2021-02-02 15:58:29 +00:00
|
|
|
<?php
|
|
|
|
/**
|
|
|
|
* @package Joomla.JEDChecker
|
|
|
|
*
|
2021-03-11 12:56:27 +00:00
|
|
|
* @copyright Copyright (C) 2021 Open Source Matters, Inc. All rights reserved.
|
2021-02-02 15:58:29 +00:00
|
|
|
*
|
|
|
|
* @license GNU General Public License version 2 or later; see LICENSE.txt
|
|
|
|
*/
|
|
|
|
|
|
|
|
defined('_JEXEC') or die('Restricted access');
|
|
|
|
|
|
|
|
|
|
|
|
// Include the rule base class
|
|
|
|
require_once JPATH_COMPONENT_ADMINISTRATOR . '/models/rule.php';
|
|
|
|
|
2021-05-11 18:05:54 +00:00
|
|
|
// Include the helper class
|
|
|
|
require_once JPATH_COMPONENT_ADMINISTRATOR . '/libraries/helper.php';
|
|
|
|
|
2021-02-02 15:58:29 +00:00
|
|
|
|
|
|
|
/**
|
|
|
|
* class JedcheckerRulesXMLManifest
|
|
|
|
*
|
2021-04-04 10:59:50 +00:00
|
|
|
* This class validates all XML manifests
|
2021-02-02 15:58:29 +00:00
|
|
|
*
|
2021-02-02 16:10:59 +00:00
|
|
|
* @since 2.3
|
2021-02-02 15:58:29 +00:00
|
|
|
*/
|
|
|
|
class JedcheckerRulesXMLManifest extends JEDcheckerRule
|
|
|
|
{
|
|
|
|
/**
|
|
|
|
* The formal ID of this rule. For example: SE1.
|
|
|
|
*
|
|
|
|
* @var string
|
|
|
|
*/
|
|
|
|
protected $id = 'MANIFEST';
|
|
|
|
|
|
|
|
/**
|
|
|
|
* The title or caption of this rule.
|
|
|
|
*
|
|
|
|
* @var string
|
|
|
|
*/
|
|
|
|
protected $title = 'COM_JEDCHECKER_MANIFEST';
|
|
|
|
|
|
|
|
/**
|
|
|
|
* The description of this rule.
|
|
|
|
*
|
|
|
|
* @var string
|
|
|
|
*/
|
|
|
|
protected $description = 'COM_JEDCHECKER_MANIFEST_DESC';
|
|
|
|
|
|
|
|
/**
|
|
|
|
* List of errors.
|
|
|
|
*
|
|
|
|
* @var string[]
|
|
|
|
*/
|
|
|
|
protected $errors;
|
|
|
|
|
|
|
|
/**
|
|
|
|
* List of warnings.
|
|
|
|
*
|
|
|
|
* @var string[]
|
|
|
|
*/
|
|
|
|
protected $warnings;
|
|
|
|
|
2021-04-04 11:19:14 +00:00
|
|
|
/**
|
|
|
|
* List of infos.
|
|
|
|
*
|
|
|
|
* @var string[]
|
|
|
|
*/
|
|
|
|
protected $infos;
|
|
|
|
|
2021-02-02 15:58:29 +00:00
|
|
|
/**
|
|
|
|
* Rules for XML nodes
|
|
|
|
* ? - single, optional
|
|
|
|
* = - single, required, warning if missed
|
|
|
|
* ! - single, required, error if missed
|
|
|
|
* * - multiple, optional
|
|
|
|
* @var array
|
|
|
|
*/
|
|
|
|
protected $DTDNodeRules;
|
|
|
|
|
|
|
|
/**
|
|
|
|
* Rules for attributes
|
|
|
|
* (list of allowed attributes)
|
|
|
|
* @var array
|
|
|
|
*/
|
|
|
|
protected $DTDAttrRules;
|
|
|
|
|
2021-04-04 10:59:50 +00:00
|
|
|
/**
|
|
|
|
* List of extension types
|
|
|
|
*
|
|
|
|
* @var string[]
|
|
|
|
*/
|
2021-03-11 14:20:50 +00:00
|
|
|
protected $joomlaTypes = array(
|
2021-04-04 10:59:50 +00:00
|
|
|
'component', 'file', 'language', 'library',
|
|
|
|
'module', 'package', 'plugin', 'template'
|
2021-02-02 15:58:29 +00:00
|
|
|
);
|
|
|
|
|
|
|
|
/**
|
|
|
|
* Initiates the search and check
|
|
|
|
*
|
|
|
|
* @return void
|
|
|
|
*/
|
|
|
|
public function check()
|
|
|
|
{
|
|
|
|
// Find all XML files of the extension
|
2021-05-11 18:05:54 +00:00
|
|
|
$files = JEDCheckerHelper::findManifests($this->basedir);
|
2021-02-02 15:58:29 +00:00
|
|
|
|
|
|
|
// Iterate through all the xml files
|
|
|
|
foreach ($files as $file)
|
|
|
|
{
|
|
|
|
// Try to check the file
|
|
|
|
$this->find($file);
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
/**
|
|
|
|
* Reads a file and validate XML manifest
|
|
|
|
*
|
|
|
|
* @param string $file - The path to the file
|
|
|
|
*
|
|
|
|
* @return boolean True if the manifest file was found, otherwise False.
|
|
|
|
*/
|
|
|
|
protected function find($file)
|
|
|
|
{
|
2021-02-13 20:53:09 +00:00
|
|
|
$xml = simplexml_load_file($file);
|
2021-02-02 15:58:29 +00:00
|
|
|
|
|
|
|
// Failed to parse the xml file.
|
|
|
|
// Assume that this is not a extension manifest
|
|
|
|
if (!$xml)
|
|
|
|
{
|
|
|
|
return false;
|
|
|
|
}
|
|
|
|
|
2021-04-04 10:59:50 +00:00
|
|
|
// Check extension type
|
2021-02-02 15:58:29 +00:00
|
|
|
$type = (string) $xml['type'];
|
2021-04-04 10:59:50 +00:00
|
|
|
|
2021-03-11 14:20:50 +00:00
|
|
|
if (!in_array($type, $this->joomlaTypes, true))
|
2021-02-02 15:58:29 +00:00
|
|
|
{
|
|
|
|
$this->report->addError($file, JText::sprintf('COM_JEDCHECKER_MANIFEST_UNKNOWN_TYPE', $type));
|
2021-04-04 10:59:50 +00:00
|
|
|
|
2021-02-02 15:58:29 +00:00
|
|
|
return true;
|
|
|
|
}
|
|
|
|
|
2021-04-04 10:59:50 +00:00
|
|
|
// Load DTD-like data for this extension type
|
2021-04-04 12:12:02 +00:00
|
|
|
$jsonFilename = __DIR__ . '/xmlmanifest/dtd_' . $type . '.json';
|
2021-04-04 10:59:50 +00:00
|
|
|
|
2021-04-04 12:12:02 +00:00
|
|
|
if (!is_file($jsonFilename))
|
2021-02-02 15:58:29 +00:00
|
|
|
{
|
|
|
|
return true;
|
|
|
|
}
|
2021-04-04 10:59:50 +00:00
|
|
|
|
2021-04-04 12:12:02 +00:00
|
|
|
// Warn if method="upgrade" attribute is not found
|
2021-04-04 11:24:10 +00:00
|
|
|
if ((string) $xml['method'] !== 'upgrade')
|
|
|
|
{
|
|
|
|
$this->report->addWarning($file, JText::_('COM_JEDCHECKER_MANIFEST_MISSED_METHOD_UPGRADE'));
|
|
|
|
}
|
|
|
|
|
2021-04-04 12:12:02 +00:00
|
|
|
// Check 'client' attribute is "site" or "administrator" (for module/template only)
|
2021-04-04 11:26:31 +00:00
|
|
|
if ($type === 'module' || $type === 'template')
|
|
|
|
{
|
|
|
|
$client = (string) $xml['client'];
|
|
|
|
|
|
|
|
if (!isset($xml['client']))
|
|
|
|
{
|
|
|
|
$this->report->addError($file, JText::sprintf('COM_JEDCHECKER_MANIFEST_MISSED_ATTRIBUTE', $xml->getName(), 'client'));
|
|
|
|
}
|
|
|
|
elseif ($client !== 'site' && $client !== 'administrator')
|
|
|
|
{
|
|
|
|
$this->report->addError($file, JText::sprintf('COM_JEDCHECKER_MANIFEST_UNKNOWN_ATTRIBUTE_VALUE', $xml->getName(), 'client', $client));
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2021-04-04 12:12:02 +00:00
|
|
|
$data = json_decode(file_get_contents($jsonFilename), true);
|
2021-02-02 15:58:29 +00:00
|
|
|
$this->DTDNodeRules = $data['nodes'];
|
|
|
|
$this->DTDAttrRules = $data['attributes'];
|
|
|
|
|
|
|
|
$this->errors = array();
|
|
|
|
$this->warnings = array();
|
2021-04-04 11:19:14 +00:00
|
|
|
$this->infos = array();
|
2021-02-02 15:58:29 +00:00
|
|
|
|
2021-04-04 10:59:50 +00:00
|
|
|
// Validate manifest
|
2021-02-02 15:58:29 +00:00
|
|
|
$this->validateXml($xml, 'extension');
|
|
|
|
|
|
|
|
if (count($this->errors))
|
|
|
|
{
|
|
|
|
$this->report->addError($file, implode('<br />', $this->errors));
|
|
|
|
}
|
|
|
|
|
|
|
|
if (count($this->warnings))
|
|
|
|
{
|
|
|
|
$this->report->addWarning($file, implode('<br />', $this->warnings));
|
|
|
|
}
|
|
|
|
|
2021-04-04 11:19:14 +00:00
|
|
|
if (count($this->infos))
|
|
|
|
{
|
|
|
|
$this->report->addInfo($file, implode('<br />', $this->infos));
|
|
|
|
}
|
|
|
|
|
2021-02-02 15:58:29 +00:00
|
|
|
// All checks passed. Return true
|
|
|
|
return true;
|
|
|
|
}
|
|
|
|
|
|
|
|
/**
|
2021-03-09 20:33:42 +00:00
|
|
|
* @param SimpleXMLElement $node XML node object
|
2021-05-11 18:04:56 +00:00
|
|
|
* @param string $ruleset ruleset name in the DTD array
|
2021-04-04 10:59:50 +00:00
|
|
|
*
|
|
|
|
* @return void
|
2021-02-02 15:58:29 +00:00
|
|
|
*/
|
2021-03-09 20:33:42 +00:00
|
|
|
protected function validateXml($node, $ruleset)
|
2021-02-02 15:58:29 +00:00
|
|
|
{
|
2021-03-09 20:33:42 +00:00
|
|
|
// Get node name
|
|
|
|
$name = $node->getName();
|
|
|
|
|
2021-02-02 15:58:29 +00:00
|
|
|
// Check attributes
|
2021-03-09 20:33:42 +00:00
|
|
|
$DTDattributes = isset($this->DTDAttrRules[$ruleset]) ? $this->DTDAttrRules[$ruleset] : array();
|
2021-02-23 21:32:28 +00:00
|
|
|
|
2021-03-09 20:33:42 +00:00
|
|
|
if (count($DTDattributes) === 0)
|
|
|
|
{
|
|
|
|
// No known attributes for this node
|
|
|
|
foreach ($node->attributes() as $attr)
|
|
|
|
{
|
|
|
|
$this->infos[] = JText::sprintf('COM_JEDCHECKER_MANIFEST_UNKNOWN_ATTRIBUTE', $name, (string) $attr->getName());
|
|
|
|
}
|
|
|
|
}
|
|
|
|
elseif ($DTDattributes[0] !== '*') // Skip node with arbitrary attributes (e.g. "field")
|
2021-02-02 15:58:29 +00:00
|
|
|
{
|
2021-02-23 21:32:28 +00:00
|
|
|
foreach ($node->attributes() as $attr)
|
2021-02-02 15:58:29 +00:00
|
|
|
{
|
2021-04-04 11:19:14 +00:00
|
|
|
$attrName = (string) $attr->getName();
|
2021-02-23 21:32:28 +00:00
|
|
|
|
2021-04-04 10:59:50 +00:00
|
|
|
if (!in_array($attrName, $DTDattributes, true))
|
2021-02-23 21:32:28 +00:00
|
|
|
{
|
2021-03-10 22:15:13 +00:00
|
|
|
// The node has unknown attribute
|
2021-04-04 11:19:14 +00:00
|
|
|
$this->infos[] = JText::sprintf('COM_JEDCHECKER_MANIFEST_UNKNOWN_ATTRIBUTE', $name, $attrName);
|
2021-02-23 21:32:28 +00:00
|
|
|
}
|
2021-02-02 15:58:29 +00:00
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
// Check children nodes
|
2021-03-09 20:33:42 +00:00
|
|
|
$DTDchildRules = isset($this->DTDNodeRules[$ruleset]) ? $this->DTDNodeRules[$ruleset] : array();
|
|
|
|
|
|
|
|
// Child node name to ruleset name mapping
|
|
|
|
$DTDchildToRule = array();
|
|
|
|
|
|
|
|
if (count($DTDchildRules) === 0)
|
2021-02-02 15:58:29 +00:00
|
|
|
{
|
2021-03-09 20:33:42 +00:00
|
|
|
// No known children for this node
|
2021-02-02 15:58:29 +00:00
|
|
|
if ($node->count() > 0)
|
|
|
|
{
|
2021-04-04 11:19:14 +00:00
|
|
|
$this->infos[] = JText::sprintf('COM_JEDCHECKER_MANIFEST_UNKNOWN_CHILDREN', $name);
|
2021-02-02 15:58:29 +00:00
|
|
|
}
|
2021-02-23 21:33:37 +00:00
|
|
|
}
|
2021-03-09 20:33:42 +00:00
|
|
|
elseif (!isset($DTDchildRules['*'])) // Skip node with arbitrary children
|
2021-02-23 21:33:37 +00:00
|
|
|
{
|
2021-02-02 15:58:29 +00:00
|
|
|
// 1) check required single elements
|
2021-03-09 20:33:42 +00:00
|
|
|
foreach ($DTDchildRules as $childRuleset => $mode)
|
2021-02-02 15:58:29 +00:00
|
|
|
{
|
2021-03-09 20:33:42 +00:00
|
|
|
$child = $childRuleset;
|
|
|
|
|
|
|
|
if (strpos($child, ':') !== false)
|
|
|
|
{
|
|
|
|
// Split ruleset name into a prefix and the child node name
|
|
|
|
list ($prefix, $child) = explode(':', $child, 2);
|
|
|
|
}
|
|
|
|
|
|
|
|
// Populate node-to-ruleset mapping
|
|
|
|
$DTDchildToRule[$child] = $childRuleset;
|
|
|
|
|
2021-02-02 15:58:29 +00:00
|
|
|
$count = $node->$child->count();
|
2021-04-04 10:59:50 +00:00
|
|
|
|
2021-02-02 15:58:29 +00:00
|
|
|
switch ($mode)
|
|
|
|
{
|
|
|
|
case '!':
|
2021-04-04 11:29:53 +00:00
|
|
|
if ($count === 0)
|
|
|
|
{
|
|
|
|
// The node doesn't contain required child element
|
|
|
|
$this->errors[] = JText::sprintf('COM_JEDCHECKER_MANIFEST_MISSED_REQUIRED', $name, $child);
|
|
|
|
}
|
|
|
|
elseif ($count > 1)
|
|
|
|
{
|
|
|
|
// The node contains multiple child elements when single only is expected
|
|
|
|
$this->errors[] = JText::sprintf('COM_JEDCHECKER_MANIFEST_MULTIPLE_FOUND', $name, $child);
|
|
|
|
}
|
|
|
|
|
2021-02-02 15:58:29 +00:00
|
|
|
break;
|
2021-04-04 11:29:53 +00:00
|
|
|
|
2021-02-02 15:58:29 +00:00
|
|
|
case '=':
|
2021-04-04 11:29:53 +00:00
|
|
|
if ($count === 0)
|
|
|
|
{
|
|
|
|
// The node doesn't contain optional child element
|
|
|
|
$this->infos[] = JText::sprintf('COM_JEDCHECKER_MANIFEST_MISSED_OPTIONAL', $name, $child);
|
|
|
|
}
|
|
|
|
elseif ($count > 1)
|
|
|
|
{
|
|
|
|
// The node contains multiple child elements when single only is expected
|
|
|
|
$this->warnings[] = JText::sprintf('COM_JEDCHECKER_MANIFEST_MULTIPLE_FOUND', $name, $child);
|
|
|
|
}
|
2021-04-04 10:59:50 +00:00
|
|
|
|
2021-04-04 11:29:53 +00:00
|
|
|
break;
|
2021-02-02 15:58:29 +00:00
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
// 2) check unknown/multiple elements
|
|
|
|
|
2021-04-04 10:59:50 +00:00
|
|
|
// Collect unique child node names
|
|
|
|
$childNames = array();
|
|
|
|
|
2021-02-02 15:58:29 +00:00
|
|
|
foreach ($node as $child)
|
|
|
|
{
|
2021-04-04 10:59:50 +00:00
|
|
|
$childNames[$child->getName()] = 1;
|
2021-02-02 15:58:29 +00:00
|
|
|
}
|
2021-04-04 11:19:14 +00:00
|
|
|
|
2021-04-04 10:59:50 +00:00
|
|
|
$childNames = array_keys($childNames);
|
2021-02-02 15:58:29 +00:00
|
|
|
|
2021-04-04 10:59:50 +00:00
|
|
|
foreach ($childNames as $child)
|
2021-02-02 15:58:29 +00:00
|
|
|
{
|
2021-03-09 20:33:42 +00:00
|
|
|
if (!isset($DTDchildToRule[$child]))
|
2021-02-02 15:58:29 +00:00
|
|
|
{
|
2021-03-09 20:33:42 +00:00
|
|
|
// The node contains unknown child element
|
2021-04-04 11:19:14 +00:00
|
|
|
$this->infos[] = JText::sprintf('COM_JEDCHECKER_MANIFEST_UNKNOWN_CHILD', $name, $child);
|
2021-02-02 15:58:29 +00:00
|
|
|
}
|
|
|
|
else
|
|
|
|
{
|
2021-03-09 20:33:42 +00:00
|
|
|
if ($DTDchildRules[$DTDchildToRule[$child]] === '?' && $node->$child->count() > 1)
|
2021-02-02 15:58:29 +00:00
|
|
|
{
|
2021-03-09 20:33:42 +00:00
|
|
|
// The node contains multiple child elements when single only is expected
|
2021-02-02 15:58:29 +00:00
|
|
|
$this->errors[] = JText::sprintf('COM_JEDCHECKER_MANIFEST_MULTIPLE_FOUND', $name, $child);
|
|
|
|
}
|
|
|
|
}
|
|
|
|
}
|
2021-02-24 11:57:11 +00:00
|
|
|
|
|
|
|
// 3) check empty elements
|
|
|
|
foreach ($node as $child)
|
|
|
|
{
|
2021-02-24 12:59:20 +00:00
|
|
|
if ($child->count() === 0 && $child->attributes()->count() === 0 && (string) $child === '')
|
2021-02-24 11:57:11 +00:00
|
|
|
{
|
|
|
|
$this->infos[] = JText::sprintf('COM_JEDCHECKER_MANIFEST_EMPTY_CHILD', $child->getName());
|
|
|
|
}
|
|
|
|
}
|
2021-02-02 15:58:29 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
// Extra checks (if exist)
|
|
|
|
$method = 'validateXml' . $name;
|
2021-04-04 10:59:50 +00:00
|
|
|
|
2021-02-02 15:58:29 +00:00
|
|
|
if (method_exists($this, $method))
|
|
|
|
{
|
|
|
|
$this->$method($node);
|
|
|
|
}
|
|
|
|
|
|
|
|
// Recursion
|
|
|
|
foreach ($node as $child)
|
|
|
|
{
|
2021-04-04 10:59:50 +00:00
|
|
|
$childName = $child->getName();
|
|
|
|
|
2021-03-09 20:33:42 +00:00
|
|
|
if (isset($DTDchildToRule[$childName]))
|
2021-04-04 10:59:50 +00:00
|
|
|
{
|
2021-03-09 20:33:42 +00:00
|
|
|
$this->validateXml($child, $DTDchildToRule[$childName]);
|
2021-02-02 15:58:29 +00:00
|
|
|
}
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
/**
|
2021-04-04 11:19:14 +00:00
|
|
|
* Extra check for menu nodes
|
2021-04-04 10:59:50 +00:00
|
|
|
* @param SimpleXMLElement $node XML node
|
|
|
|
*
|
|
|
|
* @return void
|
2021-02-02 15:58:29 +00:00
|
|
|
*/
|
|
|
|
protected function validateXmlMenu($node)
|
|
|
|
{
|
|
|
|
if (isset($node['link']))
|
|
|
|
{
|
2021-03-10 22:15:13 +00:00
|
|
|
// The "link" attribute overrides any other link-related attributes (warn if they present)
|
2021-04-04 10:59:50 +00:00
|
|
|
$skipAttrs = array('act', 'controller', 'layout', 'sub', 'task', 'view');
|
|
|
|
|
2021-02-02 15:58:29 +00:00
|
|
|
foreach ($node->attributes() as $attr)
|
|
|
|
{
|
2021-04-04 10:59:50 +00:00
|
|
|
$attrName = $attr->getName();
|
|
|
|
|
|
|
|
if (in_array($attrName, $skipAttrs, true))
|
2021-02-02 15:58:29 +00:00
|
|
|
{
|
2021-04-04 10:59:50 +00:00
|
|
|
$this->warnings[] = JText::sprintf('COM_JEDCHECKER_MANIFEST_MENU_UNUSED_ATTRIBUTE', $attrName);
|
2021-02-02 15:58:29 +00:00
|
|
|
}
|
|
|
|
}
|
|
|
|
}
|
|
|
|
}
|
|
|
|
}
|