[问与答] 求教,一个关于 Sec-Fetch-Mode 的问题

打开百度首页: https://www.baidu.com/ 的时候,我发现调用了一个接口如下:

请求网址: https://www.baidu.com/sugrec?prod=pc_his&from=pc_web&json=1&sid=36455_31254_34813_36421_36166_35979_36055_36344_26350_36299_36315_36447&hisdata=&_t=1653019248401&req=2&csor=0
请求方法: GET
状态代码: 200 OK
远程地址: 36.152.44.95:443
引荐来源网址政策: unsafe-url
Content-Length: 53
Content-Type: text/plain; charset=UTF-8
Date: Fri, 20 May 2022 04:00:48 GMT
Accept: application/json, text/javascript, */*; q=0.01
Accept-Encoding: gzip, deflate, br
Accept-Language: zh-CN,zh;q=0.9,en;q=0.8
Connection: keep-alive
Cookie: ;
Host: www.baidu.com
Referer: https://www.baidu.com/
sec-ch-ua: " Not A;Brand";v="99", "Chromium";v="101", "Google Chrome";v="101"
sec-ch-ua-mobile: ?0
sec-ch-ua-platform: "Windows"
Sec-Fetch-Dest: empty
Sec-Fetch-Mode: cors
Sec-Fetch-Site: same-origin
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/101.0.4951.67 Safari/537.36

有个疑问求教各位大佬,明明是同源,为何 Sec-Fetch-Mode 是 cors ?