Skip to content

Commit 2107395

Browse files
authored
Fix CSP font-src to allow data: URIs (swiper.js base64 font) (#658)
* Fix CSP font-src to allow data: URIs for swiper.js base64 --------- Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com>
1 parent a76bbfb commit 2107395

1 file changed

Lines changed: 1 addition & 1 deletion

File tree

src/Web/Grand.Web.Common/Infrastructure/ApplicationBuilderExtensions.cs

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -222,7 +222,7 @@ public static void UseDefaultSecurityHeaders(this WebApplication application)
222222
builder.AddUpgradeInsecureRequests();
223223
builder.AddDefaultSrc().Self();
224224
builder.AddConnectSrc().From("*");
225-
builder.AddFontSrc().From("*");
225+
builder.AddFontSrc().From("*").Data();
226226
builder.AddFrameAncestors().From("*");
227227
builder.AddFrameSrc().From("*");
228228
builder.AddMediaSrc().From("*");

0 commit comments

Comments
 (0)