diff --git a/Neos.Media/Classes/Domain/Repository/AssetRepository.php b/Neos.Media/Classes/Domain/Repository/AssetRepository.php index a971d06a722..3fe7719d196 100644 --- a/Neos.Media/Classes/Domain/Repository/AssetRepository.php +++ b/Neos.Media/Classes/Domain/Repository/AssetRepository.php @@ -268,8 +268,9 @@ protected function addAssetCollectionToQueryConstraints(QueryInterface $query, A return; } - $constraints = $query->getConstraint(); - $query->matching($query->logicalAnd([$constraints, $query->contains('assetCollections', $assetCollection)])); + $query->getQueryBuilder()->andWhere( + $query->contains('assetCollections', $assetCollection) + ); } /** diff --git a/Neos.Media/Classes/Domain/Service/AssetService.php b/Neos.Media/Classes/Domain/Service/AssetService.php index 0df8f14449c..ae947d94d78 100644 --- a/Neos.Media/Classes/Domain/Service/AssetService.php +++ b/Neos.Media/Classes/Domain/Service/AssetService.php @@ -323,7 +323,9 @@ public function replaceAssetResource(AssetInterface $asset, PersistentResource $ $variant->refresh(); foreach ($variant->getAdjustments() as $adjustment) { if (method_exists($adjustment, 'refit') && $this->imageService->getImageSize($originalAssetResource) !== $this->imageService->getImageSize($resource)) { - $adjustment->refit($asset); + if ($asset instanceof ImageInterface && $asset->getWidth() !== null && $asset->getHeight() !== null) { + $adjustment->refit($asset); + } } } $this->getRepository($variant)->update($variant); diff --git a/Neos.Media/Tests/Functional/Domain/Repository/AssetRepositoryTest.php b/Neos.Media/Tests/Functional/Domain/Repository/AssetRepositoryTest.php index 7b8ff4ab728..7d3cd85a29a 100644 --- a/Neos.Media/Tests/Functional/Domain/Repository/AssetRepositoryTest.php +++ b/Neos.Media/Tests/Functional/Domain/Repository/AssetRepositoryTest.php @@ -10,7 +10,13 @@ * information, please view the LICENSE file which was distributed with this * source code. */ + +use Doctrine\Common\Collections\ArrayCollection; use Neos\Flow\Persistence\Doctrine\PersistenceManager; +use Neos\Media\Domain\Model\AssetCollection; +use Neos\Media\Domain\Model\Image; +use Neos\Media\Domain\Model\ImageVariant; +use Neos\Media\Domain\Repository\AssetCollectionRepository; use Neos\Utility\Files; use Neos\Media\Domain\Model\Asset; use Neos\Media\Domain\Model\Tag; @@ -34,6 +40,11 @@ class AssetRepositoryTest extends AbstractTest */ protected $assetRepository; + /** + * @var AssetCollectionRepository + */ + protected $assetCollectionRepository; + /** * @var TagRepository */ @@ -52,6 +63,7 @@ public function setUp(): void $this->prepareResourceManager(); $this->assetRepository = $this->objectManager->get(AssetRepository::class); + $this->assetCollectionRepository = $this->objectManager->get(AssetCollectionRepository::class); $this->tagRepository = $this->objectManager->get(TagRepository::class); } @@ -147,4 +159,91 @@ public function findBySearchTermAndTagsReturnsFilteredResult() $asset->getResource()->getSha1(); } } + + /** + * @test + */ + public function testAddAssetVariantFilterClauseWithoutAssetCollection() + { + $resource1 = $this->resourceManager->importResource(__DIR__ . '/../../Fixtures/Resources/417px-Mihaly_Csikszentmihalyi.jpg'); + $resource2 = $this->resourceManager->importResource(__DIR__ . '/../../Fixtures/Resources/640px-Goodworkteam.jpg'); + + $image1 = new Image($resource1); + $image1->setTitle('asset for homepage'); + $this->assetRepository->add($image1); + + $imageVariant1 = new ImageVariant($image1); + $image1->addVariant($imageVariant1); + + $image2 = new Image($resource2); + $image2->setTitle('asset for homepage'); + $this->assetRepository->add($image2); + + $imageVariant2 = new ImageVariant($image2); + $image2->addVariant($imageVariant2); + + $this->persistenceManager->persistAll(); + $this->persistenceManager->clearState(); + + $assets = $this->assetRepository->findAll(); + + self::assertCount(2, $assets); + foreach ($assets as $asset) { + self::assertInstanceOf(Image::class, $asset); + self::assertNotInstanceOf(ImageVariant::class, $asset); + } + + // This is necessary to initialize all resource instances before the tables are deleted + foreach ($this->assetRepository->findAll() as $asset) { + $asset->getResource()->getSha1(); + } + } + + /** + * @test + */ + public function testAddAssetVariantFilterClauseWithAssetCollection() + { + $resource1 = $this->resourceManager->importResource(__DIR__ . '/../../Fixtures/Resources/417px-Mihaly_Csikszentmihalyi.jpg'); + $resource2 = $this->resourceManager->importResource(__DIR__ . '/../../Fixtures/Resources/640px-Goodworkteam.jpg'); + + $assetCollection1 = new AssetCollection('test-1'); + $this->assetCollectionRepository->add($assetCollection1); + + $collections1 = new ArrayCollection(); + $collections1->add($assetCollection1); + + $image1 = new Image($resource1); + $image1->setTitle('asset for homepage'); + $image1->setAssetCollections($collections1); + $assetCollection1->addAsset($image1); + + $imageVariant1 = new ImageVariant($image1); + $image1->addVariant($imageVariant1); + + $assetCollection2 = new AssetCollection('test-2'); + $this->assetCollectionRepository->add($assetCollection2); + + $collections2 = new ArrayCollection(); + $collections2->add($assetCollection2); + + $image2 = new Image($resource2); + $image2->setTitle('asset for homepage'); + $image2->setAssetCollections($collections2); + $assetCollection2->addAsset($image2); + + $this->persistenceManager->persistAll(); + $this->persistenceManager->clearState(); + + $assets = $this->assetRepository->findAll($assetCollection1); + self::assertCount(1, $assets); + self::assertInstanceOf(Image::class, $assets->getFirst()); + self::assertNotInstanceOf(ImageVariant::class, $assets->getFirst()); + self::assertNotInstanceOf(ImageVariant::class, $assets->getFirst()); + + // This is necessary to initialize all resource instances before the tables are deleted + foreach ($this->assetRepository->findAll() as $asset) { + $asset->getResource()->getSha1(); + } + } } diff --git a/Neos.Neos/Classes/Fusion/ConvertUrisImplementation.php b/Neos.Neos/Classes/Fusion/ConvertUrisImplementation.php index b84c3e24691..2e4e491b813 100644 --- a/Neos.Neos/Classes/Fusion/ConvertUrisImplementation.php +++ b/Neos.Neos/Classes/Fusion/ConvertUrisImplementation.php @@ -13,6 +13,7 @@ use Neos\Flow\Annotations as Flow; use Neos\Neos\Domain\Exception; +use Neos\Neos\Fusion\Helper\CachingHelper; use Neos\Neos\Service\LinkingService; use Neos\ContentRepository\Domain\Model\NodeInterface; use Neos\Fusion\FusionObjects\AbstractFusionObject; @@ -56,6 +57,12 @@ class ConvertUrisImplementation extends AbstractFusionObject */ protected $linkingService; + /** + * @Flow\Inject + * @var CachingHelper + */ + protected $cachingHelper; + /** * Convert URIs matching a supported scheme with generated URIs * @@ -97,11 +104,13 @@ public function evaluate() switch ($matches[1]) { case 'node': $resolvedUri = $linkingService->resolveNodeUri($matches[0], $node, $controllerContext, $absolute); - $this->runtime->addCacheTag('node', $matches[2]); + $cacheTagIdentifier = sprintf('%s_%s', $this->cachingHelper->renderWorkspaceTagForContextNode($node->getContext()->getWorkspaceName()), $matches[2]); + $this->runtime->addCacheTag('node', $cacheTagIdentifier); break; case 'asset': $resolvedUri = $linkingService->resolveAssetUri($matches[0]); - $this->runtime->addCacheTag('asset', $matches[2]); + $cacheTagIdentifier = sprintf('%s_%s', $this->cachingHelper->renderWorkspaceTagForContextNode($node->getContext()->getWorkspaceName()), $matches[2]); + $this->runtime->addCacheTag('asset', $cacheTagIdentifier); break; default: $resolvedUri = null; diff --git a/Neos.Neos/Resources/Private/Partials/Module/Shared/Roles.html b/Neos.Neos/Resources/Private/Partials/Module/Shared/Roles.html index 4f23b279335..6dfc77d56e3 100644 --- a/Neos.Neos/Resources/Private/Partials/Module/Shared/Roles.html +++ b/Neos.Neos/Resources/Private/Partials/Module/Shared/Roles.html @@ -1,7 +1,7 @@ {namespace neos=Neos\Neos\ViewHelpers} - {role.name} + {f:if(condition: role.label, then: role.label, else: role.name)} diff --git a/Neos.Neos/Resources/Private/Templates/Module/Administration/Users/New.html b/Neos.Neos/Resources/Private/Templates/Module/Administration/Users/New.html index 2a975f06173..b0dfdf9e473 100644 --- a/Neos.Neos/Resources/Private/Templates/Module/Administration/Users/New.html +++ b/Neos.Neos/Resources/Private/Templates/Module/Administration/Users/New.html @@ -50,7 +50,7 @@

{neos:backend.translate(id: 'user.new.subtitle', value: 'Create a new user',
diff --git a/Neos.Neos/Resources/Public/JavaScript/Main.min.js b/Neos.Neos/Resources/Public/JavaScript/Main.min.js index 7516f05ec17..cd4a0326ce5 100644 --- a/Neos.Neos/Resources/Public/JavaScript/Main.min.js +++ b/Neos.Neos/Resources/Public/JavaScript/Main.min.js @@ -1,17176 +1,3 @@ -/******/ (() => { // webpackBootstrap -/******/ var __webpack_modules__ = ({ - -/***/ "./Resources/Public/JavaScript/Components/TopBar/UserMenu.js": -/*!*******************************************************************!*\ - !*** ./Resources/Public/JavaScript/Components/TopBar/UserMenu.js ***! - \*******************************************************************/ -/***/ ((__unused_webpack_module, __webpack_exports__, __webpack_require__) => { - -"use strict"; -__webpack_require__.r(__webpack_exports__); -/* harmony export */ __webpack_require__.d(__webpack_exports__, { -/* harmony export */ "default": () => (/* binding */ UserMenu) -/* harmony export */ }); -/* harmony import */ var _Helper__WEBPACK_IMPORTED_MODULE_0__ = __webpack_require__(/*! ../../Helper */ "./Resources/Public/JavaScript/Helper/index.ts"); -/* harmony import */ var _Helper__WEBPACK_IMPORTED_MODULE_0___default = /*#__PURE__*/__webpack_require__.n(_Helper__WEBPACK_IMPORTED_MODULE_0__); -/* harmony import */ var _Services__WEBPACK_IMPORTED_MODULE_1__ = __webpack_require__(/*! ../../Services */ "./Resources/Public/JavaScript/Services/index.js"); -/* harmony import */ var _Templates_RestoreButton__WEBPACK_IMPORTED_MODULE_2__ = __webpack_require__(/*! ../../Templates/RestoreButton */ "./Resources/Public/JavaScript/Templates/RestoreButton.js"); - - - -const BASE_PATH = '/neos/impersonate/'; -class UserMenu { - constructor(_root) { - const csfrTokenField = document.querySelector('[data-csrf-token]'); - this._csrfToken = !(0,_Helper__WEBPACK_IMPORTED_MODULE_0__.isNil)(csfrTokenField) ? csfrTokenField.getAttribute('data-csrf-token') : ''; - this._root = _root; - this._apiService = new _Services__WEBPACK_IMPORTED_MODULE_1__.ApiService(BASE_PATH, this._csrfToken); - if (!(0,_Helper__WEBPACK_IMPORTED_MODULE_0__.isNil)(_root)) { - this._checkImpersonateStatus(); - } - } - _renderRestoreButton(user) { - const userMenuDropDown = this._root.querySelector('.neos-dropdown-menu'); - if ((0,_Helper__WEBPACK_IMPORTED_MODULE_0__.isNil)(userMenuDropDown) || (0,_Helper__WEBPACK_IMPORTED_MODULE_0__.isNil)(user)) { - return false; - } - - // append restore button to the user menu - const restoreListItem = document.createElement('li'); - restoreListItem.innerHTML = (0,_Templates_RestoreButton__WEBPACK_IMPORTED_MODULE_2__.RestoreButton)(user); - userMenuDropDown.appendChild(restoreListItem); - - // add event listener for restore api call - const restoreButtonElement = userMenuDropDown.querySelector('.restore-user'); - if (!(0,_Helper__WEBPACK_IMPORTED_MODULE_0__.isNil)(restoreButtonElement)) { - restoreButtonElement.addEventListener('click', this._restoreUser.bind(this)); - } - } - _checkImpersonateStatus() { - const response = this._apiService.callStatus(); - response.then(data => { - const { - origin, - status - } = data; - if (status && !(0,_Helper__WEBPACK_IMPORTED_MODULE_0__.isNil)(origin)) { - this._renderRestoreButton(origin); - } - }).catch(function (error) { - // error occured but we just don`t render the restore button - }); - } - _restoreUser(event) { - event.preventDefault(); - const button = event.currentTarget; - if ((0,_Helper__WEBPACK_IMPORTED_MODULE_0__.isNil)(button)) { - return false; - } - const response = this._apiService.callRestore(); - response.then(data => { - const { - origin, - impersonate, - status - } = data; - const message = window.NeosCMS.I18n.translate('impersonate.success.restoreUser', 'Switched back from {0} to the orginal user {1}.', 'Neos.Neos', 'Main', { - 0: impersonate.accountIdentifier, - 1: origin.accountIdentifier - }); - window.NeosCMS.Notification.ok(message); - - // load default backend, so we don't need to care for the module permissions. - // because in not every neos version the users have by default the content module or user module - window.location.pathname = '/neos'; - }).catch(function (error) { - if (window.NeosCMS) { - const message = window.NeosCMS.I18n.translate('impersonate.error.restoreUser', 'Could not switch back to the original user.', 'Neos.Neos'); - window.NeosCMS.Notification.error(message); - } - }); - } -} - -/***/ }), - -/***/ "./Resources/Public/JavaScript/Module/Administration/UserManagement.js": -/*!*****************************************************************************!*\ - !*** ./Resources/Public/JavaScript/Module/Administration/UserManagement.js ***! - \*****************************************************************************/ -/***/ ((__unused_webpack_module, __webpack_exports__, __webpack_require__) => { - -"use strict"; -__webpack_require__.r(__webpack_exports__); -/* harmony export */ __webpack_require__.d(__webpack_exports__, { -/* harmony export */ "default": () => (/* binding */ UserManagement) -/* harmony export */ }); -/* harmony import */ var _Helper__WEBPACK_IMPORTED_MODULE_0__ = __webpack_require__(/*! ../../Helper */ "./Resources/Public/JavaScript/Helper/index.ts"); -/* harmony import */ var _Helper__WEBPACK_IMPORTED_MODULE_0___default = /*#__PURE__*/__webpack_require__.n(_Helper__WEBPACK_IMPORTED_MODULE_0__); -/* harmony import */ var _Services__WEBPACK_IMPORTED_MODULE_1__ = __webpack_require__(/*! ../../Services */ "./Resources/Public/JavaScript/Services/index.js"); -/* harmony import */ var _Templates_ImpersonateButton__WEBPACK_IMPORTED_MODULE_2__ = __webpack_require__(/*! ../../Templates/ImpersonateButton */ "./Resources/Public/JavaScript/Templates/ImpersonateButton.js"); - - - -const BASE_PATH = '/neos/impersonate/'; -class UserManagement { - constructor(_root) { - const csfrTokenField = document.querySelector('[data-csrf-token]'); - this._root = _root; - this._csrfToken = !(0,_Helper__WEBPACK_IMPORTED_MODULE_0__.isNil)(csfrTokenField) ? csfrTokenField.getAttribute('data-csrf-token') : ''; - this._apiService = new _Services__WEBPACK_IMPORTED_MODULE_1__.ApiService(BASE_PATH, this._csrfToken); - if (!(0,_Helper__WEBPACK_IMPORTED_MODULE_0__.isNil)(_root)) { - this._initialize(); - } - } - _initialize() { - this._renderImpersonateButtons(); - this._setupEventListeners(); - } - _setupEventListeners() { - const impersonateButtons = this._root.querySelectorAll('button.impersonate-user'); - impersonateButtons.forEach(_impersonateButton => { - _impersonateButton.addEventListener('click', this._impersonateUser.bind(this)); - }); - } - _renderImpersonateButtons() { - const userTableActionButtons = Array.from(this._root.querySelectorAll('.neos-table .neos-action')); - userTableActionButtons.forEach(_actionContainer => { - const deleteButton = _actionContainer.querySelector('button.neos-button-danger'); - const showButton = _actionContainer.querySelector('a[href*="show"]'); - if ((0,_Helper__WEBPACK_IMPORTED_MODULE_0__.isNil)(showButton)) { - return false; - } - const showButtonUri = new URL(decodeURIComponent(showButton.getAttribute('href'))); - const showButtonUriParameter = new URLSearchParams(showButtonUri.search); - - // user information from DOM - const userIdentifier = showButtonUriParameter.get('moduleArguments[user][__identity]'); - const isCurrentUser = !(0,_Helper__WEBPACK_IMPORTED_MODULE_0__.isNil)(deleteButton) && deleteButton.classList.contains('neos-disabled'); - const impersonateButtonMarkup = (0,_Templates_ImpersonateButton__WEBPACK_IMPORTED_MODULE_2__.ImpersonateButton)(userIdentifier, isCurrentUser); - const temporaryContainer = document.createElement('div'); - temporaryContainer.innerHTML = impersonateButtonMarkup; - showButton.parentElement.appendChild(temporaryContainer.firstChild); - }); - } - _impersonateUser(event) { - event.preventDefault(); - const button = event.currentTarget; - if ((0,_Helper__WEBPACK_IMPORTED_MODULE_0__.isNil)(button)) { - return false; - } - const identifier = button.getAttribute('data-user-identifier'); - const response = this._apiService.callUserChange(identifier); - response.then(data => { - const { - user, - status - } = data; - const username = (0,_Helper__WEBPACK_IMPORTED_MODULE_0__.isNil)(user) ? '' : user.accountIdentifier; - const message = window.NeosCMS.I18n.translate('impersonate.success.impersonateUser', 'Switched to the new user {0}.', 'Neos.Neos', 'Main', { - 0: username - }); - window.NeosCMS.Notification.ok(message); - - // load default backend, so we don't need to care for the module permissions. - // because in not every neos version the users have by default the content module or user module - window.location.pathname = '/neos'; - }).catch(function (error) { - if (window.NeosCMS) { - const message = window.NeosCMS.I18n.translate('impersonate.error.impersonateUser', 'Could not switch to the requested user.', 'Neos.Neos'); - window.NeosCMS.Notification.error(message); - } - }); - } -} - -/***/ }), - -/***/ "./Resources/Public/JavaScript/Module/Administration/index.js": -/*!********************************************************************!*\ - !*** ./Resources/Public/JavaScript/Module/Administration/index.js ***! - \********************************************************************/ -/***/ ((__unused_webpack_module, __webpack_exports__, __webpack_require__) => { - -"use strict"; -__webpack_require__.r(__webpack_exports__); -/* harmony export */ __webpack_require__.d(__webpack_exports__, { -/* harmony export */ UserManagement: () => (/* reexport safe */ _UserManagement__WEBPACK_IMPORTED_MODULE_0__["default"]) -/* harmony export */ }); -/* harmony import */ var _UserManagement__WEBPACK_IMPORTED_MODULE_0__ = __webpack_require__(/*! ./UserManagement */ "./Resources/Public/JavaScript/Module/Administration/UserManagement.js"); - - - -/***/ }), - -/***/ "./Resources/Public/JavaScript/Services/ApiService.js": -/*!************************************************************!*\ - !*** ./Resources/Public/JavaScript/Services/ApiService.js ***! - \************************************************************/ -/***/ ((__unused_webpack_module, __webpack_exports__, __webpack_require__) => { - -"use strict"; -__webpack_require__.r(__webpack_exports__); -/* harmony export */ __webpack_require__.d(__webpack_exports__, { -/* harmony export */ "default": () => (/* binding */ ApiService) -/* harmony export */ }); -/* harmony import */ var _Helper__WEBPACK_IMPORTED_MODULE_0__ = __webpack_require__(/*! ../Helper */ "./Resources/Public/JavaScript/Helper/index.ts"); -/* harmony import */ var _Helper__WEBPACK_IMPORTED_MODULE_0___default = /*#__PURE__*/__webpack_require__.n(_Helper__WEBPACK_IMPORTED_MODULE_0__); - -class ApiService { - constructor(_basePath, _csrfToken) { - if ((0,_Helper__WEBPACK_IMPORTED_MODULE_0__.isNil)(_basePath)) { - let pathError = 'Tried to create API service without a base uri. '; - pathError += 'Please initialize the API service with a base path '; - pathError += 'like "/neos/impersonate/"'; - console.error(pathError); - } - this._basePath = _basePath; - if ((0,_Helper__WEBPACK_IMPORTED_MODULE_0__.isNil)(_csrfToken)) { - let csrfError = 'Tried to create API service without a CSFR '; - csrfError += 'token. Please initialize the API service with a token'; - console.error(csrfError); - } - this._csrfToken = _csrfToken; - } - async callUserChange(identifier) { - const data = { - user: identifier, - format: 'json' - }; - const response = await fetch(this._basePath + 'user-change', { - method: 'POST', - credentials: 'include', - headers: this._getHeader(), - body: JSON.stringify(data) - }); - return await response.json(); - } - async callStatus() { - const response = await fetch(this._basePath + 'status', { - method: 'GET', - credentials: 'include', - headers: this._getHeader() - }); - return await response.json(); - } - async callRestore() { - const response = await fetch(this._basePath + 'restore', { - method: 'POST', - credentials: 'include', - headers: this._getHeader() - }); - return await response.json(); - } - _getHeader() { - return { - Accept: 'application/json', - 'Content-Type': 'application/json', - 'X-Flow-Csrftoken': this._csrfToken - }; - } -} - -/***/ }), - -/***/ "./Resources/Public/JavaScript/Services/Configuration.js": -/*!***************************************************************!*\ - !*** ./Resources/Public/JavaScript/Services/Configuration.js ***! - \***************************************************************/ -/***/ ((__unused_webpack_module, __webpack_exports__, __webpack_require__) => { - -"use strict"; -__webpack_require__.r(__webpack_exports__); -/* harmony export */ __webpack_require__.d(__webpack_exports__, { -/* harmony export */ "default": () => (__WEBPACK_DEFAULT_EXPORT__) -/* harmony export */ }); -/* harmony import */ var _Helper__WEBPACK_IMPORTED_MODULE_0__ = __webpack_require__(/*! ../Helper */ "./Resources/Public/JavaScript/Helper/index.ts"); -/* harmony import */ var _Helper__WEBPACK_IMPORTED_MODULE_0___default = /*#__PURE__*/__webpack_require__.n(_Helper__WEBPACK_IMPORTED_MODULE_0__); - -const hasConfiguration = !(0,_Helper__WEBPACK_IMPORTED_MODULE_0__.isNil)(window.NeosCMS?.Configuration); -const init = () => { - if ((0,_Helper__WEBPACK_IMPORTED_MODULE_0__.isNil)(window.NeosCMS)) { - window.NeosCMS = {}; - } - if ((0,_Helper__WEBPACK_IMPORTED_MODULE_0__.isNil)(window.NeosCMS.Configuration)) { - window.NeosCMS.Configuration = {}; - } - - // append xliff uri - const xliffLink = document.querySelector('link[rel="neos-xliff"]'); - if (!(0,_Helper__WEBPACK_IMPORTED_MODULE_0__.isNil)(xliffLink)) { - window.NeosCMS.Configuration.XliffUri = xliffLink.getAttribute("href"); - } -}; -const get = key => { - if (!hasConfiguration) { - return null; - } - return (0,_Helper__WEBPACK_IMPORTED_MODULE_0__.getCollectionValueByPath)(window.NeosCMS.Configuration, key); -}; -const override = (key, value) => { - if (hasConfiguration && key in window.NeosCMS.Configuration) { - window.NeosCMS.Configuration[key] = value; - } -}; -/* harmony default export */ const __WEBPACK_DEFAULT_EXPORT__ = ({ - init, - get, - override -}); - -/***/ }), - -/***/ "./Resources/Public/JavaScript/Services/Helper.js": -/*!********************************************************!*\ - !*** ./Resources/Public/JavaScript/Services/Helper.js ***! - \********************************************************/ -/***/ ((__unused_webpack_module, __webpack_exports__, __webpack_require__) => { - -"use strict"; -__webpack_require__.r(__webpack_exports__); -/* harmony export */ __webpack_require__.d(__webpack_exports__, { -/* harmony export */ "default": () => (__WEBPACK_DEFAULT_EXPORT__) -/* harmony export */ }); -/* harmony import */ var _Helper__WEBPACK_IMPORTED_MODULE_0__ = __webpack_require__(/*! ../Helper */ "./Resources/Public/JavaScript/Helper/index.ts"); -/* harmony import */ var _Helper__WEBPACK_IMPORTED_MODULE_0___default = /*#__PURE__*/__webpack_require__.n(_Helper__WEBPACK_IMPORTED_MODULE_0__); - -const init = () => { - if ((0,_Helper__WEBPACK_IMPORTED_MODULE_0__.isNil)(window.NeosCMS)) { - window.NeosCMS = {}; - } - if ((0,_Helper__WEBPACK_IMPORTED_MODULE_0__.isNil)(window.NeosCMS.Helper)) { - window.NeosCMS.Helper = { - isNil: _Helper__WEBPACK_IMPORTED_MODULE_0__.isNil, - isEmpty: _Helper__WEBPACK_IMPORTED_MODULE_0__.isEmpty, - getItemByKeyValue: _Helper__WEBPACK_IMPORTED_MODULE_0__.getItemByKeyValue, - getCollectionValueByPath: _Helper__WEBPACK_IMPORTED_MODULE_0__.getCollectionValueByPath, - createCollectionByPath: _Helper__WEBPACK_IMPORTED_MODULE_0__.createCollectionByPath - }; - } -}; -/* harmony default export */ const __WEBPACK_DEFAULT_EXPORT__ = ({ - init -}); - -/***/ }), - -/***/ "./Resources/Public/JavaScript/Services/LocalStorage.js": -/*!**************************************************************!*\ - !*** ./Resources/Public/JavaScript/Services/LocalStorage.js ***! - \**************************************************************/ -/***/ ((__unused_webpack_module, __webpack_exports__, __webpack_require__) => { - -"use strict"; -__webpack_require__.r(__webpack_exports__); -/* harmony export */ __webpack_require__.d(__webpack_exports__, { -/* harmony export */ loadStorageData: () => (/* binding */ loadStorageData), -/* harmony export */ saveStorageData: () => (/* binding */ saveStorageData) -/* harmony export */ }); -/* harmony import */ var _Helper__WEBPACK_IMPORTED_MODULE_0__ = __webpack_require__(/*! ../Helper */ "./Resources/Public/JavaScript/Helper/index.ts"); -/* harmony import */ var _Helper__WEBPACK_IMPORTED_MODULE_0___default = /*#__PURE__*/__webpack_require__.n(_Helper__WEBPACK_IMPORTED_MODULE_0__); - -const STORAGE_KEY = "persistedState"; -const getStorage = () => { - const storage = localStorage.getItem(STORAGE_KEY); - const storageJson = JSON.parse(storage); - return (0,_Helper__WEBPACK_IMPORTED_MODULE_0__.isNil)(storageJson) ? {} : storageJson; -}; -const loadStorageData = path => { - const storage = getStorage(); - const storageData = (0,_Helper__WEBPACK_IMPORTED_MODULE_0__.getCollectionValueByPath)(storage, path); - return storageData; -}; -const saveStorageData = (path, value) => { - const storage = getStorage(); - const updatedStorageData = (0,_Helper__WEBPACK_IMPORTED_MODULE_0__.createCollectionByPath)(storage, path, value); - if (!(0,_Helper__WEBPACK_IMPORTED_MODULE_0__.isNil)(updatedStorageData)) { - localStorage.setItem(STORAGE_KEY, JSON.stringify(updatedStorageData)); - } -}; - - -/***/ }), - -/***/ "./Resources/Public/JavaScript/Services/Localization.js": -/*!**************************************************************!*\ - !*** ./Resources/Public/JavaScript/Services/Localization.js ***! - \**************************************************************/ -/***/ ((__unused_webpack_module, __webpack_exports__, __webpack_require__) => { - -"use strict"; -__webpack_require__.r(__webpack_exports__); -/* harmony export */ __webpack_require__.d(__webpack_exports__, { -/* harmony export */ "default": () => (__WEBPACK_DEFAULT_EXPORT__) -/* harmony export */ }); -/* harmony import */ var i18next__WEBPACK_IMPORTED_MODULE_0__ = __webpack_require__(/*! i18next */ "./node_modules/i18next/dist/esm/i18next.js"); -/* harmony import */ var _Helper__WEBPACK_IMPORTED_MODULE_1__ = __webpack_require__(/*! ../Helper */ "./Resources/Public/JavaScript/Helper/index.ts"); -/* harmony import */ var _Helper__WEBPACK_IMPORTED_MODULE_1___default = /*#__PURE__*/__webpack_require__.n(_Helper__WEBPACK_IMPORTED_MODULE_1__); - - -const DEFAULT_PACKAGE = "Neos.Neos"; -const DEFAULT_SOURCE = "Main"; -const EXISTING_NAMESPACES = []; - -/** - * Creates a namespace string from the neos package name and the source name. - * The package name and source name comes from the xliff data and uses underscores instead of dots. - * - * @param {string} packageName Package name separated by _ from the xliff data - * @param {string} sourceName Source name separated by _ from the xliff data - * @returns {string} - */ -const getTransformedNamespace = (packageName, sourceName) => { - const dottedPackageName = (0,_Helper__WEBPACK_IMPORTED_MODULE_1__.isEmpty)(packageName) ? DEFAULT_PACKAGE : packageName.replace(/\_/g, "."); - const dottedSourceName = (0,_Helper__WEBPACK_IMPORTED_MODULE_1__.isEmpty)(sourceName) ? DEFAULT_SOURCE : sourceName.replace(/\_/g, "."); - return dottedPackageName + "/" + dottedSourceName; -}; - -/** - * Creates a namespace string from the neos package name and the source name. - * - * @param {string} packageName Package name - * @param {string} sourceName Source name - * @returns {string} - */ -const getNamespace = (packageName, sourceName) => { - const dottedPackageName = (0,_Helper__WEBPACK_IMPORTED_MODULE_1__.isEmpty)(packageName) ? DEFAULT_PACKAGE : packageName.trim(); - const dottedSourceName = (0,_Helper__WEBPACK_IMPORTED_MODULE_1__.isEmpty)(sourceName) ? DEFAULT_SOURCE : sourceName.trim(); - return dottedPackageName + "/" + dottedSourceName; -}; - -/** - * Returns the used locale of the current xliff URI - * - * @returns {string} - */ -const getCurrentLanguage = () => { - const xliffUri = (0,_Helper__WEBPACK_IMPORTED_MODULE_1__.getCollectionValueByPath)(window.NeosCMS, "Configuration.XliffUri"); - if ((0,_Helper__WEBPACK_IMPORTED_MODULE_1__.isNil)(xliffUri)) { - return ""; - } - const parameter = new URL(xliffUri).searchParams; - return parameter.get("locale"); -}; - -/** - * Set the initialised value for the I18n API. - * The parameter is available via window.NeosCMS.I18n.initialized - * - * @param {boolean} initialised - * @returns {void} - */ -const setInitialized = initialised => { - (0,_Helper__WEBPACK_IMPORTED_MODULE_1__.createCollectionByPath)(window, "NeosCMS.I18n.initialized", Boolean(initialised)); -}; - -/** - * The xliff data saves plurals as arrays. The i18next library need a flatt structure in the labels. - * So we replace the arrays with new items and append to the label the index with a underscore. - * - * e.g.: - * "key": "singular", - * "key_plural": "plural", - * - * @param {object} translations - * @returns {object} - */ -const flattenPluralItems = translations => { - const translationKeys = Object.keys(translations); - translationKeys.forEach(key => { - if (Array.isArray(translations[key])) { - translations[key].forEach((pluralItem, index) => { - let newKey = key; - if (Number.isInteger(index) && index === 1) { - newKey = `${key}_plural`; - } - translations[newKey] = pluralItem; - }); - } - }); - return translations; -}; - -/** - * Collect and define the existing namespaces for the language resources from the xliff data - * - * @param {object} xliffData JSON object with xliff data - * @returns {void} - */ -const initializeExistingNamespaces = xliffData => { - if ((0,_Helper__WEBPACK_IMPORTED_MODULE_1__.isNil)(xliffData)) { - return false; - } - const packageNames = Object.keys(xliffData); - packageNames.forEach(packageName => { - const Sources = Object.keys(xliffData[packageName]); - Sources.forEach(sourceName => { - const namespace = getTransformedNamespace(packageName, sourceName); - const translations = xliffData[packageName][sourceName]; - if (!(0,_Helper__WEBPACK_IMPORTED_MODULE_1__.isNil)(translations)) { - EXISTING_NAMESPACES.push({ - name: namespace, - initialized: false - }); - } - }); - }); -}; - -/** - * Checks if we have language namespaces that has not been added to the i18next resources. - * Also fires the neoscms-i18n-initialized event when all resources are available. - * - * @returns {void} - */ -const checkInitialisedNamespaces = () => { - const hasNonInitializedNamespaces = EXISTING_NAMESPACES.findIndex(namespace => namespace.initialized === false) >= 0; - if (!hasNonInitializedNamespaces) { - setInitialized(true); - window.dispatchEvent(new CustomEvent("neoscms-i18n-initialized", { - bubbles: true - })); - } - return !hasNonInitializedNamespaces; -}; - -/** - * Transforms the data structue of the xliff data to i18next namespaced resource bundles. - * Therefore we replace the underscores in the package and source name with dots. - * - * Every source in a package will be a i18next namespace. The namespace will be package-name/source - * e.g. "Neos.Neos/Main" - * - * @param {object} xliffData JSON object with xliff data - * @returns {void} - */ -const transformAndAppendXliffData = xliffData => { - const language = i18next__WEBPACK_IMPORTED_MODULE_0__["default"].languages[0]; - if ((0,_Helper__WEBPACK_IMPORTED_MODULE_1__.isNil)(xliffData)) { - return false; - } - const packageNames = Object.keys(xliffData); - i18next__WEBPACK_IMPORTED_MODULE_0__["default"].store.on("added", (lng, ns) => { - // set namespace as initialized - EXISTING_NAMESPACES.find(entry => entry.name === ns)["initialized"] = true; - checkInitialisedNamespaces(); - }); - packageNames.forEach(packageName => { - const Sources = Object.keys(xliffData[packageName]); - Sources.forEach(sourceName => { - const namespace = getTransformedNamespace(packageName, sourceName); - const translations = xliffData[packageName][sourceName]; - if (!(0,_Helper__WEBPACK_IMPORTED_MODULE_1__.isNil)(translations)) { - i18next__WEBPACK_IMPORTED_MODULE_0__["default"].addResourceBundle(language, namespace, flattenPluralItems(translations), true, true); - } - }); - }); -}; - -/** - * Returns a translated label. - * - * Replaces all placeholders with corresponding values if they exist in the - * translated label. - * - * @param {string} id Id to use for finding translation (trans-unit id in XLIFF) - * @param {string} fallback Fallback value in case the no label translation was found. - * @param {string} packageKey Target package key. If not set, the current package key will be used - * @param {string} source Name of file with translations - * @param {object} parameters Numerically indexed array of values to be inserted into placeholders - * @param {string} context - * @param {number} quantity - * @returns {string} - */ -const translate = (id, fallback, packageKey, source, parameters, context, quantity) => { - id = id.replace(/\./g, "_"); - const namespace = getNamespace(packageKey, source); - const identifier = namespace + ":" + id.trim(); - let options = {}; - if (!(0,_Helper__WEBPACK_IMPORTED_MODULE_1__.isNil)(quantity)) { - options["count"] = quantity; - } - if (!(0,_Helper__WEBPACK_IMPORTED_MODULE_1__.isNil)(parameters)) { - options["replace"] = parameters; - } - if (!(0,_Helper__WEBPACK_IMPORTED_MODULE_1__.isEmpty)(fallback)) { - options["defaultValue"] = fallback; - } - return i18next__WEBPACK_IMPORTED_MODULE_0__["default"].t(identifier, options); -}; -const init = () => { - if ((0,_Helper__WEBPACK_IMPORTED_MODULE_1__.isNil)(window.NeosCMS)) { - window.NeosCMS = {}; - } - if ((0,_Helper__WEBPACK_IMPORTED_MODULE_1__.isNil)(window.NeosCMS.I18n)) { - window.NeosCMS.I18n = { - init: init, - translate: translate, - initialized: false - }; - } -}; -const initTranslations = xliffData => { - // default options - const options = { - interpolation: { - prefix: "{", - suffix: "}" - }, - resources: {} - }; - - // configure language - const currentLangauge = getCurrentLanguage(); - if (!(0,_Helper__WEBPACK_IMPORTED_MODULE_1__.isEmpty)(currentLangauge)) { - // If the current language is not ISO-2 then we can not use the preferred language - const languageOption = currentLangauge.match("[a-z]{2}(-[A-Z]{2})") ? "lng" : "fallbackLng"; - options[languageOption] = currentLangauge; - } - initializeExistingNamespaces(xliffData); - - // append translation resources - i18next__WEBPACK_IMPORTED_MODULE_0__["default"].init(options, (err, t) => { - transformAndAppendXliffData(xliffData); - }); -}; -/* harmony default export */ const __WEBPACK_DEFAULT_EXPORT__ = ({ - init, - initTranslations, - translate -}); - -/***/ }), - -/***/ "./Resources/Public/JavaScript/Services/Notification.js": -/*!**************************************************************!*\ - !*** ./Resources/Public/JavaScript/Services/Notification.js ***! - \**************************************************************/ -/***/ ((__unused_webpack_module, __webpack_exports__, __webpack_require__) => { - -"use strict"; -__webpack_require__.r(__webpack_exports__); -/* harmony export */ __webpack_require__.d(__webpack_exports__, { -/* harmony export */ "default": () => (__WEBPACK_DEFAULT_EXPORT__) -/* harmony export */ }); -/* harmony import */ var _Components_Notification_Toast__WEBPACK_IMPORTED_MODULE_0__ = __webpack_require__(/*! ../Components/Notification/Toast */ "./Resources/Public/JavaScript/Components/Notification/Toast.ts"); -/* harmony import */ var _Components_Notification_Toast__WEBPACK_IMPORTED_MODULE_0___default = /*#__PURE__*/__webpack_require__.n(_Components_Notification_Toast__WEBPACK_IMPORTED_MODULE_0__); -/* harmony import */ var _Helper__WEBPACK_IMPORTED_MODULE_1__ = __webpack_require__(/*! ../Helper */ "./Resources/Public/JavaScript/Helper/index.ts"); -/* harmony import */ var _Helper__WEBPACK_IMPORTED_MODULE_1___default = /*#__PURE__*/__webpack_require__.n(_Helper__WEBPACK_IMPORTED_MODULE_1__); - - -const allowedTypes = ["ok", "info", "notice", "warning", "error"]; -const _renderNotification = (title, message, type, additionalOptions) => { - const options = { - title: title, - message: message, - ...additionalOptions - }; - if (allowedTypes.includes(type)) { - options.type = type; - } - _Components_Notification_Toast__WEBPACK_IMPORTED_MODULE_0___default().create(options); -}; - -/** - * Show ok notification - * - * @param {string} title - * @return {void} - */ -const ok = title => { - _renderNotification(title, "", "ok"); -}; - -/** - * Show info notification - * - * @param {string} title - * @return {void} - */ -const info = title => { - _renderNotification(title, "", "info"); -}; - -/** - * Show notice notification - * - * @param {string} title - * @return {void} - */ -const notice = title => { - _renderNotification(title, "", "notice"); -}; - -/** - * Show warning notification - * - * @param {string} title - * @param {string} message - * @return {void} - */ -const warning = (title, message) => { - _renderNotification(title, message, "warning", { - timeout: 0, - closeButton: true - }); -}; - -/** - * Show error notification - * - * @param {string} title - * @param {string} message - * @return {void} - */ -const error = (title, message) => { - _renderNotification(title, message, "error", { - timeout: 0, - closeButton: true - }); -}; - -/** - * Clears all notifications - * - * @return {void} - */ -const clear = () => { - _Components_Notification_Toast__WEBPACK_IMPORTED_MODULE_0___default().removeAll(); -}; -const init = () => { - if ((0,_Helper__WEBPACK_IMPORTED_MODULE_1__.isNil)(window.NeosCMS)) { - window.NeosCMS = {}; - } - if ((0,_Helper__WEBPACK_IMPORTED_MODULE_1__.isNil)(window.NeosCMS.Notification)) { - window.NeosCMS.Notification = { - init: init, - ok: ok, - info: info, - notice: notice, - warning: warning, - error: error, - clear: clear - }; - } - const notifications = Array.from(document.querySelectorAll("#neos-notifications-inline li")); - notifications.forEach(notificationElement => { - const type = notificationElement.getAttribute("data-type"); - const title = notificationElement.textContent; - _renderNotification(title, "", type); - }); -}; -/* harmony default export */ const __WEBPACK_DEFAULT_EXPORT__ = ({ - init, - ok, - info, - notice, - warning, - error, - clear -}); - -/***/ }), - -/***/ "./Resources/Public/JavaScript/Services/ResourceCache.js": -/*!***************************************************************!*\ - !*** ./Resources/Public/JavaScript/Services/ResourceCache.js ***! - \***************************************************************/ -/***/ ((__unused_webpack_module, __webpack_exports__, __webpack_require__) => { - -"use strict"; -__webpack_require__.r(__webpack_exports__); -/* harmony export */ __webpack_require__.d(__webpack_exports__, { -/* harmony export */ cachedFetch: () => (/* binding */ cachedFetch) -/* harmony export */ }); -/* harmony import */ var _Helper__WEBPACK_IMPORTED_MODULE_0__ = __webpack_require__(/*! ../Helper */ "./Resources/Public/JavaScript/Helper/index.ts"); -/* harmony import */ var _Helper__WEBPACK_IMPORTED_MODULE_0___default = /*#__PURE__*/__webpack_require__.n(_Helper__WEBPACK_IMPORTED_MODULE_0__); -/* harmony import */ var _SessionStorage__WEBPACK_IMPORTED_MODULE_1__ = __webpack_require__(/*! ./SessionStorage */ "./Resources/Public/JavaScript/Services/SessionStorage.js"); - - -const fetchData = async uri => { - const response = await fetch(uri); - if (!response.ok) { - // @todo Throw Notification - throw new Error(`HTTP error! status: ${response.status}`); - } else { - return await response.json(); - } -}; - -/** - * @param {string} resourceUri - * @return {void} - */ -const cachedFetch = async resourceUri => { - const cachedData = _SessionStorage__WEBPACK_IMPORTED_MODULE_1__["default"].getItem(resourceUri); - const noCachedEntry = (0,_Helper__WEBPACK_IMPORTED_MODULE_0__.isNil)(cachedData); - if ((0,_Helper__WEBPACK_IMPORTED_MODULE_0__.isNil)(resourceUri) && noCachedEntry) { - return false; - } - if (noCachedEntry) { - const responseData = await fetchData(resourceUri); - _SessionStorage__WEBPACK_IMPORTED_MODULE_1__["default"].setItem(resourceUri, responseData); - return responseData; - } else { - return cachedData; - } -}; - - -/***/ }), - -/***/ "./Resources/Public/JavaScript/Services/SessionStorage.js": -/*!****************************************************************!*\ - !*** ./Resources/Public/JavaScript/Services/SessionStorage.js ***! - \****************************************************************/ -/***/ ((__unused_webpack_module, __webpack_exports__, __webpack_require__) => { - -"use strict"; -__webpack_require__.r(__webpack_exports__); -/* harmony export */ __webpack_require__.d(__webpack_exports__, { -/* harmony export */ "default": () => (__WEBPACK_DEFAULT_EXPORT__) -/* harmony export */ }); -/** - * Get an item from sessionStorage - * - * @param {string} key Name of the value to get - * @return {mixed} Depends on the stored value - */ -const getItem = key => { - try { - return JSON.parse(window.sessionStorage.getItem(key)); - } catch (e) { - return undefined; - } -}; - -/** - * Set a value into session storage - * - * @param {string} key - * @param {mixed} value - * @return {void} - */ -const setItem = (key, value) => { - try { - window.sessionStorage.setItem(key, JSON.stringify(value)); - } catch (e) { - // Clear the session storage in case an quota error is thrown - window.sessionStorage.clear(); - window.sessionStorage.setItem(key, JSON.stringify(value)); - } -}; - -/** - * Remove a value form session storage - * - * @param {string} key - * @return {void} - */ -const removeItem = key => { - window.sessionStorage.removeItem(key); -}; -/* harmony default export */ const __WEBPACK_DEFAULT_EXPORT__ = ({ - getItem, - setItem, - removeItem -}); - -/***/ }), - -/***/ "./Resources/Public/JavaScript/Services/index.js": -/*!*******************************************************!*\ - !*** ./Resources/Public/JavaScript/Services/index.js ***! - \*******************************************************/ -/***/ ((__unused_webpack_module, __webpack_exports__, __webpack_require__) => { - -"use strict"; -__webpack_require__.r(__webpack_exports__); -/* harmony export */ __webpack_require__.d(__webpack_exports__, { -/* harmony export */ ApiService: () => (/* reexport safe */ _ApiService__WEBPACK_IMPORTED_MODULE_4__["default"]), -/* harmony export */ Configuration: () => (/* reexport safe */ _Configuration__WEBPACK_IMPORTED_MODULE_0__["default"]), -/* harmony export */ Helper: () => (/* reexport safe */ _Helper__WEBPACK_IMPORTED_MODULE_5__["default"]), -/* harmony export */ Localization: () => (/* reexport safe */ _Localization__WEBPACK_IMPORTED_MODULE_2__["default"]), -/* harmony export */ Notification: () => (/* reexport safe */ _Notification__WEBPACK_IMPORTED_MODULE_1__["default"]), -/* harmony export */ SessionStorage: () => (/* reexport safe */ _SessionStorage__WEBPACK_IMPORTED_MODULE_3__["default"]) -/* harmony export */ }); -/* harmony import */ var _Configuration__WEBPACK_IMPORTED_MODULE_0__ = __webpack_require__(/*! ./Configuration */ "./Resources/Public/JavaScript/Services/Configuration.js"); -/* harmony import */ var _Notification__WEBPACK_IMPORTED_MODULE_1__ = __webpack_require__(/*! ./Notification */ "./Resources/Public/JavaScript/Services/Notification.js"); -/* harmony import */ var _Localization__WEBPACK_IMPORTED_MODULE_2__ = __webpack_require__(/*! ./Localization */ "./Resources/Public/JavaScript/Services/Localization.js"); -/* harmony import */ var _SessionStorage__WEBPACK_IMPORTED_MODULE_3__ = __webpack_require__(/*! ./SessionStorage */ "./Resources/Public/JavaScript/Services/SessionStorage.js"); -/* harmony import */ var _ApiService__WEBPACK_IMPORTED_MODULE_4__ = __webpack_require__(/*! ./ApiService */ "./Resources/Public/JavaScript/Services/ApiService.js"); -/* harmony import */ var _Helper__WEBPACK_IMPORTED_MODULE_5__ = __webpack_require__(/*! ./Helper */ "./Resources/Public/JavaScript/Services/Helper.js"); - - - - - - - - -/***/ }), - -/***/ "./Resources/Public/JavaScript/Templates/ImpersonateButton.js": -/*!********************************************************************!*\ - !*** ./Resources/Public/JavaScript/Templates/ImpersonateButton.js ***! - \********************************************************************/ -/***/ ((__unused_webpack_module, __webpack_exports__, __webpack_require__) => { - -"use strict"; -__webpack_require__.r(__webpack_exports__); -/* harmony export */ __webpack_require__.d(__webpack_exports__, { -/* harmony export */ ImpersonateButton: () => (/* binding */ ImpersonateButton) -/* harmony export */ }); -/* harmony import */ var _Helper__WEBPACK_IMPORTED_MODULE_0__ = __webpack_require__(/*! ../Helper */ "./Resources/Public/JavaScript/Helper/index.ts"); -/* harmony import */ var _Helper__WEBPACK_IMPORTED_MODULE_0___default = /*#__PURE__*/__webpack_require__.n(_Helper__WEBPACK_IMPORTED_MODULE_0__); - -const impersonateIcon = ''; -const localizedTooltip = !(0,_Helper__WEBPACK_IMPORTED_MODULE_0__.isNil)(window.Typo3Neos) ? window.NeosCMS.I18n.translate('impersonate.tooltip.impersonateUserButton', 'Login as this user', 'Neos.Neos') : 'Login as this user'; -const ImpersonateButton = (identifier, disabled) => { - const attributesObject = { - 'data-neos-toggle': 'tooltip', - 'title': localizedTooltip, - 'data-user-identifier': identifier, - class: 'neos-button neos-button-primary impersonate-user' - }; - if (!(0,_Helper__WEBPACK_IMPORTED_MODULE_0__.isNil)(disabled) && disabled === true) { - attributesObject.disabled = true; - attributesObject.class += ' neos-disabled'; - } - let attributes = ''; - Object.keys(attributesObject).forEach(key => { - attributes += `${key}="${attributesObject[key]}" `; - }); - return ``; -}; - - -/***/ }), - -/***/ "./Resources/Public/JavaScript/Templates/RestoreButton.js": -/*!****************************************************************!*\ - !*** ./Resources/Public/JavaScript/Templates/RestoreButton.js ***! - \****************************************************************/ -/***/ ((__unused_webpack_module, __webpack_exports__, __webpack_require__) => { - -"use strict"; -__webpack_require__.r(__webpack_exports__); -/* harmony export */ __webpack_require__.d(__webpack_exports__, { -/* harmony export */ RestoreButton: () => (/* binding */ RestoreButton) -/* harmony export */ }); -/* harmony import */ var _Helper__WEBPACK_IMPORTED_MODULE_0__ = __webpack_require__(/*! ../Helper */ "./Resources/Public/JavaScript/Helper/index.ts"); -/* harmony import */ var _Helper__WEBPACK_IMPORTED_MODULE_0___default = /*#__PURE__*/__webpack_require__.n(_Helper__WEBPACK_IMPORTED_MODULE_0__); - -const impersonateIcon = ''; -const RestoreButton = user => { - const attributesObject = { - class: 'neos-button restore-user' - }; - let attributes = ''; - Object.keys(attributesObject).forEach(key => { - attributes += `${key}="${attributesObject[key]}" `; - }); - const restoreLabel = (0,_Helper__WEBPACK_IMPORTED_MODULE_0__.isNil)(window.NeosCMS) ? window.NeosCMS.I18n.translate('impersonate.label.restoreUserButton', 'Back to user "{0}"', 'Neos.Neos', 'Main', user.accountIdentifier) : `Restore user "${user.accountIdentifier}"`; - return ``; -}; - - -/***/ }), - -/***/ "./node_modules/dompurify/dist/purify.js": -/*!***********************************************!*\ - !*** ./node_modules/dompurify/dist/purify.js ***! - \***********************************************/ -/***/ (function(module) { - -/*! @license DOMPurify 2.4.7 | (c) Cure53 and other contributors | Released under the Apache license 2.0 and Mozilla Public License 2.0 | github.com/cure53/DOMPurify/blob/2.4.7/LICENSE */ - -(function (global, factory) { - true ? module.exports = factory() : - 0; -})(this, (function () { 'use strict'; - - function _typeof(obj) { - "@babel/helpers - typeof"; - - return _typeof = "function" == typeof Symbol && "symbol" == typeof Symbol.iterator ? function (obj) { - return typeof obj; - } : function (obj) { - return obj && "function" == typeof Symbol && obj.constructor === Symbol && obj !== Symbol.prototype ? "symbol" : typeof obj; - }, _typeof(obj); - } - - function _setPrototypeOf(o, p) { - _setPrototypeOf = Object.setPrototypeOf || function _setPrototypeOf(o, p) { - o.__proto__ = p; - return o; - }; - - return _setPrototypeOf(o, p); - } - - function _isNativeReflectConstruct() { - if (typeof Reflect === "undefined" || !Reflect.construct) return false; - if (Reflect.construct.sham) return false; - if (typeof Proxy === "function") return true; - - try { - Boolean.prototype.valueOf.call(Reflect.construct(Boolean, [], function () {})); - return true; - } catch (e) { - return false; - } - } - - function _construct(Parent, args, Class) { - if (_isNativeReflectConstruct()) { - _construct = Reflect.construct; - } else { - _construct = function _construct(Parent, args, Class) { - var a = [null]; - a.push.apply(a, args); - var Constructor = Function.bind.apply(Parent, a); - var instance = new Constructor(); - if (Class) _setPrototypeOf(instance, Class.prototype); - return instance; - }; - } - - return _construct.apply(null, arguments); - } - - function _toConsumableArray(arr) { - return _arrayWithoutHoles(arr) || _iterableToArray(arr) || _unsupportedIterableToArray(arr) || _nonIterableSpread(); - } - - function _arrayWithoutHoles(arr) { - if (Array.isArray(arr)) return _arrayLikeToArray(arr); - } - - function _iterableToArray(iter) { - if (typeof Symbol !== "undefined" && iter[Symbol.iterator] != null || iter["@@iterator"] != null) return Array.from(iter); - } - - function _unsupportedIterableToArray(o, minLen) { - if (!o) return; - if (typeof o === "string") return _arrayLikeToArray(o, minLen); - var n = Object.prototype.toString.call(o).slice(8, -1); - if (n === "Object" && o.constructor) n = o.constructor.name; - if (n === "Map" || n === "Set") return Array.from(o); - if (n === "Arguments" || /^(?:Ui|I)nt(?:8|16|32)(?:Clamped)?Array$/.test(n)) return _arrayLikeToArray(o, minLen); - } - - function _arrayLikeToArray(arr, len) { - if (len == null || len > arr.length) len = arr.length; - - for (var i = 0, arr2 = new Array(len); i < len; i++) arr2[i] = arr[i]; - - return arr2; - } - - function _nonIterableSpread() { - throw new TypeError("Invalid attempt to spread non-iterable instance.\nIn order to be iterable, non-array objects must have a [Symbol.iterator]() method."); - } - - var hasOwnProperty = Object.hasOwnProperty, - setPrototypeOf = Object.setPrototypeOf, - isFrozen = Object.isFrozen, - getPrototypeOf = Object.getPrototypeOf, - getOwnPropertyDescriptor = Object.getOwnPropertyDescriptor; - var freeze = Object.freeze, - seal = Object.seal, - create = Object.create; // eslint-disable-line import/no-mutable-exports - - var _ref = typeof Reflect !== 'undefined' && Reflect, - apply = _ref.apply, - construct = _ref.construct; - - if (!apply) { - apply = function apply(fun, thisValue, args) { - return fun.apply(thisValue, args); - }; - } - - if (!freeze) { - freeze = function freeze(x) { - return x; - }; - } - - if (!seal) { - seal = function seal(x) { - return x; - }; - } - - if (!construct) { - construct = function construct(Func, args) { - return _construct(Func, _toConsumableArray(args)); - }; - } - - var arrayForEach = unapply(Array.prototype.forEach); - var arrayPop = unapply(Array.prototype.pop); - var arrayPush = unapply(Array.prototype.push); - var stringToLowerCase = unapply(String.prototype.toLowerCase); - var stringToString = unapply(String.prototype.toString); - var stringMatch = unapply(String.prototype.match); - var stringReplace = unapply(String.prototype.replace); - var stringIndexOf = unapply(String.prototype.indexOf); - var stringTrim = unapply(String.prototype.trim); - var regExpTest = unapply(RegExp.prototype.test); - var typeErrorCreate = unconstruct(TypeError); - function unapply(func) { - return function (thisArg) { - for (var _len = arguments.length, args = new Array(_len > 1 ? _len - 1 : 0), _key = 1; _key < _len; _key++) { - args[_key - 1] = arguments[_key]; - } - - return apply(func, thisArg, args); - }; - } - function unconstruct(func) { - return function () { - for (var _len2 = arguments.length, args = new Array(_len2), _key2 = 0; _key2 < _len2; _key2++) { - args[_key2] = arguments[_key2]; - } - - return construct(func, args); - }; - } - /* Add properties to a lookup table */ - - function addToSet(set, array, transformCaseFunc) { - var _transformCaseFunc; - - transformCaseFunc = (_transformCaseFunc = transformCaseFunc) !== null && _transformCaseFunc !== void 0 ? _transformCaseFunc : stringToLowerCase; - - if (setPrototypeOf) { - // Make 'in' and truthy checks like Boolean(set.constructor) - // independent of any properties defined on Object.prototype. - // Prevent prototype setters from intercepting set as a this value. - setPrototypeOf(set, null); - } - - var l = array.length; - - while (l--) { - var element = array[l]; - - if (typeof element === 'string') { - var lcElement = transformCaseFunc(element); - - if (lcElement !== element) { - // Config presets (e.g. tags.js, attrs.js) are immutable. - if (!isFrozen(array)) { - array[l] = lcElement; - } - - element = lcElement; - } - } - - set[element] = true; - } - - return set; - } - /* Shallow clone an object */ - - function clone(object) { - var newObject = create(null); - var property; - - for (property in object) { - if (apply(hasOwnProperty, object, [property]) === true) { - newObject[property] = object[property]; - } - } - - return newObject; - } - /* IE10 doesn't support __lookupGetter__ so lets' - * simulate it. It also automatically checks - * if the prop is function or getter and behaves - * accordingly. */ - - function lookupGetter(object, prop) { - while (object !== null) { - var desc = getOwnPropertyDescriptor(object, prop); - - if (desc) { - if (desc.get) { - return unapply(desc.get); - } - - if (typeof desc.value === 'function') { - return unapply(desc.value); - } - } - - object = getPrototypeOf(object); - } - - function fallbackValue(element) { - console.warn('fallback value for', element); - return null; - } - - return fallbackValue; - } - - var html$1 = freeze(['a', 'abbr', 'acronym', 'address', 'area', 'article', 'aside', 'audio', 'b', 'bdi', 'bdo', 'big', 'blink', 'blockquote', 'body', 'br', 'button', 'canvas', 'caption', 'center', 'cite', 'code', 'col', 'colgroup', 'content', 'data', 'datalist', 'dd', 'decorator', 'del', 'details', 'dfn', 'dialog', 'dir', 'div', 'dl', 'dt', 'element', 'em', 'fieldset', 'figcaption', 'figure', 'font', 'footer', 'form', 'h1', 'h2', 'h3', 'h4', 'h5', 'h6', 'head', 'header', 'hgroup', 'hr', 'html', 'i', 'img', 'input', 'ins', 'kbd', 'label', 'legend', 'li', 'main', 'map', 'mark', 'marquee', 'menu', 'menuitem', 'meter', 'nav', 'nobr', 'ol', 'optgroup', 'option', 'output', 'p', 'picture', 'pre', 'progress', 'q', 'rp', 'rt', 'ruby', 's', 'samp', 'section', 'select', 'shadow', 'small', 'source', 'spacer', 'span', 'strike', 'strong', 'style', 'sub', 'summary', 'sup', 'table', 'tbody', 'td', 'template', 'textarea', 'tfoot', 'th', 'thead', 'time', 'tr', 'track', 'tt', 'u', 'ul', 'var', 'video', 'wbr']); // SVG - - var svg$1 = freeze(['svg', 'a', 'altglyph', 'altglyphdef', 'altglyphitem', 'animatecolor', 'animatemotion', 'animatetransform', 'circle', 'clippath', 'defs', 'desc', 'ellipse', 'filter', 'font', 'g', 'glyph', 'glyphref', 'hkern', 'image', 'line', 'lineargradient', 'marker', 'mask', 'metadata', 'mpath', 'path', 'pattern', 'polygon', 'polyline', 'radialgradient', 'rect', 'stop', 'style', 'switch', 'symbol', 'text', 'textpath', 'title', 'tref', 'tspan', 'view', 'vkern']); - var svgFilters = freeze(['feBlend', 'feColorMatrix', 'feComponentTransfer', 'feComposite', 'feConvolveMatrix', 'feDiffuseLighting', 'feDisplacementMap', 'feDistantLight', 'feFlood', 'feFuncA', 'feFuncB', 'feFuncG', 'feFuncR', 'feGaussianBlur', 'feImage', 'feMerge', 'feMergeNode', 'feMorphology', 'feOffset', 'fePointLight', 'feSpecularLighting', 'feSpotLight', 'feTile', 'feTurbulence']); // List of SVG elements that are disallowed by default. - // We still need to know them so that we can do namespace - // checks properly in case one wants to add them to - // allow-list. - - var svgDisallowed = freeze(['animate', 'color-profile', 'cursor', 'discard', 'fedropshadow', 'font-face', 'font-face-format', 'font-face-name', 'font-face-src', 'font-face-uri', 'foreignobject', 'hatch', 'hatchpath', 'mesh', 'meshgradient', 'meshpatch', 'meshrow', 'missing-glyph', 'script', 'set', 'solidcolor', 'unknown', 'use']); - var mathMl$1 = freeze(['math', 'menclose', 'merror', 'mfenced', 'mfrac', 'mglyph', 'mi', 'mlabeledtr', 'mmultiscripts', 'mn', 'mo', 'mover', 'mpadded', 'mphantom', 'mroot', 'mrow', 'ms', 'mspace', 'msqrt', 'mstyle', 'msub', 'msup', 'msubsup', 'mtable', 'mtd', 'mtext', 'mtr', 'munder', 'munderover']); // Similarly to SVG, we want to know all MathML elements, - // even those that we disallow by default. - - var mathMlDisallowed = freeze(['maction', 'maligngroup', 'malignmark', 'mlongdiv', 'mscarries', 'mscarry', 'msgroup', 'mstack', 'msline', 'msrow', 'semantics', 'annotation', 'annotation-xml', 'mprescripts', 'none']); - var text = freeze(['#text']); - - var html = freeze(['accept', 'action', 'align', 'alt', 'autocapitalize', 'autocomplete', 'autopictureinpicture', 'autoplay', 'background', 'bgcolor', 'border', 'capture', 'cellpadding', 'cellspacing', 'checked', 'cite', 'class', 'clear', 'color', 'cols', 'colspan', 'controls', 'controlslist', 'coords', 'crossorigin', 'datetime', 'decoding', 'default', 'dir', 'disabled', 'disablepictureinpicture', 'disableremoteplayback', 'download', 'draggable', 'enctype', 'enterkeyhint', 'face', 'for', 'headers', 'height', 'hidden', 'high', 'href', 'hreflang', 'id', 'inputmode', 'integrity', 'ismap', 'kind', 'label', 'lang', 'list', 'loading', 'loop', 'low', 'max', 'maxlength', 'media', 'method', 'min', 'minlength', 'multiple', 'muted', 'name', 'nonce', 'noshade', 'novalidate', 'nowrap', 'open', 'optimum', 'pattern', 'placeholder', 'playsinline', 'poster', 'preload', 'pubdate', 'radiogroup', 'readonly', 'rel', 'required', 'rev', 'reversed', 'role', 'rows', 'rowspan', 'spellcheck', 'scope', 'selected', 'shape', 'size', 'sizes', 'span', 'srclang', 'start', 'src', 'srcset', 'step', 'style', 'summary', 'tabindex', 'title', 'translate', 'type', 'usemap', 'valign', 'value', 'width', 'xmlns', 'slot']); - var svg = freeze(['accent-height', 'accumulate', 'additive', 'alignment-baseline', 'ascent', 'attributename', 'attributetype', 'azimuth', 'basefrequency', 'baseline-shift', 'begin', 'bias', 'by', 'class', 'clip', 'clippathunits', 'clip-path', 'clip-rule', 'color', 'color-interpolation', 'color-interpolation-filters', 'color-profile', 'color-rendering', 'cx', 'cy', 'd', 'dx', 'dy', 'diffuseconstant', 'direction', 'display', 'divisor', 'dur', 'edgemode', 'elevation', 'end', 'fill', 'fill-opacity', 'fill-rule', 'filter', 'filterunits', 'flood-color', 'flood-opacity', 'font-family', 'font-size', 'font-size-adjust', 'font-stretch', 'font-style', 'font-variant', 'font-weight', 'fx', 'fy', 'g1', 'g2', 'glyph-name', 'glyphref', 'gradientunits', 'gradienttransform', 'height', 'href', 'id', 'image-rendering', 'in', 'in2', 'k', 'k1', 'k2', 'k3', 'k4', 'kerning', 'keypoints', 'keysplines', 'keytimes', 'lang', 'lengthadjust', 'letter-spacing', 'kernelmatrix', 'kernelunitlength', 'lighting-color', 'local', 'marker-end', 'marker-mid', 'marker-start', 'markerheight', 'markerunits', 'markerwidth', 'maskcontentunits', 'maskunits', 'max', 'mask', 'media', 'method', 'mode', 'min', 'name', 'numoctaves', 'offset', 'operator', 'opacity', 'order', 'orient', 'orientation', 'origin', 'overflow', 'paint-order', 'path', 'pathlength', 'patterncontentunits', 'patterntransform', 'patternunits', 'points', 'preservealpha', 'preserveaspectratio', 'primitiveunits', 'r', 'rx', 'ry', 'radius', 'refx', 'refy', 'repeatcount', 'repeatdur', 'restart', 'result', 'rotate', 'scale', 'seed', 'shape-rendering', 'specularconstant', 'specularexponent', 'spreadmethod', 'startoffset', 'stddeviation', 'stitchtiles', 'stop-color', 'stop-opacity', 'stroke-dasharray', 'stroke-dashoffset', 'stroke-linecap', 'stroke-linejoin', 'stroke-miterlimit', 'stroke-opacity', 'stroke', 'stroke-width', 'style', 'surfacescale', 'systemlanguage', 'tabindex', 'targetx', 'targety', 'transform', 'transform-origin', 'text-anchor', 'text-decoration', 'text-rendering', 'textlength', 'type', 'u1', 'u2', 'unicode', 'values', 'viewbox', 'visibility', 'version', 'vert-adv-y', 'vert-origin-x', 'vert-origin-y', 'width', 'word-spacing', 'wrap', 'writing-mode', 'xchannelselector', 'ychannelselector', 'x', 'x1', 'x2', 'xmlns', 'y', 'y1', 'y2', 'z', 'zoomandpan']); - var mathMl = freeze(['accent', 'accentunder', 'align', 'bevelled', 'close', 'columnsalign', 'columnlines', 'columnspan', 'denomalign', 'depth', 'dir', 'display', 'displaystyle', 'encoding', 'fence', 'frame', 'height', 'href', 'id', 'largeop', 'length', 'linethickness', 'lspace', 'lquote', 'mathbackground', 'mathcolor', 'mathsize', 'mathvariant', 'maxsize', 'minsize', 'movablelimits', 'notation', 'numalign', 'open', 'rowalign', 'rowlines', 'rowspacing', 'rowspan', 'rspace', 'rquote', 'scriptlevel', 'scriptminsize', 'scriptsizemultiplier', 'selection', 'separator', 'separators', 'stretchy', 'subscriptshift', 'supscriptshift', 'symmetric', 'voffset', 'width', 'xmlns']); - var xml = freeze(['xlink:href', 'xml:id', 'xlink:title', 'xml:space', 'xmlns:xlink']); - - var MUSTACHE_EXPR = seal(/\{\{[\w\W]*|[\w\W]*\}\}/gm); // Specify template detection regex for SAFE_FOR_TEMPLATES mode - - var ERB_EXPR = seal(/<%[\w\W]*|[\w\W]*%>/gm); - var TMPLIT_EXPR = seal(/\${[\w\W]*}/gm); - var DATA_ATTR = seal(/^data-[\-\w.\u00B7-\uFFFF]/); // eslint-disable-line no-useless-escape - - var ARIA_ATTR = seal(/^aria-[\-\w]+$/); // eslint-disable-line no-useless-escape - - var IS_ALLOWED_URI = seal(/^(?:(?:(?:f|ht)tps?|mailto|tel|callto|cid|xmpp):|[^a-z]|[a-z+.\-]+(?:[^a-z+.\-:]|$))/i // eslint-disable-line no-useless-escape - ); - var IS_SCRIPT_OR_DATA = seal(/^(?:\w+script|data):/i); - var ATTR_WHITESPACE = seal(/[\u0000-\u0020\u00A0\u1680\u180E\u2000-\u2029\u205F\u3000]/g // eslint-disable-line no-control-regex - ); - var DOCTYPE_NAME = seal(/^html$/i); - - var getGlobal = function getGlobal() { - return typeof window === 'undefined' ? null : window; - }; - /** - * Creates a no-op policy for internal use only. - * Don't export this function outside this module! - * @param {?TrustedTypePolicyFactory} trustedTypes The policy factory. - * @param {Document} document The document object (to determine policy name suffix) - * @return {?TrustedTypePolicy} The policy created (or null, if Trusted Types - * are not supported). - */ - - - var _createTrustedTypesPolicy = function _createTrustedTypesPolicy(trustedTypes, document) { - if (_typeof(trustedTypes) !== 'object' || typeof trustedTypes.createPolicy !== 'function') { - return null; - } // Allow the callers to control the unique policy name - // by adding a data-tt-policy-suffix to the script element with the DOMPurify. - // Policy creation with duplicate names throws in Trusted Types. - - - var suffix = null; - var ATTR_NAME = 'data-tt-policy-suffix'; - - if (document.currentScript && document.currentScript.hasAttribute(ATTR_NAME)) { - suffix = document.currentScript.getAttribute(ATTR_NAME); - } - - var policyName = 'dompurify' + (suffix ? '#' + suffix : ''); - - try { - return trustedTypes.createPolicy(policyName, { - createHTML: function createHTML(html) { - return html; - }, - createScriptURL: function createScriptURL(scriptUrl) { - return scriptUrl; - } - }); - } catch (_) { - // Policy creation failed (most likely another DOMPurify script has - // already run). Skip creating the policy, as this will only cause errors - // if TT are enforced. - console.warn('TrustedTypes policy ' + policyName + ' could not be created.'); - return null; - } - }; - - function createDOMPurify() { - var window = arguments.length > 0 && arguments[0] !== undefined ? arguments[0] : getGlobal(); - - var DOMPurify = function DOMPurify(root) { - return createDOMPurify(root); - }; - /** - * Version label, exposed for easier checks - * if DOMPurify is up to date or not - */ - - - DOMPurify.version = '2.4.7'; - /** - * Array of elements that DOMPurify removed during sanitation. - * Empty if nothing was removed. - */ - - DOMPurify.removed = []; - - if (!window || !window.document || window.document.nodeType !== 9) { - // Not running in a browser, provide a factory function - // so that you can pass your own Window - DOMPurify.isSupported = false; - return DOMPurify; - } - - var originalDocument = window.document; - var document = window.document; - var DocumentFragment = window.DocumentFragment, - HTMLTemplateElement = window.HTMLTemplateElement, - Node = window.Node, - Element = window.Element, - NodeFilter = window.NodeFilter, - _window$NamedNodeMap = window.NamedNodeMap, - NamedNodeMap = _window$NamedNodeMap === void 0 ? window.NamedNodeMap || window.MozNamedAttrMap : _window$NamedNodeMap, - HTMLFormElement = window.HTMLFormElement, - DOMParser = window.DOMParser, - trustedTypes = window.trustedTypes; - var ElementPrototype = Element.prototype; - var cloneNode = lookupGetter(ElementPrototype, 'cloneNode'); - var getNextSibling = lookupGetter(ElementPrototype, 'nextSibling'); - var getChildNodes = lookupGetter(ElementPrototype, 'childNodes'); - var getParentNode = lookupGetter(ElementPrototype, 'parentNode'); // As per issue #47, the web-components registry is inherited by a - // new document created via createHTMLDocument. As per the spec - // (http://w3c.github.io/webcomponents/spec/custom/#creating-and-passing-registries) - // a new empty registry is used when creating a template contents owner - // document, so we use that as our parent document to ensure nothing - // is inherited. - - if (typeof HTMLTemplateElement === 'function') { - var template = document.createElement('template'); - - if (template.content && template.content.ownerDocument) { - document = template.content.ownerDocument; - } - } - - var trustedTypesPolicy = _createTrustedTypesPolicy(trustedTypes, originalDocument); - - var emptyHTML = trustedTypesPolicy ? trustedTypesPolicy.createHTML('') : ''; - var _document = document, - implementation = _document.implementation, - createNodeIterator = _document.createNodeIterator, - createDocumentFragment = _document.createDocumentFragment, - getElementsByTagName = _document.getElementsByTagName; - var importNode = originalDocument.importNode; - var documentMode = {}; - - try { - documentMode = clone(document).documentMode ? document.documentMode : {}; - } catch (_) {} - - var hooks = {}; - /** - * Expose whether this browser supports running the full DOMPurify. - */ - - DOMPurify.isSupported = typeof getParentNode === 'function' && implementation && implementation.createHTMLDocument !== undefined && documentMode !== 9; - var MUSTACHE_EXPR$1 = MUSTACHE_EXPR, - ERB_EXPR$1 = ERB_EXPR, - TMPLIT_EXPR$1 = TMPLIT_EXPR, - DATA_ATTR$1 = DATA_ATTR, - ARIA_ATTR$1 = ARIA_ATTR, - IS_SCRIPT_OR_DATA$1 = IS_SCRIPT_OR_DATA, - ATTR_WHITESPACE$1 = ATTR_WHITESPACE; - var IS_ALLOWED_URI$1 = IS_ALLOWED_URI; - /** - * We consider the elements and attributes below to be safe. Ideally - * don't add any new ones but feel free to remove unwanted ones. - */ - - /* allowed element names */ - - var ALLOWED_TAGS = null; - var DEFAULT_ALLOWED_TAGS = addToSet({}, [].concat(_toConsumableArray(html$1), _toConsumableArray(svg$1), _toConsumableArray(svgFilters), _toConsumableArray(mathMl$1), _toConsumableArray(text))); - /* Allowed attribute names */ - - var ALLOWED_ATTR = null; - var DEFAULT_ALLOWED_ATTR = addToSet({}, [].concat(_toConsumableArray(html), _toConsumableArray(svg), _toConsumableArray(mathMl), _toConsumableArray(xml))); - /* - * Configure how DOMPUrify should handle custom elements and their attributes as well as customized built-in elements. - * @property {RegExp|Function|null} tagNameCheck one of [null, regexPattern, predicate]. Default: `null` (disallow any custom elements) - * @property {RegExp|Function|null} attributeNameCheck one of [null, regexPattern, predicate]. Default: `null` (disallow any attributes not on the allow list) - * @property {boolean} allowCustomizedBuiltInElements allow custom elements derived from built-ins if they pass CUSTOM_ELEMENT_HANDLING.tagNameCheck. Default: `false`. - */ - - var CUSTOM_ELEMENT_HANDLING = Object.seal(Object.create(null, { - tagNameCheck: { - writable: true, - configurable: false, - enumerable: true, - value: null - }, - attributeNameCheck: { - writable: true, - configurable: false, - enumerable: true, - value: null - }, - allowCustomizedBuiltInElements: { - writable: true, - configurable: false, - enumerable: true, - value: false - } - })); - /* Explicitly forbidden tags (overrides ALLOWED_TAGS/ADD_TAGS) */ - - var FORBID_TAGS = null; - /* Explicitly forbidden attributes (overrides ALLOWED_ATTR/ADD_ATTR) */ - - var FORBID_ATTR = null; - /* Decide if ARIA attributes are okay */ - - var ALLOW_ARIA_ATTR = true; - /* Decide if custom data attributes are okay */ - - var ALLOW_DATA_ATTR = true; - /* Decide if unknown protocols are okay */ - - var ALLOW_UNKNOWN_PROTOCOLS = false; - /* Decide if self-closing tags in attributes are allowed. - * Usually removed due to a mXSS issue in jQuery 3.0 */ - - var ALLOW_SELF_CLOSE_IN_ATTR = true; - /* Output should be safe for common template engines. - * This means, DOMPurify removes data attributes, mustaches and ERB - */ - - var SAFE_FOR_TEMPLATES = false; - /* Decide if document with ... should be returned */ - - var WHOLE_DOCUMENT = false; - /* Track whether config is already set on this instance of DOMPurify. */ - - var SET_CONFIG = false; - /* Decide if all elements (e.g. style, script) must be children of - * document.body. By default, browsers might move them to document.head */ - - var FORCE_BODY = false; - /* Decide if a DOM `HTMLBodyElement` should be returned, instead of a html - * string (or a TrustedHTML object if Trusted Types are supported). - * If `WHOLE_DOCUMENT` is enabled a `HTMLHtmlElement` will be returned instead - */ - - var RETURN_DOM = false; - /* Decide if a DOM `DocumentFragment` should be returned, instead of a html - * string (or a TrustedHTML object if Trusted Types are supported) */ - - var RETURN_DOM_FRAGMENT = false; - /* Try to return a Trusted Type object instead of a string, return a string in - * case Trusted Types are not supported */ - - var RETURN_TRUSTED_TYPE = false; - /* Output should be free from DOM clobbering attacks? - * This sanitizes markups named with colliding, clobberable built-in DOM APIs. - */ - - var SANITIZE_DOM = true; - /* Achieve full DOM Clobbering protection by isolating the namespace of named - * properties and JS variables, mitigating attacks that abuse the HTML/DOM spec rules. - * - * HTML/DOM spec rules that enable DOM Clobbering: - * - Named Access on Window (§7.3.3) - * - DOM Tree Accessors (§3.1.5) - * - Form Element Parent-Child Relations (§4.10.3) - * - Iframe srcdoc / Nested WindowProxies (§4.8.5) - * - HTMLCollection (§4.2.10.2) - * - * Namespace isolation is implemented by prefixing `id` and `name` attributes - * with a constant string, i.e., `user-content-` - */ - - var SANITIZE_NAMED_PROPS = false; - var SANITIZE_NAMED_PROPS_PREFIX = 'user-content-'; - /* Keep element content when removing element? */ - - var KEEP_CONTENT = true; - /* If a `Node` is passed to sanitize(), then performs sanitization in-place instead - * of importing it into a new Document and returning a sanitized copy */ - - var IN_PLACE = false; - /* Allow usage of profiles like html, svg and mathMl */ - - var USE_PROFILES = {}; - /* Tags to ignore content of when KEEP_CONTENT is true */ - - var FORBID_CONTENTS = null; - var DEFAULT_FORBID_CONTENTS = addToSet({}, ['annotation-xml', 'audio', 'colgroup', 'desc', 'foreignobject', 'head', 'iframe', 'math', 'mi', 'mn', 'mo', 'ms', 'mtext', 'noembed', 'noframes', 'noscript', 'plaintext', 'script', 'style', 'svg', 'template', 'thead', 'title', 'video', 'xmp']); - /* Tags that are safe for data: URIs */ - - var DATA_URI_TAGS = null; - var DEFAULT_DATA_URI_TAGS = addToSet({}, ['audio', 'video', 'img', 'source', 'image', 'track']); - /* Attributes safe for values like "javascript:" */ - - var URI_SAFE_ATTRIBUTES = null; - var DEFAULT_URI_SAFE_ATTRIBUTES = addToSet({}, ['alt', 'class', 'for', 'id', 'label', 'name', 'pattern', 'placeholder', 'role', 'summary', 'title', 'value', 'style', 'xmlns']); - var MATHML_NAMESPACE = 'http://www.w3.org/1998/Math/MathML'; - var SVG_NAMESPACE = 'http://www.w3.org/2000/svg'; - var HTML_NAMESPACE = 'http://www.w3.org/1999/xhtml'; - /* Document namespace */ - - var NAMESPACE = HTML_NAMESPACE; - var IS_EMPTY_INPUT = false; - /* Allowed XHTML+XML namespaces */ - - var ALLOWED_NAMESPACES = null; - var DEFAULT_ALLOWED_NAMESPACES = addToSet({}, [MATHML_NAMESPACE, SVG_NAMESPACE, HTML_NAMESPACE], stringToString); - /* Parsing of strict XHTML documents */ - - var PARSER_MEDIA_TYPE; - var SUPPORTED_PARSER_MEDIA_TYPES = ['application/xhtml+xml', 'text/html']; - var DEFAULT_PARSER_MEDIA_TYPE = 'text/html'; - var transformCaseFunc; - /* Keep a reference to config to pass to hooks */ - - var CONFIG = null; - /* Ideally, do not touch anything below this line */ - - /* ______________________________________________ */ - - var formElement = document.createElement('form'); - - var isRegexOrFunction = function isRegexOrFunction(testValue) { - return testValue instanceof RegExp || testValue instanceof Function; - }; - /** - * _parseConfig - * - * @param {Object} cfg optional config literal - */ - // eslint-disable-next-line complexity - - - var _parseConfig = function _parseConfig(cfg) { - if (CONFIG && CONFIG === cfg) { - return; - } - /* Shield configuration object from tampering */ - - - if (!cfg || _typeof(cfg) !== 'object') { - cfg = {}; - } - /* Shield configuration object from prototype pollution */ - - - cfg = clone(cfg); - PARSER_MEDIA_TYPE = // eslint-disable-next-line unicorn/prefer-includes - SUPPORTED_PARSER_MEDIA_TYPES.indexOf(cfg.PARSER_MEDIA_TYPE) === -1 ? PARSER_MEDIA_TYPE = DEFAULT_PARSER_MEDIA_TYPE : PARSER_MEDIA_TYPE = cfg.PARSER_MEDIA_TYPE; // HTML tags and attributes are not case-sensitive, converting to lowercase. Keeping XHTML as is. - - transformCaseFunc = PARSER_MEDIA_TYPE === 'application/xhtml+xml' ? stringToString : stringToLowerCase; - /* Set configuration parameters */ - - ALLOWED_TAGS = 'ALLOWED_TAGS' in cfg ? addToSet({}, cfg.ALLOWED_TAGS, transformCaseFunc) : DEFAULT_ALLOWED_TAGS; - ALLOWED_ATTR = 'ALLOWED_ATTR' in cfg ? addToSet({}, cfg.ALLOWED_ATTR, transformCaseFunc) : DEFAULT_ALLOWED_ATTR; - ALLOWED_NAMESPACES = 'ALLOWED_NAMESPACES' in cfg ? addToSet({}, cfg.ALLOWED_NAMESPACES, stringToString) : DEFAULT_ALLOWED_NAMESPACES; - URI_SAFE_ATTRIBUTES = 'ADD_URI_SAFE_ATTR' in cfg ? addToSet(clone(DEFAULT_URI_SAFE_ATTRIBUTES), // eslint-disable-line indent - cfg.ADD_URI_SAFE_ATTR, // eslint-disable-line indent - transformCaseFunc // eslint-disable-line indent - ) // eslint-disable-line indent - : DEFAULT_URI_SAFE_ATTRIBUTES; - DATA_URI_TAGS = 'ADD_DATA_URI_TAGS' in cfg ? addToSet(clone(DEFAULT_DATA_URI_TAGS), // eslint-disable-line indent - cfg.ADD_DATA_URI_TAGS, // eslint-disable-line indent - transformCaseFunc // eslint-disable-line indent - ) // eslint-disable-line indent - : DEFAULT_DATA_URI_TAGS; - FORBID_CONTENTS = 'FORBID_CONTENTS' in cfg ? addToSet({}, cfg.FORBID_CONTENTS, transformCaseFunc) : DEFAULT_FORBID_CONTENTS; - FORBID_TAGS = 'FORBID_TAGS' in cfg ? addToSet({}, cfg.FORBID_TAGS, transformCaseFunc) : {}; - FORBID_ATTR = 'FORBID_ATTR' in cfg ? addToSet({}, cfg.FORBID_ATTR, transformCaseFunc) : {}; - USE_PROFILES = 'USE_PROFILES' in cfg ? cfg.USE_PROFILES : false; - ALLOW_ARIA_ATTR = cfg.ALLOW_ARIA_ATTR !== false; // Default true - - ALLOW_DATA_ATTR = cfg.ALLOW_DATA_ATTR !== false; // Default true - - ALLOW_UNKNOWN_PROTOCOLS = cfg.ALLOW_UNKNOWN_PROTOCOLS || false; // Default false - - ALLOW_SELF_CLOSE_IN_ATTR = cfg.ALLOW_SELF_CLOSE_IN_ATTR !== false; // Default true - - SAFE_FOR_TEMPLATES = cfg.SAFE_FOR_TEMPLATES || false; // Default false - - WHOLE_DOCUMENT = cfg.WHOLE_DOCUMENT || false; // Default false - - RETURN_DOM = cfg.RETURN_DOM || false; // Default false - - RETURN_DOM_FRAGMENT = cfg.RETURN_DOM_FRAGMENT || false; // Default false - - RETURN_TRUSTED_TYPE = cfg.RETURN_TRUSTED_TYPE || false; // Default false - - FORCE_BODY = cfg.FORCE_BODY || false; // Default false - - SANITIZE_DOM = cfg.SANITIZE_DOM !== false; // Default true - - SANITIZE_NAMED_PROPS = cfg.SANITIZE_NAMED_PROPS || false; // Default false - - KEEP_CONTENT = cfg.KEEP_CONTENT !== false; // Default true - - IN_PLACE = cfg.IN_PLACE || false; // Default false - - IS_ALLOWED_URI$1 = cfg.ALLOWED_URI_REGEXP || IS_ALLOWED_URI$1; - NAMESPACE = cfg.NAMESPACE || HTML_NAMESPACE; - CUSTOM_ELEMENT_HANDLING = cfg.CUSTOM_ELEMENT_HANDLING || {}; - - if (cfg.CUSTOM_ELEMENT_HANDLING && isRegexOrFunction(cfg.CUSTOM_ELEMENT_HANDLING.tagNameCheck)) { - CUSTOM_ELEMENT_HANDLING.tagNameCheck = cfg.CUSTOM_ELEMENT_HANDLING.tagNameCheck; - } - - if (cfg.CUSTOM_ELEMENT_HANDLING && isRegexOrFunction(cfg.CUSTOM_ELEMENT_HANDLING.attributeNameCheck)) { - CUSTOM_ELEMENT_HANDLING.attributeNameCheck = cfg.CUSTOM_ELEMENT_HANDLING.attributeNameCheck; - } - - if (cfg.CUSTOM_ELEMENT_HANDLING && typeof cfg.CUSTOM_ELEMENT_HANDLING.allowCustomizedBuiltInElements === 'boolean') { - CUSTOM_ELEMENT_HANDLING.allowCustomizedBuiltInElements = cfg.CUSTOM_ELEMENT_HANDLING.allowCustomizedBuiltInElements; - } - - if (SAFE_FOR_TEMPLATES) { - ALLOW_DATA_ATTR = false; - } - - if (RETURN_DOM_FRAGMENT) { - RETURN_DOM = true; - } - /* Parse profile info */ - - - if (USE_PROFILES) { - ALLOWED_TAGS = addToSet({}, _toConsumableArray(text)); - ALLOWED_ATTR = []; - - if (USE_PROFILES.html === true) { - addToSet(ALLOWED_TAGS, html$1); - addToSet(ALLOWED_ATTR, html); - } - - if (USE_PROFILES.svg === true) { - addToSet(ALLOWED_TAGS, svg$1); - addToSet(ALLOWED_ATTR, svg); - addToSet(ALLOWED_ATTR, xml); - } - - if (USE_PROFILES.svgFilters === true) { - addToSet(ALLOWED_TAGS, svgFilters); - addToSet(ALLOWED_ATTR, svg); - addToSet(ALLOWED_ATTR, xml); - } - - if (USE_PROFILES.mathMl === true) { - addToSet(ALLOWED_TAGS, mathMl$1); - addToSet(ALLOWED_ATTR, mathMl); - addToSet(ALLOWED_ATTR, xml); - } - } - /* Merge configuration parameters */ - - - if (cfg.ADD_TAGS) { - if (ALLOWED_TAGS === DEFAULT_ALLOWED_TAGS) { - ALLOWED_TAGS = clone(ALLOWED_TAGS); - } - - addToSet(ALLOWED_TAGS, cfg.ADD_TAGS, transformCaseFunc); - } - - if (cfg.ADD_ATTR) { - if (ALLOWED_ATTR === DEFAULT_ALLOWED_ATTR) { - ALLOWED_ATTR = clone(ALLOWED_ATTR); - } - - addToSet(ALLOWED_ATTR, cfg.ADD_ATTR, transformCaseFunc); - } - - if (cfg.ADD_URI_SAFE_ATTR) { - addToSet(URI_SAFE_ATTRIBUTES, cfg.ADD_URI_SAFE_ATTR, transformCaseFunc); - } - - if (cfg.FORBID_CONTENTS) { - if (FORBID_CONTENTS === DEFAULT_FORBID_CONTENTS) { - FORBID_CONTENTS = clone(FORBID_CONTENTS); - } - - addToSet(FORBID_CONTENTS, cfg.FORBID_CONTENTS, transformCaseFunc); - } - /* Add #text in case KEEP_CONTENT is set to true */ - - - if (KEEP_CONTENT) { - ALLOWED_TAGS['#text'] = true; - } - /* Add html, head and body to ALLOWED_TAGS in case WHOLE_DOCUMENT is true */ - - - if (WHOLE_DOCUMENT) { - addToSet(ALLOWED_TAGS, ['html', 'head', 'body']); - } - /* Add tbody to ALLOWED_TAGS in case tables are permitted, see #286, #365 */ - - - if (ALLOWED_TAGS.table) { - addToSet(ALLOWED_TAGS, ['tbody']); - delete FORBID_TAGS.tbody; - } // Prevent further manipulation of configuration. - // Not available in IE8, Safari 5, etc. - - - if (freeze) { - freeze(cfg); - } - - CONFIG = cfg; - }; - - var MATHML_TEXT_INTEGRATION_POINTS = addToSet({}, ['mi', 'mo', 'mn', 'ms', 'mtext']); - var HTML_INTEGRATION_POINTS = addToSet({}, ['foreignobject', 'desc', 'title', 'annotation-xml']); // Certain elements are allowed in both SVG and HTML - // namespace. We need to specify them explicitly - // so that they don't get erroneously deleted from - // HTML namespace. - - var COMMON_SVG_AND_HTML_ELEMENTS = addToSet({}, ['title', 'style', 'font', 'a', 'script']); - /* Keep track of all possible SVG and MathML tags - * so that we can perform the namespace checks - * correctly. */ - - var ALL_SVG_TAGS = addToSet({}, svg$1); - addToSet(ALL_SVG_TAGS, svgFilters); - addToSet(ALL_SVG_TAGS, svgDisallowed); - var ALL_MATHML_TAGS = addToSet({}, mathMl$1); - addToSet(ALL_MATHML_TAGS, mathMlDisallowed); - /** - * - * - * @param {Element} element a DOM element whose namespace is being checked - * @returns {boolean} Return false if the element has a - * namespace that a spec-compliant parser would never - * return. Return true otherwise. - */ - - var _checkValidNamespace = function _checkValidNamespace(element) { - var parent = getParentNode(element); // In JSDOM, if we're inside shadow DOM, then parentNode - // can be null. We just simulate parent in this case. - - if (!parent || !parent.tagName) { - parent = { - namespaceURI: NAMESPACE, - tagName: 'template' - }; - } - - var tagName = stringToLowerCase(element.tagName); - var parentTagName = stringToLowerCase(parent.tagName); - - if (!ALLOWED_NAMESPACES[element.namespaceURI]) { - return false; - } - - if (element.namespaceURI === SVG_NAMESPACE) { - // The only way to switch from HTML namespace to SVG - // is via . If it happens via any other tag, then - // it should be killed. - if (parent.namespaceURI === HTML_NAMESPACE) { - return tagName === 'svg'; - } // The only way to switch from MathML to SVG is via` - // svg if parent is either or MathML - // text integration points. - - - if (parent.namespaceURI === MATHML_NAMESPACE) { - return tagName === 'svg' && (parentTagName === 'annotation-xml' || MATHML_TEXT_INTEGRATION_POINTS[parentTagName]); - } // We only allow elements that are defined in SVG - // spec. All others are disallowed in SVG namespace. - - - return Boolean(ALL_SVG_TAGS[tagName]); - } - - if (element.namespaceURI === MATHML_NAMESPACE) { - // The only way to switch from HTML namespace to MathML - // is via . If it happens via any other tag, then - // it should be killed. - if (parent.namespaceURI === HTML_NAMESPACE) { - return tagName === 'math'; - } // The only way to switch from SVG to MathML is via - // and HTML integration points - - - if (parent.namespaceURI === SVG_NAMESPACE) { - return tagName === 'math' && HTML_INTEGRATION_POINTS[parentTagName]; - } // We only allow elements that are defined in MathML - // spec. All others are disallowed in MathML namespace. - - - return Boolean(ALL_MATHML_TAGS[tagName]); - } - - if (element.namespaceURI === HTML_NAMESPACE) { - // The only way to switch from SVG to HTML is via - // HTML integration points, and from MathML to HTML - // is via MathML text integration points - if (parent.namespaceURI === SVG_NAMESPACE && !HTML_INTEGRATION_POINTS[parentTagName]) { - return false; - } - - if (parent.namespaceURI === MATHML_NAMESPACE && !MATHML_TEXT_INTEGRATION_POINTS[parentTagName]) { - return false; - } // We disallow tags that are specific for MathML - // or SVG and should never appear in HTML namespace - - - return !ALL_MATHML_TAGS[tagName] && (COMMON_SVG_AND_HTML_ELEMENTS[tagName] || !ALL_SVG_TAGS[tagName]); - } // For XHTML and XML documents that support custom namespaces - - - if (PARSER_MEDIA_TYPE === 'application/xhtml+xml' && ALLOWED_NAMESPACES[element.namespaceURI]) { - return true; - } // The code should never reach this place (this means - // that the element somehow got namespace that is not - // HTML, SVG, MathML or allowed via ALLOWED_NAMESPACES). - // Return false just in case. - - - return false; - }; - /** - * _forceRemove - * - * @param {Node} node a DOM node - */ - - - var _forceRemove = function _forceRemove(node) { - arrayPush(DOMPurify.removed, { - element: node - }); - - try { - // eslint-disable-next-line unicorn/prefer-dom-node-remove - node.parentNode.removeChild(node); - } catch (_) { - try { - node.outerHTML = emptyHTML; - } catch (_) { - node.remove(); - } - } - }; - /** - * _removeAttribute - * - * @param {String} name an Attribute name - * @param {Node} node a DOM node - */ - - - var _removeAttribute = function _removeAttribute(name, node) { - try { - arrayPush(DOMPurify.removed, { - attribute: node.getAttributeNode(name), - from: node - }); - } catch (_) { - arrayPush(DOMPurify.removed, { - attribute: null, - from: node - }); - } - - node.removeAttribute(name); // We void attribute values for unremovable "is"" attributes - - if (name === 'is' && !ALLOWED_ATTR[name]) { - if (RETURN_DOM || RETURN_DOM_FRAGMENT) { - try { - _forceRemove(node); - } catch (_) {} - } else { - try { - node.setAttribute(name, ''); - } catch (_) {} - } - } - }; - /** - * _initDocument - * - * @param {String} dirty a string of dirty markup - * @return {Document} a DOM, filled with the dirty markup - */ - - - var _initDocument = function _initDocument(dirty) { - /* Create a HTML document */ - var doc; - var leadingWhitespace; - - if (FORCE_BODY) { - dirty = '' + dirty; - } else { - /* If FORCE_BODY isn't used, leading whitespace needs to be preserved manually */ - var matches = stringMatch(dirty, /^[\r\n\t ]+/); - leadingWhitespace = matches && matches[0]; - } - - if (PARSER_MEDIA_TYPE === 'application/xhtml+xml' && NAMESPACE === HTML_NAMESPACE) { - // Root of XHTML doc must contain xmlns declaration (see https://www.w3.org/TR/xhtml1/normative.html#strict) - dirty = '' + dirty + ''; - } - - var dirtyPayload = trustedTypesPolicy ? trustedTypesPolicy.createHTML(dirty) : dirty; - /* - * Use the DOMParser API by default, fallback later if needs be - * DOMParser not work for svg when has multiple root element. - */ - - if (NAMESPACE === HTML_NAMESPACE) { - try { - doc = new DOMParser().parseFromString(dirtyPayload, PARSER_MEDIA_TYPE); - } catch (_) {} - } - /* Use createHTMLDocument in case DOMParser is not available */ - - - if (!doc || !doc.documentElement) { - doc = implementation.createDocument(NAMESPACE, 'template', null); - - try { - doc.documentElement.innerHTML = IS_EMPTY_INPUT ? emptyHTML : dirtyPayload; - } catch (_) {// Syntax error if dirtyPayload is invalid xml - } - } - - var body = doc.body || doc.documentElement; - - if (dirty && leadingWhitespace) { - body.insertBefore(document.createTextNode(leadingWhitespace), body.childNodes[0] || null); - } - /* Work on whole document or just its body */ - - - if (NAMESPACE === HTML_NAMESPACE) { - return getElementsByTagName.call(doc, WHOLE_DOCUMENT ? 'html' : 'body')[0]; - } - - return WHOLE_DOCUMENT ? doc.documentElement : body; - }; - /** - * _createIterator - * - * @param {Document} root document/fragment to create iterator for - * @return {Iterator} iterator instance - */ - - - var _createIterator = function _createIterator(root) { - return createNodeIterator.call(root.ownerDocument || root, root, // eslint-disable-next-line no-bitwise - NodeFilter.SHOW_ELEMENT | NodeFilter.SHOW_COMMENT | NodeFilter.SHOW_TEXT, null, false); - }; - /** - * _isClobbered - * - * @param {Node} elm element to check for clobbering attacks - * @return {Boolean} true if clobbered, false if safe - */ - - - var _isClobbered = function _isClobbered(elm) { - return elm instanceof HTMLFormElement && (typeof elm.nodeName !== 'string' || typeof elm.textContent !== 'string' || typeof elm.removeChild !== 'function' || !(elm.attributes instanceof NamedNodeMap) || typeof elm.removeAttribute !== 'function' || typeof elm.setAttribute !== 'function' || typeof elm.namespaceURI !== 'string' || typeof elm.insertBefore !== 'function' || typeof elm.hasChildNodes !== 'function'); - }; - /** - * _isNode - * - * @param {Node} obj object to check whether it's a DOM node - * @return {Boolean} true is object is a DOM node - */ - - - var _isNode = function _isNode(object) { - return _typeof(Node) === 'object' ? object instanceof Node : object && _typeof(object) === 'object' && typeof object.nodeType === 'number' && typeof object.nodeName === 'string'; - }; - /** - * _executeHook - * Execute user configurable hooks - * - * @param {String} entryPoint Name of the hook's entry point - * @param {Node} currentNode node to work on with the hook - * @param {Object} data additional hook parameters - */ - - - var _executeHook = function _executeHook(entryPoint, currentNode, data) { - if (!hooks[entryPoint]) { - return; - } - - arrayForEach(hooks[entryPoint], function (hook) { - hook.call(DOMPurify, currentNode, data, CONFIG); - }); - }; - /** - * _sanitizeElements - * - * @protect nodeName - * @protect textContent - * @protect removeChild - * - * @param {Node} currentNode to check for permission to exist - * @return {Boolean} true if node was killed, false if left alive - */ - - - var _sanitizeElements = function _sanitizeElements(currentNode) { - var content; - /* Execute a hook if present */ - - _executeHook('beforeSanitizeElements', currentNode, null); - /* Check if element is clobbered or can clobber */ - - - if (_isClobbered(currentNode)) { - _forceRemove(currentNode); - - return true; - } - /* Check if tagname contains Unicode */ - - - if (regExpTest(/[\u0080-\uFFFF]/, currentNode.nodeName)) { - _forceRemove(currentNode); - - return true; - } - /* Now let's check the element's type and name */ - - - var tagName = transformCaseFunc(currentNode.nodeName); - /* Execute a hook if present */ - - _executeHook('uponSanitizeElement', currentNode, { - tagName: tagName, - allowedTags: ALLOWED_TAGS - }); - /* Detect mXSS attempts abusing namespace confusion */ - - - if (currentNode.hasChildNodes() && !_isNode(currentNode.firstElementChild) && (!_isNode(currentNode.content) || !_isNode(currentNode.content.firstElementChild)) && regExpTest(/<[/\w]/g, currentNode.innerHTML) && regExpTest(/<[/\w]/g, currentNode.textContent)) { - _forceRemove(currentNode); - - return true; - } - /* Mitigate a problem with templates inside select */ - - - if (tagName === 'select' && regExpTest(/