403Webshell
Server IP : 207.135.97.11  /  Your IP : 172.19.0.1
Web Server : LiteSpeed
System : Linux 6d372a2d2e33 5.14.0-611.24.1.el9_7.x86_64 #1 SMP PREEMPT_DYNAMIC Fri Jan 23 11:42:43 UTC 2026 x86_64
User : nobody ( 65534)
PHP Version : 8.3.30
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /var/www/html/ed.net.au/wp-content/plugins/fast-velocity-minify/inc/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/html/ed.net.au/wp-content/plugins/fast-velocity-minify/inc/admin.php
<?php

# Exit if accessed directly				
if (!defined('ABSPATH')){ exit(); }	

# check for minimum requirements and prevent activation or disable if not fully compatible
function fvm_check_minimum_requirements() {
	if(current_user_can('manage_options')) {

		# defaults
		$error = '';
		$warning = '';

		# php version requirements
		if (version_compare( PHP_VERSION, '5.6', '<' )) {
			$error = __( 'FVM requires PHP 5.6 or higher. You\'re still on', 'fast-velocity-minify' ) .' '. PHP_VERSION;
		}

		# php extension requirements
		if (!extension_loaded('mbstring')) {
			$error = __( 'FVM requires the PHP mbstring module to be installed on the server.', 'fast-velocity-minify' );
		}

		# wp version requirements
		if ( version_compare( $GLOBALS['wp_version'], '4.9', '<' ) ) {
			$error = __( 'FVM requires WP 4.9 or higher. You\'re still on', 'fast-velocity-minify' ) .' '. $GLOBALS['wp_version'];
		}

		# check cache directory (soft check - don't deactivate, just warn)
		$ch_info = fvm_get_cache_location();
		if(isset($ch_info['ch_url'])  && !empty($ch_info['ch_url']) && isset($ch_info['ch_dir']) && !empty($ch_info['ch_dir'])) {
			if(!is_dir($ch_info['ch_dir'])) {
				$warning = __( 'FVM cache directory does not exist yet. It will be created automatically when cache files are written: ', 'fast-velocity-minify' ). ' ['.$ch_info['ch_dir'].']';
			} elseif(!is_writable($ch_info['ch_dir'])) {
				$warning = __( 'FVM cache directory is currently not writable. Please ensure write permissions when ready: ', 'fast-velocity-minify' ). ' ['.$ch_info['ch_dir'].']';
			}
		}

		# deactivate plugin forcefully only for critical errors (not cache directory issues)
		global $fvm_var_basename;
		if ((is_plugin_active($fvm_var_basename) && !empty($error)) || !empty($error)) {
			if (isset($_GET['activate'])) { unset($_GET['activate']); }
			deactivate_plugins($fvm_var_basename);
			add_settings_error( 'fvm_admin_notice', 'fvm_admin_notice', $error, 'error' );
		}

		# show warning for cache directory issues (non-critical)
		if(!empty($warning)) {
			add_settings_error( 'fvm_admin_notice', 'fvm_admin_cache_warning', $warning, 'warning' );
		}

	}
}


# check for soft errors and misconfiguration
function fvm_check_misconfiguration() {
	try {
				
		# plugin version
		global $fvm_var_plugin_version;
		if(is_null($fvm_var_plugin_version)) { return false; }
				
		# if no database version, regenerate
		$plugin_meta = get_option('fvm_plugin_meta');
		if($plugin_meta === false) {
			
			# startup routines
			fvm_plugin_deactivate();
			fvm_plugin_activate();
			
			# save
			update_option('fvm_plugin_meta', json_encode(array('dbv'=>0)) );
		}
		
		# updates
		if($plugin_meta !== false) {
			
			# future updates
			$meta = json_decode($plugin_meta, true);
			$previous_version = $meta['dbv'];
			if($fvm_var_plugin_version != $previous_version) {
				
				# startup routines
				fvm_plugin_deactivate();
				fvm_plugin_activate();
				
				# save
				update_option('fvm_plugin_meta', json_encode(array('dbv'=>$fvm_var_plugin_version)) );
				
			}
			
		}
		
		# check if our tables exist, and do maintenance once a day
		$fvm_table_checker = get_transient('fvm_table_checker');
		if ($fvm_table_checker === false) {
			
			# test if at least one table exists
			global $wpdb;
			if(!is_null($wpdb)) {
				$sqla_table_name = $wpdb->prefix . 'fvm_cache';
				if ($wpdb->get_var($wpdb->prepare("SHOW TABLES LIKE %s", $sqla_table_name)) !== $sqla_table_name) {
					fvm_plugin_activate();
				}
			}
			
			# daily maintenance
			try {
				
				if(!is_null($wpdb)) { 
					
					# limit cache table to 20k records
					$lim = 20000;
					$res = $wpdb->get_row("SELECT MAX(id) as maxid FROM ".$wpdb->prefix."fvm_cache");
					if(isset($res->maxid) && intval($res->maxid) > $lim) {
						$wpdb->query($wpdb->prepare("DELETE FROM ".$wpdb->prefix."fvm_cache WHERE id < %d LIMIT 1", (intval($res->maxid) - $lim)));
					}
					
					# limit logs table to 500 records
					$lim = 500;
					$res = $wpdb->get_row("SELECT MAX(id) as maxid FROM ".$wpdb->prefix."fvm_logs");
					if(isset($res->maxid) && intval($res->maxid) > $lim) {
						$wpdb->query($wpdb->prepare("DELETE FROM ".$wpdb->prefix."fvm_logs WHERE id < %d LIMIT 1", (intval($res->maxid) - $lim)));
					}					
					
				}
				
			} catch (Exception $e) {
				error_log('Error: '.$e->getMessage(), 0);
			}

			# set transient to prevent running maintenance again for 24 hours
			set_transient('fvm_table_checker', true, DAY_IN_SECONDS);

		}
		

	} catch (Exception $e) {
		error_log('Caught exception (fvm_initialize_database): '.$e->getMessage(), 0);
	}
}




# save plugin settings on wp-admin
function fvm_save_settings() {

	# save settings
	if(isset($_POST['fvm_action']) && isset($_POST['fvm_settings_nonce']) && $_POST['fvm_action'] == 'save_settings') {
		
		if(!current_user_can('manage_options')) {
			wp_die( __('You do not have sufficient permissions to access this page.', 'fast-velocity-minify'), __('Error:', 'fast-velocity-minify'), array('response'=>200)); 
		}
		
		if(!wp_verify_nonce($_POST['fvm_settings_nonce'], 'fvm_settings_nonce')) {
			wp_die( __('Invalid nounce. Please refresh and try again.', 'fast-velocity-minify'), __('Error:', 'fast-velocity-minify'), array('response'=>200)); 
		}
		
		# update fvm_settings in the global scope
		if(isset($_POST['fvm_settings']) && is_array($_POST['fvm_settings'])) {
			
			# sanitize recursively
			if(is_array($_POST['fvm_settings'])) {
				foreach ($_POST['fvm_settings'] as $group=>$arr) {
					if(is_array($arr)) {
						foreach ($arr as $k=>$v) {
							
							# only numeric, string or arrays allowed at this level
							if(!is_string($v) && !is_numeric($v) && !is_array($v)) { $_POST['fvm_settings'][$group][$k] = ''; }
							
							# numeric fields, only positive integers allowed 
							if(is_numeric($v)) { $_POST['fvm_settings'][$group][$k] = abs(intval($v)); }
							
							# sanitize text area content
							if(is_string($v)) { $_POST['fvm_settings'][$group][$k] = strip_tags($v); }
							
							# clean cdn url with strict validation to prevent XSS
							if($group == 'cdn' && $k == 'domain') {
								$domain = trim(str_replace(array('http://', 'https://'), '', $v), '/');
								// Only allow valid hostnames (alphanumeric, hyphens, dots)
								if (!empty($domain) && !preg_match('/^[a-zA-Z0-9\-\.]+$/', $domain)) {
									$_POST['fvm_settings'][$group][$k] = '';
									add_settings_error('fvm_admin_notice', 'fvm_admin_notice', __('Invalid CDN domain format. Only alphanumeric characters, hyphens and dots allowed.', 'fast-velocity-minify'), 'error');
								} else {
									$_POST['fvm_settings'][$group][$k] = sanitize_text_field($domain);
								}
							}
		
						}
					}
				}
			}
			
			# get mandatory default exclusions
			global $fvm_settings;
			$fvm_settings = fvm_get_default_settings($_POST['fvm_settings']);
			
			# purge caches
			fvm_purge_all();
			
			# save settings
			update_option('fvm_settings', json_encode($fvm_settings), false);
			add_settings_error( 'fvm_admin_notice', 'fvm_admin_notice', 'Settings saved successfully!', 'success' );
		
		} else {
			wp_die( __('Invalid data!', 'fast-velocity-minify'), __('Error:', 'fast-velocity-minify'), array('response'=>200)); 
		}
	}
}

# return checked, or empty for checkboxes in admin
function fvm_get_settings_checkbox($value) {
	if($value == 1) { return 'checked'; }
	return '';
}

# return checked, or empty for checkboxes in admin
function fvm_get_settings_radio($key, $value) {
	if($key == $value) { return 'checked'; }
	return '';
}


# add settings link on plugins listing page
add_filter("plugin_action_links_".$fvm_var_basename, 'fvm_min_settings_link' );
function fvm_min_settings_link($links) {
	global $fvm_var_basename;
	if (is_plugin_active($fvm_var_basename)) { 
		$settings_link = '<a href="'.admin_url('admin.php?page=fvm').'">Settings</a>'; 
		array_unshift($links, $settings_link); 
	}
return $links;
}


# Enqueue plugin UI CSS and JS files
function fvm_add_admin_jscss($hook) {
	if(current_user_can('manage_options')) {
		if ('settings_page_fvm' != $hook) { return; }
		global $fvm_var_dir_path, $fvm_var_url_path;
		
		# ui
		wp_enqueue_script( 'jquery-ui-core' );
		wp_enqueue_script( 'jquery-ui-accordion' );
		
		# js
		wp_enqueue_script('fvm', $fvm_var_url_path . 'assets/fvm.js', array('jquery'), filemtime($fvm_var_dir_path.'assets'. DIRECTORY_SEPARATOR .'fvm.js'));

		# localize nonce for AJAX security
		wp_localize_script('fvm', 'fvm_ajax_object', array(
			'ajax_nonce' => wp_create_nonce('fvm_logs_nonce')
		));
		
		# css
		wp_enqueue_style('fvm', $fvm_var_url_path . 'assets/fvm.css', array(), filemtime($fvm_var_dir_path.'assets'. DIRECTORY_SEPARATOR .'fvm.css'));
		
	}
}


# create sidebar admin menu and add templates to admin
function fvm_add_admin_menu() {
	if (current_user_can('manage_options')) {
		add_options_page('FVM Settings', 'Fast Velocity Minify', 'manage_options', 'fvm', 'fvm_add_settings_admin');
	}
}


# print admin notices when needed (json)
function fvm_show_admin_notice_from_transient() {
	if(current_user_can('manage_options')) {
		$inf = get_transient('fvm_admin_notice_'.get_current_user_id());

		# show transient after the redirect
		if($inf != false && !empty($inf)) {
			$notices = json_decode($inf, true);
			if(!is_null($notices) && is_array($notices)){
				
				# consolidate messages
				$notices = array_unique($notices);
				if(count($notices) > 1) {
					$msg = '<div class="fvm-info-list"><h3>FVM</h3><ul>';
					foreach ($notices as $notice) { $msg.= "<li>$notice</li>"; }
					$msg.= '</ul></div>';
					add_settings_error( 'fvm_admin_notice', 'fvm_admin_notice', $msg, 'info' );
				} else {
					$msg = 'FVM: '.implode(PHP_EOL, $notices);
					add_settings_error( 'fvm_admin_notice', 'fvm_admin_notice', $msg, 'info' );
				}
				
			}
			
			# delete
			delete_transient('fvm_admin_notice_'.get_current_user_id());
			
		}
	}
}

# manage settings page
function fvm_add_settings_admin() {
	
	# admin only
	if (!current_user_can('manage_options')) { 
		wp_die( __('You do not have sufficient permissions to access this page.'), __('Error:'), array('response'=>200)); 
	}

	# include admin html template
	global $fvm_settings, $fvm_var_dir_path;
	
	# admin html templates
	include($fvm_var_dir_path . 'layout' . DIRECTORY_SEPARATOR . 'admin-layout.php');

}


# function to list all cache files on the status page (js ajax code)
function fvm_get_logs_callback() {

	# Verify nonce for CSRF protection
	check_ajax_referer('fvm_logs_nonce', 'nonce');

	# must be able to cleanup cache
	if (!current_user_can('manage_options')) {
		wp_die( __('You do not have sufficient permissions to access this page.'), __('Error:'), array('response'=>200));
	}
	
	# must have
	if(!defined('WP_CONTENT_DIR')) { 
		wp_die( __('WP_CONTENT_DIR is undefined!'), __('Error:'), array('response'=>200)); 
	}
	
	# defaults
	global $wpdb;
	if(is_null($wpdb)) { 
		wp_die( __('Database error!'), __('Error:'), array('response'=>200)); 
	}
	
	# initialize log
	$log = '';
		
	# build css logs from database
	$results = $wpdb->get_results("SELECT date, msg FROM ".$wpdb->prefix."fvm_logs ORDER BY id DESC LIMIT 500", 'ARRAY_A');
		
	# build log
	if(is_array($results)) {
		foreach (array_reverse($results, true) as $r) {
			$log.= 'PROCESSED ON - ' . date('r', $r['date']) . PHP_EOL;
			$log.= $r['msg'] .  PHP_EOL . PHP_EOL;
		}
	}
	
	# default message
	if(empty($log)) { $log = 'No logs generated yet.'; }

		# build info
		$result = array(
			'log' => $log,
			'success' => 'OK'
		);
		
		# return result
		header('Content-Type: application/json');
		echo json_encode($result);
		exit();
	
}


# run during activation
register_activation_hook($fvm_var_file, 'fvm_plugin_activate');
function fvm_plugin_activate() {
		
	# defauls
	global $wpdb;
	if(is_null($wpdb)) { return false; }
	$charset_collate = $wpdb->get_charset_collate();
	$sqla_table_name = $wpdb->prefix . 'fvm_cache';
	$sqlb_table_name = $wpdb->prefix . 'fvm_logs';
		
	# create cache table	
	$sqla = "CREATE TABLE {$sqla_table_name} (
		id bigint(20) unsigned NOT NULL auto_increment ,
		uid varchar(64) NOT NULL,
		date bigint(10) unsigned NOT NULL, 
		type varchar(3) NOT NULL, 
		content mediumtext NOT NULL, 
		meta mediumtext NOT NULL,
		PRIMARY KEY  (id),
		UNIQUE KEY uid (uid), 
		KEY date (date), KEY type (type) 
		) $charset_collate;";

	# create logs table	
	$sqlb = "CREATE TABLE {$sqlb_table_name} (
		id bigint(20) unsigned NOT NULL auto_increment, 
		uid varchar(64) NOT NULL,
		date bigint(10) unsigned NOT NULL, 
		type varchar(10) NOT NULL, 
		msg mediumtext NOT NULL, 
		meta mediumtext NOT NULL, 
		PRIMARY KEY  (id), 
		UNIQUE KEY uid (uid), 
		KEY date (date), 
		KEY type (type)
		) $charset_collate;";

	# run sql
	# https://developer.wordpress.org/reference/functions/dbdelta/
	require_once( ABSPATH . 'wp-admin/includes/upgrade.php' );
	dbDelta( $sqla );
	dbDelta( $sqlb );
	
	# test if at least one table exists
	if ($wpdb->get_var($wpdb->prepare("SHOW TABLES LIKE %s", $sqla_table_name)) !== $sqla_table_name) {

		# log
		$err = 'An error occurred when trying to create the database tables';
		error_log($err);
		
		# alert
		if(is_admin()) {
			$notices = array($err);
			set_transient('fvm_admin_notice_'.get_current_user_id(), json_encode($notices), 10);
		}
		
		# try again in 1 hour
		set_transient('fvm_table_checker', true, HOUR_IN_SECONDS);
		
	} else {
		# success, but check again tomorrow
		set_transient('fvm_table_checker', true, DAY_IN_SECONDS);
	}

}


# run during deactivation
register_deactivation_hook($fvm_var_file, 'fvm_plugin_deactivate');
function fvm_plugin_deactivate() {
	
	# process cache settings
	fvm_purge_all();

	global $wpdb;
	if(is_null($wpdb)) { return false; }
	
	# remove options and tables
	$wpdb->query("DELETE FROM {$wpdb->prefix}options WHERE option_name = 'fvm_last_cache_update'");
	$wpdb->query("DROP TABLE IF EXISTS {$wpdb->prefix}fvm_cache");
	$wpdb->query("DROP TABLE IF EXISTS {$wpdb->prefix}fvm_logs");	

}

# run during uninstall
register_uninstall_hook($fvm_var_file, 'fvm_plugin_uninstall');	
function fvm_plugin_uninstall() {
	
	# process cache settings
	fvm_purge_all();
	
	global $wpdb;
	if(is_null($wpdb)) { return false; }
	
	# remove options and tables
	$wpdb->query("DELETE FROM {$wpdb->prefix}options WHERE option_name = 'fvm_settings'");
	$wpdb->query("DELETE FROM {$wpdb->prefix}options WHERE option_name = 'fvm_last_cache_update'");
	$wpdb->query("DROP TABLE IF EXISTS {$wpdb->prefix}fvm_cache");
	$wpdb->query("DROP TABLE IF EXISTS {$wpdb->prefix}fvm_logs");
	
}


# get all known roles
function fvm_get_user_roles_checkboxes() {
	
	global $wp_roles, $fvm_settings;
	$roles_list = array();
	if(is_object($wp_roles)) {
		$roles = (array) $wp_roles->get_names();
		foreach ($roles as $role=>$rname) {
			
			$roles_list[] = '<label for="fvm_settings_minify_'.$role.'"><input name="fvm_settings[minify]['.$role.']" type="checkbox" id="fvm_settings_minify_'.$role.'" value="1" '. fvm_get_settings_checkbox(fvm_get_settings_value($fvm_settings, 'minify', $role)).'> '.$rname.' </label><br />';
		
		}
	}
	
	# return
	if(!empty($roles_list)) { return implode(PHP_EOL, $roles_list); } else { return __( 'No roles detected!', 'fast-velocity-minify' ); }

}

Youez - 2016 - github.com/yon3zu
LinuXploit