Dependency Graph

Dependency Graph
related to related to child of child of duplicate of duplicate of

View Issue Details

IDProjectCategoryView StatusLast Update
0020428mantisbtjavascriptpublic2016-01-20 04:30
Reportervendeeglobe Assigned Toatrol  
PrioritynormalSeverityminorReproducibilityalways
Status closedResolutionno change required 
Product Version1.3.0-rc.1 
Summary0020428: CSP prevents loading from https://ajax.googleapis.com
Description

Content Security Policy: blocks
("script-src https://www.mantisbt.org https://ajax.googleapis.com").
("img-src https://www.mantisbt.org https://secure.gravatar.com:443").

Steps To Reproduce

https://www.mantisbt.org/
Firefox -> Firebug

TagsNo tags attached.
Attached Files
screenshot3.png (39,561 bytes)   
screenshot3.png (39,561 bytes)   
gravatars.png (44,970 bytes)   
gravatars.png (44,970 bytes)   

Relationships

related to 0017491 closedatrol Avatars are not showing on Firefox 
related to 0012824 closeddregad mantisbt.org + CSP + FF4: lots of CSP violations + JavaScript errors 

Activities

atrol

atrol

2015-12-27 05:39

developer   ~0052186

Do you get any problem concerning secure.gravator.com if Firebug is disabled?

vendeeglobe

vendeeglobe

2015-12-27 05:53

reporter   ~0052187

I had a problem while using the filter, after choosing a category it turns read and was locked.

secure.gravator.com seems blocked by CSP (even with Firebug off), but it won't break the usage of the site.

atrol

atrol

2015-12-27 06:47

developer   ~0052189

secure.gravator.com seems blocked by CSP
So you don't see the pictures on the left side of the notes (see attachment avatars.png)?

atrol

atrol

2016-01-10 15:07

developer   ~0052287

vendeeglobe,

You did not provide any feedback; I am therefore resolving this issue as "no change required".

Feel free to reopen the issue at a later time and provide the requested information.