| @@ -1,10 +1,7 @@ | ||
| 1 | 1 | <?php |
| 2 | 2 | namespace Elementor; |
| 3 | 3 | |
| 4 | -use Elementor\Core\Files\Fonts\Google_Font; | |
| 5 | -use Elementor\Core\Utils\Collection; | |
| 6 | - | |
| 7 | 4 | if ( ! defined( 'ABSPATH' ) ) { |
| 8 | 5 | exit; // Exit if accessed directly. |
| 9 | 6 | } |
| 10 | 7 | |
| @@ -22,9 +19,9 @@ | ||
| 22 | 19 | |
| 23 | 20 | const EDITOR_BREAK_LINES_OPTION_KEY = 'elementor_editor_break_lines'; |
| 24 | 21 | |
| 25 | 22 | /** |
| 26 | - * A list of safe tags for `validate_html_tag` method. | |
| 23 | + * A list of safe tage for `validate_html_tag` method. | |
| 27 | 24 | */ |
| 28 | 25 | const ALLOWED_HTML_WRAPPER_TAGS = [ |
| 29 | 26 | 'a', |
| 30 | 27 | 'article', |
| @@ -29,9 +26,8 @@ | ||
| 29 | 26 | 'a', |
| 30 | 27 | 'article', |
| 31 | 28 | 'aside', |
| 32 | 29 | 'button', |
| 33 | - 'form', | |
| 34 | 30 | 'div', |
| 35 | 31 | 'footer', |
| 36 | 32 | 'h1', |
| 37 | 33 | 'h2', |
| @@ -46,29 +42,8 @@ | ||
| 46 | 42 | 'section', |
| 47 | 43 | 'span', |
| 48 | 44 | ]; |
| 49 | 45 | |
| 50 | - /** | |
| 51 | - * Tags that must never be usable as an HTML wrapper tag, regardless of what | |
| 52 | - * `elementor/allowed_html_wrapper_tags` filters return. These are the classic | |
| 53 | - * script-execution / markup-injection vectors (XSS), so they're enforced as a | |
| 54 | - * hard denylist rather than left to filter authors to avoid re-adding them. | |
| 55 | - */ | |
| 56 | - const FORBIDDEN_HTML_WRAPPER_TAGS = [ | |
| 57 | - 'script', | |
| 58 | - 'iframe', | |
| 59 | - 'object', | |
| 60 | - 'embed', | |
| 61 | - 'style', | |
| 62 | - 'link', | |
| 63 | - 'meta', | |
| 64 | - 'base', | |
| 65 | - 'noscript', | |
| 66 | - 'template', | |
| 67 | - 'svg', | |
| 68 | - 'math', | |
| 69 | - ]; | |
| 70 | - | |
| 71 | 46 | const EXTENDED_ALLOWED_HTML_TAGS = [ |
| 72 | 47 | 'iframe' => [ |
| 73 | 48 | 'iframe' => [ |
| 74 | 49 | 'allow' => true, |
| @@ -113,27 +88,28 @@ | ||
| 113 | 88 | ], |
| 114 | 89 | ]; |
| 115 | 90 | |
| 116 | 91 | /** |
| 117 | - * Variables for free to pro upsale modal promotions | |
| 92 | + * Is ajax. | |
| 93 | + * | |
| 94 | + * Whether the current request is a WordPress ajax request. | |
| 95 | + * | |
| 96 | + * @since 1.0.0 | |
| 97 | + * @deprecated 2.6.0 Use `wp_doing_ajax()` instead. | |
| 98 | + * @access public | |
| 99 | + * @static | |
| 100 | + * | |
| 101 | + * @return bool True if it's a WordPress ajax request, false otherwise. | |
| 118 | 102 | */ |
| 103 | + public static function is_ajax() { | |
| 104 | + _deprecated_function( __METHOD__, '2.6.0', 'wp_doing_ajax()' ); | |
| 119 | 105 | |
| 120 | - const ANIMATED_HEADLINE = 'animated_headline'; | |
| 106 | + return wp_doing_ajax(); | |
| 107 | + } | |
| 121 | 108 | |
| 122 | - const CTA = 'cta'; | |
| 123 | - | |
| 124 | - const VIDEO_PLAYLIST = 'video_playlist'; | |
| 125 | - | |
| 126 | - const TESTIMONIAL_WIDGET = 'testimonial_widget'; | |
| 127 | - | |
| 128 | - const IMAGE_CAROUSEL = 'image_carousel'; | |
| 129 | - | |
| 130 | 109 | /** |
| 131 | - * Whether WordPress CLI mode is enabled or not. | |
| 110 | + * Is WP CLI. | |
| 132 | 111 | * |
| 133 | - * @access public | |
| 134 | - * @static | |
| 135 | - * | |
| 136 | 112 | * @return bool |
| 137 | 113 | */ |
| 138 | 114 | public static function is_wp_cli() { |
| 139 | 115 | return defined( 'WP_CLI' ) && WP_CLI; |
| @@ -139,8 +115,10 @@ | ||
| 139 | 115 | return defined( 'WP_CLI' ) && WP_CLI; |
| 140 | 116 | } |
| 141 | 117 | |
| 142 | 118 | /** |
| 119 | + * Is script debug. | |
| 120 | + * | |
| 143 | 121 | * Whether script debug is enabled or not. |
| 144 | 122 | * |
| 145 | 123 | * @since 1.0.0 |
| 146 | 124 | * @access public |
| @@ -145,9 +123,9 @@ | ||
| 145 | 123 | * @since 1.0.0 |
| 146 | 124 | * @access public |
| 147 | 125 | * @static |
| 148 | 126 | * |
| 149 | - * @return bool | |
| 127 | + * @return bool True if it's a script debug is active, false otherwise. | |
| 150 | 128 | */ |
| 151 | 129 | public static function is_script_debug() { |
| 152 | 130 | return defined( 'SCRIPT_DEBUG' ) && SCRIPT_DEBUG; |
| 153 | 131 | } |
| @@ -152,32 +130,8 @@ | ||
| 152 | 130 | return defined( 'SCRIPT_DEBUG' ) && SCRIPT_DEBUG; |
| 153 | 131 | } |
| 154 | 132 | |
| 155 | 133 | /** |
| 156 | - * Whether Elementor debug is enabled or not. | |
| 157 | - * | |
| 158 | - * @access public | |
| 159 | - * @static | |
| 160 | - * | |
| 161 | - * @return bool | |
| 162 | - */ | |
| 163 | - public static function is_elementor_debug() { | |
| 164 | - return defined( 'ELEMENTOR_DEBUG' ) && ELEMENTOR_DEBUG; | |
| 165 | - } | |
| 166 | - | |
| 167 | - /** | |
| 168 | - * Whether Elementor test mode is enabled or not. | |
| 169 | - * | |
| 170 | - * @access public | |
| 171 | - * @static | |
| 172 | - * | |
| 173 | - * @return bool | |
| 174 | - */ | |
| 175 | - public static function is_elementor_tests() { | |
| 176 | - return defined( 'ELEMENTOR_TESTS' ) && ELEMENTOR_TESTS; | |
| 177 | - } | |
| 178 | - | |
| 179 | - /** | |
| 180 | 134 | * Get pro link. |
| 181 | 135 | * |
| 182 | 136 | * Retrieve the link to Elementor Pro. |
| 183 | 137 | * |
| @@ -216,54 +170,38 @@ | ||
| 216 | 170 | * @since 2.1.0 |
| 217 | 171 | * @static |
| 218 | 172 | * @access public |
| 219 | 173 | * |
| 220 | - * @param string $from | |
| 221 | - * @param string $to | |
| 174 | + * @param $from | |
| 175 | + * @param $to | |
| 222 | 176 | * |
| 223 | 177 | * @return string |
| 224 | - * @throws \Exception If URLs are missing or invalid URLs provided. | |
| 178 | + * @throws \Exception | |
| 225 | 179 | */ |
| 226 | 180 | public static function replace_urls( $from, $to ) { |
| 227 | 181 | $from = trim( $from ); |
| 228 | 182 | $to = trim( $to ); |
| 229 | 183 | |
| 230 | - if ( empty( $from ) ) { | |
| 231 | - throw new \Exception( 'Couldn’t replace your address because the old URL was not provided. Try again by entering the old URL.' ); | |
| 232 | - } | |
| 233 | - | |
| 234 | - if ( empty( $to ) ) { | |
| 235 | - throw new \Exception( 'Couldn’t replace your address because the new URL was not provided. Try again by entering the new URL.' ); | |
| 236 | - } | |
| 237 | - | |
| 238 | 184 | if ( $from === $to ) { |
| 239 | - throw new \Exception( 'Couldn’t replace your address because both of the URLs provided are identical. Try again by entering different URLs.' ); | |
| 185 | + throw new \Exception( esc_html__( 'The `from` and `to` URL\'s must be different', 'elementor' ) ); | |
| 240 | 186 | } |
| 241 | 187 | |
| 242 | 188 | $is_valid_urls = ( filter_var( $from, FILTER_VALIDATE_URL ) && filter_var( $to, FILTER_VALIDATE_URL ) ); |
| 243 | - | |
| 244 | 189 | if ( ! $is_valid_urls ) { |
| 245 | - throw new \Exception( 'Couldn’t replace your address because at least one of the URLs provided are invalid. Try again by entering valid URLs.' ); | |
| 190 | + throw new \Exception( esc_html__( 'The `from` and `to` URL\'s must be valid URL\'s', 'elementor' ) ); | |
| 246 | 191 | } |
| 247 | 192 | |
| 248 | 193 | global $wpdb; |
| 249 | - $escaped_from = str_replace( '/', '\\/', $from ); | |
| 250 | - $escaped_to = str_replace( '/', '\\/', $to ); | |
| 251 | - $meta_value_like = '[%'; // meta_value LIKE '[%' are json formatted | |
| 252 | 194 | |
| 195 | + // @codingStandardsIgnoreStart cannot use `$wpdb->prepare` because it remove's the backslashes | |
| 253 | 196 | $rows_affected = $wpdb->query( |
| 254 | - $wpdb->prepare( | |
| 255 | - "UPDATE {$wpdb->postmeta} " . | |
| 256 | - 'SET `meta_value` = REPLACE(`meta_value`, %s, %s) ' . | |
| 257 | - "WHERE `meta_key` = '_elementor_data' AND `meta_value` LIKE %s;", | |
| 258 | - $escaped_from, | |
| 259 | - $escaped_to, | |
| 260 | - $meta_value_like | |
| 261 | - ) | |
| 262 | - ); | |
| 197 | + "UPDATE {$wpdb->postmeta} " . | |
| 198 | + "SET `meta_value` = REPLACE(`meta_value`, '" . str_replace( '/', '\\\/', $from ) . "', '" . str_replace( '/', '\\\/', $to ) . "') " . | |
| 199 | + "WHERE `meta_key` = '_elementor_data' AND `meta_value` LIKE '[%' ;" ); // meta_value LIKE '[%' are json formatted | |
| 200 | + // @codingStandardsIgnoreEnd | |
| 263 | 201 | |
| 264 | 202 | if ( false === $rows_affected ) { |
| 265 | - throw new \Exception( 'An error occurred while replacing URL\'s.' ); | |
| 203 | + throw new \Exception( esc_html__( 'An error occurred', 'elementor' ) ); | |
| 266 | 204 | } |
| 267 | 205 | |
| 268 | 206 | // Allow externals to replace-urls, when they have to. |
| 269 | 207 | $rows_affected += (int) apply_filters( 'elementor/tools/replace-urls', 0, $from, $to ); |
| @@ -268,13 +206,12 @@ | ||
| 268 | 206 | // Allow externals to replace-urls, when they have to. |
| 269 | 207 | $rows_affected += (int) apply_filters( 'elementor/tools/replace-urls', 0, $from, $to ); |
| 270 | 208 | |
| 271 | 209 | Plugin::$instance->files_manager->clear_cache(); |
| 272 | - Google_Font::clear_cache(); | |
| 273 | 210 | |
| 274 | 211 | return sprintf( |
| 275 | 212 | /* translators: %d: Number of rows. */ |
| 276 | - _n( '%d database row affected.', '%d database rows affected.', $rows_affected, 'elementor' ), | |
| 213 | + _n( '%d row affected.', '%d rows affected.', $rows_affected, 'elementor' ), | |
| 277 | 214 | $rows_affected |
| 278 | 215 | ); |
| 279 | 216 | } |
| 280 | 217 | |
| @@ -301,9 +238,9 @@ | ||
| 301 | 238 | * |
| 302 | 239 | * Filters whether the post type supports editing with Elementor. |
| 303 | 240 | * |
| 304 | 241 | * @since 1.0.0 |
| 305 | - * @deprecated 2.2.0 Use `elementor/utils/is_post_support` hook Instead. | |
| 242 | + * @deprecated 2.2.0 Use `elementor/utils/is_post_support` Instead | |
| 306 | 243 | * |
| 307 | 244 | * @param bool $is_supported Whether the post type supports editing with Elementor. |
| 308 | 245 | * @param int $post_id Post ID. |
| 309 | 246 | * @param string $post_type Post type. |
| @@ -420,10 +357,10 @@ | ||
| 420 | 357 | if ( ! defined( 'DONOTCDN' ) ) { |
| 421 | 358 | define( 'DONOTCDN', true ); |
| 422 | 359 | } |
| 423 | 360 | |
| 424 | - if ( ! defined( 'DONOTCACHEOBJECT' ) ) { | |
| 425 | - define( 'DONOTCACHEOBJECT', true ); | |
| 361 | + if ( ! defined( 'DONOTCACHCEOBJECT' ) ) { | |
| 362 | + define( 'DONOTCACHCEOBJECT', true ); | |
| 426 | 363 | } |
| 427 | 364 | |
| 428 | 365 | // Set the headers to prevent caching for the different browsers. |
| 429 | 366 | nocache_headers(); |
| @@ -462,12 +399,11 @@ | ||
| 462 | 399 | * Retrieve a custom URL for creating a new post/page using Elementor. |
| 463 | 400 | * |
| 464 | 401 | * @since 1.9.0 |
| 465 | 402 | * @access public |
| 466 | - * @deprecated 3.3.0 Use `Plugin::$instance->documents->get_create_new_post_url()` instead. | |
| 467 | 403 | * @static |
| 468 | 404 | * |
| 469 | - * @param string $post_type Optional. Post type slug. Default is 'page'. | |
| 405 | + * @param string $post_type Optional. Post type slug. Default is 'page'. | |
| 470 | 406 | * @param string|null $template_type Optional. Query arg 'template_type'. Default is null. |
| 471 | 407 | * |
| 472 | 408 | * @return string A URL for creating new post using Elementor. |
| 473 | 409 | */ |
| @@ -534,14 +470,14 @@ | ||
| 534 | 470 | * @since 2.1.2 |
| 535 | 471 | * @access public |
| 536 | 472 | * @static |
| 537 | 473 | */ |
| 538 | - public static function array_inject( $base_array, $key, $insert ) { | |
| 539 | - $length = array_search( $key, array_keys( $base_array ), true ) + 1; | |
| 474 | + public static function array_inject( $array, $key, $insert ) { | |
| 475 | + $length = array_search( $key, array_keys( $array ), true ) + 1; | |
| 540 | 476 | |
| 541 | - return array_slice( $base_array, 0, $length, true ) + | |
| 477 | + return array_slice( $array, 0, $length, true ) + | |
| 542 | 478 | $insert + |
| 543 | - array_slice( $base_array, $length, null, true ); | |
| 479 | + array_slice( $array, $length, null, true ); | |
| 544 | 480 | } |
| 545 | 481 | |
| 546 | 482 | /** |
| 547 | 483 | * Render html attributes |
| @@ -585,9 +521,9 @@ | ||
| 585 | 521 | * Viewport meta tag. |
| 586 | 522 | * |
| 587 | 523 | * Filters the meta tag containing the viewport information. |
| 588 | 524 | * |
| 589 | - * This hook can be used to change the initial viewport meta tag set by Elementor | |
| 525 | + * This hook can be used to change the intial viewport meta tag set by Elementor | |
| 590 | 526 | * and replace it with a different viewport tag. |
| 591 | 527 | * |
| 592 | 528 | * @since 2.5.0 |
| 593 | 529 | * |
| @@ -602,12 +538,11 @@ | ||
| 602 | 538 | /** |
| 603 | 539 | * Add Elementor Config js vars to the relevant script handle, |
| 604 | 540 | * WP will wrap it with <script> tag. |
| 605 | 541 | * To make sure this script runs thru the `script_loader_tag` hook, use a known handle value. |
| 606 | - * | |
| 607 | 542 | * @param string $handle |
| 608 | 543 | * @param string $js_var |
| 609 | - * @param mixed $config | |
| 544 | + * @param mixed $config | |
| 610 | 545 | */ |
| 611 | 546 | public static function print_js_config( $handle, $js_var, $config ) { |
| 612 | 547 | $config = wp_json_encode( $config ); |
| 613 | 548 | |
| @@ -637,9 +572,9 @@ | ||
| 637 | 572 | |
| 638 | 573 | /** |
| 639 | 574 | * Checks a control value for being empty, including a string of '0' not covered by PHP's empty(). |
| 640 | 575 | * |
| 641 | - * @param mixed $source | |
| 576 | + * @param mixed $source | |
| 642 | 577 | * @param bool|string $key |
| 643 | 578 | * |
| 644 | 579 | * @return bool |
| 645 | 580 | */ |
| @@ -658,34 +593,15 @@ | ||
| 658 | 593 | public static function has_pro() { |
| 659 | 594 | return defined( 'ELEMENTOR_PRO_VERSION' ); |
| 660 | 595 | } |
| 661 | 596 | |
| 662 | - public static function is_license_active(): bool { | |
| 663 | - return class_exists( '\ElementorPro\License\API' ) && \ElementorPro\License\API::is_license_active(); | |
| 664 | - } | |
| 665 | - | |
| 666 | - public static function is_pro_installed_and_not_active(): bool { | |
| 667 | - if ( ! function_exists( 'get_plugins' ) ) { | |
| 668 | - require_once ABSPATH . 'wp-admin/includes/plugin.php'; | |
| 669 | - } | |
| 670 | - | |
| 671 | - $file_path = self::get_elementor_pro_file_path(); | |
| 672 | - $installed_plugins = get_plugins(); | |
| 673 | - | |
| 674 | - return isset( $installed_plugins[ $file_path ] ); | |
| 675 | - } | |
| 676 | - | |
| 677 | - private static function get_elementor_pro_file_path(): string { | |
| 678 | - return 'elementor-pro/elementor-pro.php'; | |
| 679 | - } | |
| 680 | - | |
| 681 | 597 | /** |
| 682 | 598 | * Convert HTMLEntities to UTF-8 characters |
| 683 | 599 | * |
| 684 | - * @param string $html_string | |
| 600 | + * @param $string | |
| 685 | 601 | * @return string |
| 686 | 602 | */ |
| 687 | - public static function urlencode_html_entities( $html_string ) { | |
| 603 | + public static function urlencode_html_entities( $string ) { | |
| 688 | 604 | $entities_dictionary = [ |
| 689 | 605 | '‘' => "'", // Opening single quote |
| 690 | 606 | '’' => "'", // Closing single quote |
| 691 | 607 | '“' => '"', // Closing double quote |
| @@ -698,11 +614,11 @@ | ||
| 698 | 614 | '„' => '"', // Double low quote |
| 699 | 615 | ]; |
| 700 | 616 | |
| 701 | 617 | // Decode decimal entities |
| 702 | - $html_string = str_replace( array_keys( $entities_dictionary ), array_values( $entities_dictionary ), $html_string ); | |
| 618 | + $string = str_replace( array_keys( $entities_dictionary ), array_values( $entities_dictionary ), $string ); | |
| 703 | 619 | |
| 704 | - return rawurlencode( html_entity_decode( $html_string, ENT_QUOTES | ENT_HTML5, 'UTF-8' ) ); | |
| 620 | + return rawurlencode( html_entity_decode( $string, ENT_QUOTES | ENT_HTML5, 'UTF-8' ) ); | |
| 705 | 621 | } |
| 706 | 622 | |
| 707 | 623 | /** |
| 708 | 624 | * Parse attributes that come as a string of comma-delimited key|value pairs. |
| @@ -754,19 +670,13 @@ | ||
| 754 | 670 | if ( $id === $element['id'] ) { |
| 755 | 671 | return $element; |
| 756 | 672 | } |
| 757 | 673 | |
| 758 | - $inner_elements = apply_filters( | |
| 759 | - 'elementor/utils/find_element_recursive/inner_elements', | |
| 760 | - $element['elements'] ?? [], | |
| 761 | - $element | |
| 762 | - ); | |
| 674 | + if ( ! empty( $element['elements'] ) ) { | |
| 675 | + $element = self::find_element_recursive( $element['elements'], $id ); | |
| 763 | 676 | |
| 764 | - if ( ! empty( $inner_elements ) ) { | |
| 765 | - $found = self::find_element_recursive( $inner_elements, $id ); | |
| 766 | - | |
| 767 | - if ( $found ) { | |
| 768 | - return $found; | |
| 677 | + if ( $element ) { | |
| 678 | + return $element; | |
| 769 | 679 | } |
| 770 | 680 | } |
| 771 | 681 | } |
| 772 | 682 | |
| @@ -781,10 +691,10 @@ | ||
| 781 | 691 | * Fired by `admin_menu` action. |
| 782 | 692 | * |
| 783 | 693 | * @since 3.1.0 |
| 784 | 694 | * |
| 785 | - * @param string $menu_slug | |
| 786 | - * @param string $new_label | |
| 695 | + * @param $menu_slug | |
| 696 | + * @param $new_label | |
| 787 | 697 | * @access public |
| 788 | 698 | */ |
| 789 | 699 | public static function change_submenu_first_item_label( $menu_slug, $new_label ) { |
| 790 | 700 | global $submenu; |
| @@ -796,45 +706,8 @@ | ||
| 796 | 706 | } |
| 797 | 707 | } |
| 798 | 708 | |
| 799 | 709 | /** |
| 800 | - * @var string[]|null | |
| 801 | - */ | |
| 802 | - private static $resolved_allowed_html_wrapper_tags; | |
| 803 | - | |
| 804 | - /** | |
| 805 | - * Get allowed HTML wrapper tags. | |
| 806 | - * | |
| 807 | - * @since 4.4.0 | |
| 808 | - * | |
| 809 | - * @return string[] | |
| 810 | - */ | |
| 811 | - public static function get_allowed_html_wrapper_tags(): array { | |
| 812 | - if ( null !== self::$resolved_allowed_html_wrapper_tags ) { | |
| 813 | - return self::$resolved_allowed_html_wrapper_tags; | |
| 814 | - } | |
| 815 | - | |
| 816 | - /** | |
| 817 | - * Allowed HTML wrapper tags. | |
| 818 | - * | |
| 819 | - * Filters the list of allowed HTML tag names used by `validate_html_tag()`. | |
| 820 | - * | |
| 821 | - * Note: tags in `Utils::FORBIDDEN_HTML_WRAPPER_TAGS` (e.g. `script`, `iframe`, | |
| 822 | - * `object`) are always stripped after this filter runs and cannot be re-added, | |
| 823 | - * to prevent XSS via a wrapper tag that executes script or embeds external content. | |
| 824 | - * | |
| 825 | - * @since 4.4.0 | |
| 826 | - * | |
| 827 | - * @param string[] $tags A list of lowercase HTML tag name strings. | |
| 828 | - */ | |
| 829 | - $tags = apply_filters( 'elementor/allowed_html_wrapper_tags', self::ALLOWED_HTML_WRAPPER_TAGS ); | |
| 830 | - | |
| 831 | - self::$resolved_allowed_html_wrapper_tags = self::normalize_allowed_html_wrapper_tags( $tags ); | |
| 832 | - | |
| 833 | - return self::$resolved_allowed_html_wrapper_tags; | |
| 834 | - } | |
| 835 | - | |
| 836 | - /** | |
| 837 | 710 | * Validate an HTML tag against a safe allowed list. |
| 838 | 711 | * |
| 839 | 712 | * @param string $tag |
| 840 | 713 | * |
| @@ -840,37 +713,12 @@ | ||
| 840 | 713 | * |
| 841 | 714 | * @return string |
| 842 | 715 | */ |
| 843 | 716 | public static function validate_html_tag( $tag ) { |
| 844 | - return $tag && in_array( strtolower( $tag ), self::get_allowed_html_wrapper_tags(), true ) ? $tag : 'div'; | |
| 717 | + return in_array( strtolower( $tag ), self::ALLOWED_HTML_WRAPPER_TAGS ) ? $tag : 'div'; | |
| 845 | 718 | } |
| 846 | 719 | |
| 847 | 720 | /** |
| 848 | - * @param array $tags | |
| 849 | - * | |
| 850 | - * @return string[] | |
| 851 | - */ | |
| 852 | - private static function normalize_allowed_html_wrapper_tags( array $tags ): array { | |
| 853 | - $normalized_tags = []; | |
| 854 | - | |
| 855 | - foreach ( $tags as $tag ) { | |
| 856 | - if ( ! is_string( $tag ) ) { | |
| 857 | - continue; | |
| 858 | - } | |
| 859 | - | |
| 860 | - $tag = strtolower( $tag ); | |
| 861 | - | |
| 862 | - if ( in_array( $tag, self::FORBIDDEN_HTML_WRAPPER_TAGS, true ) ) { | |
| 863 | - continue; | |
| 864 | - } | |
| 865 | - | |
| 866 | - $normalized_tags[] = $tag; | |
| 867 | - } | |
| 868 | - | |
| 869 | - return array_values( array_unique( $normalized_tags ) ); | |
| 870 | - } | |
| 871 | - | |
| 872 | - /** | |
| 873 | 721 | * Safe print a validated HTML tag. |
| 874 | 722 | * |
| 875 | 723 | * @param string $tag |
| 876 | 724 | */ |
| @@ -881,10 +729,10 @@ | ||
| 881 | 729 | |
| 882 | 730 | /** |
| 883 | 731 | * Print internal content (not user input) without escaping. |
| 884 | 732 | */ |
| 885 | - public static function print_unescaped_internal_string( $internal_string ) { | |
| 886 | - echo $internal_string; // phpcs:ignore WordPress.Security.EscapeOutput.OutputNotEscaped | |
| 733 | + public static function print_unescaped_internal_string( $string ) { | |
| 734 | + echo $string; // phpcs:ignore WordPress.Security.EscapeOutput.OutputNotEscaped | |
| 887 | 735 | } |
| 888 | 736 | |
| 889 | 737 | /** |
| 890 | 738 | * Get recently edited posts query. |
| @@ -897,9 +745,8 @@ | ||
| 897 | 745 | * @return \WP_Query |
| 898 | 746 | */ |
| 899 | 747 | public static function get_recently_edited_posts_query( $args = [] ) { |
| 900 | 748 | $args = wp_parse_args( $args, [ |
| 901 | - 'no_found_rows' => true, | |
| 902 | 749 | 'post_type' => 'any', |
| 903 | 750 | 'post_status' => [ 'publish', 'draft' ], |
| 904 | 751 | 'posts_per_page' => '3', |
| 905 | 752 | 'meta_key' => '_elementor_edit_mode', |
| @@ -909,180 +756,19 @@ | ||
| 909 | 756 | |
| 910 | 757 | return new \WP_Query( $args ); |
| 911 | 758 | } |
| 912 | 759 | |
| 913 | - public static function print_wp_kses_extended( $text, array $tags ) { | |
| 760 | + public static function print_wp_kses_extended( $string, array $tags ) { | |
| 914 | 761 | $allowed_html = wp_kses_allowed_html( 'post' ); |
| 762 | + // Since PHP 5.6 cannot use isset() on the result of an expression. | |
| 763 | + $extended_allowed_html_tags = self::EXTENDED_ALLOWED_HTML_TAGS; | |
| 915 | 764 | |
| 916 | 765 | foreach ( $tags as $tag ) { |
| 917 | - if ( isset( self::EXTENDED_ALLOWED_HTML_TAGS[ $tag ] ) ) { | |
| 766 | + if ( isset( $extended_allowed_html_tags[ $tag ] ) ) { | |
| 918 | 767 | $extended_tags = apply_filters( "elementor/extended_allowed_html_tags/{$tag}", self::EXTENDED_ALLOWED_HTML_TAGS[ $tag ] ); |
| 919 | 768 | $allowed_html = array_replace_recursive( $allowed_html, $extended_tags ); |
| 920 | 769 | } |
| 921 | 770 | } |
| 922 | 771 | |
| 923 | - echo wp_kses( $text, $allowed_html ); | |
| 924 | - } | |
| 925 | - | |
| 926 | - public static function kses_post_deep( $data ) { | |
| 927 | - return map_deep( $data, function ( $value ) { | |
| 928 | - return is_string( $value ) ? wp_kses_post( $value ) : $value; | |
| 929 | - } ); | |
| 930 | - } | |
| 931 | - | |
| 932 | - public static function is_elementor_path( $path ) { | |
| 933 | - $path = wp_normalize_path( $path ); | |
| 934 | - | |
| 935 | - /** | |
| 936 | - * Elementor related paths. | |
| 937 | - * | |
| 938 | - * Filters Elementor related paths. | |
| 939 | - * | |
| 940 | - * @param string[] $available_paths | |
| 941 | - */ | |
| 942 | - $available_paths = apply_filters( 'elementor/utils/elementor_related_paths', [ ELEMENTOR_PATH ] ); | |
| 943 | - | |
| 944 | - return (bool) ( new Collection( $available_paths ) ) | |
| 945 | - ->map( function ( $p ) { | |
| 946 | - // `untrailingslashit` in order to include other plugins prefixed with elementor. | |
| 947 | - return untrailingslashit( wp_normalize_path( $p ) ); | |
| 948 | - } ) | |
| 949 | - ->find(function ( $p ) use ( $path ) { | |
| 950 | - return false !== strpos( $path, $p ); | |
| 951 | - } ); | |
| 952 | - } | |
| 953 | - | |
| 954 | - /** | |
| 955 | - * @param string $file | |
| 956 | - * @param mixed ...$args | |
| 957 | - * @return false|string | |
| 958 | - */ | |
| 959 | - public static function file_get_contents( $file, ...$args ) { | |
| 960 | - if ( ! is_file( $file ) || ! is_readable( $file ) ) { | |
| 961 | - return false; | |
| 962 | - } | |
| 963 | - return file_get_contents( $file, ...$args ); | |
| 964 | - } | |
| 965 | - | |
| 966 | - public static function get_super_global_value( $super_global, $key ) { | |
| 967 | - if ( ! isset( $super_global[ $key ] ) ) { | |
| 968 | - return null; | |
| 969 | - } | |
| 970 | - | |
| 971 | - if ( $_FILES === $super_global ) { // phpcs:ignore WordPress.Security.NonceVerification.Missing | |
| 972 | - return isset( $super_global[ $key ]['name'] ) ? | |
| 973 | - self::sanitize_file_name( $super_global[ $key ] ) : | |
| 974 | - self::sanitize_multi_upload( $super_global[ $key ] ); | |
| 975 | - } | |
| 976 | - | |
| 977 | - return wp_kses_post_deep( wp_unslash( $super_global[ $key ] ) ); | |
| 978 | - } | |
| 979 | - | |
| 980 | - private static function sanitize_multi_upload( $fields ) { | |
| 981 | - return array_map( function( $field ) { | |
| 982 | - return array_map( 'self::sanitize_file_name', $field ); | |
| 983 | - }, $fields ); | |
| 984 | - } | |
| 985 | - | |
| 986 | - private static function sanitize_file_name( $file ) { | |
| 987 | - $file['name'] = sanitize_file_name( $file['name'] ); | |
| 988 | - | |
| 989 | - return $file; | |
| 990 | - } | |
| 991 | - | |
| 992 | - /** | |
| 993 | - * Return specific object property value if exist from array of keys. | |
| 994 | - * | |
| 995 | - * @param array $base_array | |
| 996 | - * @param array $keys | |
| 997 | - * @return mixed|null | |
| 998 | - */ | |
| 999 | - public static function get_array_value_by_keys( $base_array, $keys ) { | |
| 1000 | - $keys = (array) $keys; | |
| 1001 | - foreach ( $keys as $key ) { | |
| 1002 | - if ( ! isset( $base_array[ $key ] ) ) { | |
| 1003 | - return null; | |
| 1004 | - } | |
| 1005 | - $base_array = $base_array[ $key ]; | |
| 1006 | - } | |
| 1007 | - return $base_array; | |
| 1008 | - } | |
| 1009 | - | |
| 1010 | - public static function get_cached_callback( $callback, $cache_key, $cache_time = 24 * HOUR_IN_SECONDS ) { | |
| 1011 | - $cache = get_site_transient( $cache_key ); | |
| 1012 | - | |
| 1013 | - if ( ! $cache ) { | |
| 1014 | - $cache = call_user_func( $callback ); | |
| 1015 | - | |
| 1016 | - if ( ! is_wp_error( $cache ) ) { | |
| 1017 | - set_site_transient( $cache_key, $cache, $cache_time ); | |
| 1018 | - } | |
| 1019 | - } | |
| 1020 | - | |
| 1021 | - return $cache; | |
| 1022 | - } | |
| 1023 | - | |
| 1024 | - public static function is_sale_time(): bool { | |
| 1025 | - $sale_start_time = gmmktime( 10, 0, 0, 6, 15, 2026 ); | |
| 1026 | - $sale_end_time = gmmktime( 3, 59, 0, 6, 17, 2026 ); | |
| 1027 | - | |
| 1028 | - $now_time = gmdate( 'U' ); | |
| 1029 | - | |
| 1030 | - return $now_time >= $sale_start_time && $now_time <= $sale_end_time; | |
| 1031 | - } | |
| 1032 | - | |
| 1033 | - public static function safe_throw( string $message ) { | |
| 1034 | - if ( ! static::is_elementor_debug() ) { | |
| 1035 | - return; | |
| 1036 | - } | |
| 1037 | - | |
| 1038 | - throw new \Exception( esc_html( $message ) ); | |
| 1039 | - } | |
| 1040 | - | |
| 1041 | - public static function has_invalid_post_permissions( $post ): bool { | |
| 1042 | - $is_image_attachment = 'attachment' === $post->post_type && strpos( $post->post_mime_type, 'image/' ) === 0; | |
| 1043 | - | |
| 1044 | - if ( $is_image_attachment ) { | |
| 1045 | - return false; | |
| 1046 | - } | |
| 1047 | - | |
| 1048 | - $is_private = 'private' === $post->post_status | |
| 1049 | - && ! current_user_can( 'read_private_posts', $post->ID ); | |
| 1050 | - | |
| 1051 | - $not_allowed = 'publish' !== $post->post_status | |
| 1052 | - && ! current_user_can( 'edit_post', $post->ID ); | |
| 1053 | - | |
| 1054 | - $password_required = post_password_required( $post->ID ) | |
| 1055 | - && ! current_user_can( 'edit_post', $post->ID ); | |
| 1056 | - | |
| 1057 | - return $is_private || $not_allowed || $password_required; | |
| 1058 | - } | |
| 1059 | - | |
| 1060 | - public static function is_custom_kit_applied() { | |
| 1061 | - return (bool) Plugin::$instance->kits_manager->get_previous_id(); | |
| 1062 | - } | |
| 1063 | - | |
| 1064 | - public static function decode_string( string $encoded_string, ?string $fallback = '' ) { | |
| 1065 | - try { | |
| 1066 | - return base64_decode( $encoded_string, true ) ?? $fallback; | |
| 1067 | - } catch ( \Exception $e ) { | |
| 1068 | - return $fallback; | |
| 1069 | - } | |
| 1070 | - } | |
| 1071 | - | |
| 1072 | - public static function encode_string( string $decoded_string ): string { | |
| 1073 | - return base64_encode( $decoded_string ); | |
| 1074 | - } | |
| 1075 | - | |
| 1076 | - public static function html_to_plain_text( string $html ): string { | |
| 1077 | - if ( empty( $html ) ) { | |
| 1078 | - return ''; | |
| 1079 | - } | |
| 1080 | - | |
| 1081 | - $text = preg_replace( '#<br\s*/?\s*>#i', ' ', $html ); | |
| 1082 | - $text = preg_replace( '#</?[a-z][^>]*>#i', ' ', $text ); | |
| 1083 | - $text = html_entity_decode( $text, ENT_QUOTES, 'UTF-8' ); | |
| 1084 | - $text = str_replace( "\xE2\x80\x8B", '', $text ); | |
| 1085 | - | |
| 1086 | - return trim( preg_replace( '/\s+/', ' ', $text ) ); | |
| 772 | + echo wp_kses( $string, $allowed_html ); | |
| 1087 | 773 | } |
| 1088 | 774 | } |