From 0606205398c208b2f40fa2bf65f2da76511540c0 Mon Sep 17 00:00:00 2001 From: vincent porte Date: Tue, 26 Sep 2023 10:19:17 +0200 Subject: [PATCH] [CSP] add explicit cdn.jsdeliver authorizations --- config/settings/base.py | 3 +++ 1 file changed, 3 insertions(+) diff --git a/config/settings/base.py b/config/settings/base.py index 39eda36ae..f6d6bd6d4 100644 --- a/config/settings/base.py +++ b/config/settings/base.py @@ -361,6 +361,9 @@ CSP_SCRIPT_SRC = ( "'self'", "https://cdn.jsdelivr.net/npm/chart.js", + "https://cdn.jsdelivr.net/npm/jquery@3.6.1/dist/jquery.min.js", + "https://cdn.jsdelivr.net/npm/@popperjs/core@2.11.8/dist/umd/popper.min.js", + "https://cdn.jsdelivr.net/npm/bootstrap@5.3.0/dist/js/bootstrap.min.js", "https://tally.so", "https://stats.data.gouv.fr/piwik.js", )