PluginProbe
ManageWP Worker / trunk
ManageWP Worker vtrunk
4.9.38 4.9.37 4.9.36 4.9.35 4.9.34 3.8.7 3.8.8 3.9.0 3.9.1 3.9.10 3.9.11 3.9.12 3.9.13 3.9.14 3.9.15 3.9.16 3.9.17 3.9.18 3.9.19 3.9.2 3.9.20 3.9.21 3.9.22 3.9.23 3.9.24 All 73 releases
← All changes | init.php +698 -831 3.9.17 → trunk View file →
@@ -1,900 +1,767 @@
1 1 <?php
2 -/*
2 +/*
3 3 Plugin Name: ManageWP - Worker
4 -Plugin URI: http://managewp.com/
5 -Description: Manage all your blogs from one dashboard. Visit <a href="http://managewp.com">ManageWP.com</a> to sign up.
6 -Author: Prelovac Media
7 -Version: 3.9.17
8 -Author URI: http://www.prelovac.com
4 +Plugin URI: https://managewp.com
5 +Description: We help you efficiently manage all your WordPress websites. <strong>Updates, backups, 1-click login, migrations, security</strong> and more, on one dashboard. This service comes in two versions: standalone <a href="https://managewp.com">ManageWP</a> service that focuses on website management, and <a href="https://godaddy.com/pro">GoDaddy Pro</a> that includes additional tools for hosting, client management, lead generation, and more.
6 +Version: 4.9.38
7 +Author: GoDaddy
8 +Author URI: https://godaddy.com
9 +License: GPL2
10 +Text Domain: worker
11 +Network: true
9 12 */
10 13
11 -/*************************************************************
12 - *
13 - * init.php
14 - *
15 - * Initialize the communication with master
16 - *
17 - *
18 - * Copyright (c) 2011 Prelovac Media
19 - * www.prelovac.com
20 - **************************************************************/
14 +/*
15 + * This file is part of the ManageWP Worker plugin.
16 + *
17 + * (c) ManageWP LLC <[email protected]>
18 + *
19 + * For the full copyright and license information, please view the LICENSE
20 + * file that was distributed with this source code.
21 + */
21 22
22 -if(!defined('MMB_WORKER_VERSION'))
23 - define('MMB_WORKER_VERSION', '3.9.17');
23 +if (!defined('ABSPATH') && (!defined('MWP_SKIP_BOOTSTRAP') || !MWP_SKIP_BOOTSTRAP)) {
24 + exit;
25 +}
24 26
25 -if ( !defined('MMB_XFRAME_COOKIE')){
26 - $siteurl = function_exists('get_site_option') ? get_site_option( 'siteurl' ) : get_option('siteurl');
27 - define('MMB_XFRAME_COOKIE', $xframe = 'wordpress_'.md5($siteurl).'_xframe');
27 +if (!defined('MAX_PRIORITY_HOOK')) {
28 + define('MAX_PRIORITY_HOOK', 2147483647);
28 29 }
29 -global $wpdb, $mmb_plugin_dir, $mmb_plugin_url, $wp_version, $mmb_filters, $_mmb_item_filter;
30 -if (version_compare(PHP_VERSION, '5.0.0', '<')) // min version 5 supported
31 - exit("<p>ManageWP Worker plugin requires PHP 5 or higher.</p>");
32 30
31 +if (version_compare(phpversion(), '8.0', '>=') && !function_exists('set_time_limit')){
32 + function set_time_limit($seconds)
33 + {
34 + return false;
35 + }
36 +}
33 37
34 -$mmb_wp_version = $wp_version;
35 -$mmb_plugin_dir = WP_PLUGIN_DIR . '/' . basename(dirname(__FILE__));
36 -$mmb_plugin_url = WP_PLUGIN_URL . '/' . basename(dirname(__FILE__));
38 +/**
39 + * Handler for incomplete plugin installations.
40 + */
41 +if (!function_exists('mwp_fail_safe')):
42 + /**
43 + * Reserved memory for fatal error handling execution context.
44 + */
45 + $GLOBALS['mwp_reserved_memory'] = str_repeat(' ', 1024 * 20);
46 + /**
47 + * If we ever get only partially upgraded due to a server error or misconfiguration,
48 + * attempt to disable the plugin.
49 + */
50 + function mwp_fail_safe()
51 + {
52 + $GLOBALS['mwp_reserved_memory'] = null;
37 53
38 -require_once("$mmb_plugin_dir/helper.class.php");
39 -require_once("$mmb_plugin_dir/core.class.php");
40 -require_once("$mmb_plugin_dir/post.class.php");
41 -require_once("$mmb_plugin_dir/comment.class.php");
42 -require_once("$mmb_plugin_dir/stats.class.php");
43 -require_once("$mmb_plugin_dir/backup.class.php");
44 -require_once("$mmb_plugin_dir/installer.class.php");
45 -require_once("$mmb_plugin_dir/link.class.php");
46 -require_once("$mmb_plugin_dir/user.class.php");
47 -require_once("$mmb_plugin_dir/api.php");
54 + $lastError = error_get_last();
48 55
49 -require_once("$mmb_plugin_dir/plugins/search/search.php");
50 -require_once("$mmb_plugin_dir/plugins/cleanup/cleanup.php");
56 + $acceptedErrorTypes = array(
57 + E_ERROR,
58 + E_COMPILE_ERROR,
59 + );
51 60
52 -require_once("$mmb_plugin_dir/widget.class.php");
61 + if (!$lastError || !in_array($lastError['type'], $acceptedErrorTypes)) {
62 + return;
63 + }
53 64
54 -if( !function_exists ( 'mmb_parse_request' )) {
55 - function mmb_parse_request()
56 - {
57 -
58 - if (!isset($HTTP_RAW_POST_DATA)) {
59 - $HTTP_RAW_POST_DATA = file_get_contents('php://input');
60 - }
61 - ob_start();
62 -
63 - global $current_user, $mmb_core, $new_actions, $wp_db_version, $wpmu_version, $_wp_using_ext_object_cache;
64 - $data = base64_decode($HTTP_RAW_POST_DATA);
65 - if ($data)
66 - $num = @extract(unserialize($data));
67 -
68 - if (isset($action)) {
69 - $_wp_using_ext_object_cache = false;
70 - @set_time_limit(600);
71 -
72 - if (!$mmb_core->check_if_user_exists($params['username']))
73 - mmb_response('Username <b>' . $params['username'] . '</b> does not have administrator capabilities. Enter the correct username in the site options.', false);
74 -
75 - if ($action == 'add_site') {
76 - mmb_add_site($params);
77 - mmb_response('You should never see this.', false);
78 - }
65 + $activePlugins = get_option('active_plugins');
66 + $workerIndex = array_search(plugin_basename(__FILE__), is_array($activePlugins) ? $activePlugins : array());
67 + if ($workerIndex === false) {
68 + // Plugin is not yet enabled, possibly in activation context.
69 + return;
70 + }
79 71
80 - $auth = $mmb_core->authenticate_message($action . $id, $signature, $id);
81 - if ($auth === true) {
82 -
83 - if(isset($params['username']) && !is_user_logged_in()){
84 - $user = function_exists('get_user_by') ? get_user_by('login', $params['username']) : get_userdatabylogin( $params['username'] );
85 - wp_set_current_user($user->ID);
86 - }
87 -
88 - /* in case database upgrade required, do database backup and perform upgrade ( wordpress wp_upgrade() function ) */
89 - if( strlen(trim($wp_db_version)) && !defined('ACX_PLUGIN_DIR') ){
90 - if ( get_option('db_version') != $wp_db_version ) {
91 - /* in multisite network, please update database manualy */
92 - if (empty($wpmu_version) || (function_exists('is_multisite') && !is_multisite())){
93 - if( ! function_exists('wp_upgrade'))
94 - include_once(ABSPATH.'wp-admin/includes/upgrade.php');
95 -
96 - ob_clean();
97 - @wp_upgrade();
98 - @do_action('after_db_upgrade');
99 - ob_end_clean();
100 - }
101 - }
102 - }
103 -
104 - if(isset($params['secure'])){
105 - if($decrypted = $mmb_core->_secure_data($params['secure'])){
106 - $decrypted = maybe_unserialize($decrypted);
107 - if(is_array($decrypted)){
108 - foreach($decrypted as $key => $val){
109 - if(!is_numeric($key))
110 - $params[$key] = $val;
111 - }
112 - unset($params['secure']);
113 - } else $params['secure'] = $decrypted;
114 - }
115 - }
116 -
117 - if( !$mmb_core->register_action_params( $action, $params ) ){
118 - global $_mmb_plugin_actions;
119 - $_mmb_plugin_actions[$action] = $params;
120 - }
121 -
122 -
123 - } else {
124 - mmb_response($auth['error'], false);
125 - }
126 - } else {
127 - MMB_Stats::set_hit_count();
128 - }
129 - ob_end_clean();
130 - }
131 -}
132 -/* Main response function */
133 -if( !function_exists ( 'mmb_response' )) {
72 + $errorSource = realpath($lastError['file']);
73 + // We might be in eval() context.
74 + if (!$errorSource) {
75 + return;
76 + }
134 77
135 - function mmb_response($response = false, $success = true)
136 - {
137 - $return = array();
138 -
139 - if ((is_array($response) && empty($response)) || (!is_array($response) && strlen($response) == 0))
140 - $return['error'] = 'Empty response.';
141 - else if ($success)
142 - $return['success'] = $response;
143 - else
144 - $return['error'] = $response;
145 -
146 - if( !headers_sent() ){
147 - header('HTTP/1.0 200 OK');
148 - header('Content-Type: text/plain');
149 - }
150 - exit("<MWPHEADER>" . base64_encode(serialize($return))."<ENDMWPHEADER>");
151 - }
152 -}
78 + // The only fatal error that we would get would be a 'Class 'X' not found in ...', so look out only for those messages.
79 + if (!preg_match('/^(Uncaught Error: )?Class \'[^\']+\' not found/', $lastError['message']) &&
80 + !preg_match('/^(Uncaught Error: )?Call to undefined method /', $lastError['message']) &&
81 + !preg_match('/^require_once\(\): Failed opening required \'[^\']+\'/', $lastError['message'])
82 + ) {
83 + return;
84 + }
153 85
86 + // Only look for files that belong to this plugin.
87 + $pluginBase = realpath(dirname(__FILE__));
88 + if (stripos($errorSource, $pluginBase) !== 0) {
89 + return;
90 + }
154 91
92 + // Signal ourselves that the installation is corrupt.
93 + update_option('mwp_recovering', time());
155 94
156 -if( !function_exists ( 'mmb_add_site' )) {
157 - function mmb_add_site($params)
158 - {
159 - global $mmb_core;
160 - $num = extract($params);
161 -
162 - if ($num) {
163 - if (!get_option('_action_message_id') && !get_option('_worker_public_key')) {
164 - $public_key = base64_decode($public_key);
165 -
166 - if (function_exists('openssl_verify')) {
167 - $verify = openssl_verify($action . $id, base64_decode($signature), $public_key);
168 - if ($verify == 1) {
169 - $mmb_core->set_master_public_key($public_key);
170 - $mmb_core->set_worker_message_id($id);
171 - $mmb_core->get_stats_instance();
172 - if(is_array($notifications) && !empty($notifications)){
173 - $mmb_core->stats_instance->set_notifications($notifications);
174 - }
175 - if(is_array($brand) && !empty($brand)){
176 - update_option('mwp_worker_brand',$brand);
177 - }
178 -
179 - mmb_response($mmb_core->stats_instance->get_initial_stats(), true);
180 - } else if ($verify == 0) {
181 - mmb_response('Invalid message signature. Please contact us if you see this message often.', false);
182 - } else {
183 - mmb_response('Command not successful. Please try again.', false);
184 - }
185 - } else {
186 - if (!get_option('_worker_nossl_key')) {
187 - srand();
188 -
189 - $random_key = md5(base64_encode($public_key) . rand(0, getrandmax()));
190 -
191 - $mmb_core->set_random_signature($random_key);
192 - $mmb_core->set_worker_message_id($id);
193 - $mmb_core->set_master_public_key($public_key);
194 - $mmb_core->get_stats_instance();
195 - if(is_array($notifications) && !empty($notifications)){
196 - $mmb_core->stats_instance->set_notifications($notifications);
197 - }
198 -
199 - if(is_array($brand) && !empty($brand)){
200 - update_option('mwp_worker_brand',$brand);
201 - }
202 -
203 - mmb_response($mmb_core->stats_instance->get_initial_stats(), true);
204 - } else
205 - mmb_response('Please deactivate & activate ManageWP Worker plugin on your site, then re-add the site to your dashboard.', false);
206 - }
207 - } else {
208 - mmb_response('Please deactivate & activate ManageWP Worker plugin on your site and re-add the site to your dashboard.', false);
209 - }
210 - } else {
211 - mmb_response('Invalid parameters received. Please try again.', false);
212 - }
213 - }
214 -}
95 + $siteUrl = get_option('siteurl');
96 + $path = (string)parse_url($siteUrl, PHP_URL_PATH);
97 + $title = sprintf("ManageWP Worker corrupt on %s", $siteUrl);
98 + $to = get_option('admin_email');
99 + $brand = get_option('mwp_worker_brand');
100 + if (!empty($brand['admin_email'])) {
101 + $to = $brand['admin_email'];
102 + }
215 103
216 -if( !function_exists ( 'mmb_remove_site' )) {
217 - function mmb_remove_site($params)
218 - {
219 - extract($params);
220 - global $mmb_core;
221 - $mmb_core->uninstall( $deactivate );
222 -
223 - include_once(ABSPATH . 'wp-admin/includes/plugin.php');
224 - $plugin_slug = basename(dirname(__FILE__)) . '/' . basename(__FILE__);
225 -
226 - if ($deactivate) {
227 - deactivate_plugins($plugin_slug, true);
228 - }
229 -
230 - if (!is_plugin_active($plugin_slug))
231 - mmb_response(array(
232 - 'deactivated' => 'Site removed successfully. <br /><br />ManageWP Worker plugin successfully deactivated.'
233 - ), true);
234 - else
235 - mmb_response(array(
236 - 'removed_data' => 'Site removed successfully. <br /><br /><b>ManageWP Worker plugin was not deactivated.</b>'
237 - ), true);
238 -
239 - }
240 -}
241 -if( !function_exists ( 'mmb_stats_get' )) {
242 - function mmb_stats_get($params)
243 - {
244 - global $mmb_core;
245 - $mmb_core->get_stats_instance();
246 - mmb_response($mmb_core->stats_instance->get($params), true);
247 - }
248 -}
104 + $fullError = print_r($lastError, 1);
105 + $serviceID = (string)get_option('mwp_service_key');
106 + $body = sprintf("Corrupt ManageWP Worker v%s installation detected. Site URL in question is %s. User email is %s (service ID: %s). Attempting recovery process at %s. The error that caused this:\n\n<pre>%s</pre>", $GLOBALS['MMB_WORKER_VERSION'], $siteUrl, $to, $serviceID, date('Y-m-d H:i:s'), $fullError);
107 + mail('[email protected]', $title, $body, "Content-Type: text/html");
249 108
250 -if( !function_exists ( 'mmb_worker_header' )) {
251 - function mmb_worker_header()
252 - { global $mmb_core, $current_user;
253 -
254 - if(!headers_sent()){
255 - if(isset($current_user->ID))
256 - $expiration = time() + apply_filters('auth_cookie_expiration', 10800, $current_user->ID, false);
257 - else
258 - $expiration = time() + 10800;
259 -
260 - setcookie(MMB_XFRAME_COOKIE, md5(MMB_XFRAME_COOKIE), $expiration, COOKIEPATH, COOKIE_DOMAIN, false, true);
261 - $_COOKIE[MMB_XFRAME_COOKIE] = md5(MMB_XFRAME_COOKIE);
262 - }
263 - }
264 -}
109 + // If we're inside a cron scope, don't attempt to hide this error.
110 + if (defined('DOING_CRON') && DOING_CRON) {
111 + return;
112 + }
265 113
266 -if( !function_exists ( 'mmb_pre_init_stats' )) {
267 - function mmb_pre_init_stats( $params )
268 - {
269 - global $mmb_core;
270 - $mmb_core->get_stats_instance();
271 - return $mmb_core->stats_instance->pre_init_stats($params);
272 - }
273 -}
114 + // If we're inside a normal request scope retry the request so user doesn't have to see an ugly error page.
115 + if (!empty($_SERVER['REQUEST_URI'])) {
116 + $siteUrl .= substr($_SERVER['REQUEST_URI'], strlen($path));
117 + }
118 + if (isset($_SERVER['HTTP_MWP_ACTION'])) {
119 + echo "\nMWP_RETRY_ME: 1\n", json_encode(array('error' => 'Worker recover started', 'exception' => array(
120 + 'class' => 'Exception',
121 + 'message' => 'Worker recover started',
122 + 'code' => 10038,
123 + 'file' => __FILE__,
124 + 'line' => __LINE__,
125 + 'traceString' => '',
126 + 'context' => array(),
127 + 'type' => 'WORKER_RECOVER_STARTED',
128 + ))), "\n";
129 + exit;
130 + } elseif (headers_sent()) {
131 + // The headers are probably sent if the PHP configuration has the 'display_errors' directive enabled. In that case try a meta redirect.
132 + printf('<meta http-equiv="refresh" content="0; url=%s">', htmlspecialchars($siteUrl, ENT_QUOTES));
133 + } else {
134 + header('Location: '.htmlspecialchars($siteUrl, ENT_QUOTES));
135 + }
136 + exit;
137 + }
274 138
275 -//post
276 -if( !function_exists ( 'mmb_post_create' )) {
277 - function mmb_post_create($params)
278 - {
279 - global $mmb_core;
280 - $mmb_core->get_post_instance();
281 - $return = $mmb_core->post_instance->create($params);
282 - if (is_int($return))
283 - mmb_response($return, true);
284 - else{
285 - if(isset($return['error'])){
286 - mmb_response($return['error'], false);
287 - } else {
288 - mmb_response($return, false);
289 - }
290 - }
291 - }
292 -}
139 + register_shutdown_function('mwp_fail_safe');
140 +endif;
293 141
294 -if( !function_exists ( 'mmb_change_post_status' )) {
295 - function mmb_change_post_status($params)
296 - {
297 - global $mmb_core;
298 - $mmb_core->get_post_instance();
299 - $return = $mmb_core->post_instance->change_status($params);
300 - //mmb_response($return, true);
142 +if (!class_exists('MwpWorkerResponder', false)):
143 + /**
144 + * We're not allowed to use lambda functions because this is PHP 5.2, so use a responder
145 + * class that's able to access the service container.
146 + */
147 + class MwpWorkerResponder
148 + {
301 149
302 - }
150 + private $container;
151 +
152 + private $responseSent = false;
153 +
154 + function __construct(MWP_ServiceContainer_Interface $container)
155 + {
156 + $this->container = $container;
157 + }
158 +
159 + /**
160 + * @param Exception|Error $e
161 + * @param MWP_Http_ResponseInterface|null $response
162 + *
163 + * @throws null
164 + *
165 + * Note: Type hint removed from $response parameter to fix PHP 8.4+ deprecation warning
166 + * about implicitly nullable parameters while maintaining backward compatibility with PHP 5.5+.
167 + * The nullable type syntax (?Type) is not supported in PHP 5.5-7.0.
168 + */
169 + function callback($e = null, $response = null)
170 + {
171 + if ($response !== null && $response instanceof MWP_Http_ResponseInterface) {
172 + $responseEvent = new MWP_Event_MasterResponse($response);
173 + $this->container->getEventDispatcher()->dispatch(MWP_Event_Events::MASTER_RESPONSE, $responseEvent);
174 + $lastResponse = $responseEvent->getResponse();
175 +
176 + if ($lastResponse !== null) {
177 + if (!$this->responseSent) {
178 + // This looks pretty ugly, but the "execute PHP" function handles fatal errors and wraps them
179 + // in a valid action response. That fatal error may also be handled by the global fatal error
180 + // handler, which also wraps the error in a response. We keep the state in this class, so we
181 + // don't send a worker response twice, first time as an action response, second time as a
182 + // global response.
183 + // If this is to be removed, simply remove fatal error handling from the "execute PHP" action.
184 + $lastResponse->send();
185 + $this->responseSent = true;
186 + }
187 + exit;
188 + }
189 + } elseif ($e !== null) {
190 + // Exception is thrown and the response is empty. This should never happen, so don't try to hide it.
191 + throw $e;
192 + }
193 + }
194 +
195 + /**
196 + * @return callable
197 + */
198 + public function getCallback()
199 + {
200 + return array($this, 'callback');
201 + }
202 + }
203 +endif;
204 +
205 +if (!function_exists('mwp_container')):
206 + /**
207 + * @return MWP_ServiceContainer_Interface
208 + */
209 + function mwp_container()
210 + {
211 + static $container;
212 +
213 + if ($container === null) {
214 + $parameters = (array)get_option('mwp_container_parameters', array()) + (array)get_option('mwp_container_site_parameters', array());
215 + $requestId = isset($_GET['mwprid']) && is_string($_GET['mwprid']) ? $_GET['mwprid'] : null;
216 + $container = new MWP_ServiceContainer_Production(array(
217 + 'worker_realpath' => __FILE__,
218 + 'worker_basename' => 'worker/init.php',
219 + 'worker_version' => $GLOBALS['MMB_WORKER_VERSION'],
220 + 'worker_revision' => $GLOBALS['MMB_WORKER_REVISION'],
221 + 'request_id' => $requestId,
222 + ) + $parameters);
223 + }
224 +
225 + return $container;
226 + }
227 +endif;
228 +
229 +if (!class_exists('MwpRecoveryKit', false)):
230 + /**
231 + * This class must be isolated from the rest of the ManageWP Worker library, because
232 + * we're counting that we have only this file and WordPress bootstrapped.
233 + */
234 + class MwpRecoveryKit
235 + {
236 + const MAX_LOGGED_ERRORS = 5;
237 +
238 + private static $errorLog = array();
239 +
240 + private static function requestJson($url)
241 + {
242 + $response = wp_remote_get($url, array('timeout' => 60));
243 + if ($response instanceof WP_Error) {
244 + throw new Exception('Unable to download checksum.json: '.$response->get_error_message());
245 + }
246 + if ($response['response']['code'] !== 200) {
247 + throw new Exception('Unable to download checksum.json: invalid status code ('.$response['response']['code'].')');
248 + }
249 +
250 + $responseJson = json_decode($response['body'], true);
251 +
252 + if (empty($responseJson) || !is_array($responseJson)) {
253 + throw new Exception('Error while parsing checksum.json.');
254 + }
255 +
256 + return $responseJson;
257 + }
258 +
259 + public function recover($version)
260 + {
261 + global $wpdb;
262 + $lockTime = $wpdb->get_var("SELECT option_value FROM $wpdb->options WHERE option_name = 'mwp_incremental_recover_lock' LIMIT 1");
263 +
264 +
265 + if ($lockTime && time() - (int)$lockTime < 1200) { // lock for 20 minutes
266 + throw new Exception('Another incremental update or recovery process is already active', 1337);
267 + }
268 +
269 + register_shutdown_function(array($this, 'releaseLock'));
270 +
271 + update_option('mwp_incremental_recover_lock', time());
272 +
273 + ignore_user_abort(true);
274 + $dirName = realpath(dirname(__FILE__));
275 + $filesAndChecksums = $this->requestJson(sprintf('https://s3-us-west-2.amazonaws.com/mwp-orion-public/worker/raw/%s/checksum.json', $version));
276 +
277 + try {
278 + $files = $this->recoverFiles($dirName, $filesAndChecksums, $version);
279 + } catch (Exception $e) {
280 + $this->releaseLock();
281 + throw $e;
282 + }
283 +
284 + $this->releaseLock();
285 +
286 + return $files;
287 + }
288 +
289 + public function releaseLock()
290 + {
291 + delete_option('mwp_incremental_recover_lock');
292 + }
293 +
294 + public static function selfUpdate()
295 + {
296 + if (get_option('mwp_recovering')) {
297 + return false;
298 + }
299 +
300 + try {
301 + $response = self::requestJson('https://s3-us-west-2.amazonaws.com/mwp-orion-public/worker/latest.json');
302 + $response += array('version' => '0.0.0', 'schedule' => 86400, 'autoUpdate' => false, 'checksum' => array());
303 + wp_clear_scheduled_hook('mwp_auto_update');
304 + wp_schedule_single_event(current_time('timestamp') + $response['schedule'], 'mwp_auto_update');
305 + if (!$response['autoUpdate']) {
306 + return false;
307 + }
308 + if (version_compare($response['version'], $GLOBALS['MMB_WORKER_VERSION'], '<')) {
309 + return false;
310 + }
311 + self::recoverFiles(dirname(__FILE__), $response['checksum'], $response['version']);
312 + } catch (Exception $e) {
313 + mwp_logger()->error("Self-update failed.", array('exception' => $e));
314 +
315 + return false;
316 + }
317 +
318 + return true;
319 + }
320 +
321 + private static function clearUnknownFiles($filesAndChecksums, $fs)
322 + {
323 + /** @var WP_Filesystem_Base $fs */
324 + $base = dirname(__FILE__);
325 + if (version_compare(phpversion(), '5.3', '<')) {
326 + $directory = new RecursiveDirectoryIterator($base);
327 + } else {
328 + /** @handled constant */
329 + $directory = new RecursiveDirectoryIterator($base, RecursiveDirectoryIterator::SKIP_DOTS);
330 + }
331 +
332 + $ignoreDelete = array(
333 + 'log.html' => 1,
334 + 'worker.json' => 1,
335 + 'init.php' => 1, // safe-guard
336 + 'functions.php' => 1, // safe-guard
337 + );
338 +
339 + $files = array_keys(iterator_to_array(new RecursiveIteratorIterator($directory, RecursiveIteratorIterator::SELF_FIRST, RecursiveIteratorIterator::CATCH_GET_CHILD)));
340 +
341 + foreach ($files as $file) {
342 + $file = preg_replace('/^'.preg_quote($base, '/').'/', '', $file, 1, $count);
343 +
344 + if (!$count) {
345 + continue;
346 + }
347 +
348 + $file = strtr($file, '\\', '/');
349 + $file = ltrim($file, '/');
350 +
351 + if (isset($filesAndChecksums[$file]) || isset($ignoreDelete[$file])) {
352 + continue;
353 + }
354 +
355 + $fs->delete($fs->find_folder(WP_PLUGIN_DIR).'worker/'.$file, false, 'f');
356 + }
357 + }
358 +
359 + public static function recoverFiles($dirName, array $filesAndChecksums, $version)
360 + {
361 + set_error_handler(array(__CLASS__, 'logError'));
362 + require_once ABSPATH.'wp-admin/includes/file.php';
363 + require_once ABSPATH.'wp-admin/includes/template.php';
364 +
365 + $options = array();
366 +
367 + $fsMethod = get_filesystem_method();
368 + if ($fsMethod !== 'direct') {
369 + ob_start();
370 + $options = request_filesystem_credentials('');
371 + ob_end_clean();
372 + }
373 +
374 + /** @var WP_Filesystem_Base $fs */
375 + WP_Filesystem($options);
376 + $fs = $GLOBALS['wp_filesystem'];
377 +
378 + if (!$fs->connect()) {
379 + $lastError = error_get_last();
380 + $errorMessage = $lastError ? $lastError['message'] : '(no error logged)';
381 + throw new Exception('Unable to connect to the file system: '.$errorMessage);
382 + }
383 +
384 + $cachedFilesAndChecksums = $filesAndChecksums;
385 +
386 + // First create directories and remove them from the array.
387 + // Must be done before shuffling because of nesting.
388 + foreach ($filesAndChecksums as $relativePath => $checksum) {
389 + if ($checksum !== '') {
390 + continue;
391 + }
392 + unset ($filesAndChecksums[$relativePath]);
393 + $absolutePath = $dirName.'/'.$relativePath;
394 + // Directories are ordered first.
395 + if (!is_dir($absolutePath)) {
396 + $fs->mkdir($fs->find_folder(WP_PLUGIN_DIR).'worker/'.$relativePath);
397 + }
398 + }
399 +
400 + // Check and recreate files. Shuffle them so multiple running instances have a smaller collision.
401 + $recoveredFiles = array();
402 + $filesAndChecksums = self::shuffleAssoc($filesAndChecksums);
403 + $retryCount = 0;
404 + $retryUpTo = 5;
405 + $lastError = null;
406 + while ($checksum = current($filesAndChecksums)) {
407 + if ($retryCount >= $retryUpTo) {
408 + restore_error_handler();
409 + throw new Exception($lastError);
410 + }
411 + $relativePath = key($filesAndChecksums);
412 + $absolutePath = $dirName.'/'.$relativePath;
413 + if (file_exists($absolutePath) && md5_file($absolutePath) === $checksum) {
414 + next($filesAndChecksums);
415 + continue;
416 + }
417 + $fileUrl = sprintf('https://s3-us-west-2.amazonaws.com/mwp-orion-public/worker/raw/%s/%s', $version, $relativePath);
418 + $response = wp_remote_get($fileUrl, array('timeout' => 60));
419 + if ($response instanceof WP_Error) {
420 + $lastError = 'Unable to download file '.$fileUrl.': '.$response->get_error_message();
421 + $retryCount++;
422 + continue;
423 + }
424 + if ($response['response']['code'] !== 200) {
425 + $lastError = 'Unable to download file '.$fileUrl.': invalid status code ('.$response['response']['code'].')';
426 + $retryCount++;
427 + continue;
428 + }
429 + $saved = $fs->put_contents($fs->find_folder(WP_PLUGIN_DIR).'worker/'.$relativePath, $response['body']);
430 +
431 + if (!$saved) {
432 + if (is_callable(array($fs, '__destruct'))) {
433 + $fs->__destruct();
434 + }
435 + $fs->connect();
436 + $lastError = 'File saving failed.';
437 + if (count(self::$errorLog)) {
438 + $lastError .= sprintf(" Last %d logged errors:%s", min(self::MAX_LOGGED_ERRORS, count(self::$errorLog)), "\n - ".implode("\n - ", self::$errorLog));
439 + }
440 + $retryCount++;
441 + continue;
442 + }
443 +
444 + $lastError = null;
445 + $retryCount = 0;
446 + $recoveredFiles[] = $relativePath;
447 + next($filesAndChecksums);
448 + }
449 +
450 + self::clearUnknownFiles($cachedFilesAndChecksums, $fs);
451 +
452 + if (function_exists('opcache_reset')) {
453 + @opcache_reset();
454 + }
455 +
456 + restore_error_handler();
457 +
458 + return $recoveredFiles;
459 + }
460 +
461 + public static function logError($code, $message, $file = 'Unknown', $line = 0)
462 + {
463 + self::$errorLog[] = sprintf('Error [%d]: %s in %s on line %d', $code, $message, $file, $line);
464 +
465 + if (count(self::$errorLog) > self::MAX_LOGGED_ERRORS) {
466 + array_shift(self::$errorLog);
467 + }
468 + }
469 +
470 + private static function shuffleAssoc($array)
471 + {
472 + $keys = array_keys($array);
473 + shuffle($keys);
474 + $shuffled = array();
475 + foreach ($keys as $key) {
476 + $shuffled[$key] = $array[$key];
477 + }
478 +
479 + return $shuffled;
480 + }
481 +
482 + public function selfDeactivate($reason)
483 + {
484 + if (isset($_SERVER['MWP2_VERSION_ID'])) {
485 + return;
486 + }
487 +
488 + $activePlugins = get_option('active_plugins');
489 + $workerIndex = array_search(plugin_basename(__FILE__), is_array($activePlugins) ? $activePlugins : array());
490 + if ($workerIndex === false) {
491 + // Plugin is not yet enabled, possibly in activation context.
492 + return;
493 + }
494 + unset($activePlugins[$workerIndex]);
495 + // Reset indexes.
496 + $activePlugins = array_values($activePlugins);
497 +
498 + delete_option('mwp_recovering');
499 + update_option('active_plugins', $activePlugins);
500 +
501 + $lastErrorMessage = '';
502 + if ($lastError = error_get_last()) {
503 + $lastErrorMessage = "\n\nLast error: ".$lastError['message'];
504 + }
505 + mail('[email protected]', sprintf("ManageWP Worker recovery aborted on %s", get_option('siteurl')), sprintf("ManageWP Worker v%s. Reason: %s%s", $GLOBALS['MMB_WORKER_VERSION'], $reason, $lastErrorMessage));
506 + }
507 + }
508 +endif;
509 +
510 +if (!function_exists('mwp_activation_hook')) {
511 + function mwp_activation_hook()
512 + {
513 + update_option('mwp_incremental_update_active', '');
514 +
515 + if (get_option('mwp_recovering')) {
516 + update_option('mwp_recovering', '');
517 + // Run the checksum one last time.
518 + $recoveryKit = new MwpRecoveryKit();
519 + try {
520 + $recoveryKit->recover($GLOBALS['MMB_WORKER_VERSION']);
521 + } catch (Exception $e) {
522 + // Deactivating the plugin in activation hook wouldn't work, prevent the activation by triggering an error.
523 + trigger_error($e->getMessage(), E_USER_ERROR);
524 + }
525 + }
526 +
527 + mwp_core()->install();
528 + }
303 529 }
304 530
305 -//comments
306 -if( !function_exists ( 'mmb_change_comment_status' )) {
307 - function mmb_change_comment_status($params)
308 - {
309 - global $mmb_core;
310 - $mmb_core->get_comment_instance();
311 - $return = $mmb_core->comment_instance->change_status($params);
312 - //mmb_response($return, true);
313 - if ($return){
314 - $mmb_core->get_stats_instance();
315 - mmb_response($mmb_core->stats_instance->get_comments_stats($params), true);
316 - }else
317 - mmb_response('Comment not updated', false);
318 - }
531 +if (!function_exists('mwp_try_recovery')):
532 + function mwp_try_recovery()
533 + {
534 + global $wpdb;
535 + $recoveringTime = $wpdb->get_var("SELECT option_value FROM $wpdb->options WHERE option_name = 'mwp_recovering' LIMIT 1");
319 536
320 -}
321 -if( !function_exists ( 'mmb_comment_stats_get' )) {
322 - function mmb_comment_stats_get($params)
323 - {
324 - global $mmb_core;
325 - $mmb_core->get_stats_instance();
326 - mmb_response($mmb_core->stats_instance->get_comments_stats($params), true);
327 - }
328 -}
537 + if (empty($recoveringTime)) {
538 + return true;
539 + }
329 540
330 -if( !function_exists ( 'mmb_backup_now' )) {
331 -//backup
332 - function mmb_backup_now($params)
333 - {
334 - global $mmb_core;
335 -
336 - $mmb_core->get_backup_instance();
337 - $return = $mmb_core->backup_instance->backup($params);
338 -
339 - if (is_array($return) && array_key_exists('error', $return))
340 - mmb_response($return['error'], false);
341 - else {
342 - mmb_response($return, true);
343 - }
344 - }
345 -}
541 + delete_transient('mwp_recovery_key');
542 + $recoveryKit = new MwpRecoveryKit();
543 + try {
544 + $recoveredFiles = $recoveryKit->recover($GLOBALS['MMB_WORKER_VERSION']);
346 545
347 -if( !function_exists ( 'mmb_run_task_now' )) {
348 - function mmb_run_task_now($params)
349 - {
350 - global $mmb_core;
351 - $mmb_core->get_backup_instance();
352 - $return = $mmb_core->backup_instance->task_now($params['task_name']);
353 - if (is_array($return) && array_key_exists('error', $return))
354 - mmb_response($return['error'], false);
355 - else {
356 - mmb_response($return, true);
357 - }
358 - }
359 -}
546 + // Recovery complete.
547 + update_option('mwp_recovering', '');
548 + mail('[email protected]', sprintf("ManageWP Worker recovered on %s", get_option('siteurl')), sprintf("%d files successfully recovered in this recovery fork of ManageWP Worker v%s. Filesystem method used was <code>%s</code>.\n\n<pre>%s</pre>", count($recoveredFiles), $GLOBALS['MMB_WORKER_VERSION'], get_filesystem_method(), implode("\n", $recoveredFiles)), 'Content-Type: text/html');
549 + } catch (Exception $e) {
550 + if ($e->getCode() === 1337) {
551 + return false;
552 + }
360 553
361 -if( !function_exists ( 'mmb_email_backup' )) {
362 - function mmb_email_backup($params)
363 - {
364 - global $mmb_core;
365 - $mmb_core->get_backup_instance();
366 - $return = $mmb_core->backup_instance->email_backup($params);
367 -
368 - if (is_array($return) && array_key_exists('error', $return))
369 - mmb_response($return['error'], false);
370 - else {
371 - mmb_response($return, true);
372 - }
373 - }
374 -}
554 + if (time() - $recoveringTime > 3600) {
555 + // If the recovery process does not complete after an hour, deactivate the Worker for safety
556 + $recoveryKit->selfDeactivate($e->getMessage());
557 + }
375 558
376 -if( !function_exists ( 'mmb_check_backup_compat' )) {
377 - function mmb_check_backup_compat($params)
378 - {
379 - global $mmb_core;
380 - $mmb_core->get_backup_instance();
381 - $return = $mmb_core->backup_instance->check_backup_compat($params);
382 -
383 - if (is_array($return) && array_key_exists('error', $return))
384 - mmb_response($return['error'], false);
385 - else {
386 - mmb_response($return, true);
387 - }
388 - }
389 -}
559 + return false;
560 + }
390 561
391 -if( !function_exists ( 'mmb_get_backup_req' )) {
392 - function mmb_get_backup_req( $params )
393 - {
394 - global $mmb_core;
395 - $mmb_core->get_stats_instance();
396 - $return = $mmb_core->stats_instance->get_backup_req($params);
397 -
398 - mmb_response($return, true);
399 - }
400 -}
562 + return true;
563 + }
564 +endif;
401 565
402 -if( !function_exists ( 'mmb_scheduled_backup' )) {
403 - function mmb_scheduled_backup($params)
404 - {
405 - global $mmb_core;
406 - $mmb_core->get_backup_instance();
407 - $return = $mmb_core->backup_instance->set_backup_task($params);
408 - mmb_response($return, $return);
409 - }
410 -}
566 +if (!function_exists('add_worker_update_info')):
567 + function add_worker_update_info()
568 + {
569 + echo ' The plugin is going to update itself automatically in the next few days.';
570 + }
571 +endif;
411 572
412 -if( !function_exists ( 'mmm_delete_backup' )) {
413 - function mmm_delete_backup($params)
414 - {
415 - global $mmb_core;
416 - $mmb_core->get_backup_instance();
417 - $return = $mmb_core->backup_instance->delete_backup($params);
418 - mmb_response($return, $return);
419 - }
420 -}
573 +if (!function_exists('mwp_init')):
574 + function mwp_init()
575 + {
576 + // When the plugin deactivates due to a corrupt installation, (de)activation hooks
577 + // will never get executed, so the 'mwp_recovering' option will never be deleted,
578 + // making the plugin always force the recovery mode , which may always fail for any
579 + // reason (eg. the site can't ping itself). Handle that case early.
580 + register_activation_hook(__FILE__, 'mwp_activation_hook');
421 581
422 -if( !function_exists ( 'mmb_optimize_tables' )) {
423 - function mmb_optimize_tables($params)
424 - {
425 - global $mmb_core;
426 - $mmb_core->get_backup_instance();
427 - $return = $mmb_core->backup_instance->optimize_tables();
428 - if ($return)
429 - mmb_response($return, true);
430 - else
431 - mmb_response(false, false);
432 - }
433 -}
434 -if( !function_exists ( 'mmb_restore_now' )) {
435 - function mmb_restore_now($params)
436 - {
437 - global $mmb_core;
438 - $mmb_core->get_backup_instance();
439 - $return = $mmb_core->backup_instance->restore($params);
440 - if (is_array($return) && array_key_exists('error', $return))
441 - mmb_response($return['error'], false);
442 - else
443 - mmb_response($return, true);
444 -
445 - }
446 -}
582 + $GLOBALS['MMB_WORKER_VERSION'] = '4.9.38';
583 + $GLOBALS['MMB_WORKER_REVISION'] = '2026-08-21 00:00:00';
447 584
448 -if( !function_exists ( 'mmb_remote_backup_now' )) {
449 - function mmb_remote_backup_now($params)
450 - {
451 - global $mmb_core;
452 - $backup_instance = $mmb_core->get_backup_instance();
453 - $return = $mmb_core->backup_instance->remote_backup_now($params);
454 - if (is_array($return) && array_key_exists('error', $return))
455 - mmb_response($return['error'], false);
456 - else
457 - mmb_response($return, true);
458 - }
459 -}
585 + // Ensure PHP version compatibility.
586 + if (version_compare(PHP_VERSION, '5.2', '<')) {
587 + trigger_error("ManageWP Worker plugin requires PHP 5.2 or higher.", E_USER_ERROR);
588 + exit;
589 + }
460 590
591 + if ($incrementalUpdateTime = get_option('mwp_incremental_update_active')) {
592 + if (time() - $incrementalUpdateTime > 600) { // lock for a maximum of 10 minutes for incremental update
593 + update_option('mwp_incremental_update_active', '');
594 + } else {
595 + if (!isset($_SERVER['HTTP_MWP_ACTION'])) {
596 + return;
597 + }
461 598
462 -if( !function_exists ( 'mmb_clean_orphan_backups' )) {
463 - function mmb_clean_orphan_backups()
464 - {
465 - global $mmb_core;
466 - $backup_instance = $mmb_core->get_backup_instance();
467 - $return = $mmb_core->backup_instance->cleanup();
468 - if(is_array($return))
469 - mmb_response($return, true);
470 - else
471 - mmb_response($return, false);
472 - }
473 -}
599 + global $wpdb;
474 600
475 -if( !function_exists ( 'mmb_update_worker_plugin' )) {
476 - function mmb_update_worker_plugin($params)
477 - {
478 - global $mmb_core;
479 - mmb_response($mmb_core->update_worker_plugin($params), true);
480 - }
481 -}
601 + $tries = 0;
602 + $lastResult = true;
482 603
483 -if( !function_exists ( 'mmb_wp_checkversion' )) {
484 - function mmb_wp_checkversion($params)
485 - {
486 - include_once(ABSPATH . 'wp-includes/version.php');
487 - global $mmb_wp_version, $mmb_core;
488 - mmb_response($mmb_wp_version, true);
489 - }
490 -}
491 -if( !function_exists ( 'mmb_search_posts_by_term' )) {
492 - function mmb_search_posts_by_term($params)
493 - {
494 - global $mmb_core;
495 - $mmb_core->get_search_instance();
496 -
497 - $search_type = trim($params['search_type']);
498 - $search_term = strtolower(trim($params['search_term']));
604 + while ($tries < 60 && ($lastResult = $wpdb->get_var("SELECT option_value FROM $wpdb->options WHERE option_name = 'mwp_incremental_update_active' LIMIT 1"))) {
605 + sleep(1);
606 + ++$tries;
607 + }
499 608
500 - switch ($search_type){
501 - case 'page_post':
502 - $return = $mmb_core->search_instance->search_posts_by_term($params);
503 - if($return){
504 - $return = serialize($return);
505 - mmb_response($return, true);
506 - }else{
507 - mmb_response('No posts found', false);
508 - }
509 - break;
510 -
511 - case 'plugin':
512 - $plugins = get_option('active_plugins');
513 -
514 - $have_plugin = false;
515 - foreach ($plugins as $plugin) {
516 - if(strpos($plugin, $search_term)>-1){
517 - $have_plugin = true;
518 - }
519 - }
520 - if($have_plugin){
521 - mmb_response(serialize($plugin), true);
522 - }else{
523 - mmb_response(false, false);
524 - }
525 - break;
526 - case 'theme':
527 - $theme = strtolower(get_option('template'));
528 - if(strpos($theme, $search_term)>-1){
529 - mmb_response($theme, true);
530 - }else{
531 - mmb_response(false, false);
532 - }
533 - break;
534 - default: mmb_response(false, false);
535 - }
536 - $return = $mmb_core->search_instance->search_posts_by_term($params);
537 -
538 -
539 -
540 - if ($return_if_true) {
541 - mmb_response($return_value, true);
542 - } else {
543 - mmb_response($return_if_false, false);
544 - }
545 - }
546 -}
609 + if (!$lastResult) {
610 + echo "\nMWP_RETRY_ME: 1\n";
611 + }
547 612
548 -if( !function_exists ( 'mmb_install_addon' )) {
549 - function mmb_install_addon($params)
550 - {
551 - global $mmb_core;
552 - $mmb_core->get_installer_instance();
553 - $return = $mmb_core->installer_instance->install_remote_file($params);
554 - mmb_response($return, true);
555 -
556 - }
557 -}
613 + echo "\n", json_encode(array('error' => 'Worker is currently updating; please retry this action in a few seconds.', 'exception' => array(
614 + 'class' => 'Exception',
615 + 'message' => 'Worker is currently updating; please retry this action in a few seconds.',
616 + 'code' => 10037,
617 + 'file' => __FILE__,
618 + 'line' => __LINE__,
619 + 'traceString' => '',
620 + 'context' => array(),
621 + 'type' => 'WORKER_UPDATING',
622 + ))), "\n";
623 + exit;
624 + }
625 + }
558 626
559 -if( !function_exists ( 'mmb_do_upgrade' )) {
560 - function mmb_do_upgrade($params)
561 - {
562 - global $mmb_core, $mmb_upgrading;
563 - $mmb_core->get_installer_instance();
564 - $return = $mmb_core->installer_instance->do_upgrade($params);
565 - mmb_response($return, true);
566 -
567 - }
568 -}
569 -if( !function_exists ( 'mmb_add_link' )) {
570 - function mmb_add_link($params)
571 - {
572 - global $mmb_core;
573 - $mmb_core->get_link_instance();
574 - $return = $mmb_core->link_instance->add_link($params);
575 - if (is_array($return) && array_key_exists('error', $return))
576 -
577 - mmb_response($return['error'], false);
578 - else {
579 - mmb_response($return, true);
580 - }
581 -
582 - }
583 -}
627 + if ($recoveringTime = get_option('mwp_recovering')) {
628 + if (isset($_SERVER['HTTP_MWP_ACTION'])) {
629 + $tries = 0;
630 + $lastResult = false;
584 631
585 -if( !function_exists ( 'mmb_add_user' )) {
586 - function mmb_add_user($params)
587 - {
588 - global $mmb_core;
589 - $mmb_core->get_user_instance();
590 - $return = $mmb_core->user_instance->add_user($params);
591 - if (is_array($return) && array_key_exists('error', $return))
592 -
593 - mmb_response($return['error'], false);
594 - else {
595 - mmb_response($return, true);
596 - }
597 -
598 - }
599 -}
632 + while ($tries < 60 && !($lastResult = mwp_try_recovery())) {
633 + sleep(1);
634 + ++$tries;
635 + }
600 636
601 -if( !function_exists ('mmb_get_users')) {
602 - function mmb_get_users($params)
603 - {
604 - global $mmb_core;
605 - $mmb_core->get_user_instance();
606 - $return = $mmb_core->user_instance->get_users($params);
607 - if (is_array($return) && array_key_exists('error', $return))
608 - mmb_response($return['error'], false);
609 - else {
610 - mmb_response($return, true);
611 - }
612 - }
613 -}
637 + if ($lastResult) {
638 + echo "\nMWP_RETRY_ME: 1\n";
639 + }
614 640
615 -if( !function_exists ('mmb_edit_users')) {
616 - function mmb_edit_users($params)
617 - {
618 - global $mmb_core;
619 - $mmb_core->get_user_instance();
620 - $return = $mmb_core->user_instance->edit_users($params);
621 - mmb_response($return, true);
622 - }
623 -}
641 + echo "\n", json_encode(array('error' => 'Worker is currently recovering; please retry this action in a few seconds.', 'exception' => array(
642 + 'class' => 'Exception',
643 + 'message' => 'Worker is currently recovering; please retry this action in a few seconds.',
644 + 'code' => 10036,
645 + 'file' => __FILE__,
646 + 'line' => __LINE__,
647 + 'traceString' => '',
648 + 'context' => array(),
649 + 'type' => 'WORKER_RECOVERING',
650 + ))), "\n";
624 651
625 -if( !function_exists ('mmb_get_posts')) {
626 - function mmb_get_posts($params)
627 - {
628 - global $mmb_core;
629 - $mmb_core->get_post_instance();
630 -
631 - $return = $mmb_core->post_instance->get_posts($params);
632 - if (is_array($return) && array_key_exists('error', $return))
633 - mmb_response($return['error'], false);
634 - else {
635 - mmb_response($return, true);
636 - }
637 - }
638 -}
652 + exit;
653 + } else {
654 + $recoveryKey = get_transient('mwp_recovery_key');
655 + if (!$passedRecoveryKey = filter_input(INPUT_POST, 'mwp_recovery_key')) {
656 + $recoveryKey = md5(uniqid('', true));
657 + set_transient('mwp_recovery_key', $recoveryKey, time() + 604800); // 1 week.
639 658
640 -if( !function_exists ('mmb_delete_post')) {
641 - function mmb_delete_post($params)
642 - {
643 - global $mmb_core;
644 - $mmb_core->get_post_instance();
645 -
646 - $return = $mmb_core->post_instance->delete_post($params);
647 - if (is_array($return) && array_key_exists('error', $return))
648 - mmb_response($return['error'], false);
649 - else {
650 - mmb_response($return, true);
651 - }
652 - }
653 -}
659 + $headers = array();
660 + if (isset($_SERVER['HTTP_AUTHORIZATION'])) {
661 + $headers['AUTHORIZATION'] = $_SERVER['HTTP_AUTHORIZATION'];
662 + }
654 663
655 -if( !function_exists ('mmb_edit_posts')) {
656 - function mmb_edit_posts($params)
657 - {
658 - global $mmb_core;
659 - $mmb_core->get_posts_instance();
660 - $return = $mmb_core->posts_instance->edit_posts($params);
661 - mmb_response($return, true);
662 - }
663 -}
664 + // fork only once, so we do not make too many parallel requests to the website
665 + $lockTime = get_option('mwp_incremental_recover_lock');
664 666
665 -if( !function_exists ('mmb_get_pages')) {
666 - function mmb_get_pages($params)
667 - {
668 - global $mmb_core;
669 - $mmb_core->get_post_instance();
670 -
671 - $return = $mmb_core->post_instance->get_pages($params);
672 - if (is_array($return) && array_key_exists('error', $return))
673 - mmb_response($return['error'], false);
674 - else {
675 - mmb_response($return, true);
676 - }
677 - }
678 -}
667 + if ($lockTime && time() - $lockTime < 1200) { // lock for 20 minutes
668 + return;
669 + }
679 670
680 -if( !function_exists ('mmb_delete_page')) {
681 - function mmb_delete_page($params)
682 - {
683 - global $mmb_core;
684 - $mmb_core->get_post_instance();
685 -
686 - $return = $mmb_core->post_instance->delete_page($params);
687 - if (is_array($return) && array_key_exists('error', $return))
688 - mmb_response($return['error'], false);
689 - else {
690 - mmb_response($return, true);
691 - }
692 - }
693 -}
671 + wp_remote_post(get_bloginfo('wpurl'), array(
672 + 'reject_unsafe_urls' => false,
673 + 'headers' => $headers,
674 + 'body' => array(
675 + 'mwp_recovery_key' => $recoveryKey,
676 + ),
677 + 'timeout' => 0.01,
678 + ));
679 + } else {
680 + if ($recoveryKey !== $passedRecoveryKey) {
681 + return;
682 + }
694 683
695 -if( !function_exists ( 'mmb_iframe_plugins_fix' )) {
696 - function mmb_iframe_plugins_fix($update_actions)
697 - {
698 - foreach($update_actions as $key => $action)
699 - {
700 - $update_actions[$key] = str_replace('target="_parent"','',$action);
701 - }
702 -
703 - return $update_actions;
704 -
705 - }
706 -}
707 -if( !function_exists ( 'mmb_execute_php_code' )) {
708 - function mmb_execute_php_code($params)
709 - {
710 - ob_start();
711 - eval($params['code']);
712 - $return = ob_get_flush();
713 - mmb_response(print_r($return, true), true);
714 - }
715 -}
684 + mwp_try_recovery();
685 + }
716 686
717 -if( !function_exists ( 'mmb_set_notifications' )) {
718 - function mmb_set_notifications($params)
719 - {
720 - global $mmb_core;
721 - $mmb_core->get_stats_instance();
722 - $return = $mmb_core->stats_instance->set_notifications($params);
723 - if (is_array($return) && array_key_exists('error', $return))
724 - mmb_response($return['error'], false);
725 - else {
726 - mmb_response($return, true);
727 - }
728 -
729 - }
730 -}
687 + return;
688 + }
689 + }
731 690
732 -if( !function_exists ( 'mmb_set_alerts' )) {
733 - function mmb_set_alerts($params)
734 - {
735 - global $mmb_core;
736 - $mmb_core->get_stats_instance();
737 - $return = $mmb_core->stats_instance->set_alerts($params);
738 - mmb_response(true, true);
739 - }
740 -
741 -}
691 + if (version_compare(PHP_VERSION, '5.3', '<')) {
692 + spl_autoload_register('mwp_autoload');
693 + } else {
694 + // The prepend parameter was added in PHP 5.3.0
695 + spl_autoload_register('mwp_autoload', true, true);
696 + }
742 697
743 -if(!function_exists('mmb_more_reccurences')){
744 - //Backup Tasks
745 - add_filter('cron_schedules', 'mmb_more_reccurences');
746 - function mmb_more_reccurences($schedules) {
747 - $schedules['halfminute'] = array('interval' => 30, 'display' => 'Once in a half minute');
748 - $schedules['minutely'] = array('interval' => 60, 'display' => 'Once in a minute');
749 - $schedules['fiveminutes'] = array('interval' => 300, 'display' => 'Once every five minutes');
750 - $schedules['tenminutes'] = array('interval' => 600, 'display' => 'Once every ten minutes');
751 -
752 - return $schedules;
753 - }
754 -}
755 -
756 - add_action('mwp_backup_tasks', 'mwp_check_backup_tasks');
757 -
758 -if( !function_exists('mwp_check_backup_tasks') ){
759 - function mwp_check_backup_tasks() {
760 - global $mmb_core, $_wp_using_ext_object_cache;
761 - $_wp_using_ext_object_cache = false;
762 -
763 - $mmb_core->get_backup_instance();
764 - $mmb_core->backup_instance->check_backup_tasks();
765 - }
766 -}
698 + $GLOBALS['mmb_plugin_dir'] = WP_PLUGIN_DIR.'/'.basename(dirname(__FILE__));
699 + $GLOBALS['_mmb_item_filter'] = array();
700 + $core = mwp_core();
767 701
768 -if (!wp_next_scheduled('mwp_notifications')) {
769 - wp_schedule_event( time(), 'twicedaily', 'mwp_notifications' );
770 - }
771 - add_action('mwp_notifications', 'mwp_check_notifications');
772 -
773 -
774 -
775 -if( !function_exists('mwp_check_notifications') ){
776 - function mwp_check_notifications() {
777 - global $mmb_core, $_wp_using_ext_object_cache;
778 - $_wp_using_ext_object_cache = false;
779 -
780 - $mmb_core->get_stats_instance();
781 - $mmb_core->stats_instance->check_notifications();
782 - }
783 -}
702 + $siteUrl = function_exists('get_site_option') ? get_site_option('siteurl') : get_option('siteurl');
703 + define('MMB_XFRAME_COOKIE', 'wordpress_'.md5($siteUrl).'_xframe');
784 704
705 + define('MWP_BACKUP_DIR', WP_CONTENT_DIR.'/managewp/backups');
706 + define('MWP_DB_DIR', MWP_BACKUP_DIR.'/mwp_db');
785 707
786 -if( !function_exists('mmb_get_plugins_themes') ){
787 - function mmb_get_plugins_themes($params) {
788 - global $mmb_core;
789 - $mmb_core->get_installer_instance();
790 - $return = $mmb_core->installer_instance->get($params);
791 - mmb_response($return, true);
792 - }
793 -}
708 + add_filter('deprecated_function_trigger_error', '__return_false');
709 + add_action('mwp_update_public_keys', 'mwp_refresh_live_public_keys');
710 + add_action('init', 'mmb_plugin_actions', 99999);
711 + add_filter('install_plugin_complete_actions', 'mmb_iframe_plugins_fix');
712 + add_filter('comment_edit_redirect', 'mwb_edit_redirect_override');
713 + add_action('mwp_auto_update', 'MwpRecoveryKit::selfUpdate');
714 + add_action('in_plugin_update_message-'.plugin_basename(__FILE__), 'add_worker_update_info');
794 715
795 -if( !function_exists('mmb_edit_plugins_themes') ){
796 - function mmb_edit_plugins_themes($params) {
797 - global $mmb_core;
798 - $mmb_core->get_installer_instance();
799 - $return = $mmb_core->installer_instance->edit($params);
800 - mmb_response($return, true);
801 - }
802 -}
716 + add_filter('cron_schedules', 'mwp_link_monitor_cron_recurrence_interval');
803 717
804 -if( !function_exists('mmb_worker_brand')){
805 - function mmb_worker_brand($params) {
806 - update_option("mwp_worker_brand",$params['brand']);
807 - mmb_response(true, true);
808 - }
809 -}
718 + if (mwp_context()->optionGet('mwp_link_monitor_enabled')) {
719 + add_action('save_post', 'mwp_add_post_to_link_monitor_check');
720 + add_action('delete_post', 'mwp_add_post_to_link_monitor_check');
810 721
811 -if( !function_exists('mmb_maintenance_mode')){
812 - function mmb_maintenance_mode( $params ) {
813 - global $wp_object_cache;
814 -
815 - $default = get_option('mwp_maintenace_mode');
816 - $params = empty($default) ? $params : array_merge($default, $params);
817 - update_option("mwp_maintenace_mode", $params);
818 -
819 - if(!empty($wp_object_cache))
820 - @$wp_object_cache->flush();
821 - mmb_response(true, true);
822 - }
823 -}
722 + if (wp_next_scheduled('mwp_check_for_post_update')) {
723 + wp_clear_scheduled_hook('mwp_check_for_post_update');
724 + }
725 + }
726 + // Public key updating cron.
727 + if (!wp_next_scheduled('mwp_update_public_keys')) {
728 + wp_schedule_event(time(), 'daily', 'mwp_update_public_keys');
729 + }
824 730
825 -if( !function_exists('mmb_plugin_actions') ){
826 - function mmb_plugin_actions() {
827 - global $mmb_actions, $mmb_core;
828 -
829 - if(!empty($mmb_actions)){
830 - global $_mmb_plugin_actions;
831 - if(!empty($_mmb_plugin_actions)){
832 - $failed = array();
833 - foreach($_mmb_plugin_actions as $action => $params){
834 - if(isset($mmb_actions[$action]))
835 - call_user_func($mmb_actions[$action], $params);
836 - else
837 - $failed[] = $action;
838 - }
839 - if(!empty($failed)){
840 - $f = implode(', ', $failed);
841 - $s = count($f) > 1 ? 'Actions "' . $f . '" do' : 'Action "' . $f . '" does';
842 - mmb_response($s.' not exist. Please update your Worker plugin.', false);
843 - }
844 -
845 - }
846 - }
847 -
848 - global $pagenow, $current_user, $mmode;
849 - if( !is_admin() && !in_array($pagenow, array( 'wp-login.php' ))){
850 - $mmode = get_option('mwp_maintenace_mode');
851 - if( !empty($mmode) ){
852 - if(isset($mmode['active']) && $mmode['active'] == true){
853 - if(isset($current_user->data) && !empty($current_user->data) && isset($mmode['hidecaps']) && !empty($mmode['hidecaps'])){
854 - $usercaps = array();
855 - if(isset($current_user->caps) && !empty($current_user->caps)){
856 - $usercaps = $current_user->caps;
857 - }
858 - foreach($mmode['hidecaps'] as $cap => $hide){
859 - if(!$hide)
860 - continue;
861 -
862 - foreach($usercaps as $ucap => $val){
863 - if($ucap == $cap){
864 - ob_end_clean();
865 - ob_end_flush();
866 - die($mmode['template']);
867 - }
868 - }
869 - }
870 - } else
871 - die($mmode['template']);
872 - }
873 - }
874 - }
875 - }
876 -}
731 + register_deactivation_hook(__FILE__, array($core, 'deactivate'));
732 + register_uninstall_hook(dirname(__FILE__).'/functions.php', 'mwp_uninstall');
877 733
878 -$mmb_core = new MMB_Core();
734 + // Don't send the "X-Frame-Options: SAMEORIGIN" header if we're logging in inside an iframe.
735 + if (isset($_COOKIE[MMB_XFRAME_COOKIE])) {
736 + remove_action('admin_init', 'send_frame_options_header');
737 + remove_action('login_init', 'send_frame_options_header');
738 + }
879 739
880 -if(isset($_GET['auto_login']))
881 - $mmb_core->automatic_login();
740 + // Remove legacy scheduler.
741 + if (wp_next_scheduled('mwp_backup_tasks')) {
742 + wp_clear_scheduled_hook('mwp_backup_tasks');
743 + }
744 + mwp_provision_keys();
745 + mwp_set_plugin_priority();
882 746
883 -if (function_exists('register_activation_hook'))
884 - register_activation_hook( __FILE__ , array( $mmb_core, 'install' ));
747 + $request = MWP_Worker_Request::createFromGlobals();
748 + $container = mwp_container();
749 + $responder = new MwpWorkerResponder($container);
885 750
886 -if (function_exists('register_deactivation_hook'))
887 - register_deactivation_hook(__FILE__, array( $mmb_core, 'uninstall' ));
751 + $kernel = new MWP_Worker_Kernel($container);
752 + $kernel->handleRequest($request, $responder->getCallback(), true);
888 753
889 -if (function_exists('add_action'))
890 - add_action('init', 'mmb_plugin_actions', 99999);
754 + $mwpMM = get_option('mwp_maintenace_mode');
755 + if (!empty($mwpMM) && isset($mwpMM['active']) && $mwpMM['active']) {
756 + add_action('admin_notices', 'site_in_mwp_maintenance_mode');
757 + }
758 + }
891 759
892 -if (function_exists('add_filter'))
893 - add_filter('install_plugin_complete_actions','mmb_iframe_plugins_fix');
894 -
895 -if( isset($_COOKIE[MMB_XFRAME_COOKIE]) ){
896 - remove_action( 'admin_init', 'send_frame_options_header');
897 - remove_action( 'login_init', 'send_frame_options_header');
898 -}
760 + if (!defined('MWP_SKIP_BOOTSTRAP') || !MWP_SKIP_BOOTSTRAP) {
761 + if (!get_option('mwp_recovering')) {
762 + require_once dirname(__FILE__).'/functions.php';
763 + }
899 764
900 -?>
765 + mwp_init();
766 + }
767 +endif;