PluginProbe
The WP Remote WordPress Plugin / 5.92
The WP Remote WordPress Plugin v5.92
6.72 6.69 6.65 6.62 6.48 6.47 4.87 4.97 5.05 5.09 5.16 5.22 5.24 5.25 5.38 5.41 5.42 5.45 5.47 5.53 5.56 5.65 5.68 5.72 5.73 All 53 releases
← All changes | plugin.php +42 -51 5.735.92 View file →
@@ -4,10 +4,12 @@
4 4 Plugin URI: https://wpremote.com
5 5 Description: Manage your WordPress site with <a href="https://wpremote.com/">WP Remote</a>.
6 6 Author: WP Remote
7 7 Author URI: https://wpremote.com
8 -Version: 5.73
8 +Version: 5.92
9 9 Network: True
10 +License: GPLv2 or later
11 +License URI: [http://www.gnu.org/licenses/gpl-2.0.html](http://www.gnu.org/licenses/gpl-2.0.html)
10 12 */
11 13
12 14 /* Copyright 2017 WP Remote (email : support@wpremote.com)
13 15
@@ -37,10 +39,13 @@
37 39 require_once dirname( __FILE__ ) . '/wp_actions.php';
38 40 require_once dirname( __FILE__ ) . '/info.php';
39 41 require_once dirname( __FILE__ ) . '/account.php';
40 42 require_once dirname( __FILE__ ) . '/helper.php';
43 +require_once dirname( __FILE__ ) . '/wp_file_system.php';
41 44 require_once dirname( __FILE__ ) . '/wp_2fa/wp_2fa.php';
42 45
46 +require_once dirname( __FILE__ ) . '/wp_login_whitelabel.php';
47 +
43 48 ##WPCACHEMODULE##
44 49
45 50
46 51 $bvsettings = new WPRWPSettings();
@@ -55,10 +60,12 @@
55 60 register_uninstall_hook(__FILE__, array('WPRWPAction', 'uninstall'));
56 61 register_activation_hook(__FILE__, array($wp_action, 'activate'));
57 62 register_deactivation_hook(__FILE__, array($wp_action, 'deactivate'));
58 63
64 +
59 65 add_action('wp_footer', array($wp_action, 'footerHandler'), 100);
60 66 add_action('wpr_clear_bv_services_config', array($wp_action, 'clear_bv_services_config'));
67 +
61 68 ##SOADDUNINSTALLACTION##
62 69
63 70 ##DISABLE_OTHER_OPTIMIZATION_PLUGINS##
64 71
@@ -76,8 +83,9 @@
76 83 add_action('admin_menu', array($wpadmin, 'menu'));
77 84 }
78 85 add_filter('plugin_action_links', array($wpadmin, 'settingsLink'), 10, 2);
79 86 add_action('admin_head', array($wpadmin, 'removeAdminNotices'), 3);
87 + ##POPUP_ON_DEACTIVATION##
80 88 add_action('admin_notices', array($wpadmin, 'activateWarning'));
81 89 add_action('admin_enqueue_scripts', array($wpadmin, 'wprsecAdminMenu'));
82 90 ##ALPURGECACHEFUNCTION##
83 91 ##ALADMINMENU##
@@ -82,10 +90,10 @@
82 90 ##ALPURGECACHEFUNCTION##
83 91 ##ALADMINMENU##
84 92 }
85 93
86 -if ((array_key_exists('bvreqmerge', $_POST)) || (array_key_exists('bvreqmerge', $_GET))) {
87 - $_REQUEST = array_merge($_GET, $_POST);
94 +if ((array_key_exists('bvreqmerge', $_POST)) || (array_key_exists('bvreqmerge', $_GET))) { // phpcs:ignore WordPress.Security.NonceVerification.Missing, WordPress.Security.NonceVerification.Recommended
95 + $_REQUEST = array_merge($_GET, $_POST); // phpcs:ignore WordPress.Security.NonceVerification.Missing, WordPress.Security.NonceVerification.Recommended
88 96 }
89 97
90 98 #Service active check
91 99 if ($bvinfo->config != false) {
@@ -102,66 +110,37 @@
102 110 $actlog = new BVWPActLog($bvdb, $bvsettings, $bvinfo, $bvconfig['activity_log']);
103 111 $actlog->init();
104 112 }
105 113
106 - if ($bvinfo->isServiceActive('maintenance_mode')) {
107 - require_once dirname( __FILE__ ). '/maintenance/wp_maintenance.php';
108 - $bvconfig = $bvinfo->config;
109 - $maintenance = new BVWPMaintenance($bvconfig['maintenance_mode']);
110 - $maintenance->init();
111 - }
112 -
114 + ##MAINTENANCEMODULE##
113 115 }
114 116
115 -if ((array_key_exists('bvplugname', $_REQUEST)) && ($_REQUEST['bvplugname'] == "wpremote")) {
117 +if (WPRHelper::getRawParam('REQUEST', 'bvplugname') == "wpremote") {
116 118 require_once dirname( __FILE__ ) . '/callback/base.php';
117 119 require_once dirname( __FILE__ ) . '/callback/response.php';
118 120 require_once dirname( __FILE__ ) . '/callback/request.php';
119 121 require_once dirname( __FILE__ ) . '/recover.php';
120 122
121 - $pubkey = WPRAccount::sanitizeKey($_REQUEST['pubkey']);
123 + $pubkey = WPRHelper::getRawParam('REQUEST', 'pubkey');
124 + $pubkey = isset($pubkey) ? WPRAccount::sanitizeKey($pubkey) : '';
125 + $rcvracc = WPRHelper::getRawParam('REQUEST', 'rcvracc');
122 126
123 - if (array_key_exists('rcvracc', $_REQUEST)) {
127 + if (isset($rcvracc)) {
124 128 $account = WPRRecover::find($bvsettings, $pubkey);
125 129 } else {
126 130 $account = WPRAccount::find($bvsettings, $pubkey);
127 131 }
128 132
129 - $request = new BVCallbackRequest($account, $_REQUEST, $bvsettings);
133 + $request = new BVCallbackRequest($account, $_REQUEST, $bvsettings); // phpcs:ignore WordPress.Security.NonceVerification.Recommended
130 134 $response = new BVCallbackResponse($request->bvb64cksize);
131 135
132 136 if ($request->authenticate() === 1) {
133 - if (array_key_exists('bv_ignr_frm_cptch', $_REQUEST)) {
134 - #handling of Contact Forms 7
135 - add_filter('wpcf7_skip_spam_check', '__return_true', PHP_INT_MAX, 2);
137 + $bv_frm_tstng = WPRHelper::getRawParam('REQUEST', 'bv_frm_tstng');
138 + if (isset($bv_frm_tstng)) {
139 + require_once dirname(__FILE__) . '/form_testing/form_testing.php';
140 + $form_testing = new BVFormTesting($_REQUEST); // phpcs:ignore WordPress.Security.NonceVerification.Recommended
141 + $form_testing->init();
136 142
137 - #handling of Formidable plugin
138 - add_filter('frm_is_field_hidden', '__return_true', PHP_INT_MAX, 3);
139 -
140 - #handling of WP Forms plugin
141 - add_filter('wpforms_process_bypass_captcha', '__return_true', PHP_INT_MAX, 3);
142 -
143 - #handling of Forminator plugin
144 - if (defined('WP_PLUGIN_DIR')) {
145 - $abstractFrontActionFilePath = WP_PLUGIN_DIR . '/forminator/library/abstracts/abstract-class-front-action.php';
146 - $frontActionFilePath = WP_PLUGIN_DIR . '/forminator/library/modules/custom-forms/front/front-action.php';
147 -
148 - if (file_exists($abstractFrontActionFilePath) && file_exists($frontActionFilePath)) {
149 - require_once $abstractFrontActionFilePath;
150 - require_once $frontActionFilePath;
151 - if (class_exists('Forminator_CForm_Front_Action')) {
152 - Forminator_CForm_Front_Action::$hidden_fields[] = "bv-stripe-";
153 - }
154 - }
155 - }
156 -
157 - #handling of CleanTalk Antispam plugin
158 - add_action('init', function() {
159 - global $apbct;
160 - if (isset($apbct) && is_object($apbct)) {
161 - $apbct->settings['forms__contact_forms_test'] = 0;
162 - }
163 - });
164 143 } else {
165 144 define('WPRBASEPATH', plugin_dir_path(__FILE__));
166 145
167 146
@@ -166,9 +145,9 @@
166 145
167 146
168 147 require_once dirname( __FILE__ ) . '/callback/handler.php';
169 148
170 - $params = $request->processParams($_REQUEST);
149 + $params = $request->processParams($_REQUEST); // phpcs:ignore WordPress.Security.NonceVerification.Recommended
171 150 if ($params === false) {
172 151 $response->terminate($request->corruptedParamsResp());
173 152 }
174 153 $request->params = $params;
@@ -189,16 +168,16 @@
189 168 if ($bvinfo->hasValidDBVersion()) {
190 169 if ($bvinfo->isProtectModuleEnabled()) {
191 170 require_once dirname( __FILE__ ) . '/protect/protect.php';
192 171 //For backward compatibility.
193 - WPRProtect_V573::$settings = new WPRWPSettings();
194 - WPRProtect_V573::$db = new WPRWPDb();
195 - WPRProtect_V573::$info = new WPRInfo(WPRProtect_V573::$settings);
172 + WPRProtect_V592::$settings = new WPRWPSettings();
173 + WPRProtect_V592::$db = new WPRWPDb();
174 + WPRProtect_V592::$info = new WPRInfo(WPRProtect_V592::$settings);
196 175
197 - add_action('wpr_clear_pt_config', array('WPRProtect_V573', 'uninstall'));
176 + add_action('wpr_clear_pt_config', array('WPRProtect_V592', 'uninstall'));
198 177
199 178 if ($bvinfo->isActivePlugin()) {
200 - WPRProtect_V573::init(WPRProtect_V573::MODE_WP);
179 + WPRProtect_V592::init(WPRProtect_V592::MODE_WP);
201 180 }
202 181 }
203 182
204 183 if ($bvinfo->isDynSyncModuleEnabled()) {
@@ -234,5 +213,17 @@
234 213 add_filter('site_transient_update_plugins', array($wpadmin, 'hidePluginUpdate'));
235 214 }
236 215
237 216 ##THIRDPARTYCACHINGMODULE##
238 -}
217 +}
218 +
219 +if (WPRWP2FA::isEnabled($bvsettings)) {
220 + $wp_2fa = new WPRWP2FA();
221 + $wp_2fa->init();
222 +}
223 +
224 +if (!empty($bvinfo->getLPWhitelabelInfo())) {
225 + $wp_login_whitelabel = new WPRWPLoginWhitelabel();
226 + $wp_login_whitelabel->init();
227 +}
228 +
229 +add_action('wpr_clear_wp_2fa_config', array($wp_action, 'clear_wp_2fa_config'));