缺少或寬鬆的 Content-Security-Policy frame-ancestor HTTP 回應標頭

info Nessus Plugin ID 50344