diff --git a/lib/private/response.php b/lib/private/response.php index f1a429463f28ff370e9396105c0e3681f17949a0..14ee92972a9c9f40a7803d89a519a0fe90e32345 100644 --- a/lib/private/response.php +++ b/lib/private/response.php @@ -247,7 +247,7 @@ class OC_Response { . 'script-src \'self\' \'unsafe-eval\'; ' . 'style-src \'self\' \'unsafe-inline\'; ' . 'frame-src *; ' - . 'img-src *; ' + . 'img-src * data:; ' . 'font-src \'self\' data:; ' . 'media-src *; ' . 'connect-src *';