PluginProbe
Formidable Forms – WordPress Form Builder for Contact Forms, Calculators, Quizzes & More / 5.5.2
Formidable Forms – WordPress Form Builder for Contact Forms, Calculators, Quizzes & More v5.5.2
6.35 6.34 6.33.1 6.33 6.32.1 6.32 6.31 6.25 6.25.1 6.26 6.26.1 6.27 6.28 6.29 6.3 6.3.1 6.3.2 6.30 6.4 6.4.1 6.4.2 6.5 6.5.1 6.5.2 6.5.3 All 141 releases
← All changes | classes/models/FrmForm.php +88 -420 6.26.15.5.2 View file →
@@ -6,10 +6,9 @@
6 6 class FrmForm {
7 7
8 8 /**
9 9 * @param array $values
10 - *
11 - * @return bool|int id on success or false on failure.
10 + * @return int|boolean id on success or false on failure
12 11 */
13 12 public static function create( $values ) {
14 13 global $wpdb;
15 14
@@ -18,22 +17,22 @@
18 17 $new_values = array(
19 18 'form_key' => FrmAppHelper::get_unique_key( $values['form_key'], $wpdb->prefix . 'frm_forms', 'form_key' ),
20 19 'name' => $values['name'],
21 20 'description' => $values['description'],
22 - 'status' => $values['status'] ?? 'published',
23 - 'logged_in' => $values['logged_in'] ?? 0,
21 + 'status' => isset( $values['status'] ) ? $values['status'] : 'published',
22 + 'logged_in' => isset( $values['logged_in'] ) ? $values['logged_in'] : 0,
24 23 'is_template' => isset( $values['is_template'] ) ? (int) $values['is_template'] : 0,
25 24 'parent_form_id' => isset( $values['parent_form_id'] ) ? absint( $values['parent_form_id'] ) : 0,
26 25 'editable' => isset( $values['editable'] ) ? (int) $values['editable'] : 0,
27 - 'created_at' => $values['created_at'] ?? current_time( 'mysql', 1 ),
26 + 'created_at' => isset( $values['created_at'] ) ? $values['created_at'] : current_time( 'mysql', 1 ),
28 27 );
29 28
30 29 $options = isset( $values['options'] ) ? (array) $values['options'] : array();
31 30 FrmFormsHelper::fill_form_options( $options, $values );
32 31
33 - $options['before_html'] = $values['options']['before_html'] ?? FrmFormsHelper::get_default_html( 'before' );
34 - $options['after_html'] = $values['options']['after_html'] ?? FrmFormsHelper::get_default_html( 'after' );
35 - $options['submit_html'] = $values['options']['submit_html'] ?? FrmFormsHelper::get_default_html( 'submit' );
32 + $options['before_html'] = isset( $values['options']['before_html'] ) ? $values['options']['before_html'] : FrmFormsHelper::get_default_html( 'before' );
33 + $options['after_html'] = isset( $values['options']['after_html'] ) ? $values['options']['after_html'] : FrmFormsHelper::get_default_html( 'after' );
34 + $options['submit_html'] = isset( $values['options']['submit_html'] ) ? $values['options']['submit_html'] : FrmFormsHelper::get_default_html( 'submit' );
36 35
37 36 /**
38 37 * Allows modifying form options before updating or creating.
39 38 *
@@ -60,9 +59,8 @@
60 59 /**
61 60 * @since 5.0.08
62 61 *
63 62 * @param array $options
64 - *
65 63 * @return array
66 64 */
67 65 private static function maybe_filter_form_options( $options ) {
68 66 if ( ! FrmAppHelper::allow_unfiltered_html() && ! empty( $options['submit_html'] ) ) {
@@ -71,22 +69,14 @@
71 69 return FrmAppHelper::maybe_filter_array( $options, array( 'submit_value', 'success_msg', 'before_html', 'after_html' ) );
72 70 }
73 71
74 72 /**
75 - * Duplicate a form.
76 - *
77 - * @param int $id Form ID to duplicate.
78 - * @param bool $template Whether the duplicated form is a template.
79 - * @param bool $copy_keys Whether to copy the original form key.
80 - * @param false|int $blog_id Blog ID when duplicating across sites, or false for current site.
81 - *
82 - * @return bool|int ID on success or false on failure
73 + * @return int|boolean ID on success or false on failure
83 74 */
84 75 public static function duplicate( $id, $template = false, $copy_keys = false, $blog_id = false ) {
85 76 global $wpdb;
86 77
87 78 $values = self::getOne( $id, $blog_id );
88 -
89 79 if ( ! $values ) {
90 80 return false;
91 81 }
92 82
@@ -103,10 +93,10 @@
103 93 'is_template' => $template ? 1 : 0,
104 94 );
105 95
106 96 if ( $blog_id ) {
107 - $new_values['status'] = 'published';
108 - $new_options = $values->options;
97 + $new_values['status'] = 'published';
98 + $new_options = $values->options;
109 99 FrmAppHelper::unserialize_or_decode( $new_options );
110 100 $new_options['email_to'] = get_option( 'admin_email' );
111 101 $new_options['copy'] = false;
112 102 $new_values['options'] = $new_options;
@@ -135,16 +125,10 @@
135 125
136 126 return false;
137 127 }
138 128
139 - /**
140 - * @param int $form_id
141 - * @param array $values
142 - *
143 - * @return void
144 - */
145 129 public static function after_duplicate( $form_id, $values ) {
146 - $new_opts = $values['options'];
130 + $new_opts = $values['options'];
147 131 FrmAppHelper::unserialize_or_decode( $new_opts );
148 132 $values['options'] = $new_opts;
149 133
150 134 if ( isset( $new_opts['success_msg'] ) ) {
@@ -166,10 +150,8 @@
166 150 *
167 151 * @since 5.3
168 152 *
169 153 * @param int $form_id Form ID.
170 - *
171 - * @return void
172 154 */
173 155 private static function switch_field_ids_in_fields( $form_id ) {
174 156 global $wpdb;
175 157
@@ -175,11 +157,10 @@
175 157
176 158 // Keys of fields that you want to check to replace field ID.
177 159 $keys = array( 'default_value', 'field_options' );
178 160 $sql_cols = 'fi.id';
179 -
180 161 foreach ( $keys as $key ) {
181 - $sql_cols .= ',fi.' . $key;
162 + $sql_cols .= ( ',fi.' . $key );
182 163 }
183 164
184 165 $fields = FrmDb::get_results(
185 166 "{$wpdb->prefix}frm_fields AS fi LEFT OUTER JOIN {$wpdb->prefix}frm_forms AS fr ON fi.form_id = fr.id",
@@ -205,14 +186,11 @@
205 186 *
206 187 * @since 5.3
207 188 *
208 189 * @param array $field Field array.
209 - *
210 - * @return void
211 190 */
212 191 private static function switch_field_ids_in_field( $field ) {
213 192 $new_values = array();
214 -
215 193 foreach ( $field as $key => $value ) {
216 194 if ( 'id' === $key || ! $value ) {
217 195 continue;
218 196 }
@@ -232,9 +210,9 @@
232 210
233 211 if ( $new_val !== $value ) {
234 212 $new_values[ $key ] = $new_val;
235 213 }
236 - }//end foreach
214 + }
237 215
238 216 if ( ! empty( $new_values ) ) {
239 217 FrmField::update( $field['id'], $new_values );
240 218 }
@@ -240,15 +218,9 @@
240 218 }
241 219 }
242 220
243 221 /**
244 - * Update a form.
245 - *
246 - * @param int $id Form ID.
247 - * @param array $values Form values to update.
248 - * @param bool $create_link Whether this is being called from link creation.
249 - *
250 - * @return bool|int
222 + * @return int|boolean
251 223 */
252 224 public static function update( $id, $values, $create_link = false ) {
253 225 global $wpdb;
254 226
@@ -271,15 +243,14 @@
271 243 $new_values[ $value_key ] = $value;
272 244 }
273 245 }
274 246
275 - if ( ! empty( $values['new_status'] ) ) {
247 + if ( isset( $values['new_status'] ) && ! empty( $values['new_status'] ) ) {
276 248 $new_values['status'] = $values['new_status'];
277 249 }
278 250
279 251 if ( ! empty( $new_values ) ) {
280 252 $query_results = $wpdb->update( $wpdb->prefix . 'frm_forms', $new_values, array( 'id' => $id ) );
281 -
282 253 if ( $query_results ) {
283 254 self::clear_form_cache();
284 255 }
285 256 } else {
@@ -298,9 +269,8 @@
298 269 /**
299 270 * @param array $new_values
300 271 * @param array $values
301 272 * @param array $args
302 - *
303 273 * @return array
304 274 */
305 275 public static function set_update_options( $new_values, $values, $args = array() ) {
306 276 if ( ! isset( $values['options'] ) ) {
@@ -306,16 +276,21 @@
306 276 if ( ! isset( $values['options'] ) ) {
307 277 return $new_values;
308 278 }
309 279
310 - $options = ! empty( $values['options'] ) ? (array) $values['options'] : array();
280 + $options = isset( $values['options'] ) ? (array) $values['options'] : array();
311 281 FrmFormsHelper::fill_form_options( $options, $values );
312 282
313 - $options['custom_style'] = $values['options']['custom_style'] ?? 0;
314 - $options['before_html'] = $values['options']['before_html'] ?? FrmFormsHelper::get_default_html( 'before' );
315 - $options['after_html'] = $values['options']['after_html'] ?? FrmFormsHelper::get_default_html( 'after' );
316 - $options['submit_html'] = isset( $values['options']['submit_html'] ) && '' !== $values['options']['submit_html'] ? $values['options']['submit_html'] : FrmFormsHelper::get_default_html( 'submit' );
283 + $options['custom_style'] = isset( $values['options']['custom_style'] ) ? $values['options']['custom_style'] : 0;
284 + $options['before_html'] = isset( $values['options']['before_html'] ) ? $values['options']['before_html'] : FrmFormsHelper::get_default_html( 'before' );
285 + $options['after_html'] = isset( $values['options']['after_html'] ) ? $values['options']['after_html'] : FrmFormsHelper::get_default_html( 'after' );
286 + $options['submit_html'] = ( isset( $values['options']['submit_html'] ) && '' !== $values['options']['submit_html'] ) ? $values['options']['submit_html'] : FrmFormsHelper::get_default_html( 'submit' );
317 287
288 + if ( ! empty( $options['success_url'] ) && ! empty( $args['form_id'] ) ) {
289 + $options['success_url'] = FrmFormsHelper::maybe_add_sanitize_url_attr( $options['success_url'], (int) $args['form_id'] );
290 + $values['options']['success_url'] = $options['success_url'];
291 + }
292 +
318 293 /**
319 294 * Allows modifying form options before updating or creating.
320 295 *
321 296 * @since 5.4 Added the third param.
@@ -331,11 +306,8 @@
331 306 return $new_values;
332 307 }
333 308
334 309 /**
335 - * @param int $id Form ID.
336 - * @param array $values Form values array.
337 - *
338 310 * @return array
339 311 */
340 312 public static function update_fields( $id, $values ) {
341 313
@@ -343,9 +315,8 @@
343 315 return $values;
344 316 }
345 317
346 318 $all_fields = FrmField::get_all_for_form( $id );
347 -
348 319 if ( empty( $all_fields ) ) {
349 320 return $values;
350 321 }
351 322
@@ -354,9 +325,8 @@
354 325 }
355 326
356 327 $field_array = array();
357 328 $existing_keys = array_keys( $values['item_meta'] );
358 -
359 329 foreach ( $all_fields as $fid ) {
360 330 if ( ! in_array( $fid->id, $existing_keys ) && ( isset( $values['frm_fields_submitted'] ) && in_array( $fid->id, $values['frm_fields_submitted'] ) ) || isset( $values['options'] ) ) {
361 331 $values['item_meta'][ $fid->id ] = '';
362 332 }
@@ -375,9 +345,8 @@
375 345 continue;
376 346 }
377 347
378 348 $is_settings_page = ( isset( $values['options'] ) || isset( $values['field_options'][ 'custom_html_' . $field_id ] ) );
379 -
380 349 if ( $is_settings_page ) {
381 350 self::get_settings_page_html( $values, $field );
382 351
383 352 if ( ! defined( 'WP_IMPORTING' ) ) {
@@ -384,20 +353,15 @@
384 353 continue;
385 354 }
386 355 }
387 356
388 - // Updating the form.
357 + //updating the form
389 358 $update_options = FrmFieldsHelper::get_default_field_options_from_field( $field );
390 - // Don't check for POST html.
391 - unset( $update_options['custom_html'] );
359 + unset( $update_options['custom_html'] ); // don't check for POST html
392 360 $update_options = apply_filters( 'frm_field_options_to_update', $update_options );
393 361
394 - if ( ! is_array( $field->field_options ) ) {
395 - $field->field_options = array();
396 - }
397 -
398 362 foreach ( $update_options as $opt => $default ) {
399 - $field->field_options[ $opt ] = $values['field_options'][ $opt . '_' . $field_id ] ?? $default;
363 + $field->field_options[ $opt ] = isset( $values['field_options'][ $opt . '_' . $field_id ] ) ? $values['field_options'][ $opt . '_' . $field_id ] : $default;
400 364 self::sanitize_field_opt( $opt, $field->field_options[ $opt ] );
401 365 }
402 366
403 367 $field->field_options = apply_filters( 'frm_update_field_options', $field->field_options, $field, $values );
@@ -406,94 +370,32 @@
406 370 'field_options' => $field->field_options,
407 371 'default_value' => isset( $values[ 'default_value_' . $field_id ] ) ? FrmAppHelper::maybe_json_encode( $values[ 'default_value_' . $field_id ] ) : '',
408 372 );
409 373
410 - if ( ! FrmAppHelper::allow_unfiltered_html() && isset( $values['field_options'][ 'options_' . $field_id ] ) && is_array( $values['field_options'][ 'options_' . $field_id ] ) ) {
411 - foreach ( $values['field_options'][ 'options_' . $field_id ] as $option_key => $option ) {
412 - if ( is_array( $option ) ) {
413 - foreach ( $option as $key => $item ) {
414 - $values['field_options'][ 'options_' . $field_id ][ $option_key ][ $key ] = FrmAppHelper::kses( $item, 'all' );
415 - }
416 - }
417 - }
418 - }
419 -
420 374 self::prepare_field_update_values( $field, $values, $new_field );
421 - self::maybe_update_max_option( $field, $values, $new_field );
422 375
423 376 FrmField::update( $field_id, $new_field );
424 377
425 378 FrmField::delete_form_transient( $field->form_id );
426 - }//end foreach
379 + }
427 380 self::clear_form_cache();
428 381
429 382 return $values;
430 383 }
431 384
432 - /**
433 - * Resets the 'max' option of a field when changing paragraph field type to other field types like text, email etc.
434 - *
435 - * @since 6.7
436 - *
437 - * @param array $field
438 - * @param array $values
439 - * @param array $new_field
440 - *
441 - * @return void
442 - */
443 - private static function maybe_update_max_option( $field, $values, &$new_field ) {
444 - if ( $field->type === 'textarea' &&
445 - ! empty( $values['field_options'][ 'type_' . $field->id ] ) &&
446 - in_array( $values['field_options'][ 'type_' . $field->id ], array( 'text', 'email', 'url', 'password', 'phone' ), true ) ) {
447 -
448 - $new_field['field_options']['max'] = '';
449 -
450 - /**
451 - * Update posted field setting so that new 'max' option is displayed after form is saved and page reloads.
452 - * FrmFieldsHelper::fill_default_field_opts populates field options by calling self::get_posted_field_setting.
453 - */
454 - $_POST['field_options'][ 'max_' . $field->id ] = '';
455 - }
456 - }
457 -
458 - /**
459 - * @param string $opt
460 - * @param mixed $value
461 - *
462 - * @return void
463 - */
464 385 private static function sanitize_field_opt( $opt, &$value ) {
465 - if ( ! is_string( $value ) ) {
466 - return;
386 + if ( is_string( $value ) ) {
387 + if ( $opt === 'calc' ) {
388 + $value = self::sanitize_calc( $value );
389 + } else {
390 + $value = FrmAppHelper::kses( $value, 'all' );
391 + }
392 + $value = trim( $value );
467 393 }
468 -
469 - /**
470 - * Allow the option to turn off sanitization for a field. This way a custom rule can be used instead.
471 - * Make sure to add custom sanitization using the frm_update_field_options filter as the data will no longer be sanitized.
472 - *
473 - * @since 6.0
474 - *
475 - * @param bool $should_sanitize
476 - * @param string $opt
477 - */
478 - $should_sanitize = apply_filters( 'frm_should_sanitize_field_opt_string', true, $opt );
479 -
480 - if ( ! $should_sanitize ) {
481 - return;
482 - }
483 -
484 - if ( $opt === 'calc' ) {
485 - $value = self::sanitize_calc( $value );
486 - } else {
487 - $value = FrmAppHelper::kses( $value, 'all' );
488 - }
489 -
490 - $value = trim( $value );
491 394 }
492 395
493 396 /**
494 397 * @param string $value
495 - *
496 398 * @return string
497 399 */
498 400 private static function sanitize_calc( $value ) {
499 401 if ( false !== strpos( $value, '<' ) ) {
@@ -498,10 +400,9 @@
498 400 private static function sanitize_calc( $value ) {
499 401 if ( false !== strpos( $value, '<' ) ) {
500 402 $value = self::normalize_calc_spaces( $value );
501 403 }
502 - // Allow <= and >=.
503 - $allow = array( '<= ', ' >=' );
404 + $allow = array( '<= ', ' >=' ); // Allow <= and >=
504 405 $temp = array( '< = ', ' > =' );
505 406 $value = str_replace( $allow, $temp, $value );
506 407 $value = strip_tags( $value );
507 408 $value = str_replace( $temp, $allow, $value );
@@ -512,44 +413,35 @@
512 413 * Format a comparison like 5<10 to 5 < 10. Also works on 5< 10, 5 <10, 5<=10 variations.
513 414 * This is to avoid an issue with unspaced calculations being recognized as HTML that gets removed when strip_tags is called.
514 415 *
515 416 * @param string $calc
516 - *
517 417 * @return string
518 418 */
519 419 private static function normalize_calc_spaces( $calc ) {
520 420 // Check for a pattern with 5 parts
521 - // $1 \d|\] the first comparison digit or the end of a comparison shortcode.
421 + // $1 \d the first comparison digit.
522 422 // $2 a space (optional).
523 423 // $3 an equals sign (optional) that follows the < operator for <= comparisons.
524 424 // $4 another space (optional).
525 - // $5 \d|\[ the second comparison digit or the start of a comparison shortcode.
526 - $calc = preg_replace( '/(\d|\])( ){0,1}<(=){0,1}( ){0,1}(\d|\[)/', '$1 <$3 $5', $calc );
527 -
528 - return $calc;
425 + // $5 \d the second comparison digit.
426 + return preg_replace( '/(\d)( ){0,1}<(=){0,1}( ){0,1}(\d)/', '$1 <$3 $5', $calc );
529 427 }
530 428
531 429 /**
532 430 * Updating the settings page
533 - *
534 - * @param array $values Form values array.
535 - * @param object $field Field object, passed by reference.
536 - *
537 - * @return void
538 431 */
539 432 private static function get_settings_page_html( $values, &$field ) {
540 433 if ( isset( $values['field_options'][ 'custom_html_' . $field->id ] ) ) {
541 434 $prev_opts = array();
542 - $fallback_html = $field->field_options['custom_html'] ?? FrmFieldsHelper::get_default_html( $field->type );
435 + $fallback_html = isset( $field->field_options['custom_html'] ) ? $field->field_options['custom_html'] : FrmFieldsHelper::get_default_html( $field->type );
543 436
544 - $field->field_options['custom_html'] = $values['field_options'][ 'custom_html_' . $field->id ] ?? $fallback_html;
545 - } elseif ( $field->type === 'hidden' || $field->type === 'user_id' ) {
437 + $field->field_options['custom_html'] = isset( $values['field_options'][ 'custom_html_' . $field->id ] ) ? $values['field_options'][ 'custom_html_' . $field->id ] : $fallback_html;
438 + } elseif ( $field->type == 'hidden' || $field->type == 'user_id' ) {
546 439 $prev_opts = $field->field_options;
547 440 }
548 441
549 442 if ( isset( $prev_opts ) ) {
550 443 $field->field_options = apply_filters( 'frm_update_form_field_options', $field->field_options, $field, $values );
551 -
552 444 if ( $prev_opts != $field->field_options ) {
553 445 FrmField::update( $field->id, array( 'field_options' => $field->field_options ) );
554 446 }
555 447 }
@@ -554,15 +446,8 @@
554 446 }
555 447 }
556 448 }
557 449
558 - /**
559 - * @param object $field
560 - * @param array $values
561 - * @param array $new_field
562 - *
563 - * @return void
564 - */
565 450 private static function prepare_field_update_values( $field, $values, &$new_field ) {
566 451 $field_cols = array(
567 452 'field_order' => 0,
568 453 'field_key' => '',
@@ -571,16 +456,12 @@
571 456 'description' => '',
572 457 'options' => '',
573 458 'name' => '',
574 459 );
575 -
576 460 foreach ( $field_cols as $col => $default ) {
577 - $default = $default === '' ? $field->{$col} : $default;
578 - $new_field[ $col ] = $values['field_options'][ $col . '_' . $field->id ] ?? $default;
579 - }
461 + $default = ( $default === '' ) ? $field->{$col} : $default;
580 462
581 - if ( $field->type === 'submit' && isset( $new_field['field_order'] ) && (int) $new_field['field_order'] === FrmSubmitHelper::DEFAULT_ORDER ) {
582 - $new_field['field_order'] = $field->field_order;
463 + $new_field[ $col ] = isset( $values['field_options'][ $col . '_' . $field->id ] ) ? $values['field_options'][ $col . '_' . $field->id ] : $default;
583 464 }
584 465
585 466 // Don't save the template option.
586 467 if ( is_array( $new_field['options'] ) && isset( $new_field['options']['000'] ) ) {
@@ -592,12 +473,9 @@
592 473 * Get a list of all form settings that should be translated
593 474 * on a multilingual site.
594 475 *
595 476 * @since 3.06.01
596 - *
597 - * @param object $form The form object.
598 - *
599 - * @return array
477 + * @param object $form - The form object
600 478 */
601 479 public static function translatable_strings( $form ) {
602 480 $strings = array(
603 481 'name',
@@ -614,12 +492,11 @@
614 492 return apply_filters( 'frm_form_strings', $strings, $form );
615 493 }
616 494
617 495 /**
618 - * @param int $id
619 496 * @param string $status
620 497 *
621 - * @return bool|int
498 + * @return int|boolean
622 499 */
623 500 public static function set_status( $id, $status ) {
624 501 if ( 'trash' == $status ) {
625 502 return self::trash( $id );
@@ -625,10 +502,9 @@
625 502 return self::trash( $id );
626 503 }
627 504
628 505 $statuses = array( 'published', 'draft', 'trash' );
629 -
630 - if ( ! in_array( $status, $statuses, true ) ) {
506 + if ( ! in_array( $status, $statuses ) ) {
631 507 return false;
632 508 }
633 509
634 510 global $wpdb;
@@ -655,11 +531,9 @@
655 531 return $query_results;
656 532 }
657 533
658 534 /**
659 - * @param int|string $id Form ID.
660 - *
661 - * @return bool|int
535 + * @return int|boolean
662 536 */
663 537 public static function trash( $id ) {
664 538 if ( ! EMPTY_TRASH_DAYS ) {
665 539 return self::destroy( $id );
@@ -665,17 +539,12 @@
665 539 return self::destroy( $id );
666 540 }
667 541
668 542 $form = self::getOne( $id );
669 -
670 543 if ( ! $form ) {
671 544 return false;
672 545 }
673 546
674 - if ( $form->status === 'trash' ) {
675 - return false;
676 - }
677 -
678 547 $options = $form->options;
679 548 $options['trash_time'] = time();
680 549
681 550 global $wpdb;
@@ -708,26 +577,21 @@
708 577 return $query_results;
709 578 }
710 579
711 580 /**
712 - * @param int|string $id Form ID.
713 - *
714 - * @return bool|int
581 + * @return int|boolean
715 582 */
716 583 public static function destroy( $id ) {
717 584 global $wpdb;
718 585
719 586 $form = self::getOne( $id );
720 -
721 587 if ( ! $form ) {
722 588 return false;
723 589 }
724 -
725 590 $id = $form->id;
726 591
727 592 // Disconnect the entries from this form
728 593 $entries = FrmDb::get_col( $wpdb->prefix . 'frm_items', array( 'form_id' => $id ) );
729 -
730 594 foreach ( $entries as $entry_id ) {
731 595 FrmEntry::destroy( $entry_id );
732 596 unset( $entry_id );
733 597 }
@@ -735,14 +599,10 @@
735 599 // Disconnect the fields from this form
736 600 $wpdb->query( $wpdb->prepare( 'DELETE fi FROM ' . $wpdb->prefix . 'frm_fields AS fi LEFT JOIN ' . $wpdb->prefix . 'frm_forms fr ON (fi.form_id = fr.id) WHERE fi.form_id=%d OR parent_form_id=%d', $id, $id ) );
737 601
738 602 $query_results = $wpdb->query( $wpdb->prepare( 'DELETE FROM ' . $wpdb->prefix . 'frm_forms WHERE id=%d OR parent_form_id=%d', $id, $id ) );
739 -
740 603 if ( $query_results ) {
741 604 // Delete all form actions linked to this form
742 - /**
743 - * @var FrmFormAction
744 - */
745 605 $action_control = FrmFormActionsController::get_form_actions( 'email' );
746 606 $action_control->destroy( $id, 'all' );
747 607
748 608 // Clear form caching
@@ -757,16 +617,14 @@
757 617
758 618 /**
759 619 * Delete trashed forms based on how long they have been trashed
760 620 *
761 - * @param int|string $delete_timestamp Timestamp cutoff for deletion.
762 - *
763 621 * @return int The number of forms deleted
764 622 */
765 623 public static function scheduled_delete( $delete_timestamp = '' ) {
766 624 global $wpdb;
767 625
768 - $trash_forms = FrmDb::get_results( $wpdb->prefix . 'frm_forms', array( 'status' => 'trash' ), 'id, parent_form_id, options' );
626 + $trash_forms = FrmDb::get_results( $wpdb->prefix . 'frm_forms', array( 'status' => 'trash' ), 'id, options' );
769 627
770 628 if ( ! $trash_forms ) {
771 629 return 0;
772 630 }
@@ -775,18 +633,13 @@
775 633 $delete_timestamp = time() - ( DAY_IN_SECONDS * EMPTY_TRASH_DAYS );
776 634 }
777 635
778 636 $count = 0;
779 -
780 637 foreach ( $trash_forms as $form ) {
781 638 FrmAppHelper::unserialize_or_decode( $form->options );
782 -
783 639 if ( ! isset( $form->options['trash_time'] ) || $form->options['trash_time'] < $delete_timestamp ) {
784 640 self::destroy( $form->id );
785 -
786 - if ( empty( $form->parent_form_id ) ) {
787 - ++$count;
788 - }
641 + $count ++;
789 642 }
790 643
791 644 unset( $form );
792 645 }
@@ -794,15 +647,12 @@
794 647 return $count;
795 648 }
796 649
797 650 /**
798 - * @param int|string $id Form ID or key.
799 - *
800 651 * @return string form name
801 652 */
802 653 public static function getName( $id ) {
803 654 $form = FrmDb::check_cache( $id, 'frm_form' );
804 -
805 655 if ( $form ) {
806 656 $r = stripslashes( $form->name );
807 657
808 658 return $r;
@@ -809,12 +659,10 @@
809 659 }
810 660
811 661 $query_key = is_numeric( $id ) ? 'id' : 'form_key';
812 662 $r = FrmDb::get_var( 'frm_forms', array( $query_key => $id ), 'name' );
663 + $r = stripslashes( $r );
813 664
814 - // An empty form name can result in a null value.
815 - $r = is_null( $r ) ? '' : stripslashes( $r );
816 -
817 665 return $r;
818 666 }
819 667
820 668 /**
@@ -830,9 +678,9 @@
830 678
831 679 /**
832 680 * @since 3.0
833 681 *
834 - * @param int|string $id
682 + * @param int $id
835 683 *
836 684 * @return string form key
837 685 */
838 686 public static function get_key_by_id( $id ) {
@@ -837,9 +685,8 @@
837 685 */
838 686 public static function get_key_by_id( $id ) {
839 687 $id = (int) $id;
840 688 $cache = FrmDb::check_cache( $id, 'frm_form' );
841 -
842 689 if ( $cache ) {
843 690 return $cache->form_key;
844 691 }
845 692
@@ -850,13 +697,11 @@
850 697
851 698 /**
852 699 * If $form is numeric, get the form object
853 700 *
701 + * @param object|int $form
702 + *
854 703 * @since 2.0.9
855 - *
856 - * @param int|object $form
857 - *
858 - * @return void
859 704 */
860 705 public static function maybe_get_form( &$form ) {
861 706 if ( ! is_object( $form ) && ! is_array( $form ) && ! empty( $form ) ) {
862 707 $form = self::getOne( $form );
@@ -863,28 +708,27 @@
863 708 }
864 709 }
865 710
866 711 /**
867 - * @param int|string $id
868 - * @param false|int $blog_id
869 - *
870 - * @return stdClass|null
712 + * @return object form
871 713 */
872 714 public static function getOne( $id, $blog_id = false ) {
873 715 global $wpdb;
874 716
875 717 if ( $blog_id && is_multisite() ) {
876 - $prefix = $wpdb->get_blog_prefix( $blog_id );
718 + global $wpmuBaseTablePrefix;
719 + $prefix = $wpmuBaseTablePrefix ? $wpmuBaseTablePrefix . $blog_id . '_' : $wpdb->get_blog_prefix( $blog_id );
720 +
877 721 $table_name = $prefix . 'frm_forms';
878 722 } else {
879 723 $table_name = $wpdb->prefix . 'frm_forms';
880 724 $cache = wp_cache_get( $id, 'frm_form' );
881 -
882 725 if ( $cache ) {
883 726 if ( isset( $cache->options ) ) {
884 727 FrmAppHelper::unserialize_or_decode( $cache->options );
885 728 }
886 - return self::prepare_form_row_data( $cache );
729 +
730 + return wp_unslash( $cache );
887 731 }
888 732 }
889 733
890 734 if ( is_numeric( $id ) ) {
@@ -899,49 +743,17 @@
899 743 FrmDb::set_cache( $results->id, $results, 'frm_form' );
900 744 FrmAppHelper::unserialize_or_decode( $results->options );
901 745 }
902 746
903 - return self::prepare_form_row_data( $results );
747 + return apply_filters( 'frm_form_object', wp_unslash( $results ) );
904 748 }
905 749
906 750 /**
907 - * Make sure that if $row is an object, that $row->options is an array and not a string.
908 - *
909 - * @since 6.8.3
910 - *
911 - * @param stdClass|null $row The database row for a target form.
912 - *
913 - * @return stdClass|null
751 + * @return object|array of objects
914 752 */
915 - private static function prepare_form_row_data( $row ) {
916 - $row = wp_unslash( $row );
917 -
918 - if ( ! is_object( $row ) ) {
919 - return $row;
920 - }
921 -
922 - if ( ! is_array( $row->options ) ) {
923 - $row->options = FrmFormsHelper::get_default_opts();
924 - }
925 -
926 - /**
927 - * @since 4.03.02
928 - *
929 - * @param stdClass $row
930 - */
931 - return apply_filters( 'frm_form_object', $row );
932 - }
933 -
934 - /**
935 - * @param array|string $where Where conditions array or raw WHERE string.
936 - * @param string $order_by Order by clause.
937 - * @param int|string $limit Limit clause or number.
938 - *
939 - * @return array|object of objects
940 - */
941 753 public static function getAll( $where = array(), $order_by = '', $limit = '' ) {
942 754 if ( is_array( $where ) && ! empty( $where ) ) {
943 - if ( ! empty( $where['is_template'] ) && ! isset( $where['status'] ) && ! isset( $where['status !'] ) ) {
755 + if ( isset( $where['is_template'] ) && $where['is_template'] && ! isset( $where['status'] ) && ! isset( $where['status !'] ) ) {
944 756 // don't get trashed templates
945 757 $where['status'] = array( null, '', 'published' );
946 758 }
947 759
@@ -948,9 +760,9 @@
948 760 $results = FrmDb::get_results( 'frm_forms', $where, '*', compact( 'order_by', 'limit' ) );
949 761 } else {
950 762 global $wpdb;
951 763
952 - // The query has already been prepared if this is not an array.
764 + // the query has already been prepared if this is not an array
953 765 $query = 'SELECT * FROM ' . $wpdb->prefix . 'frm_forms' . FrmDb::prepend_and_or_where( ' WHERE ', $where ) . FrmDb::esc_order( $order_by ) . FrmDb::esc_limit( $limit );
954 766 $results = $wpdb->get_results( $query ); // phpcs:ignore WordPress.DB.PreparedSQL.NotPrepared
955 767 }
956 768
@@ -960,9 +772,9 @@
960 772 FrmAppHelper::unserialize_or_decode( $result->options );
961 773 }
962 774 }
963 775
964 - if ( $limit === ' LIMIT 1' || $limit == 1 ) {
776 + if ( $limit == ' LIMIT 1' || $limit == 1 ) {
965 777 // return the first form object if we are only getting one form
966 778 $results = reset( $results );
967 779 }
968 780
@@ -972,20 +784,14 @@
972 784 /**
973 785 * Get all published forms
974 786 *
975 787 * @since 2.0
976 - *
977 - * @param array $query
978 - * @param int $limit
979 - * @param string $inc_children
980 - *
981 - * @return array|object of forms A single form object would be passed if $limit was set to 1.
788 + * @return array of forms
982 789 */
983 790 public static function get_published_forms( $query = array(), $limit = 999, $inc_children = 'exclude' ) {
984 791 $query['is_template'] = 0;
985 792 $query['status'] = array( null, '', 'published' );
986 -
987 - if ( $inc_children === 'exclude' ) {
793 + if ( $inc_children == 'exclude' ) {
988 794 $query['parent_form_id'] = array( null, 0 );
989 795 }
990 796
991 797 $forms = self::getAll( $query, 'name', $limit );
@@ -1001,14 +807,13 @@
1001 807
1002 808 $cache_key = 'frm_form_counts';
1003 809
1004 810 $counts = wp_cache_get( $cache_key, 'frm_form' );
1005 -
1006 811 if ( false !== $counts ) {
1007 812 return $counts;
1008 813 }
1009 814
1010 - $results = FrmDb::get_results(
815 + $results = (array) FrmDb::get_results(
1011 816 'frm_forms',
1012 817 array(
1013 818 'or' => 1,
1014 819 'parent_form_id' => null,
@@ -1022,18 +827,18 @@
1022 827
1023 828 foreach ( $results as $row ) {
1024 829 if ( 'trash' != $row->status ) {
1025 830 if ( $row->is_template ) {
1026 - ++$counts['template'];
831 + $counts['template'] ++;
1027 832 } else {
1028 - ++$counts['published'];
833 + $counts['published'] ++;
1029 834 }
1030 835 } else {
1031 - ++$counts['trash'];
836 + $counts['trash'] ++;
1032 837 }
1033 838
1034 839 if ( 'draft' == $row->status ) {
1035 - ++$counts['draft'];
840 + $counts['draft'] ++;
1036 841 }
1037 842
1038 843 unset( $row );
1039 844 }
@@ -1049,10 +854,8 @@
1049 854 * Called when a form is created, updated, duplicated, or deleted
1050 855 * or when the form status is changed
1051 856 *
1052 857 * @since 2.0.4
1053 - *
1054 - * @return void
1055 858 */
1056 859 public static function clear_form_cache() {
1057 860 FrmDb::cache_delete_group( 'frm_form' );
1058 861 }
@@ -1057,22 +860,16 @@
1057 860 FrmDb::cache_delete_group( 'frm_form' );
1058 861 }
1059 862
1060 863 /**
1061 - * @param array $values Form values to validate.
1062 - *
1063 864 * @return array of errors
1064 865 */
1065 866 public static function validate( $values ) {
1066 867 $errors = array();
868 +
1067 869 return apply_filters( 'frm_validate_form', $errors, $values );
1068 870 }
1069 871
1070 - /**
1071 - * @param object|null $form
1072 - *
1073 - * @return array
1074 - */
1075 872 public static function get_params( $form = null ) {
1076 873 global $frm_vars;
1077 874
1078 875 if ( ! $form ) {
@@ -1102,17 +899,16 @@
1102 899 );
1103 900
1104 901 $values = array();
1105 902 $values['posted_form_id'] = FrmAppHelper::get_param( 'form_id', '', 'get', 'absint' );
1106 -
1107 903 if ( ! $values['posted_form_id'] ) {
1108 904 $values['posted_form_id'] = FrmAppHelper::get_param( 'form', '', 'get', 'absint' );
1109 905 }
1110 906
1111 907 if ( $form->id == $values['posted_form_id'] ) {
1112 - // If there are two forms on the same page, make sure not to submit both.
908 + //if there are two forms on the same page, make sure not to submit both
1113 909 foreach ( $default_values as $var => $default ) {
1114 - if ( $var === 'action' ) {
910 + if ( $var == 'action' ) {
1115 911 $values[ $var ] = FrmAppHelper::get_param( $action_var, $default, 'get', 'sanitize_title' );
1116 912 } else {
1117 913 $values[ $var ] = FrmAppHelper::get_param( $var, $default, 'get', 'sanitize_text_field' );
1118 914 }
@@ -1133,11 +929,8 @@
1133 929
1134 930 return $values;
1135 931 }
1136 932
1137 - /**
1138 - * @return array
1139 - */
1140 933 public static function list_page_params() {
1141 934 $values = array();
1142 935 $defaults = array(
1143 936 'template' => 0,
@@ -1147,9 +940,8 @@
1147 940 'search' => '',
1148 941 'sort' => '',
1149 942 'sdir' => '',
1150 943 );
1151 -
1152 944 foreach ( $defaults as $var => $default ) {
1153 945 $values[ $var ] = FrmAppHelper::get_param( $var, $default, 'get', 'sanitize_text_field' );
1154 946 }
1155 947
@@ -1155,16 +947,10 @@
1155 947
1156 948 return $values;
1157 949 }
1158 950
1159 - /**
1160 - * @param int|object|string|null $form
1161 - *
1162 - * @return array
1163 - */
1164 951 public static function get_admin_params( $form = null ) {
1165 952 $form_id = $form;
1166 -
1167 953 if ( $form === null ) {
1168 954 $form_id = self::get_current_form_id();
1169 955 } elseif ( $form && is_object( $form ) ) {
1170 956 $form_id = $form->id;
@@ -1182,9 +968,8 @@
1182 968 'sdir' => '',
1183 969 'fid' => '',
1184 970 'keep_post' => '',
1185 971 );
1186 -
1187 972 foreach ( $defaults as $var => $default ) {
1188 973 $values[ $var ] = FrmAppHelper::get_param( $var, $default, 'get', 'sanitize_text_field' );
1189 974 }
1190 975
@@ -1190,39 +975,27 @@
1190 975
1191 976 return $values;
1192 977 }
1193 978
1194 - /**
1195 - * @param string $default_form
1196 - *
1197 - * @return int|string
1198 - */
1199 979 public static function get_current_form_id( $default_form = 'none' ) {
1200 - if ( 'first' === $default_form ) {
980 + if ( 'first' == $default_form ) {
1201 981 $form = self::get_current_form();
1202 982 } else {
1203 983 $form = self::maybe_get_current_form();
1204 984 }
1205 -
1206 985 $form_id = $form ? $form->id : 0;
1207 986
1208 987 return $form_id;
1209 988 }
1210 989
1211 - /**
1212 - * @param int|string $form_id
1213 - *
1214 - * @return false|int|object|string
1215 - */
1216 990 public static function maybe_get_current_form( $form_id = 0 ) {
1217 991 global $frm_vars;
1218 992
1219 - if ( ! empty( $frm_vars['current_form'] ) && ( ! $form_id || $form_id == $frm_vars['current_form']->id ) ) {
993 + if ( isset( $frm_vars['current_form'] ) && $frm_vars['current_form'] && ( ! $form_id || $form_id == $frm_vars['current_form']->id ) ) {
1220 994 return $frm_vars['current_form'];
1221 995 }
1222 996
1223 997 $form_id = FrmAppHelper::get_param( 'form', $form_id, 'get', 'absint' );
1224 -
1225 998 if ( $form_id ) {
1226 999 $form_id = self::set_current_form( $form_id );
1227 1000 }
1228 1001
@@ -1228,16 +1001,10 @@
1228 1001
1229 1002 return $form_id;
1230 1003 }
1231 1004
1232 - /**
1233 - * @param int $form_id
1234 - *
1235 - * @return false|object
1236 - */
1237 1005 public static function get_current_form( $form_id = 0 ) {
1238 1006 $form = self::maybe_get_current_form( $form_id );
1239 -
1240 1007 if ( is_numeric( $form ) ) {
1241 1008 $form = self::set_current_form( $form );
1242 1009 }
1243 1010
@@ -1243,18 +1010,12 @@
1243 1010
1244 1011 return $form;
1245 1012 }
1246 1013
1247 - /**
1248 - * @param int $form_id
1249 - *
1250 - * @return false|object
1251 - */
1252 1014 public static function set_current_form( $form_id ) {
1253 1015 global $frm_vars;
1254 1016
1255 1017 $query = array();
1256 -
1257 1018 if ( $form_id ) {
1258 1019 $query['id'] = $form_id;
1259 1020 }
1260 1021
@@ -1262,19 +1023,11 @@
1262 1023
1263 1024 return $frm_vars['current_form'];
1264 1025 }
1265 1026
1266 - /**
1267 - * @param object $form
1268 - * @param int|string $this_load
1269 - * @param bool $global_load
1270 - *
1271 - * @return bool
1272 - */
1273 1027 public static function is_form_loaded( $form, $this_load, $global_load ) {
1274 1028 global $frm_vars;
1275 1029 $small_form = new stdClass();
1276 -
1277 1030 foreach ( array( 'id', 'form_key', 'name' ) as $var ) {
1278 1031 $small_form->{$var} = $form->{$var};
1279 1032 unset( $var );
1280 1033 }
@@ -1285,9 +1038,9 @@
1285 1038 $global_load = true;
1286 1039 $frm_vars['load_css'] = true;
1287 1040 }
1288 1041
1289 - return empty( $frm_vars['css_loaded'] ) && $global_load;
1042 + return ( ( ! isset( $frm_vars['css_loaded'] ) || ! $frm_vars['css_loaded'] ) && $global_load );
1290 1043 }
1291 1044
1292 1045 /**
1293 1046 * @since 4.06.03
@@ -1302,26 +1055,13 @@
1302 1055 } else {
1303 1056 $visible = true;
1304 1057 }
1305 1058
1306 - /**
1307 - * @since 6.25
1308 - *
1309 - * @param bool $visible
1310 - * @param object $form
1311 - */
1312 - $visible = (bool) apply_filters( 'frm_form_is_visible', $visible, $form );
1313 -
1314 1059 return $visible;
1315 1060 }
1316 1061
1317 - /**
1318 - * @param object $form
1319 - *
1320 - * @return bool
1321 - */
1322 1062 public static function show_submit( $form ) {
1323 - $show = ( ! $form->is_template && $form->status === 'published' && ! FrmAppHelper::is_admin() );
1063 + $show = ( ! $form->is_template && $form->status == 'published' && ! FrmAppHelper::is_admin() );
1324 1064 $show = apply_filters( 'frm_show_submit_button', $show, $form );
1325 1065
1326 1066 return $show;
1327 1067 }
@@ -1327,18 +1067,14 @@
1327 1067 }
1328 1068
1329 1069 /**
1330 1070 * @since 2.3
1331 - *
1332 - * @param array $atts Attributes including form, option, and default.
1333 - *
1334 - * @return mixed
1335 1071 */
1336 1072 public static function get_option( $atts ) {
1337 - $form = $atts['form'];
1338 - $default = $atts['default'] ?? '';
1073 + $form = $atts['form'];
1074 + $default = isset( $atts['default'] ) ? $atts['default'] : '';
1339 1075
1340 - return $form->options[ $atts['option'] ] ?? $default;
1076 + return isset( $form->options[ $atts['option'] ] ) ? $form->options[ $atts['option'] ] : $default;
1341 1077 }
1342 1078
1343 1079 /**
1344 1080 * Get the link to edit this form.
@@ -1343,12 +1079,9 @@
1343 1079 /**
1344 1080 * Get the link to edit this form.
1345 1081 *
1346 1082 * @since 4.0
1347 - *
1348 1083 * @param int $form_id The id of the form.
1349 - *
1350 - * @return string
1351 1084 */
1352 1085 public static function get_edit_link( $form_id ) {
1353 1086 return admin_url( 'admin.php?page=formidable&frm_action=edit&id=' . $form_id );
1354 1087 }
@@ -1353,67 +1086,9 @@
1353 1086 return admin_url( 'admin.php?page=formidable&frm_action=edit&id=' . $form_id );
1354 1087 }
1355 1088
1356 1089 /**
1357 - * Check if the "Submit this form with AJAX" setting is toggled on.
1358 - *
1359 - * @since 6.2
1360 - *
1361 - * @param stdClass $form
1362 - *
1363 - * @return bool
1364 - */
1365 - public static function is_ajax_on( $form ) {
1366 - return ! empty( $form->options['ajax_submit'] );
1367 - }
1368 -
1369 - /**
1370 - * Get the latest form available.
1371 - *
1372 - * @since 6.8
1373 - *
1374 - * @return object
1375 - */
1376 - public static function get_latest_form() {
1377 -
1378 - $args = array(
1379 - array(
1380 - 'or' => 1,
1381 - 'parent_form_id' => null,
1382 - 'parent_form_id <' => 1,
1383 - ),
1384 - 'is_template' => 0,
1385 - 'status !' => 'trash',
1386 - );
1387 -
1388 - return self::getAll( $args, 'created_at desc', 1 );
1389 - }
1390 -
1391 - /**
1392 - * Count and return total forms.
1393 - *
1394 - * @since 6.8
1395 - *
1396 - * @return int
1397 - */
1398 - public static function get_forms_count() {
1399 -
1400 - $args = array(
1401 - array(
1402 - 'or' => 1,
1403 - 'parent_form_id' => null,
1404 - 'parent_form_id <' => 1,
1405 - ),
1406 - 'is_template' => 0,
1407 - 'status !' => 'trash',
1408 - );
1409 -
1410 - return FrmDb::get_count( 'frm_forms', $args );
1411 - }
1412 -
1413 - /**
1414 - * @deprecated 2.03.05 This is still referenced in a few add ons (API, locations).
1415 - *
1090 + * @deprecated 3.0
1416 1091 * @codeCoverageIgnore
1417 1092 *
1418 1093 * @param string $key
1419 1094 *
@@ -1419,22 +1094,15 @@
1419 1094 *
1420 1095 * @return int form id
1421 1096 */
1422 1097 public static function getIdByKey( $key ) {
1423 - _deprecated_function( __FUNCTION__, '2.03.05', 'FrmForm::get_id_by_key' );
1424 - return self::get_id_by_key( $key );
1098 + return FrmFormDeprecated::getIdByKey( $key );
1425 1099 }
1426 1100
1427 1101 /**
1428 - * @deprecated 2.03.05 This is still referenced in the API add on as of v1.13.
1429 - *
1102 + * @deprecated 3.0
1430 1103 * @codeCoverageIgnore
1431 - *
1432 - * @param int|string $id
1433 - *
1434 - * @return string
1435 1104 */
1436 1105 public static function getKeyById( $id ) {
1437 - _deprecated_function( __FUNCTION__, '2.03.05', 'FrmForm::get_key_by_id' );
1438 - return self::get_key_by_id( $id );
1106 + return FrmFormDeprecated::getKeyById( $id );
1439 1107 }
1440 1108 }