From c807e88a89cbf55be1ee4effa16e78dc0f1868ae Mon Sep 17 00:00:00 2001 From: mfrachet Date: Thu, 25 Nov 2021 15:34:47 +0100 Subject: [PATCH] Fix CSP for safari --- packages/core/strapi/lib/middlewares/security.js | 1 + 1 file changed, 1 insertion(+) diff --git a/packages/core/strapi/lib/middlewares/security.js b/packages/core/strapi/lib/middlewares/security.js index b54b7b2c1e..f32bb0a8a7 100644 --- a/packages/core/strapi/lib/middlewares/security.js +++ b/packages/core/strapi/lib/middlewares/security.js @@ -14,6 +14,7 @@ const defaults = { 'connect-src': ["'self'", 'https:'], 'img-src': ["'self'", 'data:', 'blob:'], 'media-src': ["'self'", 'data:', 'blob:'], + upgradeInsecureRequests: null, }, }, xssFilter: false,