ErrorHandler.php 19 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505
  1. <?php
  2. /**
  3. * @link https://www.yiiframework.com/
  4. * @copyright Copyright (c) 2008 Yii Software LLC
  5. * @license https://www.yiiframework.com/license/
  6. */
  7. namespace yii\web;
  8. use Yii;
  9. use yii\base\ErrorException;
  10. use yii\base\Exception;
  11. use yii\base\UserException;
  12. use yii\helpers\VarDumper;
  13. /**
  14. * ErrorHandler handles uncaught PHP errors and exceptions.
  15. *
  16. * ErrorHandler displays these errors using appropriate views based on the
  17. * nature of the errors and the mode the application runs at.
  18. *
  19. * ErrorHandler is configured as an application component in [[\yii\base\Application]] by default.
  20. * You can access that instance via `Yii::$app->errorHandler`.
  21. *
  22. * For more details and usage information on ErrorHandler, see the [guide article on handling errors](guide:runtime-handling-errors).
  23. *
  24. * @author Qiang Xue <qiang.xue@gmail.com>
  25. * @author Timur Ruziev <resurtm@gmail.com>
  26. * @since 2.0
  27. */
  28. class ErrorHandler extends \yii\base\ErrorHandler
  29. {
  30. /**
  31. * @var int maximum number of source code lines to be displayed. Defaults to 19.
  32. */
  33. public $maxSourceLines = 19;
  34. /**
  35. * @var int maximum number of trace source code lines to be displayed. Defaults to 13.
  36. */
  37. public $maxTraceSourceLines = 13;
  38. /**
  39. * @var string|null the route (e.g. `site/error`) to the controller action that will be used
  40. * to display external errors. Inside the action, it can retrieve the error information
  41. * using `Yii::$app->errorHandler->exception`. This property defaults to null, meaning ErrorHandler
  42. * will handle the error display.
  43. */
  44. public $errorAction;
  45. /**
  46. * @var string the path of the view file for rendering exceptions without call stack information.
  47. */
  48. public $errorView = '@yii/views/errorHandler/error.php';
  49. /**
  50. * @var string the path of the view file for rendering exceptions.
  51. */
  52. public $exceptionView = '@yii/views/errorHandler/exception.php';
  53. /**
  54. * @var string the path of the view file for rendering exceptions and errors call stack element.
  55. */
  56. public $callStackItemView = '@yii/views/errorHandler/callStackItem.php';
  57. /**
  58. * @var string the path of the view file for rendering previous exceptions.
  59. */
  60. public $previousExceptionView = '@yii/views/errorHandler/previousException.php';
  61. /**
  62. * @var array list of the PHP predefined variables that should be displayed on the error page.
  63. * Note that a variable must be accessible via `$GLOBALS`. Otherwise it won't be displayed.
  64. * Defaults to `['_GET', '_POST', '_FILES', '_COOKIE', '_SESSION']`.
  65. * @see renderRequest()
  66. * @since 2.0.7
  67. */
  68. public $displayVars = ['_GET', '_POST', '_FILES', '_COOKIE', '_SESSION'];
  69. /**
  70. * @var string trace line with placeholders to be be substituted.
  71. * The placeholders are {file}, {line} and {text} and the string should be as follows.
  72. *
  73. * `File: {file} - Line: {line} - Text: {text}`
  74. *
  75. * @example <a href="ide://open?file={file}&line={line}">{html}</a>
  76. * @see https://github.com/yiisoft/yii2-debug#open-files-in-ide
  77. * @since 2.0.14
  78. */
  79. public $traceLine = '{html}';
  80. /**
  81. * Renders the exception.
  82. * @param \Throwable $exception the exception to be rendered.
  83. */
  84. protected function renderException($exception)
  85. {
  86. if (Yii::$app->has('response')) {
  87. $response = Yii::$app->getResponse();
  88. // reset parameters of response to avoid interference with partially created response data
  89. // in case the error occurred while sending the response.
  90. $response->isSent = false;
  91. $response->stream = null;
  92. $response->data = null;
  93. $response->content = null;
  94. } else {
  95. $response = new Response();
  96. }
  97. $response->setStatusCodeByException($exception);
  98. $useErrorView = $response->format === Response::FORMAT_HTML && (!YII_DEBUG || $exception instanceof UserException);
  99. if ($useErrorView && $this->errorAction !== null) {
  100. Yii::$app->view->clear();
  101. $result = Yii::$app->runAction($this->errorAction);
  102. if ($result instanceof Response) {
  103. $response = $result;
  104. } else {
  105. $response->data = $result;
  106. }
  107. } elseif ($response->format === Response::FORMAT_HTML) {
  108. if ($this->shouldRenderSimpleHtml()) {
  109. // AJAX request
  110. $response->data = '<pre>' . $this->htmlEncode(static::convertExceptionToString($exception)) . '</pre>';
  111. } else {
  112. // if there is an error during error rendering it's useful to
  113. // display PHP error in debug mode instead of a blank screen
  114. if (YII_DEBUG) {
  115. ini_set('display_errors', 1);
  116. }
  117. $file = $useErrorView ? $this->errorView : $this->exceptionView;
  118. $response->data = $this->renderFile($file, [
  119. 'exception' => $exception,
  120. ]);
  121. }
  122. } elseif ($response->format === Response::FORMAT_RAW) {
  123. $response->data = static::convertExceptionToString($exception);
  124. } else {
  125. $response->data = $this->convertExceptionToArray($exception);
  126. }
  127. $response->send();
  128. }
  129. /**
  130. * Converts an exception into an array.
  131. * @param \Throwable $exception the exception being converted
  132. * @return array the array representation of the exception.
  133. */
  134. protected function convertExceptionToArray($exception)
  135. {
  136. if (!YII_DEBUG && !$exception instanceof UserException && !$exception instanceof HttpException) {
  137. $exception = new HttpException(500, Yii::t('yii', 'An internal server error occurred.'));
  138. }
  139. $array = [
  140. 'name' => ($exception instanceof Exception || $exception instanceof ErrorException) ? $exception->getName() : 'Exception',
  141. 'message' => $exception->getMessage(),
  142. 'code' => $exception->getCode(),
  143. ];
  144. if ($exception instanceof HttpException) {
  145. $array['status'] = $exception->statusCode;
  146. }
  147. if (YII_DEBUG) {
  148. $array['type'] = get_class($exception);
  149. if (!$exception instanceof UserException) {
  150. $array['file'] = $exception->getFile();
  151. $array['line'] = $exception->getLine();
  152. $array['stack-trace'] = explode("\n", $exception->getTraceAsString());
  153. if ($exception instanceof \yii\db\Exception) {
  154. $array['error-info'] = $exception->errorInfo;
  155. }
  156. }
  157. }
  158. if (($prev = $exception->getPrevious()) !== null) {
  159. $array['previous'] = $this->convertExceptionToArray($prev);
  160. }
  161. return $array;
  162. }
  163. /**
  164. * Converts special characters to HTML entities.
  165. * @param string $text to encode.
  166. * @return string encoded original text.
  167. */
  168. public function htmlEncode($text)
  169. {
  170. return htmlspecialchars($text, ENT_NOQUOTES | ENT_SUBSTITUTE | ENT_HTML5, 'UTF-8');
  171. }
  172. /**
  173. * Adds informational links to the given PHP type/class.
  174. * @param string $code type/class name to be linkified.
  175. * @return string linkified with HTML type/class name.
  176. */
  177. public function addTypeLinks($code)
  178. {
  179. if (preg_match('/(.*?)::([^(]+)/', $code, $matches)) {
  180. $class = $matches[1];
  181. $method = $matches[2];
  182. $text = $this->htmlEncode($class) . '::' . $this->htmlEncode($method);
  183. } else {
  184. $class = $code;
  185. $method = null;
  186. $text = $this->htmlEncode($class);
  187. }
  188. $url = null;
  189. $shouldGenerateLink = true;
  190. if ($method !== null && substr_compare($method, '{closure}', -9) !== 0) {
  191. $reflection = new \ReflectionClass($class);
  192. if ($reflection->hasMethod($method)) {
  193. $reflectionMethod = $reflection->getMethod($method);
  194. $shouldGenerateLink = $reflectionMethod->isPublic() || $reflectionMethod->isProtected();
  195. } else {
  196. $shouldGenerateLink = false;
  197. }
  198. }
  199. if ($shouldGenerateLink) {
  200. $url = $this->getTypeUrl($class, $method);
  201. }
  202. if ($url === null) {
  203. return $text;
  204. }
  205. return '<a href="' . $url . '" target="_blank">' . $text . '</a>';
  206. }
  207. /**
  208. * Returns the informational link URL for a given PHP type/class.
  209. * @param string $class the type or class name.
  210. * @param string|null $method the method name.
  211. * @return string|null the informational link URL.
  212. * @see addTypeLinks()
  213. */
  214. protected function getTypeUrl($class, $method)
  215. {
  216. if (strncmp($class, 'yii\\', 4) !== 0) {
  217. return null;
  218. }
  219. $page = $this->htmlEncode(strtolower(str_replace('\\', '-', $class)));
  220. $url = "https://www.yiiframework.com/doc-2.0/$page.html";
  221. if ($method) {
  222. $url .= "#$method()-detail";
  223. }
  224. return $url;
  225. }
  226. /**
  227. * Renders a view file as a PHP script.
  228. * @param string $_file_ the view file.
  229. * @param array $_params_ the parameters (name-value pairs) that will be extracted and made available in the view file.
  230. * @return string the rendering result
  231. */
  232. public function renderFile($_file_, $_params_)
  233. {
  234. $_params_['handler'] = $this;
  235. if ($this->exception instanceof ErrorException || !Yii::$app->has('view')) {
  236. ob_start();
  237. ob_implicit_flush(false);
  238. extract($_params_, EXTR_OVERWRITE);
  239. require Yii::getAlias($_file_);
  240. return ob_get_clean();
  241. }
  242. $view = Yii::$app->getView();
  243. $view->clear();
  244. return $view->renderFile($_file_, $_params_, $this);
  245. }
  246. /**
  247. * Renders the previous exception stack for a given Exception.
  248. * @param \Throwable $exception the exception whose precursors should be rendered.
  249. * @return string HTML content of the rendered previous exceptions.
  250. * Empty string if there are none.
  251. */
  252. public function renderPreviousExceptions($exception)
  253. {
  254. if (($previous = $exception->getPrevious()) !== null) {
  255. return $this->renderFile($this->previousExceptionView, ['exception' => $previous]);
  256. }
  257. return '';
  258. }
  259. /**
  260. * Renders a single call stack element.
  261. * @param string|null $file name where call has happened.
  262. * @param int|null $line number on which call has happened.
  263. * @param string|null $class called class name.
  264. * @param string|null $method called function/method name.
  265. * @param array $args array of method arguments.
  266. * @param int $index number of the call stack element.
  267. * @return string HTML content of the rendered call stack element.
  268. */
  269. public function renderCallStackItem($file, $line, $class, $method, $args, $index)
  270. {
  271. $lines = [];
  272. $begin = $end = 0;
  273. if ($file !== null && $line !== null) {
  274. $line--; // adjust line number from one-based to zero-based
  275. $lines = @file($file);
  276. if ($line < 0 || $lines === false || ($lineCount = count($lines)) < $line) {
  277. return '';
  278. }
  279. $half = (int) (($index === 1 ? $this->maxSourceLines : $this->maxTraceSourceLines) / 2);
  280. $begin = $line - $half > 0 ? $line - $half : 0;
  281. $end = $line + $half < $lineCount ? $line + $half : $lineCount - 1;
  282. }
  283. return $this->renderFile($this->callStackItemView, [
  284. 'file' => $file,
  285. 'line' => $line,
  286. 'class' => $class,
  287. 'method' => $method,
  288. 'index' => $index,
  289. 'lines' => $lines,
  290. 'begin' => $begin,
  291. 'end' => $end,
  292. 'args' => $args,
  293. ]);
  294. }
  295. /**
  296. * Renders call stack.
  297. * @param \Throwable $exception exception to get call stack from
  298. * @return string HTML content of the rendered call stack.
  299. * @since 2.0.12
  300. */
  301. public function renderCallStack($exception)
  302. {
  303. $out = '<ul>';
  304. $out .= $this->renderCallStackItem($exception->getFile(), $exception->getLine(), null, null, [], 1);
  305. for ($i = 0, $trace = $exception->getTrace(), $length = count($trace); $i < $length; ++$i) {
  306. $file = !empty($trace[$i]['file']) ? $trace[$i]['file'] : null;
  307. $line = !empty($trace[$i]['line']) ? $trace[$i]['line'] : null;
  308. $class = !empty($trace[$i]['class']) ? $trace[$i]['class'] : null;
  309. $function = null;
  310. if (!empty($trace[$i]['function']) && $trace[$i]['function'] !== 'unknown') {
  311. $function = $trace[$i]['function'];
  312. }
  313. $args = !empty($trace[$i]['args']) ? $trace[$i]['args'] : [];
  314. $out .= $this->renderCallStackItem($file, $line, $class, $function, $args, $i + 2);
  315. }
  316. $out .= '</ul>';
  317. return $out;
  318. }
  319. /**
  320. * Renders the global variables of the request.
  321. * List of global variables is defined in [[displayVars]].
  322. * @return string the rendering result
  323. * @see displayVars
  324. */
  325. public function renderRequest()
  326. {
  327. $request = '';
  328. foreach ($this->displayVars as $name) {
  329. if (!empty($GLOBALS[$name])) {
  330. $request .= '$' . $name . ' = ' . VarDumper::export($GLOBALS[$name]) . ";\n\n";
  331. }
  332. }
  333. return '<pre>' . $this->htmlEncode(rtrim($request, "\n")) . '</pre>';
  334. }
  335. /**
  336. * Determines whether given name of the file belongs to the framework.
  337. * @param string $file name to be checked.
  338. * @return bool whether given name of the file belongs to the framework.
  339. */
  340. public function isCoreFile($file)
  341. {
  342. return $file === null || strpos(realpath($file), YII2_PATH . DIRECTORY_SEPARATOR) === 0;
  343. }
  344. /**
  345. * Creates HTML containing link to the page with the information on given HTTP status code.
  346. * @param int $statusCode to be used to generate information link.
  347. * @param string $statusDescription Description to display after the the status code.
  348. * @return string generated HTML with HTTP status code information.
  349. */
  350. public function createHttpStatusLink($statusCode, $statusDescription)
  351. {
  352. return '<a href="https://en.wikipedia.org/wiki/List_of_HTTP_status_codes#' . (int) $statusCode . '" target="_blank">HTTP ' . (int) $statusCode . ' &ndash; ' . $statusDescription . '</a>';
  353. }
  354. /**
  355. * Creates string containing HTML link which refers to the home page of determined web-server software
  356. * and its full name.
  357. * @return string server software information hyperlink.
  358. */
  359. public function createServerInformationLink()
  360. {
  361. $serverUrls = [
  362. 'https://httpd.apache.org/' => ['apache'],
  363. 'https://nginx.org/' => ['nginx'],
  364. 'https://www.lighttpd.net/' => ['lighttpd'],
  365. 'http://gwan.com/' => ['g-wan', 'gwan'],
  366. 'https://www.iis.net/' => ['iis', 'services'],
  367. 'https://www.php.net/manual/en/features.commandline.webserver.php' => ['development'],
  368. ];
  369. if (isset($_SERVER['SERVER_SOFTWARE'])) {
  370. foreach ($serverUrls as $url => $keywords) {
  371. foreach ($keywords as $keyword) {
  372. if (stripos($_SERVER['SERVER_SOFTWARE'], $keyword) !== false) {
  373. return '<a href="' . $url . '" target="_blank">' . $this->htmlEncode($_SERVER['SERVER_SOFTWARE']) . '</a>';
  374. }
  375. }
  376. }
  377. }
  378. return '';
  379. }
  380. /**
  381. * Creates string containing HTML link which refers to the page with the current version
  382. * of the framework and version number text.
  383. * @return string framework version information hyperlink.
  384. */
  385. public function createFrameworkVersionLink()
  386. {
  387. return '<a href="https://github.com/yiisoft/yii2/" target="_blank">' . $this->htmlEncode(Yii::getVersion()) . '</a>';
  388. }
  389. /**
  390. * Converts arguments array to its string representation.
  391. *
  392. * @param array $args arguments array to be converted
  393. * @return string string representation of the arguments array
  394. */
  395. public function argumentsToString($args)
  396. {
  397. $count = 0;
  398. $isAssoc = $args !== array_values($args);
  399. foreach ($args as $key => $value) {
  400. $count++;
  401. if ($count >= 5) {
  402. if ($count > 5) {
  403. unset($args[$key]);
  404. } else {
  405. $args[$key] = '...';
  406. }
  407. continue;
  408. }
  409. if (is_object($value)) {
  410. $args[$key] = '<span class="title">' . $this->htmlEncode(get_class($value)) . '</span>';
  411. } elseif (is_bool($value)) {
  412. $args[$key] = '<span class="keyword">' . ($value ? 'true' : 'false') . '</span>';
  413. } elseif (is_string($value)) {
  414. $fullValue = $this->htmlEncode($value);
  415. if (mb_strlen($value, 'UTF-8') > 32) {
  416. $displayValue = $this->htmlEncode(mb_substr($value, 0, 32, 'UTF-8')) . '...';
  417. $args[$key] = "<span class=\"string\" title=\"$fullValue\">'$displayValue'</span>";
  418. } else {
  419. $args[$key] = "<span class=\"string\">'$fullValue'</span>";
  420. }
  421. } elseif (is_array($value)) {
  422. $args[$key] = '[' . $this->argumentsToString($value) . ']';
  423. } elseif ($value === null) {
  424. $args[$key] = '<span class="keyword">null</span>';
  425. } elseif (is_resource($value)) {
  426. $args[$key] = '<span class="keyword">resource</span>';
  427. } else {
  428. $args[$key] = '<span class="number">' . $value . '</span>';
  429. }
  430. if (is_string($key)) {
  431. $args[$key] = '<span class="string">\'' . $this->htmlEncode($key) . "'</span> => $args[$key]";
  432. } elseif ($isAssoc) {
  433. $args[$key] = "<span class=\"number\">$key</span> => $args[$key]";
  434. }
  435. }
  436. return implode(', ', $args);
  437. }
  438. /**
  439. * Returns human-readable exception name.
  440. * @param \Throwable $exception
  441. * @return string|null human-readable exception name or null if it cannot be determined
  442. */
  443. public function getExceptionName($exception)
  444. {
  445. if ($exception instanceof \yii\base\Exception || $exception instanceof \yii\base\InvalidCallException || $exception instanceof \yii\base\InvalidParamException || $exception instanceof \yii\base\UnknownMethodException) {
  446. return $exception->getName();
  447. }
  448. return null;
  449. }
  450. /**
  451. * @return bool if simple HTML should be rendered
  452. * @since 2.0.12
  453. */
  454. protected function shouldRenderSimpleHtml()
  455. {
  456. return YII_ENV_TEST || Yii::$app->request->getIsAjax();
  457. }
  458. }