From 42a97da7631a175b8c437ecb26ab2dbfa29dfcab Mon Sep 17 00:00:00 2001 From: Stuart Taylor Date: Tue, 31 Jul 2018 16:25:03 +0100 Subject: [PATCH] fix(csp): Add fontaesome.com to trusted styleSrc --- server/middlewares/csp.js | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/server/middlewares/csp.js b/server/middlewares/csp.js index 545ed8438f..ff909fb18a 100644 --- a/server/middlewares/csp.js +++ b/server/middlewares/csp.js @@ -58,7 +58,8 @@ export default function csp() { 'https://*.bootstrapcdn.com', '*.cloudflare.com', 'https://*.cloudflare.com', - 'https://*.optimizely.com' + 'https://*.optimizely.com', + 'https://use.fontawesome.com' ].concat(trusted), fontSrc: [ '*.cloudflare.com',