Skip to content
Permalink
Browse files Browse the repository at this point in the history
SW-26367 - Add new CSP directive to .htaccess
  • Loading branch information
philipgatzka committed Oct 25, 2021
1 parent f6ffb74 commit 37213e9
Show file tree
Hide file tree
Showing 2 changed files with 14 additions and 0 deletions.
6 changes: 6 additions & 0 deletions .htaccess
Expand Up @@ -96,6 +96,12 @@ DirectoryIndex shopware.php
</IfModule>
</FilesMatch>

<IfModule mod_headers.c>
<FilesMatch "\.(?i:svg)$">
Header set Content-Security-Policy "script-src 'none'"
</FilesMatch>
</IfModule>

# Disables auto directory index
<IfModule mod_autoindex.c>
Options -Indexes
Expand Down
8 changes: 8 additions & 0 deletions UPGRADE-5.7.md
Expand Up @@ -2,6 +2,14 @@

This changelog references changes done in Shopware 5.7 patch versions.

## 5.7.6

[View all changes from v5.7.5...v5.7.6](https://github.com/shopware/shopware/compare/v5.7.5...v5.7.6)

### Additions

* Added a new CSP directive to the default `.htaccess`

## 5.7.4

[View all changes from v5.7.3...v5.7.4](https://github.com/shopware/shopware/compare/v5.7.3...v5.7.4)
Expand Down

0 comments on commit 37213e9

Please sign in to comment.