JavaScript Post请求如何绕过服务端同源限制(伪装同源)

如题,想要逆向一个接口,发现同源限制

Access to fetch at ‘目标网址’ from origin ‘我的网址’ has been blocked by CORS policy: No ‘Access-Control-Allow-Origin’ header is present on the requested resource. If an opaque response serves your needs, set the request’s mode to ‘no-cors’ to fetch the resource with CORS disabled.

有没有办法伪装成对方网址的请求,绕过跨域限制?

8 Likes

除非你黑进服务器给他加个*号 allow all?

1 Like

怎么可能:joy:

cf worker搭个反代,我有帖子

1 Like

这个事浏览器的限制

感谢大佬

此话题已在最后回复的 30 天后被自动关闭。不再允许新回复。