Manual:$wgAllowCrossOrigin/en

From Linux Web Expert

<translate> Security</translate>: $wgAllowCrossOrigin
Allow anonymous cross origin requests.
<translate> Introduced in version:</translate>1.36.0 (Gerrit change 608190; git #ab06b056)
<translate> Removed in version:</translate><translate> still in use</translate>
<translate> Allowed values:</translate>(boolean)
<translate> Default value:</translate>false

Details

Allow anonymous cross origin requests.

This should be disabled for intranet sites (sites behind a firewall).