1
0
mirror of https://github.com/Unleash/unleash.git synced 2025-12-21 20:06:40 +01:00

fix: add cdn.getunleash.io to media-src

This commit is contained in:
FredrikOseberg 2025-12-18 09:17:50 +01:00
parent a770549fd0
commit cc55ad8c19
No known key found for this signature in database
GPG Key ID: 282FD8A6D8F9BCF0

View File

@ -64,6 +64,8 @@ const secureHeaders: (config: IUnleashConfig) => RequestHandler = (config) => {
...config.additionalCspAllowedDomains.connectSrc,
],
mediaSrc: [
"'self'",
'cdn.getunleash.io',
'*.youtube.com',
'*.youtube-nocookie.com',
...config.additionalCspAllowedDomains.mediaSrc,