Using Wordpress on Nginx.
I am receiving these errors but I can't seem to find out where in my Nginx options I have specified this 'DENY' header.
Multiple 'X-Frame-Options' headers with conflicting values ('SAMEORIGIN, DENY') encountered when loading ''. Falling back to 'DENY'.
Refused to display '' in a frame because it set 'X-Frame-Options' to 'SAMEORIGIN, DENY'.
load-scripts.php?c=1&load[]=jquery-core,jquery-migrate,utils,jquery-ui-core,jquery-ui-widget,jquery…:2 Uncaught SecurityError: Failed to read the 'contentDocument' property from 'HTMLIFrameElement': Sandbox access violation: Blocked a frame at "" from accessing a frame at "null". The frame being accessed is sandboxed and lacks the "allow-same-origin" flag.
Any ideas?
In the core files of wordpress functions.php I can see
* Send a HTTP header to limit rendering of pages to same origin iframes.
* @since 3.1.3
* @see
function send_frame_options_header() {
@header( 'X-Frame-Options: SAMEORIGIN' );
But I guess that's not the problem since other users would have mentioned it.