diff website/issues/html/page.html @ 6218:7146b68ac263

Add client_nonce to all scripts Add: tal:attributes="nonce request/client/client_nonce" to script tags.
author John Rouillard <rouilj@ieee.org>
date Thu, 02 Jul 2020 20:05:02 -0400
parents 11e1dd818a8f
children 461a322a79af
line wrap: on
line diff
--- a/website/issues/html/page.html	Thu Jul 02 10:38:30 2020 -0400
+++ b/website/issues/html/page.html	Thu Jul 02 20:05:02 2020 -0400
@@ -7,7 +7,8 @@
 <link rel="stylesheet" type="text/css" href="@@file/style.css" />
 <meta http-equiv="Content-Type"
  tal:attributes="content string:text/html;; charset=${request/client/charset}" />
-<script tal:replace="structure request/base_javascript">
+<script tal:attributes="nonce request/client/client_nonce"
+	tal:replace="structure request/base_javascript">
 </script>
 <metal:x define-slot="more-javascript" />
 
@@ -362,7 +363,9 @@
 
 See user.item.html in the classic template for examples.
 -->
-<script metal:define-macro="user_utils" type="text/javascript" src="@@file/user_utils.js"></script>
+<script metal:define-macro="user_utils" type="text/javascript"
+	src="@@file/user_utils.js"
+	tal:attributes="nonce request/client/client_nonce"></script>
 
 <!-- src: value will be re-used for other input fields -->
 <input metal:define-macro="user_src_input"

Roundup Issue Tracker: http://roundup-tracker.org/