Edit File by line

Deprecated: str_replace(): Passing null to parameter #2 ($replace) of type array|string is deprecated in /home/sportsfever/public_html/filemanger/function.php on line 93
/home/sportsfe.../httpdocs/wp-conte.../plugins/wp-revie.../includes
File: ajax.php
<?php
[0] Fix | Delete
/**
[1] Fix | Delete
* Ajax handles
[2] Fix | Delete
*
[3] Fix | Delete
* @package WP_Review
[4] Fix | Delete
* @since 3.0.0
[5] Fix | Delete
*/
[6] Fix | Delete
[7] Fix | Delete
/* Get review with Ajax */
[8] Fix | Delete
[9] Fix | Delete
/* add_action('wp_ajax_mts_review_get_review', 'mts_review_get_review'); */
[10] Fix | Delete
[11] Fix | Delete
/* add_action('wp_ajax_nopriv_mts_review_get_review', 'mts_review_get_review'); */
[12] Fix | Delete
[13] Fix | Delete
add_action( 'wp_ajax_wp_review_rate', 'wp_review_ajax_rate' );
[14] Fix | Delete
add_action( 'wp_ajax_nopriv_wp_review_rate', 'wp_review_ajax_rate' );
[15] Fix | Delete
[16] Fix | Delete
add_action( 'wp_ajax_wp_review_migrate_ratings', 'wp_review_ajax_migrate_ratings' );
[17] Fix | Delete
[18] Fix | Delete
add_action( 'wp_ajax_wp-review-load-reviews', 'wp_review_ajax_load_reviews' );
[19] Fix | Delete
add_action( 'wp_ajax_nopriv_wp-review-load-reviews', 'wp_review_ajax_load_reviews' );
[20] Fix | Delete
[21] Fix | Delete
add_action( 'wp_ajax_wpr-visitor-features-rating', 'wp_review_ajax_visitor_features_rating' );
[22] Fix | Delete
add_action( 'wp_ajax_nopriv_wpr-visitor-features-rating', 'wp_review_ajax_visitor_features_rating' );
[23] Fix | Delete
[24] Fix | Delete
add_action( 'wp_ajax_wpr-purge-ratings', 'wp_review_ajax_purge_ratings' );
[25] Fix | Delete
[26] Fix | Delete
/**
[27] Fix | Delete
* Get review with Ajax.
[28] Fix | Delete
*/
[29] Fix | Delete
function mts_review_get_review() {
[30] Fix | Delete
// Security.
[31] Fix | Delete
check_ajax_referer( 'wp-review-security', 'nonce' );
[32] Fix | Delete
[33] Fix | Delete
$post_id = intval( $_POST['post_id'] );
[34] Fix | Delete
$user_id = is_user_logged_in() ? get_current_user_id() : 0;
[35] Fix | Delete
$review = round( abs( filter_input( INPUT_POST, 'review' ) ), 2 );
[36] Fix | Delete
[37] Fix | Delete
$review_text = $review;
[38] Fix | Delete
[39] Fix | Delete
$uip = wp_review_get_user_ip();
[40] Fix | Delete
[41] Fix | Delete
if ( ! function_exists( 'wp_review_comment_duplicate_trigger' ) ) {
[42] Fix | Delete
/**
[43] Fix | Delete
* Shows comment duplicate message.
[44] Fix | Delete
*/
[45] Fix | Delete
function wp_review_comment_duplicate_trigger() {
[46] Fix | Delete
echo 'MTS_REVIEW_DUP_ERROR';
[47] Fix | Delete
exit;
[48] Fix | Delete
}
[49] Fix | Delete
}
[50] Fix | Delete
add_action( 'comment_duplicate_trigger', 'wp_review_comment_duplicate_trigger' );
[51] Fix | Delete
[52] Fix | Delete
if (
[53] Fix | Delete
$review > 0 &&
[54] Fix | Delete
! wp_review_has_reviewed( $post_id, $user_id, $uip, WP_REVIEW_COMMENT_TYPE_VISITOR ) &&
[55] Fix | Delete
( is_user_logged_in() || ! wp_review_option( 'registered_only' ) )
[56] Fix | Delete
) {
[57] Fix | Delete
$insert = wp_insert_comment(
[58] Fix | Delete
array(
[59] Fix | Delete
'user_id' => $user_id,
[60] Fix | Delete
'comment_type' => WP_REVIEW_COMMENT_TYPE_VISITOR,
[61] Fix | Delete
'comment_post_ID' => $post_id,
[62] Fix | Delete
'comment_parent' => 0,
[63] Fix | Delete
'comment_author_IP' => $uip,
[64] Fix | Delete
// translators: review text.
[65] Fix | Delete
'comment_content' => sprintf( __( 'Visitor Rating: %s', 'wp-review' ), $review_text ),
[66] Fix | Delete
'comment_agent' => isset( $_SERVER['HTTP_USER_AGENT'] ) ? $_SERVER['HTTP_USER_AGENT'] : '',
[67] Fix | Delete
'comment_date' => current_time( 'mysql' ),
[68] Fix | Delete
'comment_date_gmt' => current_time( 'mysql', 1 ),
[69] Fix | Delete
'comment_approved' => 1,
[70] Fix | Delete
)
[71] Fix | Delete
);
[72] Fix | Delete
[73] Fix | Delete
if ( $insert ) {
[74] Fix | Delete
if ( update_comment_meta( $insert, WP_REVIEW_VISITOR_RATING_METAKEY, $review ) ) {
[75] Fix | Delete
$post_reviews = mts_get_post_reviews( $post_id, true );
[76] Fix | Delete
[77] Fix | Delete
echo $post_reviews['rating'] . '|' . $post_reviews['count'];
[78] Fix | Delete
exit;
[79] Fix | Delete
} else {
[80] Fix | Delete
wp_delete_comment( $insert );
[81] Fix | Delete
}
[82] Fix | Delete
}
[83] Fix | Delete
}
[84] Fix | Delete
[85] Fix | Delete
echo 'MTS_REVIEW_DB_ERROR';
[86] Fix | Delete
exit;
[87] Fix | Delete
}
[88] Fix | Delete
[89] Fix | Delete
[90] Fix | Delete
/**
[91] Fix | Delete
* AJAX User review rating
[92] Fix | Delete
* Replaces mts_review_get_review().
[93] Fix | Delete
*/
[94] Fix | Delete
function wp_review_ajax_rate() {
[95] Fix | Delete
check_ajax_referer( 'wp-review-security', 'nonce' );
[96] Fix | Delete
$post_id = intval( $_POST['post_id'] );
[97] Fix | Delete
$review = filter_input( INPUT_POST, 'review' );
[98] Fix | Delete
$review = round( $review, 2 );
[99] Fix | Delete
$review_data = array(
[100] Fix | Delete
'total' => $review,
[101] Fix | Delete
);
[102] Fix | Delete
wp_review_visitor_rate( $post_id, $review_data );
[103] Fix | Delete
exit;
[104] Fix | Delete
}
[105] Fix | Delete
[106] Fix | Delete
[107] Fix | Delete
/**
[108] Fix | Delete
* Migrates ratings.
[109] Fix | Delete
*/
[110] Fix | Delete
function wp_review_ajax_migrate_ratings() {
[111] Fix | Delete
if ( ! current_user_can( 'manage_options' ) ) {
[112] Fix | Delete
return;
[113] Fix | Delete
}
[114] Fix | Delete
[115] Fix | Delete
if ( get_option( 'wp_review_has_migrated', false ) ) {
[116] Fix | Delete
return;
[117] Fix | Delete
}
[118] Fix | Delete
[119] Fix | Delete
global $wpdb;
[120] Fix | Delete
[121] Fix | Delete
$start = isset( $_POST['start'] ) ? intval( $_POST['start'] ) : 0;
[122] Fix | Delete
$limit = 100;
[123] Fix | Delete
$current_blog_id = get_current_blog_id();
[124] Fix | Delete
[125] Fix | Delete
$query = $wpdb->get_results( 'SELECT * FROM ' . $wpdb->base_prefix . 'mts_wp_reviews WHERE blog_id = ' . $current_blog_id . ' LIMIT ' . $limit . ' OFFSET ' . $start ); // WPCS: unprepared SQL ok.
[126] Fix | Delete
[127] Fix | Delete
foreach ( $query as $review ) {
[128] Fix | Delete
[129] Fix | Delete
if ( 0 == $review->rate ) {
[130] Fix | Delete
continue; // Skip 0-star ratings.
[131] Fix | Delete
}
[132] Fix | Delete
[133] Fix | Delete
$insert = wp_insert_comment(
[134] Fix | Delete
array(
[135] Fix | Delete
'user_id' => $review->user_id,
[136] Fix | Delete
'comment_type' => WP_REVIEW_COMMENT_TYPE_VISITOR,
[137] Fix | Delete
'comment_post_ID' => $review->post_id,
[138] Fix | Delete
'comment_parent' => 0,
[139] Fix | Delete
'comment_content' => sprintf(
[140] Fix | Delete
// translators: visitors rating.
[141] Fix | Delete
__( 'Visitor Rating: %s', 'wp-review' ),
[142] Fix | Delete
sprintf(
[143] Fix | Delete
// translators: review rate.
[144] Fix | Delete
__( '%s Stars', 'wp-review' ),
[145] Fix | Delete
$review->rate
[146] Fix | Delete
)
[147] Fix | Delete
),
[148] Fix | Delete
'comment_author_IP' => $review->user_ip,
[149] Fix | Delete
'comment_date' => gmdate( 'Y-m-d H:i:s', ( strtotime( $review->date ) + ( get_option( 'gmt_offset' ) * HOUR_IN_SECONDS ) ) ),
[150] Fix | Delete
'comment_date_gmt' => gmdate( 'Y-m-d H:i:s', strtotime( $review->date ) ),
[151] Fix | Delete
'comment_approved' => 1,
[152] Fix | Delete
)
[153] Fix | Delete
);
[154] Fix | Delete
[155] Fix | Delete
if ( $insert ) {
[156] Fix | Delete
if ( update_comment_meta( $insert, WP_REVIEW_VISITOR_RATING_METAKEY, $review->rate ) ) {
[157] Fix | Delete
// Purge cache.
[158] Fix | Delete
mts_get_post_reviews( $review->post_id, true );
[159] Fix | Delete
} else {
[160] Fix | Delete
wp_delete_comment( $insert );
[161] Fix | Delete
}
[162] Fix | Delete
}
[163] Fix | Delete
}
[164] Fix | Delete
[165] Fix | Delete
$end = $start + count( $query ); // $wpdb->num_rows;
[166] Fix | Delete
// $migrated_rows = get_option( 'wp_review_migrated_rows', 0 );
[167] Fix | Delete
update_option( 'wp_review_migrated_rows', $end );
[168] Fix | Delete
[169] Fix | Delete
$total_rows = $wpdb->get_var( 'SELECT COUNT(*) FROM ' . $wpdb->base_prefix . 'mts_wp_reviews WHERE blog_id = ' . $current_blog_id ); // WPCS: unprepared SQL ok.
[170] Fix | Delete
$migration_finished = 0;
[171] Fix | Delete
if ( $total_rows == $end ) {
[172] Fix | Delete
update_option( 'wp_review_has_migrated', 1 );
[173] Fix | Delete
$migration_finished = 1;
[174] Fix | Delete
}
[175] Fix | Delete
[176] Fix | Delete
echo wp_json_encode(
[177] Fix | Delete
array(
[178] Fix | Delete
'start' => $start,
[179] Fix | Delete
'lastrow' => $end,
[180] Fix | Delete
'rowsleft' => $total_rows - $end,
[181] Fix | Delete
'finished' => $migration_finished,
[182] Fix | Delete
)
[183] Fix | Delete
);
[184] Fix | Delete
[185] Fix | Delete
die();
[186] Fix | Delete
}
[187] Fix | Delete
[188] Fix | Delete
[189] Fix | Delete
/**
[190] Fix | Delete
* Ajax handle for loading reviews.
[191] Fix | Delete
*/
[192] Fix | Delete
function wp_review_ajax_load_reviews() {
[193] Fix | Delete
$options = $_POST; // WPCS: csrf ok.
[194] Fix | Delete
[195] Fix | Delete
// Options are same as widgets args to keep compatibility.
[196] Fix | Delete
$options = wp_parse_args(
[197] Fix | Delete
$options,
[198] Fix | Delete
array(
[199] Fix | Delete
'post_num' => 5,
[200] Fix | Delete
'page' => 1,
[201] Fix | Delete
'review_type' => '',
[202] Fix | Delete
'thumb_size' => 'small',
[203] Fix | Delete
'cat' => '',
[204] Fix | Delete
'number_of_days' => '',
[205] Fix | Delete
)
[206] Fix | Delete
);
[207] Fix | Delete
[208] Fix | Delete
$type = ! empty( $options['_type'] ) ? $options['_type'] : 'recent';
[209] Fix | Delete
[210] Fix | Delete
$query = wp_review_get_reviews_query( $type, $options );
[211] Fix | Delete
[212] Fix | Delete
if ( ! $query->have_posts() ) {
[213] Fix | Delete
wp_send_json_success( '' );
[214] Fix | Delete
}
[215] Fix | Delete
[216] Fix | Delete
$page = ! empty( $options['page'] ) ? intval( $options['page'] ) : 1;
[217] Fix | Delete
$last_page = $query->max_num_pages;
[218] Fix | Delete
$in_widget = ! empty( $options['widget_id'] );
[219] Fix | Delete
$GLOBALS['in_widget'] = $in_widget;
[220] Fix | Delete
[221] Fix | Delete
ob_start();
[222] Fix | Delete
echo '<ul>';
[223] Fix | Delete
while ( $query->have_posts() ) {
[224] Fix | Delete
$query->the_post();
[225] Fix | Delete
$classes = array( 'thumbnail' );
[226] Fix | Delete
$classes[] = 'thumb_' . $options['thumb_size'];
[227] Fix | Delete
if ( ! has_post_thumbnail() ) {
[228] Fix | Delete
$classes[] = 'wp-review-no-thumbnail';
[229] Fix | Delete
}
[230] Fix | Delete
$classes = implode( ' ', $classes );
[231] Fix | Delete
?>
[232] Fix | Delete
<li class="item">
[233] Fix | Delete
<a title="<?php the_title(); ?>" rel="nofollow" href="<?php the_permalink(); ?>">
[234] Fix | Delete
<div class="<?php echo esc_attr( $classes ); ?>">
[235] Fix | Delete
<?php if ( has_post_thumbnail() ) : ?>
[236] Fix | Delete
<?php the_post_thumbnail( 'wp_review_' . $options['thumb_size'] ); ?>
[237] Fix | Delete
<?php else : ?>
[238] Fix | Delete
<img src="<?php echo esc_url( WP_REVIEW_ASSETS . 'images/' . $options['thumb_size'] . 'thumb.png' ); ?>" alt="<?php the_title(); ?>" class="wp-post-image">
[239] Fix | Delete
<?php endif; ?>
[240] Fix | Delete
</div>
[241] Fix | Delete
</a>
[242] Fix | Delete
<div class="title-right">
[243] Fix | Delete
<div class="entry-title">
[244] Fix | Delete
<a title="<?php the_title(); ?>" href="<?php the_permalink(); ?>">
[245] Fix | Delete
<?php
[246] Fix | Delete
if ( $options['title_length'] ) {
[247] Fix | Delete
echo esc_html( wp_trim_words( get_the_title(), $options['title_length'], '&hellip;' ) );
[248] Fix | Delete
} else {
[249] Fix | Delete
the_title();
[250] Fix | Delete
}
[251] Fix | Delete
?>
[252] Fix | Delete
</a>
[253] Fix | Delete
<div class="review-count">
[254] Fix | Delete
<?php
[255] Fix | Delete
if ( $in_widget ) {
[256] Fix | Delete
$args = array(
[257] Fix | Delete
'in_widget' => $in_widget,
[258] Fix | Delete
'color' => '#fff',
[259] Fix | Delete
'inactive_color' => '#dedcdc',
[260] Fix | Delete
);
[261] Fix | Delete
} else {
[262] Fix | Delete
$args = array();
[263] Fix | Delete
}
[264] Fix | Delete
wp_review_show_total( true, 'review-total-only ' . $options['thumb_size'] . '-thumb', null, $args );
[265] Fix | Delete
?>
[266] Fix | Delete
</div>
[267] Fix | Delete
[268] Fix | Delete
<?php wp_review_extra_info( get_the_ID(), intval( $options['show_date'] ) ); // Using `show_date` to keep compatibility. ?>
[269] Fix | Delete
</div>
[270] Fix | Delete
</div>
[271] Fix | Delete
</li>
[272] Fix | Delete
<?php
[273] Fix | Delete
}
[274] Fix | Delete
echo '</ul><!-- End Reviews -->';
[275] Fix | Delete
wp_reset_postdata();
[276] Fix | Delete
[277] Fix | Delete
if ( intval( $options['allow_pagination'] ) && -1 != $options['post_num'] ) {
[278] Fix | Delete
wp_review_ajax_pagination( $page, $last_page );
[279] Fix | Delete
}
[280] Fix | Delete
$output = ob_get_clean();
[281] Fix | Delete
unset( $GLOBALS['in_widget'] );
[282] Fix | Delete
[283] Fix | Delete
wp_send_json_success( $output );
[284] Fix | Delete
}
[285] Fix | Delete
[286] Fix | Delete
[287] Fix | Delete
/**
[288] Fix | Delete
* Shows review extra information like post date, reviews count.
[289] Fix | Delete
*
[290] Fix | Delete
* @since 3.0.8
[291] Fix | Delete
*
[292] Fix | Delete
* @param int $post_id Post ID.
[293] Fix | Delete
* @param int $extra_info Extra info. 1 for date, 2 for reviews count, 0 for none.
[294] Fix | Delete
* @param array $args Custom args.
[295] Fix | Delete
*/
[296] Fix | Delete
function wp_review_extra_info( $post_id, $extra_info, array $args = array() ) {
[297] Fix | Delete
if ( ! $extra_info ) {
[298] Fix | Delete
return;
[299] Fix | Delete
}
[300] Fix | Delete
[301] Fix | Delete
$args = wp_parse_args(
[302] Fix | Delete
$args,
[303] Fix | Delete
array(
[304] Fix | Delete
'class' => 'postmeta',
[305] Fix | Delete
'date_format' => get_option( 'date_format' ),
[306] Fix | Delete
)
[307] Fix | Delete
);
[308] Fix | Delete
[309] Fix | Delete
if ( 1 === $extra_info ) {
[310] Fix | Delete
?>
[311] Fix | Delete
<div class="<?php echo esc_attr( $args['class'] ); ?>">
[312] Fix | Delete
<?php the_time( $args['date_format'] ); // Hard coded to prevent styling issue. ?>
[313] Fix | Delete
</div> <!-- End .<?php echo esc_attr( $args['class'] ); ?>-->
[314] Fix | Delete
<?php
[315] Fix | Delete
return;
[316] Fix | Delete
}
[317] Fix | Delete
[318] Fix | Delete
$post_reviews = mts_get_post_reviews( $post_id );
[319] Fix | Delete
?>
[320] Fix | Delete
<div class="<?php echo esc_attr( $args['class'] ); ?>">
[321] Fix | Delete
<?php
[322] Fix | Delete
if ( ! $post_reviews['count'] ) {
[323] Fix | Delete
// translators: number of reviews.
[324] Fix | Delete
printf( __( '%s review', 'wp-review' ), 0 );
[325] Fix | Delete
} else {
[326] Fix | Delete
// translators: number of reviews.
[327] Fix | Delete
printf( _n( '%s review', '%s reviews', $post_reviews['count'], 'wp-review' ), $post_reviews['count'] );
[328] Fix | Delete
}
[329] Fix | Delete
?>
[330] Fix | Delete
</div> <!-- End .<?php echo esc_attr( $args['class'] ); ?>-->
[331] Fix | Delete
<?php
[332] Fix | Delete
}
[333] Fix | Delete
[334] Fix | Delete
[335] Fix | Delete
/**
[336] Fix | Delete
* Ajax handler for visitor features rating.
[337] Fix | Delete
*
[338] Fix | Delete
* @since 3.0.0
[339] Fix | Delete
*/
[340] Fix | Delete
function wp_review_ajax_visitor_features_rating() {
[341] Fix | Delete
check_ajax_referer( 'wpr_user_features_rating', 'nonce' );
[342] Fix | Delete
if ( empty( $_POST['post_id'] ) ) {
[343] Fix | Delete
wp_send_json_error( __( 'Empty post ID', 'wp-review' ) );
[344] Fix | Delete
}
[345] Fix | Delete
if ( empty( $_POST['rating'] ) ) {
[346] Fix | Delete
wp_send_json_error( __( 'Empty rating data', 'wp-review' ) );
[347] Fix | Delete
}
[348] Fix | Delete
if ( empty( $_POST['type'] ) ) {
[349] Fix | Delete
wp_send_json_error( __( 'Empty type data', 'wp-review' ) );
[350] Fix | Delete
}
[351] Fix | Delete
$post_id = intval( $_POST['post_id'] );
[352] Fix | Delete
$rating = $_POST['rating']; // WPCS: sanitization ok.
[353] Fix | Delete
$type = wp_kses( wp_unslash( $_POST['type'] ), array() );
[354] Fix | Delete
[355] Fix | Delete
$total = 0;
[356] Fix | Delete
$count = 0;
[357] Fix | Delete
foreach ( $rating as $value ) {
[358] Fix | Delete
$total += $value;
[359] Fix | Delete
$count++;
[360] Fix | Delete
}
[361] Fix | Delete
[362] Fix | Delete
$review_data = array(
[363] Fix | Delete
'total' => $total / $count,
[364] Fix | Delete
'type' => $type,
[365] Fix | Delete
'features' => $rating,
[366] Fix | Delete
);
[367] Fix | Delete
wp_review_visitor_rate( $post_id, $review_data );
[368] Fix | Delete
}
[369] Fix | Delete
[370] Fix | Delete
[371] Fix | Delete
/**
[372] Fix | Delete
* Ajax handler for purging ratings.
[373] Fix | Delete
*
[374] Fix | Delete
* @since 3.0.0
[375] Fix | Delete
*/
[376] Fix | Delete
function wp_review_ajax_purge_ratings() {
[377] Fix | Delete
check_ajax_referer( 'wpr_purge_ratings', 'nonce' );
[378] Fix | Delete
$query_args = array();
[379] Fix | Delete
if ( ! empty( $_POST['type'] ) ) {
[380] Fix | Delete
$query_args['type'] = 'visitor' === $_POST['type'] ? WP_REVIEW_COMMENT_TYPE_VISITOR : WP_REVIEW_COMMENT_TYPE_COMMENT;
[381] Fix | Delete
} else {
[382] Fix | Delete
$query_args['type_in'] = array( WP_REVIEW_COMMENT_TYPE_VISITOR, WP_REVIEW_COMMENT_TYPE_COMMENT );
[383] Fix | Delete
}
[384] Fix | Delete
if ( ! empty( $_POST['postId'] ) ) {
[385] Fix | Delete
$query_args['post_id'] = intval( $_POST['postId'] );
[386] Fix | Delete
}
[387] Fix | Delete
$comments = get_comments( $query_args );
[388] Fix | Delete
if ( ! $comments ) {
[389] Fix | Delete
wp_send_json_success( esc_html__( 'Completed!', 'wp-review' ) );
[390] Fix | Delete
}
[391] Fix | Delete
[392] Fix | Delete
$processed = array();
[393] Fix | Delete
foreach ( $comments as $comment ) {
[394] Fix | Delete
wp_delete_comment( $comment->comment_ID, false );
[395] Fix | Delete
if ( in_array( $comment->comment_post_ID, $processed ) ) {
[396] Fix | Delete
continue;
[397] Fix | Delete
}
[398] Fix | Delete
wp_review_clear_cached_reviews( $comment );
[399] Fix | Delete
$processed[] = $comment->comment_post_ID;
[400] Fix | Delete
}
[401] Fix | Delete
wp_send_json_success( esc_html__( 'Completed!', 'wp-review' ) );
[402] Fix | Delete
}
[403] Fix | Delete
[404] Fix | Delete
It is recommended that you Edit text format, this type of Fix handles quite a lot in one request
Function