view vendor/nikic/php-parser/test/code/parser/expr/includeAndEval.test @ 13:5fb285c0d0e3

Update Drupal core to 8.4.7 via Composer. Security update; I *think* we've been lucky to get away with this so far, as we don't support self-registration which seems to be used by the so-called "drupalgeddon 2" attack that 8.4.5 was vulnerable to.
author Chris Cannam
date Mon, 23 Apr 2018 09:33:26 +0100
parents 4c8ae668cc8c
children
line wrap: on
line source
Include and eval
-----
<?php
include 'A.php';
include_once 'A.php';
require 'A.php';
require_once 'A.php';
eval('A');
-----
array(
    0: Stmt_Expression(
        expr: Expr_Include(
            expr: Scalar_String(
                value: A.php
            )
            type: TYPE_INCLUDE (1)
        )
    )
    1: Stmt_Expression(
        expr: Expr_Include(
            expr: Scalar_String(
                value: A.php
            )
            type: TYPE_INCLUDE_ONCE (2)
        )
    )
    2: Stmt_Expression(
        expr: Expr_Include(
            expr: Scalar_String(
                value: A.php
            )
            type: TYPE_REQUIRE (3)
        )
    )
    3: Stmt_Expression(
        expr: Expr_Include(
            expr: Scalar_String(
                value: A.php
            )
            type: TYPE_REQUIRE_ONCE (4)
        )
    )
    4: Stmt_Expression(
        expr: Expr_Eval(
            expr: Scalar_String(
                value: A
            )
        )
    )
)