Skip to content

Commit 3f8dfee

Browse files
Merge branch 'AC-9851' into cia-2.4.8-beta1-develop-bugfix-05292024
2 parents 19199bf + 998fc93 commit 3f8dfee

File tree

4 files changed

+50
-17
lines changed

4 files changed

+50
-17
lines changed

app/code/Magento/Integration/Block/Adminhtml/Integration/Edit/Tab/Info.php

Lines changed: 13 additions & 9 deletions
Original file line numberDiff line numberDiff line change
@@ -3,6 +3,9 @@
33
* Copyright © Magento, Inc. All rights reserved.
44
* See COPYING.txt for license details.
55
*/
6+
7+
declare(strict_types=1);
8+
69
namespace Magento\Integration\Block\Adminhtml\Integration\Edit\Tab;
710

811
use Magento\Integration\Controller\Adminhtml\Integration;
@@ -19,23 +22,23 @@ class Info extends \Magento\Backend\Block\Widget\Form\Generic implements \Magent
1922
/**#@+
2023
* Form elements names.
2124
*/
22-
const HTML_ID_PREFIX = 'integration_properties_';
25+
public const HTML_ID_PREFIX = 'integration_properties_';
2326

24-
const DATA_ID = 'integration_id';
27+
public const DATA_ID = 'integration_id';
2528

26-
const DATA_NAME = 'name';
29+
public const DATA_NAME = 'name';
2730

28-
const DATA_EMAIL = 'email';
31+
public const DATA_EMAIL = 'email';
2932

30-
const DATA_ENDPOINT = 'endpoint';
33+
public const DATA_ENDPOINT = 'endpoint';
3134

32-
const DATA_IDENTITY_LINK_URL = 'identity_link_url';
35+
public const DATA_IDENTITY_LINK_URL = 'identity_link_url';
3336

34-
const DATA_SETUP_TYPE = 'setup_type';
37+
public const DATA_SETUP_TYPE = 'setup_type';
3538

36-
const DATA_CONSUMER_ID = 'consumer_id';
39+
public const DATA_CONSUMER_ID = 'consumer_id';
3740

38-
const DATA_CONSUMER_PASSWORD = 'current_password';
41+
public const DATA_CONSUMER_PASSWORD = 'current_password';
3942

4043
/**#@-*/
4144

@@ -161,6 +164,7 @@ protected function _addGeneralFieldset($form, $integrationData)
161164
'label' => __('Identity link URL'),
162165
'name' => self::DATA_IDENTITY_LINK_URL,
163166
'disabled' => $disabled,
167+
'class' => 'validate-url',
164168
'note' => __(
165169
'URL to redirect user to link their 3rd party account with this Magento integration credentials.'
166170
)

app/code/Magento/Integration/Controller/Adminhtml/Integration.php

Lines changed: 21 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -3,10 +3,14 @@
33
* Copyright © Magento, Inc. All rights reserved.
44
* See COPYING.txt for license details.
55
*/
6+
7+
declare(strict_types=1);
8+
69
namespace Magento\Integration\Controller\Adminhtml;
710

811
use Magento\Backend\App\Action;
9-
use Magento\Integration\Api\OauthServiceInterface as IntegrationOauthService;
12+
use Magento\Framework\App\ObjectManager;
13+
use Magento\Framework\Url\Validator;
1014

1115
/**
1216
* Controller for integrations management.
@@ -20,18 +24,18 @@ abstract class Integration extends Action
2024
*
2125
* @see _isAllowed()
2226
*/
23-
const ADMIN_RESOURCE = 'Magento_Integration::integrations';
27+
public const ADMIN_RESOURCE = 'Magento_Integration::integrations';
2428

2529
/** Param Key for extracting integration id from Request */
26-
const PARAM_INTEGRATION_ID = 'id';
30+
public const PARAM_INTEGRATION_ID = 'id';
2731

2832
/** Reauthorize flag is used to distinguish activation from reauthorization */
29-
const PARAM_REAUTHORIZE = 'reauthorize';
33+
public const PARAM_REAUTHORIZE = 'reauthorize';
3034

31-
const REGISTRY_KEY_CURRENT_INTEGRATION = 'current_integration';
35+
public const REGISTRY_KEY_CURRENT_INTEGRATION = 'current_integration';
3236

3337
/** Saved API form data session key */
34-
const REGISTRY_KEY_CURRENT_RESOURCE = 'current_resource';
38+
public const REGISTRY_KEY_CURRENT_RESOURCE = 'current_resource';
3539

3640
/**
3741
* @var \Magento\Framework\Registry
@@ -73,6 +77,11 @@ abstract class Integration extends Action
7377
*/
7478
protected $escaper;
7579

80+
/**
81+
* @var Validator
82+
*/
83+
protected $urlValidator;
84+
7685
/**
7786
* @param \Magento\Backend\App\Action\Context $context
7887
* @param \Magento\Framework\Registry $registry
@@ -83,6 +92,9 @@ abstract class Integration extends Action
8392
* @param \Magento\Integration\Helper\Data $integrationData
8493
* @param \Magento\Framework\Escaper $escaper
8594
* @param \Magento\Integration\Model\ResourceModel\Integration\Collection $integrationCollection
95+
* @param Validator|null $urlValidator
96+
*
97+
* @SuppressWarnings(PHPMD.ExcessiveParameterList)
8698
*/
8799
public function __construct(
88100
\Magento\Backend\App\Action\Context $context,
@@ -93,7 +105,8 @@ public function __construct(
93105
\Magento\Framework\Json\Helper\Data $jsonHelper,
94106
\Magento\Integration\Helper\Data $integrationData,
95107
\Magento\Framework\Escaper $escaper,
96-
\Magento\Integration\Model\ResourceModel\Integration\Collection $integrationCollection
108+
\Magento\Integration\Model\ResourceModel\Integration\Collection $integrationCollection,
109+
Validator $urlValidator = null
97110
) {
98111
parent::__construct($context);
99112
$this->_registry = $registry;
@@ -104,6 +117,7 @@ public function __construct(
104117
$this->_integrationData = $integrationData;
105118
$this->escaper = $escaper;
106119
$this->_integrationCollection = $integrationCollection;
120+
$this->urlValidator = $urlValidator ?: ObjectManager::getInstance()->get(Validator::class);
107121
parent::__construct($context);
108122
}
109123

app/code/Magento/Integration/Controller/Adminhtml/Integration/Save.php

Lines changed: 15 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -3,6 +3,9 @@
33
* Copyright © Magento, Inc. All rights reserved.
44
* See COPYING.txt for license details.
55
*/
6+
7+
declare(strict_types=1);
8+
69
namespace Magento\Integration\Controller\Adminhtml\Integration;
710

811
use Magento\Framework\App\Action\HttpPostActionInterface as HttpPostActionInterface;
@@ -30,6 +33,7 @@ class Save extends \Magento\Integration\Controller\Adminhtml\Integration impleme
3033
*
3134
* @return SecurityCookie
3235
* @deprecated 100.1.0
36+
* @see we don't recommend this approach anymore
3337
*/
3438
private function getSecurityCookie()
3539
{
@@ -76,7 +80,7 @@ public function execute()
7680
$this->messageManager->addErrorMessage($this->escaper->escapeHtml($e->getMessage()));
7781
$this->_getSession()->setIntegrationData($this->getRequest()->getPostValue());
7882
$this->_redirectOnSaveError();
79-
} catch (\Magento\Framework\Exception\LocalizedException $e) {
83+
} catch (LocalizedException $e) {
8084
$this->messageManager->addErrorMessage($this->escaper->escapeHtml($e->getMessage()));
8185
$this->_redirectOnSaveError();
8286
} catch (\Exception $e) {
@@ -148,6 +152,8 @@ protected function _redirectOnSaveError()
148152
*
149153
* @param array $integrationData
150154
* @return void
155+
* @throws IntegrationException
156+
* @throws LocalizedException
151157
*/
152158
private function processData($integrationData)
153159
{
@@ -157,7 +163,15 @@ private function processData($integrationData)
157163
if (!isset($data['resource'])) {
158164
$integrationData['resource'] = [];
159165
}
166+
160167
$integrationData = array_merge($integrationData, $data);
168+
169+
// Check if the Identity Link URL field is not empty and then validate it
170+
$url = $integrationData[Info::DATA_IDENTITY_LINK_URL] ?? null;
171+
if (!empty($url) && !$this->urlValidator->isValid($url)) {
172+
throw new LocalizedException(__('Invalid Identity Link URL'));
173+
}
174+
161175
if (!isset($integrationData[Info::DATA_ID])) {
162176
$integration = $this->_integrationService->create($integrationData);
163177
} else {

app/code/Magento/Integration/i18n/en_US.csv

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -125,3 +125,4 @@ OAuth,OAuth
125125
"Integrations API configuration file","Integrations API configuration file"
126126
"We couldn't find any records.","We couldn't find any records."
127127
Status,Status
128+
"Invalid Identity Link URL", "Invalid Identity Link URL"

0 commit comments

Comments
 (0)