From: Tom Hughes Date: Mon, 27 May 2024 09:33:34 +0000 (+0100) Subject: Merge remote-tracking branch 'upstream/pull/4841' X-Git-Tag: live~527 X-Git-Url: https://git.openstreetmap.org./rails.git/commitdiff_plain/c834f9afe7ce5ba5dc620719ed989dd9eb4874dc Merge remote-tracking branch 'upstream/pull/4841' --- c834f9afe7ce5ba5dc620719ed989dd9eb4874dc diff --cc app/controllers/site_controller.rb index 265901bec,ad19df50e..8b742a585 --- a/app/controllers/site_controller.rb +++ b/app/controllers/site_controller.rb @@@ -18,8 -18,7 +18,7 @@@ class SiteController < ApplicationContr content_security_policy(:only => :id) do |policy| policy.connect_src("*") - policy.img_src("*", :blob) + policy.img_src(*policy.img_src, "*", :blob) - policy.script_src(*policy.script_src, "dev.virtualearth.net", :unsafe_eval) policy.style_src(*policy.style_src, :unsafe_inline) end