diff --git a/CHANGELOG.md b/CHANGELOG.md index 9de4c9951..3bf25b404 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -5,7 +5,7 @@ All notable changes to this project will be documented in this file. The format is based on [Keep a Changelog](https://keepachangelog.com/en/1.0.0/), and this project adheres to [Semantic Versioning](https://semver.org/spec/v2.0.0.html). -## 1.299.0 - 2023-08-09 +## 1.299.1 - 2023-08-10 ### Changed diff --git a/apps/api/src/main.ts b/apps/api/src/main.ts index d759c1d87..5d76776a1 100644 --- a/apps/api/src/main.ts +++ b/apps/api/src/main.ts @@ -40,6 +40,7 @@ async function bootstrap() { helmet({ contentSecurityPolicy: { directives: { + connectSrc: ["'self'", 'https://js.stripe.com'], // Allow connections to Stripe frameSrc: ["'self'", 'https://js.stripe.com'], // Allow loading frames from Stripe scriptSrc: ["'self'", "'unsafe-inline'", 'https://js.stripe.com'], // Allow inline scripts and scripts from Stripe scriptSrcAttr: ["'self'", "'unsafe-inline'"], // Allow inline event handlers diff --git a/package.json b/package.json index 0481b38a3..20f28fa44 100644 --- a/package.json +++ b/package.json @@ -1,6 +1,6 @@ { "name": "ghostfolio", - "version": "1.299.0", + "version": "1.299.1", "homepage": "https://ghostfol.io", "license": "AGPL-3.0", "scripts": {