hedgedoc/lib
David Mehren 0b61f48129
Fix upgradeInsecureRequests CSP directive
The `upgradeInsecureRequests` option of Helmets CSP middleware
was a boolean in Helmet 3, but with Helmet 4,
everything changed to lists.
This commit adjusts the addUpgradeUnsafeRequestsOptionTo
function accordingly.

Closes #1221

See also https://github.com/helmetjs/helmet/tree/v4.6.0/middlewares/content-security-policy

Signed-off-by: David Mehren <git@herrmehren.de>
2021-05-04 11:10:53 +02:00
..
config Config: Remove image/jpg 2021-03-28 22:28:35 +02:00
migrations Add missing catch 2020-12-02 19:39:06 +01:00
models Remove unneeded polyfill 2021-04-26 17:05:20 +02:00
ot Fix logging in ot module 2018-11-13 23:30:13 +01:00
web ImageRouterImgur: Replace imgur library with note-fetch request 2021-04-22 21:23:27 +02:00
workers Linter: Fix all lint errors 2021-02-15 12:15:14 +01:00
csp.js Fix upgradeInsecureRequests CSP directive 2021-05-04 11:10:53 +02:00
errors.js Check for existing notes on POST and dont override them 2021-03-29 23:00:34 +02:00
history.js Linter: Fix all lint errors 2021-02-15 12:15:14 +01:00
letter-avatars.js Linter: Fix all lint errors 2021-02-15 12:15:14 +01:00
logger.js Fix eslint warnings 2019-05-31 00:30:29 +02:00
prometheus.js Add custom prometheus metrics 2021-04-25 20:06:56 +02:00
realtime.js Linter: Fix all lint errors 2021-02-15 12:15:14 +01:00
response.js Replace request library with node-fetch 2021-03-12 22:27:49 +01:00
utils.js Linter: Fix all lint errors 2021-02-15 12:15:14 +01:00