| Index: third_party/WebKit/Source/core/xmlhttprequest/XMLHttpRequest.cpp
|
| diff --git a/third_party/WebKit/Source/core/xmlhttprequest/XMLHttpRequest.cpp b/third_party/WebKit/Source/core/xmlhttprequest/XMLHttpRequest.cpp
|
| index 0d317bdbad102559cf8eb1f140562f7d9fb094c0..2b123732bb49ba636ba5e036aff478ef7d799833 100644
|
| --- a/third_party/WebKit/Source/core/xmlhttprequest/XMLHttpRequest.cpp
|
| +++ b/third_party/WebKit/Source/core/xmlhttprequest/XMLHttpRequest.cpp
|
| @@ -905,6 +905,7 @@ void XMLHttpRequest::createRequest(PassRefPtr<EncodedFormData> httpBody, Excepti
|
| options.initiator = FetchInitiatorTypeNames::xmlhttprequest;
|
| options.contentSecurityPolicyEnforcement = ContentSecurityPolicy::shouldBypassMainWorld(&executionContext) ? DoNotEnforceContentSecurityPolicy : EnforceContentSecurityPolicy;
|
| options.timeoutMilliseconds = m_timeoutMilliseconds;
|
| + options.sameOriginHeaderPolicy = IncludeSameOriginHeader;
|
|
|
| ResourceLoaderOptions resourceLoaderOptions;
|
| resourceLoaderOptions.allowCredentials = (m_sameOriginRequest || m_includeCredentials) ? AllowStoredCredentials : DoNotAllowStoredCredentials;
|
|
|