Skip to content

The Content-Security-Policy directive 'frame-ancestors' does not support the source expression ''unsafe-inline'' #33101

Closed
@minhluan259

Description

@minhluan259

Preconditions (*)

  1. Magento 2.4.2-p1 with sample data
  2. Chrome v91

Steps to reproduce (*)

  1. Open console in Google Chrome (F12)
  2. Reload the homepage

Expected result (*)

  1. Console without error

Actual result (*)

  1. Console is displaying error:
    The Content-Security-Policy directive 'frame-ancestors' does not support the source expression ''unsafe-inline''

How to solve 'frame-ancestors' issue?

Metadata

Metadata

Assignees

Labels

Component: SecurityIssue: ConfirmedGate 3 Passed. Manual verification of the issue completed. Issue is confirmedIssue: ready for confirmationPriority: P2A defect with this priority could have functionality issues which are not to expectations.Progress: doneReproduced on 2.4.xThe issue has been reproduced on latest 2.4-develop branch

Type

No type

Projects

Status

Done

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions