PluginProbe
Elementor Website Builder – more than just a page builder / 3.4.3
Elementor Website Builder – more than just a page builder v3.4.3
4.3.0-beta2 4.3.0-beta1 4.2.4 4.2.3 4.2.2 4.2.1 4.2.0 4.1.5 4.2.0-beta2 4.2.0-dev2 4.2.0-beta1 4.1.4 4.1.3 4.1.2 4.1.1 4.1.0 4.1.0-beta3 4.1.0-dev3 4.0.9 4.1.0-beta2 4.1.0-dev2 4.0.8 4.1.0-beta1 4.1.0-dev1 4.0.7 All 451 releases
← All changes | includes/utils.php +57 -273 4.1.0-beta13.4.3 View file →
@@ -1,10 +1,7 @@
1 1 <?php
2 2 namespace Elementor;
3 3
4 -use Elementor\Core\Files\Fonts\Google_Font;
5 -use Elementor\Core\Utils\Collection;
6 -
7 4 if ( ! defined( 'ABSPATH' ) ) {
8 5 exit; // Exit if accessed directly.
9 6 }
10 7
@@ -22,16 +19,14 @@
22 19
23 20 const EDITOR_BREAK_LINES_OPTION_KEY = 'elementor_editor_break_lines';
24 21
25 22 /**
26 - * A list of safe tags for `validate_html_tag` method.
23 + * A list of safe tage for `validate_html_tag` method.
27 24 */
28 25 const ALLOWED_HTML_WRAPPER_TAGS = [
29 26 'a',
30 27 'article',
31 28 'aside',
32 - 'button',
33 - 'form',
34 29 'div',
35 30 'footer',
36 31 'h1',
37 32 'h2',
@@ -92,27 +87,28 @@
92 87 ],
93 88 ];
94 89
95 90 /**
96 - * Variables for free to pro upsale modal promotions
91 + * Is ajax.
92 + *
93 + * Whether the current request is a WordPress ajax request.
94 + *
95 + * @since 1.0.0
96 + * @deprecated 2.6.0 Use `wp_doing_ajax()` instead.
97 + * @access public
98 + * @static
99 + *
100 + * @return bool True if it's a WordPress ajax request, false otherwise.
97 101 */
102 + public static function is_ajax() {
103 + _deprecated_function( __METHOD__, '2.6.0', 'wp_doing_ajax()' );
98 104
99 - const ANIMATED_HEADLINE = 'animated_headline';
105 + return wp_doing_ajax();
106 + }
100 107
101 - const CTA = 'cta';
102 -
103 - const VIDEO_PLAYLIST = 'video_playlist';
104 -
105 - const TESTIMONIAL_WIDGET = 'testimonial_widget';
106 -
107 - const IMAGE_CAROUSEL = 'image_carousel';
108 -
109 108 /**
110 - * Whether WordPress CLI mode is enabled or not.
109 + * Is WP CLI.
111 110 *
112 - * @access public
113 - * @static
114 - *
115 111 * @return bool
116 112 */
117 113 public static function is_wp_cli() {
118 114 return defined( 'WP_CLI' ) && WP_CLI;
@@ -118,8 +114,10 @@
118 114 return defined( 'WP_CLI' ) && WP_CLI;
119 115 }
120 116
121 117 /**
118 + * Is script debug.
119 + *
122 120 * Whether script debug is enabled or not.
123 121 *
124 122 * @since 1.0.0
125 123 * @access public
@@ -124,9 +122,9 @@
124 122 * @since 1.0.0
125 123 * @access public
126 124 * @static
127 125 *
128 - * @return bool
126 + * @return bool True if it's a script debug is active, false otherwise.
129 127 */
130 128 public static function is_script_debug() {
131 129 return defined( 'SCRIPT_DEBUG' ) && SCRIPT_DEBUG;
132 130 }
@@ -131,32 +129,8 @@
131 129 return defined( 'SCRIPT_DEBUG' ) && SCRIPT_DEBUG;
132 130 }
133 131
134 132 /**
135 - * Whether Elementor debug is enabled or not.
136 - *
137 - * @access public
138 - * @static
139 - *
140 - * @return bool
141 - */
142 - public static function is_elementor_debug() {
143 - return defined( 'ELEMENTOR_DEBUG' ) && ELEMENTOR_DEBUG;
144 - }
145 -
146 - /**
147 - * Whether Elementor test mode is enabled or not.
148 - *
149 - * @access public
150 - * @static
151 - *
152 - * @return bool
153 - */
154 - public static function is_elementor_tests() {
155 - return defined( 'ELEMENTOR_TESTS' ) && ELEMENTOR_TESTS;
156 - }
157 -
158 - /**
159 133 * Get pro link.
160 134 *
161 135 * Retrieve the link to Elementor Pro.
162 136 *
@@ -195,54 +169,38 @@
195 169 * @since 2.1.0
196 170 * @static
197 171 * @access public
198 172 *
199 - * @param string $from
200 - * @param string $to
173 + * @param $from
174 + * @param $to
201 175 *
202 176 * @return string
203 - * @throws \Exception If URLs are missing or invalid URLs provided.
177 + * @throws \Exception
204 178 */
205 179 public static function replace_urls( $from, $to ) {
206 180 $from = trim( $from );
207 181 $to = trim( $to );
208 182
209 - if ( empty( $from ) ) {
210 - throw new \Exception( 'Couldn’t replace your address because the old URL was not provided. Try again by entering the old URL.' );
211 - }
212 -
213 - if ( empty( $to ) ) {
214 - throw new \Exception( 'Couldn’t replace your address because the new URL was not provided. Try again by entering the new URL.' );
215 - }
216 -
217 183 if ( $from === $to ) {
218 - throw new \Exception( 'Couldn’t replace your address because both of the URLs provided are identical. Try again by entering different URLs.' );
184 + throw new \Exception( esc_html__( 'The `from` and `to` URL\'s must be different', 'elementor' ) );
219 185 }
220 186
221 187 $is_valid_urls = ( filter_var( $from, FILTER_VALIDATE_URL ) && filter_var( $to, FILTER_VALIDATE_URL ) );
222 -
223 188 if ( ! $is_valid_urls ) {
224 - throw new \Exception( 'Couldn’t replace your address because at least one of the URLs provided are invalid. Try again by entering valid URLs.' );
189 + throw new \Exception( esc_html__( 'The `from` and `to` URL\'s must be valid URL\'s', 'elementor' ) );
225 190 }
226 191
227 192 global $wpdb;
228 - $escaped_from = str_replace( '/', '\\/', $from );
229 - $escaped_to = str_replace( '/', '\\/', $to );
230 - $meta_value_like = '[%'; // meta_value LIKE '[%' are json formatted
231 193
194 + // @codingStandardsIgnoreStart cannot use `$wpdb->prepare` because it remove's the backslashes
232 195 $rows_affected = $wpdb->query(
233 - $wpdb->prepare(
234 - "UPDATE {$wpdb->postmeta} " .
235 - 'SET `meta_value` = REPLACE(`meta_value`, %s, %s) ' .
236 - "WHERE `meta_key` = '_elementor_data' AND `meta_value` LIKE %s;",
237 - $escaped_from,
238 - $escaped_to,
239 - $meta_value_like
240 - )
241 - );
196 + "UPDATE {$wpdb->postmeta} " .
197 + "SET `meta_value` = REPLACE(`meta_value`, '" . str_replace( '/', '\\\/', $from ) . "', '" . str_replace( '/', '\\\/', $to ) . "') " .
198 + "WHERE `meta_key` = '_elementor_data' AND `meta_value` LIKE '[%' ;" ); // meta_value LIKE '[%' are json formatted
199 + // @codingStandardsIgnoreEnd
242 200
243 201 if ( false === $rows_affected ) {
244 - throw new \Exception( 'An error occurred while replacing URL\'s.' );
202 + throw new \Exception( esc_html__( 'An error occurred', 'elementor' ) );
245 203 }
246 204
247 205 // Allow externals to replace-urls, when they have to.
248 206 $rows_affected += (int) apply_filters( 'elementor/tools/replace-urls', 0, $from, $to );
@@ -247,13 +205,12 @@
247 205 // Allow externals to replace-urls, when they have to.
248 206 $rows_affected += (int) apply_filters( 'elementor/tools/replace-urls', 0, $from, $to );
249 207
250 208 Plugin::$instance->files_manager->clear_cache();
251 - Google_Font::clear_cache();
252 209
253 210 return sprintf(
254 - /* translators: %d: Number of rows. */
255 - _n( '%d database row affected.', '%d database rows affected.', $rows_affected, 'elementor' ),
211 + /* translators: %d: Number of rows */
212 + _n( '%d row affected.', '%d rows affected.', $rows_affected, 'elementor' ),
256 213 $rows_affected
257 214 );
258 215 }
259 216
@@ -280,9 +237,9 @@
280 237 *
281 238 * Filters whether the post type supports editing with Elementor.
282 239 *
283 240 * @since 1.0.0
284 - * @deprecated 2.2.0 Use `elementor/utils/is_post_support` hook Instead.
241 + * @deprecated 2.2.0 Use `elementor/utils/is_post_support` Instead
285 242 *
286 243 * @param bool $is_supported Whether the post type supports editing with Elementor.
287 244 * @param int $post_id Post ID.
288 245 * @param string $post_type Post type.
@@ -399,10 +356,10 @@
399 356 if ( ! defined( 'DONOTCDN' ) ) {
400 357 define( 'DONOTCDN', true );
401 358 }
402 359
403 - if ( ! defined( 'DONOTCACHEOBJECT' ) ) {
404 - define( 'DONOTCACHEOBJECT', true );
360 + if ( ! defined( 'DONOTCACHCEOBJECT' ) ) {
361 + define( 'DONOTCACHCEOBJECT', true );
405 362 }
406 363
407 364 // Set the headers to prevent caching for the different browsers.
408 365 nocache_headers();
@@ -441,12 +398,11 @@
441 398 * Retrieve a custom URL for creating a new post/page using Elementor.
442 399 *
443 400 * @since 1.9.0
444 401 * @access public
445 - * @deprecated 3.3.0 Use `Plugin::$instance->documents->get_create_new_post_url()` instead.
446 402 * @static
447 403 *
448 - * @param string $post_type Optional. Post type slug. Default is 'page'.
404 + * @param string $post_type Optional. Post type slug. Default is 'page'.
449 405 * @param string|null $template_type Optional. Query arg 'template_type'. Default is null.
450 406 *
451 407 * @return string A URL for creating new post using Elementor.
452 408 */
@@ -513,14 +469,14 @@
513 469 * @since 2.1.2
514 470 * @access public
515 471 * @static
516 472 */
517 - public static function array_inject( $base_array, $key, $insert ) {
518 - $length = array_search( $key, array_keys( $base_array ), true ) + 1;
473 + public static function array_inject( $array, $key, $insert ) {
474 + $length = array_search( $key, array_keys( $array ), true ) + 1;
519 475
520 - return array_slice( $base_array, 0, $length, true ) +
476 + return array_slice( $array, 0, $length, true ) +
521 477 $insert +
522 - array_slice( $base_array, $length, null, true );
478 + array_slice( $array, $length, null, true );
523 479 }
524 480
525 481 /**
526 482 * Render html attributes
@@ -564,9 +520,9 @@
564 520 * Viewport meta tag.
565 521 *
566 522 * Filters the meta tag containing the viewport information.
567 523 *
568 - * This hook can be used to change the initial viewport meta tag set by Elementor
524 + * This hook can be used to change the intial viewport meta tag set by Elementor
569 525 * and replace it with a different viewport tag.
570 526 *
571 527 * @since 2.5.0
572 528 *
@@ -581,12 +537,11 @@
581 537 /**
582 538 * Add Elementor Config js vars to the relevant script handle,
583 539 * WP will wrap it with <script> tag.
584 540 * To make sure this script runs thru the `script_loader_tag` hook, use a known handle value.
585 - *
586 541 * @param string $handle
587 542 * @param string $js_var
588 - * @param mixed $config
543 + * @param mixed $config
589 544 */
590 545 public static function print_js_config( $handle, $js_var, $config ) {
591 546 $config = wp_json_encode( $config );
592 547
@@ -616,9 +571,9 @@
616 571
617 572 /**
618 573 * Checks a control value for being empty, including a string of '0' not covered by PHP's empty().
619 574 *
620 - * @param mixed $source
575 + * @param mixed $source
621 576 * @param bool|string $key
622 577 *
623 578 * @return bool
624 579 */
@@ -637,30 +592,15 @@
637 592 public static function has_pro() {
638 593 return defined( 'ELEMENTOR_PRO_VERSION' );
639 594 }
640 595
641 - public static function is_pro_installed_and_not_active(): bool {
642 - if ( ! function_exists( 'get_plugins' ) ) {
643 - require_once ABSPATH . 'wp-admin/includes/plugin.php';
644 - }
645 -
646 - $file_path = self::get_elementor_pro_file_path();
647 - $installed_plugins = get_plugins();
648 -
649 - return isset( $installed_plugins[ $file_path ] );
650 - }
651 -
652 - private static function get_elementor_pro_file_path(): string {
653 - return 'elementor-pro/elementor-pro.php';
654 - }
655 -
656 596 /**
657 597 * Convert HTMLEntities to UTF-8 characters
658 598 *
659 - * @param string $html_string
599 + * @param $string
660 600 * @return string
661 601 */
662 - public static function urlencode_html_entities( $html_string ) {
602 + public static function urlencode_html_entities( $string ) {
663 603 $entities_dictionary = [
664 604 '&#145;' => "'", // Opening single quote
665 605 '&#146;' => "'", // Closing single quote
666 606 '&#147;' => '"', // Closing double quote
@@ -673,11 +613,11 @@
673 613 '&#8222;' => '"', // Double low quote
674 614 ];
675 615
676 616 // Decode decimal entities
677 - $html_string = str_replace( array_keys( $entities_dictionary ), array_values( $entities_dictionary ), $html_string );
617 + $string = str_replace( array_keys( $entities_dictionary ), array_values( $entities_dictionary ), $string );
678 618
679 - return rawurlencode( html_entity_decode( $html_string, ENT_QUOTES | ENT_HTML5, 'UTF-8' ) );
619 + return rawurlencode( html_entity_decode( $string, ENT_QUOTES | ENT_HTML5, 'UTF-8' ) );
680 620 }
681 621
682 622 /**
683 623 * Parse attributes that come as a string of comma-delimited key|value pairs.
@@ -750,10 +690,10 @@
750 690 * Fired by `admin_menu` action.
751 691 *
752 692 * @since 3.1.0
753 693 *
754 - * @param string $menu_slug
755 - * @param string $new_label
694 + * @param $menu_slug
695 + * @param $new_label
756 696 * @access public
757 697 */
758 698 public static function change_submenu_first_item_label( $menu_slug, $new_label ) {
759 699 global $submenu;
@@ -772,9 +712,9 @@
772 712 *
773 713 * @return string
774 714 */
775 715 public static function validate_html_tag( $tag ) {
776 - return $tag && in_array( strtolower( $tag ), self::ALLOWED_HTML_WRAPPER_TAGS ) ? $tag : 'div';
716 + return in_array( strtolower( $tag ), self::ALLOWED_HTML_WRAPPER_TAGS ) ? $tag : 'div';
777 717 }
778 718
779 719 /**
780 720 * Safe print a validated HTML tag.
@@ -788,10 +728,10 @@
788 728
789 729 /**
790 730 * Print internal content (not user input) without escaping.
791 731 */
792 - public static function print_unescaped_internal_string( $internal_string ) {
793 - echo $internal_string; // phpcs:ignore WordPress.Security.EscapeOutput.OutputNotEscaped
732 + public static function print_unescaped_internal_string( $string ) {
733 + echo $string; // phpcs:ignore WordPress.Security.EscapeOutput.OutputNotEscaped
794 734 }
795 735
796 736 /**
797 737 * Get recently edited posts query.
@@ -804,9 +744,8 @@
804 744 * @return \WP_Query
805 745 */
806 746 public static function get_recently_edited_posts_query( $args = [] ) {
807 747 $args = wp_parse_args( $args, [
808 - 'no_found_rows' => true,
809 748 'post_type' => 'any',
810 749 'post_status' => [ 'publish', 'draft' ],
811 750 'posts_per_page' => '3',
812 751 'meta_key' => '_elementor_edit_mode',
@@ -816,174 +755,19 @@
816 755
817 756 return new \WP_Query( $args );
818 757 }
819 758
820 - public static function print_wp_kses_extended( $text, array $tags ) {
759 + public static function print_wp_kses_extended( $string, array $tags ) {
821 760 $allowed_html = wp_kses_allowed_html( 'post' );
761 + // Since PHP 5.6 cannot use isset() on the result of an expression.
762 + $extended_allowed_html_tags = self::EXTENDED_ALLOWED_HTML_TAGS;
822 763
823 764 foreach ( $tags as $tag ) {
824 - if ( isset( self::EXTENDED_ALLOWED_HTML_TAGS[ $tag ] ) ) {
765 + if ( isset( $extended_allowed_html_tags[ $tag ] ) ) {
825 766 $extended_tags = apply_filters( "elementor/extended_allowed_html_tags/{$tag}", self::EXTENDED_ALLOWED_HTML_TAGS[ $tag ] );
826 767 $allowed_html = array_replace_recursive( $allowed_html, $extended_tags );
827 768 }
828 769 }
829 770
830 - echo wp_kses( $text, $allowed_html );
831 - }
832 -
833 - public static function is_elementor_path( $path ) {
834 - $path = wp_normalize_path( $path );
835 -
836 - /**
837 - * Elementor related paths.
838 - *
839 - * Filters Elementor related paths.
840 - *
841 - * @param string[] $available_paths
842 - */
843 - $available_paths = apply_filters( 'elementor/utils/elementor_related_paths', [ ELEMENTOR_PATH ] );
844 -
845 - return (bool) ( new Collection( $available_paths ) )
846 - ->map( function ( $p ) {
847 - // `untrailingslashit` in order to include other plugins prefixed with elementor.
848 - return untrailingslashit( wp_normalize_path( $p ) );
849 - } )
850 - ->find(function ( $p ) use ( $path ) {
851 - return false !== strpos( $path, $p );
852 - } );
853 - }
854 -
855 - /**
856 - * @param string $file
857 - * @param mixed ...$args
858 - * @return false|string
859 - */
860 - public static function file_get_contents( $file, ...$args ) {
861 - if ( ! is_file( $file ) || ! is_readable( $file ) ) {
862 - return false;
863 - }
864 - return file_get_contents( $file, ...$args );
865 - }
866 -
867 - public static function get_super_global_value( $super_global, $key ) {
868 - if ( ! isset( $super_global[ $key ] ) ) {
869 - return null;
870 - }
871 -
872 - if ( $_FILES === $super_global ) { // phpcs:ignore WordPress.Security.NonceVerification.Missing
873 - return isset( $super_global[ $key ]['name'] ) ?
874 - self::sanitize_file_name( $super_global[ $key ] ) :
875 - self::sanitize_multi_upload( $super_global[ $key ] );
876 - }
877 -
878 - return wp_kses_post_deep( wp_unslash( $super_global[ $key ] ) );
879 - }
880 -
881 - private static function sanitize_multi_upload( $fields ) {
882 - return array_map( function( $field ) {
883 - return array_map( 'self::sanitize_file_name', $field );
884 - }, $fields );
885 - }
886 -
887 - private static function sanitize_file_name( $file ) {
888 - $file['name'] = sanitize_file_name( $file['name'] );
889 -
890 - return $file;
891 - }
892 -
893 - /**
894 - * Return specific object property value if exist from array of keys.
895 - *
896 - * @param array $base_array
897 - * @param array $keys
898 - * @return mixed|null
899 - */
900 - public static function get_array_value_by_keys( $base_array, $keys ) {
901 - $keys = (array) $keys;
902 - foreach ( $keys as $key ) {
903 - if ( ! isset( $base_array[ $key ] ) ) {
904 - return null;
905 - }
906 - $base_array = $base_array[ $key ];
907 - }
908 - return $base_array;
909 - }
910 -
911 - public static function get_cached_callback( $callback, $cache_key, $cache_time = 24 * HOUR_IN_SECONDS ) {
912 - $cache = get_site_transient( $cache_key );
913 -
914 - if ( ! $cache ) {
915 - $cache = call_user_func( $callback );
916 -
917 - if ( ! is_wp_error( $cache ) ) {
918 - set_site_transient( $cache_key, $cache, $cache_time );
919 - }
920 - }
921 -
922 - return $cache;
923 - }
924 -
925 - public static function is_sale_time(): bool {
926 - $sale_start_time = gmmktime( 12, 0, 0, 11, 25, 2025 );
927 - $sale_end_time = gmmktime( 3, 59, 0, 12, 3, 2025 );
928 -
929 - $now_time = gmdate( 'U' );
930 -
931 - return $now_time >= $sale_start_time && $now_time <= $sale_end_time;
932 - }
933 -
934 - public static function safe_throw( string $message ) {
935 - if ( ! static::is_elementor_debug() ) {
936 - return;
937 - }
938 -
939 - throw new \Exception( esc_html( $message ) );
940 - }
941 -
942 - public static function has_invalid_post_permissions( $post ): bool {
943 - $is_image_attachment = 'attachment' === $post->post_type && strpos( $post->post_mime_type, 'image/' ) === 0;
944 -
945 - if ( $is_image_attachment ) {
946 - return false;
947 - }
948 -
949 - $is_private = 'private' === $post->post_status
950 - && ! current_user_can( 'read_private_posts', $post->ID );
951 -
952 - $not_allowed = 'publish' !== $post->post_status
953 - && ! current_user_can( 'edit_post', $post->ID );
954 -
955 - $password_required = post_password_required( $post->ID )
956 - && ! current_user_can( 'edit_post', $post->ID );
957 -
958 - return $is_private || $not_allowed || $password_required;
959 - }
960 -
961 - public static function is_custom_kit_applied() {
962 - return (bool) Plugin::$instance->kits_manager->get_previous_id();
963 - }
964 -
965 - public static function decode_string( string $encoded_string, ?string $fallback = '' ) {
966 - try {
967 - return base64_decode( $encoded_string, true ) ?? $fallback;
968 - } catch ( \Exception $e ) {
969 - return $fallback;
970 - }
971 - }
972 -
973 - public static function encode_string( string $decoded_string ): string {
974 - return base64_encode( $decoded_string );
975 - }
976 -
977 - public static function html_to_plain_text( string $html ): string {
978 - if ( empty( $html ) ) {
979 - return '';
980 - }
981 -
982 - $text = preg_replace( '#<br\s*/?\s*>#i', ' ', $html );
983 - $text = preg_replace( '#</?[a-z][^>]*>#i', ' ', $text );
984 - $text = html_entity_decode( $text, ENT_QUOTES, 'UTF-8' );
985 - $text = str_replace( "\xE2\x80\x8B", '', $text );
986 -
987 - return trim( preg_replace( '/\s+/', ' ', $text ) );
771 + echo wp_kses( $string, $allowed_html );
988 772 }
989 773 }