diff --git a/server/src/index.ts b/server/src/index.ts index 4d1fffa29..4570d512f 100644 --- a/server/src/index.ts +++ b/server/src/index.ts @@ -203,7 +203,7 @@ const originValidationMiddleware = ( defaultOrigin, ]; - if (origin && !allowedOrigins.includes(origin)) { + if (!origin || !allowedOrigins.includes(origin)) { console.error(`Invalid origin: ${origin}`); res.status(403).json({ error: "Forbidden - invalid origin",