injectCSS method not attaching csp nonce passed to it. it is used in antd components internally
还没有人认领这个 Issue。
评估
- 难度
- 2/5
- 预计耗时
- 1-3 小时
- 新手友好度
- 65/100
- Issue 类型
- 缺陷
- 描述清晰度
- 基本清楚
- 活跃度
- 活跃
- 技术栈
- javascript, typescript
- 领域
- frontend
调研方向
首先阅读 node_modules/rc-util/es/Dom/dynamicCSS.js 和 node_modules/rc-util/lib/Dom/dynamicCSS.js,重点关注 injectCSS 及其 CSP 处理。确认实现会在生成的 style 元素上保留传递给 injectCSS 的 nonce,然后在仓库提供相关测试的情况下添加或更新该测试。
由索引模型根据 Issue 内容生成。
描述
Hi! 👋
Firstly, thanks for your work on this project! 🙂
Today I used patch-package to patch [email protected] for the project I'm working on.
Here is the diff that solved my problem:
diff --git a/node_modules/rc-util/es/Dom/dynamicCSS.js b/node_modules/rc-util/es/Dom/dynamicCSS.js
index 8ddec00..9e5efee 100644
--- a/node_modules/rc-util/es/Dom/dynamicCSS.js
+++ b/node_modules/rc-util/es/Dom/dynamicCSS.js
@@ -52,7 +52,8 @@ export function injectCSS(css) {
styleNode.setAttribute(APPEND_PRIORITY, "".concat(priority));
}
if (csp !== null && csp !== void 0 && csp.nonce) {
- styleNode.nonce = csp === null || csp === void 0 ? void 0 : csp.nonce;
+ styleNode.setAttribute('nonce', csp.nonce);
+ // styleNode.nonce = csp === null || csp === void 0 ? void 0 : csp.nonce;
}
styleNode.innerHTML = css;
var container = getContainer(option);
diff --git a/node_modules/rc-util/lib/Dom/dynamicCSS.js b/node_modules/rc-util/lib/Dom/dynamicCSS.js
index 95a5191..be33605 100644
--- a/node_modules/rc-util/lib/Dom/dynamicCSS.js
+++ b/node_modules/rc-util/lib/Dom/dynamicCSS.js
@@ -62,7 +62,8 @@ function injectCSS(css) {
styleNode.setAttribute(APPEND_PRIORITY, "".concat(priority));
}
if (csp !== null && csp !== void 0 && csp.nonce) {
- styleNode.nonce = csp === null || csp === void 0 ? void 0 : csp.nonce;
+ styleNode.setAttribute('nonce', csp.nonce);
+ // styleNode.nonce = csp === null || csp === void 0 ? void 0 : csp.nonce;
}
styleNode.innerHTML = css;
var container = getContainer(option);
This issue body was partially generated by patch-package.
- 主要语言
- TypeScript
- 星标
- 670
- 派生
- 206
- 平均合并
- 14 天 12 小时
- 30 天内合并 PR
- 3
环境准备
这个项目没有提供开发容器、Dockerfile 或贡献指南,环境需要你自己搭建:先看它的 README,通用步骤见我们的新手贡献指南。
从这里开始
- 先读完整个 Issue,再读项目的贡献指南。
- 在 Issue 下留言说明你要接手 —— 这能避免两个人做同样的事。
- Fork 仓库,在一个分支上完成修改。
- 提交 Pull Request,并在描述里引用这个 Issue 编号。
react-component/util 的其他 Issue
-
难度 2/5 1-3 小时 新手友好度 88/100
react-component/util#816 ·
-
难度 4/5 3-5 天 新手友好度 35/100
react-component/util#738 · 1 条评论 · 1 个 reaction ·
-
难度 4/5 3-5 天 新手友好度 25/100
react-component/util#710 ·
-
难度 3/5 1-2 天 新手友好度 25/100
react-component/util#647 · 5 条评论 ·
-
难度 3/5 1-2 天 新手友好度 45/100
react-component/util#644 · 1 条评论 ·
查看 react-component/util 的全部 Issue
相似的 Issue
-
type/bug
难度 2/5 1-3 小时 新手友好度 76/100
维护者通常 1 天内回复
-
community first-timers-only good first issue hacktoberfest help wanted low hanging fruit up-for-grabs
难度 1/5 1 小时以内 新手友好度 95/100
lingdojo/kana-dojo#31593 · 1 条评论 · 5 个 reaction ·
维护者通常 1 天内回复
-
bug
难度 1/5 1-3 小时 新手友好度 90/100
apache/fineract-backoffice-ui#697 ·
维护者通常 1 天内回复
-
good first issue hacktoberfest help wanted
难度 2/5 1-3 小时 新手友好度 88/100
libredb/libredb-studio#1291 · 1 条评论 ·
维护者通常 1 天内回复
-
bug P1
难度 2/5 1-3 小时 新手友好度 88/100
Yeachan-Heo/gajae-code#6295 · 1 条评论 ·
维护者通常 1 天内回复