Bug #7907
closed
Added by Ohad Levy about 10 years ago.
Updated over 6 years ago.
Description
after #7805, gravatar external lookups are not allowed, and the following is observed in the logs:
Refused to load the image 'http://secure.gravatar.com/avatar/7dcac275cbd245fbf96a9a6d8739b880?d=mm&s=30' because it violates the following Content Security Policy directive: "img-src 'self' data:".
- Related to Feature #7805: Add several security related HTTP headers - security hardening. added
- Status changed from New to Ready For Testing
- Target version set to 1.7.2
- Pull request https://github.com/theforeman/foreman/pull/1846 added
- Pull request deleted (
)
- Status changed from Ready For Testing to Closed
- % Done changed from 0 to 100
- Translation missing: en.field_release set to 21
Also available in: Atom
PDF