Title: WP-CORS
Author: tstephenson
Published: <strong>5 oktober 2014</strong>
Last modified: 28 juli 2023

---

Plugins zoeken

Deze plugin **is niet getest met de laatste 3 grotere versies van WordPress**. Mogelijk
wordt het niet meer onderhouden of ondersteund. Ook kunnen er compatibiliteitsproblemen
ontstaan wanneer het wordt gebruikt met recentere versies van WordPress.

![](https://s.w.org/plugins/geopattern-icon/wp-cors.svg)

# WP-CORS

 Door [tstephenson](https://profiles.wordpress.org/tstephenson/)

[Download](https://downloads.wordpress.org/plugin/wp-cors.0.2.2.zip)

 * [Details](https://nl.wordpress.org/plugins/wp-cors/#description)
 * [Beoordelingen](https://nl.wordpress.org/plugins/wp-cors/#reviews)
 *  [Installatie](https://nl.wordpress.org/plugins/wp-cors/#installation)
 * [Ontwikkeling](https://nl.wordpress.org/plugins/wp-cors/#developers)

 [Ondersteuning](https://wordpress.org/support/plugin/wp-cors/)

## Beschrijving

My use case is to allow content authors to write help pages in WordPress.
 This 
content is fetched and embedded into a single page application hosted on another
domain.

AJAX requests to this site from another are typically disallowed by the browser’s
security model.
 To permit legitimate uses the requesting browser may include an
Origin header containing its domain. This plugin uses the Origin header to decide
whether to allow the request or not. Allowed domains can be specified in the plugin’s
Settings page.

## Schermafbeeldingen

[⌊The plugin's Settings page.⌉⌊The plugin's Settings page.⌉[

The plugin’s Settings page.

## Installatie

This section describes how to install the plugin and get it working.

 1. Upload the uncompressed contents of `wp-cors.zip` to the `/wp-content/plugins/`
    directory
 2. Activate the plugin through the ‘Plugins’ menu in WordPress

## FAQ

### Why do I need this plugin?

If you want to integrate content from your site to JavaScript applications running
on other host domains (or allow other people to) then the CORS standard is a way
to allow this.

### What is the difference between CORS and JSONP?

CORS is more modern and more secure since it works _with_ the browser’s same-origin
policy and XmlHttpRequest objects rather than bypassing them.

### Ok I’m sold, where can I read more about CORS?

You can find the CORS spec here: http://www.w3.org/TR/cors/ You can learn more about
how to use CORS here: http://www.html5rocks.com/en/tutorials/cors/

### How do I control which sites can integrate using CORS?

This plugin’s Settings page allows administrators to specify a comma separated list
of allowed domains.

## Beoordelingen

![](https://secure.gravatar.com/avatar/50c101f4d9be877802d44713e653b7ee3306990c73a8daa836608bfa2bf2dcba?
s=60&d=retro&r=g)

### 󠀁[Doesn’t work](https://wordpress.org/support/topic/doesnt-work-2425/)󠁿

 [angeljs](https://profiles.wordpress.org/angeljs/) 28 mei 2020

Doesn’t work at all

![](https://secure.gravatar.com/avatar/fc79b304fae938687630ff147878c33fc258d96d9d2a6da6e0dc2bcad7e002ea?
s=60&d=retro&r=g)

### 󠀁[wp cores… allow access to this site using the CORS standard for authorizing cr](https://wordpress.org/support/topic/wp-cores-allow-access-to-this-site-using-the-cors-standard-for-authorizing-cr/)󠁿

 [nileshtaylor](https://profiles.wordpress.org/nileshtaylor/) 30 juli 2018

its not working for me.. my website yet giving error cores origin error.

 [ Lees alle 3 beoordelingen ](https://wordpress.org/support/plugin/wp-cors/reviews/)

## Bijdragers & ontwikkelaars

“WP-CORS” is open source software. De volgende personen hebben bijgedragen aan deze
plugin.

Bijdragers

 *   [ tstephenson ](https://profiles.wordpress.org/tstephenson/)

[Vertaal “WP-CORS” in je eigen taal.](https://translate.wordpress.org/projects/wp-plugins/wp-cors)

### Interesse in ontwikkeling?

[Bekijk de code](https://plugins.trac.wordpress.org/browser/wp-cors/), haal de [SVN repository](https://plugins.svn.wordpress.org/wp-cors/)
op, of abonneer je op het [ontwikkellog](https://plugins.trac.wordpress.org/log/wp-cors/)
via [RSS](https://plugins.trac.wordpress.org/log/wp-cors/?limit=100&mode=stop_on_copy&format=rss).

## Changelog

#### 0.2.2

Tested up to WordPress 6.2.2
 Prevent cross-site script injection on Settings page(
CVE-2022-47606). Note this vulnerability may only be exploited if the user is already
logged in with Admin privilege.

#### 0.2.1

Tested up to WordPress 4.3
 Minor fixes to avoid 404 on (unnecessary) files.

#### 0.2.0

Publish on WordPress.org.

#### 0.1.1

Stop debugging statements flooding the error log.

#### 0.1.0

Initial proof of concept.

## Meta

 *  Versie **0.2.2**
 *  Laatst geüpdatet **3 jaar geleden**
 *  Actieve installaties **1.000+**
 *  WordPress versie ** 3.6 of nieuwer **
 *  Getest t/m **6.2.11**
 *  Taal
 * [English (US)](https://wordpress.org/plugins/wp-cors/)
 * Tags
 * [ajax](https://nl.wordpress.org/plugins/tags/ajax/)[cors](https://nl.wordpress.org/plugins/tags/cors/)
   [rest](https://nl.wordpress.org/plugins/tags/rest/)
 *  [Geavanceerde weergave](https://nl.wordpress.org/plugins/wp-cors/advanced/)

## Waarderingen

 2.3 van 5 sterren.

 *  [  1 5 ster beoordeling     ](https://wordpress.org/support/plugin/wp-cors/reviews/?filter=5)
 *  [  0 4 sterren beoordelingen     ](https://wordpress.org/support/plugin/wp-cors/reviews/?filter=4)
 *  [  0 3 sterren beoordelingen     ](https://wordpress.org/support/plugin/wp-cors/reviews/?filter=3)
 *  [  0 2 sterren beoordelingen     ](https://wordpress.org/support/plugin/wp-cors/reviews/?filter=2)
 *  [  2 1 sterren beoordelingen     ](https://wordpress.org/support/plugin/wp-cors/reviews/?filter=1)

[Je beoordeling](https://wordpress.org/support/plugin/wp-cors/reviews/#new-post)

[Bekijk alle beoordelingen](https://wordpress.org/support/plugin/wp-cors/reviews/)

## Bijdragers

 *   [ tstephenson ](https://profiles.wordpress.org/tstephenson/)

## Ondersteuning

Iets te melden? Hulp nodig?

 [Het supportforum bekijken](https://wordpress.org/support/plugin/wp-cors/)