[Koha-bugs] [Bug 20397] New: Implement Content Security Policy

bugzilla-daemon at bugs.koha-community.org bugzilla-daemon at bugs.koha-community.org
Wed Mar 14 14:35:58 CET 2018


https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=20397

            Bug ID: 20397
           Summary: Implement Content Security Policy
 Change sponsored?: ---
           Product: Koha
           Version: master
          Hardware: All
                OS: All
            Status: NEW
          Severity: enhancement
          Priority: P5 - low
         Component: Architecture, internals, and plumbing
          Assignee: koha-bugs at lists.koha-community.org
          Reporter: josef.moravec at gmail.com
        QA Contact: testopia at bugs.koha-community.org

CSP can control loading resources on web page to prevent XSS vulnarabilities.

More reading here:
https://infosec.mozilla.org/guidelines/web_security#content-security-policy

You can test your site here:
https://observatory.mozilla.org/

-- 
You are receiving this mail because:
You are watching all bug changes.
You are the assignee for the bug.


More information about the Koha-bugs mailing list