Contact Bank: WordPress Form Builder for Contact Forms - Version 2.0.41

Version Description

Download this release

Release Info

Developer contact-banker
Plugin Icon 128x128 Contact Bank: WordPress Form Builder for Contact Forms
Version 2.0.41
Comparing to
See all releases

Code changes from version 2.0.40 to 2.0.41

contact-bank.php CHANGED
@@ -4,7 +4,7 @@ Plugin Name: Contact Bank Standard Edition
4
  Plugin URI: http://tech-banker.com
5
  Description: Build Complex, Powerful Contact Forms in Just Seconds. No Programming Knowledge Required! Yeah, It's Really That Easy.
6
  Author: Tech Banker
7
- Version: 2.0.40
8
  Author URI: http://tech-banker.com
9
  */
10
  ////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////
4
  Plugin URI: http://tech-banker.com
5
  Description: Build Complex, Powerful Contact Forms in Just Seconds. No Programming Knowledge Required! Yeah, It's Really That Easy.
6
  Author: Tech Banker
7
+ Version: 2.0.41
8
  Author URI: http://tech-banker.com
9
  */
10
  ////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////////
lib/contact_view-class.php CHANGED
@@ -262,11 +262,11 @@ else
262
  $labels_for_email = $val;
263
  if($val == "redirect_url")
264
  {
265
- $sql .= ' WHEN `form_message_key` = "'.mysql_real_escape_string($val).'" THEN "'.mysql_real_escape_string(html_entity_decode($keyInner)).'"';
266
  }
267
  else
268
  {
269
- $sql .= ' WHEN `form_message_key` = "'.mysql_real_escape_string($val).'" THEN "'.mysql_real_escape_string($keyInner).'"';
270
  }
271
  }
272
  }
@@ -435,10 +435,10 @@ else
435
  {
436
  if($event == "add")
437
  {
438
- $sql[] = '('.$dynamic_control_id.',"'.mysql_real_escape_string($key).'", "'.mysql_real_escape_string($value).'")';
439
  }
440
  else {
441
- $sql .= 'WHEN `dynamic_settings_key` = "'.mysql_real_escape_string($key).'" THEN "'.mysql_real_escape_string($value).'"';
442
  }
443
  }
444
  }
@@ -531,10 +531,10 @@ else
531
  {
532
  if($event == "add")
533
  {
534
- $sql[] = '('.$dynamic_control_id.',"'.mysql_real_escape_string($key).'", "'.mysql_real_escape_string($value).'")';
535
  }
536
  else {
537
- $sql .= 'WHEN `dynamic_settings_key` = "'.mysql_real_escape_string($key).'" THEN "'.mysql_real_escape_string($value).'"';
538
  }
539
  }
540
  }
@@ -622,11 +622,11 @@ else
622
  {
623
  if($event == "add")
624
  {
625
- $sql[] = '('.$dynamic_control_id.',"'.mysql_real_escape_string($key).'", "'.mysql_real_escape_string($value).'")';
626
  }
627
  else
628
  {
629
- $sql .= 'WHEN `dynamic_settings_key` = "'.mysql_real_escape_string($key).'" THEN "'.mysql_real_escape_string($value).'"';
630
  }
631
  }
632
  }
@@ -670,8 +670,11 @@ else
670
  $form_settings[$dynamic_Id]["cb_tooltip_txt"] = isset($_REQUEST["ux_tooltip_control_".$dynamic_Id]) ? esc_attr($_REQUEST["ux_tooltip_control_".$dynamic_Id]) : "";
671
  $form_settings[$dynamic_Id]["cb_admin_label"] = isset($_REQUEST["ux_admin_label_".$dynamic_Id]) ? esc_attr($_REQUEST["ux_admin_label_".$dynamic_Id]) : "Untitled";
672
  $form_settings[$dynamic_Id]["cb_show_email"] = isset($_REQUEST["ux_show_email_".$dynamic_Id]) ? "1" : "0";
673
- $form_settings[$dynamic_Id]["cb_dropdown_option_id"] = serialize($ddl_options_id);
674
- $form_settings[$dynamic_Id]["cb_dropdown_option_val"] = serialize($options_value);
 
 
 
675
  foreach($form_settings as $element)
676
  {
677
  $id = $element["dynamic_id"];
@@ -715,10 +718,10 @@ else
715
  {
716
  if($event == "add")
717
  {
718
- $sql[] = '('.$dynamic_control_id.',"'.mysql_real_escape_string($key).'", "'.mysql_real_escape_string($value).'")';
719
  }
720
  else {
721
- $sql .= 'WHEN `dynamic_settings_key` = "'.mysql_real_escape_string($key).'" THEN "'.mysql_real_escape_string($value).'"';
722
  }
723
  }
724
  }
@@ -762,9 +765,10 @@ else
762
  $form_settings[$dynamic_Id]["cb_tooltip_txt"] = isset($_REQUEST["ux_tooltip_control_".$dynamic_Id]) ? esc_attr($_REQUEST["ux_tooltip_control_".$dynamic_Id]) : "";
763
  $form_settings[$dynamic_Id]["cb_admin_label"] = isset($_REQUEST["ux_admin_label_".$dynamic_Id]) ? esc_attr($_REQUEST["ux_admin_label_".$dynamic_Id]) : "Untitled";
764
  $form_settings[$dynamic_Id]["cb_show_email"] = isset($_REQUEST["ux_show_email_".$dynamic_Id]) ? "1" : "0";
765
- $form_settings[$dynamic_Id]["cb_checkbox_option_id"] = serialize($ddl_options_id);
766
- $form_settings[$dynamic_Id]["cb_checkbox_option_val"] = serialize($options_value);
767
-
 
768
  foreach($form_settings as $element)
769
  {
770
  $id = $element["dynamic_id"];
@@ -807,11 +811,11 @@ else
807
  {
808
  if($event == "add")
809
  {
810
- $sql[] = '('.$dynamic_control_id.',"'.mysql_real_escape_string($key).'", "'.mysql_real_escape_string($value).'")';
811
  }
812
  else
813
  {
814
- $sql .= 'WHEN `dynamic_settings_key` = "'.mysql_real_escape_string($key).'" THEN "'.mysql_real_escape_string($value).'"';
815
  }
816
  }
817
  }
@@ -855,8 +859,11 @@ else
855
  $form_settings[$dynamic_Id]["cb_tooltip_txt"] = isset($_REQUEST["ux_tooltip_control_".$dynamic_Id]) ? esc_attr($_REQUEST["ux_tooltip_control_".$dynamic_Id]) : "";
856
  $form_settings[$dynamic_Id]["cb_admin_label"] = isset($_REQUEST["ux_admin_label_".$dynamic_Id]) ? esc_attr($_REQUEST["ux_admin_label_".$dynamic_Id]) : "Untitled";
857
  $form_settings[$dynamic_Id]["cb_show_email"] = isset($_REQUEST["ux_show_email_".$dynamic_Id]) ? "1" : "0";
858
- $form_settings[$dynamic_Id]["cb_radio_option_id"] = serialize($ddl_options_id);
859
- $form_settings[$dynamic_Id]["cb_radio_option_val"] = serialize($options_value);
 
 
 
860
  foreach($form_settings as $element)
861
  {
862
  $id = $element["dynamic_id"];
@@ -899,11 +906,11 @@ else
899
  {
900
  if($event == "add")
901
  {
902
- $sql[] = '('.$dynamic_control_id.',"'.mysql_real_escape_string($key).'", "'.mysql_real_escape_string($value).'")';
903
  }
904
  else
905
  {
906
- $sql .= 'WHEN `dynamic_settings_key` = "'.mysql_real_escape_string($key).'" THEN "'.mysql_real_escape_string($value).'"';
907
  }
908
  }
909
  }
262
  $labels_for_email = $val;
263
  if($val == "redirect_url")
264
  {
265
+ $sql .= ' WHEN `form_message_key` = "'.($val).'" THEN "'.(html_entity_decode($keyInner)).'"';
266
  }
267
  else
268
  {
269
+ $sql .= ' WHEN `form_message_key` = "'.($val).'" THEN "'.($keyInner).'"';
270
  }
271
  }
272
  }
435
  {
436
  if($event == "add")
437
  {
438
+ $sql[] = '('.$dynamic_control_id.',"'.$key.'", "'.$value.'")';
439
  }
440
  else {
441
+ $sql .= 'WHEN `dynamic_settings_key` = "'.$key.'" THEN "'.$value.'"';
442
  }
443
  }
444
  }
531
  {
532
  if($event == "add")
533
  {
534
+ $sql[] = '('.$dynamic_control_id.',"'.$key.'", "'.$value.'")';
535
  }
536
  else {
537
+ $sql .= 'WHEN `dynamic_settings_key` = "'.$key.'" THEN "'.$value.'"';
538
  }
539
  }
540
  }
622
  {
623
  if($event == "add")
624
  {
625
+ $sql[] = '('.$dynamic_control_id.',"'.$key.'", "'.$value.'")';
626
  }
627
  else
628
  {
629
+ $sql .= 'WHEN `dynamic_settings_key` = "'.$key.'" THEN "'.$value.'"';
630
  }
631
  }
632
  }
670
  $form_settings[$dynamic_Id]["cb_tooltip_txt"] = isset($_REQUEST["ux_tooltip_control_".$dynamic_Id]) ? esc_attr($_REQUEST["ux_tooltip_control_".$dynamic_Id]) : "";
671
  $form_settings[$dynamic_Id]["cb_admin_label"] = isset($_REQUEST["ux_admin_label_".$dynamic_Id]) ? esc_attr($_REQUEST["ux_admin_label_".$dynamic_Id]) : "Untitled";
672
  $form_settings[$dynamic_Id]["cb_show_email"] = isset($_REQUEST["ux_show_email_".$dynamic_Id]) ? "1" : "0";
673
+
674
+ $options = serialize($ddl_options_id);
675
+ $options_val = serialize($options_value);
676
+ $form_settings[$dynamic_Id]["cb_dropdown_option_id"] = str_replace('"','\"',"$options");
677
+ $form_settings[$dynamic_Id]["cb_dropdown_option_val"] = str_replace('"','\"',"$options_val");
678
  foreach($form_settings as $element)
679
  {
680
  $id = $element["dynamic_id"];
718
  {
719
  if($event == "add")
720
  {
721
+ $sql[] = '('.$dynamic_control_id.',"'.$key.'", "'.$value.'")';
722
  }
723
  else {
724
+ $sql .= 'WHEN `dynamic_settings_key` = "'.$key.'" THEN "'.$value.'"';
725
  }
726
  }
727
  }
765
  $form_settings[$dynamic_Id]["cb_tooltip_txt"] = isset($_REQUEST["ux_tooltip_control_".$dynamic_Id]) ? esc_attr($_REQUEST["ux_tooltip_control_".$dynamic_Id]) : "";
766
  $form_settings[$dynamic_Id]["cb_admin_label"] = isset($_REQUEST["ux_admin_label_".$dynamic_Id]) ? esc_attr($_REQUEST["ux_admin_label_".$dynamic_Id]) : "Untitled";
767
  $form_settings[$dynamic_Id]["cb_show_email"] = isset($_REQUEST["ux_show_email_".$dynamic_Id]) ? "1" : "0";
768
+ $options = serialize($ddl_options_id);
769
+ $options_val = serialize($options_value);
770
+ $form_settings[$dynamic_Id]["cb_checkbox_option_id"] = str_replace('"','\"',"$options");
771
+ $form_settings[$dynamic_Id]["cb_checkbox_option_val"] = str_replace('"','\"',"$options_val");
772
  foreach($form_settings as $element)
773
  {
774
  $id = $element["dynamic_id"];
811
  {
812
  if($event == "add")
813
  {
814
+ $sql[] = '('.$dynamic_control_id.',"'.$key.'", "'.$value.'")';
815
  }
816
  else
817
  {
818
+ $sql .= 'WHEN `dynamic_settings_key` = "'.$key.'" THEN "'.$value.'"';
819
  }
820
  }
821
  }
859
  $form_settings[$dynamic_Id]["cb_tooltip_txt"] = isset($_REQUEST["ux_tooltip_control_".$dynamic_Id]) ? esc_attr($_REQUEST["ux_tooltip_control_".$dynamic_Id]) : "";
860
  $form_settings[$dynamic_Id]["cb_admin_label"] = isset($_REQUEST["ux_admin_label_".$dynamic_Id]) ? esc_attr($_REQUEST["ux_admin_label_".$dynamic_Id]) : "Untitled";
861
  $form_settings[$dynamic_Id]["cb_show_email"] = isset($_REQUEST["ux_show_email_".$dynamic_Id]) ? "1" : "0";
862
+ $options = serialize($ddl_options_id);
863
+ $options_val = serialize($options_value);
864
+ $form_settings[$dynamic_Id]["cb_radio_option_id"] = str_replace('"','\"',"$options");
865
+ $form_settings[$dynamic_Id]["cb_radio_option_val"] = str_replace('"','\"',"$options_val");
866
+
867
  foreach($form_settings as $element)
868
  {
869
  $id = $element["dynamic_id"];
906
  {
907
  if($event == "add")
908
  {
909
+ $sql[] = '('.$dynamic_control_id.',"'.$key.'", "'.$value.'")';
910
  }
911
  else
912
  {
913
+ $sql .= 'WHEN `dynamic_settings_key` = "'.$key.'" THEN "'.$value.'"';
914
  }
915
  }
916
  }
lib/install-script.php CHANGED
@@ -421,7 +421,7 @@ if($version == "" || $version == "1.0")
421
  $sql = "";
422
  foreach($settings as $key => $value)
423
  {
424
- $sql[] = '('.$contact_forms_for_settings[$flag]->form_id.',"'.mysql_real_escape_string($key).'", "'.mysql_real_escape_string($value).'")';
425
  }
426
  $wpdb->query
427
  (
@@ -457,7 +457,7 @@ if($version == "" || $version == "1.0")
457
  $settings_roles["subscriber_write_control"] = "0";
458
  foreach($settings_roles as $key => $value)
459
  {
460
- $sql1[] = '("'.mysql_real_escape_string($key).'", "'.mysql_real_escape_string($value).'")';
461
  }
462
  $wpdb->query
463
  (
@@ -494,7 +494,7 @@ else if($version == "2.0")
494
  $settings_roles["subscriber_write_control"] = "0";
495
  foreach($settings_roles as $key => $value)
496
  {
497
- $sql1[] = '("'.mysql_real_escape_string($key).'", "'.mysql_real_escape_string($value).'")';
498
  }
499
  $wpdb->query
500
  (
@@ -584,7 +584,7 @@ else if($version == "2.1")
584
  $settings_roles["subscriber_write_control"] = "0";
585
  foreach($settings_roles as $key => $value)
586
  {
587
- $sql1[] = '("'.mysql_real_escape_string($key).'", "'.mysql_real_escape_string($value).'")';
588
  }
589
  $wpdb->query
590
  (
421
  $sql = "";
422
  foreach($settings as $key => $value)
423
  {
424
+ $sql[] = '('.$contact_forms_for_settings[$flag]->form_id.',"'.$key.'", "'.$value.'")';
425
  }
426
  $wpdb->query
427
  (
457
  $settings_roles["subscriber_write_control"] = "0";
458
  foreach($settings_roles as $key => $value)
459
  {
460
+ $sql1[] = '("'.$key.'", "'.$value.'")';
461
  }
462
  $wpdb->query
463
  (
494
  $settings_roles["subscriber_write_control"] = "0";
495
  foreach($settings_roles as $key => $value)
496
  {
497
+ $sql1[] = '("'.$key.'", "'.$value.'")';
498
  }
499
  $wpdb->query
500
  (
584
  $settings_roles["subscriber_write_control"] = "0";
585
  foreach($settings_roles as $key => $value)
586
  {
587
+ $sql1[] = '("'.$key.'", "'.$value.'")';
588
  }
589
  $wpdb->query
590
  (
readme.txt CHANGED
@@ -3,7 +3,7 @@ Contributors: contact-banker, Gallery-Bank
3
  Tags: admin, advanced form, AJAX, best contact form plugin, buddypress, category, comment, comments, contact, contact bank, contact form, contact form 7, contact form builder, contact form plugin, contact forms, contact me, contact us, contacts, content, easy contact form, easy contact plugin, email, Facebook, feed, feedback, feedback form, form, form builder, forms, gallery, google, image, images, javascript, jquery, link, links, login, media, page, pages, plugin, Post, posts, request, rss, seo, shortcode, sidebar, stats, text, web form, widget, wordpress
4
  Requires at least: 3.3
5
  Tested up to: 3.9.1
6
- Stable tag: 2.0.40
7
  License: GPLv2 or later
8
  License URI: http://www.gnu.org/licenses/gpl-2.0.html
9
 
3
  Tags: admin, advanced form, AJAX, best contact form plugin, buddypress, category, comment, comments, contact, contact bank, contact form, contact form 7, contact form builder, contact form plugin, contact forms, contact me, contact us, contacts, content, easy contact form, easy contact plugin, email, Facebook, feed, feedback, feedback form, form, form builder, forms, gallery, google, image, images, javascript, jquery, link, links, login, media, page, pages, plugin, Post, posts, request, rss, seo, shortcode, sidebar, stats, text, web form, widget, wordpress
4
  Requires at least: 3.3
5
  Tested up to: 3.9.1
6
+ Stable tag: 2.0.41
7
  License: GPLv2 or later
8
  License URI: http://www.gnu.org/licenses/gpl-2.0.html
9
 
views/contact_view.php CHANGED
@@ -146,7 +146,7 @@
146
  $settings["error_msg_text_direction"] = "inherit";
147
  foreach($settings as $key => $value)
148
  {
149
- $sql[] = '('.$form_id.',"'.mysql_real_escape_string($key).'", "'.mysql_real_escape_string($value).'")';
150
  }
151
  $wpdb->query
152
  (
146
  $settings["error_msg_text_direction"] = "inherit";
147
  foreach($settings as $key => $value)
148
  {
149
+ $sql[] = '('.$form_id.',"'.$key.'", "'.$value.'")';
150
  }
151
  $wpdb->query
152
  (