mirror of
https://github.com/gosticks/wordpress-develop.git
synced 2026-10-04 06:37:06 +00:00
Coding Standards: Fix the remaining issues in /tests.
All PHP files in `/tests` now conform to the PHP coding standards, or have exceptions appropriately marked. Travis now also runs `phpcs` on the `/tests` directory, any future changes to these files must conform entirely to the WordPress PHP coding standards. 🎉 See #47632. git-svn-id: https://develop.svn.wordpress.org/trunk@45607 602fd350-edb4-49c9-b593-d223f7449a82
This commit is contained in:
@@ -148,7 +148,7 @@ EOF;
|
||||
);
|
||||
foreach ( $bad as $k => $x ) {
|
||||
$result = wp_kses_bad_protocol( wp_kses_normalize_entities( $x ), wp_allowed_protocols() );
|
||||
if ( ! empty( $result ) && $result != 'alert(1);' && $result != 'alert(1)' ) {
|
||||
if ( ! empty( $result ) && 'alert(1);' !== $result && 'alert(1)' !== $result ) {
|
||||
switch ( $k ) {
|
||||
case 6:
|
||||
$this->assertEquals( 'javascript&#0000058alert(1);', $result );
|
||||
@@ -183,7 +183,7 @@ EOF;
|
||||
);
|
||||
foreach ( $safe as $x ) {
|
||||
$result = wp_kses_bad_protocol( wp_kses_normalize_entities( $x ), array( 'http', 'https', 'dummy' ) );
|
||||
if ( $result != $x && $result != 'http://example.org/' ) {
|
||||
if ( $result !== $x && 'http://example.org/' !== $result ) {
|
||||
$this->fail( "wp_kses_bad_protocol incorrectly blocked $x" );
|
||||
}
|
||||
}
|
||||
@@ -192,17 +192,17 @@ EOF;
|
||||
public function test_hackers_attacks() {
|
||||
$xss = simplexml_load_file( DIR_TESTDATA . '/formatting/xssAttacks.xml' );
|
||||
foreach ( $xss->attack as $attack ) {
|
||||
if ( in_array( $attack->name, array( 'IMG Embedded commands 2', 'US-ASCII encoding', 'OBJECT w/Flash 2', 'Character Encoding Example' ) ) ) {
|
||||
if ( in_array( (string) $attack->name, array( 'IMG Embedded commands 2', 'US-ASCII encoding', 'OBJECT w/Flash 2', 'Character Encoding Example' ), true ) ) {
|
||||
continue;
|
||||
}
|
||||
|
||||
$code = (string) $attack->code;
|
||||
|
||||
if ( $code == 'See Below' ) {
|
||||
if ( 'See Below' === $code ) {
|
||||
continue;
|
||||
}
|
||||
|
||||
if ( substr( $code, 0, 4 ) == 'perl' ) {
|
||||
if ( substr( $code, 0, 4 ) === 'perl' ) {
|
||||
$pos = strpos( $code, '"' ) + 1;
|
||||
$code = substr( $code, $pos, strrpos( $code, '"' ) - $pos );
|
||||
$code = str_replace( '\0', "\0", $code );
|
||||
@@ -210,7 +210,7 @@ EOF;
|
||||
|
||||
$result = trim( wp_kses_data( $code ) );
|
||||
|
||||
if ( $result == '' || $result == 'XSS' || $result == 'alert("XSS");' || $result == "alert('XSS');" ) {
|
||||
if ( in_array( $result, array( '', 'XSS', 'alert("XSS");', "alert('XSS');" ), true ) ) {
|
||||
continue;
|
||||
}
|
||||
|
||||
@@ -324,7 +324,7 @@ EOF;
|
||||
}
|
||||
|
||||
function _wp_kses_allowed_html_filter( $html, $context ) {
|
||||
if ( 'post' == $context ) {
|
||||
if ( 'post' === $context ) {
|
||||
return array( 'a' => array( 'href' => true ) );
|
||||
} else {
|
||||
return array( 'a' => array( 'href' => false ) );
|
||||
|
||||
Reference in New Issue
Block a user