A super easy PHP Framework for web development!
				https://github.com/exacti/phacil-framework
			
			
		
			You can not select more than 25 topics
			Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
		
		
		
		
			
				
					81 lines
				
				3.0 KiB
			
		
		
			
		
	
	
					81 lines
				
				3.0 KiB
			| 
											7 years ago
										 | <?php
 | ||
|  | 
 | ||
|  | /*
 | ||
|  |  * This file is part of Twig.
 | ||
|  |  *
 | ||
|  |  * (c) Fabien Potencier
 | ||
|  |  *
 | ||
|  |  * For the full copyright and license information, please view the LICENSE
 | ||
|  |  * file that was distributed with this source code.
 | ||
|  |  */
 | ||
|  | 
 | ||
|  | /**
 | ||
|  |  * @author Fabien Potencier <fabien@symfony.com>
 | ||
|  |  */
 | ||
|  | class Twig_Node_CheckSecurity extends Twig_Node
 | ||
|  | {
 | ||
|  |     private $usedFilters;
 | ||
|  |     private $usedTags;
 | ||
|  |     private $usedFunctions;
 | ||
|  | 
 | ||
|  |     public function __construct(array $usedFilters, array $usedTags, array $usedFunctions)
 | ||
|  |     {
 | ||
|  |         $this->usedFilters = $usedFilters;
 | ||
|  |         $this->usedTags = $usedTags;
 | ||
|  |         $this->usedFunctions = $usedFunctions;
 | ||
|  | 
 | ||
|  |         parent::__construct();
 | ||
|  |     }
 | ||
|  | 
 | ||
|  |     public function compile(Twig_Compiler $compiler)
 | ||
|  |     {
 | ||
|  |         $tags = $filters = $functions = array();
 | ||
|  |         foreach (array('tags', 'filters', 'functions') as $type) {
 | ||
|  |             foreach ($this->{'used'.ucfirst($type)} as $name => $node) {
 | ||
|  |                 if ($node instanceof Twig_Node) {
 | ||
|  |                     ${$type}[$name] = $node->getTemplateLine();
 | ||
|  |                 } else {
 | ||
|  |                     ${$type}[$node] = null;
 | ||
|  |                 }
 | ||
|  |             }
 | ||
|  |         }
 | ||
|  | 
 | ||
|  |         $compiler
 | ||
|  |             ->write('$tags = ')->repr(array_filter($tags))->raw(";\n")
 | ||
|  |             ->write('$filters = ')->repr(array_filter($filters))->raw(";\n")
 | ||
|  |             ->write('$functions = ')->repr(array_filter($functions))->raw(";\n\n")
 | ||
|  |             ->write("try {\n")
 | ||
|  |             ->indent()
 | ||
|  |             ->write("\$this->extensions['Twig_Extension_Sandbox']->checkSecurity(\n")
 | ||
|  |             ->indent()
 | ||
|  |             ->write(!$tags ? "array(),\n" : "array('".implode("', '", array_keys($tags))."'),\n")
 | ||
|  |             ->write(!$filters ? "array(),\n" : "array('".implode("', '", array_keys($filters))."'),\n")
 | ||
|  |             ->write(!$functions ? "array()\n" : "array('".implode("', '", array_keys($functions))."')\n")
 | ||
|  |             ->outdent()
 | ||
|  |             ->write(");\n")
 | ||
|  |             ->outdent()
 | ||
|  |             ->write("} catch (Twig_Sandbox_SecurityError \$e) {\n")
 | ||
|  |             ->indent()
 | ||
|  |             ->write("\$e->setSourceContext(\$this->source);\n\n")
 | ||
|  |             ->write("if (\$e instanceof Twig_Sandbox_SecurityNotAllowedTagError && isset(\$tags[\$e->getTagName()])) {\n")
 | ||
|  |             ->indent()
 | ||
|  |             ->write("\$e->setTemplateLine(\$tags[\$e->getTagName()]);\n")
 | ||
|  |             ->outdent()
 | ||
|  |             ->write("} elseif (\$e instanceof Twig_Sandbox_SecurityNotAllowedFilterError && isset(\$filters[\$e->getFilterName()])) {\n")
 | ||
|  |             ->indent()
 | ||
|  |             ->write("\$e->setTemplateLine(\$filters[\$e->getFilterName()]);\n")
 | ||
|  |             ->outdent()
 | ||
|  |             ->write("} elseif (\$e instanceof Twig_Sandbox_SecurityNotAllowedFunctionError && isset(\$functions[\$e->getFunctionName()])) {\n")
 | ||
|  |             ->indent()
 | ||
|  |             ->write("\$e->setTemplateLine(\$functions[\$e->getFunctionName()]);\n")
 | ||
|  |             ->outdent()
 | ||
|  |             ->write("}\n\n")
 | ||
|  |             ->write("throw \$e;\n")
 | ||
|  |             ->outdent()
 | ||
|  |             ->write("}\n\n")
 | ||
|  |         ;
 | ||
|  |     }
 | ||
|  | }
 | ||
|  | 
 | ||
|  | class_alias('Twig_Node_CheckSecurity', 'Twig\Node\CheckSecurityNode', false);
 |