From 1a30c180bcb62467713c981dde19aa04aa030626 Mon Sep 17 00:00:00 2001 From: Thomas Kaul <4159106+dtslvr@users.noreply.github.com> Date: Sat, 24 Jun 2023 18:05:12 +0200 Subject: [PATCH] Release 1.283.2 (#2099) --- CHANGELOG.md | 2 +- apps/api/src/main.ts | 4 +++- package.json | 2 +- 3 files changed, 5 insertions(+), 3 deletions(-) diff --git a/CHANGELOG.md b/CHANGELOG.md index 7d58fe8bc..6a2e498a1 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -5,7 +5,7 @@ All notable changes to this project will be documented in this file. The format is based on [Keep a Changelog](https://keepachangelog.com/en/1.0.0/), and this project adheres to [Semantic Versioning](https://semver.org/spec/v2.0.0.html). -## 1.283.1 - 2023-06-24 +## 1.283.2 - 2023-06-24 ### Added diff --git a/apps/api/src/main.ts b/apps/api/src/main.ts index c5940edc7..83e97069e 100644 --- a/apps/api/src/main.ts +++ b/apps/api/src/main.ts @@ -39,7 +39,9 @@ async function bootstrap() { helmet({ contentSecurityPolicy: { directives: { - scriptSrc: ["'self'", "'unsafe-inline'"] // Allow inline scripts / styles + scriptSrc: ["'self'", "'unsafe-inline'"], // Allow inline scripts + scriptSrcAttr: ["'self'", "'unsafe-inline'"], // Allow inline event handlers + styleSrc: ["'self'", "'unsafe-inline'"] // Allow inline styles } } }) diff --git a/package.json b/package.json index 853aaf651..8d0a952be 100644 --- a/package.json +++ b/package.json @@ -1,6 +1,6 @@ { "name": "ghostfolio", - "version": "1.283.1", + "version": "1.283.2", "homepage": "https://ghostfol.io", "license": "AGPL-3.0", "scripts": {