In order to resolve the vulnerability of export to Excel and CSV manually, you need to follow the steps below:
If you are generating Java, you have to set: WEB-INF/
If you are generating .Net or .Net Framework, you have to set: PrivateTempStorage/
The property 'Code' of the Event Block has the following value:
&Session.Set(!'WWPExportFilePath', &Filename)
&Session.Set(!'WWPExportFileName', !"<OBJ_NAME>Export.xlsx")
&Filename = WWP_DownloadReport.Link()
This can be done when saving the Event Block, that WorkWithPlus asks you whether you want to do or not:
|