10055-12—CSP: Header & Meta
PUBLISHEDsecurity alertInformational
Passive
Metadata
摘要
The message contained both CSP specified via header and via Meta tag. It was not possible to union these policies in order to perform an analysis. Therefore, they have been evaluated individually.
解决方案
Ensure that your web server, application server, load balancer, etc. is properly configured to set the Content-Security-Policy header.