取消 Content-Security-Policy

This commit is contained in:
kuaifan 2023-02-27 01:33:07 +08:00
parent e500426f8f
commit 9a9d19e16c
3 changed files with 15 additions and 15 deletions

View File

@ -225,7 +225,7 @@
if (mxIsElectron)
{
mxmeta(null, 'default-src \'self\' \'unsafe-inline\'; connect-src \'self\' https://*.draw.io https://fonts.googleapis.com https://fonts.gstatic.com; img-src * data:; media-src *; font-src *; style-src-elem \'self\' \'unsafe-inline\' https://fonts.googleapis.com', 'Content-Security-Policy');
// mxmeta(null, 'default-src \'self\' \'unsafe-inline\'; connect-src \'self\' https://*.draw.io https://fonts.googleapis.com https://fonts.gstatic.com; img-src * data:; media-src *; font-src *; style-src-elem \'self\' \'unsafe-inline\' https://fonts.googleapis.com', 'Content-Security-Policy');
}
})();

View File

@ -183,19 +183,19 @@ mxStencilRegistry.allowEval = false;
}
//Remove old relaxed CSP and add strict one
var allMeta = document.getElementsByTagName('meta');
for (var i = 0; i < allMeta.length; i++)
{
if (allMeta[i].getAttribute('http-equiv') == 'Content-Security-Policy')
{
allMeta[i].parentNode.removeChild(allMeta[i]);
}
break;
}
mxmeta(null, 'default-src \'self\'; connect-src \'self\' https://fonts.googleapis.com https://fonts.gstatic.com; img-src * data:; media-src *; font-src *; style-src \'self\' \'unsafe-inline\' https://fonts.googleapis.com', 'Content-Security-Policy');
// var allMeta = document.getElementsByTagName('meta');
//
// for (var i = 0; i < allMeta.length; i++)
// {
// if (allMeta[i].getAttribute('http-equiv') == 'Content-Security-Policy')
// {
// allMeta[i].parentNode.removeChild(allMeta[i]);
// }
//
// break;
// }
//
// mxmeta(null, 'default-src \'self\'; connect-src \'self\' https://fonts.googleapis.com https://fonts.gstatic.com; img-src * data:; media-src *; font-src *; style-src \'self\' \'unsafe-inline\' https://fonts.googleapis.com', 'Content-Security-Policy');
//Disable web plugins loading
urlParams['plugins'] = '0';

@ -1 +1 @@
Subproject commit 519581b2116cb3ba69860a80496e63339ff43416
Subproject commit c359714220dd630c0b93ca2c1ee65c30eeb8dbbc