export default defineEventHandler((event) => { const allowedOrigin = 'http://localhost:3003'; // 替换为你的前端项目域名 console.log('event', event) // 设置 CORS 响应头,允许来自特定源的请求 event.node.res.setHeader('Access-Control-Allow-Origin', allowedOrigin); event.node.res.setHeader('Access-Control-Allow-Methods', 'GET, POST, PUT, DELETE, OPTIONS'); event.node.res.setHeader('Access-Control-Allow-Headers', 'Content-Type, Authorization'); // 如果请求是预检请求 (OPTIONS),则直接返回 204 if (event.node.req.method === 'OPTIONS') { event.node.res.writeHead(204); event.node.res.end(); } });