised(csp.StyleSrc, []string{"self", "https:", "unsafe-inline"}),
|
||||
cspNormalised(csp.StyleSrc, []string{"self", "unsafe-inline"}),
|
||||
))
|
||||
|
||||
sb.WriteString(fmt.Sprintf(
|
||||
@ -288,7 +288,7 @@ func (csp *CSP) value() string {
|
||||
|
||||
sb.WriteString(fmt.Sprintf(
|
||||
"font-src %s; ",
|
||||
cspNormalised(csp.FontSrc, []string{"self", "https:", "data:"}),
|
||||
cspNormalised(csp.FontSrc, []string{"self", "data:"}),
|
||||
))
|
||||
|
||||
sb.WriteString(fmt.Sprintf(
|
||||
|
Loading…
x
Reference in New Issue
Block a user