Add nonce.

This commit is contained in:
James Cole
2023-08-12 18:09:23 +02:00
parent 1d8a784586
commit a2d6d7a92c

View File

@@ -26,6 +26,7 @@ namespace FireflyIII\Http\Middleware;
use Closure;
use Exception;
use Illuminate\Http\Request;
use Illuminate\Support\Facades\Vite;
/**
*
@@ -46,6 +47,7 @@ class SecureHeaders
{
// generate and share nonce.
$nonce = base64_encode(random_bytes(16));
Vite::useCspNonce($nonce);
app('view')->share('JS_NONCE', $nonce);
$response = $next($request);