Skip to content

Commit 29b6517

Browse files
committed
fix(api-docs): 🐛 disable unsafe-inline style-src
ref swagger-api/swagger-ui#5578
1 parent 44bae63 commit 29b6517

File tree

2 files changed

+2
-2
lines changed

2 files changed

+2
-2
lines changed

reverse-proxy/conf.d.dev/default.conf

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -20,6 +20,6 @@ server {
2020
rewrite ^/api/(.*)$ /$1 break;
2121
proxy_pass http://api-docs:8080;
2222
include location-includes/*;
23-
add_header Content-Security-Policy "default-src 'none'; base-uri 'self'; frame-ancestors 'self'; form-action 'none'; connect-src 'self'; script-src 'self' 'unsafe-inline'; style-src 'self' 'unsafe-inline'; img-src 'self' validator.swagger.io data:;" always;
23+
add_header Content-Security-Policy "default-src 'none'; base-uri 'self'; frame-ancestors 'self'; form-action 'none'; connect-src 'self'; script-src 'self' 'unsafe-inline'; style-src 'self'; img-src 'self' validator.swagger.io data:;" always;
2424
}
2525
}

reverse-proxy/conf.d/default.conf

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -23,7 +23,7 @@ server {
2323
rewrite ^/api/(.*)$ /$1 break;
2424
proxy_pass http://api-docs:8080;
2525
include location-includes/*;
26-
add_header Content-Security-Policy "default-src 'none'; base-uri 'self'; frame-ancestors 'self'; form-action 'none'; connect-src 'self'; script-src 'self' 'unsafe-inline'; style-src 'self' 'unsafe-inline'; img-src 'self' validator.swagger.io data:;" always;
26+
add_header Content-Security-Policy "default-src 'none'; base-uri 'self'; frame-ancestors 'self'; form-action 'none'; connect-src 'self'; script-src 'self' 'unsafe-inline'; style-src 'self'; img-src 'self' validator.swagger.io data:;" always;
2727
}
2828

2929
location / {

0 commit comments

Comments
 (0)