#5770 - Forms specifying a redirect in the action are blocked by CSP

  • By
  • Added
  • 10 views
Identifier #5770
Issue type Minor issue (breaks specific functionality)
Title Forms specifying a redirect in the action are blocked by CSP
Status Open
Tags

Roadmap: v11 (custom)

Handling member Deleted
Version 11 alpha4
Addon core
Description Any forms which specify a redirect as part of its action (such as block top login) could get blocked by Content Security Policy in Chrome and Safari due to tightened security.

We should work around this by doing an internal redirect via a redirect POST parameter.
Steps to reproduce

Funded? No
The system will post a comment when this issue is modified (e.g., status changes). To be notified of this, click "Enable comment notifications".

Rating

Unrated