laptop and a wrench

漏洞

Unable to export a CSV file from a web app embedded in an ArcGIS Experience Builder web experience in ArcGIS Enterprise 10.9.1.

上次发布: May 23, 2022 Portal for ArcGIS
漏洞 ID 编号 BUG-000149298
已提交May 17, 2022
上次修改时间August 5, 2025
适用范围Portal for ArcGIS
找到的版本10.9.1
操作系统Windows OS
操作系统版本N/A
修正版本11.1
状态Fixed

附加信息

For safety reasons, the embedded app in the ArcGIS Experience Builder Embed widget is constrained by the same-origin policy. For domains other than *.arcgis.com or *.esri.com, the sandbox attribute is automatically added, as stated in the following Embed widget documentation: https://doc.arcgis.com/en/experience-builder/configure-widgets/embed-widget.htm#ESRI_SECTION1_280578CCC46D4D41BD9C3C2FB0A02022. To download embedded content, the 'allow-downloads' property for the iframe must be supported, while the sandbox bans it. The CSV file cannot be downloaded because the domain in Portal for ArcGIS 10.9.1 is not a trusted domain. The CSV file can be downloaded if the portal has a trusted domain (for example, *.esri.com).

重现步骤

漏洞 ID: BUG-000149298

软件:

  • Portal for ArcGIS

当漏洞状态发生变化时获得通知

下载 Esri 支持应用程序

发现关于本主题的更多内容

获取来自 ArcGIS 专家的帮助

联系技术支持部门

下载 Esri 支持应用程序

转至下载选项