We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent b44f439 commit 6caa17dCopy full SHA for 6caa17d
1 file changed
modules/admin/src/Controller/Config.php
@@ -180,7 +180,13 @@ public function phpinfo(/** @scrutinizer ignore-unused */ Request $request): Res
180
return $response;
181
}
182
183
- return new StreamedResponse('phpinfo');
+ $response = new StreamedResponse('phpinfo');
184
+ $response->headers->set(
185
+ 'Content-Security-Policy',
186
+ "default-src 'self'; style-src 'self' 'unsafe-inline'; img-src 'self' data:; frame-ancestors 'self';",
187
+ );
188
+
189
+ return $response;
190
191
192
/**
0 commit comments