1
0
mirror of https://github.com/vrana/adminer.git synced 2025-08-07 07:06:45 +02:00

Disallow scripts without nonce

This commit is contained in:
Jakub Vrana
2018-01-13 22:17:00 +01:00
parent e23da5da0e
commit 80d030f51a
9 changed files with 32 additions and 13 deletions

View File

@@ -29,7 +29,7 @@ class AdminerTinymce {
}
echo script_src($this->path);
?>
<script>
<script<?php echo nonce(); ?>>
tinyMCE.init({
mode: 'none',
theme: 'advanced',