diff --git a/library/Icinga/Util/Csp.php b/library/Icinga/Util/Csp.php index bd275c608e..c7fbf9a4c9 100644 --- a/library/Icinga/Util/Csp.php +++ b/library/Icinga/Util/Csp.php @@ -51,7 +51,11 @@ public static function addHeader(Response $response): void throw new RuntimeException('No nonce set for CSS'); } - $response->setHeader('Content-Security-Policy', "style-src 'self' 'nonce-$csp->styleNonce';", true); + $response->setHeader( + 'Content-Security-Policy', + "script-src 'self'; style-src 'self' 'nonce-$csp->styleNonce';", + true + ); } /**