Authorization key:


Regex for CORS response headers Burp Suite

Match: Access-Control-Allow-Origin:(.*?)$
Replace: Access-Control-Allow-Origin: *

Match: Access-Control-Allow-Methods:(.*?)$
Replace: Access-Control-Allow-Methods: DELETE, GET, HEAD, OPTIONS, PATCH, POST, PUT

Match: Access-Control-Allow-Headers:(.*?)$

Requests Made: