From 266fe1a240ed0487a45d21e38bece242e63201e8 Mon Sep 17 00:00:00 2001 From: vincent porte Date: Tue, 26 Sep 2023 10:09:49 +0200 Subject: [PATCH] [CSP] add explicit cdn.jsdeliver authorizations --- config/settings/base.py | 3 +++ 1 file changed, 3 insertions(+) diff --git a/config/settings/base.py b/config/settings/base.py index 39eda36ae..ba0c9385c 100644 --- a/config/settings/base.py +++ b/config/settings/base.py @@ -361,6 +361,9 @@ CSP_SCRIPT_SRC = ( "'self'", "https://cdn.jsdelivr.net/npm/chart.js", + "https://cdn.jsdelivr.net/npm/jquery", + "https://cdn.jsdelivr.net/npm/@popperjs/core", + "https://cdn.jsdelivr.net/npm/bootstrap", "https://tally.so", "https://stats.data.gouv.fr/piwik.js", )