Can not open files after upgrade to 10.0.3

Hello I'm back.
As after each upgrade, I have to report again.

First of all, thank you owncloud team, I really like owncloud as long as it works. But it never works, after a big upgrade! I do not like to have to reinstall my server every time. Because you can not create an upgrade that has no negative effects. In the past, this was much more stable. Previously, you did not need much knowledge to run your own OC server. Now you need a damn study! So I ask you for something, please no upgrades. Better do something you can.

Please excuse my choice. Please do not feel offended. But I'm tired of it.

myPicture.jpeg:12 Refused to load the image 'https://myDomain.tld/core/img/favicon.ico' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'img-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:13 Refused to load the image 'https://myDomain.tld/core/img/favicon-touch.png' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'img-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:15 Refused to load the stylesheet 'https://myDomain.tld/core/css/styles.css?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'style-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:16 Refused to load the stylesheet 'https://myDomain.tld/core/css/inputs.css?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'style-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:17 Refused to load the stylesheet 'https://myDomain.tld/core/css/header.css?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'style-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:18 Refused to load the stylesheet 'https://myDomain.tld/core/css/icons.css?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'style-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:19 Refused to load the stylesheet 'https://myDomain.tld/core/css/fonts.css?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'style-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:20 Refused to load the stylesheet 'https://myDomain.tld/core/css/apps.css?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'style-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:21 Refused to load the stylesheet 'https://myDomain.tld/core/css/global.css?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'style-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:22 Refused to load the stylesheet 'https://myDomain.tld/core/css/fixes.css?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'style-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:23 Refused to load the stylesheet 'https://myDomain.tld/core/css/multiselect.css?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'style-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:24 Refused to load the stylesheet 'https://myDomain.tld/core/css/mobile.css?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'style-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:25 Refused to load the stylesheet 'https://myDomain.tld/core/vendor/jquery-ui/themes/base/jquery-ui.css?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'style-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:26 Refused to load the stylesheet 'https://myDomain.tld/core/css/jquery-ui-fixes.css?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'style-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:27 Refused to load the stylesheet 'https://myDomain.tld/core/css/tooltip.css?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'style-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:28 Refused to load the stylesheet 'https://myDomain.tld/core/css/jquery.ocdialog.css?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'style-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/index.php/core/js/oc.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/vendor/jquery/dist/jquery.min.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/vendor/jquery-migrate/jquery-migrate.min.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/vendor/jquery-ui/ui/jquery-ui.custom.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/vendor/underscore/underscore.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/vendor/moment/min/moment-with-locales.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/vendor/handlebars/handlebars.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/vendor/blueimp-md5/js/md5.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/vendor/bootstrap/js/tooltip.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/vendor/backbone/backbone.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/vendor/es6-promise/dist/es6-promise.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/vendor/davclient.js/lib/client.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/vendor/clipboard/dist/clipboard.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/vendor/bowser/src/bowser.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/js/jquery.ocdialog.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/js/oc-dialogs.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/js/js.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/js/l10n.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/l10n/de_DE.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/js/octemplate.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/js/eventsource.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/js/config.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/search/js/search.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/js/oc-requesttoken.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/js/apps.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/js/mimetype.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/js/mimetypelist.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/vendor/snapjs/dist/latest/snap.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/js/oc-backbone.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/js/placeholder.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/js/jquery.avatar.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/js/backgroundjobs.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/js/files/fileinfo.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:1 Refused to load the script 'https://myDomain.tld/core/js/files/client.js?v=dca055fcd5438738738cacfbbc8e8' because it violates the following Content Security Policy directive: "default-src 'none'". Note that 'script-src' was not explicitly set, so 'default-src' is used as a fallback.

myPicture.jpeg:79 Refused to apply inline style because it violates the following Content Security Policy directive: "default-src 'none'". Either the 'unsafe-inline' keyword, a hash ('sha256-0EZqoz+oBhx7gF4nvY2bSqoGyy4zLjNF+SDQXGp/ZrY='), or a nonce ('nonce-...') is required to enable inline execution. Note also that 'style-src' was not explicitly set, so 'default-src' is used as a fallback.