2011-10-05 06:22:53 +02:00
|
|
|
<?php
|
|
|
|
|
|
|
|
/*
|
|
|
|
* This file is part of Twig.
|
|
|
|
*
|
2018-05-10 12:24:53 +02:00
|
|
|
* (c) Fabien Potencier
|
2011-10-05 06:22:53 +02:00
|
|
|
*
|
|
|
|
* For the full copyright and license information, please view the LICENSE
|
|
|
|
* file that was distributed with this source code.
|
|
|
|
*/
|
|
|
|
|
|
|
|
/**
|
|
|
|
* Twig_Node_SandboxedPrint adds a check for the __toString() method
|
|
|
|
* when the variable is an object and the sandbox is activated.
|
|
|
|
*
|
|
|
|
* When there is a simple Print statement, like {{ article }},
|
|
|
|
* and if the sandbox is enabled, we need to check that the __toString()
|
|
|
|
* method is allowed if 'article' is an object.
|
|
|
|
*
|
2013-08-01 21:20:12 +02:00
|
|
|
* @author Fabien Potencier <fabien@symfony.com>
|
2011-10-05 06:22:53 +02:00
|
|
|
*/
|
|
|
|
class Twig_Node_SandboxedPrint extends Twig_Node_Print
|
|
|
|
{
|
|
|
|
public function compile(Twig_Compiler $compiler)
|
|
|
|
{
|
|
|
|
$compiler
|
|
|
|
->addDebugInfo($this)
|
2018-05-10 12:24:53 +02:00
|
|
|
->write('echo $this->env->getExtension(\'Twig_Extension_Sandbox\')->ensureToStringAllowed(')
|
2011-10-05 06:22:53 +02:00
|
|
|
->subcompile($this->getNode('expr'))
|
|
|
|
->raw(");\n")
|
|
|
|
;
|
|
|
|
}
|
|
|
|
|
|
|
|
/**
|
|
|
|
* Removes node filters.
|
|
|
|
*
|
|
|
|
* This is mostly needed when another visitor adds filters (like the escaper one).
|
|
|
|
*
|
2018-05-10 12:24:53 +02:00
|
|
|
* @return Twig_Node
|
2011-10-05 06:22:53 +02:00
|
|
|
*/
|
2018-05-10 12:24:53 +02:00
|
|
|
protected function removeNodeFilter(Twig_Node $node)
|
2011-10-05 06:22:53 +02:00
|
|
|
{
|
|
|
|
if ($node instanceof Twig_Node_Expression_Filter) {
|
|
|
|
return $this->removeNodeFilter($node->getNode('node'));
|
|
|
|
}
|
|
|
|
|
|
|
|
return $node;
|
|
|
|
}
|
|
|
|
}
|
2018-05-10 12:24:53 +02:00
|
|
|
|
|
|
|
class_alias('Twig_Node_SandboxedPrint', 'Twig\Node\SandboxedPrintNode', false);
|