Thanks to visit codestin.com
Credit goes to github.com

Skip to content
This repository was archived by the owner on Apr 12, 2024. It is now read-only.
This repository was archived by the owner on Apr 12, 2024. It is now read-only.

CSP auto detection not working in 1.3.0-beta 15 and Packaged Chrome App? #8162

Closed
@lorthirk

Description

@lorthirk

Hello,

I was playing with 1.3.0 in a Packaged Chrome App, and everything was working fine. Overwriting beta14 with beta15 gave me those errors, that went away when I added ng-csp to . Is this intended?:

Refused to evaluate a string as JavaScript because 'unsafe-eval' is not an allowed source of script in the following Content Security Policy directive: "default-src 'self' chrome-extension-resource:". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.`
 angular.min.js:97
Pc angular.min.js:97
Ub.readIdent angular.min.js:168
Ub.lex angular.min.js:164
Za.parse angular.min.js:170
(anonymous function) angular.min.js:99
compile angular.min.js:203
ba angular.min.js:59
S angular.min.js:49
S angular.min.js:49
S angular.min.js:49
S angular.min.js:49
V angular.min.js:47
(anonymous function) angular.min.js:18
h.$eval angular.min.js:113
h.$apply angular.min.js:114
(anonymous function) angular.min.js:18
e angular.min.js:36
d angular.min.js:18
gc angular.min.js:18
qd angular.min.js:17
(anonymous function) angular.min.js:223
a angular.min.js:147
(anonymous function) angular.min.js:32
q angular.min.js:7
Ne.c angular.min.js:32
EvalError: Refused to evaluate a string as JavaScript because 'unsafe-eval' is not an allowed source of script in the following Content Security Policy directive: "default-src 'self' chrome-extension-resource:".

    at Window.Function (native)
    at Pc (chrome-extension://jeecijlolcehjchhmbdccimkbhhibjdm/libs/angular.min.js:97:478)
    at Ub.readIdent (chrome-extension://jeecijlolcehjchhmbdccimkbhhibjdm/libs/angular.min.js:168:240)
    at Ub.lex (chrome-extension://jeecijlolcehjchhmbdccimkbhhibjdm/libs/angular.min.js:164:196)
    at Za.parse (chrome-extension://jeecijlolcehjchhmbdccimkbhhibjdm/libs/angular.min.js:170:201)
    at chrome-extension://jeecijlolcehjchhmbdccimkbhhibjdm/libs/angular.min.js:99:143
    at Object.compile (chrome-extension://jeecijlolcehjchhmbdccimkbhhibjdm/libs/angular.min.js:203:255)
    at ba (chrome-extension://jeecijlolcehjchhmbdccimkbhhibjdm/libs/angular.min.js:59:3)
    at S (chrome-extension://jeecijlolcehjchhmbdccimkbhhibjdm/libs/angular.min.js:49:26)
    at S (chrome-extension://jeecijlolcehjchhmbdccimkbhhibjdm/libs/angular.min.js:49:148) <button ng-click="doFirmwareCheck()"> angular.min.js:95
(anonymous function) angular.min.js:95
(anonymous function) angular.min.js:70
ba angular.min.js:59
S angular.min.js:49
S angular.min.js:49
S angular.min.js:49
S angular.min.js:49
V angular.min.js:47
(anonymous function) angular.min.js:18
h.$eval angular.min.js:113
h.$apply angular.min.js:114
(anonymous function) angular.min.js:18
e angular.min.js:36
d angular.min.js:18
gc angular.min.js:18
qd angular.min.js:17
(anonymous function) angular.min.js:223
a angular.min.js:147
(anonymous function) angular.min.js:32
q angular.min.js:7
Ne.c angular.min.js:32
Refused to evaluate a string as JavaScript because 'unsafe-eval' is not an allowed source of script in the following Content Security Policy directive: "default-src 'self' chrome-extension-resource:". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.
 angular.min.js:97
Pc angular.min.js:97
Ub.readIdent angular.min.js:168
Ub.lex angular.min.js:164
Za.parse angular.min.js:170
(anonymous function) angular.min.js:99
g angular.min.js:81
u angular.min.js:63
D angular.min.js:51
S angular.min.js:48
S angular.min.js:49
S angular.min.js:49
S angular.min.js:49
S angular.min.js:49
S angular.min.js:49
V angular.min.js:47
(anonymous function) angular.min.js:18
h.$eval angular.min.js:113
h.$apply angular.min.js:114
(anonymous function) angular.min.js:18
e angular.min.js:36
d angular.min.js:18
gc angular.min.js:18
qd angular.min.js:17
(anonymous function) angular.min.js:223
a angular.min.js:147
(anonymous function) angular.min.js:32
q angular.min.js:7
Ne.c angular.min.js:32
EvalError: Refused to evaluate a string as JavaScript because 'unsafe-eval' is not an allowed source of script in the following Content Security Policy directive: "default-src 'self' chrome-extension-resource:".

    at Window.Function (native)
    at Pc (chrome-extension://jeecijlolcehjchhmbdccimkbhhibjdm/libs/angular.min.js:97:478)
    at Ub.readIdent (chrome-extension://jeecijlolcehjchhmbdccimkbhhibjdm/libs/angular.min.js:168:240)
    at Ub.lex (chrome-extension://jeecijlolcehjchhmbdccimkbhhibjdm/libs/angular.min.js:164:196)
    at Za.parse (chrome-extension://jeecijlolcehjchhmbdccimkbhhibjdm/libs/angular.min.js:170:201)
    at chrome-extension://jeecijlolcehjchhmbdccimkbhhibjdm/libs/angular.min.js:99:143
    at g (chrome-extension://jeecijlolcehjchhmbdccimkbhhibjdm/libs/angular.min.js:81:230)
    at u (chrome-extension://jeecijlolcehjchhmbdccimkbhhibjdm/libs/angular.min.js:63:242)
    at D (chrome-extension://jeecijlolcehjchhmbdccimkbhhibjdm/libs/angular.min.js:51:27)
    at S (chrome-extension://jeecijlolcehjchhmbdccimkbhhibjdm/libs/angular.min.js:48:491) angular.min.js:95
(anonymous function) angular.min.js:95
(anonymous function) angular.min.js:70
h.$apply angular.min.js:114
(anonymous function) angular.min.js:18
e angular.min.js:36
d angular.min.js:18
gc angular.min.js:18
qd angular.min.js:17
(anonymous function) angular.min.js:223
a angular.min.js:147
(anonymous function) angular.min.js:32
q angular.min.js:7
Ne.c angular.min.js:32

Metadata

Metadata

Assignees

Type

No type

Projects

No projects

Milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions