Results 1 comments of jung

"unsafe-eval, unsafe-inline" as a csp header just doesn't look right. It's basically a false sense of security. The problem is coming from the inline script tags, which is generated by...