LemmyNet / lemmy-ui

The official web app for lemmy.
https://join-lemmy.org/
GNU Affero General Public License v3.0
895 stars 334 forks source link

[Bug]: Video blocked on other instances due to Content Security Policy #1221

Open izaxone opened 1 year ago

izaxone commented 1 year ago

Summary

The following video is blocked by Content Security Policy when viewed on other instances: https://hakbox.social/pictrs/image/916319ce-8412-40d6-ac65-31ac13bdf1a6.mp4

The video is hosted on a new instance.

image

Steps to Reproduce

  1. Go to the post on the instance the video is on: https://hakbox.social/post/6863
  2. Notice the video displays
  3. Go to the post on a different instance: https://lemmy.world/post/84747
  4. Notice the video does not display, and console error is thrown

Technical Details

Content Security Policy: The page’s settings blocked the loading of a resource at https://hakbox.social/pictrs/image/916319ce-8412-40d6-ac65-31ac13bdf1a6.mp4 (“default-src”).

Version

Edited: 0.17.3

SleeplessOne1917 commented 1 year ago

Should be taken care of from #1092.

Zetaphor commented 1 year ago

@SleeplessOne1917 Is that PR part of 0.17.4 or 0.18?

We just verified this is still an issue on 0.17.4:

https://crystals.rest/post/8116 https://zemmy.cc/post/17170

SleeplessOne1917 commented 1 year ago

@Zetaphor it's part in 0.18.