提交 16931bd7 编写于 作者: V Vojtech Juranek 提交者: Jesse Glick

[FIXED SECURITY-80] Add X-Frame-Options head to prevent clickjacking attacks

上级 fbf96734
......@@ -56,6 +56,7 @@ THE SOFTWARE.
<st:header name="Expires" value="0" />
<st:header name="Cache-Control" value="no-cache,must-revalidate" />
<st:header name="X-Hudson-Theme" value="default" />
<st:header name="X-Frame-Options" value="sameorigin" />
<st:contentType value="text/html;charset=UTF-8" />
<j:new var="h" className="hudson.Functions" /><!-- instead of JSP functions -->
......
Markdown is supported
0% .
You are about to add 0 people to the discussion. Proceed with caution.
先完成此消息的编辑!
想要评论请 注册