[ Index ]

PHP Cross Reference of WordPress Trunk (Updated Daily)

Search

title

Body

[close]

/wp-admin/ -> async-upload.php (source)

   1  <?php
   2  /**
   3   * Server-side file upload handler from wp-plupload or other asynchronous upload methods.
   4   *
   5   * @package WordPress
   6   * @subpackage Administration
   7   */
   8  
   9  if ( isset( $_REQUEST['action'] ) && 'upload-attachment' === $_REQUEST['action'] ) {
  10      define( 'DOING_AJAX', true );
  11  }
  12  
  13  if ( ! defined( 'WP_ADMIN' ) ) {
  14      define( 'WP_ADMIN', true );
  15  }
  16  
  17  /** Load WordPress Bootstrap */
  18  require_once dirname( __DIR__ ) . '/wp-load.php';
  19  
  20  require_once  ABSPATH . 'wp-admin/admin.php';
  21  
  22  header( 'Content-Type: text/plain; charset=' . get_option( 'blog_charset' ) );
  23  
  24  if ( isset( $_REQUEST['action'] ) && 'upload-attachment' === $_REQUEST['action'] ) {
  25      require  ABSPATH . 'wp-admin/includes/ajax-actions.php';
  26  
  27      send_nosniff_header();
  28      nocache_headers();
  29  
  30      wp_ajax_upload_attachment();
  31      die( '0' );
  32  }
  33  
  34  if ( ! current_user_can( 'upload_files' ) ) {
  35      wp_die( __( 'Sorry, you are not allowed to upload files.' ) );
  36  }
  37  
  38  // Just fetch the detail form for that attachment.
  39  if ( isset( $_REQUEST['attachment_id'] ) && (int) $_REQUEST['attachment_id'] && $_REQUEST['fetch'] ) {
  40      $id   = (int) $_REQUEST['attachment_id'];
  41      $post = get_post( $id );
  42      if ( 'attachment' !== $post->post_type ) {
  43          wp_die( __( 'Invalid post type.' ) );
  44      }
  45  
  46      switch ( $_REQUEST['fetch'] ) {
  47          case 3:
  48              ?>
  49              <div class="media-item-wrapper">
  50                  <div class="attachment-details">
  51                      <?php
  52                      $thumb_url = wp_get_attachment_image_src( $id, 'thumbnail', true );
  53                      if ( $thumb_url ) {
  54                          echo '<img class="pinkynail" src="' . esc_url( $thumb_url[0] ) . '" alt="" />';
  55                      }
  56  
  57                      // Title shouldn't ever be empty, but use filename just in case.
  58                      $file     = get_attached_file( $post->ID );
  59                      $file_url = wp_get_attachment_url( $post->ID );
  60                      $title    = $post->post_title ? $post->post_title : wp_basename( $file );
  61                      ?>
  62                      <div class="filename new">
  63                          <span class="media-list-title"><strong><?php echo esc_html( wp_html_excerpt( $title, 60, '&hellip;' ) ); ?></strong></span>
  64                          <span class="media-list-subtitle"><?php echo esc_html( wp_basename( $file ) ); ?></span>
  65                          <div class="attachment-tools">
  66                              <?php
  67                              if ( current_user_can( 'edit_post', $id ) ) {
  68                                  echo '<a class="edit-attachment" href="' . esc_url( get_edit_post_link( $id ) ) . '">' . _x( 'Edit', 'media item' ) . '</a>';
  69                              } else {
  70                                  echo '<span class="edit-attachment">' . _x( 'Success', 'media item' ) . '</span>';
  71                              }
  72                              ?>
  73                              <span class="media-item-copy-container copy-to-clipboard-container edit-attachment">
  74                                  <button type="button" class="button button-small copy-attachment-url"
  75                                      data-clipboard-text="<?php echo esc_url( $file_url ); ?>"
  76                                  ><?php _e( 'Copy URL to clipboard' ); ?></button>
  77                                  <span class="success hidden" aria-hidden="true"><?php _e( 'Copied!' ); ?></span>
  78                              </span>
  79                          </div>
  80                      </div>
  81                  </div>
  82              </div>
  83              <?php
  84              break;
  85          case 2:
  86              add_filter( 'attachment_fields_to_edit', 'media_single_attachment_fields_to_edit', 10, 2 );
  87              echo get_media_item(
  88                  $id,
  89                  array(
  90                      'send'   => false,
  91                      'delete' => true,
  92                  )
  93              );
  94              break;
  95          default:
  96              add_filter( 'attachment_fields_to_edit', 'media_post_single_attachment_fields_to_edit', 10, 2 );
  97              echo get_media_item( $id );
  98              break;
  99      }
 100      exit;
 101  }
 102  
 103  check_admin_referer( 'media-form' );
 104  
 105  $post_id = 0;
 106  if ( isset( $_REQUEST['post_id'] ) ) {
 107      $post_id = absint( $_REQUEST['post_id'] );
 108      if ( ! get_post( $post_id ) || ! current_user_can( 'edit_post', $post_id ) ) {
 109          $post_id = 0;
 110      }
 111  }
 112  
 113  $id = media_handle_upload( 'async-upload', $post_id );
 114  if ( is_wp_error( $id ) ) {
 115      $message = sprintf(
 116          '%s <strong>%s</strong><br />%s',
 117          sprintf(
 118              '<button type="button" class="dismiss button-link" onclick="jQuery(this).parents(\'div.media-item\').slideUp(200, function(){jQuery(this).remove();});">%s</button>',
 119              __( 'Dismiss' )
 120          ),
 121          sprintf(
 122              /* translators: %s: Name of the file that failed to upload. */
 123              __( '&#8220;%s&#8221; has failed to upload.' ),
 124              esc_html( $_FILES['async-upload']['name'] )
 125          ),
 126          esc_html( $id->get_error_message() )
 127      );
 128      wp_admin_notice(
 129          $message,
 130          array(
 131              'additional_classes' => array( 'error-div', 'error' ),
 132              'paragraph_wrap'     => false,
 133          )
 134      );
 135      exit;
 136  }
 137  
 138  if ( $_REQUEST['short'] ) {
 139      // Short form response - attachment ID only.
 140      echo $id;
 141  } else {
 142      // Long form response - big chunk of HTML.
 143      $type = $_REQUEST['type'];
 144  
 145      /**
 146       * Filters the returned ID of an uploaded attachment.
 147       *
 148       * The dynamic portion of the hook name, `$type`, refers to the attachment type.
 149       *
 150       * Possible hook names include:
 151       *
 152       *  - `async_upload_audio`
 153       *  - `async_upload_file`
 154       *  - `async_upload_image`
 155       *  - `async_upload_video`
 156       *
 157       * @since 2.5.0
 158       *
 159       * @param int $id Uploaded attachment ID.
 160       */
 161      echo apply_filters( "async_upload_{$type}", $id );
 162  }


Generated : Tue Jan 21 08:20:01 2025 Cross-referenced by PHPXref