Skip to content

Commit 88f9733

Browse files
committed
1 parent 8267c4b commit 88f9733

File tree

3 files changed

+5
-4
lines changed

3 files changed

+5
-4
lines changed

History.md

Lines changed: 3 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -35,9 +35,10 @@ unreleased
3535
- deps: range-parser@~1.2.1
3636
- deps: statuses@~1.5.0
3737
- perf: remove redundant `path.normalize` call
38-
38+
39+
- Set stricter CSP header in redirect response
3940
- deps: parseurl@~1.3.3
40-
41+
4142
4243
* deps: statuses@~1.5.0
4344
- Add `103 Early Hints`

package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -51,7 +51,7 @@
5151
"range-parser": "~1.2.0",
5252
"safe-buffer": "5.1.2",
5353
"send": "0.17.1",
54-
"serve-static": "1.14.0",
54+
"serve-static": "1.14.1",
5555
"setprototypeof": "1.1.1",
5656
"statuses": "~1.5.0",
5757
"type-is": "~1.6.18",

test/express.static.js

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -513,7 +513,7 @@ describe('express.static()', function () {
513513
it('should respond with default Content-Security-Policy', function (done) {
514514
request(this.app)
515515
.get('/users')
516-
.expect('Content-Security-Policy', "default-src 'self'")
516+
.expect('Content-Security-Policy', "default-src 'none'")
517517
.expect(301, done)
518518
})
519519

0 commit comments

Comments
 (0)