PageRenderTime 49ms CodeModel.GetById 17ms RepoModel.GetById 0ms app.codeStats 0ms

/htdocs/wp-admin/includes/plugin-install.php

https://bitbucket.org/dkrzos/phc
PHP | 406 lines | 285 code | 46 blank | 75 comment | 61 complexity | 37382867f2c3e0f0e5b50e1f695ec3e3 MD5 | raw file
Possible License(s): GPL-2.0
  1. <?php
  2. /**
  3. * WordPress Plugin Install Administration API
  4. *
  5. * @package WordPress
  6. * @subpackage Administration
  7. */
  8. /**
  9. * Retrieve plugin installer pages from WordPress Plugins API.
  10. *
  11. * It is possible for a plugin to override the Plugin API result with three
  12. * filters. Assume this is for plugins, which can extend on the Plugin Info to
  13. * offer more choices. This is very powerful and must be used with care, when
  14. * overriding the filters.
  15. *
  16. * The first filter, 'plugins_api_args', is for the args and gives the action as
  17. * the second parameter. The hook for 'plugins_api_args' must ensure that an
  18. * object is returned.
  19. *
  20. * The second filter, 'plugins_api', is the result that would be returned.
  21. *
  22. * @since 2.7.0
  23. *
  24. * @param string $action
  25. * @param array|object $args Optional. Arguments to serialize for the Plugin Info API.
  26. * @return object plugins_api response object on success, WP_Error on failure.
  27. */
  28. function plugins_api($action, $args = null) {
  29. if ( is_array($args) )
  30. $args = (object)$args;
  31. if ( !isset($args->per_page) )
  32. $args->per_page = 24;
  33. // Allows a plugin to override the WordPress.org API entirely.
  34. // Use the filter 'plugins_api_result' to merely add results.
  35. // Please ensure that a object is returned from the following filters.
  36. $args = apply_filters('plugins_api_args', $args, $action);
  37. $res = apply_filters('plugins_api', false, $action, $args);
  38. if ( false === $res ) {
  39. $request = wp_remote_post('http://api.wordpress.org/plugins/info/1.0/', array( 'timeout' => 15, 'body' => array('action' => $action, 'request' => serialize($args))) );
  40. if ( is_wp_error($request) ) {
  41. $res = new WP_Error('plugins_api_failed', __( 'An unexpected error occurred. Something may be wrong with WordPress.org or this server&#8217;s configuration. If you continue to have problems, please try the <a href="http://wordpress.org/support/">support forums</a>.' ), $request->get_error_message() );
  42. } else {
  43. $res = maybe_unserialize( wp_remote_retrieve_body( $request ) );
  44. if ( ! is_object( $res ) && ! is_array( $res ) )
  45. $res = new WP_Error('plugins_api_failed', __( 'An unexpected error occurred. Something may be wrong with WordPress.org or this server&#8217;s configuration. If you continue to have problems, please try the <a href="http://wordpress.org/support/">support forums</a>.' ), wp_remote_retrieve_body( $request ) );
  46. }
  47. } elseif ( !is_wp_error($res) ) {
  48. $res->external = true;
  49. }
  50. return apply_filters('plugins_api_result', $res, $action, $args);
  51. }
  52. /**
  53. * Retrieve popular WordPress plugin tags.
  54. *
  55. * @since 2.7.0
  56. *
  57. * @param array $args
  58. * @return array
  59. */
  60. function install_popular_tags( $args = array() ) {
  61. $key = md5(serialize($args));
  62. if ( false !== ($tags = get_site_transient('poptags_' . $key) ) )
  63. return $tags;
  64. $tags = plugins_api('hot_tags', $args);
  65. if ( is_wp_error($tags) )
  66. return $tags;
  67. set_site_transient( 'poptags_' . $key, $tags, 3 * HOUR_IN_SECONDS );
  68. return $tags;
  69. }
  70. function install_dashboard() {
  71. ?>
  72. <p><?php printf( __( 'Plugins extend and expand the functionality of WordPress. You may automatically install plugins from the <a href="http://wordpress.org/extend/plugins/">WordPress Plugin Directory</a> or upload a plugin in .zip format via <a href="%s">this page</a>.' ), self_admin_url( 'plugin-install.php?tab=upload' ) ); ?></p>
  73. <h4><?php _e('Search') ?></h4>
  74. <?php install_search_form( false ); ?>
  75. <h4><?php _e('Popular tags') ?></h4>
  76. <p class="install-help"><?php _e('You may also browse based on the most popular tags in the Plugin Directory:') ?></p>
  77. <?php
  78. $api_tags = install_popular_tags();
  79. echo '<p class="popular-tags">';
  80. if ( is_wp_error($api_tags) ) {
  81. echo $api_tags->get_error_message();
  82. } else {
  83. //Set up the tags in a way which can be interpreted by wp_generate_tag_cloud()
  84. $tags = array();
  85. foreach ( (array)$api_tags as $tag )
  86. $tags[ $tag['name'] ] = (object) array(
  87. 'link' => esc_url( self_admin_url('plugin-install.php?tab=search&type=tag&s=' . urlencode($tag['name'])) ),
  88. 'name' => $tag['name'],
  89. 'id' => sanitize_title_with_dashes($tag['name']),
  90. 'count' => $tag['count'] );
  91. echo wp_generate_tag_cloud($tags, array( 'single_text' => __('%s plugin'), 'multiple_text' => __('%s plugins') ) );
  92. }
  93. echo '</p><br class="clear" />';
  94. }
  95. add_action('install_plugins_dashboard', 'install_dashboard');
  96. /**
  97. * Display search form for searching plugins.
  98. *
  99. * @since 2.7.0
  100. */
  101. function install_search_form( $type_selector = true ) {
  102. $type = isset($_REQUEST['type']) ? stripslashes( $_REQUEST['type'] ) : 'term';
  103. $term = isset($_REQUEST['s']) ? stripslashes( $_REQUEST['s'] ) : '';
  104. ?><form id="search-plugins" method="get" action="">
  105. <input type="hidden" name="tab" value="search" />
  106. <?php if ( $type_selector ) : ?>
  107. <select name="type" id="typeselector">
  108. <option value="term"<?php selected('term', $type) ?>><?php _e('Keyword'); ?></option>
  109. <option value="author"<?php selected('author', $type) ?>><?php _e('Author'); ?></option>
  110. <option value="tag"<?php selected('tag', $type) ?>><?php _ex('Tag', 'Plugin Installer'); ?></option>
  111. </select>
  112. <?php endif; ?>
  113. <input type="search" name="s" value="<?php echo esc_attr($term) ?>" autofocus="autofocus" />
  114. <label class="screen-reader-text" for="plugin-search-input"><?php _e('Search Plugins'); ?></label>
  115. <?php submit_button( __( 'Search Plugins' ), 'button', 'plugin-search-input', false ); ?>
  116. </form><?php
  117. }
  118. /**
  119. * Upload from zip
  120. * @since 2.8.0
  121. *
  122. * @param string $page
  123. */
  124. function install_plugins_upload( $page = 1 ) {
  125. ?>
  126. <h4><?php _e('Install a plugin in .zip format'); ?></h4>
  127. <p class="install-help"><?php _e('If you have a plugin in a .zip format, you may install it by uploading it here.'); ?></p>
  128. <form method="post" enctype="multipart/form-data" class="wp-upload-form" action="<?php echo self_admin_url('update.php?action=upload-plugin'); ?>">
  129. <?php wp_nonce_field( 'plugin-upload'); ?>
  130. <label class="screen-reader-text" for="pluginzip"><?php _e('Plugin zip file'); ?></label>
  131. <input type="file" id="pluginzip" name="pluginzip" />
  132. <?php submit_button( __( 'Install Now' ), 'button', 'install-plugin-submit', false ); ?>
  133. </form>
  134. <?php
  135. }
  136. add_action('install_plugins_upload', 'install_plugins_upload', 10, 1);
  137. /**
  138. * Show a username form for the favorites page
  139. * @since 3.5.0
  140. *
  141. */
  142. function install_plugins_favorites_form() {
  143. $user = ! empty( $_GET['user'] ) ? stripslashes( $_GET['user'] ) : get_user_option( 'wporg_favorites' );
  144. ?>
  145. <p class="install-help"><?php _e( 'If you have marked plugins as favorites on WordPress.org, you can browse them here.' ); ?></p>
  146. <form method="get" action="">
  147. <input type="hidden" name="tab" value="favorites" />
  148. <p>
  149. <label for="user"><?php _e( 'Your WordPress.org username:' ); ?></label>
  150. <input type="search" id="user" name="user" value="<?php echo esc_attr( $user ); ?>" />
  151. <input type="submit" class="button" value="<?php esc_attr_e( 'Get Favorites' ); ?>" />
  152. </p>
  153. </form>
  154. <?php
  155. }
  156. /**
  157. * Display plugin content based on plugin list.
  158. *
  159. * @since 2.7.0
  160. */
  161. function display_plugins_table() {
  162. global $wp_list_table;
  163. if ( current_filter() == 'install_plugins_favorites' && empty( $_GET['user'] ) && ! get_user_option( 'wporg_favorites' ) )
  164. return;
  165. $wp_list_table->display();
  166. }
  167. add_action( 'install_plugins_search', 'display_plugins_table' );
  168. add_action( 'install_plugins_featured', 'display_plugins_table' );
  169. add_action( 'install_plugins_popular', 'display_plugins_table' );
  170. add_action( 'install_plugins_new', 'display_plugins_table' );
  171. add_action( 'install_plugins_favorites', 'display_plugins_table' );
  172. /**
  173. * Determine the status we can perform on a plugin.
  174. *
  175. * @since 3.0.0
  176. */
  177. function install_plugin_install_status($api, $loop = false) {
  178. // this function is called recursively, $loop prevents further loops.
  179. if ( is_array($api) )
  180. $api = (object) $api;
  181. //Default to a "new" plugin
  182. $status = 'install';
  183. $url = false;
  184. //Check to see if this plugin is known to be installed, and has an update awaiting it.
  185. $update_plugins = get_site_transient('update_plugins');
  186. if ( isset( $update_plugins->response ) ) {
  187. foreach ( (array)$update_plugins->response as $file => $plugin ) {
  188. if ( $plugin->slug === $api->slug ) {
  189. $status = 'update_available';
  190. $update_file = $file;
  191. $version = $plugin->new_version;
  192. if ( current_user_can('update_plugins') )
  193. $url = wp_nonce_url(self_admin_url('update.php?action=upgrade-plugin&plugin=' . $update_file), 'upgrade-plugin_' . $update_file);
  194. break;
  195. }
  196. }
  197. }
  198. if ( 'install' == $status ) {
  199. if ( is_dir( WP_PLUGIN_DIR . '/' . $api->slug ) ) {
  200. $installed_plugin = get_plugins('/' . $api->slug);
  201. if ( empty($installed_plugin) ) {
  202. if ( current_user_can('install_plugins') )
  203. $url = wp_nonce_url(self_admin_url('update.php?action=install-plugin&plugin=' . $api->slug), 'install-plugin_' . $api->slug);
  204. } else {
  205. $key = array_shift( $key = array_keys($installed_plugin) ); //Use the first plugin regardless of the name, Could have issues for multiple-plugins in one directory if they share different version numbers
  206. if ( version_compare($api->version, $installed_plugin[ $key ]['Version'], '=') ){
  207. $status = 'latest_installed';
  208. } elseif ( version_compare($api->version, $installed_plugin[ $key ]['Version'], '<') ) {
  209. $status = 'newer_installed';
  210. $version = $installed_plugin[ $key ]['Version'];
  211. } else {
  212. //If the above update check failed, Then that probably means that the update checker has out-of-date information, force a refresh
  213. if ( ! $loop ) {
  214. delete_site_transient('update_plugins');
  215. wp_update_plugins();
  216. return install_plugin_install_status($api, true);
  217. }
  218. }
  219. }
  220. } else {
  221. // "install" & no directory with that slug
  222. if ( current_user_can('install_plugins') )
  223. $url = wp_nonce_url(self_admin_url('update.php?action=install-plugin&plugin=' . $api->slug), 'install-plugin_' . $api->slug);
  224. }
  225. }
  226. if ( isset($_GET['from']) )
  227. $url .= '&amp;from=' . urlencode(stripslashes($_GET['from']));
  228. return compact('status', 'url', 'version');
  229. }
  230. /**
  231. * Display plugin information in dialog box form.
  232. *
  233. * @since 2.7.0
  234. */
  235. function install_plugin_information() {
  236. global $tab;
  237. $api = plugins_api('plugin_information', array('slug' => stripslashes( $_REQUEST['plugin'] ) ));
  238. if ( is_wp_error($api) )
  239. wp_die($api);
  240. $plugins_allowedtags = array(
  241. 'a' => array( 'href' => array(), 'title' => array(), 'target' => array() ),
  242. 'abbr' => array( 'title' => array() ), 'acronym' => array( 'title' => array() ),
  243. 'code' => array(), 'pre' => array(), 'em' => array(), 'strong' => array(),
  244. 'div' => array(), 'p' => array(), 'ul' => array(), 'ol' => array(), 'li' => array(),
  245. 'h1' => array(), 'h2' => array(), 'h3' => array(), 'h4' => array(), 'h5' => array(), 'h6' => array(),
  246. 'img' => array( 'src' => array(), 'class' => array(), 'alt' => array() )
  247. );
  248. $plugins_section_titles = array(
  249. 'description' => _x('Description', 'Plugin installer section title'),
  250. 'installation' => _x('Installation', 'Plugin installer section title'),
  251. 'faq' => _x('FAQ', 'Plugin installer section title'),
  252. 'screenshots' => _x('Screenshots', 'Plugin installer section title'),
  253. 'changelog' => _x('Changelog', 'Plugin installer section title'),
  254. 'other_notes' => _x('Other Notes', 'Plugin installer section title')
  255. );
  256. //Sanitize HTML
  257. foreach ( (array)$api->sections as $section_name => $content )
  258. $api->sections[$section_name] = wp_kses($content, $plugins_allowedtags);
  259. foreach ( array( 'version', 'author', 'requires', 'tested', 'homepage', 'downloaded', 'slug' ) as $key ) {
  260. if ( isset( $api->$key ) )
  261. $api->$key = wp_kses( $api->$key, $plugins_allowedtags );
  262. }
  263. $section = isset($_REQUEST['section']) ? stripslashes( $_REQUEST['section'] ) : 'description'; //Default to the Description tab, Do not translate, API returns English.
  264. if ( empty($section) || ! isset($api->sections[ $section ]) )
  265. $section = array_shift( $section_titles = array_keys((array)$api->sections) );
  266. iframe_header( __('Plugin Install') );
  267. echo "<div id='$tab-header'>\n";
  268. echo "<ul id='sidemenu'>\n";
  269. foreach ( (array)$api->sections as $section_name => $content ) {
  270. if ( isset( $plugins_section_titles[ $section_name ] ) )
  271. $title = $plugins_section_titles[ $section_name ];
  272. else
  273. $title = ucwords( str_replace( '_', ' ', $section_name ) );
  274. $class = ( $section_name == $section ) ? ' class="current"' : '';
  275. $href = add_query_arg( array('tab' => $tab, 'section' => $section_name) );
  276. $href = esc_url($href);
  277. $san_section = esc_attr( $section_name );
  278. echo "\t<li><a name='$san_section' href='$href' $class>$title</a></li>\n";
  279. }
  280. echo "</ul>\n";
  281. echo "</div>\n";
  282. ?>
  283. <div class="alignright fyi">
  284. <?php if ( ! empty($api->download_link) && ( current_user_can('install_plugins') || current_user_can('update_plugins') ) ) : ?>
  285. <p class="action-button">
  286. <?php
  287. $status = install_plugin_install_status($api);
  288. switch ( $status['status'] ) {
  289. case 'install':
  290. if ( $status['url'] )
  291. echo '<a href="' . $status['url'] . '" target="_parent">' . __('Install Now') . '</a>';
  292. break;
  293. case 'update_available':
  294. if ( $status['url'] )
  295. echo '<a href="' . $status['url'] . '" target="_parent">' . __('Install Update Now') .'</a>';
  296. break;
  297. case 'newer_installed':
  298. echo '<a>' . sprintf(__('Newer Version (%s) Installed'), $status['version']) . '</a>';
  299. break;
  300. case 'latest_installed':
  301. echo '<a>' . __('Latest Version Installed') . '</a>';
  302. break;
  303. }
  304. ?>
  305. </p>
  306. <?php endif; ?>
  307. <h2 class="mainheader"><?php /* translators: For Your Information */ _e('FYI') ?></h2>
  308. <ul>
  309. <?php if ( ! empty($api->version) ) : ?>
  310. <li><strong><?php _e('Version:') ?></strong> <?php echo $api->version ?></li>
  311. <?php endif; if ( ! empty($api->author) ) : ?>
  312. <li><strong><?php _e('Author:') ?></strong> <?php echo links_add_target($api->author, '_blank') ?></li>
  313. <?php endif; if ( ! empty($api->last_updated) ) : ?>
  314. <li><strong><?php _e('Last Updated:') ?></strong> <span title="<?php echo $api->last_updated ?>"><?php
  315. printf( __('%s ago'), human_time_diff(strtotime($api->last_updated)) ) ?></span></li>
  316. <?php endif; if ( ! empty($api->requires) ) : ?>
  317. <li><strong><?php _e('Requires WordPress Version:') ?></strong> <?php printf(__('%s or higher'), $api->requires) ?></li>
  318. <?php endif; if ( ! empty($api->tested) ) : ?>
  319. <li><strong><?php _e('Compatible up to:') ?></strong> <?php echo $api->tested ?></li>
  320. <?php endif; if ( ! empty($api->downloaded) ) : ?>
  321. <li><strong><?php _e('Downloaded:') ?></strong> <?php printf(_n('%s time', '%s times', $api->downloaded), number_format_i18n($api->downloaded)) ?></li>
  322. <?php endif; if ( ! empty($api->slug) && empty($api->external) ) : ?>
  323. <li><a target="_blank" href="http://wordpress.org/extend/plugins/<?php echo $api->slug ?>/"><?php _e('WordPress.org Plugin Page &#187;') ?></a></li>
  324. <?php endif; if ( ! empty($api->homepage) ) : ?>
  325. <li><a target="_blank" href="<?php echo $api->homepage ?>"><?php _e('Plugin Homepage &#187;') ?></a></li>
  326. <?php endif; ?>
  327. </ul>
  328. <?php if ( ! empty($api->rating) ) : ?>
  329. <h2><?php _e('Average Rating') ?></h2>
  330. <div class="star-holder" title="<?php printf(_n('(based on %s rating)', '(based on %s ratings)', $api->num_ratings), number_format_i18n($api->num_ratings)); ?>">
  331. <div class="star star-rating" style="width: <?php echo esc_attr( str_replace( ',', '.', $api->rating ) ); ?>px"></div>
  332. </div>
  333. <small><?php printf(_n('(based on %s rating)', '(based on %s ratings)', $api->num_ratings), number_format_i18n($api->num_ratings)); ?></small>
  334. <?php endif; ?>
  335. </div>
  336. <div id="section-holder" class="wrap">
  337. <?php
  338. if ( !empty($api->tested) && version_compare( substr($GLOBALS['wp_version'], 0, strlen($api->tested)), $api->tested, '>') )
  339. echo '<div class="updated"><p>' . __('<strong>Warning:</strong> This plugin has <strong>not been tested</strong> with your current version of WordPress.') . '</p></div>';
  340. else if ( !empty($api->requires) && version_compare( substr($GLOBALS['wp_version'], 0, strlen($api->requires)), $api->requires, '<') )
  341. echo '<div class="updated"><p>' . __('<strong>Warning:</strong> This plugin has <strong>not been marked as compatible</strong> with your version of WordPress.') . '</p></div>';
  342. foreach ( (array)$api->sections as $section_name => $content ) {
  343. if ( isset( $plugins_section_titles[ $section_name ] ) )
  344. $title = $plugins_section_titles[ $section_name ];
  345. else
  346. $title = ucwords( str_replace( '_', ' ', $section_name ) );
  347. $content = links_add_base_url($content, 'http://wordpress.org/extend/plugins/' . $api->slug . '/');
  348. $content = links_add_target($content, '_blank');
  349. $san_section = esc_attr( $section_name );
  350. $display = ( $section_name == $section ) ? 'block' : 'none';
  351. echo "\t<div id='section-{$san_section}' class='section' style='display: {$display};'>\n";
  352. echo "\t\t<h2 class='long-header'>$title</h2>";
  353. echo $content;
  354. echo "\t</div>\n";
  355. }
  356. echo "</div>\n";
  357. iframe_footer();
  358. exit;
  359. }
  360. add_action('install_plugins_pre_plugin-information', 'install_plugin_information');