| @@ -2,9 +2,9 @@ | ||
| 2 | 2 | /* |
| 3 | 3 | Plugin Name: iframe |
| 4 | 4 | Plugin URI: http://wordpress.org/plugins/iframe/ |
| 5 | 5 | Description: [iframe src="http://www.youtube.com/embed/4qsGTXLnmKs" width="100%" height="500"] shortcode |
| 6 | -Version: 3.0 | |
| 6 | +Version: 4.0 | |
| 7 | 7 | Author: webvitaly |
| 8 | 8 | Author URI: http://web-profile.com.ua/wordpress/plugins/ |
| 9 | 9 | License: GPLv3 |
| 10 | 10 | */ |
| @@ -9,9 +9,9 @@ | ||
| 9 | 9 | License: GPLv3 |
| 10 | 10 | */ |
| 11 | 11 | |
| 12 | 12 | |
| 13 | -function iframe_unqprfx_embed_shortcode( $atts, $content = null ) { | |
| 13 | +function iframe_unqprfx_embed_shortcode( $atts ) { | |
| 14 | 14 | $defaults = array( |
| 15 | 15 | 'src' => 'http://www.youtube.com/embed/4qsGTXLnmKs', |
| 16 | 16 | 'width' => '100%', |
| 17 | 17 | 'height' => '500', |
| @@ -25,33 +25,16 @@ | ||
| 25 | 25 | $atts[$default] = $value; |
| 26 | 26 | } |
| 27 | 27 | } |
| 28 | 28 | |
| 29 | - // get_params_from_url | |
| 30 | - if ( isset( $atts["get_params_from_url"] ) && ( $atts["get_params_from_url"] == '1' || $atts["get_params_from_url"] == 1 ) ) { | |
| 31 | - $encode_string = ''; | |
| 32 | - if ( $_GET != NULL ) { | |
| 33 | - if ( strpos( $atts["src"], '?' ) ) { // if we already have '?' and GET params | |
| 34 | - $encode_string = '&'; | |
| 35 | - } else { | |
| 36 | - $encode_string = '?'; | |
| 37 | - } | |
| 38 | - foreach( $_GET as $key => $value ) { | |
| 39 | - $encode_string .= $key.'='.$value.'&'; | |
| 40 | - } | |
| 41 | - } | |
| 42 | - $encode_string = rtrim($encode_string, '&'); // remove last '&' | |
| 43 | - $atts["src"] .= $encode_string; | |
| 44 | - } | |
| 45 | - | |
| 46 | - $html = "\n".'<!-- iframe plugin v.3.0 wordpress.org/plugins/iframe/ -->'."\n"; | |
| 29 | + $html = "\n".'<!-- iframe plugin v.4.0 wordpress.org/plugins/iframe/ -->'."\n"; | |
| 47 | 30 | $html .= '<iframe'; |
| 48 | 31 | foreach( $atts as $attr => $value ) { |
| 49 | - if ( $attr != 'same_height_as' ) { // remove some attributes | |
| 32 | + if ( strtolower($attr) != 'same_height_as' AND strtolower($attr) != 'onload' ) { // remove some attributes | |
| 50 | 33 | if ( $value != '' ) { // adding all attributes |
| 51 | - $html .= ' ' . $attr . '="' . $value . '"'; | |
| 34 | + $html .= ' ' . esc_attr( $attr ) . '="' . esc_attr( $value ) . '"'; | |
| 52 | 35 | } else { // adding empty attributes |
| 53 | - $html .= ' ' . $attr; | |
| 36 | + $html .= ' ' . esc_attr( $attr ); | |
| 54 | 37 | } |
| 55 | 38 | } |
| 56 | 39 | } |
| 57 | 40 | $html .= '></iframe>'."\n"; |
| @@ -60,10 +43,10 @@ | ||
| 60 | 43 | $html .= ' |
| 61 | 44 | <script> |
| 62 | 45 | document.addEventListener("DOMContentLoaded", function(){ |
| 63 | 46 | var target_element, iframe_element; |
| 64 | - iframe_element = document.querySelector("iframe.' . $atts["class"] . '"); | |
| 65 | - target_element = document.querySelector("' . $atts["same_height_as"] . '"); | |
| 47 | + iframe_element = document.querySelector("iframe.' . esc_attr( $atts["class"] ) . '"); | |
| 48 | + target_element = document.querySelector("' . esc_attr( $atts["same_height_as"] ) . '"); | |
| 66 | 49 | iframe_element.style.height = target_element.offsetHeight + "px"; |
| 67 | 50 | }); |
| 68 | 51 | </script> |
| 69 | 52 | '; |