Access Control Allow Credential Enabled

MEDIUM
Source
CloudSploit
ID
access-control-allow-credential-enabled

Access Control Allow Credential Enabled

Esures that App Service has Access Control Allow Credentials enabled with CORS

Enabling Access-Control-Allow-Credentials with CORS (Cross-Origin Resource Sharing) ensures secure access to resources across different domains, allowing the secure exchange of sensitive information such as cookies or authorization headers.

Enable Access Control Allow Credentials for all App Services.