PluginProbe
Formidable Forms – WordPress Form Builder for Contact Forms, Calculators, Quizzes & More / 4.07.01
Formidable Forms – WordPress Form Builder for Contact Forms, Calculators, Quizzes & More v4.07.01
6.35 6.34 6.33.1 6.33 6.32.1 6.32 6.31 6.25 6.25.1 6.26 6.26.1 6.27 6.28 6.29 6.3 6.3.1 6.3.2 6.30 6.4 6.4.1 6.4.2 6.5 6.5.1 6.5.2 6.5.3 All 141 releases
← All changes | classes/models/FrmForm.php +182 -625 6.354.07.01 View file →
@@ -5,49 +5,38 @@
5 5
6 6 class FrmForm {
7 7
8 8 /**
9 - * @param array $values
10 - *
11 - * @return bool|int id on success or false on failure.
9 + * @return int|boolean id on success or false on failure
12 10 */
13 11 public static function create( $values ) {
14 12 global $wpdb;
15 13
16 - $values = FrmAppHelper::maybe_filter_array( $values, array( 'name', 'description' ) );
17 -
18 14 $new_values = array(
19 15 'form_key' => FrmAppHelper::get_unique_key( $values['form_key'], $wpdb->prefix . 'frm_forms', 'form_key' ),
20 - 'name' => FrmAppHelper::truncate( $values['name'], 255, 1, '', true ),
16 + 'name' => $values['name'],
21 17 'description' => $values['description'],
22 - 'status' => $values['status'] ?? 'published',
23 - 'logged_in' => $values['logged_in'] ?? 0,
18 + 'status' => isset( $values['status'] ) ? $values['status'] : 'published',
19 + 'logged_in' => isset( $values['logged_in'] ) ? $values['logged_in'] : 0,
24 20 'is_template' => isset( $values['is_template'] ) ? (int) $values['is_template'] : 0,
25 21 'parent_form_id' => isset( $values['parent_form_id'] ) ? absint( $values['parent_form_id'] ) : 0,
26 22 'editable' => isset( $values['editable'] ) ? (int) $values['editable'] : 0,
27 - 'created_at' => $values['created_at'] ?? current_time( 'mysql', 1 ),
23 + 'created_at' => isset( $values['created_at'] ) ? $values['created_at'] : current_time( 'mysql', 1 ),
28 24 );
29 25
30 26 $options = isset( $values['options'] ) ? (array) $values['options'] : array();
31 27 FrmFormsHelper::fill_form_options( $options, $values );
32 28
33 - $options['before_html'] = $values['options']['before_html'] ?? FrmFormsHelper::get_default_html( 'before' );
34 - $options['after_html'] = $values['options']['after_html'] ?? FrmFormsHelper::get_default_html( 'after' );
35 - $options['submit_html'] = $values['options']['submit_html'] ?? FrmFormsHelper::get_default_html( 'submit' );
29 + $options['before_html'] = isset( $values['options']['before_html'] ) ? $values['options']['before_html'] : FrmFormsHelper::get_default_html( 'before' );
30 + $options['after_html'] = isset( $values['options']['after_html'] ) ? $values['options']['after_html'] : FrmFormsHelper::get_default_html( 'after' );
31 + $options['submit_html'] = isset( $values['options']['submit_html'] ) ? $values['options']['submit_html'] : FrmFormsHelper::get_default_html( 'submit' );
36 32
37 - /**
38 - * Allows modifying form options before updating or creating.
39 - *
40 - * @since 5.4 Add the third param.
41 - *
42 - * @param array $options Form options.
43 - * @param array $values Form data.
44 - * @param bool $update Is form updating or creating. It's `true` if is updating.
45 - */
46 - $options = apply_filters( 'frm_form_options_before_update', $options, $values, false );
47 - $options = self::maybe_filter_form_options( $options );
33 + $options = apply_filters( 'frm_form_options_before_update', $options, $values );
48 34 $new_values['options'] = serialize( $options );
49 35
36 + //if(isset($values['id']) && is_numeric($values['id']))
37 + // $new_values['id'] = $values['id'];
38 +
50 39 $wpdb->insert( $wpdb->prefix . 'frm_forms', $new_values );
51 40
52 41 $id = $wpdb->insert_id;
53 42
@@ -57,36 +46,14 @@
57 46 return $id;
58 47 }
59 48
60 49 /**
61 - * @since 5.0.08
62 - *
63 - * @param array $options
64 - *
65 - * @return array
50 + * @return int|boolean ID on success or false on failure
66 51 */
67 - private static function maybe_filter_form_options( $options ) {
68 - if ( ! FrmAppHelper::allow_unfiltered_html() && ! empty( $options['submit_html'] ) ) {
69 - $options['submit_html'] = FrmAppHelper::kses_submit_button( $options['submit_html'] );
70 - }
71 - return FrmAppHelper::maybe_filter_array( $options, array( 'submit_value', 'success_msg', 'before_html', 'after_html' ) );
72 - }
73 -
74 - /**
75 - * Duplicate a form.
76 - *
77 - * @param int $id Form ID to duplicate.
78 - * @param bool $template Whether the duplicated form is a template.
79 - * @param bool $copy_keys Whether to copy the original form key.
80 - * @param false|int $blog_id Blog ID when duplicating across sites, or false for current site.
81 - *
82 - * @return bool|int ID on success or false on failure
83 - */
84 52 public static function duplicate( $id, $template = false, $copy_keys = false, $blog_id = false ) {
85 53 global $wpdb;
86 54
87 55 $values = self::getOne( $id, $blog_id );
88 -
89 56 if ( ! $values ) {
90 57 return false;
91 58 }
92 59
@@ -103,10 +70,10 @@
103 70 'is_template' => $template ? 1 : 0,
104 71 );
105 72
106 73 if ( $blog_id ) {
107 - $new_values['status'] = 'published';
108 - $new_options = $values->options;
74 + $new_values['status'] = 'published';
75 + $new_options = $values->options;
109 76 FrmAppHelper::unserialize_or_decode( $new_options );
110 77 $new_options['email_to'] = get_option( 'admin_email' );
111 78 $new_options['copy'] = false;
112 79 $new_values['options'] = $new_options;
@@ -126,9 +93,9 @@
126 93
127 94 $form_id = $wpdb->insert_id;
128 95 FrmField::duplicate( $id, $form_id, $copy_keys, $blog_id );
129 96
130 - // Update form settings after fields are created
97 + // update form settings after fields are created
131 98 do_action( 'frm_after_duplicate_form', $form_id, $new_values, array( 'old_id' => $id ) );
132 99
133 100 return $form_id;
134 101 }
@@ -135,16 +102,10 @@
135 102
136 103 return false;
137 104 }
138 105
139 - /**
140 - * @param int $form_id
141 - * @param array $values
142 - *
143 - * @return void
144 - */
145 106 public static function after_duplicate( $form_id, $values ) {
146 - $new_opts = $values['options'];
107 + $new_opts = $values['options'];
147 108 FrmAppHelper::unserialize_or_decode( $new_opts );
148 109 $values['options'] = $new_opts;
149 110
150 111 if ( isset( $new_opts['success_msg'] ) ) {
@@ -152,112 +113,20 @@
152 113 }
153 114
154 115 $new_opts = apply_filters( 'frm_after_duplicate_form_values', $new_opts, $form_id );
155 116
156 - // phpcs:ignore Universal.Operators.StrictComparisons
157 117 if ( $new_opts != $values['options'] ) {
158 118 global $wpdb;
159 119 $wpdb->update( $wpdb->prefix . 'frm_forms', array( 'options' => maybe_serialize( $new_opts ) ), array( 'id' => $form_id ) );
160 120 }
161 -
162 - self::switch_field_ids_in_fields( $form_id );
163 121 }
164 122
165 123 /**
166 - * Switches field ID in fields.
167 - *
168 - * @since 5.3
169 - * @since 6.35 The description column is checked too, so a field id in a description survives a
170 - * duplicate or import when the field it points at is created afterwards.
171 - *
172 - * @param int $form_id Form ID.
173 - *
174 - * @return void
124 + * @return int|boolean
175 125 */
176 - private static function switch_field_ids_in_fields( $form_id ) {
177 - global $wpdb;
178 -
179 - // Keys of fields that you want to check to replace field ID.
180 - $keys = array( 'default_value', 'description', 'field_options' );
181 - $sql_cols = 'fi.id';
182 -
183 - foreach ( $keys as $key ) {
184 - $sql_cols .= ',fi.' . $key;
185 - }
186 -
187 - $fields = FrmDb::get_results(
188 - "{$wpdb->prefix}frm_fields AS fi LEFT OUTER JOIN {$wpdb->prefix}frm_forms AS fr ON fi.form_id = fr.id",
189 - array(
190 - 'or' => 1,
191 - 'fi.form_id' => $form_id,
192 - 'fr.parent_form_id' => $form_id,
193 - ),
194 - $sql_cols
195 - );
196 -
197 - if ( ! $fields || ! is_array( $fields ) ) {
198 - return;
199 - }
200 -
201 - foreach ( $fields as $field ) {
202 - self::switch_field_ids_in_field( (array) $field );
203 - }
204 - }
205 -
206 - /**
207 - * Switches field ID in a field.
208 - *
209 - * @since 5.3
210 - *
211 - * @param array $field Field array.
212 - *
213 - * @return void
214 - */
215 - private static function switch_field_ids_in_field( $field ) {
216 - $new_values = array();
217 -
218 - foreach ( $field as $key => $value ) {
219 - if ( 'id' === $key || ! $value ) {
220 - continue;
221 - }
222 -
223 - if ( ! is_string( $value ) && ! is_array( $value ) ) {
224 - continue;
225 - }
226 -
227 - if ( 'field_options' === $key ) {
228 - // Need to loop through field_options to prevent breaking serialized string when length changed.
229 - FrmAppHelper::unserialize_or_decode( $value );
230 - $new_val = FrmFieldsHelper::switch_field_ids( $value );
231 - $new_val = serialize( $new_val );
232 - } else {
233 - $new_val = FrmFieldsHelper::switch_field_ids( $value );
234 - }
235 -
236 - if ( $new_val !== $value ) {
237 - $new_values[ $key ] = $new_val;
238 - }
239 - }//end foreach
240 -
241 - if ( $new_values ) {
242 - FrmField::update( $field['id'], $new_values );
243 - }
244 - }
245 -
246 - /**
247 - * Update a form.
248 - *
249 - * @param int $id Form ID.
250 - * @param array $values Form values to update.
251 - * @param bool $create_link Whether this is being called from link creation.
252 - *
253 - * @return bool|int
254 - */
255 126 public static function update( $id, $values, $create_link = false ) {
256 127 global $wpdb;
257 128
258 - $values = FrmAppHelper::maybe_filter_array( $values, array( 'name', 'description' ) );
259 -
260 129 if ( ! isset( $values['status'] ) && ( $create_link || isset( $values['options'] ) || isset( $values['item_meta'] ) || isset( $values['field_options'] ) ) ) {
261 130 $values['status'] = 'published';
262 131 }
263 132
@@ -265,23 +134,23 @@
265 134 $values['form_key'] = FrmAppHelper::get_unique_key( $values['form_key'], $wpdb->prefix . 'frm_forms', 'form_key', $id );
266 135 }
267 136
268 137 $form_fields = array( 'form_key', 'name', 'description', 'status', 'parent_form_id' );
269 - $new_values = self::set_update_options( array(), $values, array( 'form_id' => $id ) );
270 138
139 + $new_values = self::set_update_options( array(), $values );
140 +
271 141 foreach ( $values as $value_key => $value ) {
272 - if ( $value_key && in_array( $value_key, $form_fields, true ) ) {
273 - $new_values[ $value_key ] = 'name' === $value_key ? FrmAppHelper::truncate( $value, 255, 1, '', true ) : $value;
142 + if ( $value_key && in_array( $value_key, $form_fields ) ) {
143 + $new_values[ $value_key ] = $value;
274 144 }
275 145 }
276 146
277 - if ( ! empty( $values['new_status'] ) ) {
147 + if ( isset( $values['new_status'] ) && ! empty( $values['new_status'] ) ) {
278 148 $new_values['status'] = $values['new_status'];
279 149 }
280 150
281 - if ( $new_values ) {
151 + if ( ! empty( $new_values ) ) {
282 152 $query_results = $wpdb->update( $wpdb->prefix . 'frm_forms', $new_values, array( 'id' => $id ) );
283 -
284 153 if ( $query_results ) {
285 154 self::clear_form_cache();
286 155 }
287 156 } else {
@@ -297,38 +166,24 @@
297 166 return $query_results;
298 167 }
299 168
300 169 /**
301 - * @param array $new_values
302 - * @param array $values
303 - * @param array $args
304 - *
305 170 * @return array
306 171 */
307 - public static function set_update_options( $new_values, $values, $args = array() ) {
172 + public static function set_update_options( $new_values, $values ) {
308 173 if ( ! isset( $values['options'] ) ) {
309 174 return $new_values;
310 175 }
311 176
312 - $options = ! empty( $values['options'] ) ? (array) $values['options'] : array();
177 + $options = isset( $values['options'] ) ? (array) $values['options'] : array();
313 178 FrmFormsHelper::fill_form_options( $options, $values );
314 179
315 - $options['custom_style'] = $values['options']['custom_style'] ?? 0;
316 - $options['before_html'] = $values['options']['before_html'] ?? FrmFormsHelper::get_default_html( 'before' );
317 - $options['after_html'] = $values['options']['after_html'] ?? FrmFormsHelper::get_default_html( 'after' );
318 - $options['submit_html'] = isset( $values['options']['submit_html'] ) && '' !== $values['options']['submit_html'] ? $values['options']['submit_html'] : FrmFormsHelper::get_default_html( 'submit' ); // phpcs:ignore SlevomatCodingStandard.Files.LineLength.LineTooLong
180 + $options['custom_style'] = isset( $values['options']['custom_style'] ) ? $values['options']['custom_style'] : 0;
181 + $options['before_html'] = isset( $values['options']['before_html'] ) ? $values['options']['before_html'] : FrmFormsHelper::get_default_html( 'before' );
182 + $options['after_html'] = isset( $values['options']['after_html'] ) ? $values['options']['after_html'] : FrmFormsHelper::get_default_html( 'after' );
183 + $options['submit_html'] = ( isset( $values['options']['submit_html'] ) && '' !== $values['options']['submit_html'] ) ? $values['options']['submit_html'] : FrmFormsHelper::get_default_html( 'submit' );
319 184
320 - /**
321 - * Allows modifying form options before updating or creating.
322 - *
323 - * @since 5.4 Added the third param.
324 - *
325 - * @param array $options Form options.
326 - * @param array $values Form data.
327 - * @param bool $update Is form updating or creating. It's `true` if is updating.
328 - */
329 - $options = apply_filters( 'frm_form_options_before_update', $options, $values, true );
330 - $options = self::maybe_filter_form_options( $options );
185 + $options = apply_filters( 'frm_form_options_before_update', $options, $values );
331 186 $new_values['options'] = serialize( $options );
332 187
333 188 return $new_values;
334 189 }
@@ -333,14 +188,11 @@
333 188 return $new_values;
334 189 }
335 190
336 191 /**
337 - * @param int $id Form ID.
338 - * @param array $values Form values array.
339 - *
340 192 * @return array
341 193 */
342 - public static function update_fields( $id, $values ) { // phpcs:ignore SlevomatCodingStandard.Complexity.Cognitive.ComplexityTooHigh
194 + public static function update_fields( $id, $values ) {
343 195
344 196 if ( ! isset( $values['item_meta'] ) && ! isset( $values['field_options'] ) ) {
345 197 return $values;
346 198 }
@@ -345,10 +197,9 @@
345 197 return $values;
346 198 }
347 199
348 200 $all_fields = FrmField::get_all_for_form( $id );
349 -
350 - if ( ! $all_fields ) {
201 + if ( empty( $all_fields ) ) {
351 202 return $values;
352 203 }
353 204
354 205 if ( ! isset( $values['item_meta'] ) ) {
@@ -356,28 +207,28 @@
356 207 }
357 208
358 209 $field_array = array();
359 210 $existing_keys = array_keys( $values['item_meta'] );
360 -
361 211 foreach ( $all_fields as $fid ) {
362 - // phpcs:ignore WordPress.PHP.StrictInArray.MissingTrueStrict, SlevomatCodingStandard.Files.LineLength.LineTooLong
363 212 if ( ! in_array( $fid->id, $existing_keys ) && ( isset( $values['frm_fields_submitted'] ) && in_array( $fid->id, $values['frm_fields_submitted'] ) ) || isset( $values['options'] ) ) {
364 213 $values['item_meta'][ $fid->id ] = '';
365 214 }
366 -
367 215 $field_array[ $fid->id ] = $fid;
368 216 }
369 217 unset( $all_fields );
370 218
371 219 foreach ( $values['item_meta'] as $field_id => $default_value ) {
372 - $field = $field_array[ $field_id ] ?? FrmField::getOne( $field_id );
220 + if ( isset( $field_array[ $field_id ] ) ) {
221 + $field = $field_array[ $field_id ];
222 + } else {
223 + $field = FrmField::getOne( $field_id );
224 + }
373 225
374 226 if ( ! $field ) {
375 227 continue;
376 228 }
377 229
378 - $is_settings_page = isset( $values['options'] ) || isset( $values['field_options'][ 'custom_html_' . $field_id ] );
379 -
230 + $is_settings_page = ( isset( $values['options'] ) || isset( $values['field_options'][ 'custom_html_' . $field_id ] ) );
380 231 if ( $is_settings_page ) {
381 232 self::get_settings_page_html( $values, $field );
382 233
383 234 if ( ! defined( 'WP_IMPORTING' ) ) {
@@ -384,20 +235,15 @@
384 235 continue;
385 236 }
386 237 }
387 238
388 - // Updating the form.
239 + //updating the form
389 240 $update_options = FrmFieldsHelper::get_default_field_options_from_field( $field );
390 - // Don't check for POST html.
391 - unset( $update_options['custom_html'] );
241 + unset( $update_options['custom_html'] ); // don't check for POST html
392 242 $update_options = apply_filters( 'frm_field_options_to_update', $update_options );
393 243
394 - if ( ! is_array( $field->field_options ) ) {
395 - $field->field_options = array();
396 - }
397 -
398 244 foreach ( $update_options as $opt => $default ) {
399 - $field->field_options[ $opt ] = $values['field_options'][ $opt . '_' . $field_id ] ?? $default;
245 + $field->field_options[ $opt ] = isset( $values['field_options'][ $opt . '_' . $field_id ] ) ? $values['field_options'][ $opt . '_' . $field_id ] : $default;
400 246 self::sanitize_field_opt( $opt, $field->field_options[ $opt ] );
401 247 }
402 248
403 249 $field->field_options = apply_filters( 'frm_update_field_options', $field->field_options, $field, $values );
@@ -406,161 +252,55 @@
406 252 'field_options' => $field->field_options,
407 253 'default_value' => isset( $values[ 'default_value_' . $field_id ] ) ? FrmAppHelper::maybe_json_encode( $values[ 'default_value_' . $field_id ] ) : '',
408 254 );
409 255
410 - if ( ! FrmAppHelper::allow_unfiltered_html() && isset( $values['field_options'][ 'options_' . $field_id ] ) && is_array( $values['field_options'][ 'options_' . $field_id ] ) ) { // phpcs:ignore SlevomatCodingStandard.Files.LineLength.LineTooLong
411 - foreach ( $values['field_options'][ 'options_' . $field_id ] as $option_key => $option ) {
412 - if ( ! is_array( $option ) ) {
413 - continue;
414 - }
415 -
416 - foreach ( $option as $key => $item ) {
417 - $values['field_options'][ 'options_' . $field_id ][ $option_key ][ $key ] = FrmAppHelper::kses( $item, 'all' );
418 - }
419 - }
420 - }
421 -
422 256 self::prepare_field_update_values( $field, $values, $new_field );
423 - self::maybe_update_max_option( $field, $values, $new_field );
424 257
425 258 FrmField::update( $field_id, $new_field );
426 259
427 260 FrmField::delete_form_transient( $field->form_id );
428 - }//end foreach
261 + }
429 262 self::clear_form_cache();
430 263
431 264 return $values;
432 265 }
433 266
434 - /**
435 - * Resets the 'max' option of a field when changing paragraph field type to other field types like text, email etc.
436 - *
437 - * @since 6.7
438 - *
439 - * @param object $field
440 - * @param array $values
441 - * @param array $new_field
442 - *
443 - * @return void
444 - */
445 - private static function maybe_update_max_option( $field, $values, &$new_field ) {
446 - if ( $field->type !== 'textarea' ||
447 - empty( $values['field_options'][ 'type_' . $field->id ] ) ||
448 - ! in_array( $values['field_options'][ 'type_' . $field->id ], array( 'text', 'email', 'url', 'password', 'phone' ), true ) ) {
449 - return;
450 - }
451 -
452 - $new_field['field_options']['max'] = '';
453 -
454 - /**
455 - * Update posted field setting so that new 'max' option is displayed after form is saved and page reloads.
456 - * FrmFieldsHelper::fill_default_field_opts populates field options by calling self::get_posted_field_setting.
457 - */
458 - $_POST['field_options'][ 'max_' . $field->id ] = '';
459 - }
460 -
461 - /**
462 - * @param string $opt
463 - * @param mixed $value
464 - *
465 - * @return void
466 - */
467 267 private static function sanitize_field_opt( $opt, &$value ) {
468 - if ( ! is_string( $value ) ) {
469 - return;
268 + if ( is_string( $value ) ) {
269 + if ( $opt === 'calc' ) {
270 + $allow = array( '<= ', ' >=' ); // Allow <= and >=
271 + $temp = array( '< = ', ' > =' );
272 + $value = str_replace( $allow, $temp, $value );
273 + $value = strip_tags( $value );
274 + $value = str_replace( $temp, $allow, $value );
275 + } else {
276 + $value = FrmAppHelper::kses( $value, 'all' );
277 + }
278 + $value = trim( $value );
470 279 }
471 -
472 - /**
473 - * Allow the option to turn off sanitization for a field. This way a custom rule can be used instead.
474 - * Make sure to add custom sanitization using the frm_update_field_options filter as the data will no longer be sanitized.
475 - *
476 - * @since 6.0
477 - *
478 - * @param bool $should_sanitize
479 - * @param string $opt
480 - */
481 - $should_sanitize = apply_filters( 'frm_should_sanitize_field_opt_string', true, $opt );
482 -
483 - if ( ! $should_sanitize ) {
484 - return;
485 - }
486 -
487 - $value = $opt === 'calc' ? self::sanitize_calc( $value ) : FrmAppHelper::kses( $value, 'all' );
488 - $value = trim( $value );
489 280 }
490 281
491 282 /**
492 - * @param string $value
493 - *
494 - * @return string
495 - */
496 - private static function sanitize_calc( $value ) {
497 - if ( str_contains( $value, '<' ) ) {
498 - $value = self::normalize_calc_spaces( $value );
499 - }
500 - // Allow <= and >=.
501 - $allow = array( '<= ', ' >=' );
502 - $temp = array( '< = ', ' > =' );
503 - $value = str_replace( $allow, $temp, $value );
504 - $value = strip_tags( $value );
505 - return str_replace( $temp, $allow, $value );
506 - }
507 -
508 - /**
509 - * Format a comparison like 5<10 to 5 < 10. Also works on 5< 10, 5 <10, 5<=10 variations.
510 - * This is to avoid an issue with unspaced calculations being recognized as HTML that gets removed when strip_tags is called.
511 - *
512 - * @param string $calc
513 - *
514 - * @return string
515 - */
516 - private static function normalize_calc_spaces( $calc ) {
517 - // Check for a pattern with 5 parts
518 - // $1 \d|\] the first comparison digit or the end of a comparison shortcode.
519 - // $2 a space (optional).
520 - // $3 an equals sign (optional) that follows the < operator for <= comparisons.
521 - // $4 another space (optional).
522 - // $5 \d|\[ the second comparison digit or the start of a comparison shortcode.
523 - return preg_replace( '/(\d|\])( ){0,1}<(=){0,1}( ){0,1}(\d|\[)/', '$1 <$3 $5', $calc );
524 - }
525 -
526 - /**
527 283 * Updating the settings page
528 - *
529 - * @param array $values Form values array.
530 - * @param object $field Field object, passed by reference.
531 - *
532 - * @return void
533 284 */
534 285 private static function get_settings_page_html( $values, &$field ) {
535 286 if ( isset( $values['field_options'][ 'custom_html_' . $field->id ] ) ) {
536 287 $prev_opts = array();
537 - $fallback_html = $field->field_options['custom_html'] ?? FrmFieldsHelper::get_default_html( $field->type );
288 + $fallback_html = isset( $field->field_options['custom_html'] ) ? $field->field_options['custom_html'] : FrmFieldsHelper::get_default_html( $field->type );
538 289
539 - $field->field_options['custom_html'] = $values['field_options'][ 'custom_html_' . $field->id ] ?? $fallback_html;
540 - } elseif ( $field->type === 'hidden' || $field->type === 'user_id' ) {
290 + $field->field_options['custom_html'] = isset( $values['field_options'][ 'custom_html_' . $field->id ] ) ? $values['field_options'][ 'custom_html_' . $field->id ] : $fallback_html;
291 + } elseif ( $field->type == 'hidden' || $field->type == 'user_id' ) {
541 292 $prev_opts = $field->field_options;
542 293 }
543 294
544 - if ( ! isset( $prev_opts ) ) {
545 - return;
295 + if ( isset( $prev_opts ) ) {
296 + $field->field_options = apply_filters( 'frm_update_form_field_options', $field->field_options, $field, $values );
297 + if ( $prev_opts != $field->field_options ) {
298 + FrmField::update( $field->id, array( 'field_options' => $field->field_options ) );
299 + }
546 300 }
547 -
548 - $field->field_options = apply_filters( 'frm_update_form_field_options', $field->field_options, $field, $values );
549 -
550 - // phpcs:ignore Universal.Operators.StrictComparisons
551 - if ( $prev_opts != $field->field_options ) {
552 - FrmField::update( $field->id, array( 'field_options' => $field->field_options ) );
553 - }
554 301 }
555 302
556 - /**
557 - * @param object $field
558 - * @param array $values
559 - * @param array $new_field
560 - *
561 - * @return void
562 - */
563 303 private static function prepare_field_update_values( $field, $values, &$new_field ) {
564 304 $field_cols = array(
565 305 'field_order' => 0,
566 306 'field_key' => '',
@@ -569,16 +309,12 @@
569 309 'description' => '',
570 310 'options' => '',
571 311 'name' => '',
572 312 );
573 -
574 313 foreach ( $field_cols as $col => $default ) {
575 - $default = $default === '' ? $field->{$col} : $default;
576 - $new_field[ $col ] = $values['field_options'][ $col . '_' . $field->id ] ?? $default;
577 - }
314 + $default = ( $default === '' ) ? $field->{$col} : $default;
578 315
579 - if ( $field->type === 'submit' && isset( $new_field['field_order'] ) && (int) $new_field['field_order'] === FrmSubmitHelper::DEFAULT_ORDER ) {
580 - $new_field['field_order'] = $field->field_order;
316 + $new_field[ $col ] = isset( $values['field_options'][ $col . '_' . $field->id ] ) ? $values['field_options'][ $col . '_' . $field->id ] : $default;
581 317 }
582 318
583 319 // Don't save the template option.
584 320 if ( is_array( $new_field['options'] ) && isset( $new_field['options']['000'] ) ) {
@@ -590,12 +326,9 @@
590 326 * Get a list of all form settings that should be translated
591 327 * on a multilingual site.
592 328 *
593 329 * @since 3.06.01
594 - *
595 - * @param object $form The form object.
596 - *
597 - * @return array
330 + * @param object $form - The form object
598 331 */
599 332 public static function translatable_strings( $form ) {
600 333 $strings = array(
601 334 'name',
@@ -602,12 +335,8 @@
602 335 'description',
603 336 'submit_value',
604 337 'submit_msg',
605 338 'success_msg',
606 - 'invalid_msg',
607 - 'failed_msg',
608 - 'login_msg',
609 - 'admin_permission',
610 339 );
611 340
612 341 return apply_filters( 'frm_form_strings', $strings, $form );
613 342 }
@@ -612,21 +341,19 @@
612 341 return apply_filters( 'frm_form_strings', $strings, $form );
613 342 }
614 343
615 344 /**
616 - * @param array|int $id
617 - * @param string $status
345 + * @param string $status
618 346 *
619 - * @return bool|int
347 + * @return int|boolean
620 348 */
621 349 public static function set_status( $id, $status ) {
622 - if ( 'trash' === $status ) {
350 + if ( 'trash' == $status ) {
623 351 return self::trash( $id );
624 352 }
625 353
626 354 $statuses = array( 'published', 'draft', 'trash' );
627 -
628 - if ( ! in_array( $status, $statuses, true ) ) {
355 + if ( ! in_array( $status, $statuses ) ) {
629 356 return false;
630 357 }
631 358
632 359 global $wpdb;
@@ -639,9 +366,9 @@
639 366 );
640 367 FrmDb::get_where_clause_and_values( $where );
641 368 array_unshift( $where['values'], $status );
642 369
643 - $query_results = $wpdb->query( $wpdb->prepare( 'UPDATE ' . $wpdb->prefix . 'frm_forms SET status = %s ' . $where['where'], $where['values'] ) ); // phpcs:ignore WordPress.DB.PreparedSQL.NotPrepared, SlevomatCodingStandard.Files.LineLength.LineTooLong
370 + $query_results = $wpdb->query( $wpdb->prepare( 'UPDATE ' . $wpdb->prefix . 'frm_forms SET status = %s ' . $where['where'], $where['values'] ) ); // WPCS: unprepared SQL ok.
644 371 } else {
645 372 $query_results = $wpdb->update( $wpdb->prefix . 'frm_forms', array( 'status' => $status ), array( 'id' => $id ) );
646 373 $wpdb->update( $wpdb->prefix . 'frm_forms', array( 'status' => $status ), array( 'parent_form_id' => $id ) );
647 374 }
@@ -653,11 +380,9 @@
653 380 return $query_results;
654 381 }
655 382
656 383 /**
657 - * @param int|string $id Form ID.
658 - *
659 - * @return bool|int
384 + * @return int|boolean
660 385 */
661 386 public static function trash( $id ) {
662 387 if ( ! EMPTY_TRASH_DAYS ) {
663 388 return self::destroy( $id );
@@ -663,17 +388,12 @@
663 388 return self::destroy( $id );
664 389 }
665 390
666 391 $form = self::getOne( $id );
667 -
668 392 if ( ! $form ) {
669 393 return false;
670 394 }
671 395
672 - if ( $form->status === 'trash' ) {
673 - return false;
674 - }
675 -
676 396 $options = $form->options;
677 397 $options['trash_time'] = time();
678 398
679 399 global $wpdb;
@@ -706,26 +426,21 @@
706 426 return $query_results;
707 427 }
708 428
709 429 /**
710 - * @param int|string $id Form ID.
711 - *
712 - * @return bool|int
430 + * @return int|boolean
713 431 */
714 432 public static function destroy( $id ) {
715 433 global $wpdb;
716 434
717 435 $form = self::getOne( $id );
718 -
719 436 if ( ! $form ) {
720 437 return false;
721 438 }
722 -
723 439 $id = $form->id;
724 440
725 441 // Disconnect the entries from this form
726 - $entries = FrmDb::get_col( 'frm_items', array( 'form_id' => $id ) );
727 -
442 + $entries = FrmDb::get_col( $wpdb->prefix . 'frm_items', array( 'form_id' => $id ) );
728 443 foreach ( $entries as $entry_id ) {
729 444 FrmEntry::destroy( $entry_id );
730 445 unset( $entry_id );
731 446 }
@@ -730,29 +445,23 @@
730 445 unset( $entry_id );
731 446 }
732 447
733 448 // Disconnect the fields from this form
734 - $wpdb->query( $wpdb->prepare( 'DELETE fi FROM ' . $wpdb->prefix . 'frm_fields AS fi LEFT JOIN ' . $wpdb->prefix . 'frm_forms fr ON (fi.form_id = fr.id) WHERE fi.form_id=%d OR parent_form_id=%d', $id, $id ) ); // phpcs:ignore SlevomatCodingStandard.Files.LineLength.LineTooLong
449 + $wpdb->query( $wpdb->prepare( 'DELETE fi FROM ' . $wpdb->prefix . 'frm_fields AS fi LEFT JOIN ' . $wpdb->prefix . 'frm_forms fr ON (fi.form_id = fr.id) WHERE fi.form_id=%d OR parent_form_id=%d', $id, $id ) );
735 450
736 451 $query_results = $wpdb->query( $wpdb->prepare( 'DELETE FROM ' . $wpdb->prefix . 'frm_forms WHERE id=%d OR parent_form_id=%d', $id, $id ) );
452 + if ( $query_results ) {
453 + // Delete all form actions linked to this form
454 + $action_control = FrmFormActionsController::get_form_actions( 'email' );
455 + $action_control->destroy( $id, 'all' );
737 456
738 - if ( ! $query_results ) {
739 - return $query_results;
457 + // Clear form caching
458 + self::clear_form_cache();
459 +
460 + do_action( 'frm_destroy_form', $id );
461 + do_action( 'frm_destroy_form_' . $id );
740 462 }
741 463
742 - // Delete all form actions linked to this form
743 - /**
744 - * @var FrmFormAction
745 - */
746 - $action_control = FrmFormActionsController::get_form_actions( 'email' );
747 - $action_control->destroy( $id, 'all' );
748 -
749 - // Clear form caching
750 - self::clear_form_cache();
751 -
752 - do_action( 'frm_destroy_form', $id );
753 - do_action( 'frm_destroy_form_' . $id );
754 -
755 464 return $query_results;
756 465 }
757 466
758 467 /**
@@ -757,34 +466,29 @@
757 466
758 467 /**
759 468 * Delete trashed forms based on how long they have been trashed
760 469 *
761 - * @param int|string $delete_timestamp Timestamp cutoff for deletion.
762 - *
763 470 * @return int The number of forms deleted
764 471 */
765 472 public static function scheduled_delete( $delete_timestamp = '' ) {
766 - $trash_forms = FrmDb::get_results( 'frm_forms', array( 'status' => 'trash' ), 'id, parent_form_id, options' );
473 + global $wpdb;
767 474
475 + $trash_forms = FrmDb::get_results( $wpdb->prefix . 'frm_forms', array( 'status' => 'trash' ), 'id, options' );
476 +
768 477 if ( ! $trash_forms ) {
769 - return 0;
478 + return;
770 479 }
771 480
772 - if ( ! $delete_timestamp ) {
481 + if ( empty( $delete_timestamp ) ) {
773 482 $delete_timestamp = time() - ( DAY_IN_SECONDS * EMPTY_TRASH_DAYS );
774 483 }
775 484
776 485 $count = 0;
777 -
778 486 foreach ( $trash_forms as $form ) {
779 487 FrmAppHelper::unserialize_or_decode( $form->options );
780 -
781 488 if ( ! isset( $form->options['trash_time'] ) || $form->options['trash_time'] < $delete_timestamp ) {
782 489 self::destroy( $form->id );
783 -
784 - if ( empty( $form->parent_form_id ) ) {
785 - ++$count;
786 - }
490 + $count ++;
787 491 }
788 492
789 493 unset( $form );
790 494 }
@@ -792,24 +496,23 @@
792 496 return $count;
793 497 }
794 498
795 499 /**
796 - * @param int|string $id Form ID or key.
797 - *
798 500 * @return string form name
799 501 */
800 502 public static function getName( $id ) {
801 503 $form = FrmDb::check_cache( $id, 'frm_form' );
504 + if ( $form ) {
505 + $r = stripslashes( $form->name );
802 506
803 - if ( $form ) {
804 - return stripslashes( $form->name );
507 + return $r;
805 508 }
806 509
807 510 $query_key = is_numeric( $id ) ? 'id' : 'form_key';
808 511 $r = FrmDb::get_var( 'frm_forms', array( $query_key => $id ), 'name' );
512 + $r = stripslashes( $r );
809 513
810 - // An empty form name can result in a null value.
811 - return is_null( $r ) ? '' : stripslashes( $r );
514 + return $r;
812 515 }
813 516
814 517 /**
815 518 * @since 3.0
@@ -824,9 +527,9 @@
824 527
825 528 /**
826 529 * @since 3.0
827 530 *
828 - * @param int|string $id
531 + * @param int $id
829 532 *
830 533 * @return string form key
831 534 */
832 535 public static function get_key_by_id( $id ) {
@@ -831,57 +534,59 @@
831 534 */
832 535 public static function get_key_by_id( $id ) {
833 536 $id = (int) $id;
834 537 $cache = FrmDb::check_cache( $id, 'frm_form' );
835 -
836 538 if ( $cache ) {
837 539 return $cache->form_key;
838 540 }
839 541
840 - return FrmDb::get_var( 'frm_forms', array( 'id' => $id ), 'form_key' );
542 + $key = FrmDb::get_var( 'frm_forms', array( 'id' => $id ), 'form_key' );
543 +
544 + return $key;
841 545 }
842 546
843 547 /**
844 548 * If $form is numeric, get the form object
845 549 *
550 + * @param object|int $form
551 + *
846 552 * @since 2.0.9
847 - *
848 - * @param array|int|object $form
849 - *
850 - * @return void
851 553 */
852 554 public static function maybe_get_form( &$form ) {
853 - if ( ! is_object( $form ) && ! is_array( $form ) && $form ) {
555 + if ( ! is_object( $form ) && ! is_array( $form ) && ! empty( $form ) ) {
854 556 $form = self::getOne( $form );
855 557 }
856 558 }
857 559
858 560 /**
859 - * @param int|string $id
860 - * @param false|int $blog_id
861 - *
862 - * @return stdClass|null
561 + * @return object form
863 562 */
864 563 public static function getOne( $id, $blog_id = false ) {
865 564 global $wpdb;
866 565
867 566 if ( $blog_id && is_multisite() ) {
868 - $prefix = $wpdb->get_blog_prefix( $blog_id );
567 + global $wpmuBaseTablePrefix;
568 + $prefix = $wpmuBaseTablePrefix ? $wpmuBaseTablePrefix . $blog_id . '_' : $wpdb->get_blog_prefix( $blog_id );
569 +
869 570 $table_name = $prefix . 'frm_forms';
870 571 } else {
871 572 $table_name = $wpdb->prefix . 'frm_forms';
872 573 $cache = wp_cache_get( $id, 'frm_form' );
873 -
874 574 if ( $cache ) {
875 575 if ( isset( $cache->options ) ) {
876 576 FrmAppHelper::unserialize_or_decode( $cache->options );
877 577 }
878 578
879 - return self::prepare_form_row_data( $cache );
579 + return wp_unslash( $cache );
880 580 }
881 581 }
882 582
883 - $where = is_numeric( $id ) ? array( 'id' => $id ) : array( 'form_key' => $id );
583 + if ( is_numeric( $id ) ) {
584 + $where = array( 'id' => $id );
585 + } else {
586 + $where = array( 'form_key' => $id );
587 + }
588 +
884 589 $results = FrmDb::get_row( $table_name, $where );
885 590
886 591 if ( isset( $results->options ) ) {
887 592 FrmDb::set_cache( $results->id, $results, 'frm_form' );
@@ -887,50 +592,18 @@
887 592 FrmDb::set_cache( $results->id, $results, 'frm_form' );
888 593 FrmAppHelper::unserialize_or_decode( $results->options );
889 594 }
890 595
891 - return self::prepare_form_row_data( $results );
596 + return apply_filters( 'frm_form_object', wp_unslash( $results ) );
892 597 }
893 598
894 599 /**
895 - * Make sure that if $row is an object, that $row->options is an array and not a string.
896 - *
897 - * @since 6.8.3
898 - *
899 - * @param stdClass|null $row The database row for a target form.
900 - *
901 - * @return stdClass|null
600 + * @return object|array of objects
902 601 */
903 - private static function prepare_form_row_data( $row ) {
904 - $row = wp_unslash( $row );
905 -
906 - if ( ! is_object( $row ) ) {
907 - return $row;
908 - }
909 -
910 - if ( ! is_array( $row->options ) ) {
911 - $row->options = FrmFormsHelper::get_default_opts();
912 - }
913 -
914 - /**
915 - * @since 4.03.02
916 - *
917 - * @param stdClass $row
918 - */
919 - return apply_filters( 'frm_form_object', $row );
920 - }
921 -
922 - /**
923 - * @param array|string $where Where conditions array or raw WHERE string.
924 - * @param string $order_by Order by clause.
925 - * @param int|string $limit Limit clause or number.
926 - *
927 - * @return array|object Array of objects. If $limit is 1, a single object is returned.
928 - */
929 602 public static function getAll( $where = array(), $order_by = '', $limit = '' ) {
930 - if ( is_array( $where ) && $where ) {
931 - if ( ! empty( $where['is_template'] ) && ! isset( $where['status'] ) && ! isset( $where['status !'] ) ) {
932 - // Don't get trashed templates
603 + if ( is_array( $where ) && ! empty( $where ) ) {
604 + if ( isset( $where['is_template'] ) && $where['is_template'] && ! isset( $where['status'] ) && ! isset( $where['status !'] ) ) {
605 + // don't get trashed templates
933 606 $where['status'] = array( null, '', 'published' );
934 607 }
935 608
936 609 $results = FrmDb::get_results( 'frm_forms', $where, '*', compact( 'order_by', 'limit' ) );
@@ -936,11 +609,11 @@
936 609 $results = FrmDb::get_results( 'frm_forms', $where, '*', compact( 'order_by', 'limit' ) );
937 610 } else {
938 611 global $wpdb;
939 612
940 - // The query has already been prepared if this is not an array.
941 - $query = 'SELECT * FROM ' . $wpdb->prefix . 'frm_forms' . FrmDb::prepend_and_or_where( ' WHERE ', $where ) . FrmDb::esc_order( $order_by ) . FrmDb::esc_limit( $limit ); // phpcs:ignore SlevomatCodingStandard.Files.LineLength.LineTooLong
942 - $results = $wpdb->get_results( $query ); // phpcs:ignore WordPress.DB.PreparedSQL.NotPrepared
613 + // the query has already been prepared if this is not an array
614 + $query = 'SELECT * FROM ' . $wpdb->prefix . 'frm_forms' . FrmDb::prepend_and_or_where( ' WHERE ', $where ) . FrmDb::esc_order( $order_by ) . FrmDb::esc_limit( $limit );
615 + $results = $wpdb->get_results( $query ); // WPCS: unprepared SQL ok.
943 616 }
944 617
945 618 if ( $results ) {
946 619 foreach ( $results as $result ) {
@@ -948,10 +621,10 @@
948 621 FrmAppHelper::unserialize_or_decode( $result->options );
949 622 }
950 623 }
951 624
952 - if ( $limit === ' LIMIT 1' || (int) $limit === 1 ) {
953 - // Return the first form object if we are only getting one form
625 + if ( $limit == ' LIMIT 1' || $limit == 1 ) {
626 + // return the first form object if we are only getting one form
954 627 $results = reset( $results );
955 628 }
956 629
957 630 return wp_unslash( $results );
@@ -960,24 +633,20 @@
960 633 /**
961 634 * Get all published forms
962 635 *
963 636 * @since 2.0
964 - *
965 - * @param array $query
966 - * @param int $limit
967 - * @param string $inc_children
968 - *
969 - * @return array|object Array of forms. A single form object is returned if $limit is set to 1.
637 + * @return array of forms
970 638 */
971 639 public static function get_published_forms( $query = array(), $limit = 999, $inc_children = 'exclude' ) {
972 640 $query['is_template'] = 0;
973 641 $query['status'] = array( null, '', 'published' );
974 -
975 - if ( $inc_children === 'exclude' ) {
642 + if ( $inc_children == 'exclude' ) {
976 643 $query['parent_form_id'] = array( null, 0 );
977 644 }
978 645
979 - return self::getAll( $query, 'name', $limit );
646 + $forms = self::getAll( $query, 'name', $limit );
647 +
648 + return $forms;
980 649 }
981 650
982 651 /**
983 652 * @return object count of forms
@@ -982,16 +651,18 @@
982 651 /**
983 652 * @return object count of forms
984 653 */
985 654 public static function get_count() {
655 + global $wpdb;
656 +
986 657 $cache_key = 'frm_form_counts';
987 - $counts = wp_cache_get( $cache_key, 'frm_form' );
988 658
659 + $counts = wp_cache_get( $cache_key, 'frm_form' );
989 660 if ( false !== $counts ) {
990 661 return $counts;
991 662 }
992 663
993 - $results = FrmDb::get_results(
664 + $results = (array) FrmDb::get_results(
994 665 'frm_forms',
995 666 array(
996 667 'or' => 1,
997 668 'parent_form_id' => null,
@@ -1003,18 +674,20 @@
1003 674 $statuses = array( 'published', 'draft', 'template', 'trash' );
1004 675 $counts = array_fill_keys( $statuses, 0 );
1005 676
1006 677 foreach ( $results as $row ) {
1007 - if ( 'trash' === $row->status ) {
1008 - ++$counts['trash'];
1009 - } elseif ( $row->is_template ) {
1010 - ++$counts['template'];
678 + if ( 'trash' != $row->status ) {
679 + if ( $row->is_template ) {
680 + $counts['template'] ++;
681 + } else {
682 + $counts['published'] ++;
683 + }
1011 684 } else {
1012 - ++$counts['published'];
685 + $counts['trash'] ++;
1013 686 }
1014 687
1015 - if ( 'draft' === $row->status ) {
1016 - ++$counts['draft'];
688 + if ( 'draft' == $row->status ) {
689 + $counts['draft'] ++;
1017 690 }
1018 691
1019 692 unset( $row );
1020 693 }
@@ -1030,10 +703,8 @@
1030 703 * Called when a form is created, updated, duplicated, or deleted
1031 704 * or when the form status is changed
1032 705 *
1033 706 * @since 2.0.4
1034 - *
1035 - * @return void
1036 707 */
1037 708 public static function clear_form_cache() {
1038 709 FrmDb::cache_delete_group( 'frm_form' );
1039 710 }
@@ -1038,29 +709,23 @@
1038 709 FrmDb::cache_delete_group( 'frm_form' );
1039 710 }
1040 711
1041 712 /**
1042 - * @param array $values Form values to validate.
1043 - *
1044 713 * @return array of errors
1045 714 */
1046 715 public static function validate( $values ) {
1047 716 $errors = array();
717 +
1048 718 return apply_filters( 'frm_validate_form', $errors, $values );
1049 719 }
1050 720
1051 - /**
1052 - * @param object|null $form
1053 - *
1054 - * @return array
1055 - */
1056 721 public static function get_params( $form = null ) {
1057 722 global $frm_vars;
1058 723
1059 - if ( $form ) {
724 + if ( ! $form ) {
725 + $form = self::getAll( array(), 'name', 1 );
726 + } else {
1060 727 self::maybe_get_form( $form );
1061 - } else {
1062 - $form = self::getAll( array(), 'name', 1 );
1063 728 }
1064 729
1065 730 if ( isset( $frm_vars['form_params'] ) && is_array( $frm_vars['form_params'] ) && isset( $frm_vars['form_params'][ $form->id ] ) ) {
1066 731 return $frm_vars['form_params'][ $form->id ];
@@ -1065,9 +730,9 @@
1065 730 if ( isset( $frm_vars['form_params'] ) && is_array( $frm_vars['form_params'] ) && isset( $frm_vars['form_params'][ $form->id ] ) ) {
1066 731 return $frm_vars['form_params'][ $form->id ];
1067 732 }
1068 733
1069 - $action_var = isset( $_REQUEST['frm_action'] ) ? 'frm_action' : 'action'; // phpcs:ignore WordPress.Security.NonceVerification.Missing
734 + $action_var = isset( $_REQUEST['frm_action'] ) ? 'frm_action' : 'action'; // WPCS: CSRF ok.
1070 735 $action = apply_filters( 'frm_show_new_entry_page', FrmAppHelper::get_param( $action_var, 'new', 'get', 'sanitize_title' ), $form );
1071 736
1072 737 $default_values = array(
1073 738 'id' => '',
@@ -1083,18 +748,16 @@
1083 748 );
1084 749
1085 750 $values = array();
1086 751 $values['posted_form_id'] = FrmAppHelper::get_param( 'form_id', '', 'get', 'absint' );
1087 -
1088 752 if ( ! $values['posted_form_id'] ) {
1089 753 $values['posted_form_id'] = FrmAppHelper::get_param( 'form', '', 'get', 'absint' );
1090 754 }
1091 755
1092 - // phpcs:ignore Universal.Operators.StrictComparisons
1093 756 if ( $form->id == $values['posted_form_id'] ) {
1094 - // If there are two forms on the same page, make sure not to submit both.
757 + //if there are two forms on the same page, make sure not to submit both
1095 758 foreach ( $default_values as $var => $default ) {
1096 - if ( $var === 'action' ) {
759 + if ( $var == 'action' ) {
1097 760 $values[ $var ] = FrmAppHelper::get_param( $action_var, $default, 'get', 'sanitize_title' );
1098 761 } else {
1099 762 $values[ $var ] = FrmAppHelper::get_param( $var, $default, 'get', 'sanitize_text_field' );
1100 763 }
@@ -1106,10 +769,10 @@
1106 769 unset( $var, $default );
1107 770 }
1108 771 }
1109 772
1110 - if ( in_array( $values['action'], array( 'create', 'update' ), true ) &&
1111 - ( ! $_POST || ( ! isset( $_POST['action'] ) && ! isset( $_POST['frm_action'] ) ) ) // phpcs:ignore WordPress.Security.NonceVerification.Missing
773 + if ( in_array( $values['action'], array( 'create', 'update' ) ) &&
774 + ( ! $_POST || ( ! isset( $_POST['action'] ) && ! isset( $_POST['frm_action'] ) ) ) // WPCS: CSRF ok.
1112 775 ) {
1113 776 $values['action'] = 'new';
1114 777 }
1115 778
@@ -1115,11 +778,8 @@
1115 778
1116 779 return $values;
1117 780 }
1118 781
1119 - /**
1120 - * @return array
1121 - */
1122 782 public static function list_page_params() {
1123 783 $values = array();
1124 784 $defaults = array(
1125 785 'template' => 0,
@@ -1129,9 +789,8 @@
1129 789 'search' => '',
1130 790 'sort' => '',
1131 791 'sdir' => '',
1132 792 );
1133 -
1134 793 foreach ( $defaults as $var => $default ) {
1135 794 $values[ $var ] = FrmAppHelper::get_param( $var, $default, 'get', 'sanitize_text_field' );
1136 795 }
1137 796
@@ -1137,16 +796,10 @@
1137 796
1138 797 return $values;
1139 798 }
1140 799
1141 - /**
1142 - * @param int|object|string|null $form
1143 - *
1144 - * @return array
1145 - */
1146 800 public static function get_admin_params( $form = null ) {
1147 801 $form_id = $form;
1148 -
1149 802 if ( $form === null ) {
1150 803 $form_id = self::get_current_form_id();
1151 804 } elseif ( $form && is_object( $form ) ) {
1152 805 $form_id = $form->id;
@@ -1164,9 +817,8 @@
1164 817 'sdir' => '',
1165 818 'fid' => '',
1166 819 'keep_post' => '',
1167 820 );
1168 -
1169 821 foreach ( $defaults as $var => $default ) {
1170 822 $values[ $var ] = FrmAppHelper::get_param( $var, $default, 'get', 'sanitize_text_field' );
1171 823 }
1172 824
@@ -1172,55 +824,47 @@
1172 824
1173 825 return $values;
1174 826 }
1175 827
1176 - /**
1177 - * @param string $default_form
1178 - *
1179 - * @return int|string
1180 - */
1181 828 public static function get_current_form_id( $default_form = 'none' ) {
1182 - $form = 'first' === $default_form ? self::get_current_form() : self::maybe_get_current_form();
1183 - return $form ? $form->id : 0;
829 + if ( 'first' == $default_form ) {
830 + $form = self::get_current_form();
831 + } else {
832 + $form = self::maybe_get_current_form();
833 + }
834 + $form_id = $form ? $form->id : 0;
835 +
836 + return $form_id;
1184 837 }
1185 838
1186 - /**
1187 - * @param int|string $form_id
1188 - *
1189 - * @return false|int|object|string
1190 - */
1191 839 public static function maybe_get_current_form( $form_id = 0 ) {
1192 840 global $frm_vars;
1193 841
1194 - if ( ! empty( $frm_vars['current_form'] ) && ( ! $form_id || (int) $form_id === (int) $frm_vars['current_form']->id ) ) {
842 + if ( isset( $frm_vars['current_form'] ) && $frm_vars['current_form'] && ( ! $form_id || $form_id == $frm_vars['current_form']->id ) ) {
1195 843 return $frm_vars['current_form'];
1196 844 }
1197 845
1198 846 $form_id = FrmAppHelper::get_param( 'form', $form_id, 'get', 'absint' );
847 + if ( $form_id ) {
848 + $form_id = self::set_current_form( $form_id );
849 + }
1199 850
1200 - return $form_id ? self::set_current_form( $form_id ) : $form_id;
851 + return $form_id;
1201 852 }
1202 853
1203 - /**
1204 - * @param int $form_id
1205 - *
1206 - * @return false|object
1207 - */
1208 854 public static function get_current_form( $form_id = 0 ) {
1209 855 $form = self::maybe_get_current_form( $form_id );
1210 - return is_numeric( $form ) ? self::set_current_form( $form ) : $form;
856 + if ( is_numeric( $form ) ) {
857 + $form = self::set_current_form( $form );
858 + }
859 +
860 + return $form;
1211 861 }
1212 862
1213 - /**
1214 - * @param int $form_id
1215 - *
1216 - * @return false|object
1217 - */
1218 863 public static function set_current_form( $form_id ) {
1219 864 global $frm_vars;
1220 865
1221 866 $query = array();
1222 -
1223 867 if ( $form_id ) {
1224 868 $query['id'] = $form_id;
1225 869 }
1226 870
@@ -1228,19 +872,11 @@
1228 872
1229 873 return $frm_vars['current_form'];
1230 874 }
1231 875
1232 - /**
1233 - * @param object $form
1234 - * @param int|string $this_load
1235 - * @param bool $global_load
1236 - *
1237 - * @return bool
1238 - */
1239 876 public static function is_form_loaded( $form, $this_load, $global_load ) {
1240 877 global $frm_vars;
1241 878 $small_form = new stdClass();
1242 -
1243 879 foreach ( array( 'id', 'form_key', 'name' ) as $var ) {
1244 880 $small_form->{$var} = $form->{$var};
1245 881 unset( $var );
1246 882 }
@@ -1246,14 +882,14 @@
1246 882 }
1247 883
1248 884 $frm_vars['forms_loaded'][] = $small_form;
1249 885
1250 - if ( $this_load && ! $global_load ) {
886 + if ( $this_load && empty( $global_load ) ) {
1251 887 $global_load = true;
1252 888 $frm_vars['load_css'] = true;
1253 889 }
1254 890
1255 - return empty( $frm_vars['css_loaded'] ) && $global_load;
891 + return ( ( ! isset( $frm_vars['css_loaded'] ) || ! $frm_vars['css_loaded'] ) && $global_load );
1256 892 }
1257 893
1258 894 /**
1259 895 * @since 4.06.03
@@ -1261,9 +897,9 @@
1261 897 * @param object $form
1262 898 *
1263 899 * @return bool
1264 900 */
1265 - public static function is_visible_to_user( $form ) {
901 + public static function &is_visible_to_user( $form ) {
1266 902 if ( $form->logged_in && isset( $form->options['logged_in_role'] ) ) {
1267 903 $visible = FrmAppHelper::user_has_permission( $form->options['logged_in_role'] );
1268 904 } else {
1269 905 $visible = true;
@@ -1268,39 +904,26 @@
1268 904 } else {
1269 905 $visible = true;
1270 906 }
1271 907
1272 - /**
1273 - * @since 6.25
1274 - *
1275 - * @param bool $visible
1276 - * @param object $form
1277 - */
1278 - return (bool) apply_filters( 'frm_form_is_visible', $visible, $form );
908 + return $visible;
1279 909 }
1280 910
1281 - /**
1282 - * @param object $form
1283 - *
1284 - * @return bool
1285 - */
1286 911 public static function show_submit( $form ) {
1287 - $show = ! $form->is_template && $form->status === 'published' && ! FrmAppHelper::is_admin();
1288 - return apply_filters( 'frm_show_submit_button', $show, $form );
912 + $show = ( ! $form->is_template && $form->status == 'published' && ! FrmAppHelper::is_admin() );
913 + $show = apply_filters( 'frm_show_submit_button', $show, $form );
914 +
915 + return $show;
1289 916 }
1290 917
1291 918 /**
1292 919 * @since 2.3
1293 - *
1294 - * @param array $atts Attributes including form, option, and default.
1295 - *
1296 - * @return mixed
1297 920 */
1298 921 public static function get_option( $atts ) {
1299 - $form = $atts['form'];
1300 - $default = $atts['default'] ?? '';
922 + $form = $atts['form'];
923 + $default = isset( $atts['default'] ) ? $atts['default'] : '';
1301 924
1302 - return $form->options[ $atts['option'] ] ?? $default;
925 + return isset( $form->options[ $atts['option'] ] ) ? $form->options[ $atts['option'] ] : $default;
1303 926 }
1304 927
1305 928 /**
1306 929 * Get the link to edit this form.
@@ -1305,12 +928,9 @@
1305 928 /**
1306 929 * Get the link to edit this form.
1307 930 *
1308 931 * @since 4.0
1309 - *
1310 932 * @param int $form_id The id of the form.
1311 - *
1312 - * @return string
1313 933 */
1314 934 public static function get_edit_link( $form_id ) {
1315 935 return admin_url( 'admin.php?page=formidable&frm_action=edit&id=' . $form_id );
1316 936 }
@@ -1315,65 +935,9 @@
1315 935 return admin_url( 'admin.php?page=formidable&frm_action=edit&id=' . $form_id );
1316 936 }
1317 937
1318 938 /**
1319 - * Check if the "Submit this form with AJAX" setting is toggled on.
1320 - *
1321 - * @since 6.2
1322 - *
1323 - * @param stdClass $form
1324 - *
1325 - * @return bool
1326 - */
1327 - public static function is_ajax_on( $form ) {
1328 - return ! empty( $form->options['ajax_submit'] );
1329 - }
1330 -
1331 - /**
1332 - * Get the latest form available.
1333 - *
1334 - * @since 6.8
1335 - *
1336 - * @return object
1337 - */
1338 - public static function get_latest_form() {
1339 - $args = array(
1340 - array(
1341 - 'or' => 1,
1342 - 'parent_form_id' => null,
1343 - 'parent_form_id <' => 1,
1344 - ),
1345 - 'is_template' => 0,
1346 - 'status !' => 'trash',
1347 - );
1348 -
1349 - return self::getAll( $args, 'created_at desc', 1 );
1350 - }
1351 -
1352 - /**
1353 - * Count and return total forms.
1354 - *
1355 - * @since 6.8
1356 - *
1357 - * @return int
1358 - */
1359 - public static function get_forms_count() {
1360 - $args = array(
1361 - array(
1362 - 'or' => 1,
1363 - 'parent_form_id' => null,
1364 - 'parent_form_id <' => 1,
1365 - ),
1366 - 'is_template' => 0,
1367 - 'status !' => 'trash',
1368 - );
1369 -
1370 - return FrmDb::get_count( 'frm_forms', $args );
1371 - }
1372 -
1373 - /**
1374 - * @deprecated 2.03.05 This is still referenced in a few add ons (API, locations).
1375 - *
939 + * @deprecated 3.0
1376 940 * @codeCoverageIgnore
1377 941 *
1378 942 * @param string $key
1379 943 *
@@ -1379,22 +943,15 @@
1379 943 *
1380 944 * @return int form id
1381 945 */
1382 946 public static function getIdByKey( $key ) {
1383 - _deprecated_function( __FUNCTION__, '2.03.05', 'FrmForm::get_id_by_key' );
1384 - return self::get_id_by_key( $key );
947 + return FrmFormDeprecated::getIdByKey( $key );
1385 948 }
1386 949
1387 950 /**
1388 - * @deprecated 2.03.05 This is still referenced in the API add on as of v1.13.
1389 - *
951 + * @deprecated 3.0
1390 952 * @codeCoverageIgnore
1391 - *
1392 - * @param int|string $id
1393 - *
1394 - * @return string
1395 953 */
1396 954 public static function getKeyById( $id ) {
1397 - _deprecated_function( __FUNCTION__, '2.03.05', 'FrmForm::get_key_by_id' );
1398 - return self::get_key_by_id( $id );
955 + return FrmFormDeprecated::getKeyById( $id );
1399 956 }
1400 957 }