Unsupported Hash Detected in Content Security Policy (CSP)
Summary#
Invicti detected that an unsupported hashing algorithm was declared in CSP directive.
Impact#
Browsers do not support this. CSP will not work as expected.
Remediation#
Use one of the following supported hashing algorithms:
- SHA-256, sha256
- SHA-384, sha384
- SHA-512, sha512
Classifications#
Further Reading#