getRoutingResults(); $methods = $routingResults->getAllowedMethods(); $requestHeaders = $request->getHeaderLine('Access-Control-Request-Headers'); $response = $handler->handle($request); /*$response = $response ->withHeader('Access-Control-Allow-Origin', '*') ->withHeader('Access-Control-Allow-Methods', implode(', ', $methods)) ->withHeader('Access-Control-Allow-Headers', $requestHeaders ?: '*');*/ // Optional: Allow Ajax CORS requests with Authorization header $response = $response->withHeader('Access-Control-Allow-Credentials', 'true'); return $response; } }