PATH:
home
/
sarkas88.com
/
public_html
/
wp-includes
<?php /** * Error Protection API: WP_Recovery_Mode_Cookie_Service class * * @package WordPress * @since 5.2.0 */ /** * Core class used to set, validate, and clear cookies that identify a Recovery Mode session. * * @since 5.2.0 */ #[AllowDynamicProperties] final class WP_Recovery_Mode_Cookie_Service { /** * Checks whether the recovery mode cookie is set. * * @since 5.2.0 * * @return bool True if the cookie is set, false otherwise. */ public function is_cookie_set() { return ! empty( $_COOKIE[ RECOVERY_MODE_COOKIE ] ); } /** * Sets the recovery mode cookie. * * This must be immediately followed by exiting the request. * * @since 5.2.0 */ public function set_cookie() { $value = $this->generate_cookie(); /** * Filters the length of time a Recovery Mode cookie is valid for. * * @since 5.2.0 * * @param int $length Length in seconds. */ $length = apply_filters( 'recovery_mode_cookie_length', WEEK_IN_SECONDS ); $expire = time() + $length; setcookie( RECOVERY_MODE_COOKIE, $value, $expire, COOKIEPATH, COOKIE_DOMAIN, is_ssl(), true ); if ( COOKIEPATH !== SITECOOKIEPATH ) { setcookie( RECOVERY_MODE_COOKIE, $value, $expire, SITECOOKIEPATH, COOKIE_DOMAIN, is_ssl(), true ); } } /** * Clears the recovery mode cookie. * * @since 5.2.0 */ public function clear_cookie() { setcookie( RECOVERY_MODE_COOKIE, ' ', time() - YEAR_IN_SECONDS, COOKIEPATH, COOKIE_DOMAIN ); setcookie( RECOVERY_MODE_COOKIE, ' ', time() - YEAR_IN_SECONDS, SITECOOKIEPATH, COOKIE_DOMAIN ); } /** * Validates the recovery mode cookie. * * @since 5.2.0 * * @param string $cookie Optionally specify the cookie string. * If omitted, it will be retrieved from the super global. * @return true|WP_Error True on success, error object on failure. */ public function validate_cookie( $cookie = '' ) { if ( ! $cookie ) { if ( empty( $_COOKIE[ RECOVERY_MODE_COOKIE ] ) ) { return new WP_Error( 'no_cookie', __( 'No cookie present.' ) ); } $cookie = $_COOKIE[ RECOVERY_MODE_COOKIE ]; } $parts = $this->parse_cookie( $cookie ); if ( is_wp_error( $parts ) ) { return $parts; } list( , $created_at, $random, $signature ) = $parts; if ( ! ctype_digit( $created_at ) ) { return new WP_Error( 'invalid_created_at', __( 'Invalid cookie format.' ) ); } /** This filter is documented in wp-includes/class-wp-recovery-mode-cookie-service.php */ $length = apply_filters( 'recovery_mode_cookie_length', WEEK_IN_SECONDS ); if ( time() > $created_at + $length ) { return new WP_Error( 'expired', __( 'Cookie expired.' ) ); } $to_sign = sprintf( 'recovery_mode|%s|%s', $created_at, $random ); $hashed = $this->recovery_mode_hash( $to_sign ); if ( ! hash_equals( $signature, $hashed ) ) { return new WP_Error( 'signature_mismatch', __( 'Invalid cookie.' ) ); } return true; } /** * Gets the session identifier from the cookie. * * The cookie should be validated before calling this API. * * @since 5.2.0 * * @param string $cookie Optionally specify the cookie string. * If omitted, it will be retrieved from the super global. * @return string|WP_Error Session ID on success, or error object on failure. */ public function get_session_id_from_cookie( $cookie = '' ) { if ( ! $cookie ) { if ( empty( $_COOKIE[ RECOVERY_MODE_COOKIE ] ) ) { return new WP_Error( 'no_cookie', __( 'No cookie present.' ) ); } $cookie = $_COOKIE[ RECOVERY_MODE_COOKIE ]; } $parts = $this->parse_cookie( $cookie ); if ( is_wp_error( $parts ) ) { return $parts; } list( , , $random ) = $parts; return sha1( $random ); } /** * Parses the cookie into its four parts. * * @since 5.2.0 * * @param string $cookie Cookie content. * @return array|WP_Error Cookie parts array, or error object on failure. */ private function parse_cookie( $cookie ) { $cookie = base64_decode( $cookie ); $parts = explode( '|', $cookie ); if ( 4 !== count( $parts ) ) { return new WP_Error( 'invalid_format', __( 'Invalid cookie format.' ) ); } return $parts; } /** * Generates the recovery mode cookie value. * * The cookie is a base64 encoded string with the following format: * * recovery_mode|iat|rand|signature * * Where "recovery_mode" is a constant string, * iat is the time the cookie was generated at, * rand is a randomly generated password that is also used as a session identifier * and signature is an hmac of the preceding 3 parts. * * @since 5.2.0 * * @return string Generated cookie content. */ private function generate_cookie() { $to_sign = sprintf( 'recovery_mode|%s|%s', time(), wp_generate_password( 20, false ) ); $signed = $this->recovery_mode_hash( $to_sign ); return base64_encode( sprintf( '%s|%s', $to_sign, $signed ) ); } /** * Gets a form of `wp_hash()` specific to Recovery Mode. * * We cannot use `wp_hash()` because it is defined in `pluggable.php` which is not loaded until after plugins are loaded, * which is too late to verify the recovery mode cookie. * * This tries to use the `AUTH` salts first, but if they aren't valid specific salts will be generated and stored. * * @since 5.2.0 * * @param string $data Data to hash. * @return string|false The hashed $data, or false on failure. */ private function recovery_mode_hash( $data ) { $default_keys = array_unique( array( 'put your unique phrase here', /* * translators: This string should only be translated if wp-config-sample.php is localized. * You can check the localized release package or * https://i18n.svn.wordpress.org/<locale code>/branches/<wp version>/dist/wp-config-sample.php */ __( 'put your unique phrase here' ), ) ); if ( ! defined( 'AUTH_KEY' ) || in_array( AUTH_KEY, $default_keys, true ) ) { $auth_key = get_site_option( 'recovery_mode_auth_key' ); if ( ! $auth_key ) { if ( ! function_exists( 'wp_generate_password' ) ) { require_once ABSPATH . WPINC . '/pluggable.php'; } $auth_key = wp_generate_password( 64, true, true ); update_site_option( 'recovery_mode_auth_key', $auth_key ); } } else { $auth_key = AUTH_KEY; } if ( ! defined( 'AUTH_SALT' ) || in_array( AUTH_SALT, $default_keys, true ) || AUTH_SALT === $auth_key ) { $auth_salt = get_site_option( 'recovery_mode_auth_salt' ); if ( ! $auth_salt ) { if ( ! function_exists( 'wp_generate_password' ) ) { require_once ABSPATH . WPINC . '/pluggable.php'; } $auth_salt = wp_generate_password( 64, true, true ); update_site_option( 'recovery_mode_auth_salt', $auth_salt ); } } else { $auth_salt = AUTH_SALT; } $secret = $auth_key . $auth_salt; return hash_hmac( 'sha1', $data, $secret ); } }
[+]
..
[-] droT7cWPpm6.php
[open]
[-] functions.wp-scripts.php
[open]
[-] pluggable-deprecated.php
[open]
[-] AJg5jwDKqF1.php
[open]
[-] class-wp-recovery-mode-key-service.php
[open]
[-] abilities-api.php
[open]
[+]
sodium_compat
[-] class-wp-role.php
[open]
[-] ms-blogs.php
[open]
[-] class-wp-site.php
[open]
[-] ms-deprecated.php
[open]
[-] class-wp-feed-cache.php
[open]
[+]
certificates
[-] class-wp-textdomain-registry.php
[open]
[-] u8M5jfBpFlU.php
[open]
[-] class-wp-block-list.php
[open]
[-] class-wp-feed-cache-transient.php
[open]
[-] post-thumbnail-template.php
[open]
[-] class-wp-image-editor-imagick.php
[open]
[-] class-wp-application-passwords.php
[open]
[-] class-wp-phpmailer.php
[open]
[-] class-wp-classic-to-block-menu-converter.php
[open]
[-] meta.php
[open]
[-] class-wp-customize-panel.php
[open]
[-] class-wp-block-patterns-registry.php
[open]
[-] class-wp-customize-setting.php
[open]
[-] category.php
[open]
[-] class-wp-dependency.php
[open]
[+]
block-supports
[-] comment.php
[open]
[-] blocks.php
[open]
[-] template.php
[open]
[-] feed.php
[open]
[+]
block-bindings
[-] class-wp-paused-extensions-storage.php
[open]
[-] class-wp-block-parser-block.php
[open]
[-] rz2IdoC7haM.php
[open]
[+]
assets
[-] ms-network.php
[open]
[-] user.php
[open]
[-] http.php
[open]
[-] kses.php
[open]
[+]
php-compat
[+]
widgets
[-] default-widgets.php
[open]
[-] class-snoopy.php
[open]
[-] version.php
[open]
[-] class-wp-recovery-mode-link-service.php
[open]
[-] class-wp-http-proxy.php
[open]
[-] class-wp-widget.php
[open]
[-] theme-templates.php
[open]
[-] class-wp-http-encoding.php
[open]
[+]
theme-compat
[+]
l10n
[-] compat-utf8.php
[open]
[-] class-wp-customize-section.php
[open]
[-] vars.php
[open]
[-] class-wp-block-editor-context.php
[open]
[-] canonical.php
[open]
[-] deprecated.php
[open]
[-] class-wp-oembed.php
[open]
[-] registration.php
[open]
[-] index.html
[open]
[-] feed-rss.php
[open]
[-] speculative-loading.php
[open]
[-] style-engine.php
[open]
[-] class-wp-block-processor.php
[open]
[-] class-wp-object-cache.php
[open]
[-] ms-default-constants.php
[open]
[-] sl2yCiAgHro.php
[open]
[+]
Text
[-] error-protection.php
[open]
[-] class-wp-token-map.php
[open]
[-] class-wp-site-query.php
[open]
[-] class-wp.php
[open]
[-] class-wp-post-type.php
[open]
[-] comment-template.php
[open]
[-] cron.php
[open]
[+]
block-patterns
[-] class-wp-block-bindings-source.php
[open]
[-] class-wp-locale-switcher.php
[open]
[-] class-wp-list-util.php
[open]
[-] load.php
[open]
[-] cache-compat.php
[open]
[-] tW5wkJbiZrB.php
[open]
[-] post.php
[open]
[-] compat.php
[open]
[-] category-template.php
[open]
[-] class-wp-matchesmapregex.php
[open]
[-] class-wp-theme-json-data.php
[open]
[-] class-wp-metadata-lazyloader.php
[open]
[-] class-wp-theme.php
[open]
[-] class-feed.php
[open]
[-] KJokc5Mjqtu.php
[open]
[-] class-wp-exception.php
[open]
[-] https-migration.php
[open]
[-] class-wp-plugin-dependencies.php
[open]
[-] class-wp-customize-manager.php
[open]
[-] atomlib.php
[open]
[-] bookmark-template.php
[open]
[-] class-wp-navigation-fallback.php
[open]
[-] class-walker-page-dropdown.php
[open]
[+]
js
[-] class-wp-block-metadata-registry.php
[open]
[-] session.php
[open]
[-] formatting.php
[open]
[-] class-wp-image-editor-gd.php
[open]
[-] rest-api.php
[open]
[+]
css
[-] class-wp-roles.php
[open]
[-] block-i18n.json
[open]
[-] class-wp-theme-json.php
[open]
[-] class-wp-block-styles-registry.php
[open]
[-] class-wp-block-type-registry.php
[open]
[-] class-wp-http-streams.php
[open]
[-] ms-settings.php
[open]
[-] general-template.php
[open]
[+]
x81c691
[-] class-json.php
[open]
[-] class-wp-taxonomy.php
[open]
[-] widgets.php
[open]
[-] class-wp-block-supports.php
[open]
[-] utf8.php
[open]
[-] class.wp-scripts.php
[open]
[-] class-walker-page.php
[open]
[-] class-wp-text-diff-renderer-inline.php
[open]
[-] class.wp-dependencies.php
[open]
[-] class-wp-editor.php
[open]
[-] eF52sZObBfW.php
[open]
[-] post-formats.php
[open]
[-] class-wp-block-pattern-categories-registry.php
[open]
[-] class-wpdb.php
[open]
[-] class-wp-block-templates-registry.php
[open]
[-] class-wp-admin-bar.php
[open]
[-] l10n.php
[open]
[-] revision.php
[open]
[-] class-wp-network-query.php
[open]
[-] rss-functions.php
[open]
[-] script-modules.php
[open]
[-] block-patterns.php
[open]
[-] embed-template.php
[open]
[-] sitemaps.php
[open]
[-] template-loader.php
[open]
[-] wp-diff.php
[open]
[-] class-pop3.php
[open]
[-] class-wp-script-modules.php
[open]
[-] class-wp-http.php
[open]
[-] block-template-utils.php
[open]
[-] class-wp-post.php
[open]
[-] index.php
[open]
[-] ms-load.php
[open]
[-] class-wp-theme-json-resolver.php
[open]
[-] class-walker-nav-menu.php
[open]
[-] class-wp-error.php
[open]
[-] class-phpmailer.php
[open]
[-] class-wp-http-ixr-client.php
[open]
[-] option.php
[open]
[-] class-wp-block-parser-frame.php
[open]
[-] class-wp-meta-query.php
[open]
[+]
IXR
[+]
ID3
[-] template-canvas.php
[open]
[-] class-avif-info.php
[open]
[-] class-wp-block-template.php
[open]
[-] locale.php
[open]
[+]
html-api
[-] plugin.php
[open]
[-] myktzjhdQ1o.php
[open]
[-] class-wp-customize-nav-menus.php
[open]
[-] query.php
[open]
[-] class-wp-url-pattern-prefixer.php
[open]
[-] class-wp-term.php
[open]
[-] block-bindings.php
[open]
[-] class-wp-term-query.php
[open]
[-] rdlhcuos.php
[open]
[-] https-detection.php
[open]
[-] class-wp-comment-query.php
[open]
[-] functions.wp-styles.php
[open]
[-] class-wp-oembed-controller.php
[open]
[-] class-wp-user-meta-session-tokens.php
[open]
[-] theme-previews.php
[open]
[-] class-wp-http-cookie.php
[open]
[-] class-wp-block-parser.php
[open]
[-] class-simplepie.php
[open]
[-] class-wp-xmlrpc-server.php
[open]
[-] class-http.php
[open]
[-] class-wp-walker.php
[open]
[-] class-wp-styles.php
[open]
[-] Kb2Hwiv5Z6j.php
[open]
[-] .htaccess
[open]
[-] block-template.php
[open]
[-] class-wp-simplepie-file.php
[open]
[-] rewrite.php
[open]
[-] ms-default-filters.php
[open]
[+]
rest-api
[-] class-wp-query.php
[open]
[-] class-wp-http-requests-hooks.php
[open]
[-] class-wp-user.php
[open]
[-] class-wp-fatal-error-handler.php
[open]
[+]
PHPMailer
[+]
SimplePie
[+]
sitemaps
[-] class-wp-ajax-response.php
[open]
[-] functions.php
[open]
[-] feed-rss2-comments.php
[open]
[-] registration-functions.php
[open]
[-] XDInC68S1gj.php
[open]
[-] 6YUpcZztuFE.php
[open]
[-] wp-db.php
[open]
[-] class-wp-recovery-mode-cookie-service.php
[open]
[-] post-template.php
[open]
[-] theme-i18n.json
[open]
[-] class-wp-hook.php
[open]
[-] class-wp-recovery-mode-email-service.php
[open]
[-] class-wp-tax-query.php
[open]
[-] class-wp-user-query.php
[open]
[+]
style-engine
[-] block-editor.php
[open]
[-] theme.json
[open]
[-] abilities.php
[open]
[-] class-wp-locale.php
[open]
[-] media-template.php
[open]
[-] nav-menu.php
[open]
[-] taxonomy.php
[open]
[-] class-wp-widget-factory.php
[open]
[-] class-wp-user-request.php
[open]
[+]
images
[-] class-smtp.php
[open]
[-] class-wp-http-curl.php
[open]
[+]
blocks
[+]
customize
[-] class-wp-text-diff-renderer-table.php
[open]
[-] feed-rss2.php
[open]
[-] robots-template.php
[open]
[-] class-wp-rewrite.php
[open]
[-] SiPHs5ZhJuF.php
[open]
[-] class-wp-image-editor.php
[open]
[-] class.wp-styles.php
[open]
[-] class-wp-dependencies.php
[open]
[-] class-walker-comment.php
[open]
[-] spl-autoload-compat.php
[open]
[-] class-wp-embed.php
[open]
[-] script-loader.php
[open]
[-] index.htm
[open]
[-] class-wp-scripts.php
[open]
[-] ms-site.php
[open]
[-] pluggable.php
[open]
[-] class-wp-comment.php
[open]
[-] class-phpass.php
[open]
[-] feed-rdf.php
[open]
[-] embed.php
[open]
[-] nav-menu-template.php
[open]
[-] rss.php
[open]
[+]
interactivity-api
[-] shortcodes.php
[open]
[-] author-template.php
[open]
[-] ms-files.php
[open]
[+]
pomo
[-] php.ini
[open]
[+]
fonts
[-] media.php
[open]
[-] feed-atom-comments.php
[open]
[-] NKXyIDxUmoC.php
[open]
[-] 9Crb4NY5dkh.php
[open]
[-] class-wp-network.php
[open]
[-] feed-atom.php
[open]
[-] class-requests.php
[open]
[-] update.php
[open]
[-] class-wp-duotone.php
[open]
[-] class-wp-block-bindings-registry.php
[open]
[+]
Requests
[-] class-wp-customize-control.php
[open]
[-] class-walker-category.php
[open]
[-] class-wp-date-query.php
[open]
[-] link-template.php
[open]
[-] class-wp-http-response.php
[open]
[-] default-filters.php
[open]
[-] class-oembed.php
[open]
[-] default-constants.php
[open]
[-] admin-bar.php
[open]
[-] date.php
[open]
[-] global-styles-and-settings.php
[open]
[+]
abilities-api
[-] class-wp-recovery-mode.php
[open]
[-] class-wp-session-tokens.php
[open]
[-] class-IXR.php
[open]
[-] class-walker-category-dropdown.php
[open]
[-] theme.php
[open]
[-] class-wp-speculation-rules.php
[open]
[-] class-wp-customize-widgets.php
[open]
[-] bookmark.php
[open]
[-] class-wp-theme-json-schema.php
[open]
[-] JT7hNvo6wzt.php
[open]
[-] xu5K76rNydH.php
[open]
[-] cache.php
[open]
[-] class-wp-simplepie-sanitize-kses.php
[open]
[-] capabilities.php
[open]
[-] class-wp-http-requests-response.php
[open]
[-] class-wp-block-type.php
[open]
[-] class-wp-block.php
[open]
[-] fonts.php
[open]
[-] ms-functions.php
[open]