Skip to content

Commit 2dbb419

Browse files
author
Arpit Gupta
committed
Fix for issue #289
#289 When using ClickJackFilter, In some cases response header is not set. http://stackoverflow.com/questions/11371755/clickjacking-filter-to-add-x -frame-options-in-response
1 parent 374e542 commit 2dbb419

File tree

1 file changed

+1
-1
lines changed

1 file changed

+1
-1
lines changed

src/main/java/org/owasp/esapi/filters/ClickjackFilter.java

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -95,8 +95,8 @@ public void init(FilterConfig filterConfig) {
9595
public void doFilter(ServletRequest request, ServletResponse response, FilterChain chain) throws IOException, ServletException
9696
{
9797
HttpServletResponse res = (HttpServletResponse)response;
98-
chain.doFilter(request, response);
9998
res.addHeader("X-FRAME-OPTIONS", mode );
99+
chain.doFilter(request, response);
100100
}
101101

102102
/**

0 commit comments

Comments
 (0)