Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

TYPO3 12 CSP settings #48

Closed
emileblume opened this issue Dec 21, 2023 · 4 comments
Closed

TYPO3 12 CSP settings #48

emileblume opened this issue Dec 21, 2023 · 4 comments

Comments

@emileblume
Copy link

The inline script <script data-ignore="1"> is being blocked by the Content Security Policy in TYPO3 12.4.9. Unsafe inline can't be used when the nonce option is used.

@featdd
Copy link
Member

featdd commented Dec 21, 2023

Hi @emileblume,

updating the assets injection to using the newer asset collector should to the trick.
Can you give me feedback if this worked for you too?

Solved here: 51ee941

Greetings
Daniel

@featdd
Copy link
Member

featdd commented Dec 22, 2023

Hi @emileblume,

even though you found a workaround as mentioned here: 51ee941#commitcomment-135558997 this should be the preferable solution, so thanks anyway for the hint.

I'll keep this and prepare a new TER update in the new year, then you can update as you like.

Greetings
Daniel

@featdd featdd closed this as completed Dec 22, 2023
@featdd
Copy link
Member

featdd commented Jan 8, 2024

Hi @emileblume,

I just published a new update to TER.

Greetings
Daniel

@emileblume
Copy link
Author

@featdd That's great, thanks!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants