Netsparker detected that scheme URI was used in CSP directive.
This means that scheme URI in script-src (http: or https:) allows the execution of unsafe scripts.
Replace the scheme URI with the domain that you trust.
You can search and find all vulnerabilities
Dead accurate, fast & easy-to-use Web Application Security Scanner