PluginProbe
Elementor Website Builder – more than just a page builder / 3.8.0-beta1
Elementor Website Builder – more than just a page builder v3.8.0-beta1
4.3.4 4.3.3 4.3.2 4.3.1 4.3.0 4.3.0-beta3 4.3.0-beta2 4.3.0-beta1 4.2.4 4.2.3 4.2.2 4.2.1 4.2.0 4.1.5 4.2.0-beta2 4.2.0-dev2 4.2.0-beta1 4.1.4 4.1.3 4.1.2 4.1.1 4.1.0 4.1.0-beta3 4.1.0-dev3 4.0.9 All 457 releases
← All changes | app/modules/import-export/module.php +119 -451 4.1.0-dev3 → 3.8.0-beta1 View file →
@@ -11,12 +11,11 @@
11 11 use Elementor\Plugin;
12 12 use Elementor\Tools;
13 13 use Elementor\Utils as ElementorUtils;
14 14 use Elementor\App\Modules\ImportExport\Utils as ImportExportUtils;
15 -use Elementor\Modules\CloudKitLibrary\Module as CloudKitLibrary;
16 15
17 16 if ( ! defined( 'ABSPATH' ) ) {
18 - exit; // Exit if accessed directly.
17 + exit; // Exit if accessed directly
19 18 }
20 19
21 20 /**
22 21 * Import Export Module
@@ -31,26 +30,16 @@
31 30 const UPLOAD_TRIGGER_KEY = 'elementor_upload_kit';
32 31
33 32 const IMPORT_TRIGGER_KEY = 'elementor_import_kit';
34 33
35 - const IMPORT_RUNNER_TRIGGER_KEY = 'elementor_import_kit__runner';
36 -
37 34 const REFERRER_KIT_LIBRARY = 'kit-library';
38 35
39 36 const REFERRER_LOCAL = 'local';
40 37
41 - const REFERRER_CLOUD = 'cloud';
38 + const PERMISSIONS_ERROR_KEY = 'plugin-installation-permissions-error';
42 39
43 - const PLUGIN_PERMISSIONS_ERROR_KEY = 'plugin-installation-permissions-error';
44 -
45 - const KIT_LIBRARY_ERROR_KEY = 'invalid-kit-library-zip-error';
46 -
47 40 const NO_WRITE_PERMISSIONS_KEY = 'no-write-permissions';
48 41
49 - const THIRD_PARTY_ERROR = 'third-party-error';
50 -
51 - const DOMDOCUMENT_MISSING = 'domdocument-missing';
52 -
53 42 const OPTION_KEY_ELEMENTOR_IMPORT_SESSIONS = 'elementor_import_sessions';
54 43
55 44 const OPTION_KEY_ELEMENTOR_REVERT_SESSIONS = 'elementor_revert_sessions';
56 45
@@ -56,12 +45,10 @@
56 45
57 46 const META_KEY_ELEMENTOR_IMPORT_SESSION_ID = '_elementor_import_session_id';
58 47
59 48 const META_KEY_ELEMENTOR_EDIT_MODE = '_elementor_edit_mode';
60 - const IMPORT_PLUGINS_ACTION = 'import-plugins';
61 - const EXPORT_SOURCE_CLOUD = 'cloud';
62 - const EXPORT_SOURCE_FILE = 'file';
63 49
50 +
64 51 /**
65 52 * Assigning the export process to a property, so we can use the process from outside the class.
66 53 *
67 54 * @var Export
@@ -100,10 +87,8 @@
100 87 \WP_CLI::add_command( 'elementor kit', WP_CLI::class );
101 88 }
102 89
103 90 ( new Usage() )->register();
104 -
105 - $this->revert = new Revert();
106 91 }
107 92
108 93 public function get_init_settings() {
109 94 if ( ! Plugin::$instance->app->is_current() ) {
@@ -117,12 +102,12 @@
117 102 * Register the import/export tab in elementor tools.
118 103 */
119 104 public function register_settings_tab( Tools $tools ) {
120 105 $tools->add_tab( 'import-export-kit', [
121 - 'label' => esc_html__( 'Website Templates', 'elementor' ),
106 + 'label' => esc_html__( 'Import / Export Kit', 'elementor' ),
122 107 'sections' => [
123 108 'intro' => [
124 - 'label' => esc_html__( 'Website Templates', 'elementor' ),
109 + 'label' => esc_html__( 'Template Kits', 'elementor' ),
125 110 'callback' => function() {
126 111 $this->render_import_export_tab_content();
127 112 },
128 113 'fields' => [],
@@ -134,39 +119,45 @@
134 119 /**
135 120 * Render the import/export tab content.
136 121 */
137 122 private function render_import_export_tab_content() {
138 - $is_cloud_kits_available = CloudKitLibrary::get_app()->check_eligibility()['is_eligible'];
123 + $intro_text_link = sprintf( '<a href="https://go.elementor.com/wp-dash-import-export-general/" target="_blank">%s</a>', esc_html__( 'Learn more', 'elementor' ) );
139 124
125 + $intro_text = sprintf(
126 + /* translators: 1: New line break, 2: Learn More link. */
127 + __( 'Design sites faster with a template kit that contains some or all components of a complete site, like templates, content & site settings.%1$sYou can import a kit and apply it to your site, or export the elements from this site to be used anywhere else. %2$s', 'elementor' ),
128 + '<br>',
129 + $intro_text_link
130 + );
131 +
140 132 $content_data = [
141 133 'export' => [
142 - 'title' => esc_html__( 'Export this website', 'elementor' ),
134 + 'title' => esc_html__( 'Export a Template Kit', 'elementor' ),
143 135 'button' => [
144 136 'url' => Plugin::$instance->app->get_base_url() . '#/export',
145 - 'text' => esc_html__( 'Export', 'elementor' ),
146 - 'id' => 'elementor-import-export__export',
137 + 'text' => esc_html__( 'Start Export', 'elementor' ),
147 138 ],
148 - 'description' => esc_html__( 'You can download this website as a .zip file, or upload it to the library.', 'elementor' ),
139 + 'description' => esc_html__( 'Bundle your whole site - or just some of its elements - to be used for another website.', 'elementor' ),
140 + 'link' => [
141 + 'url' => 'https://go.elementor.com/wp-dash-import-export-export-flow/',
142 + 'text' => esc_html__( 'Learn More', 'elementor' ),
143 + ],
149 144 ],
150 145 'import' => [
151 - 'title' => esc_html__( 'Import website templates', 'elementor' ),
146 + 'title' => esc_html__( 'Import a Template Kit', 'elementor' ),
152 147 'button' => [
153 148 'url' => Plugin::$instance->app->get_base_url() . '#/import',
154 - 'text' => esc_html__( 'Import', 'elementor' ),
155 - 'id' => 'elementor-import-export__import',
149 + 'text' => esc_html__( 'Start Import', 'elementor' ),
156 150 ],
157 - 'description' => esc_html__( 'You can import design and settings from a .zip file or choose from the library.', 'elementor' ),
151 + 'description' => esc_html__( 'Apply the design and settings of another site to this one.', 'elementor' ),
152 + 'link' => [
153 + 'url' => 'https://go.elementor.com/wp-dash-import-export-import-flow/',
154 + 'text' => esc_html__( 'Learn More', 'elementor' ),
155 + ],
158 156 ],
159 157 ];
160 158
161 - if ( $is_cloud_kits_available ) {
162 - $content_data['import']['button_secondary'] = [
163 - 'url' => Plugin::$instance->app->get_base_url() . '#/kit-library/cloud',
164 - 'text' => esc_html__( 'Import from library', 'elementor' ),
165 - 'id' => 'elementor-import-export__import_from_library',
166 - ];
167 - }
168 -
159 + $this->revert = new Revert();
169 160 $last_imported_kit = $this->revert->get_last_import_session();
170 161 $penultimate_imported_kit = $this->revert->get_penultimate_import_session();
171 162
172 163 $user_date_format = get_option( 'date_format' );
@@ -177,21 +168,19 @@
177 168
178 169 if ( $should_show_revert_section ) {
179 170 if ( ! empty( $penultimate_imported_kit ) ) {
180 171 $revert_text = sprintf(
181 - /* translators: 1: Last imported kit title, 2: Last imported kit date, 3: Line break <br>, 4: Penultimate imported kit title, 5: Penultimate imported kit date. */
182 172 esc_html__( 'Remove all the content and site settings that came with "%1$s" on %2$s %3$s and revert to the site setting that came with "%4$s" on %5$s.', 'elementor' ),
183 - ! empty( $last_imported_kit['kit_title'] ) ? $last_imported_kit['kit_title'] : esc_html__( 'imported kit', 'elementor' ),
173 + ! empty( $last_imported_kit['kit_name'] ) ? $last_imported_kit['kit_name'] : esc_html__( 'imported kit', 'elementor' ),
184 174 gmdate( $date_format, $last_imported_kit['start_timestamp'] ),
185 175 '<br>',
186 - ! empty( $penultimate_imported_kit['kit_title'] ) ? $penultimate_imported_kit['kit_title'] : esc_html__( 'imported kit', 'elementor' ),
176 + ! empty( $penultimate_imported_kit['kit_name'] ) ? $penultimate_imported_kit['kit_name'] : esc_html__( 'imported kit', 'elementor' ),
187 177 gmdate( $date_format, $penultimate_imported_kit['start_timestamp'] )
188 178 );
189 179 } else {
190 180 $revert_text = sprintf(
191 - /* translators: 1: Last imported kit title, 2: Last imported kit date, 3: Line break <br>. */
192 181 esc_html__( 'Remove all the content and site settings that came with "%1$s" on %2$s.%3$s Your original site settings will be restored.', 'elementor' ),
193 - ! empty( $last_imported_kit['kit_title'] ) ? $last_imported_kit['kit_title'] : esc_html__( 'imported kit', 'elementor' ),
182 + ! empty( $last_imported_kit['kit_name'] ) ? $last_imported_kit['kit_name'] : esc_html__( 'imported kit', 'elementor' ),
194 183 gmdate( $date_format, $last_imported_kit['start_timestamp'] ),
195 184 '<br>'
196 185 );
197 186 }
@@ -198,29 +187,29 @@
198 187 }
199 188 ?>
200 189
201 190 <div class="tab-import-export-kit__content">
202 - <p class="tab-import-export-kit__info">
203 - <?php
204 - printf(
205 - '%1$s <a href="https://go.elementor.com/wp-dash-import-export-general/" target="_blank">%2$s</a>',
206 - esc_html__( 'Here’s where you can export this website as a .zip file, upload it to the cloud, or start the process of applying an existing template to your site.', 'elementor' ),
207 - esc_html__( 'Learn more', 'elementor' ),
208 - );
209 - ?>
210 - </p>
191 + <p class="tab-import-export-kit__info"><?php ElementorUtils::print_unescaped_internal_string( $intro_text ); ?></p>
211 192
212 193 <div class="tab-import-export-kit__wrapper">
213 - <?php foreach ( $content_data as $data ) {
214 - $this->print_item_content( $data );
215 - } ?>
194 + <?php foreach ( $content_data as $data ) { ?>
195 + <div class="tab-import-export-kit__container">
196 + <div class="tab-import-export-kit__box">
197 + <h2><?php ElementorUtils::print_unescaped_internal_string( $data['title'] ); ?></h2>
198 + <a href="<?php ElementorUtils::print_unescaped_internal_string( $data['button']['url'] ); ?>" class="elementor-button elementor-button-success">
199 + <?php ElementorUtils::print_unescaped_internal_string( $data['button']['text'] ); ?>
200 + </a>
201 + </div>
202 + <p><?php ElementorUtils::print_unescaped_internal_string( $data['description'] ); ?></p>
203 + <a href="<?php ElementorUtils::print_unescaped_internal_string( $data['link']['url'] ); ?>" target="_blank"><?php ElementorUtils::print_unescaped_internal_string( $data['link']['text'] ); ?></a>
204 + </div>
205 + <?php } ?>
216 206 </div>
217 207
218 208 <?php
219 209 if ( $should_show_revert_section ) {
220 -
221 210 $link_attributes = [
222 - 'href' => $this->get_revert_href(),
211 + 'href' => wp_nonce_url( admin_url( 'admin-post.php?action=elementor_revert_kit' ), 'elementor_revert_kit' ),
223 212 'id' => 'elementor-import-export__revert_kit',
224 213 'class' => 'button',
225 214 ];
226 215 ?>
@@ -225,16 +214,15 @@
225 214 ];
226 215 ?>
227 216 <div class="tab-import-export-kit__revert">
228 217 <h2>
229 - <?php echo esc_html__( 'Remove the most recent Website Template', 'elementor' ); ?>
218 + <?php ElementorUtils::print_unescaped_internal_string( esc_html__( 'Remove the most recent Kit', 'elementor' ) ); ?>
230 219 </h2>
231 220 <p class="tab-import-export-kit__info">
232 221 <?php ElementorUtils::print_unescaped_internal_string( $revert_text ); ?>
233 222 </p>
234 - <?php $this->render_last_kit_thumbnail( $last_imported_kit ); ?>
235 223 <a <?php ElementorUtils::print_html_attributes( $link_attributes ); ?> >
236 - <?php echo esc_html__( 'Remove Website Template', 'elementor' ); ?>
224 + <?php ElementorUtils::print_unescaped_internal_string( esc_html__( 'Remove Kit', 'elementor' ) ); ?>
237 225 </a>
238 226 </div>
239 227 <?php } ?>
240 228 </div>
@@ -240,87 +228,9 @@
240 228 </div>
241 229 <?php
242 230 }
243 231
244 - private function print_item_content( $data ) {
245 - ?>
246 - <div class="tab-import-export-kit__container">
247 - <div class="tab-import-export-kit__box">
248 - <h2><?php ElementorUtils::print_unescaped_internal_string( $data['title'] ); ?></h2>
249 - </div>
250 - <p class="description"><?php ElementorUtils::print_unescaped_internal_string( $data['description'] ); ?></p>
251 -
252 - <?php if ( ! empty( $data['link'] ) ) : ?>
253 - <a href="<?php ElementorUtils::print_unescaped_internal_string( $data['link']['url'] ); ?>" target="_blank"><?php ElementorUtils::print_unescaped_internal_string( $data['link']['text'] ); ?></a>
254 - <?php endif; ?>
255 - <div class="tab-import-export-kit__box action-buttons">
256 - <?php if ( ! empty( $data['button_secondary'] ) ) : ?>
257 - <a href="<?php ElementorUtils::print_unescaped_internal_string( $data['button_secondary']['url'] ); ?>" class="elementor-button e-btn-txt e-btn-txt-border">
258 - <?php ElementorUtils::print_unescaped_internal_string( $data['button_secondary']['text'] ); ?>
259 - </a>
260 - <?php endif; ?>
261 - <a <?php ElementorUtils::print_html_attributes( [ 'id' => $data['button']['id'] ] ); ?> href="<?php ElementorUtils::print_unescaped_internal_string( $data['button']['url'] ); ?>" class="elementor-button e-primary">
262 - <?php ElementorUtils::print_unescaped_internal_string( $data['button']['text'] ); ?>
263 - </a>
264 - </div>
265 - </div>
266 - <?php
267 - }
268 -
269 - private function get_revert_href(): string {
270 - $admin_post_url = admin_url( 'admin-post.php?action=elementor_revert_kit' );
271 - $nonced_admin_post_url = wp_nonce_url( $admin_post_url, 'elementor_revert_kit' );
272 - return $this->maybe_add_referrer_param( $nonced_admin_post_url );
273 - }
274 -
275 232 /**
276 - * Checks if referred by a kit and adds the referrer ID to the href
277 - *
278 - * @param string $href
279 - *
280 - * @return string
281 - */
282 - private function maybe_add_referrer_param( string $href ): string {
283 - $param_name = 'referrer_kit';
284 -
285 - if ( empty( $_GET[ $param_name ] ) ) {
286 - return $href;
287 - }
288 -
289 - return add_query_arg( $param_name, sanitize_key( $_GET[ $param_name ] ), $href );
290 - }
291 -
292 - /**
293 - * Render the last kit thumbnail if exists
294 - *
295 - * @param $last_imported_kit
296 - *
297 - * @return void
298 - */
299 - private function render_last_kit_thumbnail( $last_imported_kit ) {
300 - if ( empty( $last_imported_kit['kit_thumbnail'] ) ) {
301 - return;
302 - }
303 -
304 - ?>
305 - <div class="tab-import-export-kit__kit-item-row">
306 - <article class="tab-import-export-kit__kit-item">
307 - <header>
308 - <h3>
309 - <?php echo esc_html( $last_imported_kit['kit_title'] ); ?>
310 - </h3>
311 - </header>
312 - <img
313 - src="<?php echo esc_url( $last_imported_kit['kit_thumbnail'] ); ?>"
314 - alt="<?php echo esc_attr( $last_imported_kit['kit_title'] ); ?>"
315 - loading="lazy"
316 - >
317 - </article>
318 - </div>
319 - <?php
320 - }
321 -
322 - /**
323 233 * Upload a kit zip file and get the kit data.
324 234 *
325 235 * Assigning the Import process to the 'import' property,
326 236 * so it will be available to use in different places such as: WP_Cli, Pro, etc.
@@ -326,19 +236,15 @@
326 236 * so it will be available to use in different places such as: WP_Cli, Pro, etc.
327 237 *
328 238 * @param string $file Path to the file.
329 239 * @param string $referrer Referrer of the file 'local' or 'kit-library'.
330 - * @param string $kit_id
331 240 * @return array
332 - * @throws \Exception If export validation fails or processing errors occur.
241 + * @throws \Exception
333 242 */
334 - public function upload_kit( $file, $referrer, $kit_id = null ) {
243 + public function upload_kit( $file, $referrer ) {
335 244 $this->ensure_writing_permissions();
336 245
337 - $this->import = new Import( $file, [
338 - 'referrer' => $referrer,
339 - 'id' => $kit_id,
340 - ] );
246 + $this->import = new Import( $file, [ 'referrer' => $referrer ] );
341 247
342 248 return [
343 249 'session' => $this->import->get_session_id(),
344 250 'manifest' => $this->import->get_manifest(),
@@ -349,69 +255,29 @@
349 255 /**
350 256 * Import a kit by session_id.
351 257 * Upload and import a kit by kit zip file.
352 258 *
353 - * If the split_to_chunks flag is true, the process won't start
354 - * It will initialize the import process and return the session_id and the runners.
355 - *
356 259 * Assigning the Import process to the 'import' property,
357 260 * so it will be available to use in different places such as: WP_Cli, Pro, etc.
358 261 *
359 262 * @param string $path Path to the file or session_id.
360 - * @param array $settings Settings the import use to determine which content to import.
361 - * (e.g: include, selected_plugins, selected_cpt, selected_override_conditions, etc.)
362 - * @param bool $split_to_chunks Determine if the import process should be split into chunks.
263 + * @param array $settings Settings the import use to determine which content to import.
264 + * (e.g: include, selected_plugins, selected_cpt, selected_override_conditions, etc.)
363 265 * @return array
364 - * @throws \Exception If export configuration is invalid or processing fails.
266 + * @throws \Exception
365 267 */
366 - public function import_kit( string $path, array $settings, bool $split_to_chunks = false ): array {
268 + public function import_kit( $path, $settings ) {
367 269 $this->ensure_writing_permissions();
368 - $this->ensure_DOMDocument_exists();
369 270
370 271 $this->import = new Import( $path, $settings );
371 272 $this->import->register_default_runners();
372 273
373 - remove_filter( 'elementor/document/save/data', [ Plugin::$instance->modules_manager->get_modules( 'content-sanitizer' ), 'sanitize_content' ] );
374 274 do_action( 'elementor/import-export/import-kit', $this->import );
375 275
376 - if ( $split_to_chunks ) {
377 - $this->import->init_import_session( true );
378 -
379 - return [
380 - 'session' => $this->import->get_session_id(),
381 - 'runners' => $this->import->get_runners_name(),
382 - ];
383 - }
384 -
385 276 return $this->import->run();
386 277 }
387 278
388 279 /**
389 - * Resuming import process by re-creating the import instance and running the specific runner.
390 - *
391 - * @param string $session_id The id off the import session.
392 - * @param string $runner_name The specific runner that we want to run.
393 - *
394 - * @return array Two types of response.
395 - * 1. The status and the runner name.
396 - * 2. The imported data. (Only if the runner is the last one in the import process)
397 - * @throws \Exception If import configuration is invalid or processing fails.
398 - */
399 - public function import_kit_by_runner( string $session_id, string $runner_name ): array {
400 - // Check session_id
401 - $this->import = Import::from_session( $session_id );
402 - $runners = $this->import->get_runners_name();
403 -
404 - $run = $this->import->run_runner( $runner_name );
405 -
406 - if ( end( $runners ) === $run['runner'] ) {
407 - return $this->import->get_imported_data();
408 - }
409 -
410 - return $run;
411 - }
412 -
413 - /**
414 280 * Export a kit.
415 281 *
416 282 * Assigning the Export process to the 'export' property,
417 283 * so it will be available to use in different places such as: WP_Cli, Pro, etc.
@@ -418,11 +284,11 @@
418 284 *
419 285 * @param array $settings Settings the export use to determine which content to export.
420 286 * (e.g: include, kit_info, selected_plugins, selected_cpt, etc.)
421 287 * @return array
422 - * @throws \Exception If import/export process fails or validation errors occur.
288 + * @throws \Exception
423 289 */
424 - public function export_kit( array $settings ) {
290 + public function export_kit( $settings ) {
425 291 $this->ensure_writing_permissions();
426 292
427 293 $this->export = new Export( $settings );
428 294 $this->export->register_default_runners();
@@ -463,9 +329,10 @@
463 329 private function register_actions() {
464 330 add_action( 'admin_init', function() {
465 331 if ( wp_doing_ajax() &&
466 332 isset( $_POST['action'] ) &&
467 - wp_verify_nonce( ElementorUtils::get_super_global_value( $_POST, '_nonce' ), Ajax::NONCE_KEY ) &&
333 + isset( $_POST['_nonce'] ) &&
334 + wp_verify_nonce( $_POST['_nonce'], Ajax::NONCE_KEY ) &&
468 335 current_user_can( 'manage_options' )
469 336 ) {
470 337 $this->maybe_handle_ajax();
471 338 }
@@ -474,44 +341,13 @@
474 341 add_action( 'admin_post_elementor_revert_kit', [ $this, 'handle_revert_last_imported_kit' ] );
475 342
476 343 add_action( 'admin_enqueue_scripts', [ $this, 'enqueue_scripts' ] );
477 344
478 - if ( ! Plugin::$instance->experiments->is_feature_active( 'import-export-customization' ) ) {
479 - $page_id = Tools::PAGE_ID;
345 + $page_id = Tools::PAGE_ID;
480 346
481 - add_action( "elementor/admin/after_create_settings/{$page_id}", [ $this, 'register_settings_tab' ] );
482 - }
483 -
484 - // TODO 18/04/2023 : This needs to be moved to the runner itself after https://elementor.atlassian.net/browse/HTS-434 is done.
485 - if ( self::IMPORT_PLUGINS_ACTION === ElementorUtils::get_super_global_value( $_SERVER, 'HTTP_X_ELEMENTOR_ACTION' ) ) {
486 - add_filter( 'woocommerce_create_pages', [ $this, 'empty_pages' ], 10, 0 );
487 - }
488 - // TODO ^^^
489 -
490 - add_filter( 'elementor/import/kit/result', function( $result ) {
491 - if ( ! empty( $result['file_url'] ) ) {
492 - return [
493 - 'file_name' => $this->get_remote_kit_zip( $result['file_url'] ),
494 - 'referrer' => static::REFERRER_KIT_LIBRARY,
495 - 'file_url' => $result['file_url'],
496 - ];
497 - }
498 -
499 - return $result;
500 - } );
347 + add_action( "elementor/admin/after_create_settings/{$page_id}", [ $this, 'register_settings_tab' ] );
501 348 }
502 349
503 - /**
504 - * Prevent the creation of the default WooCommerce pages (Cart, Checkout, etc.)
505 - *
506 - * TODO 18/04/2023 : This needs to be moved to the runner itself after https://elementor.atlassian.net/browse/HTS-434 is done.
507 - *
508 - * @return array
509 - */
510 - public function empty_pages(): array {
511 - return [];
512 - }
513 -
514 350 private function ensure_writing_permissions() {
515 351 $server = new Server();
516 352
517 353 $paths_to_check = [
@@ -521,32 +357,15 @@
521 357 ];
522 358
523 359 $permissions = $server->get_paths_permissions( $paths_to_check );
524 360
525 - // WP Content dir has to be exists and writable.
526 - if ( ! $permissions[ Server::KEY_PATH_WP_CONTENT_DIR ]['write'] ) {
527 - throw new \Error( self::NO_WRITE_PERMISSIONS_KEY ); // phpcs:ignore WordPress.Security.EscapeOutput.ExceptionNotEscaped
361 + foreach ( $permissions as $permission ) {
362 + if ( ! $permission['write'] ) {
363 + throw new \Error( self::NO_WRITE_PERMISSIONS_KEY );
364 + }
528 365 }
529 -
530 - // WP Uploads dir has to be exists and writable.
531 - if ( ! $permissions[ Server::KEY_PATH_UPLOADS_DIR ]['write'] ) {
532 - throw new \Error( self::NO_WRITE_PERMISSIONS_KEY ); // phpcs:ignore WordPress.Security.EscapeOutput.ExceptionNotEscaped
533 - }
534 -
535 - // Elementor uploads dir permissions is divided to 2 cases:
536 - // 1. If the dir exists, it has to be writable.
537 - // 2. If the dir doesn't exist, the parent dir has to be writable (wp uploads dir), so we can create it.
538 - if ( $permissions[ Server::KEY_PATH_ELEMENTOR_UPLOADS_DIR ]['exists'] && ! $permissions[ Server::KEY_PATH_ELEMENTOR_UPLOADS_DIR ]['write'] ) {
539 - throw new \Error( self::NO_WRITE_PERMISSIONS_KEY ); // phpcs:ignore WordPress.Security.EscapeOutput.ExceptionNotEscaped
540 - }
541 366 }
542 367
543 - private function ensure_DOMDocument_exists() {
544 - if ( ! class_exists( 'DOMDocument' ) ) {
545 - throw new \Error( self::DOMDOCUMENT_MISSING ); // phpcs:ignore WordPress.Security.EscapeOutput.ExceptionNotEscaped
546 - }
547 - }
548 -
549 368 /**
550 369 * Enqueue admin scripts
551 370 */
552 371 public function enqueue_scripts() {
@@ -556,17 +375,8 @@
556 375 [ 'elementor-common' ],
557 376 ELEMENTOR_VERSION,
558 377 true
559 378 );
560 -
561 - wp_localize_script(
562 - 'elementor-import-export-admin',
563 - 'elementorImportExport',
564 - [
565 - 'lastImportedSession' => $this->revert->get_last_import_session(),
566 - 'appUrl' => Plugin::$instance->app->get_base_url() . '#/kit-library',
567 - ]
568 - );
569 379 }
570 380
571 381 /**
572 382 * Assign each ajax action to a method.
@@ -572,127 +382,81 @@
572 382 * Assign each ajax action to a method.
573 383 */
574 384 private function maybe_handle_ajax() {
575 385 // phpcs:ignore WordPress.Security.NonceVerification.Missing
576 - $action = ElementorUtils::get_super_global_value( $_POST, 'action' );
386 + switch ( $_POST['action'] ) {
387 + case static::EXPORT_TRIGGER_KEY:
388 + $this->handle_export_kit();
389 + break;
577 390
578 - try {
579 - switch ( $action ) {
580 - case static::EXPORT_TRIGGER_KEY:
581 - $this->handle_export_kit();
582 - break;
391 + case static::UPLOAD_TRIGGER_KEY:
392 + $this->handle_upload_kit();
393 + break;
583 394
584 - case static::UPLOAD_TRIGGER_KEY:
585 - $this->handle_upload_kit();
586 - break;
395 + case static::IMPORT_TRIGGER_KEY:
396 + $this->handle_import_kit();
397 + break;
587 398
588 - case static::IMPORT_TRIGGER_KEY:
589 - $this->handle_import_kit();
590 - break;
591 -
592 - case static::IMPORT_RUNNER_TRIGGER_KEY:
593 - $this->handle_import_kit__runner();
594 - break;
595 -
596 - default:
597 - break;
598 - }
599 - } catch ( \Error $e ) {
600 - if ( isset( $this->import ) ) {
601 - $this->import->finalize_import_session_option();
602 - }
603 -
604 - Plugin::$instance->logger->get_logger()->error( $e->getMessage(), [
605 - 'meta' => [
606 - 'trace' => $e->getTraceAsString(),
607 - ],
608 - ] );
609 -
610 - if ( isset( $this->import ) && $this->is_third_party_class( $e->getTrace()[0]['class'] ) ) {
611 - wp_send_json_error( self::THIRD_PARTY_ERROR, 500 );
612 - }
613 -
614 - wp_send_json_error( $e->getMessage(), 500 );
399 + default:
400 + break;
615 401 }
616 402 }
617 403
618 404 /**
619 405 * Handle upload kit ajax request.
620 - *
621 - * @throws \Error If operation validation fails or processing errors occur.
622 406 */
623 407 private function handle_upload_kit() {
624 - // PHPCS - A URL that should contain special chars (auth headers information).
625 - $file_url = isset( $_POST['e_import_file'] )
626 - // phpcs:ignore WordPress.Security.ValidatedSanitizedInput.InputNotSanitized
627 - ? wp_unslash( $_POST['e_import_file'] )
628 - : '';
629 -
630 - // PHPCS - Already validated in caller function
631 - $kit_id = ElementorUtils::get_super_global_value( $_POST, 'kit_id' ); // phpcs:ignore WordPress.Security.NonceVerification.Missing
632 - $source = ElementorUtils::get_super_global_value( $_POST, 'source' ); // phpcs:ignore WordPress.Security.NonceVerification.Missing
633 -
634 - $is_import_from_library = ! empty( $file_url );
635 -
636 - if ( $is_import_from_library ) {
408 + // PHPCS - Already validated in caller function.
409 + if ( ! empty( $_POST['e_import_file'] ) ) { // phpcs:ignore WordPress.Security.NonceVerification.Missing
637 410 if (
638 - ! wp_verify_nonce( ElementorUtils::get_super_global_value( $_POST, 'e_kit_library_nonce' ), 'kit-library-import' )
411 + ! isset( $_POST['e_kit_library_nonce'] ) ||
412 + ! wp_verify_nonce( $_POST['e_kit_library_nonce'], 'kit-library-import' )
639 413 ) {
640 - throw new \Error( 'Invalid kit library nonce.' );
414 + throw new \Error( esc_html__( 'Invalid kit library nonce', 'elementor' ) );
641 415 }
642 416
417 + $file_url = $_POST['e_import_file'];
418 +
643 419 if ( ! filter_var( $file_url, FILTER_VALIDATE_URL ) || 0 !== strpos( $file_url, 'http' ) ) {
644 - throw new \Error( static::KIT_LIBRARY_ERROR_KEY ); // phpcs:ignore WordPress.Security.EscapeOutput.ExceptionNotEscaped
420 + throw new \Error( esc_html__( 'Invalid URL', 'elementor' ) );
645 421 }
646 422
647 - $import_result = apply_filters( 'elementor/import/kit/result', [ 'file_url' => $file_url ] );
648 - } elseif ( ! empty( $source ) ) {
649 - $import_result = apply_filters( 'elementor/import/kit/result/' . $source, [
650 - 'kit_id' => $kit_id,
651 - 'source' => $source,
652 - ] );
653 - } else {
654 - $import_result = [
655 - 'file_name' => ElementorUtils::get_super_global_value( $_FILES, 'e_import_file' )['tmp_name'],
656 - 'referrer' => static::REFERRER_LOCAL,
657 - ];
658 - }
423 + $remote_zip_request = wp_remote_get( $file_url );
659 424
660 - Plugin::$instance->logger->get_logger()->info( 'Uploading Kit: ', [
661 - 'meta' => [
662 - 'kit_id' => $kit_id,
663 - 'referrer' => $import_result['referrer'],
664 - ],
665 - ] );
425 + if ( is_wp_error( $remote_zip_request ) ) {
426 + throw new \Error( $remote_zip_request->get_error_message() );
427 + }
666 428
667 - if ( is_wp_error( $import_result ) ) {
668 - wp_send_json_error( $import_result->get_error_message() );
429 + if ( 200 !== $remote_zip_request['response']['code'] ) {
430 + throw new \Error( $remote_zip_request['response']['message'] );
431 + }
432 +
433 + $file_name = Plugin::$instance->uploads_manager->create_temp_file( $remote_zip_request['body'], 'kit.zip' );
434 + $referrer = static::REFERRER_KIT_LIBRARY;
435 + } else {
436 + // PHPCS - Already validated in caller function.
437 + $file_name = $_FILES['e_import_file']['tmp_name']; // phpcs:ignore WordPress.Security.NonceVerification.Missing
438 + $referrer = static::REFERRER_LOCAL;
669 439 }
670 440
671 - $uploaded_kit = $this->upload_kit( $import_result['file_name'], $import_result['referrer'], $kit_id );
672 -
441 + $uploaded_kit = $this->upload_kit( $file_name, $referrer );
673 442 $session_dir = $uploaded_kit['session'];
674 443 $manifest = $uploaded_kit['manifest'];
675 444 $conflicts = $uploaded_kit['conflicts'];
676 445
677 - if ( $is_import_from_library || ! empty( $source ) ) {
678 - Plugin::$instance->uploads_manager->remove_file_or_dir( dirname( $import_result['file_name'] ) );
446 + if ( ! empty( $file_url ) ) {
447 + Plugin::$instance->uploads_manager->remove_file_or_dir( dirname( $file_name ) );
679 448 }
680 449
681 450 if ( isset( $manifest['plugins'] ) && ! current_user_can( 'install_plugins' ) ) {
682 - throw new \Error( static::PLUGIN_PERMISSIONS_ERROR_KEY ); // phpcs:ignore WordPress.Security.EscapeOutput.ExceptionNotEscaped
451 + throw new \Error( static::PERMISSIONS_ERROR_KEY );
683 452 }
684 453
685 454 $result = [
686 455 'session' => $session_dir,
687 456 'manifest' => $manifest,
688 - 'file_url' => $import_result['file_url'],
689 457 ];
690 458
691 - if ( ! empty( $import_result['kit'] ) ) {
692 - $result['uploaded_kit'] = $import_result['kit'];
693 - }
694 -
695 459 if ( ! empty( $conflicts ) ) {
696 460 $result['conflicts'] = $conflicts;
697 461 } else {
698 462 // Moved into the IE process \Elementor\App\Modules\ImportExport\Processes\Import::get_default_settings_conflicts
@@ -702,113 +466,43 @@
702 466
703 467 wp_send_json_success( $result );
704 468 }
705 469
706 - protected function get_remote_kit_zip( $url ) {
707 - $remote_zip_request = wp_safe_remote_get( $url );
708 -
709 - if ( is_wp_error( $remote_zip_request ) ) {
710 - Plugin::$instance->logger->get_logger()->error( $remote_zip_request->get_error_message() );
711 - throw new \Error( static::KIT_LIBRARY_ERROR_KEY ); // phpcs:ignore WordPress.Security.EscapeOutput.ExceptionNotEscaped
712 - }
713 -
714 - if ( 200 !== $remote_zip_request['response']['code'] ) {
715 - Plugin::$instance->logger->get_logger()->error( $remote_zip_request['response']['message'] );
716 - throw new \Error( static::KIT_LIBRARY_ERROR_KEY ); // phpcs:ignore WordPress.Security.EscapeOutput.ExceptionNotEscaped
717 - }
718 -
719 - return Plugin::$instance->uploads_manager->create_temp_file( $remote_zip_request['body'], 'kit.zip' );
720 - }
721 -
722 470 /**
723 471 * Handle import kit ajax request.
724 472 */
725 473 private function handle_import_kit() {
726 474 // PHPCS - Already validated in caller function
727 - $settings = json_decode( ElementorUtils::get_super_global_value( $_POST, 'data' ), true ); // phpcs:ignore WordPress.Security.NonceVerification.Missing
475 + $settings = json_decode( stripslashes( $_POST['data'] ), true ); // phpcs:ignore WordPress.Security.NonceVerification.Missing
728 476 $tmp_folder_id = $settings['session'];
729 477
730 - $import = $this->import_kit( $tmp_folder_id, $settings, true );
478 + $import = $this->import_kit( $tmp_folder_id, $settings );
731 479
732 - // get_settings_config() added manually because the frontend Ajax request doesn't trigger the get_init_settings().
733 - $import['configData'] = $this->get_config_data();
734 -
735 - Plugin::$instance->logger->get_logger()->info(
736 - sprintf( 'Selected import runners: %1$s',
737 - implode( ', ', $import['runners'] )
738 - )
739 - );
740 -
741 480 wp_send_json_success( $import );
742 481 }
743 482
744 483 /**
745 - * Handle ajax request for running specific runner in the import kit process.
746 - */
747 - private function handle_import_kit__runner() {
748 - // PHPCS - Already validated in caller function
749 - $settings = json_decode( ElementorUtils::get_super_global_value( $_POST, 'data' ), true ); // phpcs:ignore WordPress.Security.NonceVerification.Missing
750 - $session_id = $settings['session'];
751 - $runner = $settings['runner'];
752 -
753 - $import = $this->import_kit_by_runner( $session_id, $runner );
754 -
755 - // get_settings_config() added manually because the frontend Ajax request doesn't trigger the get_init_settings().
756 - $import['configData'] = $this->get_config_data();
757 -
758 - if ( ! empty( $import['status'] ) ) {
759 - Plugin::$instance->logger->get_logger()->info(
760 - sprintf( 'Import runner completed: %1$s %2$s',
761 - $import['runner'],
762 - ( 'success' === $import['status'] ? '✓' : '✗' )
763 - )
764 - );
765 - }
766 -
767 - do_action( 'elementor/import-export/import-kit/runner/after-run', $import );
768 -
769 - wp_send_json_success( $import );
770 - }
771 -
772 - /**
773 484 * Handle export kit ajax request.
774 - *
775 - * @throws \Error If cleanup process fails or file system errors occur.
776 485 */
777 486 private function handle_export_kit() {
778 487 // PHPCS - Already validated in caller function
779 - $settings = json_decode( ElementorUtils::get_super_global_value( $_POST, 'data' ), true ); // phpcs:ignore WordPress.Security.NonceVerification.Missing
780 - $source = $settings['kitInfo']['source'];
781 -
488 + $settings = json_decode( stripslashes( $_POST['data'] ), true ); // phpcs:ignore WordPress.Security.NonceVerification.Missing
782 489 $export = $this->export_kit( $settings );
783 490
784 491 $file_name = $export['file_name'];
785 - $file_size = filesize( $file_name );
786 492 $file = ElementorUtils::file_get_contents( $file_name );
787 493
788 494 if ( ! $file ) {
789 - throw new \Error( 'Could not read the exported file.' );
495 + throw new \Error( esc_html__( 'Could not read the exported file', 'elementor' ) );
790 496 }
791 497
792 498 Plugin::$instance->uploads_manager->remove_file_or_dir( dirname( $file_name ) );
793 499
794 - $result = apply_filters(
795 - 'elementor/export/kit/export-result',
796 - [
797 - 'manifest' => $export['manifest'],
798 - 'file' => base64_encode( $file ),
799 - ],
800 - $source,
801 - $export,
802 - $settings,
803 - $file,
804 - $file_size,
805 - );
500 + $result = [
501 + 'manifest' => $export['manifest'],
502 + 'file' => base64_encode( $file ),
503 + ];
806 504
807 - if ( is_wp_error( $result ) ) {
808 - wp_send_json_error( $result );
809 - }
810 -
811 505 wp_send_json_success( $result );
812 506 }
813 507
814 508 /**
@@ -825,12 +519,8 @@
825 519 'elementorPostTypes' => ImportExportUtils::get_elementor_post_types(),
826 520 'isUnfilteredFilesEnabled' => Uploads_Manager::are_unfiltered_uploads_enabled(),
827 521 'elementorHomePageUrl' => $this->get_elementor_home_page_url(),
828 522 'recentlyEditedElementorPageUrl' => $this->get_recently_edited_elementor_page_url(),
829 - 'tools_url' => Tools::get_url(),
830 - 'importSessions' => Revert::get_import_sessions(),
831 - 'lastImportedSession' => $this->revert->get_last_import_session(),
832 - 'kitPreviewNonce' => wp_create_nonce( 'kit_thumbnail' ),
833 523 ];
834 524 }
835 525
836 526 /**
@@ -855,10 +545,10 @@
855 545 foreach ( $post_types as $post_type ) {
856 546 $post_type_object = get_post_type_object( $post_type );
857 547
858 548 $summary_titles['content'][ $post_type ] = [
859 - 'single' => $post_type_object->labels->singular_name ?? '',
860 - 'plural' => $post_type_object->label ?? '',
549 + 'single' => $post_type_object->labels->singular_name,
550 + 'plural' => $post_type_object->label,
861 551 ];
862 552 }
863 553
864 554 $custom_post_types = ImportExportUtils::get_registered_cpt_names();
@@ -868,16 +558,16 @@
868 558 $custom_post_types_object = get_post_type_object( $custom_post_type );
869 559 // CPT data appears in two arrays:
870 560 // 1. content object: in order to show the export summary when completed in getLabel function
871 561 $summary_titles['content'][ $custom_post_type ] = [
872 - 'single' => $custom_post_types_object->labels->singular_name ?? '',
873 - 'plural' => $custom_post_types_object->label ?? '',
562 + 'single' => $custom_post_types_object->labels->singular_name,
563 + 'plural' => $custom_post_types_object->label,
874 564 ];
875 565
876 566 // 2. customPostTypes object: in order to actually export the data
877 567 $summary_titles['content']['customPostTypes'][ $custom_post_type ] = [
878 - 'single' => $custom_post_types_object->labels->singular_name ?? '',
879 - 'plural' => $custom_post_types_object->label ?? '',
568 + 'single' => $custom_post_types_object->labels->singular_name,
569 + 'plural' => $custom_post_types_object->label,
880 570 ];
881 571 }
882 572 }
883 573
@@ -895,11 +585,11 @@
895 585 return false;
896 586 }
897 587
898 588 // TODO: BC - remove in the future
899 - // The 'templates' runner was in core and moved to the Pro plugin. (Part of it still exits in the Core for BC)
900 - // The runner that is in the core version is missing the revert functionality,
901 - // therefore we shouldn't display the revert section if the import process done with the core version.
589 + // The 'templates' runner was in core and moved to the Pro plugin. (Part of it still exits in the Core for BC)
590 + // The runner that is in the core version is missing the revert functionality,
591 + // therefore we shouldn't display the revert section if the import process done with the core version.
902 592 $is_import_templates_ran = isset( $last_imported_kit['runners']['templates'] );
903 593 if ( $this->has_pro() && $is_import_templates_ran ) {
904 594 $has_imported_templates = ! empty( $last_imported_kit['runners']['templates'] );
905 595
@@ -972,28 +662,6 @@
972 662 private function get_elementor_editor_page_url( $page_id ) {
973 663 $document = $this->get_elementor_document( $page_id );
974 664
975 665 return $document ? $document->get_edit_url() : '';
976 - }
977 -
978 - /**
979 - * @param string $class_name
980 - *
981 - * @return bool
982 - */
983 - public function is_third_party_class( $class_name ) {
984 - $allowed_classes = [
985 - 'Elementor\\',
986 - 'ElementorPro\\',
987 - 'WP_',
988 - 'wp_',
989 - ];
990 -
991 - foreach ( $allowed_classes as $allowed_class ) {
992 - if ( str_starts_with( $class_name, $allowed_class ) ) {
993 - return false;
994 - }
995 - }
996 -
997 - return true;
998 666 }
999 667 }