diff --git a/app/Http/Controllers/AttachmentController.php b/app/Http/Controllers/AttachmentController.php index 0d4d35d913..96f991543b 100644 --- a/app/Http/Controllers/AttachmentController.php +++ b/app/Http/Controllers/AttachmentController.php @@ -222,11 +222,11 @@ class AttachmentController extends Controller "default-src 'none'", "object-src 'none'", "script-src 'none'", - "style-src 'none'", + "style-src 'self' 'unsafe-inline'", "base-uri 'none'", "font-src 'none'", "connect-src 'none'", - "img-src 'none'", + "img-src 'self'", "manifest-src 'none'", ];