From acd3bea0c6ec4906ade000456e276045e277ef83 Mon Sep 17 00:00:00 2001 From: Janos Dobronszki Date: Wed, 9 Sep 2020 15:40:02 +0200 Subject: [PATCH] Add 'Namespace' header to allowed CORS headers (#1990) --- api/server/cors/cors.go | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/api/server/cors/cors.go b/api/server/cors/cors.go index 6c030e0c..cd5b4079 100644 --- a/api/server/cors/cors.go +++ b/api/server/cors/cors.go @@ -40,5 +40,5 @@ func SetHeaders(w http.ResponseWriter, r *http.Request) { set(w, "Access-Control-Allow-Credentials", "true") set(w, "Access-Control-Allow-Methods", "POST, PATCH, GET, OPTIONS, PUT, DELETE") - set(w, "Access-Control-Allow-Headers", "Accept, Content-Type, Content-Length, Accept-Encoding, X-CSRF-Token, Authorization") + set(w, "Access-Control-Allow-Headers", "Accept, Content-Type, Content-Length, Accept-Encoding, X-CSRF-Token, Authorization, Namespace") }