introducing CSP header to mitigate XSS attacks, closes #10

This commit is contained in:
El RIDO
2016-08-09 14:46:32 +02:00
parent a28aebae7d
commit addb666a23
11 changed files with 75 additions and 18 deletions

View File

@@ -106,7 +106,7 @@ endforeach;
foreach ($EXPIRE as $key => $value):
?>
<li>
<a href="#" onclick="$('#pasteExpiration').val('<?php echo $key; ?>');$('#pasteExpirationDisplay').text('<?php echo $value; ?>');return false;">
<a href="#" data-expiration="<?php echo $key; ?>">
<?php echo $value; ?>
</a>
</li>
@@ -193,7 +193,7 @@ endforeach;
foreach ($FORMATTER as $key => $value):
?>
<li>
<a href="#" onclick="$('#pasteFormatter').val('<?php echo $key; ?>');$('#pasteFormatterDisplay').text('<?php echo $value; ?>');return false;">
<a href="#" data-format="<?php echo $key; ?>">
<?php echo $value; ?>
</a>
</li>
@@ -214,7 +214,7 @@ if (strlen($LANGUAGESELECTION)):
foreach ($LANGUAGES as $key => $value):
?>
<li>
<a href="#" class="reloadlink" onclick="document.cookie='lang=<?php echo $key; ?>';">
<a href="#" data-lang="<?php echo $key; ?>">
<?php echo $value[0]; ?> (<?php echo $value[1]; ?>)
</a>
</li>