Edit File by line
/home/zeestwma/richards.../wp-conte.../plugins/wpforms-.../src/Forms/Fields/Traits
File: FileMethodsTrait.php
<?php
[0] Fix | Delete
[1] Fix | Delete
namespace WPForms\Forms\Fields\Traits;
[2] Fix | Delete
[3] Fix | Delete
/**
[4] Fix | Delete
* File methods trait.
[5] Fix | Delete
*
[6] Fix | Delete
* @since 1.9.8
[7] Fix | Delete
*/
[8] Fix | Delete
trait FileMethodsTrait {
[9] Fix | Delete
[10] Fix | Delete
/**
[11] Fix | Delete
* File extensions that are not allowed.
[12] Fix | Delete
*
[13] Fix | Delete
* @since 1.9.8
[14] Fix | Delete
*
[15] Fix | Delete
* @var array
[16] Fix | Delete
*/
[17] Fix | Delete
private $denylist = [
[18] Fix | Delete
'ade',
[19] Fix | Delete
'adp',
[20] Fix | Delete
'app',
[21] Fix | Delete
'asp',
[22] Fix | Delete
'bas',
[23] Fix | Delete
'bat',
[24] Fix | Delete
'cer',
[25] Fix | Delete
'cgi',
[26] Fix | Delete
'chm',
[27] Fix | Delete
'cmd',
[28] Fix | Delete
'com',
[29] Fix | Delete
'cpl',
[30] Fix | Delete
'crt',
[31] Fix | Delete
'csh',
[32] Fix | Delete
'csr',
[33] Fix | Delete
'dll',
[34] Fix | Delete
'drv',
[35] Fix | Delete
'exe',
[36] Fix | Delete
'fxp',
[37] Fix | Delete
'flv',
[38] Fix | Delete
'hlp',
[39] Fix | Delete
'hta',
[40] Fix | Delete
'htaccess',
[41] Fix | Delete
'htm',
[42] Fix | Delete
'html',
[43] Fix | Delete
'htpasswd',
[44] Fix | Delete
'inf',
[45] Fix | Delete
'ins',
[46] Fix | Delete
'isp',
[47] Fix | Delete
'jar',
[48] Fix | Delete
'js',
[49] Fix | Delete
'jse',
[50] Fix | Delete
'jsp',
[51] Fix | Delete
'ksh',
[52] Fix | Delete
'lnk',
[53] Fix | Delete
'mdb',
[54] Fix | Delete
'mde',
[55] Fix | Delete
'mdt',
[56] Fix | Delete
'mdw',
[57] Fix | Delete
'msc',
[58] Fix | Delete
'msi',
[59] Fix | Delete
'msp',
[60] Fix | Delete
'mst',
[61] Fix | Delete
'ops',
[62] Fix | Delete
'pcd',
[63] Fix | Delete
'php',
[64] Fix | Delete
'pif',
[65] Fix | Delete
'pl',
[66] Fix | Delete
'prg',
[67] Fix | Delete
'ps1',
[68] Fix | Delete
'ps2',
[69] Fix | Delete
'py',
[70] Fix | Delete
'rb',
[71] Fix | Delete
'reg',
[72] Fix | Delete
'scr',
[73] Fix | Delete
'sct',
[74] Fix | Delete
'sh',
[75] Fix | Delete
'shb',
[76] Fix | Delete
'shs',
[77] Fix | Delete
'sys',
[78] Fix | Delete
'swf',
[79] Fix | Delete
'tmp',
[80] Fix | Delete
'torrent',
[81] Fix | Delete
'url',
[82] Fix | Delete
'vb',
[83] Fix | Delete
'vbe',
[84] Fix | Delete
'vbs',
[85] Fix | Delete
'vbscript',
[86] Fix | Delete
'wsc',
[87] Fix | Delete
'wsf',
[88] Fix | Delete
'wsf',
[89] Fix | Delete
'wsh',
[90] Fix | Delete
'dfxp',
[91] Fix | Delete
'onetmp',
[92] Fix | Delete
];
[93] Fix | Delete
[94] Fix | Delete
/**
[95] Fix | Delete
* Get all allowed extensions.
[96] Fix | Delete
* Check against user-entered extensions.
[97] Fix | Delete
*
[98] Fix | Delete
* @since 1.9.8
[99] Fix | Delete
*
[100] Fix | Delete
* @return array
[101] Fix | Delete
*/
[102] Fix | Delete
protected function get_extensions(): array {
[103] Fix | Delete
[104] Fix | Delete
// Allowed file extensions by default.
[105] Fix | Delete
$default_extensions = $this->get_default_extensions();
[106] Fix | Delete
[107] Fix | Delete
// Allowed file extensions.
[108] Fix | Delete
$extensions = ! empty( $this->field_data['extensions'] ) ? explode( ',', $this->field_data['extensions'] ) : $default_extensions;
[109] Fix | Delete
[110] Fix | Delete
return wpforms_chain( $extensions )
[111] Fix | Delete
->map(
[112] Fix | Delete
static function ( $ext ) {
[113] Fix | Delete
[114] Fix | Delete
return strtolower( preg_replace( '/[^A-Za-z0-9_-]/', '', $ext ) );
[115] Fix | Delete
}
[116] Fix | Delete
)
[117] Fix | Delete
->array_filter()
[118] Fix | Delete
->array_intersect( $default_extensions )
[119] Fix | Delete
->value();
[120] Fix | Delete
}
[121] Fix | Delete
[122] Fix | Delete
/**
[123] Fix | Delete
* Determine the max-allowed file size in bytes as per field options.
[124] Fix | Delete
*
[125] Fix | Delete
* @since 1.9.8
[126] Fix | Delete
*
[127] Fix | Delete
* @return int Number of bytes allowed.
[128] Fix | Delete
*/
[129] Fix | Delete
public function max_file_size(): int {
[130] Fix | Delete
[131] Fix | Delete
if ( ! empty( $this->field_data['max_size'] ) ) {
[132] Fix | Delete
[133] Fix | Delete
// Strip any suffix provided (e.g., M, MB, etc.), which leaves us with the raw MB value.
[134] Fix | Delete
$max_size = preg_replace( '/[^0-9.]/', '', $this->field_data['max_size'] );
[135] Fix | Delete
[136] Fix | Delete
return wpforms_size_to_bytes( $max_size . 'M' );
[137] Fix | Delete
}
[138] Fix | Delete
[139] Fix | Delete
return (int) wpforms_max_upload( true );
[140] Fix | Delete
}
[141] Fix | Delete
[142] Fix | Delete
/**
[143] Fix | Delete
* Get default extensions supported by WordPress
[144] Fix | Delete
* without those that we manually denylist.
[145] Fix | Delete
*
[146] Fix | Delete
* @since 1.9.8
[147] Fix | Delete
*
[148] Fix | Delete
* @return array
[149] Fix | Delete
*/
[150] Fix | Delete
protected function get_default_extensions(): array {
[151] Fix | Delete
[152] Fix | Delete
return wpforms_chain( get_allowed_mime_types() )
[153] Fix | Delete
->array_keys()
[154] Fix | Delete
->implode( '|' )
[155] Fix | Delete
->explode( '|' )
[156] Fix | Delete
->array_diff( $this->denylist )
[157] Fix | Delete
->value();
[158] Fix | Delete
}
[159] Fix | Delete
}
[160] Fix | Delete
[161] Fix | Delete
It is recommended that you Edit text format, this type of Fix handles quite a lot in one request
Function