PluginProbe
Formidable Forms – WordPress Form Builder for Contact Forms, Calculators, Quizzes & More / 4.01.02
Formidable Forms – WordPress Form Builder for Contact Forms, Calculators, Quizzes & More v4.01.02
6.35 6.34 6.33.1 6.33 6.32.1 6.32 6.31 6.25 6.25.1 6.26 6.26.1 6.27 6.28 6.29 6.3 6.3.1 6.3.2 6.30 6.4 6.4.1 6.4.2 6.5 6.5.1 6.5.2 6.5.3 All 141 releases
← All changes | classes/controllers/FrmEntriesController.php +243 -486 6.284.01.02 View file →
@@ -1,107 +1,21 @@
1 1 <?php
2 -if ( ! defined( 'ABSPATH' ) ) {
3 - die( 'You are not allowed to call this page directly.' );
4 -}
5 2
6 3 class FrmEntriesController {
7 4
8 - /**
9 - * @return void
10 - */
11 5 public static function menu() {
12 6 FrmAppHelper::force_capability( 'frm_view_entries' );
13 7
14 - add_submenu_page( 'formidable', 'Formidable | ' . __( 'Entries', 'formidable' ), __( 'Entries', 'formidable' ), 'frm_view_entries', 'formidable-entries', 'FrmEntriesController::route' ); // phpcs:ignore SlevomatCodingStandard.Files.LineLength.LineTooLong
8 + add_submenu_page( 'formidable', 'Formidable | ' . __( 'Entries', 'formidable' ), __( 'Entries', 'formidable' ), 'frm_view_entries', 'formidable-entries', 'FrmEntriesController::route' );
15 9
16 - $views_installed = is_callable( 'FrmProAppHelper::views_is_installed' ) && FrmProAppHelper::views_is_installed();
17 -
18 - if ( ! $views_installed ) {
19 - add_submenu_page( 'formidable', 'Formidable | ' . __( 'Views', 'formidable' ), __( 'Views', 'formidable' ), 'frm_view_entries', 'formidable-views', 'FrmFormsController::no_views' ); // phpcs:ignore SlevomatCodingStandard.Files.LineLength.LineTooLong
20 - self::maybe_redirect_to_views_upsell();
21 - } else {
22 - self::maybe_redirect_to_views_index();
23 - }
24 -
25 - if ( FrmAppHelper::is_admin_page( 'formidable-entries' ) ) {
26 - self::load_manage_entries_hooks();
27 - }
10 + self::load_manage_entries_hooks();
28 11 }
29 12
30 13 /**
31 - * This function is called when views is installed.
32 - * The Views add-on uses a different URL for the Views tab than the upsell page.
33 - * If the user is on the upsell page, instead of showing a permission error on reload,
34 - * redirect to the views index page.
35 - *
36 - * @since 6.14.1
37 - *
38 - * @return void
39 - */
40 - private static function maybe_redirect_to_views_index() {
41 - if ( ! FrmAppHelper::is_admin_page( 'formidable-views' ) ) {
42 - return;
43 - }
44 -
45 - $query_args = array(
46 - 'post_type' => 'frm_display',
47 - );
48 - $query_args = self::add_url_params_to_views_redirect_query_args( $query_args );
49 -
50 - wp_safe_redirect( add_query_arg( $query_args, admin_url( 'edit.php' ) ) );
51 - die();
52 - }
53 -
54 - /**
55 - * This function is called when views is inactive.
56 - * A user may deactivate views but then try to reload the views index.
57 - * Instead of showing a permission error, redirect to the views upsell page.
58 - *
59 - * @since 6.14.1
60 - *
61 - * @return void
62 - */
63 - private static function maybe_redirect_to_views_upsell() {
64 - global $pagenow;
65 -
66 - if ( 'edit.php' !== $pagenow || 'frm_display' !== FrmAppHelper::simple_get( 'post_type' ) ) {
67 - return;
68 - }
69 -
70 - $query_args = array(
71 - 'page' => 'formidable-views',
72 - );
73 - $query_args = self::add_url_params_to_views_redirect_query_args( $query_args );
74 -
75 - wp_safe_redirect( add_query_arg( $query_args, admin_url( 'admin.php' ) ) );
76 - die();
77 - }
78 -
79 - /**
80 - * @since 6.14.1
81 - *
82 - * @param array $query_args
83 - *
84 - * @return array
85 - */
86 - private static function add_url_params_to_views_redirect_query_args( $query_args ) {
87 - $query_args['show_nav'] = FrmAppHelper::simple_get( 'show_nav', 'absint', 0 );
88 - $form_id = FrmAppHelper::simple_get( 'form', 'absint', 0 );
89 -
90 - if ( $form_id ) {
91 - $query_args['form'] = $form_id;
92 - }
93 -
94 - return $query_args;
95 - }
96 -
97 - /**
98 14 * @since 2.05.07
99 - *
100 - * @return void
101 15 */
102 16 private static function load_manage_entries_hooks() {
103 - if ( ! in_array( FrmAppHelper::simple_get( 'frm_action', 'sanitize_title' ), array( 'edit', 'show', 'new', 'duplicate' ), true ) ) {
17 + if ( ! in_array( FrmAppHelper::simple_get( 'frm_action', 'sanitize_title' ), array( 'edit', 'show', 'new' ) ) ) {
104 18 $menu_name = FrmAppHelper::get_menu_name();
105 19 $base = self::base_column_key( $menu_name );
106 20
107 21 add_filter( 'manage_' . $base . '_columns', 'FrmEntriesController::manage_columns' );
@@ -107,17 +21,13 @@
107 21 add_filter( 'manage_' . $base . '_columns', 'FrmEntriesController::manage_columns' );
108 22 add_filter( 'get_user_option_' . self::hidden_column_key( $menu_name ), 'FrmEntriesController::hidden_columns' );
109 23 add_filter( 'manage_' . $base . '_sortable_columns', 'FrmEntriesController::sortable_columns' );
110 24 } else {
111 - add_filter( 'screen_options_show_screen', self::class . '::remove_screen_options', 10, 2 );
25 + add_filter( 'screen_options_show_screen', __CLASS__ . '::remove_screen_options', 10, 2 );
112 26 }
113 27 }
114 28
115 - /**
116 - * Display in Back End.
117 - *
118 - * @return mixed
119 - */
29 + /* Display in Back End */
120 30 public static function route() {
121 31 $action = FrmAppHelper::get_param( 'frm_action', '', 'get', 'sanitize_title' );
122 32 FrmAppHelper::include_svg();
123 33
@@ -123,19 +33,18 @@
123 33
124 34 switch ( $action ) {
125 35 case 'show':
126 36 case 'destroy':
37 + case 'destroy_all':
127 38 return self::$action();
128 39
129 40 default:
130 41 do_action( 'frm_entry_action_route', $action );
131 -
132 42 if ( apply_filters( 'frm_entry_stop_action_route', false, $action ) ) {
133 - return null;
43 + return;
134 44 }
135 45
136 - self::display_list();
137 - return null;
46 + return self::display_list();
138 47 }
139 48 }
140 49
141 50 /**
@@ -142,30 +51,18 @@
142 51 * Prevent the "screen options" tab from showing when
143 52 * editing or creating an entry
144 53 *
145 54 * @since 3.0
146 - *
147 - * @param bool $show_screen Whether to show the screen options tab.
148 - * @param object $screen The current screen object.
149 - *
150 - * @return bool
151 55 */
152 56 public static function remove_screen_options( $show_screen, $screen ) {
153 - $menu_name = sanitize_title( FrmAppHelper::get_menu_name() );
154 - $unread_count = FrmEntriesHelper::get_visible_unread_inbox_count();
155 -
156 - if ( $screen->id === $menu_name . ( $unread_count ? '-' . $unread_count : '' ) . '_page_formidable-entries' ) {
157 - return false;
57 + $menu_name = sanitize_title( FrmAppHelper::get_menu_name() );
58 + if ( $screen->id == $menu_name . '_page_formidable-entries' ) {
59 + $show_screen = false;
158 60 }
159 61
160 62 return $show_screen;
161 63 }
162 64
163 - /**
164 - * @param array $columns
165 - *
166 - * @return array
167 - */
168 65 public static function manage_columns( $columns ) {
169 66 global $frm_vars;
170 67 $form_id = FrmForm::get_current_form_id();
171 68
@@ -174,26 +71,25 @@
174 71
175 72 if ( $form_id ) {
176 73 self::get_columns_for_form( $form_id, $columns );
177 74 } else {
178 - $columns[ $form_id . '_form_id' ] = esc_html__( 'Form', 'formidable' );
179 - $columns[ $form_id . '_name' ] = esc_html__( 'Entry Name', 'formidable' );
180 - $columns[ $form_id . '_user_id' ] = esc_html__( 'Created By', 'formidable' );
75 + $columns[ $form_id . '_form_id' ] = __( 'Form', 'formidable' );
76 + $columns[ $form_id . '_name' ] = __( 'Entry Name', 'formidable' );
77 + $columns[ $form_id . '_user_id' ] = __( 'Created By', 'formidable' );
181 78 }
182 79
183 - $columns[ $form_id . '_is_draft' ] = esc_html__( 'Entry Status', 'formidable' );
184 80 $columns[ $form_id . '_created_at' ] = __( 'Entry creation date', 'formidable' );
185 81 $columns[ $form_id . '_updated_at' ] = __( 'Entry update date', 'formidable' );
186 82 self::maybe_add_ip_col( $form_id, $columns );
187 83
188 84 $frm_vars['cols'] = $columns;
189 - $action = FrmAppHelper::simple_get( 'frm_action', 'sanitize_title' );
190 85
191 - if ( FrmAppHelper::is_admin_page( 'formidable-entries' ) && in_array( $action, array( '', 'list', 'destroy' ), true ) ) {
86 + $action = FrmAppHelper::simple_get( 'frm_action', 'sanitize_title' );
87 + if ( FrmAppHelper::is_admin_page( 'formidable-entries' ) && in_array( $action, array( '', 'list', 'destroy' ) ) ) {
192 88 add_screen_option(
193 89 'per_page',
194 90 array(
195 - 'label' => esc_html__( 'Entries', 'formidable' ),
91 + 'label' => __( 'Entries', 'formidable' ),
196 92 'default' => 20,
197 93 'option' => 'formidable_page_formidable_entries_per_page',
198 94 )
199 95 );
@@ -201,34 +97,17 @@
201 97
202 98 return $columns;
203 99 }
204 100
205 - /**
206 - * @param int|string $form_id
207 - * @param array $columns
208 - *
209 - * @return void
210 - */
211 101 private static function get_columns_for_form( $form_id, &$columns ) {
212 102 $form_cols = FrmField::get_all_for_form( $form_id, '', 'include' );
213 103
214 - /**
215 - * Allows changing fields in the Entries list table heading.
216 - *
217 - * @since 5.0.04
218 - *
219 - * @param array $fields Array of fields.
220 - * @param array $args The arguments. Contains `form_id`.
221 - */
222 - $form_cols = apply_filters( 'frm_fields_in_entries_list_table', $form_cols, compact( 'form_id' ) );
223 -
224 104 foreach ( $form_cols as $form_col ) {
225 105 if ( FrmField::is_no_save_field( $form_col->type ) ) {
226 106 continue;
227 107 }
228 108
229 - $has_child_fields = $form_col->type === 'form' && ! empty( $form_col->field_options['form_select'] );
230 -
109 + $has_child_fields = $form_col->type == 'form' && isset( $form_col->field_options['form_select'] ) && ! empty( $form_col->field_options['form_select'] );
231 110 if ( $has_child_fields ) {
232 111 self::add_subform_cols( $form_col, $form_id, $columns );
233 112 } else {
234 113 self::add_field_cols( $form_col, $form_id, $columns );
@@ -237,19 +116,12 @@
237 116 }
238 117
239 118 /**
240 119 * @since 3.01
241 - *
242 - * @param object $field The field object.
243 - * @param int|string $form_id The form ID.
244 - * @param array $columns The columns array.
245 - *
246 - * @return void
247 120 */
248 121 private static function add_subform_cols( $field, $form_id, &$columns ) {
249 122 $sub_form_cols = FrmField::get_all_for_form( $field->field_options['form_select'] );
250 -
251 - if ( ! $sub_form_cols ) {
123 + if ( empty( $sub_form_cols ) ) {
252 124 return;
253 125 }
254 126
255 127 foreach ( $sub_form_cols as $k => $sub_form_col ) {
@@ -256,9 +128,8 @@
256 128 if ( FrmField::is_no_save_field( $sub_form_col->type ) ) {
257 129 unset( $sub_form_cols[ $k ] );
258 130 continue;
259 131 }
260 -
261 132 $columns[ $form_id . '_' . $sub_form_col->field_key . '-_-' . $field->id ] = FrmAppHelper::truncate( $sub_form_col->name, 35 );
262 133 unset( $sub_form_col );
263 134 }
264 135 }
@@ -264,62 +135,24 @@
264 135 }
265 136
266 137 /**
267 138 * @since 3.01
268 - *
269 - * @param object $field The field object.
270 - * @param int|string $form_id The form ID.
271 - * @param array $columns The columns array.
272 - *
273 - * @return void
274 139 */
275 140 private static function add_field_cols( $field, $form_id, &$columns ) {
276 141 $col_id = $field->field_key;
277 -
278 - if ( (int) $field->form_id !== (int) $form_id ) {
142 + if ( $field->form_id != $form_id ) {
279 143 $col_id .= '-_-form' . $field->form_id;
280 144 }
281 145
282 - $has_separate_value = ! FrmField::is_option_empty( $field, 'separate_value' );
283 - $is_post_status = FrmField::is_option_true( $field, 'post_field' ) && $field->field_options['post_field'] === 'post_status';
284 - $include_column_for_sep_val = $has_separate_value && ! $is_post_status;
285 -
286 - if ( $include_column_for_sep_val ) {
287 - $columns[ $form_id . '_frmsep_' . $col_id ] = self::maybe_format_field_name_for_column_title( $field, $include_column_for_sep_val );
146 + $has_separate_value = ! FrmField::is_option_empty( $field, 'separate_value' );
147 + $is_post_status = FrmField::is_option_true( $field, 'post_field' ) && $field->field_options['post_field'] == 'post_status';
148 + if ( $has_separate_value && ! $is_post_status ) {
149 + $columns[ $form_id . '_frmsep_' . $col_id ] = FrmAppHelper::truncate( $field->name, 35 );
288 150 }
289 151
290 - $columns[ $form_id . '_' . $col_id ] = self::maybe_format_field_name_for_column_title( $field, $include_column_for_sep_val, false );
152 + $columns[ $form_id . '_' . $col_id ] = FrmAppHelper::truncate( $field->name, 35 );
291 153 }
292 154
293 - /**
294 - * Appends "(Value)" or "(Label)" to the field name if it's an option field that has a separate value/label.
295 - *
296 - * @since 6.25.1
297 - *
298 - * @param object $field
299 - * @param bool $include_column_for_sep_val
300 - * @param bool $is_value
301 - *
302 - * @return string
303 - */
304 - private static function maybe_format_field_name_for_column_title( $field, $include_column_for_sep_val, $is_value = true ) {
305 - $field_name = FrmAppHelper::truncate( $field->name, 35 );
306 -
307 - if ( ! $include_column_for_sep_val || ! in_array( $field->type, array( 'select', 'radio', 'checkbox' ), true ) ) {
308 - return $field_name;
309 - }
310 -
311 - $append_text = $is_value ? esc_html__( 'value', 'formidable' ) : esc_html__( 'label', 'formidable' );
312 -
313 - return sprintf( '%s (%s)', $field_name, $append_text );
314 - }
315 -
316 - /**
317 - * @param int|string $form_id The form ID.
318 - * @param array $columns The columns array.
319 - *
320 - * @return void
321 - */
322 155 private static function maybe_add_ip_col( $form_id, &$columns ) {
323 156 if ( FrmAppHelper::ips_saved() ) {
324 157 $columns[ $form_id . '_ip' ] = 'IP';
325 158 }
@@ -324,32 +157,21 @@
324 157 $columns[ $form_id . '_ip' ] = 'IP';
325 158 }
326 159 }
327 160
328 - /**
329 - * @param bool $check The check value.
330 - * @param int $object_id The object ID.
331 - * @param string $meta_key The meta key.
332 - * @param mixed $meta_value The meta value.
333 - * @param mixed $prev_value The previous value.
334 - *
335 - * @return bool
336 - */
337 161 public static function check_hidden_cols( $check, $object_id, $meta_key, $meta_value, $prev_value ) {
338 162 $this_page_name = self::hidden_column_key();
339 -
340 - // phpcs:ignore Universal.Operators.StrictComparisons
341 163 if ( $meta_key != $this_page_name || $meta_value == $prev_value ) {
342 164 return $check;
343 165 }
344 166
345 - if ( ! $prev_value ) {
167 + if ( empty( $prev_value ) ) {
346 168 $prev_value = get_metadata( 'user', $object_id, $meta_key, true );
347 169 }
348 170
349 171 global $frm_vars;
350 - // Add a check so we don't create a loop.
351 - $frm_vars['prev_hidden_cols'] = ! empty( $frm_vars['prev_hidden_cols'] ) ? false : $prev_value;
172 + //add a check so we don't create a loop
173 + $frm_vars['prev_hidden_cols'] = ( isset( $frm_vars['prev_hidden_cols'] ) && $frm_vars['prev_hidden_cols'] ) ? false : $prev_value;
352 174
353 175 return $check;
354 176 }
355 177
@@ -354,34 +176,23 @@
354 176 }
355 177
356 178 /**
357 179 * Add hidden columns back from other forms
358 - *
359 - * @param int $meta_id The meta ID.
360 - * @param int $object_id The object ID.
361 - * @param string $meta_key The meta key.
362 - * @param array $meta_value The meta value.
363 - *
364 - * @return void
365 180 */
366 181 public static function update_hidden_cols( $meta_id, $object_id, $meta_key, $meta_value ) {
367 182 $this_page_name = self::hidden_column_key();
368 -
369 - // phpcs:ignore Universal.Operators.StrictComparisons
370 183 if ( $meta_key != $this_page_name ) {
371 184 return;
372 185 }
373 186
374 187 global $frm_vars;
375 -
376 - if ( empty( $frm_vars['prev_hidden_cols'] ) ) {
377 - // Don't continue if there's no previous value.
378 - return;
188 + if ( ! isset( $frm_vars['prev_hidden_cols'] ) || ! $frm_vars['prev_hidden_cols'] ) {
189 + return; // Don't continue if there's no previous value.
379 190 }
380 191
381 192 foreach ( $meta_value as $mk => $mv ) {
382 193 // Remove blank values.
383 - if ( ! $mv ) {
194 + if ( empty( $mv ) ) {
384 195 unset( $meta_value[ $mk ] );
385 196 }
386 197 }
387 198
@@ -390,10 +201,9 @@
390 201 $cur_form_prefix = $cur_form_prefix[0];
391 202 $save = false;
392 203
393 204 foreach ( (array) $frm_vars['prev_hidden_cols'] as $prev_hidden ) {
394 - // phpcs:ignore WordPress.PHP.StrictInArray.MissingTrueStrict
395 - if ( ! $prev_hidden || in_array( $prev_hidden, $meta_value ) ) {
205 + if ( empty( $prev_hidden ) || in_array( $prev_hidden, $meta_value ) ) {
396 206 // Don't add blank cols or process included cols.
397 207 continue;
398 208 }
399 209
@@ -398,10 +208,9 @@
398 208 }
399 209
400 210 $form_prefix = explode( '_', $prev_hidden );
401 211 $form_prefix = $form_prefix[0];
402 -
403 - if ( $form_prefix === $cur_form_prefix ) {
212 + if ( $form_prefix == $cur_form_prefix ) {
404 213 // Don't add back columns that are meant to be hidden.
405 214 continue;
406 215 }
407 216
@@ -409,63 +218,42 @@
409 218 $save = true;
410 219 unset( $form_prefix );
411 220 }
412 221
413 - if ( ! $save ) {
414 - return;
222 + if ( $save ) {
223 + $user_id = get_current_user_id();
224 + update_user_option( $user_id, $this_page_name, $meta_value, true );
415 225 }
416 -
417 - $user_id = get_current_user_id();
418 - update_user_option( $user_id, $this_page_name, $meta_value, true );
419 226 }
420 227
421 228 /**
422 229 * @since 2.05.07
423 - *
424 - * @param string $menu_name
425 - *
426 - * @return string
427 230 */
428 231 private static function hidden_column_key( $menu_name = '' ) {
429 232 $base = self::base_column_key( $menu_name );
233 +
430 234 return 'manage' . $base . 'columnshidden';
431 235 }
432 236
433 237 /**
434 238 * @since 2.05.07
435 - *
436 - * @param string $menu_name
437 - *
438 - * @return string
439 239 */
440 240 private static function base_column_key( $menu_name = '' ) {
441 - if ( ! $menu_name ) {
241 + if ( empty( $menu_name ) ) {
442 242 $menu_name = FrmAppHelper::get_menu_name();
443 243 }
444 244
445 - $unread_count = FrmEntriesHelper::get_visible_unread_inbox_count();
446 -
447 - return sanitize_title( $menu_name ) . ( $unread_count ? '-' . $unread_count : '' ) . '_page_formidable-entries';
245 + return sanitize_title( $menu_name ) . '_page_formidable-entries';
448 246 }
449 247
450 - /**
451 - * @param int $save
452 - * @param string $option
453 - * @param string $value
454 - *
455 - * @return int
456 - */
457 248 public static function save_per_page( $save, $option, $value ) {
458 - if ( $option === 'formidable_page_formidable_entries_per_page' ) {
459 - return (int) $value;
249 + if ( $option == 'formidable_page_formidable_entries_per_page' ) {
250 + $save = (int) $value;
460 251 }
461 252
462 253 return $save;
463 254 }
464 255
465 - /**
466 - * @return array
467 - */
468 256 public static function sortable_columns() {
469 257 $form_id = FrmForm::get_current_form_id();
470 258 $fields = FrmField::get_all_for_form( $form_id );
471 259
@@ -477,16 +265,11 @@
477 265 $form_id . '_item_key' => 'item_key',
478 266 $form_id . '_is_draft' => 'is_draft',
479 267 );
480 268
481 - if ( ! $form_id ) {
482 - $columns[ $form_id . '_user_id' ] = 'user_id';
483 - $columns[ $form_id . '_name' ] = 'name';
484 - $columns[ $form_id . '_form_id' ] = 'form_id';
485 - }
486 -
487 269 foreach ( $fields as $field ) {
488 - if ( self::field_supports_sorting( $field ) ) {
270 + if ( $field->type != 'checkbox' && ( ! isset( $field->field_options['post_field'] ) || $field->field_options['post_field'] == '' ) ) {
271 + // Can't sort on checkboxes because they are stored serialized, or post fields
489 272 $columns[ $form_id . '_' . $field->field_key ] = 'meta_' . $field->id;
490 273 }
491 274 }
492 275
@@ -492,44 +275,22 @@
492 275
493 276 return $columns;
494 277 }
495 278
496 - /**
497 - * Can't sort on checkboxes because they are sorted serialized.
498 - * Some post content can be sorted but not everything.
499 - *
500 - * @param stdClass $field
501 - *
502 - * @return bool
503 - */
504 - private static function field_supports_sorting( $field ) {
505 - $is_sortable = 'checkbox' !== $field->type && empty( $field->field_options['post_field'] );
506 - return apply_filters( 'frm_field_column_is_sortable', $is_sortable, $field );
507 - }
508 -
509 - /**
510 - * @param mixed $result Option value from database for hidden columns in entries table.
511 - *
512 - * @return array
513 - */
514 279 public static function hidden_columns( $result ) {
515 - global $frm_vars;
280 + $form_id = FrmForm::get_current_form_id();
516 281
517 - if ( ! is_array( $result ) ) {
518 - // Force an unexpected value to be an array.
519 - // Since $result is a filtered option and gets saved to the database, it's possible it could be a string.
520 - // Since this code expects an array it would break with a "Uncaught Error: [] operator not supported for strings" error.
521 - $result = array();
522 - }
282 + $hidden = self::user_hidden_columns_for_form( $form_id, $result );
523 283
524 - $form_id = FrmForm::get_current_form_id();
525 - $hidden = self::user_hidden_columns_for_form( $form_id, $result );
526 - $i = isset( $frm_vars['cols'] ) ? count( $frm_vars['cols'] ) : 0;
527 - $max_columns = 11;
284 + global $frm_vars;
285 + $i = isset( $frm_vars['cols'] ) ? count( $frm_vars['cols'] ) : 0;
528 286
529 - if ( $hidden ) {
530 - $result = $hidden;
531 - $i = $i - count( $result );
287 + if ( ! empty( $hidden ) ) {
288 + $result = $hidden;
289 + $i = $i - count( $result );
290 + $max_columns = 11;
291 + } else {
292 + $max_columns = 8;
532 293 }
533 294
534 295 if ( $i <= $max_columns ) {
535 296 return $result;
@@ -541,22 +302,16 @@
541 302 }
542 303
543 304 /**
544 305 * @since 2.05.07
545 - *
546 - * @param int|string $form_id
547 - * @param mixed $result
548 - *
549 - * @return array
550 306 */
551 307 private static function user_hidden_columns_for_form( $form_id, $result ) {
552 308 $hidden = array();
553 -
554 309 foreach ( (array) $result as $r ) {
555 - if ( $r ) {
310 + if ( ! empty( $r ) ) {
556 311 list( $form_prefix, $field_key ) = explode( '_', $r );
557 312
558 - if ( (int) $form_prefix === (int) $form_id ) {
313 + if ( (int) $form_prefix == (int) $form_id ) {
559 314 $hidden[] = $r;
560 315 }
561 316
562 317 unset( $form_prefix );
@@ -569,13 +324,8 @@
569 324 /**
570 325 * Remove some columns by default when there are too many
571 326 *
572 327 * @since 2.05.07
573 - *
574 - * @param array $atts
575 - * @param array $result
576 - *
577 - * @return void
578 328 */
579 329 private static function remove_excess_cols( $atts, &$result ) {
580 330 global $frm_vars;
581 331
@@ -583,18 +333,19 @@
583 333 $atts['form_id'] . '_item_key' => '',
584 334 $atts['form_id'] . '_id' => '',
585 335 );
586 336 $cols = $remove_first + array_reverse( $frm_vars['cols'], true );
587 - $i = $atts['i'];
588 337
338 + $i = $atts['i'];
339 +
589 340 foreach ( $cols as $col_key => $col ) {
590 341 if ( $i <= $atts['max_columns'] ) {
591 342 break;
592 343 }
593 344
594 - if ( ! $result || ! in_array( $col_key, $result, true ) ) {
345 + if ( empty( $result ) || ! in_array( $col_key, $result, true ) ) {
595 346 $result[] = $col_key;
596 - --$i;
347 + $i--;
597 348 }
598 349
599 350 unset( $col_key, $col );
600 351 }
@@ -599,14 +350,8 @@
599 350 unset( $col_key, $col );
600 351 }
601 352 }
602 353
603 - /**
604 - * @param string $message
605 - * @param array $errors
606 - *
607 - * @return void
608 - */
609 354 public static function display_list( $message = '', $errors = array() ) {
610 355 global $wpdb, $frm_vars;
611 356
612 357 $form = FrmForm::maybe_get_current_form();
@@ -618,58 +363,45 @@
618 363
619 364 self::get_delete_form_time( $form, $errors );
620 365 }
621 366
622 - $table_class = apply_filters( 'frm_entries_list_class', 'FrmEntriesListHelper' );
367 + $table_class = apply_filters( 'frm_entries_list_class', 'FrmEntriesListHelper' );
368 +
623 369 $wp_list_table = new $table_class( array( 'params' => $params ) );
624 - $pagenum = $wp_list_table->get_pagenum();
625 370
371 + $pagenum = $wp_list_table->get_pagenum();
372 +
626 373 $wp_list_table->prepare_items();
627 374
628 375 $total_pages = $wp_list_table->get_pagination_arg( 'total_pages' );
629 -
630 376 if ( $pagenum > $total_pages && $total_pages > 0 ) {
631 377 $url = add_query_arg( 'paged', $total_pages );
632 -
633 378 if ( headers_sent() ) {
634 - FrmAppHelper::js_redirect( $url, true );
379 + echo FrmAppHelper::js_redirect( $url ); // WPCS: XSS ok.
635 380 } else {
636 - wp_safe_redirect( esc_url_raw( $url ) );
381 + wp_redirect( esc_url_raw( $url ) );
637 382 }
638 -
639 383 die();
640 384 }
641 385
642 - if ( ! $message && isset( $_GET['import-message'] ) ) {
386 + if ( empty( $message ) && isset( $_GET['import-message'] ) ) {
643 387 $message = __( 'Your import is complete', 'formidable' );
644 388 }
645 389
646 - require FrmAppHelper::plugin_path() . '/classes/views/frm-entries/list.php';
390 + require( FrmAppHelper::plugin_path() . '/classes/views/frm-entries/list.php' );
647 391 }
648 392
649 - /**
650 - * @param object $form
651 - * @param array $errors
652 - *
653 - * @return void
654 - */
655 393 private static function get_delete_form_time( $form, &$errors ) {
656 - if ( 'trash' === $form->status ) {
394 + if ( 'trash' == $form->status ) {
657 395 $delete_timestamp = time() - ( DAY_IN_SECONDS * EMPTY_TRASH_DAYS );
658 - $time_to_delete = FrmAppHelper::human_time_diff( $delete_timestamp, $form->options['trash_time'] ?? time() );
396 + $time_to_delete = FrmAppHelper::human_time_diff( $delete_timestamp, ( isset( $form->options['trash_time'] ) ? ( $form->options['trash_time'] ) : time() ) );
659 397
660 398 /* translators: %1$s: Time string */
661 - $errors['trash'] = sprintf( __( 'This form is in the trash and is scheduled to be deleted permanently in %s along with any entries.', 'formidable' ), $time_to_delete );
399 + $errors['trash'] = sprintf( __( 'This form is in the trash and is scheduled to be deleted permanently in %s along with any entries.', 'formidable' ), $time_to_delete );
662 400 }
663 401 }
664 402
665 - /**
666 - * Back End CRUD.
667 - *
668 - * @param int $id
669 - *
670 - * @return void
671 - */
403 + /* Back End CRUD */
672 404 public static function show( $id = 0 ) {
673 405 FrmAppHelper::permission_check( 'frm_view_entries' );
674 406
675 407 if ( ! $id ) {
@@ -680,22 +412,17 @@
680 412 }
681 413 }
682 414
683 415 $entry = FrmEntry::getOne( $id, true );
416 + if ( ! $entry ) {
417 + echo '<div id="form_show_entry_page" class="wrap">' .
418 + esc_html__( 'You are trying to view an entry that does not exist.', 'formidable' ) .
419 + '</div>';
684 420
685 - if ( ! $entry ) {
686 - FrmAppController::show_error_modal(
687 - array(
688 - 'title' => __( 'You can\'t view the entry', 'formidable' ),
689 - 'body' => __( 'You are trying to view an entry that does not exist', 'formidable' ),
690 - 'cancel_url' => admin_url( 'admin.php?page=formidable' ),
691 - )
692 - );
693 421 return;
694 422 }
695 423
696 - $data = $entry->description;
697 -
424 + $data = maybe_unserialize( $entry->description );
698 425 if ( ! is_array( $data ) || ! isset( $data['referrer'] ) ) {
699 426 $data = array( 'referrer' => $data );
700 427 }
701 428
@@ -701,55 +428,110 @@
701 428
702 429 $fields = FrmField::get_all_for_form( $entry->form_id, '', 'include' );
703 430 $form = FrmForm::getOne( $entry->form_id );
704 431
705 - include FrmAppHelper::plugin_path() . '/classes/views/frm-entries/show.php';
432 + include( FrmAppHelper::plugin_path() . '/classes/views/frm-entries/show.php' );
706 433 }
707 434
708 - /**
709 - * Destroy an entry from the admin page.
710 - * This is triggered from the entries list from the "Delete" row action, and also from the "Delete Entry" trigger in the view/edit entry sidebar.
711 - *
712 - * @return void
713 - */
714 435 public static function destroy() {
715 - $permission_error = FrmAppHelper::permission_nonce_error( 'frm_delete_entries', '_wpnonce', -1 );
436 + FrmAppHelper::permission_check( 'frm_delete_entries' );
716 437
717 - if ( false !== $permission_error ) {
718 - $error_args = array(
719 - 'title' => __( 'Verification failed', 'formidable' ),
720 - 'body' => $permission_error,
721 - 'cancel_url' => admin_url( 'admin.php?page=formidable-entries' ),
722 - );
723 - FrmAppController::show_error_modal( $error_args );
724 - return;
725 - }
726 -
727 438 $params = FrmForm::get_admin_params();
728 439
729 - if ( ! empty( $params['keep_post'] ) ) {
440 + if ( isset( $params['keep_post'] ) && $params['keep_post'] ) {
730 441 self::unlink_post( $params['id'] );
731 442 }
732 443
733 444 $message = '';
734 -
735 445 if ( FrmEntry::destroy( $params['id'] ) ) {
736 - $message = __( 'Entry was successfully deleted', 'formidable' );
446 + $message = __( 'Entry was Successfully Deleted', 'formidable' );
737 447 }
738 448
739 449 self::display_list( $message );
740 450 }
741 451
452 + public static function destroy_all() {
453 + if ( ! current_user_can( 'frm_delete_entries' ) ) {
454 + $frm_settings = FrmAppHelper::get_settings();
455 + wp_die( esc_html( $frm_settings->admin_permission ) );
456 + }
457 +
458 + $params = FrmForm::get_admin_params();
459 + $message = '';
460 + $errors = array();
461 + $form_id = (int) $params['form'];
462 +
463 + if ( $form_id ) {
464 + $entry_ids = FrmDb::get_col( 'frm_items', array( 'form_id' => $form_id ) );
465 + $action = FrmFormAction::get_action_for_form( $form_id, 'wppost', 1 );
466 +
467 + if ( $action ) {
468 + // This action takes a while, so only trigger it if there are posts to delete.
469 + foreach ( $entry_ids as $entry_id ) {
470 + do_action( 'frm_before_destroy_entry', $entry_id );
471 + unset( $entry_id );
472 + }
473 + }
474 +
475 + $results = self::delete_form_entries( $form_id );
476 + if ( $results ) {
477 + FrmEntry::clear_cache();
478 + $message = __( 'Entries Successfully Deleted', 'formidable' );
479 + }
480 + } else {
481 + $errors = __( 'No Entries Selected', 'formidable' );
482 + }
483 +
484 + self::display_list( $message, $errors );
485 + }
486 +
742 487 /**
743 - * @param array|string $errors
744 - * @param bool $ajax
488 + * @since 3.01
745 489 *
746 - * @return void
490 + * @param int $form_id
747 491 */
492 + private static function delete_form_entries( $form_id ) {
493 + global $wpdb;
494 +
495 + $form_ids = self::get_child_form_ids( $form_id );
496 +
497 + $meta_query = $wpdb->prepare( "DELETE em.* FROM {$wpdb->prefix}frm_item_metas as em INNER JOIN {$wpdb->prefix}frm_items as e on (em.item_id=e.id) WHERE form_id=%d", $form_id );
498 + $entry_query = $wpdb->prepare( "DELETE FROM {$wpdb->prefix}frm_items WHERE form_id=%d", $form_id );
499 +
500 + if ( ! empty( $form_ids ) ) {
501 + $form_query = ' OR form_id in (' . $form_ids . ')';
502 + $meta_query .= $form_query;
503 + $entry_query .= $form_query;
504 + }
505 +
506 + $wpdb->query( $meta_query ); // WPCS: unprepared SQL ok.
507 +
508 + return $wpdb->query( $entry_query ); // WPCS: unprepared SQL ok.
509 + }
510 +
511 + /**
512 + * @since 3.01
513 + *
514 + * @param int $form_id
515 + * @param bool|string $implode
516 + */
517 + private static function get_child_form_ids( $form_id, $implode = ',' ) {
518 + $form_ids = array();
519 + $child_form_ids = FrmDb::get_col( 'frm_forms', array( 'parent_form_id' => $form_id ) );
520 + if ( $child_form_ids ) {
521 + $form_ids = $child_form_ids;
522 + }
523 + $form_ids = array_filter( $form_ids, 'is_numeric' );
524 + if ( $implode ) {
525 + $form_ids = implode( $implode, $form_ids );
526 + }
527 +
528 + return $form_ids;
529 + }
530 +
748 531 public static function process_entry( $errors = '', $ajax = false ) {
749 532 $form_id = FrmAppHelper::get_post_param( 'form_id', '', 'absint' );
750 -
751 - if ( FrmAppHelper::is_admin() || empty( $_POST ) || ! $form_id || ! isset( $_POST['item_key'] ) ) { // phpcs:ignore WordPress.Security.NonceVerification.Missing
533 + if ( FrmAppHelper::is_admin() || empty( $_POST ) || empty( $form_id ) || ! isset( $_POST['item_key'] ) ) {
752 534 return;
753 535 }
754 536
755 537 global $frm_vars;
@@ -754,19 +536,12 @@
754 536
755 537 global $frm_vars;
756 538
757 539 $form = FrmForm::getOne( $form_id );
758 -
759 540 if ( ! $form ) {
760 541 return;
761 542 }
762 543
763 - $is_preview = 'frm_forms_preview' === FrmAppHelper::simple_get( 'action' );
764 -
765 - if ( $is_preview && FrmFormsHelper::should_block_preview( $form->form_key ) ) {
766 - return;
767 - }
768 -
769 544 $params = FrmForm::get_params( $form );
770 545
771 546 if ( ! isset( $frm_vars['form_params'] ) ) {
772 547 $frm_vars['form_params'] = array();
@@ -776,11 +551,10 @@
776 551 if ( isset( $frm_vars['created_entries'][ $form_id ] ) ) {
777 552 return;
778 553 }
779 554
780 - // phpcs:ignore Universal.Operators.StrictComparisons
781 555 if ( $errors == '' && ! $ajax ) {
782 - $errors = FrmEntryValidate::validate( wp_unslash( $_POST ) ); // phpcs:ignore WordPress.Security.NonceVerification.Missing
556 + $errors = FrmEntryValidate::validate( wp_unslash( $_POST ) );
783 557 }
784 558
785 559 /**
786 560 * Use this filter to add trigger actions and add errors after
@@ -791,30 +565,26 @@
791 565 $errors = apply_filters( 'frm_entries_before_create', $errors, $form );
792 566
793 567 $frm_vars['created_entries'][ $form_id ] = array( 'errors' => $errors );
794 568
795 - if ( $errors ) {
796 - return;
797 - }
569 + if ( empty( $errors ) ) {
570 + $_POST['frm_skip_cookie'] = 1;
571 + $do_success = false;
572 + if ( $params['action'] == 'create' ) {
573 + if ( apply_filters( 'frm_continue_to_create', true, $form_id ) && ! isset( $frm_vars['created_entries'][ $form_id ]['entry_id'] ) ) {
574 + $frm_vars['created_entries'][ $form_id ]['entry_id'] = FrmEntry::create( $_POST );
798 575
799 - $_POST['frm_skip_cookie'] = 1;
800 - $do_success = false;
576 + $params['id'] = $frm_vars['created_entries'][ $form_id ]['entry_id'];
577 + $do_success = true;
578 + }
579 + }
801 580
802 - if ( $params['action'] === 'create' ) {
803 - if ( apply_filters( 'frm_continue_to_create', true, $form_id ) && ! isset( $frm_vars['created_entries'][ $form_id ]['entry_id'] ) ) {
804 - $frm_vars['created_entries'][ $form_id ]['entry_id'] = FrmEntry::create( $_POST ); // phpcs:ignore WordPress.Security.NonceVerification.Missing
805 -
806 - $params['id'] = $frm_vars['created_entries'][ $form_id ]['entry_id'];
807 - $do_success = true;
581 + do_action( 'frm_process_entry', $params, $errors, $form, array( 'ajax' => $ajax ) );
582 + if ( $do_success ) {
583 + FrmFormsController::maybe_trigger_redirect( $form, $params, array( 'ajax' => $ajax ) );
808 584 }
585 + unset( $_POST['frm_skip_cookie'] );
809 586 }
810 -
811 - do_action( 'frm_process_entry', $params, $errors, $form, array( 'ajax' => $ajax ) );
812 -
813 - if ( $do_success ) {
814 - FrmFormsController::maybe_trigger_redirect( $form, $params, array( 'ajax' => $ajax ) );
815 - }
816 - unset( $_POST['frm_skip_cookie'] ); // phpcs:ignore WordPress.Security.NonceVerification.Missing
817 587 }
818 588
819 589 /**
820 590 * Escape url entities before redirect
@@ -828,19 +598,11 @@
828 598 public static function prepare_redirect_url( $url ) {
829 599 return str_replace( array( ' ', '[', ']', '|', '@' ), array( '%20', '%5B', '%5D', '%7C', '%40' ), $url );
830 600 }
831 601
832 - /**
833 - * Delete entry if redirected.
834 - *
835 - * @param string $url
836 - * @param object $form
837 - * @param array $atts
838 - *
839 - * @return string
840 - */
841 602 public static function delete_entry_before_redirect( $url, $form, $atts ) {
842 603 self::_delete_entry( $atts['id'], $form );
604 +
843 605 return $url;
844 606 }
845 607
846 608 /**
@@ -846,44 +608,27 @@
846 608 /**
847 609 * Delete entry if not redirected.
848 610 *
849 611 * @param array $atts
850 - *
851 - * @return void
852 612 */
853 613 public static function delete_entry_after_save( $atts ) {
854 614 self::_delete_entry( $atts['entry_id'], $atts['form'] );
855 615 }
856 616
857 - /**
858 - * Delete entry if not redirected.
859 - *
860 - * @param int $entry_id
861 - * @param object $form
862 - *
863 - * @return void
864 - */
865 617 private static function _delete_entry( $entry_id, $form ) {
866 618 if ( ! $form ) {
867 619 return;
868 620 }
869 621
870 - FrmAppHelper::unserialize_or_decode( $form->options );
871 -
872 - if ( empty( $form->options['no_save'] ) ) {
873 - return;
622 + $form->options = maybe_unserialize( $form->options );
623 + if ( isset( $form->options['no_save'] ) && $form->options['no_save'] ) {
624 + self::unlink_post( $entry_id );
625 + FrmEntry::destroy( $entry_id );
874 626 }
875 -
876 - self::unlink_post( $entry_id );
877 - FrmEntry::destroy( $entry_id );
878 627 }
879 628
880 629 /**
881 630 * Unlink entry from post
882 - *
883 - * @param int $entry_id
884 - *
885 - * @return void
886 631 */
887 632 private static function unlink_post( $entry_id ) {
888 633 global $wpdb;
889 634 $wpdb->update( $wpdb->prefix . 'frm_items', array( 'post_id' => '' ), array( 'id' => $entry_id ) );
@@ -890,88 +635,100 @@
890 635 FrmEntry::clear_cache();
891 636 }
892 637
893 638 /**
894 - * @param array $atts
639 + * @param $atts
895 640 *
896 641 * @return array|string
897 642 */
898 643 public static function show_entry_shortcode( $atts ) {
899 644 $defaults = array(
900 - 'id' => false,
901 - 'entry' => false,
902 - 'fields' => false,
903 - 'plain_text' => false,
904 - 'user_info' => false,
905 - 'include_blank' => false,
906 - 'default_email' => false,
907 - 'form_id' => false,
908 - 'format' => 'text',
909 - 'array_key' => 'key',
910 - 'direction' => 'ltr',
911 - 'font_size' => '',
912 - 'text_color' => '',
913 - 'border_width' => '',
914 - 'border_color' => '',
915 - 'bg_color' => '',
916 - 'alt_bg_color' => '',
917 - 'class' => '',
918 - 'clickable' => false,
919 - 'exclude_fields' => '',
920 - 'include_fields' => '',
921 - 'include_extras' => '',
922 - 'inline_style' => 1,
923 - 'table_style' => '',
924 - // Return embedded fields as nested array.
925 - 'child_array' => false,
926 - 'line_breaks' => true,
927 - 'array_separator' => ', ',
645 + 'id' => false,
646 + 'entry' => false,
647 + 'fields' => false,
648 + 'plain_text' => false,
649 + 'user_info' => false,
650 + 'include_blank' => false,
651 + 'default_email' => false,
652 + 'form_id' => false,
653 + 'format' => 'text',
654 + 'array_key' => 'key',
655 + 'direction' => 'ltr',
656 + 'font_size' => '',
657 + 'text_color' => '',
658 + 'border_width' => '',
659 + 'border_color' => '',
660 + 'bg_color' => '',
661 + 'alt_bg_color' => '',
662 + 'class' => '',
663 + 'clickable' => false,
664 + 'exclude_fields' => '',
665 + 'include_fields' => '',
666 + 'include_extras' => '',
667 + 'inline_style' => 1,
668 + 'child_array' => false, // return embedded fields as nested array
928 669 );
929 670 $defaults = apply_filters( 'frm_show_entry_defaults', $defaults );
930 - $atts = shortcode_atts( $defaults, $atts );
931 671
672 + $atts = shortcode_atts( $defaults, $atts );
673 +
932 674 if ( $atts['default_email'] ) {
933 - $shortcode_atts = array(
675 + $shortcode_atts = array(
934 676 'format' => $atts['format'],
935 677 'plain_text' => $atts['plain_text'],
936 678 );
679 +
937 680 $entry_formatter = FrmEntryFactory::entry_shortcode_formatter_instance( $atts['form_id'], $shortcode_atts );
938 - return $entry_formatter->content();
681 + $formatted_entry = $entry_formatter->content();
682 +
683 + } else {
684 +
685 + $entry_formatter = FrmEntryFactory::entry_formatter_instance( $atts );
686 + $formatted_entry = $entry_formatter->get_formatted_entry_values();
687 +
939 688 }
940 689
941 - $entry_formatter = FrmEntryFactory::entry_formatter_instance( $atts );
942 -
943 - return $entry_formatter->get_formatted_entry_values();
690 + return $formatted_entry;
944 691 }
945 692
946 - /**
947 - * @param false|object $entry
948 - *
949 - * @return void
950 - */
951 693 public static function entry_sidebar( $entry = false ) {
952 - $data = array();
953 - $id = 0;
694 + $data = array();
695 + $id = 0;
696 +
954 697 $date_format = get_option( 'date_format' );
955 698 $time_format = get_option( 'time_format' );
956 699
957 700 if ( $entry ) {
958 701 $id = $entry->id;
959 - $data = $entry->description;
960 -
702 + $data = maybe_unserialize( $entry->description );
961 703 if ( isset( $data['browser'] ) ) {
962 704 $browser = FrmEntriesHelper::get_browser( $data['browser'] );
963 705 }
964 - /**
965 - * Add or remove information in the entry sidebar.
966 - *
967 - * @since 5.5.2
968 - *
969 - * @param array $data
970 - * @param array{entry:\stdClass} $entry
971 - */
972 - $data = apply_filters( 'frm_sidebar_data', $data, compact( 'entry' ) );
973 706 }
974 707
975 - include FrmAppHelper::plugin_path() . '/classes/views/frm-entries/sidebar-shared.php';
708 + include( FrmAppHelper::plugin_path() . '/classes/views/frm-entries/sidebar-shared.php' );
709 + }
710 +
711 + /**
712 + * @deprecated 4.0
713 + */
714 + public static function contextual_help( $help, $screen_id, $screen ) {
715 + _deprecated_function( __METHOD__, '4.0' );
716 + return $help;
717 + }
718 +
719 + /**
720 + * @deprecated 1.07.05
721 + * @codeCoverageIgnore
722 + */
723 + public static function show_form( $id = '', $key = '', $title = false, $description = false ) {
724 + return FrmDeprecated::show_form( $id, $key, $title, $description );
725 + }
726 +
727 + /**
728 + * @deprecated 1.07.05
729 + * @codeCoverageIgnore
730 + */
731 + public static function get_form( $filename, $form, $title, $description ) {
732 + return FrmDeprecated::get_form( $filename, $form, $title, $description );
976 733 }
977 734 }