← 문제 라이브러리
Security Advanced SECURITY-103 · 17 min

A CSP nonce is generated at the edge, but the application template reuses a stale fragment and browsers block one script bundle

The response headers look correct, yet execution fails because a cached HTML fragment still contains yesterday's nonce value.

WAF / AppSecPro
시나리오

The response headers look correct, yet execution fails …

구독하면 이어서 볼 수 있어요

이 문제의 전체 시나리오와 점검 체크리스트, 복구 순서, 모범 풀이는 Pro 구독에서 열립니다.

구독 안내 보기