[ https://issues.apache.org/jira/browse/WICKET-7092?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]
Emond Papegaaij closed WICKET-7092. ----------------------------------- Resolution: Won't Fix The characters used in the nonce are valid according to the CSP specification. > Content Security Policy 'Nonces should only use the base64 charset' > ------------------------------------------------------------------- > > Key: WICKET-7092 > URL: https://issues.apache.org/jira/browse/WICKET-7092 > Project: Wicket > Issue Type: Bug > Components: wicket-core > Affects Versions: 9.16.0 > Environment: Kali Linux > Reporter: sundar > Priority: Minor > Attachments: image-20240103-092246.png > > > Hi all, I applied a strict content security policy to my application using > wicket after I tested my application using Kali Linux to check for > vulnerabilities. The tool provides the report with an info message "Nonces > should only use the base64 charset" regarding the info message needed to > configure any properties in CSP. I attached the report screenshot -- This message was sent by Atlassian Jira (v8.20.10#820010)