Menu

#4139 (ok 4.1.0-beta2) reCAPTCHA causing CSP problems

4.1.0
fixed
None
1
2013-11-05
2013-10-17
poiuty
No

Discussion

  • Marc Delisle

    Marc Delisle - 2013-10-27

    I'll look at this problem and if it's specific to your reverse proxy situation, I'll ask you for a VPS.

     
  • Marc Delisle

    Marc Delisle - 2013-10-27
    • assigned_to: Marc Delisle
     
  • Marc Delisle

    Marc Delisle - 2013-10-27

    I have the same problem of not seeing the recaptcha image, and it happens also on a non-SSL server. Tested on Iceweasel 17; I'm getting CSP WARN in Firebug, so the image is blocked by content security policy.

     
  • Marc Delisle

    Marc Delisle - 2013-10-27
    • assigned_to: Marc Delisle --> nobody
     
  • Marc Delisle

    Marc Delisle - 2013-10-27
    • assigned_to: Marc Delisle
     
  • Marc Delisle

    Marc Delisle - 2013-10-27

    The proposed fix lowers security. This fix should be ok, please confirm:
    https://github.com/phpmyadmin/phpmyadmin/commit/0f4ff4dd54c95667ff44910b5768f5146fad6393

     
    • poiuty

      poiuty - 2013-10-27

      confirm, work

       
  • Marc Delisle

    Marc Delisle - 2013-10-27
    • summary: recaptcha ssl problem --> (ok 4.1.0-beta2) reCAPTCHA causing CSP problems
    • status: open --> resolved
    • Priority: 5 --> 1
     
  • Marc Delisle

    Marc Delisle - 2013-11-05
    • status: resolved --> fixed