Reply to thread

Well, it's exactly the problem that I cannot reproduce it. Why I can determinate it has another reason.

What I did not described in detail was that CSP has another nice feature: With an report-uri in the header you can get reports from browsers where the CSP is violated. This way you can even detect XSS attacks - or such stupid errors, which seems to occur. But because of this I don't even know which browser they used (okay it have to be a browser, which supports CSP and the reporting feature, but nothing more).

This is why I said I can't reproduce it - I only know that it appears.


Back
Top Bottom