File tree Expand file tree Collapse file tree
utils/src/main/java/com/cloud/utils Expand file tree Collapse file tree Original file line number Diff line number Diff line change @@ -50,6 +50,17 @@ public static void addSecurityHeaders(final HttpServletResponse resp) {
5050 else {
5151 resp .addHeader ("X-XSS-Protection" , "1;mode=block" );
5252 }
53+
54+ if (resp .containsHeader ("content-security-policy" )) {
55+ resp .setIntHeader ("content-security-policy" , 1 );
56+ }else {
57+ resp .addIntHeader ("content-security-policy" , 1 );
58+ }
59+ resp .addHeader ("content-security-policy" ,"default-src=none" );
60+ resp .addHeader ("content-security-policy" ,"script-src=self" );
61+ resp .addHeader ("content-security-policy" ,"connect-src=self" );
62+ resp .addHeader ("content-security-policy" ,"img-src=self" );
63+ resp .addHeader ("content-security-policy" ,"style-src=self" );
5364 }
5465
5566 public static void writeHttpResponse (final HttpServletResponse resp , final String response ,
You can’t perform that action at this time.
0 commit comments