summaryrefslogtreecommitdiff
path: root/django/middleware/clickjacking.py
diff options
context:
space:
mode:
authorTom Carrick <tom@carrick.eu>2020-07-14 13:32:24 +0200
committerMariusz Felisiak <felisiak.mariusz@gmail.com>2020-09-14 08:41:59 +0200
commitbcc2befd0e9c1885e45b46d0b0bcdc11def8b249 (patch)
tree59fab69a3182286da87fcd6fe05a8ce0f4277a5a /django/middleware/clickjacking.py
parent71ae1ab0123582cc5bfe0f7d5f4cc19a9412f396 (diff)
Fixed #31789 -- Added a new headers interface to HttpResponse.
Diffstat (limited to 'django/middleware/clickjacking.py')
-rw-r--r--django/middleware/clickjacking.py6
1 files changed, 4 insertions, 2 deletions
diff --git a/django/middleware/clickjacking.py b/django/middleware/clickjacking.py
index 478ed3cd7e..0161f8eb8f 100644
--- a/django/middleware/clickjacking.py
+++ b/django/middleware/clickjacking.py
@@ -30,8 +30,10 @@ class XFrameOptionsMiddleware(MiddlewareMixin):
if getattr(response, 'xframe_options_exempt', False):
return response
- response['X-Frame-Options'] = self.get_xframe_options_value(request,
- response)
+ response.headers['X-Frame-Options'] = self.get_xframe_options_value(
+ request,
+ response,
+ )
return response
def get_xframe_options_value(self, request, response):