MantisBT: master 5eaec26d

Author Committer Branch Timestamp Parent
dhx dhx master 2010-05-23 06:10 master f017e817
Changeset

Send HTTP security headers (CSP, etc) on file downloads

File downloads should return HTTP security headers as another layer of
protection against someone framing a MantisBT file_download link to a
file with a harmful MIME type such as text/html.

mod - file_download.php Diff File