]> git.wh0rd.org - tt-rss.git/blob - include/functions.php
iframe sandbox: allow scripts
[tt-rss.git] / include / functions.php
1 <?php
2 define('EXPECTED_CONFIG_VERSION', 26);
3 define('SCHEMA_VERSION', 106);
4
5 $fetch_last_error = false;
6 $pluginhost = false;
7
8 function __autoload($class) {
9 $class_file = str_replace("_", "/", strtolower(basename($class)));
10
11 $file = dirname(__FILE__)."/../classes/$class_file.php";
12
13 if (file_exists($file)) {
14 require $file;
15 }
16
17 }
18
19 mb_internal_encoding("UTF-8");
20 date_default_timezone_set('UTC');
21 if (defined('E_DEPRECATED')) {
22 error_reporting(E_ALL & ~E_NOTICE & ~E_DEPRECATED);
23 } else {
24 error_reporting(E_ALL & ~E_NOTICE);
25 }
26
27 require_once 'config.php';
28
29 if (DB_TYPE == "pgsql") {
30 define('SUBSTRING_FOR_DATE', 'SUBSTRING_FOR_DATE');
31 } else {
32 define('SUBSTRING_FOR_DATE', 'SUBSTRING');
33 }
34
35 define('THEME_VERSION_REQUIRED', 1.1);
36
37 /**
38 * Return available translations names.
39 *
40 * @access public
41 * @return array A array of available translations.
42 */
43 function get_translations() {
44 $tr = array(
45 "auto" => "Detect automatically",
46 "ca_CA" => "Català",
47 "en_US" => "English",
48 "es_ES" => "Español",
49 "de_DE" => "Deutsch",
50 "fr_FR" => "Français",
51 "hu_HU" => "Magyar (Hungarian)",
52 "it_IT" => "Italiano",
53 "ja_JP" => "日本語 (Japanese)",
54 "lv_LV" => "Latviešu",
55 "nb_NO" => "Norwegian bokmål",
56 "pl_PL" => "Polski",
57 "ru_RU" => "Русский",
58 "pt_BR" => "Portuguese/Brazil",
59 "zh_CN" => "Simplified Chinese");
60
61 return $tr;
62 }
63
64 require_once "lib/accept-to-gettext.php";
65 require_once "lib/gettext/gettext.inc";
66
67
68 function startup_gettext() {
69
70 # Get locale from Accept-Language header
71 $lang = al2gt(array_keys(get_translations()), "text/html");
72
73 if (defined('_TRANSLATION_OVERRIDE_DEFAULT')) {
74 $lang = _TRANSLATION_OVERRIDE_DEFAULT;
75 }
76
77 /* In login action of mobile version */
78 if ($_POST["language"] && defined('MOBILE_VERSION')) {
79 $lang = $_POST["language"];
80 } else if ($_SESSION["language"] && $_SESSION["language"] != "auto") {
81 $lang = $_SESSION["language"];
82 }
83
84 if ($lang) {
85 if (defined('LC_MESSAGES')) {
86 _setlocale(LC_MESSAGES, $lang);
87 } else if (defined('LC_ALL')) {
88 _setlocale(LC_ALL, $lang);
89 }
90
91 if (defined('MOBILE_VERSION')) {
92 _bindtextdomain("messages", "../locale");
93 } else {
94 _bindtextdomain("messages", "locale");
95 }
96
97 _textdomain("messages");
98 _bind_textdomain_codeset("messages", "UTF-8");
99 }
100 }
101
102 startup_gettext();
103
104 require_once 'db-prefs.php';
105 require_once 'version.php';
106 require_once 'ccache.php';
107 require_once 'labels.php';
108
109 define('SELF_USER_AGENT', 'Tiny Tiny RSS/' . VERSION . ' (http://tt-rss.org/)');
110 ini_set('user_agent', SELF_USER_AGENT);
111
112 require_once 'lib/pubsubhubbub/publisher.php';
113
114 $tz_offset = -1;
115 $utc_tz = new DateTimeZone('UTC');
116 $schema_version = false;
117
118 /**
119 * Print a timestamped debug message.
120 *
121 * @param string $msg The debug message.
122 * @return void
123 */
124 function _debug($msg) {
125 if (defined('QUIET') && QUIET) {
126 return;
127 }
128 $ts = strftime("%H:%M:%S", time());
129 if (function_exists('posix_getpid')) {
130 $ts = "$ts/" . posix_getpid();
131 }
132 print "[$ts] $msg\n";
133 } // function _debug
134
135 /**
136 * Purge a feed old posts.
137 *
138 * @param mixed $link A database connection.
139 * @param mixed $feed_id The id of the purged feed.
140 * @param mixed $purge_interval Olderness of purged posts.
141 * @param boolean $debug Set to True to enable the debug. False by default.
142 * @access public
143 * @return void
144 */
145 function purge_feed($link, $feed_id, $purge_interval, $debug = false) {
146
147 if (!$purge_interval) $purge_interval = feed_purge_interval($link, $feed_id);
148
149 $rows = -1;
150
151 $result = db_query($link,
152 "SELECT owner_uid FROM ttrss_feeds WHERE id = '$feed_id'");
153
154 $owner_uid = false;
155
156 if (db_num_rows($result) == 1) {
157 $owner_uid = db_fetch_result($result, 0, "owner_uid");
158 }
159
160 if ($purge_interval == -1 || !$purge_interval) {
161 if ($owner_uid) {
162 ccache_update($link, $feed_id, $owner_uid);
163 }
164 return;
165 }
166
167 if (!$owner_uid) return;
168
169 if (FORCE_ARTICLE_PURGE == 0) {
170 $purge_unread = get_pref($link, "PURGE_UNREAD_ARTICLES",
171 $owner_uid, false);
172 } else {
173 $purge_unread = true;
174 $purge_interval = FORCE_ARTICLE_PURGE;
175 }
176
177 if (!$purge_unread) $query_limit = " unread = false AND ";
178
179 if (DB_TYPE == "pgsql") {
180 $pg_version = get_pgsql_version($link);
181
182 if (preg_match("/^7\./", $pg_version) || preg_match("/^8\.0/", $pg_version)) {
183
184 $result = db_query($link, "DELETE FROM ttrss_user_entries WHERE
185 ttrss_entries.id = ref_id AND
186 marked = false AND
187 feed_id = '$feed_id' AND
188 $query_limit
189 ttrss_entries.date_updated < NOW() - INTERVAL '$purge_interval days'");
190
191 } else {
192
193 $result = db_query($link, "DELETE FROM ttrss_user_entries
194 USING ttrss_entries
195 WHERE ttrss_entries.id = ref_id AND
196 marked = false AND
197 feed_id = '$feed_id' AND
198 $query_limit
199 ttrss_entries.date_updated < NOW() - INTERVAL '$purge_interval days'");
200 }
201
202 $rows = pg_affected_rows($result);
203
204 } else {
205
206 /* $result = db_query($link, "DELETE FROM ttrss_user_entries WHERE
207 marked = false AND feed_id = '$feed_id' AND
208 (SELECT date_updated FROM ttrss_entries WHERE
209 id = ref_id) < DATE_SUB(NOW(), INTERVAL $purge_interval DAY)"); */
210
211 $result = db_query($link, "DELETE FROM ttrss_user_entries
212 USING ttrss_user_entries, ttrss_entries
213 WHERE ttrss_entries.id = ref_id AND
214 marked = false AND
215 feed_id = '$feed_id' AND
216 $query_limit
217 ttrss_entries.date_updated < DATE_SUB(NOW(), INTERVAL $purge_interval DAY)");
218
219 $rows = mysql_affected_rows($link);
220
221 }
222
223 ccache_update($link, $feed_id, $owner_uid);
224
225 if ($debug) {
226 _debug("Purged feed $feed_id ($purge_interval): deleted $rows articles");
227 }
228
229 return $rows;
230 } // function purge_feed
231
232 function feed_purge_interval($link, $feed_id) {
233
234 $result = db_query($link, "SELECT purge_interval, owner_uid FROM ttrss_feeds
235 WHERE id = '$feed_id'");
236
237 if (db_num_rows($result) == 1) {
238 $purge_interval = db_fetch_result($result, 0, "purge_interval");
239 $owner_uid = db_fetch_result($result, 0, "owner_uid");
240
241 if ($purge_interval == 0) $purge_interval = get_pref($link,
242 'PURGE_OLD_DAYS', $owner_uid);
243
244 return $purge_interval;
245
246 } else {
247 return -1;
248 }
249 }
250
251 function purge_orphans($link, $do_output = false) {
252
253 // purge orphaned posts in main content table
254 $result = db_query($link, "DELETE FROM ttrss_entries WHERE
255 (SELECT COUNT(int_id) FROM ttrss_user_entries WHERE ref_id = id) = 0");
256
257 if ($do_output) {
258 $rows = db_affected_rows($link, $result);
259 _debug("Purged $rows orphaned posts.");
260 }
261 }
262
263 function get_feed_update_interval($link, $feed_id) {
264 $result = db_query($link, "SELECT owner_uid, update_interval FROM
265 ttrss_feeds WHERE id = '$feed_id'");
266
267 if (db_num_rows($result) == 1) {
268 $update_interval = db_fetch_result($result, 0, "update_interval");
269 $owner_uid = db_fetch_result($result, 0, "owner_uid");
270
271 if ($update_interval != 0) {
272 return $update_interval;
273 } else {
274 return get_pref($link, 'DEFAULT_UPDATE_INTERVAL', $owner_uid, false);
275 }
276
277 } else {
278 return -1;
279 }
280 }
281
282 function fetch_file_contents($url, $type = false, $login = false, $pass = false, $post_query = false, $timeout = false) {
283 $login = urlencode($login);
284 $pass = urlencode($pass);
285
286 global $fetch_last_error;
287
288 if (function_exists('curl_init') && !ini_get("open_basedir")) {
289
290 if (ini_get("safe_mode")) {
291 $ch = curl_init(geturl($url));
292 } else {
293 $ch = curl_init($url);
294 }
295
296 curl_setopt($ch, CURLOPT_CONNECTTIMEOUT, $timeout ? $timeout : 15);
297 curl_setopt($ch, CURLOPT_TIMEOUT, $timeout ? $timeout : 45);
298 curl_setopt($ch, CURLOPT_FOLLOWLOCATION, !ini_get("safe_mode"));
299 curl_setopt($ch, CURLOPT_MAXREDIRS, 20);
300 curl_setopt($ch, CURLOPT_BINARYTRANSFER, true);
301 curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
302 curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false);
303 curl_setopt($ch, CURLOPT_HTTPAUTH, CURLAUTH_ANY);
304 curl_setopt($ch, CURLOPT_USERAGENT, SELF_USER_AGENT);
305 curl_setopt($ch, CURLOPT_ENCODING , "gzip");
306 curl_setopt($ch, CURLOPT_REFERER, $url);
307
308 if ($post_query) {
309 curl_setopt($ch, CURLOPT_POST, true);
310 curl_setopt($ch, CURLOPT_POSTFIELDS, $post_query);
311 }
312
313 if ($login && $pass)
314 curl_setopt($ch, CURLOPT_USERPWD, "$login:$pass");
315
316 $contents = @curl_exec($ch);
317
318 if (curl_errno($ch) === 23 || curl_errno($ch) === 61) {
319 curl_setopt($ch, CURLOPT_ENCODING, 'none');
320 $contents = @curl_exec($ch);
321 }
322
323 if ($contents === false) {
324 $fetch_last_error = curl_errno($ch) . " " . curl_error($ch);
325 curl_close($ch);
326 return false;
327 }
328
329 $http_code = curl_getinfo($ch, CURLINFO_HTTP_CODE);
330 $content_type = curl_getinfo($ch, CURLINFO_CONTENT_TYPE);
331
332 if ($http_code != 200 || $type && strpos($content_type, "$type") === false) {
333 if (curl_errno($ch) != 0) {
334 $fetch_last_error = curl_errno($ch) . " " . curl_error($ch);
335 } else {
336 $fetch_last_error = "HTTP Code: $http_code";
337 }
338 curl_close($ch);
339 return false;
340 }
341
342 curl_close($ch);
343
344 return $contents;
345 } else {
346 if ($login && $pass ){
347 $url_parts = array();
348
349 preg_match("/(^[^:]*):\/\/(.*)/", $url, $url_parts);
350
351 if ($url_parts[1] && $url_parts[2]) {
352 $url = $url_parts[1] . "://$login:$pass@" . $url_parts[2];
353 }
354 }
355
356 $data = @file_get_contents($url);
357
358 $gzdecoded = gzdecode($data);
359 if ($gzdecoded) $data = $gzdecoded;
360
361 if (!$data && function_exists('error_get_last')) {
362 $error = error_get_last();
363 $fetch_last_error = $error["message"];
364 }
365 return $data;
366 }
367
368 }
369
370 /**
371 * Try to determine the favicon URL for a feed.
372 * adapted from wordpress favicon plugin by Jeff Minard (http://thecodepro.com/)
373 * http://dev.wp-plugins.org/file/favatars/trunk/favatars.php
374 *
375 * @param string $url A feed or page URL
376 * @access public
377 * @return mixed The favicon URL, or false if none was found.
378 */
379 function get_favicon_url($url) {
380
381 $favicon_url = false;
382
383 if ($html = @fetch_file_contents($url)) {
384
385 libxml_use_internal_errors(true);
386
387 $doc = new DOMDocument();
388 $doc->loadHTML($html);
389 $xpath = new DOMXPath($doc);
390
391 $base = $xpath->query('/html/head/base');
392 foreach ($base as $b) {
393 $url = $b->getAttribute("href");
394 break;
395 }
396
397 $entries = $xpath->query('/html/head/link[@rel="shortcut icon" or @rel="icon"]');
398 if (count($entries) > 0) {
399 foreach ($entries as $entry) {
400 $favicon_url = rewrite_relative_url($url, $entry->getAttribute("href"));
401 break;
402 }
403 }
404 }
405
406 if (!$favicon_url)
407 $favicon_url = rewrite_relative_url($url, "/favicon.ico");
408
409 return $favicon_url;
410 } // function get_favicon_url
411
412 function check_feed_favicon($site_url, $feed, $link) {
413 # print "FAVICON [$site_url]: $favicon_url\n";
414
415 $icon_file = ICONS_DIR . "/$feed.ico";
416
417 if (!file_exists($icon_file)) {
418 $favicon_url = get_favicon_url($site_url);
419
420 if ($favicon_url) {
421 // Limiting to "image" type misses those served with text/plain
422 $contents = fetch_file_contents($favicon_url); // , "image");
423
424 if ($contents) {
425 // Crude image type matching.
426 // Patterns gleaned from the file(1) source code.
427 if (preg_match('/^\x00\x00\x01\x00/', $contents)) {
428 // 0 string \000\000\001\000 MS Windows icon resource
429 //error_log("check_feed_favicon: favicon_url=$favicon_url isa MS Windows icon resource");
430 }
431 elseif (preg_match('/^GIF8/', $contents)) {
432 // 0 string GIF8 GIF image data
433 //error_log("check_feed_favicon: favicon_url=$favicon_url isa GIF image");
434 }
435 elseif (preg_match('/^\x89PNG\x0d\x0a\x1a\x0a/', $contents)) {
436 // 0 string \x89PNG\x0d\x0a\x1a\x0a PNG image data
437 //error_log("check_feed_favicon: favicon_url=$favicon_url isa PNG image");
438 }
439 elseif (preg_match('/^\xff\xd8/', $contents)) {
440 // 0 beshort 0xffd8 JPEG image data
441 //error_log("check_feed_favicon: favicon_url=$favicon_url isa JPG image");
442 }
443 else {
444 //error_log("check_feed_favicon: favicon_url=$favicon_url isa UNKNOWN type");
445 $contents = "";
446 }
447 }
448
449 if ($contents) {
450 $fp = @fopen($icon_file, "w");
451
452 if ($fp) {
453 fwrite($fp, $contents);
454 fclose($fp);
455 chmod($icon_file, 0644);
456 }
457 }
458 }
459 }
460 }
461
462 function print_select($id, $default, $values, $attributes = "") {
463 print "<select name=\"$id\" id=\"$id\" $attributes>";
464 foreach ($values as $v) {
465 if ($v == $default)
466 $sel = "selected=\"1\"";
467 else
468 $sel = "";
469
470 $v = trim($v);
471
472 print "<option value=\"$v\" $sel>$v</option>";
473 }
474 print "</select>";
475 }
476
477 function print_select_hash($id, $default, $values, $attributes = "") {
478 print "<select name=\"$id\" id='$id' $attributes>";
479 foreach (array_keys($values) as $v) {
480 if ($v == $default)
481 $sel = 'selected="selected"';
482 else
483 $sel = "";
484
485 $v = trim($v);
486
487 print "<option $sel value=\"$v\">".$values[$v]."</option>";
488 }
489
490 print "</select>";
491 }
492
493 function print_radio($id, $default, $true_is, $values, $attributes = "") {
494 foreach ($values as $v) {
495
496 if ($v == $default)
497 $sel = "checked";
498 else
499 $sel = "";
500
501 if ($v == $true_is) {
502 $sel .= " value=\"1\"";
503 } else {
504 $sel .= " value=\"0\"";
505 }
506
507 print "<input class=\"noborder\" dojoType=\"dijit.form.RadioButton\"
508 type=\"radio\" $sel $attributes name=\"$id\">&nbsp;$v&nbsp;";
509
510 }
511 }
512
513 function initialize_user_prefs($link, $uid, $profile = false) {
514
515 $uid = db_escape_string($uid);
516
517 if (!$profile) {
518 $profile = "NULL";
519 $profile_qpart = "AND profile IS NULL";
520 } else {
521 $profile_qpart = "AND profile = '$profile'";
522 }
523
524 if (get_schema_version($link) < 63) $profile_qpart = "";
525
526 db_query($link, "BEGIN");
527
528 $result = db_query($link, "SELECT pref_name,def_value FROM ttrss_prefs");
529
530 $u_result = db_query($link, "SELECT pref_name
531 FROM ttrss_user_prefs WHERE owner_uid = '$uid' $profile_qpart");
532
533 $active_prefs = array();
534
535 while ($line = db_fetch_assoc($u_result)) {
536 array_push($active_prefs, $line["pref_name"]);
537 }
538
539 while ($line = db_fetch_assoc($result)) {
540 if (array_search($line["pref_name"], $active_prefs) === FALSE) {
541 // print "adding " . $line["pref_name"] . "<br>";
542
543 if (get_schema_version($link) < 63) {
544 db_query($link, "INSERT INTO ttrss_user_prefs
545 (owner_uid,pref_name,value) VALUES
546 ('$uid', '".$line["pref_name"]."','".$line["def_value"]."')");
547
548 } else {
549 db_query($link, "INSERT INTO ttrss_user_prefs
550 (owner_uid,pref_name,value, profile) VALUES
551 ('$uid', '".$line["pref_name"]."','".$line["def_value"]."', $profile)");
552 }
553
554 }
555 }
556
557 db_query($link, "COMMIT");
558
559 }
560
561 function get_ssl_certificate_id() {
562 if ($_SERVER["REDIRECT_SSL_CLIENT_M_SERIAL"]) {
563 return sha1($_SERVER["REDIRECT_SSL_CLIENT_M_SERIAL"] .
564 $_SERVER["REDIRECT_SSL_CLIENT_V_START"] .
565 $_SERVER["REDIRECT_SSL_CLIENT_V_END"] .
566 $_SERVER["REDIRECT_SSL_CLIENT_S_DN"]);
567 }
568 return "";
569 }
570
571 function authenticate_user($link, $login, $password, $check_only = false) {
572
573 if (!SINGLE_USER_MODE) {
574
575 $user_id = false;
576
577 global $pluginhost;
578 foreach ($pluginhost->get_hooks($pluginhost::HOOK_AUTH_USER) as $plugin) {
579
580 $user_id = (int) $plugin->authenticate($login, $password);
581
582 if ($user_id) {
583 $_SESSION["auth_module"] = strtolower(get_class($plugin));
584 break;
585 }
586 }
587
588 if ($user_id && !$check_only) {
589 $_SESSION["uid"] = $user_id;
590
591 $result = db_query($link, "SELECT login,access_level,pwd_hash FROM ttrss_users
592 WHERE id = '$user_id'");
593
594 $_SESSION["name"] = db_fetch_result($result, 0, "login");
595 $_SESSION["access_level"] = db_fetch_result($result, 0, "access_level");
596 $_SESSION["csrf_token"] = sha1(uniqid(rand(), true));
597
598 db_query($link, "UPDATE ttrss_users SET last_login = NOW() WHERE id = " .
599 $_SESSION["uid"]);
600
601 $_SESSION["ip_address"] = $_SERVER["REMOTE_ADDR"];
602 $_SESSION["pwd_hash"] = db_fetch_result($result, 0, "pwd_hash");
603
604 $_SESSION["last_version_check"] = time();
605
606 initialize_user_prefs($link, $_SESSION["uid"]);
607
608 return true;
609 }
610
611 return false;
612
613 } else {
614
615 $_SESSION["uid"] = 1;
616 $_SESSION["name"] = "admin";
617 $_SESSION["access_level"] = 10;
618
619 $_SESSION["hide_hello"] = true;
620 $_SESSION["hide_logout"] = true;
621
622 $_SESSION["auth_module"] = false;
623
624 if (!$_SESSION["csrf_token"]) {
625 $_SESSION["csrf_token"] = sha1(uniqid(rand(), true));
626 }
627
628 $_SESSION["ip_address"] = $_SERVER["REMOTE_ADDR"];
629
630 initialize_user_prefs($link, $_SESSION["uid"]);
631
632 return true;
633 }
634 }
635
636 function make_password($length = 8) {
637
638 $password = "";
639 $possible = "0123456789abcdfghjkmnpqrstvwxyzABCDFGHJKMNPQRSTVWXYZ";
640
641 $i = 0;
642
643 while ($i < $length) {
644 $char = substr($possible, mt_rand(0, strlen($possible)-1), 1);
645
646 if (!strstr($password, $char)) {
647 $password .= $char;
648 $i++;
649 }
650 }
651 return $password;
652 }
653
654 // this is called after user is created to initialize default feeds, labels
655 // or whatever else
656
657 // user preferences are checked on every login, not here
658
659 function initialize_user($link, $uid) {
660
661 db_query($link, "insert into ttrss_feeds (owner_uid,title,feed_url)
662 values ('$uid', 'Tiny Tiny RSS: New Releases',
663 'http://tt-rss.org/releases.rss')");
664
665 db_query($link, "insert into ttrss_feeds (owner_uid,title,feed_url)
666 values ('$uid', 'Tiny Tiny RSS: Forum',
667 'http://tt-rss.org/forum/rss.php')");
668 }
669
670 function logout_user() {
671 session_destroy();
672 if (isset($_COOKIE[session_name()])) {
673 setcookie(session_name(), '', time()-42000, '/');
674 }
675 }
676
677 function validate_csrf($csrf_token) {
678 return $csrf_token == $_SESSION['csrf_token'];
679 }
680
681 function validate_session($link) {
682 if (SINGLE_USER_MODE) return true;
683
684 $check_ip = $_SESSION['ip_address'];
685
686 switch (SESSION_CHECK_ADDRESS) {
687 case 0:
688 $check_ip = '';
689 break;
690 case 1:
691 $check_ip = substr($check_ip, 0, strrpos($check_ip, '.')+1);
692 break;
693 case 2:
694 $check_ip = substr($check_ip, 0, strrpos($check_ip, '.'));
695 $check_ip = substr($check_ip, 0, strrpos($check_ip, '.')+1);
696 break;
697 };
698
699 if ($check_ip && strpos($_SERVER['REMOTE_ADDR'], $check_ip) !== 0) {
700 $_SESSION["login_error_msg"] =
701 __("Session failed to validate (incorrect IP)");
702 return false;
703 }
704
705 if ($_SESSION["ref_schema_version"] != get_schema_version($link, true))
706 return false;
707
708 if ($_SESSION["uid"]) {
709
710 $result = db_query($link,
711 "SELECT pwd_hash FROM ttrss_users WHERE id = '".$_SESSION["uid"]."'");
712
713 $pwd_hash = db_fetch_result($result, 0, "pwd_hash");
714
715 if ($pwd_hash != $_SESSION["pwd_hash"]) {
716 return false;
717 }
718 }
719
720 /* if ($_SESSION["cookie_lifetime"] && $_SESSION["uid"]) {
721
722 //print_r($_SESSION);
723
724 if (time() > $_SESSION["cookie_lifetime"]) {
725 return false;
726 }
727 } */
728
729 return true;
730 }
731
732 function load_user_plugins($link, $owner_uid) {
733 if ($owner_uid) {
734 $plugins = get_pref($link, "_ENABLED_PLUGINS", $owner_uid);
735
736 global $pluginhost;
737 $pluginhost->load($plugins, $pluginhost::KIND_USER, $owner_uid);
738
739 if (get_schema_version($link) > 100) {
740 $pluginhost->load_data();
741 }
742 }
743 }
744
745 function login_sequence($link, $login_form = 0) {
746 $_SESSION["prefs_cache"] = false;
747
748 if (SINGLE_USER_MODE) {
749 authenticate_user($link, "admin", null);
750 cache_prefs($link);
751 load_user_plugins($link, $_SESSION["uid"]);
752 } else {
753 if (!$_SESSION["uid"] || !validate_session($link)) {
754
755 if (AUTH_AUTO_LOGIN && authenticate_user($link, null, null)) {
756 $_SESSION["ref_schema_version"] = get_schema_version($link, true);
757 } else {
758 authenticate_user($link, null, null, true);
759 }
760
761 if (!$_SESSION["uid"]) render_login_form($link, $login_form);
762
763 } else {
764 /* bump login timestamp */
765 db_query($link, "UPDATE ttrss_users SET last_login = NOW() WHERE id = " .
766 $_SESSION["uid"]);
767 }
768
769 if ($_SESSION["uid"] && $_SESSION["language"] && SESSION_COOKIE_LIFETIME > 0) {
770 setcookie("ttrss_lang", $_SESSION["language"],
771 time() + SESSION_COOKIE_LIFETIME);
772 }
773
774 if ($_SESSION["uid"]) {
775 cache_prefs($link);
776 load_user_plugins($link, $_SESSION["uid"]);
777 }
778 }
779 }
780
781 function truncate_string($str, $max_len, $suffix = '&hellip;') {
782 if (mb_strlen($str, "utf-8") > $max_len - 3) {
783 return mb_substr($str, 0, $max_len, "utf-8") . $suffix;
784 } else {
785 return $str;
786 }
787 }
788
789 // Deprecated, TODO: remove
790 function theme_image($link, $filename) {
791 return $filename;
792 }
793
794 function convert_timestamp($timestamp, $source_tz, $dest_tz) {
795
796 try {
797 $source_tz = new DateTimeZone($source_tz);
798 } catch (Exception $e) {
799 $source_tz = new DateTimeZone('UTC');
800 }
801
802 try {
803 $dest_tz = new DateTimeZone($dest_tz);
804 } catch (Exception $e) {
805 $dest_tz = new DateTimeZone('UTC');
806 }
807
808 $dt = new DateTime(date('Y-m-d H:i:s', $timestamp), $source_tz);
809 return $dt->format('U') + $dest_tz->getOffset($dt);
810 }
811
812 function make_local_datetime($link, $timestamp, $long, $owner_uid = false,
813 $no_smart_dt = false) {
814
815 if (!$owner_uid) $owner_uid = $_SESSION['uid'];
816 if (!$timestamp) $timestamp = '1970-01-01 0:00';
817
818 global $utc_tz;
819 global $tz_offset;
820
821 # We store date in UTC internally
822 $dt = new DateTime($timestamp, $utc_tz);
823
824 if ($tz_offset == -1) {
825
826 $user_tz_string = get_pref($link, 'USER_TIMEZONE', $owner_uid);
827
828 try {
829 $user_tz = new DateTimeZone($user_tz_string);
830 } catch (Exception $e) {
831 $user_tz = $utc_tz;
832 }
833
834 $tz_offset = $user_tz->getOffset($dt);
835 }
836
837 $user_timestamp = $dt->format('U') + $tz_offset;
838
839 if (!$no_smart_dt) {
840 return smart_date_time($link, $user_timestamp,
841 $tz_offset, $owner_uid);
842 } else {
843 if ($long)
844 $format = get_pref($link, 'LONG_DATE_FORMAT', $owner_uid);
845 else
846 $format = get_pref($link, 'SHORT_DATE_FORMAT', $owner_uid);
847
848 return date($format, $user_timestamp);
849 }
850 }
851
852 function smart_date_time($link, $timestamp, $tz_offset = 0, $owner_uid = false) {
853 if (!$owner_uid) $owner_uid = $_SESSION['uid'];
854
855 if (date("Y.m.d", $timestamp) == date("Y.m.d", time() + $tz_offset)) {
856 return date("G:i", $timestamp);
857 } else if (date("Y", $timestamp) == date("Y", time() + $tz_offset)) {
858 $format = get_pref($link, 'SHORT_DATE_FORMAT', $owner_uid);
859 return date($format, $timestamp);
860 } else {
861 $format = get_pref($link, 'LONG_DATE_FORMAT', $owner_uid);
862 return date($format, $timestamp);
863 }
864 }
865
866 function sql_bool_to_bool($s) {
867 if ($s == "t" || $s == "1" || strtolower($s) == "true") {
868 return true;
869 } else {
870 return false;
871 }
872 }
873
874 function bool_to_sql_bool($s) {
875 if ($s) {
876 return "true";
877 } else {
878 return "false";
879 }
880 }
881
882 // Session caching removed due to causing wrong redirects to upgrade
883 // script when get_schema_version() is called on an obsolete session
884 // created on a previous schema version.
885 function get_schema_version($link, $nocache = false) {
886 global $schema_version;
887
888 if (!$schema_version) {
889 $result = db_query($link, "SELECT schema_version FROM ttrss_version");
890 $version = db_fetch_result($result, 0, "schema_version");
891 $schema_version = $version;
892 return $version;
893 } else {
894 return $schema_version;
895 }
896 }
897
898 function sanity_check($link) {
899 require_once 'errors.php';
900
901 $error_code = 0;
902 $schema_version = get_schema_version($link, true);
903
904 if ($schema_version != SCHEMA_VERSION) {
905 $error_code = 5;
906 }
907
908 if (DB_TYPE == "mysql") {
909 $result = db_query($link, "SELECT true", false);
910 if (db_num_rows($result) != 1) {
911 $error_code = 10;
912 }
913 }
914
915 if (db_escape_string("testTEST") != "testTEST") {
916 $error_code = 12;
917 }
918
919 return array("code" => $error_code, "message" => $ERRORS[$error_code]);
920 }
921
922 function file_is_locked($filename) {
923 if (function_exists('flock')) {
924 $fp = @fopen(LOCK_DIRECTORY . "/$filename", "r");
925 if ($fp) {
926 if (flock($fp, LOCK_EX | LOCK_NB)) {
927 flock($fp, LOCK_UN);
928 fclose($fp);
929 return false;
930 }
931 fclose($fp);
932 return true;
933 } else {
934 return false;
935 }
936 }
937 return true; // consider the file always locked and skip the test
938 }
939
940 function make_lockfile($filename) {
941 $fp = fopen(LOCK_DIRECTORY . "/$filename", "w");
942
943 if ($fp && flock($fp, LOCK_EX | LOCK_NB)) {
944 if (function_exists('posix_getpid')) {
945 fwrite($fp, posix_getpid() . "\n");
946 }
947 return $fp;
948 } else {
949 return false;
950 }
951 }
952
953 function make_stampfile($filename) {
954 $fp = fopen(LOCK_DIRECTORY . "/$filename", "w");
955
956 if (flock($fp, LOCK_EX | LOCK_NB)) {
957 fwrite($fp, time() . "\n");
958 flock($fp, LOCK_UN);
959 fclose($fp);
960 return true;
961 } else {
962 return false;
963 }
964 }
965
966 function sql_random_function() {
967 if (DB_TYPE == "mysql") {
968 return "RAND()";
969 } else {
970 return "RANDOM()";
971 }
972 }
973
974 function catchup_feed($link, $feed, $cat_view, $owner_uid = false, $max_id = false) {
975
976 if (!$owner_uid) $owner_uid = $_SESSION['uid'];
977
978 //if (preg_match("/^-?[0-9][0-9]*$/", $feed) != false) {
979
980 $ref_check_qpart = ($max_id &&
981 !get_pref($link, 'REVERSE_HEADLINES')) ? "ref_id <= '$max_id'" : "true";
982
983 if (is_numeric($feed)) {
984 if ($cat_view) {
985
986 if ($feed >= 0) {
987
988 if ($feed > 0) {
989 $children = getChildCategories($link, $feed, $owner_uid);
990 array_push($children, $feed);
991
992 $children = join(",", $children);
993
994 $cat_qpart = "cat_id IN ($children)";
995 } else {
996 $cat_qpart = "cat_id IS NULL";
997 }
998
999 db_query($link, "UPDATE ttrss_user_entries
1000 SET unread = false,last_read = NOW()
1001 WHERE feed_id IN (SELECT id FROM ttrss_feeds WHERE $cat_qpart)
1002 AND $ref_check_qpart AND unread = true
1003 AND owner_uid = $owner_uid");
1004
1005 } else if ($feed == -2) {
1006
1007 db_query($link, "UPDATE ttrss_user_entries
1008 SET unread = false,last_read = NOW() WHERE (SELECT COUNT(*)
1009 FROM ttrss_user_labels2 WHERE article_id = ref_id) > 0
1010 AND $ref_check_qpart
1011 AND unread = true AND owner_uid = $owner_uid");
1012 }
1013
1014 } else if ($feed > 0) {
1015
1016 db_query($link, "UPDATE ttrss_user_entries
1017 SET unread = false,last_read = NOW()
1018 WHERE feed_id = '$feed'
1019 AND $ref_check_qpart AND unread = true
1020 AND owner_uid = $owner_uid");
1021
1022 } else if ($feed < 0 && $feed > -10) { // special, like starred
1023
1024 if ($feed == -1) {
1025 db_query($link, "UPDATE ttrss_user_entries
1026 SET unread = false,last_read = NOW()
1027 WHERE marked = true
1028 AND $ref_check_qpart AND unread = true
1029 AND owner_uid = $owner_uid");
1030 }
1031
1032 if ($feed == -2) {
1033 db_query($link, "UPDATE ttrss_user_entries
1034 SET unread = false,last_read = NOW()
1035 WHERE published = true
1036 AND $ref_check_qpart AND unread = true
1037 AND owner_uid = $owner_uid");
1038 }
1039
1040 if ($feed == -3) {
1041
1042 $intl = get_pref($link, "FRESH_ARTICLE_MAX_AGE");
1043
1044 if (DB_TYPE == "pgsql") {
1045 $match_part = "updated > NOW() - INTERVAL '$intl hour' ";
1046 } else {
1047 $match_part = "updated > DATE_SUB(NOW(),
1048 INTERVAL $intl HOUR) ";
1049 }
1050
1051 $result = db_query($link, "SELECT id FROM ttrss_entries,
1052 ttrss_user_entries WHERE $match_part AND
1053 unread = true AND
1054 ttrss_user_entries.ref_id = ttrss_entries.id AND
1055 owner_uid = $owner_uid");
1056
1057 $affected_ids = array();
1058
1059 while ($line = db_fetch_assoc($result)) {
1060 array_push($affected_ids, $line["id"]);
1061 }
1062
1063 catchupArticlesById($link, $affected_ids, 0);
1064 }
1065
1066 if ($feed == -4) {
1067 db_query($link, "UPDATE ttrss_user_entries
1068 SET unread = false,last_read = NOW()
1069 WHERE $ref_check_qpart AND unread = true AND
1070 owner_uid = $owner_uid");
1071 }
1072
1073 } else if ($feed < -10) { // label
1074
1075 $label_id = -$feed - 11;
1076
1077 db_query($link, "UPDATE ttrss_user_entries, ttrss_user_labels2
1078 SET unread = false, last_read = NOW()
1079 WHERE label_id = '$label_id' AND unread = true
1080 AND $ref_check_qpart
1081 AND owner_uid = '$owner_uid' AND ref_id = article_id");
1082
1083 }
1084
1085 ccache_update($link, $feed, $owner_uid, $cat_view);
1086
1087 } else { // tag
1088 db_query($link, "BEGIN");
1089
1090 $tag_name = db_escape_string($feed);
1091
1092 $result = db_query($link, "SELECT post_int_id FROM ttrss_tags
1093 WHERE tag_name = '$tag_name' AND owner_uid = $owner_uid");
1094
1095 while ($line = db_fetch_assoc($result)) {
1096 db_query($link, "UPDATE ttrss_user_entries SET
1097 unread = false, last_read = NOW()
1098 WHERE $ref_check_qpart AND unread = true
1099 AND int_id = " . $line["post_int_id"]);
1100 }
1101 db_query($link, "COMMIT");
1102 }
1103 }
1104
1105 function getAllCounters($link) {
1106 $data = getGlobalCounters($link);
1107
1108 $data = array_merge($data, getVirtCounters($link));
1109 $data = array_merge($data, getLabelCounters($link));
1110 $data = array_merge($data, getFeedCounters($link, $active_feed));
1111 $data = array_merge($data, getCategoryCounters($link));
1112
1113 return $data;
1114 }
1115
1116 function getCategoryTitle($link, $cat_id) {
1117
1118 if ($cat_id == -1) {
1119 return __("Special");
1120 } else if ($cat_id == -2) {
1121 return __("Labels");
1122 } else {
1123
1124 $result = db_query($link, "SELECT title FROM ttrss_feed_categories WHERE
1125 id = '$cat_id'");
1126
1127 if (db_num_rows($result) == 1) {
1128 return db_fetch_result($result, 0, "title");
1129 } else {
1130 return __("Uncategorized");
1131 }
1132 }
1133 }
1134
1135
1136 function getCategoryCounters($link) {
1137 $ret_arr = array();
1138
1139 /* Labels category */
1140
1141 $cv = array("id" => -2, "kind" => "cat",
1142 "counter" => getCategoryUnread($link, -2));
1143
1144 array_push($ret_arr, $cv);
1145
1146 $result = db_query($link, "SELECT id AS cat_id, value AS unread,
1147 (SELECT COUNT(id) FROM ttrss_feed_categories AS c2
1148 WHERE c2.parent_cat = ttrss_feed_categories.id) AS num_children
1149 FROM ttrss_feed_categories, ttrss_cat_counters_cache
1150 WHERE ttrss_cat_counters_cache.feed_id = id AND
1151 ttrss_cat_counters_cache.owner_uid = ttrss_feed_categories.owner_uid AND
1152 ttrss_feed_categories.owner_uid = " . $_SESSION["uid"]);
1153
1154 while ($line = db_fetch_assoc($result)) {
1155 $line["cat_id"] = (int) $line["cat_id"];
1156
1157 if ($line["num_children"] > 0) {
1158 $child_counter = getCategoryChildrenUnread($link, $line["cat_id"], $_SESSION["uid"]);
1159 } else {
1160 $child_counter = 0;
1161 }
1162
1163 $cv = array("id" => $line["cat_id"], "kind" => "cat",
1164 "counter" => $line["unread"] + $child_counter);
1165
1166 array_push($ret_arr, $cv);
1167 }
1168
1169 /* Special case: NULL category doesn't actually exist in the DB */
1170
1171 $cv = array("id" => 0, "kind" => "cat",
1172 "counter" => (int) ccache_find($link, 0, $_SESSION["uid"], true));
1173
1174 array_push($ret_arr, $cv);
1175
1176 return $ret_arr;
1177 }
1178
1179 // only accepts real cats (>= 0)
1180 function getCategoryChildrenUnread($link, $cat, $owner_uid = false) {
1181 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1182
1183 $result = db_query($link, "SELECT id FROM ttrss_feed_categories WHERE parent_cat = '$cat'
1184 AND owner_uid = $owner_uid");
1185
1186 $unread = 0;
1187
1188 while ($line = db_fetch_assoc($result)) {
1189 $unread += getCategoryUnread($link, $line["id"], $owner_uid);
1190 $unread += getCategoryChildrenUnread($link, $line["id"], $owner_uid);
1191 }
1192
1193 return $unread;
1194 }
1195
1196 function getCategoryUnread($link, $cat, $owner_uid = false) {
1197
1198 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1199
1200 if ($cat >= 0) {
1201
1202 if ($cat != 0) {
1203 $cat_query = "cat_id = '$cat'";
1204 } else {
1205 $cat_query = "cat_id IS NULL";
1206 }
1207
1208 $result = db_query($link, "SELECT id FROM ttrss_feeds WHERE $cat_query
1209 AND owner_uid = " . $owner_uid);
1210
1211 $cat_feeds = array();
1212 while ($line = db_fetch_assoc($result)) {
1213 array_push($cat_feeds, "feed_id = " . $line["id"]);
1214 }
1215
1216 if (count($cat_feeds) == 0) return 0;
1217
1218 $match_part = implode(" OR ", $cat_feeds);
1219
1220 $result = db_query($link, "SELECT COUNT(int_id) AS unread
1221 FROM ttrss_user_entries
1222 WHERE unread = true AND ($match_part)
1223 AND owner_uid = " . $owner_uid);
1224
1225 $unread = 0;
1226
1227 # this needs to be rewritten
1228 while ($line = db_fetch_assoc($result)) {
1229 $unread += $line["unread"];
1230 }
1231
1232 return $unread;
1233 } else if ($cat == -1) {
1234 return getFeedUnread($link, -1) + getFeedUnread($link, -2) + getFeedUnread($link, -3) + getFeedUnread($link, 0);
1235 } else if ($cat == -2) {
1236
1237 $result = db_query($link, "
1238 SELECT COUNT(unread) AS unread FROM
1239 ttrss_user_entries, ttrss_user_labels2
1240 WHERE article_id = ref_id AND unread = true
1241 AND ttrss_user_entries.owner_uid = '$owner_uid'");
1242
1243 $unread = db_fetch_result($result, 0, "unread");
1244
1245 return $unread;
1246
1247 }
1248 }
1249
1250 function getFeedUnread($link, $feed, $is_cat = false) {
1251 return getFeedArticles($link, $feed, $is_cat, true, $_SESSION["uid"]);
1252 }
1253
1254 function getLabelUnread($link, $label_id, $owner_uid = false) {
1255 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1256
1257 $result = db_query($link, "SELECT COUNT(ref_id) AS unread FROM ttrss_user_entries, ttrss_user_labels2
1258 WHERE owner_uid = '$owner_uid' AND unread = true AND label_id = '$label_id' AND article_id = ref_id");
1259
1260 if (db_num_rows($result) != 0) {
1261 return db_fetch_result($result, 0, "unread");
1262 } else {
1263 return 0;
1264 }
1265 }
1266
1267 function getFeedArticles($link, $feed, $is_cat = false, $unread_only = false,
1268 $owner_uid = false) {
1269
1270 $n_feed = (int) $feed;
1271 $need_entries = false;
1272
1273 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1274
1275 if ($unread_only) {
1276 $unread_qpart = "unread = true";
1277 } else {
1278 $unread_qpart = "true";
1279 }
1280
1281 if ($is_cat) {
1282 return getCategoryUnread($link, $n_feed, $owner_uid);
1283 } else if ($n_feed == -6) {
1284 return 0;
1285 } else if ($feed != "0" && $n_feed == 0) {
1286
1287 $feed = db_escape_string($feed);
1288
1289 $result = db_query($link, "SELECT SUM((SELECT COUNT(int_id)
1290 FROM ttrss_user_entries,ttrss_entries WHERE int_id = post_int_id
1291 AND ref_id = id AND $unread_qpart)) AS count FROM ttrss_tags
1292 WHERE owner_uid = $owner_uid AND tag_name = '$feed'");
1293 return db_fetch_result($result, 0, "count");
1294
1295 } else if ($n_feed == -1) {
1296 $match_part = "marked = true";
1297 } else if ($n_feed == -2) {
1298 $match_part = "published = true";
1299 } else if ($n_feed == -3) {
1300 $match_part = "unread = true AND score >= 0";
1301
1302 $intl = get_pref($link, "FRESH_ARTICLE_MAX_AGE", $owner_uid);
1303
1304 if (DB_TYPE == "pgsql") {
1305 $match_part .= " AND updated > NOW() - INTERVAL '$intl hour' ";
1306 } else {
1307 $match_part .= " AND updated > DATE_SUB(NOW(), INTERVAL $intl HOUR) ";
1308 }
1309
1310 $need_entries = true;
1311
1312 } else if ($n_feed == -4) {
1313 $match_part = "true";
1314 } else if ($n_feed >= 0) {
1315
1316 if ($n_feed != 0) {
1317 $match_part = "feed_id = '$n_feed'";
1318 } else {
1319 $match_part = "feed_id IS NULL";
1320 }
1321
1322 } else if ($feed < -10) {
1323
1324 $label_id = -$feed - 11;
1325
1326 return getLabelUnread($link, $label_id, $owner_uid);
1327
1328 }
1329
1330 if ($match_part) {
1331
1332 if ($need_entries) {
1333 $from_qpart = "ttrss_user_entries,ttrss_entries";
1334 $from_where = "ttrss_entries.id = ttrss_user_entries.ref_id AND";
1335 } else {
1336 $from_qpart = "ttrss_user_entries";
1337 }
1338
1339 $query = "SELECT count(int_id) AS unread
1340 FROM $from_qpart WHERE
1341 $unread_qpart AND $from_where ($match_part) AND ttrss_user_entries.owner_uid = $owner_uid";
1342
1343 //echo "[$feed/$query]\n";
1344
1345 $result = db_query($link, $query);
1346
1347 } else {
1348
1349 $result = db_query($link, "SELECT COUNT(post_int_id) AS unread
1350 FROM ttrss_tags,ttrss_user_entries,ttrss_entries
1351 WHERE tag_name = '$feed' AND post_int_id = int_id AND ref_id = ttrss_entries.id
1352 AND $unread_qpart AND ttrss_tags.owner_uid = " . $owner_uid);
1353 }
1354
1355 $unread = db_fetch_result($result, 0, "unread");
1356
1357 return $unread;
1358 }
1359
1360 function getGlobalUnread($link, $user_id = false) {
1361
1362 if (!$user_id) {
1363 $user_id = $_SESSION["uid"];
1364 }
1365
1366 $result = db_query($link, "SELECT SUM(value) AS c_id FROM ttrss_counters_cache
1367 WHERE owner_uid = '$user_id' AND feed_id > 0");
1368
1369 $c_id = db_fetch_result($result, 0, "c_id");
1370
1371 return $c_id;
1372 }
1373
1374 function getGlobalCounters($link, $global_unread = -1) {
1375 $ret_arr = array();
1376
1377 if ($global_unread == -1) {
1378 $global_unread = getGlobalUnread($link);
1379 }
1380
1381 $cv = array("id" => "global-unread",
1382 "counter" => (int) $global_unread);
1383
1384 array_push($ret_arr, $cv);
1385
1386 $result = db_query($link, "SELECT COUNT(id) AS fn FROM
1387 ttrss_feeds WHERE owner_uid = " . $_SESSION["uid"]);
1388
1389 $subscribed_feeds = db_fetch_result($result, 0, "fn");
1390
1391 $cv = array("id" => "subscribed-feeds",
1392 "counter" => (int) $subscribed_feeds);
1393
1394 array_push($ret_arr, $cv);
1395
1396 return $ret_arr;
1397 }
1398
1399 function getVirtCounters($link) {
1400
1401 $ret_arr = array();
1402
1403 for ($i = 0; $i >= -4; $i--) {
1404
1405 $count = getFeedUnread($link, $i);
1406
1407 $cv = array("id" => $i,
1408 "counter" => (int) $count);
1409
1410 // if (get_pref($link, 'EXTENDED_FEEDLIST'))
1411 // $cv["xmsg"] = getFeedArticles($link, $i)." ".__("total");
1412
1413 array_push($ret_arr, $cv);
1414 }
1415
1416 return $ret_arr;
1417 }
1418
1419 function getLabelCounters($link, $descriptions = false) {
1420
1421 $ret_arr = array();
1422
1423 $owner_uid = $_SESSION["uid"];
1424
1425 $result = db_query($link, "SELECT id,caption,COUNT(unread) AS unread
1426 FROM ttrss_labels2 LEFT JOIN ttrss_user_labels2 ON
1427 (ttrss_labels2.id = label_id)
1428 LEFT JOIN ttrss_user_entries ON (ref_id = article_id AND unread = true)
1429 WHERE ttrss_labels2.owner_uid = $owner_uid GROUP BY ttrss_labels2.id,
1430 ttrss_labels2.caption");
1431
1432 while ($line = db_fetch_assoc($result)) {
1433
1434 $id = -$line["id"] - 11;
1435
1436 $label_name = $line["caption"];
1437 $count = $line["unread"];
1438
1439 $cv = array("id" => $id,
1440 "counter" => (int) $count);
1441
1442 if ($descriptions)
1443 $cv["description"] = $label_name;
1444
1445 // if (get_pref($link, 'EXTENDED_FEEDLIST'))
1446 // $cv["xmsg"] = getFeedArticles($link, $id)." ".__("total");
1447
1448 array_push($ret_arr, $cv);
1449 }
1450
1451 return $ret_arr;
1452 }
1453
1454 function getFeedCounters($link, $active_feed = false) {
1455
1456 $ret_arr = array();
1457
1458 $query = "SELECT ttrss_feeds.id,
1459 ttrss_feeds.title,
1460 ".SUBSTRING_FOR_DATE."(ttrss_feeds.last_updated,1,19) AS last_updated,
1461 last_error, value AS count
1462 FROM ttrss_feeds, ttrss_counters_cache
1463 WHERE ttrss_feeds.owner_uid = ".$_SESSION["uid"]."
1464 AND ttrss_counters_cache.owner_uid = ttrss_feeds.owner_uid
1465 AND ttrss_counters_cache.feed_id = id";
1466
1467 $result = db_query($link, $query);
1468 $fctrs_modified = false;
1469
1470 while ($line = db_fetch_assoc($result)) {
1471
1472 $id = $line["id"];
1473 $count = $line["count"];
1474 $last_error = htmlspecialchars($line["last_error"]);
1475
1476 $last_updated = make_local_datetime($link, $line['last_updated'], false);
1477
1478 $has_img = feed_has_icon($id);
1479
1480 if (date('Y') - date('Y', strtotime($line['last_updated'])) > 2)
1481 $last_updated = '';
1482
1483 $cv = array("id" => $id,
1484 "updated" => $last_updated,
1485 "counter" => (int) $count,
1486 "has_img" => (int) $has_img);
1487
1488 if ($last_error)
1489 $cv["error"] = $last_error;
1490
1491 // if (get_pref($link, 'EXTENDED_FEEDLIST'))
1492 // $cv["xmsg"] = getFeedArticles($link, $id)." ".__("total");
1493
1494 if ($active_feed && $id == $active_feed)
1495 $cv["title"] = truncate_string($line["title"], 30);
1496
1497 array_push($ret_arr, $cv);
1498
1499 }
1500
1501 return $ret_arr;
1502 }
1503
1504 function get_pgsql_version($link) {
1505 $result = db_query($link, "SELECT version() AS version");
1506 $version = explode(" ", db_fetch_result($result, 0, "version"));
1507 return $version[1];
1508 }
1509
1510 /**
1511 * @return array (code => Status code, message => error message if available)
1512 *
1513 * 0 - OK, Feed already exists
1514 * 1 - OK, Feed added
1515 * 2 - Invalid URL
1516 * 3 - URL content is HTML, no feeds available
1517 * 4 - URL content is HTML which contains multiple feeds.
1518 * Here you should call extractfeedurls in rpc-backend
1519 * to get all possible feeds.
1520 * 5 - Couldn't download the URL content.
1521 */
1522 function subscribe_to_feed($link, $url, $cat_id = 0,
1523 $auth_login = '', $auth_pass = '', $need_auth = false) {
1524
1525 global $fetch_last_error;
1526
1527 require_once "include/rssfuncs.php";
1528
1529 $url = fix_url($url);
1530
1531 if (!$url || !validate_feed_url($url)) return array("code" => 2);
1532
1533 $contents = @fetch_file_contents($url, false, $auth_login, $auth_pass);
1534
1535 if (!$contents) {
1536 return array("code" => 5, "message" => $fetch_last_error);
1537 }
1538
1539 if (is_html($contents)) {
1540 $feedUrls = get_feeds_from_html($url, $contents);
1541
1542 if (count($feedUrls) == 0) {
1543 return array("code" => 3);
1544 } else if (count($feedUrls) > 1) {
1545 return array("code" => 4, "feeds" => $feedUrls);
1546 }
1547 //use feed url as new URL
1548 $url = key($feedUrls);
1549 }
1550
1551 if ($cat_id == "0" || !$cat_id) {
1552 $cat_qpart = "NULL";
1553 } else {
1554 $cat_qpart = "'$cat_id'";
1555 }
1556
1557 $result = db_query($link,
1558 "SELECT id FROM ttrss_feeds
1559 WHERE feed_url = '$url' AND owner_uid = ".$_SESSION["uid"]);
1560
1561 if (db_num_rows($result) == 0) {
1562 $result = db_query($link,
1563 "INSERT INTO ttrss_feeds
1564 (owner_uid,feed_url,title,cat_id, auth_login,auth_pass,update_method)
1565 VALUES ('".$_SESSION["uid"]."', '$url',
1566 '[Unknown]', $cat_qpart, '$auth_login', '$auth_pass', 0)");
1567
1568 $result = db_query($link,
1569 "SELECT id FROM ttrss_feeds WHERE feed_url = '$url'
1570 AND owner_uid = " . $_SESSION["uid"]);
1571
1572 $feed_id = db_fetch_result($result, 0, "id");
1573
1574 if ($feed_id) {
1575 update_rss_feed($link, $feed_id, true);
1576 }
1577
1578 return array("code" => 1);
1579 } else {
1580 return array("code" => 0);
1581 }
1582 }
1583
1584 function print_feed_select($link, $id, $default_id = "",
1585 $attributes = "", $include_all_feeds = true,
1586 $root_id = false, $nest_level = 0) {
1587
1588 if (!$root_id) {
1589 print "<select id=\"$id\" name=\"$id\" $attributes>";
1590 if ($include_all_feeds) {
1591 $is_selected = ("0" == $default_id) ? "selected=\"1\"" : "";
1592 print "<option $is_selected value=\"0\">".__('All feeds')."</option>";
1593 }
1594 }
1595
1596 if (get_pref($link, 'ENABLE_FEED_CATS')) {
1597
1598 if ($root_id)
1599 $parent_qpart = "parent_cat = '$root_id'";
1600 else
1601 $parent_qpart = "parent_cat IS NULL";
1602
1603 $result = db_query($link, "SELECT id,title,
1604 (SELECT COUNT(id) FROM ttrss_feed_categories AS c2 WHERE
1605 c2.parent_cat = ttrss_feed_categories.id) AS num_children
1606 FROM ttrss_feed_categories
1607 WHERE owner_uid = ".$_SESSION["uid"]." AND $parent_qpart ORDER BY title");
1608
1609 while ($line = db_fetch_assoc($result)) {
1610
1611 for ($i = 0; $i < $nest_level; $i++)
1612 $line["title"] = " - " . $line["title"];
1613
1614 $is_selected = ("CAT:".$line["id"] == $default_id) ? "selected=\"1\"" : "";
1615
1616 printf("<option $is_selected value='CAT:%d'>%s</option>",
1617 $line["id"], htmlspecialchars($line["title"]));
1618
1619 if ($line["num_children"] > 0)
1620 print_feed_select($link, $id, $default_id, $attributes,
1621 $include_all_feeds, $line["id"], $nest_level+1);
1622
1623 $feed_result = db_query($link, "SELECT id,title FROM ttrss_feeds
1624 WHERE cat_id = '".$line["id"]."' AND owner_uid = ".$_SESSION["uid"] . " ORDER BY title");
1625
1626 while ($fline = db_fetch_assoc($feed_result)) {
1627 $is_selected = ($fline["id"] == $default_id) ? "selected=\"1\"" : "";
1628
1629 $fline["title"] = " + " . $fline["title"];
1630
1631 for ($i = 0; $i < $nest_level; $i++)
1632 $fline["title"] = " - " . $fline["title"];
1633
1634 printf("<option $is_selected value='%d'>%s</option>",
1635 $fline["id"], htmlspecialchars($fline["title"]));
1636 }
1637 }
1638
1639 if (!$root_id) {
1640 $is_selected = ($default_id == "CAT:0") ? "selected=\"1\"" : "";
1641
1642 printf("<option $is_selected value='CAT:0'>%s</option>",
1643 __("Uncategorized"));
1644
1645 $feed_result = db_query($link, "SELECT id,title FROM ttrss_feeds
1646 WHERE cat_id IS NULL AND owner_uid = ".$_SESSION["uid"] . " ORDER BY title");
1647
1648 while ($fline = db_fetch_assoc($feed_result)) {
1649 $is_selected = ($fline["id"] == $default_id && !$default_is_cat) ? "selected=\"1\"" : "";
1650
1651 $fline["title"] = " + " . $fline["title"];
1652
1653 for ($i = 0; $i < $nest_level; $i++)
1654 $fline["title"] = " - " . $fline["title"];
1655
1656 printf("<option $is_selected value='%d'>%s</option>",
1657 $fline["id"], htmlspecialchars($fline["title"]));
1658 }
1659 }
1660
1661 } else {
1662 $result = db_query($link, "SELECT id,title FROM ttrss_feeds
1663 WHERE owner_uid = ".$_SESSION["uid"]." ORDER BY title");
1664
1665 while ($line = db_fetch_assoc($result)) {
1666
1667 $is_selected = ($line["id"] == $default_id) ? "selected=\"1\"" : "";
1668
1669 printf("<option $is_selected value='%d'>%s</option>",
1670 $line["id"], htmlspecialchars($line["title"]));
1671 }
1672 }
1673
1674 if (!$root_id) {
1675 print "</select>";
1676 }
1677 }
1678
1679 function print_feed_cat_select($link, $id, $default_id,
1680 $attributes, $include_all_cats = true, $root_id = false, $nest_level = 0) {
1681
1682 if (!$root_id) {
1683 print "<select id=\"$id\" name=\"$id\" default=\"$default_id\" onchange=\"catSelectOnChange(this)\" $attributes>";
1684 }
1685
1686 if ($root_id)
1687 $parent_qpart = "parent_cat = '$root_id'";
1688 else
1689 $parent_qpart = "parent_cat IS NULL";
1690
1691 $result = db_query($link, "SELECT id,title,
1692 (SELECT COUNT(id) FROM ttrss_feed_categories AS c2 WHERE
1693 c2.parent_cat = ttrss_feed_categories.id) AS num_children
1694 FROM ttrss_feed_categories
1695 WHERE owner_uid = ".$_SESSION["uid"]." AND $parent_qpart ORDER BY title");
1696
1697 while ($line = db_fetch_assoc($result)) {
1698 if ($line["id"] == $default_id) {
1699 $is_selected = "selected=\"1\"";
1700 } else {
1701 $is_selected = "";
1702 }
1703
1704 for ($i = 0; $i < $nest_level; $i++)
1705 $line["title"] = " - " . $line["title"];
1706
1707 if ($line["title"])
1708 printf("<option $is_selected value='%d'>%s</option>",
1709 $line["id"], htmlspecialchars($line["title"]));
1710
1711 if ($line["num_children"] > 0)
1712 print_feed_cat_select($link, $id, $default_id, $attributes,
1713 $include_all_cats, $line["id"], $nest_level+1);
1714 }
1715
1716 if (!$root_id) {
1717 if ($include_all_cats) {
1718 if (db_num_rows($result) > 0) {
1719 print "<option disabled=\"1\">--------</option>";
1720 }
1721
1722 if ($default_id == 0) {
1723 $is_selected = "selected=\"1\"";
1724 } else {
1725 $is_selected = "";
1726 }
1727
1728 print "<option $is_selected value=\"0\">".__('Uncategorized')."</option>";
1729 }
1730 print "</select>";
1731 }
1732 }
1733
1734 function checkbox_to_sql_bool($val) {
1735 return ($val == "on") ? "true" : "false";
1736 }
1737
1738 function getFeedCatTitle($link, $id) {
1739 if ($id == -1) {
1740 return __("Special");
1741 } else if ($id < -10) {
1742 return __("Labels");
1743 } else if ($id > 0) {
1744 $result = db_query($link, "SELECT ttrss_feed_categories.title
1745 FROM ttrss_feeds, ttrss_feed_categories WHERE ttrss_feeds.id = '$id' AND
1746 cat_id = ttrss_feed_categories.id");
1747 if (db_num_rows($result) == 1) {
1748 return db_fetch_result($result, 0, "title");
1749 } else {
1750 return __("Uncategorized");
1751 }
1752 } else {
1753 return "getFeedCatTitle($id) failed";
1754 }
1755
1756 }
1757
1758 function getFeedIcon($id) {
1759 switch ($id) {
1760 case 0:
1761 return "images/archive.png";
1762 break;
1763 case -1:
1764 return "images/mark_set.svg";
1765 break;
1766 case -2:
1767 return "images/pub_set.svg";
1768 break;
1769 case -3:
1770 return "images/fresh.png";
1771 break;
1772 case -4:
1773 return "images/tag.png";
1774 break;
1775 case -6:
1776 return "images/recently_read.png";
1777 break;
1778 default:
1779 if ($id < -10) {
1780 return "images/label.png";
1781 } else {
1782 if (file_exists(ICONS_DIR . "/$id.ico"))
1783 return ICONS_URL . "/$id.ico";
1784 }
1785 break;
1786 }
1787 }
1788
1789 function getFeedTitle($link, $id, $cat = false) {
1790 if ($cat) {
1791 return getCategoryTitle($link, $id);
1792 } else if ($id == -1) {
1793 return __("Starred articles");
1794 } else if ($id == -2) {
1795 return __("Published articles");
1796 } else if ($id == -3) {
1797 return __("Fresh articles");
1798 } else if ($id == -4) {
1799 return __("All articles");
1800 } else if ($id === 0 || $id === "0") {
1801 return __("Archived articles");
1802 } else if ($id == -6) {
1803 return __("Recently read");
1804 } else if ($id < -10) {
1805 $label_id = -$id - 11;
1806 $result = db_query($link, "SELECT caption FROM ttrss_labels2 WHERE id = '$label_id'");
1807 if (db_num_rows($result) == 1) {
1808 return db_fetch_result($result, 0, "caption");
1809 } else {
1810 return "Unknown label ($label_id)";
1811 }
1812
1813 } else if (is_numeric($id) && $id > 0) {
1814 $result = db_query($link, "SELECT title FROM ttrss_feeds WHERE id = '$id'");
1815 if (db_num_rows($result) == 1) {
1816 return db_fetch_result($result, 0, "title");
1817 } else {
1818 return "Unknown feed ($id)";
1819 }
1820 } else {
1821 return $id;
1822 }
1823 }
1824
1825 function make_init_params($link) {
1826 $params = array();
1827
1828 $params["sign_progress"] = theme_image($link, "images/indicator_white.gif");
1829 $params["sign_progress_tiny"] = theme_image($link, "images/indicator_tiny.gif");
1830 $params["sign_excl"] = theme_image($link, "images/sign_excl.svg");
1831 $params["sign_info"] = theme_image($link, "images/sign_info.svg");
1832
1833 foreach (array("ON_CATCHUP_SHOW_NEXT_FEED", "HIDE_READ_FEEDS",
1834 "ENABLE_FEED_CATS", "FEEDS_SORT_BY_UNREAD", "CONFIRM_FEED_CATCHUP",
1835 "CDM_AUTO_CATCHUP", "FRESH_ARTICLE_MAX_AGE", "DEFAULT_ARTICLE_LIMIT",
1836 "HIDE_READ_SHOWS_SPECIAL", "COMBINED_DISPLAY_MODE") as $param) {
1837
1838 $params[strtolower($param)] = (int) get_pref($link, $param);
1839 }
1840
1841 $params["icons_url"] = ICONS_URL;
1842 $params["cookie_lifetime"] = SESSION_COOKIE_LIFETIME;
1843 $params["default_view_mode"] = get_pref($link, "_DEFAULT_VIEW_MODE");
1844 $params["default_view_limit"] = (int) get_pref($link, "_DEFAULT_VIEW_LIMIT");
1845 $params["default_view_order_by"] = get_pref($link, "_DEFAULT_VIEW_ORDER_BY");
1846 $params["bw_limit"] = (int) $_SESSION["bw_limit"];
1847
1848 $result = db_query($link, "SELECT MAX(id) AS mid, COUNT(*) AS nf FROM
1849 ttrss_feeds WHERE owner_uid = " . $_SESSION["uid"]);
1850
1851 $max_feed_id = db_fetch_result($result, 0, "mid");
1852 $num_feeds = db_fetch_result($result, 0, "nf");
1853
1854 $params["max_feed_id"] = (int) $max_feed_id;
1855 $params["num_feeds"] = (int) $num_feeds;
1856
1857 $params["collapsed_feedlist"] = (int) get_pref($link, "_COLLAPSED_FEEDLIST");
1858 $params["hotkeys"] = get_hotkeys_map($link);
1859
1860 $params["csrf_token"] = $_SESSION["csrf_token"];
1861 $params["widescreen"] = (int) $_COOKIE["ttrss_widescreen"];
1862
1863 $params['simple_update'] = defined('SIMPLE_UPDATE_MODE') && SIMPLE_UPDATE_MODE;
1864
1865 return $params;
1866 }
1867
1868 function get_hotkeys_info($link) {
1869 $hotkeys = array(
1870 __("Navigation") => array(
1871 "next_feed" => __("Open next feed"),
1872 "prev_feed" => __("Open previous feed"),
1873 "next_article" => __("Open next article"),
1874 "prev_article" => __("Open previous article"),
1875 "next_article_noscroll" => __("Open next article (don't scroll long articles)"),
1876 "prev_article_noscroll" => __("Open previous article (don't scroll long articles)"),
1877 "search_dialog" => __("Show search dialog")),
1878 __("Article") => array(
1879 "toggle_mark" => __("Toggle starred"),
1880 "toggle_publ" => __("Toggle published"),
1881 "toggle_unread" => __("Toggle unread"),
1882 "edit_tags" => __("Edit tags"),
1883 "dismiss_selected" => __("Dismiss selected"),
1884 "dismiss_read" => __("Dismiss read"),
1885 "open_in_new_window" => __("Open in new window"),
1886 "catchup_below" => __("Mark below as read"),
1887 "catchup_above" => __("Mark above as read"),
1888 "article_scroll_down" => __("Scroll down"),
1889 "article_scroll_up" => __("Scroll up"),
1890 "select_article_cursor" => __("Select article under cursor"),
1891 "email_article" => __("Email article"),
1892 "close_article" => __("Close/collapse article"),
1893 "toggle_widescreen" => __("Toggle widescreen mode")),
1894 __("Article selection") => array(
1895 "select_all" => __("Select all articles"),
1896 "select_unread" => __("Select unread"),
1897 "select_marked" => __("Select starred"),
1898 "select_published" => __("Select published"),
1899 "select_invert" => __("Invert selection"),
1900 "select_none" => __("Deselect everything")),
1901 __("Feed") => array(
1902 "feed_refresh" => __("Refresh current feed"),
1903 "feed_unhide_read" => __("Un/hide read feeds"),
1904 "feed_subscribe" => __("Subscribe to feed"),
1905 "feed_edit" => __("Edit feed"),
1906 "feed_catchup" => __("Mark as read"),
1907 "feed_reverse" => __("Reverse headlines"),
1908 "feed_debug_update" => __("Debug feed update"),
1909 "catchup_all" => __("Mark all feeds as read"),
1910 "cat_toggle_collapse" => __("Un/collapse current category"),
1911 "toggle_combined_mode" => __("Toggle combined mode")),
1912 __("Go to") => array(
1913 "goto_all" => __("All articles"),
1914 "goto_fresh" => __("Fresh"),
1915 "goto_marked" => __("Starred"),
1916 "goto_published" => __("Published"),
1917 "goto_tagcloud" => __("Tag cloud"),
1918 "goto_prefs" => __("Preferences")),
1919 __("Other") => array(
1920 "create_label" => __("Create label"),
1921 "create_filter" => __("Create filter"),
1922 "collapse_sidebar" => __("Un/collapse sidebar"),
1923 "help_dialog" => __("Show help dialog"))
1924 );
1925
1926 return $hotkeys;
1927 }
1928
1929 function get_hotkeys_map($link) {
1930 $hotkeys = array(
1931 // "navigation" => array(
1932 "k" => "next_feed",
1933 "j" => "prev_feed",
1934 "n" => "next_article",
1935 "p" => "prev_article",
1936 "(38)|up" => "prev_article",
1937 "(40)|down" => "next_article",
1938 // "^(38)|Ctrl-up" => "prev_article_noscroll",
1939 // "^(40)|Ctrl-down" => "next_article_noscroll",
1940 "(191)|/" => "search_dialog",
1941 // "article" => array(
1942 "s" => "toggle_mark",
1943 "*s" => "toggle_publ",
1944 "u" => "toggle_unread",
1945 "*t" => "edit_tags",
1946 "*d" => "dismiss_selected",
1947 "*x" => "dismiss_read",
1948 "o" => "open_in_new_window",
1949 "c p" => "catchup_below",
1950 "c n" => "catchup_above",
1951 "*n" => "article_scroll_down",
1952 "*p" => "article_scroll_up",
1953 "*(38)|Shift+up" => "article_scroll_up",
1954 "*(40)|Shift+down" => "article_scroll_down",
1955 "a *w" => "toggle_widescreen",
1956 "e" => "email_article",
1957 "a q" => "close_article",
1958 // "article_selection" => array(
1959 "a a" => "select_all",
1960 "a u" => "select_unread",
1961 "a *u" => "select_marked",
1962 "a p" => "select_published",
1963 "a i" => "select_invert",
1964 "a n" => "select_none",
1965 // "feed" => array(
1966 "f r" => "feed_refresh",
1967 "f a" => "feed_unhide_read",
1968 "f s" => "feed_subscribe",
1969 "f e" => "feed_edit",
1970 "f q" => "feed_catchup",
1971 "f x" => "feed_reverse",
1972 "f *d" => "feed_debug_update",
1973 "f *c" => "toggle_combined_mode",
1974 "*q" => "catchup_all",
1975 "x" => "cat_toggle_collapse",
1976 // "goto" => array(
1977 "g a" => "goto_all",
1978 "g f" => "goto_fresh",
1979 "g s" => "goto_marked",
1980 "g p" => "goto_published",
1981 "g t" => "goto_tagcloud",
1982 "g *p" => "goto_prefs",
1983 // "other" => array(
1984 "(9)|Tab" => "select_article_cursor", // tab
1985 "c l" => "create_label",
1986 "c f" => "create_filter",
1987 "c s" => "collapse_sidebar",
1988 "^(191)|Ctrl+/" => "help_dialog",
1989 );
1990
1991 if (get_pref($link, 'COMBINED_DISPLAY_MODE')) {
1992 $hotkeys["^(38)|Ctrl-up"] = "prev_article_noscroll";
1993 $hotkeys["^(40)|Ctrl-down"] = "next_article_noscroll";
1994 }
1995
1996 global $pluginhost;
1997 foreach ($pluginhost->get_hooks($pluginhost::HOOK_HOTKEY_MAP) as $plugin) {
1998 $hotkeys = $plugin->hook_hotkey_map($hotkeys);
1999 }
2000
2001 $prefixes = array();
2002
2003 foreach (array_keys($hotkeys) as $hotkey) {
2004 $pair = explode(" ", $hotkey, 2);
2005
2006 if (count($pair) > 1 && !in_array($pair[0], $prefixes)) {
2007 array_push($prefixes, $pair[0]);
2008 }
2009 }
2010
2011 return array($prefixes, $hotkeys);
2012 }
2013
2014 function make_runtime_info($link) {
2015 $data = array();
2016
2017 $result = db_query($link, "SELECT MAX(id) AS mid, COUNT(*) AS nf FROM
2018 ttrss_feeds WHERE owner_uid = " . $_SESSION["uid"]);
2019
2020 $max_feed_id = db_fetch_result($result, 0, "mid");
2021 $num_feeds = db_fetch_result($result, 0, "nf");
2022
2023 $data["max_feed_id"] = (int) $max_feed_id;
2024 $data["num_feeds"] = (int) $num_feeds;
2025
2026 $data['last_article_id'] = getLastArticleId($link);
2027 $data['cdm_expanded'] = get_pref($link, 'CDM_EXPANDED');
2028
2029 if (file_exists(LOCK_DIRECTORY . "/update_daemon.lock")) {
2030
2031 $data['daemon_is_running'] = (int) file_is_locked("update_daemon.lock");
2032
2033 if (time() - $_SESSION["daemon_stamp_check"] > 30) {
2034
2035 $stamp = (int) @file_get_contents(LOCK_DIRECTORY . "/update_daemon.stamp");
2036
2037 if ($stamp) {
2038 $stamp_delta = time() - $stamp;
2039
2040 if ($stamp_delta > 1800) {
2041 $stamp_check = 0;
2042 } else {
2043 $stamp_check = 1;
2044 $_SESSION["daemon_stamp_check"] = time();
2045 }
2046
2047 $data['daemon_stamp_ok'] = $stamp_check;
2048
2049 $stamp_fmt = date("Y.m.d, G:i", $stamp);
2050
2051 $data['daemon_stamp'] = $stamp_fmt;
2052 }
2053 }
2054 }
2055
2056 if ($_SESSION["last_version_check"] + 86400 + rand(-1000, 1000) < time()) {
2057 $new_version_details = @check_for_update($link);
2058
2059 $data['new_version_available'] = (int) ($new_version_details != false);
2060
2061 $_SESSION["last_version_check"] = time();
2062 $_SESSION["version_data"] = $new_version_details;
2063 }
2064
2065 return $data;
2066 }
2067
2068 function search_to_sql($link, $search, $match_on) {
2069
2070 $search_query_part = "";
2071
2072 $keywords = explode(" ", $search);
2073 $query_keywords = array();
2074
2075 foreach ($keywords as $k) {
2076 if (strpos($k, "-") === 0) {
2077 $k = substr($k, 1);
2078 $not = "NOT";
2079 } else {
2080 $not = "";
2081 }
2082
2083 $commandpair = explode(":", mb_strtolower($k), 2);
2084
2085 if ($commandpair[0] == "note" && $commandpair[1]) {
2086
2087 if ($commandpair[1] == "true")
2088 array_push($query_keywords, "($not (note IS NOT NULL AND note != ''))");
2089 else
2090 array_push($query_keywords, "($not (note IS NULL OR note = ''))");
2091
2092 } else if ($commandpair[0] == "star" && $commandpair[1]) {
2093
2094 if ($commandpair[1] == "true")
2095 array_push($query_keywords, "($not (marked = true))");
2096 else
2097 array_push($query_keywords, "($not (marked = false))");
2098
2099 } else if ($commandpair[0] == "pub" && $commandpair[1]) {
2100
2101 if ($commandpair[1] == "true")
2102 array_push($query_keywords, "($not (published = true))");
2103 else
2104 array_push($query_keywords, "($not (published = false))");
2105
2106 } else if (strpos($k, "@") === 0) {
2107
2108 $user_tz_string = get_pref($link, 'USER_TIMEZONE', $_SESSION['uid']);
2109 $orig_ts = strtotime(substr($k, 1));
2110 $k = date("Y-m-d", convert_timestamp($orig_ts, $user_tz_string, 'UTC'));
2111
2112 //$k = date("Y-m-d", strtotime(substr($k, 1)));
2113
2114 array_push($query_keywords, "(".SUBSTRING_FOR_DATE."(updated,1,LENGTH('$k')) $not = '$k')");
2115 } else if ($match_on == "both") {
2116 array_push($query_keywords, "(UPPER(ttrss_entries.title) $not LIKE UPPER('%$k%')
2117 OR UPPER(ttrss_entries.content) $not LIKE UPPER('%$k%'))");
2118 } else if ($match_on == "title") {
2119 array_push($query_keywords, "(UPPER(ttrss_entries.title) $not LIKE UPPER('%$k%'))");
2120 } else if ($match_on == "content") {
2121 array_push($query_keywords, "(UPPER(ttrss_entries.content) $not LIKE UPPER('%$k%'))");
2122 }
2123 }
2124
2125 $search_query_part = implode("AND", $query_keywords);
2126
2127 return $search_query_part;
2128 }
2129
2130 function getParentCategories($link, $cat, $owner_uid) {
2131 $rv = array();
2132
2133 $result = db_query($link, "SELECT parent_cat FROM ttrss_feed_categories
2134 WHERE id = '$cat' AND parent_cat IS NOT NULL AND owner_uid = $owner_uid");
2135
2136 while ($line = db_fetch_assoc($result)) {
2137 array_push($rv, $line["parent_cat"]);
2138 $rv = array_merge($rv, getParentCategories($link, $line["parent_cat"], $owner_uid));
2139 }
2140
2141 return $rv;
2142 }
2143
2144 function getChildCategories($link, $cat, $owner_uid) {
2145 $rv = array();
2146
2147 $result = db_query($link, "SELECT id FROM ttrss_feed_categories
2148 WHERE parent_cat = '$cat' AND owner_uid = $owner_uid");
2149
2150 while ($line = db_fetch_assoc($result)) {
2151 array_push($rv, $line["id"]);
2152 $rv = array_merge($rv, getChildCategories($link, $line["id"], $owner_uid));
2153 }
2154
2155 return $rv;
2156 }
2157
2158 function queryFeedHeadlines($link, $feed, $limit, $view_mode, $cat_view, $search, $search_mode, $match_on, $override_order = false, $offset = 0, $owner_uid = 0, $filter = false, $since_id = 0, $include_children = false, $ignore_vfeed_group = false) {
2159
2160 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
2161
2162 $ext_tables_part = "";
2163
2164 if ($search) {
2165
2166 if (SPHINX_ENABLED) {
2167 $ids = join(",", @sphinx_search($search, 0, 500));
2168
2169 if ($ids)
2170 $search_query_part = "ref_id IN ($ids) AND ";
2171 else
2172 $search_query_part = "ref_id = -1 AND ";
2173
2174 } else {
2175 $search_query_part = search_to_sql($link, $search, $match_on);
2176 $search_query_part .= " AND ";
2177 }
2178
2179 } else {
2180 $search_query_part = "";
2181 }
2182
2183 if ($filter) {
2184
2185 if (DB_TYPE == "pgsql") {
2186 $query_strategy_part .= " AND updated > NOW() - INTERVAL '14 days' ";
2187 } else {
2188 $query_strategy_part .= " AND updated > DATE_SUB(NOW(), INTERVAL 14 DAY) ";
2189 }
2190
2191 $override_order = "updated DESC";
2192
2193 $filter_query_part = filter_to_sql($link, $filter, $owner_uid);
2194
2195 // Try to check if SQL regexp implementation chokes on a valid regexp
2196 $result = db_query($link, "SELECT true AS true_val FROM ttrss_entries,
2197 ttrss_user_entries, ttrss_feeds, ttrss_feed_categories
2198 WHERE $filter_query_part LIMIT 1", false);
2199
2200 if ($result) {
2201 $test = db_fetch_result($result, 0, "true_val");
2202
2203 if (!$test) {
2204 $filter_query_part = "false AND";
2205 } else {
2206 $filter_query_part .= " AND";
2207 }
2208 } else {
2209 $filter_query_part = "false AND";
2210 }
2211
2212 } else {
2213 $filter_query_part = "";
2214 }
2215
2216 if ($since_id) {
2217 $since_id_part = "ttrss_entries.id > $since_id AND ";
2218 } else {
2219 $since_id_part = "";
2220 }
2221
2222 $view_query_part = "";
2223
2224 if ($view_mode == "adaptive" || $view_query_part == "noscores") {
2225 if ($search) {
2226 $view_query_part = " ";
2227 } else if ($feed != -1) {
2228 $unread = getFeedUnread($link, $feed, $cat_view);
2229
2230 if ($cat_view && $feed > 0 && $include_children)
2231 $unread += getCategoryChildrenUnread($link, $feed);
2232
2233 if ($unread > 0) {
2234 $view_query_part = " unread = true AND ";
2235 }
2236 }
2237 }
2238
2239 if ($view_mode == "marked") {
2240 $view_query_part = " marked = true AND ";
2241 }
2242
2243 if ($view_mode == "published") {
2244 $view_query_part = " published = true AND ";
2245 }
2246
2247 if ($view_mode == "unread") {
2248 $view_query_part = " unread = true AND ";
2249 }
2250
2251 if ($view_mode == "updated") {
2252 $view_query_part = " (last_read is null and unread = false) AND ";
2253 }
2254
2255 if ($limit > 0) {
2256 $limit_query_part = "LIMIT " . $limit;
2257 }
2258
2259 $allow_archived = false;
2260
2261 $vfeed_query_part = "";
2262
2263 // override query strategy and enable feed display when searching globally
2264 if ($search && $search_mode == "all_feeds") {
2265 $query_strategy_part = "true";
2266 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2267 /* tags */
2268 } else if (!is_numeric($feed)) {
2269 $query_strategy_part = "true";
2270 $vfeed_query_part = "(SELECT title FROM ttrss_feeds WHERE
2271 id = feed_id) as feed_title,";
2272 } else if ($search && $search_mode == "this_cat") {
2273 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2274
2275 if ($feed > 0) {
2276 if ($include_children) {
2277 $subcats = getChildCategories($link, $feed, $owner_uid);
2278 array_push($subcats, $feed);
2279 $cats_qpart = join(",", $subcats);
2280 } else {
2281 $cats_qpart = $feed;
2282 }
2283
2284 $query_strategy_part = "ttrss_feeds.cat_id IN ($cats_qpart)";
2285
2286 } else {
2287 $query_strategy_part = "ttrss_feeds.cat_id IS NULL";
2288 }
2289
2290 } else if ($feed > 0) {
2291
2292 if ($cat_view) {
2293
2294 if ($feed > 0) {
2295 if ($include_children) {
2296 # sub-cats
2297 $subcats = getChildCategories($link, $feed, $owner_uid);
2298
2299 array_push($subcats, $feed);
2300 $query_strategy_part = "cat_id IN (".
2301 implode(",", $subcats).")";
2302
2303 } else {
2304 $query_strategy_part = "cat_id = '$feed'";
2305 }
2306
2307 } else {
2308 $query_strategy_part = "cat_id IS NULL";
2309 }
2310
2311 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2312
2313 } else {
2314 $query_strategy_part = "feed_id = '$feed'";
2315 }
2316 } else if ($feed == 0 && !$cat_view) { // archive virtual feed
2317 $query_strategy_part = "feed_id IS NULL";
2318 $allow_archived = true;
2319 } else if ($feed == 0 && $cat_view) { // uncategorized
2320 $query_strategy_part = "cat_id IS NULL AND feed_id IS NOT NULL";
2321 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2322 } else if ($feed == -1) { // starred virtual feed
2323 $query_strategy_part = "marked = true";
2324 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2325 $allow_archived = true;
2326
2327 if (!$override_order) $override_order = "last_marked DESC, updated DESC";
2328
2329 } else if ($feed == -2) { // published virtual feed OR labels category
2330
2331 if (!$cat_view) {
2332 $query_strategy_part = "published = true";
2333 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2334 $allow_archived = true;
2335
2336 if (!$override_order) $override_order = "last_published DESC, updated DESC";
2337 } else {
2338 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2339
2340 $ext_tables_part = ",ttrss_labels2,ttrss_user_labels2";
2341
2342 $query_strategy_part = "ttrss_labels2.id = ttrss_user_labels2.label_id AND
2343 ttrss_user_labels2.article_id = ref_id";
2344
2345 }
2346 } else if ($feed == -6) { // recently read
2347 $query_strategy_part = "unread = false AND last_read IS NOT NULL";
2348 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2349 $allow_archived = true;
2350
2351 if (!$override_order) $override_order = "last_read DESC";
2352 } else if ($feed == -3) { // fresh virtual feed
2353 $query_strategy_part = "unread = true AND score >= 0";
2354
2355 $intl = get_pref($link, "FRESH_ARTICLE_MAX_AGE", $owner_uid);
2356
2357 if (DB_TYPE == "pgsql") {
2358 $query_strategy_part .= " AND updated > NOW() - INTERVAL '$intl hour' ";
2359 } else {
2360 $query_strategy_part .= " AND updated > DATE_SUB(NOW(), INTERVAL $intl HOUR) ";
2361 }
2362
2363 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2364 } else if ($feed == -4) { // all articles virtual feed
2365 $query_strategy_part = "true";
2366 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2367 } else if ($feed <= -10) { // labels
2368 $label_id = -$feed - 11;
2369
2370 $query_strategy_part = "label_id = '$label_id' AND
2371 ttrss_labels2.id = ttrss_user_labels2.label_id AND
2372 ttrss_user_labels2.article_id = ref_id";
2373
2374 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2375 $ext_tables_part = ",ttrss_labels2,ttrss_user_labels2";
2376 $allow_archived = true;
2377
2378 } else {
2379 $query_strategy_part = "true";
2380 }
2381
2382 if (get_pref($link, "SORT_HEADLINES_BY_FEED_DATE", $owner_uid)) {
2383 $date_sort_field = "updated";
2384 } else {
2385 $date_sort_field = "date_entered";
2386 }
2387
2388 if (get_pref($link, 'REVERSE_HEADLINES', $owner_uid)) {
2389 $order_by = "$date_sort_field";
2390 } else {
2391 $order_by = "$date_sort_field DESC";
2392 }
2393
2394 if ($view_mode != "noscores") {
2395 $order_by = "score DESC, $order_by";
2396 }
2397
2398 if ($override_order) {
2399 $order_by = $override_order;
2400 }
2401
2402 $feed_title = "";
2403
2404 if ($search) {
2405 $feed_title = T_sprintf("Search results: %s", $search);
2406 } else {
2407 if ($cat_view) {
2408 $feed_title = getCategoryTitle($link, $feed);
2409 } else {
2410 if (is_numeric($feed) && $feed > 0) {
2411 $result = db_query($link, "SELECT title,site_url,last_error
2412 FROM ttrss_feeds WHERE id = '$feed' AND owner_uid = $owner_uid");
2413
2414 $feed_title = db_fetch_result($result, 0, "title");
2415 $feed_site_url = db_fetch_result($result, 0, "site_url");
2416 $last_error = db_fetch_result($result, 0, "last_error");
2417 } else {
2418 $feed_title = getFeedTitle($link, $feed);
2419 }
2420 }
2421 }
2422
2423 $content_query_part = "content as content_preview, cached_content, ";
2424
2425 if (is_numeric($feed)) {
2426
2427 if ($feed >= 0) {
2428 $feed_kind = "Feeds";
2429 } else {
2430 $feed_kind = "Labels";
2431 }
2432
2433 if ($limit_query_part) {
2434 $offset_query_part = "OFFSET $offset";
2435 }
2436
2437 // proper override_order applied above
2438 if ($vfeed_query_part && !$ignore_vfeed_group && get_pref($link, 'VFEED_GROUP_BY_FEED', $owner_uid)) {
2439 if (!$override_order) {
2440 $order_by = "ttrss_feeds.title, $order_by";
2441 } else {
2442 $order_by = "ttrss_feeds.title, $override_order";
2443 }
2444 }
2445
2446 if (!$allow_archived) {
2447 $from_qpart = "ttrss_entries,ttrss_user_entries,ttrss_feeds$ext_tables_part";
2448 $feed_check_qpart = "ttrss_user_entries.feed_id = ttrss_feeds.id AND";
2449
2450 } else {
2451 $from_qpart = "ttrss_entries$ext_tables_part,ttrss_user_entries
2452 LEFT JOIN ttrss_feeds ON (feed_id = ttrss_feeds.id)";
2453 }
2454
2455 $query = "SELECT DISTINCT
2456 date_entered,
2457 guid,
2458 ttrss_entries.id,ttrss_entries.title,
2459 updated,
2460 label_cache,
2461 tag_cache,
2462 always_display_enclosures,
2463 site_url,
2464 note,
2465 num_comments,
2466 comments,
2467 int_id,
2468 hide_images,
2469 unread,feed_id,marked,published,link,last_read,orig_feed_id,
2470 last_marked, last_published,
2471 ".SUBSTRING_FOR_DATE."(last_read,1,19) as last_read_noms,
2472 $vfeed_query_part
2473 $content_query_part
2474 ".SUBSTRING_FOR_DATE."(updated,1,19) as updated_noms,
2475 author,score
2476 FROM
2477 $from_qpart
2478 WHERE
2479 $feed_check_qpart
2480 ttrss_user_entries.ref_id = ttrss_entries.id AND
2481 ttrss_user_entries.owner_uid = '$owner_uid' AND
2482 $search_query_part
2483 $filter_query_part
2484 $view_query_part
2485 $since_id_part
2486 $query_strategy_part ORDER BY $order_by
2487 $limit_query_part $offset_query_part";
2488
2489 if ($_REQUEST["debug"]) print $query;
2490
2491 $result = db_query($link, $query);
2492
2493 } else {
2494 // browsing by tag
2495
2496 $select_qpart = "SELECT DISTINCT " .
2497 "date_entered," .
2498 "guid," .
2499 "note," .
2500 "ttrss_entries.id as id," .
2501 "title," .
2502 "updated," .
2503 "unread," .
2504 "feed_id," .
2505 "orig_feed_id," .
2506 "marked," .
2507 "num_comments, " .
2508 "comments, " .
2509 "tag_cache," .
2510 "label_cache," .
2511 "link," .
2512 "last_read," .
2513 "hide_images," .
2514 "last_marked, last_published, " .
2515 SUBSTRING_FOR_DATE . "(last_read,1,19) as last_read_noms," .
2516 $since_id_part .
2517 $vfeed_query_part .
2518 $content_query_part .
2519 SUBSTRING_FOR_DATE . "(updated,1,19) as updated_noms," .
2520 "score ";
2521
2522 $feed_kind = "Tags";
2523 $all_tags = explode(",", $feed);
2524 if ($search_mode == 'any') {
2525 $tag_sql = "tag_name in (" . implode(", ", array_map("db_quote", $all_tags)) . ")";
2526 $from_qpart = " FROM ttrss_entries,ttrss_user_entries,ttrss_tags ";
2527 $where_qpart = " WHERE " .
2528 "ref_id = ttrss_entries.id AND " .
2529 "ttrss_user_entries.owner_uid = $owner_uid AND " .
2530 "post_int_id = int_id AND $tag_sql AND " .
2531 $view_query_part .
2532 $search_query_part .
2533 $query_strategy_part . " ORDER BY $order_by " .
2534 $limit_query_part;
2535
2536 } else {
2537 $i = 1;
2538 $sub_selects = array();
2539 $sub_ands = array();
2540 foreach ($all_tags as $term) {
2541 array_push($sub_selects, "(SELECT post_int_id from ttrss_tags WHERE tag_name = " . db_quote($term) . " AND owner_uid = $owner_uid) as A$i");
2542 $i++;
2543 }
2544 if ($i > 2) {
2545 $x = 1;
2546 $y = 2;
2547 do {
2548 array_push($sub_ands, "A$x.post_int_id = A$y.post_int_id");
2549 $x++;
2550 $y++;
2551 } while ($y < $i);
2552 }
2553 array_push($sub_ands, "A1.post_int_id = ttrss_user_entries.int_id and ttrss_user_entries.owner_uid = $owner_uid");
2554 array_push($sub_ands, "ttrss_user_entries.ref_id = ttrss_entries.id");
2555 $from_qpart = " FROM " . implode(", ", $sub_selects) . ", ttrss_user_entries, ttrss_entries";
2556 $where_qpart = " WHERE " . implode(" AND ", $sub_ands);
2557 }
2558 // error_log("TAG SQL: " . $tag_sql);
2559 // $tag_sql = "tag_name = '$feed'"; DEFAULT way
2560
2561 // error_log("[". $select_qpart . "][" . $from_qpart . "][" .$where_qpart . "]");
2562 $result = db_query($link, $select_qpart . $from_qpart . $where_qpart);
2563 }
2564
2565 return array($result, $feed_title, $feed_site_url, $last_error);
2566
2567 }
2568
2569 function sanitize($link, $str, $force_remove_images = false, $owner = false, $site_url = false) {
2570 if (!$owner) $owner = $_SESSION["uid"];
2571
2572 $res = trim($str); if (!$res) return '';
2573
2574 if (strpos($res, "href=") === false)
2575 $res = rewrite_urls($res);
2576
2577 $charset_hack = '<head>
2578 <meta http-equiv="Content-Type" content="text/html; charset=utf-8"/>
2579 </head>';
2580
2581 $res = trim($res); if (!$res) return '';
2582
2583 libxml_use_internal_errors(true);
2584
2585 $doc = new DOMDocument();
2586 $doc->loadHTML($charset_hack . $res);
2587 $xpath = new DOMXPath($doc);
2588
2589 $entries = $xpath->query('(//a[@href]|//img[@src])');
2590
2591 foreach ($entries as $entry) {
2592
2593 if ($site_url) {
2594
2595 if ($entry->hasAttribute('href'))
2596 $entry->setAttribute('href',
2597 rewrite_relative_url($site_url, $entry->getAttribute('href')));
2598
2599 if ($entry->hasAttribute('src')) {
2600 $src = rewrite_relative_url($site_url, $entry->getAttribute('src'));
2601
2602 $cached_filename = CACHE_DIR . '/images/' . sha1($src) . '.png';
2603
2604 if (file_exists($cached_filename)) {
2605 $src = SELF_URL_PATH . '/image.php?hash=' . sha1($src);
2606 }
2607
2608 $entry->setAttribute('src', $src);
2609 }
2610
2611 if ($entry->nodeName == 'img') {
2612 if (($owner && get_pref($link, "STRIP_IMAGES", $owner)) ||
2613 $force_remove_images) {
2614
2615 $p = $doc->createElement('p');
2616
2617 $a = $doc->createElement('a');
2618 $a->setAttribute('href', $entry->getAttribute('src'));
2619
2620 $a->appendChild(new DOMText($entry->getAttribute('src')));
2621 $a->setAttribute('target', '_blank');
2622
2623 $p->appendChild($a);
2624
2625 $entry->parentNode->replaceChild($p, $entry);
2626 }
2627 }
2628 }
2629
2630 if (strtolower($entry->nodeName) == "a") {
2631 $entry->setAttribute("target", "_blank");
2632 }
2633 }
2634
2635 $entries = $xpath->query('//iframe');
2636 foreach ($entries as $entry) {
2637 $entry->setAttribute('sandbox', 'allow-scripts');
2638
2639 }
2640
2641 global $pluginhost;
2642
2643 if (isset($pluginhost)) {
2644 foreach ($pluginhost->get_hooks($pluginhost::HOOK_SANITIZE) as $plugin) {
2645 $doc = $plugin->hook_sanitize($doc, $site_url);
2646 }
2647 }
2648
2649 $doc->removeChild($doc->firstChild); //remove doctype
2650 $doc = strip_harmful_tags($doc);
2651 $res = $doc->saveHTML();
2652 return $res;
2653 }
2654
2655 function strip_harmful_tags($doc) {
2656 $entries = $doc->getElementsByTagName("*");
2657
2658 $allowed_elements = array('a', 'address', 'audio', 'article',
2659 'b', 'big', 'blockquote', 'body', 'br', 'cite',
2660 'code', 'dd', 'del', 'details', 'div', 'dl', 'font',
2661 'dt', 'em', 'footer', 'h1', 'h2', 'h3', 'h4', 'h5', 'h6',
2662 'header', 'html', 'i', 'img', 'ins', 'kbd',
2663 'li', 'nav', 'ol', 'p', 'pre', 'q', 's','small',
2664 'source', 'span', 'strike', 'strong', 'sub', 'summary',
2665 'sup', 'table', 'tbody', 'td', 'tfoot', 'th', 'thead',
2666 'tr', 'track', 'tt', 'u', 'ul', 'var', 'wbr', 'video' );
2667
2668 if ($_SESSION['hasSandbox']) array_push($allowed_elements, 'iframe');
2669
2670 $disallowed_attributes = array('id', 'style', 'class');
2671
2672 foreach ($entries as $entry) {
2673 if (!in_array($entry->nodeName, $allowed_elements)) {
2674 $entry->parentNode->removeChild($entry);
2675 }
2676
2677 if ($entry->hasAttributes()) {
2678 foreach (iterator_to_array($entry->attributes) as $attr) {
2679
2680 if (strpos($attr->nodeName, 'on') === 0) {
2681 $entry->removeAttributeNode($attr);
2682 }
2683
2684 if (in_array($attr->nodeName, $disallowed_attributes)) {
2685 $entry->removeAttributeNode($attr);
2686 }
2687 }
2688 }
2689 }
2690
2691 return $doc;
2692 }
2693
2694 function check_for_update($link) {
2695 if (CHECK_FOR_NEW_VERSION && $_SESSION['access_level'] >= 10) {
2696 $version_url = "http://tt-rss.org/version.php?ver=" . VERSION .
2697 "&iid=" . sha1(SELF_URL_PATH);
2698
2699 $version_data = @fetch_file_contents($version_url);
2700
2701 if ($version_data) {
2702 $version_data = json_decode($version_data, true);
2703 if ($version_data && $version_data['version']) {
2704
2705 if (version_compare(VERSION, $version_data['version']) == -1) {
2706 return $version_data;
2707 }
2708 }
2709 }
2710 }
2711 return false;
2712 }
2713
2714 function catchupArticlesById($link, $ids, $cmode, $owner_uid = false) {
2715
2716 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
2717 if (count($ids) == 0) return;
2718
2719 $tmp_ids = array();
2720
2721 foreach ($ids as $id) {
2722 array_push($tmp_ids, "ref_id = '$id'");
2723 }
2724
2725 $ids_qpart = join(" OR ", $tmp_ids);
2726
2727 if ($cmode == 0) {
2728 db_query($link, "UPDATE ttrss_user_entries SET
2729 unread = false,last_read = NOW()
2730 WHERE ($ids_qpart) AND owner_uid = $owner_uid");
2731 } else if ($cmode == 1) {
2732 db_query($link, "UPDATE ttrss_user_entries SET
2733 unread = true
2734 WHERE ($ids_qpart) AND owner_uid = $owner_uid");
2735 } else {
2736 db_query($link, "UPDATE ttrss_user_entries SET
2737 unread = NOT unread,last_read = NOW()
2738 WHERE ($ids_qpart) AND owner_uid = $owner_uid");
2739 }
2740
2741 /* update ccache */
2742
2743 $result = db_query($link, "SELECT DISTINCT feed_id FROM ttrss_user_entries
2744 WHERE ($ids_qpart) AND owner_uid = $owner_uid");
2745
2746 while ($line = db_fetch_assoc($result)) {
2747 ccache_update($link, $line["feed_id"], $owner_uid);
2748 }
2749 }
2750
2751 function get_article_tags($link, $id, $owner_uid = 0, $tag_cache = false) {
2752
2753 $a_id = db_escape_string($id);
2754
2755 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
2756
2757 $query = "SELECT DISTINCT tag_name,
2758 owner_uid as owner FROM
2759 ttrss_tags WHERE post_int_id = (SELECT int_id FROM ttrss_user_entries WHERE
2760 ref_id = '$a_id' AND owner_uid = '$owner_uid' LIMIT 1) ORDER BY tag_name";
2761
2762 $obj_id = md5("TAGS:$owner_uid:$id");
2763 $tags = array();
2764
2765 /* check cache first */
2766
2767 if ($tag_cache === false) {
2768 $result = db_query($link, "SELECT tag_cache FROM ttrss_user_entries
2769 WHERE ref_id = '$id' AND owner_uid = $owner_uid");
2770
2771 $tag_cache = db_fetch_result($result, 0, "tag_cache");
2772 }
2773
2774 if ($tag_cache) {
2775 $tags = explode(",", $tag_cache);
2776 } else {
2777
2778 /* do it the hard way */
2779
2780 $tmp_result = db_query($link, $query);
2781
2782 while ($tmp_line = db_fetch_assoc($tmp_result)) {
2783 array_push($tags, $tmp_line["tag_name"]);
2784 }
2785
2786 /* update the cache */
2787
2788 $tags_str = db_escape_string(join(",", $tags));
2789
2790 db_query($link, "UPDATE ttrss_user_entries
2791 SET tag_cache = '$tags_str' WHERE ref_id = '$id'
2792 AND owner_uid = $owner_uid");
2793 }
2794
2795 return $tags;
2796 }
2797
2798 function trim_array($array) {
2799 $tmp = $array;
2800 array_walk($tmp, 'trim');
2801 return $tmp;
2802 }
2803
2804 function tag_is_valid($tag) {
2805 if ($tag == '') return false;
2806 if (preg_match("/^[0-9]*$/", $tag)) return false;
2807 if (mb_strlen($tag) > 250) return false;
2808
2809 if (function_exists('iconv')) {
2810 $tag = iconv("utf-8", "utf-8", $tag);
2811 }
2812
2813 if (!$tag) return false;
2814
2815 return true;
2816 }
2817
2818 function render_login_form($link, $form_id = 0) {
2819 switch ($form_id) {
2820 case 0:
2821 require_once "login_form.php";
2822 break;
2823 case 1:
2824 require_once "mobile/login_form.php";
2825 break;
2826 }
2827 exit;
2828 }
2829
2830 // from http://developer.apple.com/internet/safari/faq.html
2831 function no_cache_incantation() {
2832 header("Expires: Mon, 22 Dec 1980 00:00:00 GMT"); // Happy birthday to me :)
2833 header("Last-Modified: " . gmdate("D, d M Y H:i:s") . " GMT"); // always modified
2834 header("Cache-Control: no-store, no-cache, must-revalidate, max-age=0"); // HTTP/1.1
2835 header("Cache-Control: post-check=0, pre-check=0", false);
2836 header("Pragma: no-cache"); // HTTP/1.0
2837 }
2838
2839 function format_warning($msg, $id = "") {
2840 global $link;
2841 return "<div class=\"warning\" id=\"$id\">
2842 <img src=\"".theme_image($link, "images/sign_excl.svg")."\">$msg</div>";
2843 }
2844
2845 function format_notice($msg, $id = "") {
2846 global $link;
2847 return "<div class=\"notice\" id=\"$id\">
2848 <img src=\"".theme_image($link, "images/sign_info.svg")."\">$msg</div>";
2849 }
2850
2851 function format_error($msg, $id = "") {
2852 global $link;
2853 return "<div class=\"error\" id=\"$id\">
2854 <img src=\"".theme_image($link, "images/sign_excl.svg")."\">$msg</div>";
2855 }
2856
2857 function print_notice($msg) {
2858 return print format_notice($msg);
2859 }
2860
2861 function print_warning($msg) {
2862 return print format_warning($msg);
2863 }
2864
2865 function print_error($msg) {
2866 return print format_error($msg);
2867 }
2868
2869
2870 function T_sprintf() {
2871 $args = func_get_args();
2872 return vsprintf(__(array_shift($args)), $args);
2873 }
2874
2875 function format_inline_player($link, $url, $ctype) {
2876
2877 $entry = "";
2878
2879 $url = htmlspecialchars($url);
2880
2881 if (strpos($ctype, "audio/") === 0) {
2882
2883 if ($_SESSION["hasAudio"] && (strpos($ctype, "ogg") !== false ||
2884 strpos($_SERVER['HTTP_USER_AGENT'], "Chrome") !== false ||
2885 strpos($_SERVER['HTTP_USER_AGENT'], "Safari") !== false )) {
2886
2887 $id = 'AUDIO-' . uniqid();
2888
2889 $entry .= "<audio id=\"$id\"\" controls style='display : none'>
2890 <source type=\"$ctype\" src=\"$url\"></source>
2891 </audio>";
2892
2893 $entry .= "<span onclick=\"player(this)\"
2894 title=\"".__("Click to play")."\" status=\"0\"
2895 class=\"player\" audio-id=\"$id\">".__("Play")."</span>";
2896
2897 } else {
2898
2899 $entry .= "<object type=\"application/x-shockwave-flash\"
2900 data=\"lib/button/musicplayer.swf?song_url=$url\"
2901 width=\"17\" height=\"17\" style='float : left; margin-right : 5px;'>
2902 <param name=\"movie\"
2903 value=\"lib/button/musicplayer.swf?song_url=$url\" />
2904 </object>";
2905 }
2906
2907 if ($entry) $entry .= "&nbsp; <a target=\"_blank\"
2908 href=\"$url\">" . basename($url) . "</a>";
2909
2910 return $entry;
2911
2912 }
2913
2914 return "";
2915
2916 /* $filename = substr($url, strrpos($url, "/")+1);
2917
2918 $entry .= " <a target=\"_blank\" href=\"" . htmlspecialchars($url) . "\">" .
2919 $filename . " (" . $ctype . ")" . "</a>"; */
2920
2921 }
2922
2923 function format_article($link, $id, $mark_as_read = true, $zoom_mode = false, $owner_uid = false) {
2924 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
2925
2926 $rv = array();
2927
2928 $rv['id'] = $id;
2929
2930 /* we can figure out feed_id from article id anyway, why do we
2931 * pass feed_id here? let's ignore the argument :( */
2932
2933 $result = db_query($link, "SELECT feed_id FROM ttrss_user_entries
2934 WHERE ref_id = '$id'");
2935
2936 $feed_id = (int) db_fetch_result($result, 0, "feed_id");
2937
2938 $rv['feed_id'] = $feed_id;
2939
2940 //if (!$zoom_mode) { print "<article id='$id'><![CDATA["; };
2941
2942 if ($mark_as_read) {
2943 $result = db_query($link, "UPDATE ttrss_user_entries
2944 SET unread = false,last_read = NOW()
2945 WHERE ref_id = '$id' AND owner_uid = $owner_uid");
2946
2947 ccache_update($link, $feed_id, $owner_uid);
2948 }
2949
2950 $result = db_query($link, "SELECT id,title,link,content,feed_id,comments,int_id,
2951 ".SUBSTRING_FOR_DATE."(updated,1,16) as updated,
2952 (SELECT site_url FROM ttrss_feeds WHERE id = feed_id) as site_url,
2953 num_comments,
2954 tag_cache,
2955 author,
2956 orig_feed_id,
2957 note,
2958 cached_content
2959 FROM ttrss_entries,ttrss_user_entries
2960 WHERE id = '$id' AND ref_id = id AND owner_uid = $owner_uid");
2961
2962 if ($result) {
2963
2964 $line = db_fetch_assoc($result);
2965
2966 $tag_cache = $line["tag_cache"];
2967
2968 $line["tags"] = get_article_tags($link, $id, $owner_uid, $line["tag_cache"]);
2969 unset($line["tag_cache"]);
2970
2971 $line["content"] = sanitize($link, $line["content"], false, $owner_uid, $line["site_url"]);
2972
2973 global $pluginhost;
2974
2975 foreach ($pluginhost->get_hooks($pluginhost::HOOK_RENDER_ARTICLE) as $p) {
2976 $line = $p->hook_render_article($line);
2977 }
2978
2979 $num_comments = $line["num_comments"];
2980 $entry_comments = "";
2981
2982 if ($num_comments > 0) {
2983 if ($line["comments"]) {
2984 $comments_url = htmlspecialchars($line["comments"]);
2985 } else {
2986 $comments_url = htmlspecialchars($line["link"]);
2987 }
2988 $entry_comments = "<a target='_blank' href=\"$comments_url\">$num_comments comments</a>";
2989 } else {
2990 if ($line["comments"] && $line["link"] != $line["comments"]) {
2991 $entry_comments = "<a target='_blank' href=\"".htmlspecialchars($line["comments"])."\">comments</a>";
2992 }
2993 }
2994
2995 if ($zoom_mode) {
2996 header("Content-Type: text/html");
2997 $rv['content'] .= "<html><head>
2998 <meta http-equiv=\"Content-Type\" content=\"text/html; charset=utf-8\"/>
2999 <title>Tiny Tiny RSS - ".$line["title"]."</title>
3000 <link rel=\"stylesheet\" type=\"text/css\" href=\"tt-rss.css\">
3001 </head><body>";
3002 }
3003
3004 $title_escaped = htmlspecialchars($line['title']);
3005
3006 $rv['content'] .= "<div id=\"PTITLE-FULL-$id\" style=\"display : none\">" .
3007 strip_tags($line['title']) . "</div>";
3008
3009 $rv['content'] .= "<div class=\"postReply\" id=\"POST-$id\">";
3010
3011 $rv['content'] .= "<div class=\"postHeader\" id=\"POSTHDR-$id\">";
3012
3013 $entry_author = $line["author"];
3014
3015 if ($entry_author) {
3016 $entry_author = __(" - ") . $entry_author;
3017 }
3018
3019 $parsed_updated = make_local_datetime($link, $line["updated"], true,
3020 $owner_uid, true);
3021
3022 $rv['content'] .= "<div class=\"postDate\">$parsed_updated</div>";
3023
3024 if ($line["link"]) {
3025 $rv['content'] .= "<div class='postTitle'><a target='_blank'
3026 title=\"".htmlspecialchars($line['title'])."\"
3027 href=\"" .
3028 htmlspecialchars($line["link"]) . "\">" .
3029 $line["title"] .
3030 "<span class='author'>$entry_author</span></a></div>";
3031 } else {
3032 $rv['content'] .= "<div class='postTitle'>" . $line["title"] . "$entry_author</div>";
3033 }
3034
3035 $tags_str = format_tags_string($line["tags"], $id);
3036 $tags_str_full = join(", ", $line["tags"]);
3037
3038 if (!$tags_str_full) $tags_str_full = __("no tags");
3039
3040 if (!$entry_comments) $entry_comments = "&nbsp;"; # placeholder
3041
3042 $rv['content'] .= "<div class='postTags' style='float : right'>
3043 <img src='".theme_image($link, 'images/tag.png')."'
3044 class='tagsPic' alt='Tags' title='Tags'>&nbsp;";
3045
3046 if (!$zoom_mode) {
3047 $rv['content'] .= "<span id=\"ATSTR-$id\">$tags_str</span>
3048 <a title=\"".__('Edit tags for this article')."\"
3049 href=\"#\" onclick=\"editArticleTags($id, $feed_id)\">(+)</a>";
3050
3051 $rv['content'] .= "<div dojoType=\"dijit.Tooltip\"
3052 id=\"ATSTRTIP-$id\" connectId=\"ATSTR-$id\"
3053 position=\"below\">$tags_str_full</div>";
3054
3055 global $pluginhost;
3056
3057 foreach ($pluginhost->get_hooks($pluginhost::HOOK_ARTICLE_BUTTON) as $p) {
3058 $rv['content'] .= $p->hook_article_button($line);
3059 }
3060
3061
3062 } else {
3063 $tags_str = strip_tags($tags_str);
3064 $rv['content'] .= "<span id=\"ATSTR-$id\">$tags_str</span>";
3065 }
3066 $rv['content'] .= "</div>";
3067 $rv['content'] .= "<div clear='both'>$entry_comments</div>";
3068
3069 if ($line["orig_feed_id"]) {
3070
3071 $tmp_result = db_query($link, "SELECT * FROM ttrss_archived_feeds
3072 WHERE id = ".$line["orig_feed_id"]);
3073
3074 if (db_num_rows($tmp_result) != 0) {
3075
3076 $rv['content'] .= "<div clear='both'>";
3077 $rv['content'] .= __("Originally from:");
3078
3079 $rv['content'] .= "&nbsp;";
3080
3081 $tmp_line = db_fetch_assoc($tmp_result);
3082
3083 $rv['content'] .= "<a target='_blank'
3084 href=' " . htmlspecialchars($tmp_line['site_url']) . "'>" .
3085 $tmp_line['title'] . "</a>";
3086
3087 $rv['content'] .= "&nbsp;";
3088
3089 $rv['content'] .= "<a target='_blank' href='" . htmlspecialchars($tmp_line['feed_url']) . "'>";
3090 $rv['content'] .= "<img title='".__('Feed URL')."'class='tinyFeedIcon' src='images/pub_set.svg'></a>";
3091
3092 $rv['content'] .= "</div>";
3093 }
3094 }
3095
3096 $rv['content'] .= "</div>";
3097
3098 $rv['content'] .= "<div id=\"POSTNOTE-$id\">";
3099 if ($line['note']) {
3100 $rv['content'] .= format_article_note($id, $line['note'], !$zoom_mode);
3101 }
3102 $rv['content'] .= "</div>";
3103
3104 $rv['content'] .= "<div class=\"postContent\">";
3105
3106 // N-grams
3107
3108 if (DB_TYPE == "pgsql" and defined('_NGRAM_TITLE_RELATED_THRESHOLD')) {
3109
3110 $ngram_result = db_query($link, "SELECT id,title FROM
3111 ttrss_entries,ttrss_user_entries
3112 WHERE ref_id = id AND updated >= NOW() - INTERVAL '7 day'
3113 AND similarity(title, '$title_escaped') >= "._NGRAM_TITLE_RELATED_THRESHOLD."
3114 AND title != '$title_escaped'
3115 AND owner_uid = $owner_uid");
3116
3117 if (db_num_rows($ngram_result) > 0) {
3118 $rv['content'] .= "<div dojoType=\"dijit.form.DropDownButton\">".
3119 "<span>" . __('Related')."</span>";
3120 $rv['content'] .= "<div dojoType=\"dijit.Menu\" style=\"display: none;\">";
3121
3122 while ($nline = db_fetch_assoc($ngram_result)) {
3123 $rv['content'] .= "<div onclick=\"hlOpenInNewTab(null,".$nline['id'].")\"
3124 dojoType=\"dijit.MenuItem\">".$nline['title']."</div>";
3125
3126 }
3127 $rv['content'] .= "</div></div><br/";
3128 }
3129 }
3130
3131 $rv['content'] .= $line["content"];
3132
3133 $rv['content'] .= format_article_enclosures($link, $id,
3134 $always_display_enclosures, $line["content"]);
3135
3136 $rv['content'] .= "</div>";
3137
3138 $rv['content'] .= "</div>";
3139
3140 }
3141
3142 if ($zoom_mode) {
3143 $rv['content'] .= "
3144 <div style=\"text-align : center\">
3145 <button onclick=\"return window.close()\">".
3146 __("Close this window")."</button></div>";
3147 $rv['content'] .= "</body></html>";
3148 }
3149
3150 return $rv;
3151
3152 }
3153
3154 function print_checkpoint($n, $s) {
3155 $ts = microtime(true);
3156 echo sprintf("<!-- CP[$n] %.4f seconds -->", $ts - $s);
3157 return $ts;
3158 }
3159
3160 function sanitize_tag($tag) {
3161 $tag = trim($tag);
3162
3163 $tag = mb_strtolower($tag, 'utf-8');
3164
3165 $tag = preg_replace('/[\'\"\+\>\<]/', "", $tag);
3166
3167 // $tag = str_replace('"', "", $tag);
3168 // $tag = str_replace("+", " ", $tag);
3169 $tag = str_replace("technorati tag: ", "", $tag);
3170
3171 return $tag;
3172 }
3173
3174 function get_self_url_prefix() {
3175 if (strrpos(SELF_URL_PATH, "/") === strlen(SELF_URL_PATH)-1) {
3176 return substr(SELF_URL_PATH, 0, strlen(SELF_URL_PATH)-1);
3177 } else {
3178 return SELF_URL_PATH;
3179 }
3180 }
3181
3182 /**
3183 * Compute the Mozilla Firefox feed adding URL from server HOST and REQUEST_URI.
3184 *
3185 * @return string The Mozilla Firefox feed adding URL.
3186 */
3187 function add_feed_url() {
3188 //$url_path = ($_SERVER['HTTPS'] != "on" ? 'http://' : 'https://') . $_SERVER["HTTP_HOST"] . parse_url($_SERVER["REQUEST_URI"], PHP_URL_PATH);
3189
3190 $url_path = get_self_url_prefix() .
3191 "/public.php?op=subscribe&feed_url=%s";
3192 return $url_path;
3193 } // function add_feed_url
3194
3195 function encrypt_password($pass, $salt = '', $mode2 = false) {
3196 if ($salt && $mode2) {
3197 return "MODE2:" . hash('sha256', $salt . $pass);
3198 } else if ($salt) {
3199 return "SHA1X:" . sha1("$salt:$pass");
3200 } else {
3201 return "SHA1:" . sha1($pass);
3202 }
3203 } // function encrypt_password
3204
3205 function load_filters($link, $feed_id, $owner_uid, $action_id = false) {
3206 $filters = array();
3207
3208 $cat_id = (int)getFeedCategory($link, $feed_id);
3209
3210 $result = db_query($link, "SELECT * FROM ttrss_filters2 WHERE
3211 owner_uid = $owner_uid AND enabled = true");
3212
3213 $check_cats = join(",", array_merge(
3214 getParentCategories($link, $cat_id, $owner_uid),
3215 array($cat_id)));
3216
3217 while ($line = db_fetch_assoc($result)) {
3218 $filter_id = $line["id"];
3219
3220 $result2 = db_query($link, "SELECT
3221 r.reg_exp, r.feed_id, r.cat_id, r.cat_filter, t.name AS type_name
3222 FROM ttrss_filters2_rules AS r,
3223 ttrss_filter_types AS t
3224 WHERE
3225 (cat_id IS NULL OR cat_id IN ($check_cats)) AND
3226 (feed_id IS NULL OR feed_id = '$feed_id') AND
3227 filter_type = t.id AND filter_id = '$filter_id'");
3228
3229 $rules = array();
3230 $actions = array();
3231
3232 while ($rule_line = db_fetch_assoc($result2)) {
3233 # print_r($rule_line);
3234
3235 $rule = array();
3236 $rule["reg_exp"] = $rule_line["reg_exp"];
3237 $rule["type"] = $rule_line["type_name"];
3238
3239 array_push($rules, $rule);
3240 }
3241
3242 $result2 = db_query($link, "SELECT a.action_param,t.name AS type_name
3243 FROM ttrss_filters2_actions AS a,
3244 ttrss_filter_actions AS t
3245 WHERE
3246 action_id = t.id AND filter_id = '$filter_id'");
3247
3248 while ($action_line = db_fetch_assoc($result2)) {
3249 # print_r($action_line);
3250
3251 $action = array();
3252 $action["type"] = $action_line["type_name"];
3253 $action["param"] = $action_line["action_param"];
3254
3255 array_push($actions, $action);
3256 }
3257
3258
3259 $filter = array();
3260 $filter["match_any_rule"] = sql_bool_to_bool($line["match_any_rule"]);
3261 $filter["rules"] = $rules;
3262 $filter["actions"] = $actions;
3263
3264 if (count($rules) > 0 && count($actions) > 0) {
3265 array_push($filters, $filter);
3266 }
3267 }
3268
3269 return $filters;
3270 }
3271
3272 function get_score_pic($score) {
3273 if ($score > 100) {
3274 return "score_high.png";
3275 } else if ($score > 0) {
3276 return "score_half_high.png";
3277 } else if ($score < -100) {
3278 return "score_low.png";
3279 } else if ($score < 0) {
3280 return "score_half_low.png";
3281 } else {
3282 return "score_neutral.png";
3283 }
3284 }
3285
3286 function feed_has_icon($id) {
3287 return is_file(ICONS_DIR . "/$id.ico") && filesize(ICONS_DIR . "/$id.ico") > 0;
3288 }
3289
3290 function init_connection($link) {
3291 if ($link) {
3292
3293 if (DB_TYPE == "pgsql") {
3294 pg_query($link, "set client_encoding = 'UTF-8'");
3295 pg_set_client_encoding("UNICODE");
3296 pg_query($link, "set datestyle = 'ISO, european'");
3297 pg_query($link, "set TIME ZONE 0");
3298 } else {
3299 db_query($link, "SET time_zone = '+0:0'");
3300
3301 if (defined('MYSQL_CHARSET') && MYSQL_CHARSET) {
3302 db_query($link, "SET NAMES " . MYSQL_CHARSET);
3303 }
3304 }
3305
3306 global $pluginhost;
3307
3308 $pluginhost = new PluginHost($link);
3309 $pluginhost->load(PLUGINS, $pluginhost::KIND_ALL);
3310
3311 return true;
3312 } else {
3313 print "Unable to connect to database:" . db_last_error();
3314 return false;
3315 }
3316 }
3317
3318 function format_tags_string($tags, $id) {
3319
3320 $tags_str = "";
3321 $tags_nolinks_str = "";
3322
3323 $num_tags = 0;
3324
3325 $tag_limit = 6;
3326
3327 $formatted_tags = array();
3328
3329 foreach ($tags as $tag) {
3330 $num_tags++;
3331 $tag_escaped = str_replace("'", "\\'", $tag);
3332
3333 if (mb_strlen($tag) > 30) {
3334 $tag = truncate_string($tag, 30);
3335 }
3336
3337 $tag_str = "<a href=\"javascript:viewfeed('$tag_escaped')\">$tag</a>";
3338
3339 array_push($formatted_tags, $tag_str);
3340
3341 $tmp_tags_str = implode(", ", $formatted_tags);
3342
3343 if ($num_tags == $tag_limit || mb_strlen($tmp_tags_str) > 150) {
3344 break;
3345 }
3346 }
3347
3348 $tags_str = implode(", ", $formatted_tags);
3349
3350 if ($num_tags < count($tags)) {
3351 $tags_str .= ", &hellip;";
3352 }
3353
3354 if ($num_tags == 0) {
3355 $tags_str = __("no tags");
3356 }
3357
3358 return $tags_str;
3359
3360 }
3361
3362 function format_article_labels($labels, $id) {
3363
3364 $labels_str = "";
3365
3366 foreach ($labels as $l) {
3367 $labels_str .= sprintf("<span class='hlLabelRef'
3368 style='color : %s; background-color : %s'>%s</span>",
3369 $l[2], $l[3], $l[1]);
3370 }
3371
3372 return $labels_str;
3373
3374 }
3375
3376 function format_article_note($id, $note, $allow_edit = true) {
3377
3378 $str = "<div class='articleNote' onclick=\"editArticleNote($id)\">
3379 <div class='noteEdit' onclick=\"editArticleNote($id)\">".
3380 ($allow_edit ? __('(edit note)') : "")."</div>$note</div>";
3381
3382 return $str;
3383 }
3384
3385
3386 function get_feed_category($link, $feed_cat, $parent_cat_id = false) {
3387 if ($parent_cat_id) {
3388 $parent_qpart = "parent_cat = '$parent_cat_id'";
3389 $parent_insert = "'$parent_cat_id'";
3390 } else {
3391 $parent_qpart = "parent_cat IS NULL";
3392 $parent_insert = "NULL";
3393 }
3394
3395 $result = db_query($link,
3396 "SELECT id FROM ttrss_feed_categories
3397 WHERE $parent_qpart AND title = '$feed_cat' AND owner_uid = ".$_SESSION["uid"]);
3398
3399 if (db_num_rows($result) == 0) {
3400 return false;
3401 } else {
3402 return db_fetch_result($result, 0, "id");
3403 }
3404 }
3405
3406 function add_feed_category($link, $feed_cat, $parent_cat_id = false) {
3407
3408 if (!$feed_cat) return false;
3409
3410 db_query($link, "BEGIN");
3411
3412 if ($parent_cat_id) {
3413 $parent_qpart = "parent_cat = '$parent_cat_id'";
3414 $parent_insert = "'$parent_cat_id'";
3415 } else {
3416 $parent_qpart = "parent_cat IS NULL";
3417 $parent_insert = "NULL";
3418 }
3419
3420 $result = db_query($link,
3421 "SELECT id FROM ttrss_feed_categories
3422 WHERE $parent_qpart AND title = '$feed_cat' AND owner_uid = ".$_SESSION["uid"]);
3423
3424 if (db_num_rows($result) == 0) {
3425
3426 $result = db_query($link,
3427 "INSERT INTO ttrss_feed_categories (owner_uid,title,parent_cat)
3428 VALUES ('".$_SESSION["uid"]."', '$feed_cat', $parent_insert)");
3429
3430 db_query($link, "COMMIT");
3431
3432 return true;
3433 }
3434
3435 return false;
3436 }
3437
3438 function getArticleFeed($link, $id) {
3439 $result = db_query($link, "SELECT feed_id FROM ttrss_user_entries
3440 WHERE ref_id = '$id' AND owner_uid = " . $_SESSION["uid"]);
3441
3442 if (db_num_rows($result) != 0) {
3443 return db_fetch_result($result, 0, "feed_id");
3444 } else {
3445 return 0;
3446 }
3447 }
3448
3449 /**
3450 * Fixes incomplete URLs by prepending "http://".
3451 * Also replaces feed:// with http://, and
3452 * prepends a trailing slash if the url is a domain name only.
3453 *
3454 * @param string $url Possibly incomplete URL
3455 *
3456 * @return string Fixed URL.
3457 */
3458 function fix_url($url) {
3459 if (strpos($url, '://') === false) {
3460 $url = 'http://' . $url;
3461 } else if (substr($url, 0, 5) == 'feed:') {
3462 $url = 'http:' . substr($url, 5);
3463 }
3464
3465 //prepend slash if the URL has no slash in it
3466 // "http://www.example" -> "http://www.example/"
3467 if (strpos($url, '/', strpos($url, ':') + 3) === false) {
3468 $url .= '/';
3469 }
3470
3471 if ($url != "http:///")
3472 return $url;
3473 else
3474 return '';
3475 }
3476
3477 function validate_feed_url($url) {
3478 $parts = parse_url($url);
3479
3480 return ($parts['scheme'] == 'http' || $parts['scheme'] == 'feed' || $parts['scheme'] == 'https');
3481
3482 }
3483
3484 function get_article_enclosures($link, $id) {
3485
3486 $query = "SELECT * FROM ttrss_enclosures
3487 WHERE post_id = '$id' AND content_url != ''";
3488
3489 $rv = array();
3490
3491 $result = db_query($link, $query);
3492
3493 if (db_num_rows($result) > 0) {
3494 while ($line = db_fetch_assoc($result)) {
3495 array_push($rv, $line);
3496 }
3497 }
3498
3499 return $rv;
3500 }
3501
3502 function save_email_address($link, $email) {
3503 // FIXME: implement persistent storage of emails
3504
3505 if (!$_SESSION['stored_emails'])
3506 $_SESSION['stored_emails'] = array();
3507
3508 if (!in_array($email, $_SESSION['stored_emails']))
3509 array_push($_SESSION['stored_emails'], $email);
3510 }
3511
3512
3513 function get_feed_access_key($link, $feed_id, $is_cat, $owner_uid = false) {
3514
3515 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
3516
3517 $sql_is_cat = bool_to_sql_bool($is_cat);
3518
3519 $result = db_query($link, "SELECT access_key FROM ttrss_access_keys
3520 WHERE feed_id = '$feed_id' AND is_cat = $sql_is_cat
3521 AND owner_uid = " . $owner_uid);
3522
3523 if (db_num_rows($result) == 1) {
3524 return db_fetch_result($result, 0, "access_key");
3525 } else {
3526 $key = db_escape_string(sha1(uniqid(rand(), true)));
3527
3528 $result = db_query($link, "INSERT INTO ttrss_access_keys
3529 (access_key, feed_id, is_cat, owner_uid)
3530 VALUES ('$key', '$feed_id', $sql_is_cat, '$owner_uid')");
3531
3532 return $key;
3533 }
3534 return false;
3535 }
3536
3537 function get_feeds_from_html($url, $content)
3538 {
3539 $url = fix_url($url);
3540 $baseUrl = substr($url, 0, strrpos($url, '/') + 1);
3541
3542 libxml_use_internal_errors(true);
3543
3544 $doc = new DOMDocument();
3545 $doc->loadHTML($content);
3546 $xpath = new DOMXPath($doc);
3547 $entries = $xpath->query('/html/head/link[@rel="alternate"]');
3548 $feedUrls = array();
3549 foreach ($entries as $entry) {
3550 if ($entry->hasAttribute('href')) {
3551 $title = $entry->getAttribute('title');
3552 if ($title == '') {
3553 $title = $entry->getAttribute('type');
3554 }
3555 $feedUrl = rewrite_relative_url(
3556 $baseUrl, $entry->getAttribute('href')
3557 );
3558 $feedUrls[$feedUrl] = $title;
3559 }
3560 }
3561 return $feedUrls;
3562 }
3563
3564 function is_html($content) {
3565 return preg_match("/<html|DOCTYPE html/i", substr($content, 0, 20)) !== 0;
3566 }
3567
3568 function url_is_html($url, $login = false, $pass = false) {
3569 return is_html(fetch_file_contents($url, false, $login, $pass));
3570 }
3571
3572 function print_label_select($link, $name, $value, $attributes = "") {
3573
3574 $result = db_query($link, "SELECT caption FROM ttrss_labels2
3575 WHERE owner_uid = '".$_SESSION["uid"]."' ORDER BY caption");
3576
3577 print "<select default=\"$value\" name=\"" . htmlspecialchars($name) .
3578 "\" $attributes onchange=\"labelSelectOnChange(this)\" >";
3579
3580 while ($line = db_fetch_assoc($result)) {
3581
3582 $issel = ($line["caption"] == $value) ? "selected=\"1\"" : "";
3583
3584 print "<option value=\"".htmlspecialchars($line["caption"])."\"
3585 $issel>" . htmlspecialchars($line["caption"]) . "</option>";
3586
3587 }
3588
3589 # print "<option value=\"ADD_LABEL\">" .__("Add label...") . "</option>";
3590
3591 print "</select>";
3592
3593
3594 }
3595
3596 function format_article_enclosures($link, $id, $always_display_enclosures,
3597 $article_content) {
3598
3599 $result = get_article_enclosures($link, $id);
3600 $rv = '';
3601
3602 if (count($result) > 0) {
3603
3604 $entries_html = array();
3605 $entries = array();
3606 $entries_inline = array();
3607
3608 foreach ($result as $line) {
3609
3610 $url = $line["content_url"];
3611 $ctype = $line["content_type"];
3612
3613 if (!$ctype) $ctype = __("unknown type");
3614
3615 $filename = substr($url, strrpos($url, "/")+1);
3616
3617 $player = format_inline_player($link, $url, $ctype);
3618
3619 if ($player) array_push($entries_inline, $player);
3620
3621 # $entry .= " <a target=\"_blank\" href=\"" . htmlspecialchars($url) . "\">" .
3622 # $filename . " (" . $ctype . ")" . "</a>";
3623
3624 $entry = "<div onclick=\"window.open('".htmlspecialchars($url)."')\"
3625 dojoType=\"dijit.MenuItem\">$filename ($ctype)</div>";
3626
3627 array_push($entries_html, $entry);
3628
3629 $entry = array();
3630
3631 $entry["type"] = $ctype;
3632 $entry["filename"] = $filename;
3633 $entry["url"] = $url;
3634
3635 array_push($entries, $entry);
3636 }
3637
3638 if ($_SESSION['uid'] && !get_pref($link, "STRIP_IMAGES")) {
3639 if ($always_display_enclosures ||
3640 !preg_match("/<img/i", $article_content)) {
3641
3642 foreach ($entries as $entry) {
3643
3644 if (preg_match("/image/", $entry["type"]) ||
3645 preg_match("/\.(jpg|png|gif|bmp)/i", $entry["filename"])) {
3646
3647 $rv .= "<p><img
3648 alt=\"".htmlspecialchars($entry["filename"])."\"
3649 src=\"" .htmlspecialchars($entry["url"]) . "\"/></p>";
3650
3651 }
3652 }
3653 }
3654 }
3655
3656 if (count($entries_inline) > 0) {
3657 $rv .= "<hr clear='both'/>";
3658 foreach ($entries_inline as $entry) { $rv .= $entry; };
3659 $rv .= "<hr clear='both'/>";
3660 }
3661
3662 $rv .= "<br/><div dojoType=\"dijit.form.DropDownButton\">".
3663 "<span>" . __('Attachments')."</span>";
3664 $rv .= "<div dojoType=\"dijit.Menu\" style=\"display: none;\">";
3665
3666 foreach ($entries_html as $entry) { $rv .= $entry; };
3667
3668 $rv .= "</div></div>";
3669 }
3670
3671 return $rv;
3672 }
3673
3674 function getLastArticleId($link) {
3675 $result = db_query($link, "SELECT MAX(ref_id) AS id FROM ttrss_user_entries
3676 WHERE owner_uid = " . $_SESSION["uid"]);
3677
3678 if (db_num_rows($result) == 1) {
3679 return db_fetch_result($result, 0, "id");
3680 } else {
3681 return -1;
3682 }
3683 }
3684
3685 function build_url($parts) {
3686 return $parts['scheme'] . "://" . $parts['host'] . $parts['path'];
3687 }
3688
3689 /**
3690 * Converts a (possibly) relative URL to a absolute one.
3691 *
3692 * @param string $url Base URL (i.e. from where the document is)
3693 * @param string $rel_url Possibly relative URL in the document
3694 *
3695 * @return string Absolute URL
3696 */
3697 function rewrite_relative_url($url, $rel_url) {
3698 if (strpos($rel_url, "magnet:") === 0) {
3699 return $rel_url;
3700 } else if (strpos($rel_url, "://") !== false) {
3701 return $rel_url;
3702 } else if (strpos($rel_url, "//") === 0) {
3703 # protocol-relative URL (rare but they exist)
3704 return $rel_url;
3705 } else if (strpos($rel_url, "/") === 0)
3706 {
3707 $parts = parse_url($url);
3708 $parts['path'] = $rel_url;
3709
3710 return build_url($parts);
3711
3712 } else {
3713 $parts = parse_url($url);
3714 if (!isset($parts['path'])) {
3715 $parts['path'] = '/';
3716 }
3717 $dir = $parts['path'];
3718 if (substr($dir, -1) !== '/') {
3719 $dir = dirname($parts['path']);
3720 $dir !== '/' && $dir .= '/';
3721 }
3722 $parts['path'] = $dir . $rel_url;
3723
3724 return build_url($parts);
3725 }
3726 }
3727
3728 function sphinx_search($query, $offset = 0, $limit = 30) {
3729 require_once 'lib/sphinxapi.php';
3730
3731 $sphinxClient = new SphinxClient();
3732
3733 $sphinxClient->SetServer('localhost', 9312);
3734 $sphinxClient->SetConnectTimeout(1);
3735
3736 $sphinxClient->SetFieldWeights(array('title' => 70, 'content' => 30,
3737 'feed_title' => 20));
3738
3739 $sphinxClient->SetMatchMode(SPH_MATCH_EXTENDED2);
3740 $sphinxClient->SetRankingMode(SPH_RANK_PROXIMITY_BM25);
3741 $sphinxClient->SetLimits($offset, $limit, 1000);
3742 $sphinxClient->SetArrayResult(false);
3743 $sphinxClient->SetFilter('owner_uid', array($_SESSION['uid']));
3744
3745 $result = $sphinxClient->Query($query, SPHINX_INDEX);
3746
3747 $ids = array();
3748
3749 if (is_array($result['matches'])) {
3750 foreach (array_keys($result['matches']) as $int_id) {
3751 $ref_id = $result['matches'][$int_id]['attrs']['ref_id'];
3752 array_push($ids, $ref_id);
3753 }
3754 }
3755
3756 return $ids;
3757 }
3758
3759 function cleanup_tags($link, $days = 14, $limit = 1000) {
3760
3761 if (DB_TYPE == "pgsql") {
3762 $interval_query = "date_updated < NOW() - INTERVAL '$days days'";
3763 } else if (DB_TYPE == "mysql") {
3764 $interval_query = "date_updated < DATE_SUB(NOW(), INTERVAL $days DAY)";
3765 }
3766
3767 $tags_deleted = 0;
3768
3769 while ($limit > 0) {
3770 $limit_part = 500;
3771
3772 $query = "SELECT ttrss_tags.id AS id
3773 FROM ttrss_tags, ttrss_user_entries, ttrss_entries
3774 WHERE post_int_id = int_id AND $interval_query AND
3775 ref_id = ttrss_entries.id AND tag_cache != '' LIMIT $limit_part";
3776
3777 $result = db_query($link, $query);
3778
3779 $ids = array();
3780
3781 while ($line = db_fetch_assoc($result)) {
3782 array_push($ids, $line['id']);
3783 }
3784
3785 if (count($ids) > 0) {
3786 $ids = join(",", $ids);
3787 print ".";
3788
3789 $tmp_result = db_query($link, "DELETE FROM ttrss_tags WHERE id IN ($ids)");
3790 $tags_deleted += db_affected_rows($link, $tmp_result);
3791 } else {
3792 break;
3793 }
3794
3795 $limit -= $limit_part;
3796 }
3797
3798 print "\n";
3799
3800 return $tags_deleted;
3801 }
3802
3803 function print_user_stylesheet($link) {
3804 $value = get_pref($link, 'USER_STYLESHEET');
3805
3806 if ($value) {
3807 print "<style type=\"text/css\">";
3808 print str_replace("<br/>", "\n", $value);
3809 print "</style>";
3810 }
3811
3812 }
3813
3814 function rewrite_urls($html) {
3815 libxml_use_internal_errors(true);
3816
3817 $charset_hack = '<head>
3818 <meta http-equiv="Content-Type" content="text/html; charset=utf-8"/>
3819 </head>';
3820
3821 $doc = new DOMDocument();
3822 $doc->loadHTML($charset_hack . $html);
3823 $xpath = new DOMXPath($doc);
3824
3825 $entries = $xpath->query('//*/text()');
3826
3827 foreach ($entries as $entry) {
3828 if (strstr($entry->wholeText, "://") !== false) {
3829 $text = preg_replace("/((?<!=.)((http|https|ftp)+):\/\/[^ ,!]+)/i",
3830 "<a target=\"_blank\" href=\"\\1\">\\1</a>", $entry->wholeText);
3831
3832 if ($text != $entry->wholeText) {
3833 $cdoc = new DOMDocument();
3834 $cdoc->loadHTML($charset_hack . $text);
3835
3836
3837 foreach ($cdoc->childNodes as $cnode) {
3838 $cnode = $doc->importNode($cnode, true);
3839
3840 if ($cnode) {
3841 $entry->parentNode->insertBefore($cnode);
3842 }
3843 }
3844
3845 $entry->parentNode->removeChild($entry);
3846
3847 }
3848 }
3849 }
3850
3851 $node = $doc->getElementsByTagName('body')->item(0);
3852
3853 // http://tt-rss.org/forum/viewtopic.php?f=1&t=970
3854 if ($node)
3855 return $doc->saveXML($node);
3856 else
3857 return $html;
3858 }
3859
3860 function filter_to_sql($link, $filter, $owner_uid) {
3861 $query = array();
3862
3863 if (DB_TYPE == "pgsql")
3864 $reg_qpart = "~";
3865 else
3866 $reg_qpart = "REGEXP";
3867
3868 foreach ($filter["rules"] AS $rule) {
3869 $regexp_valid = preg_match('/' . $rule['reg_exp'] . '/',
3870 $rule['reg_exp']) !== FALSE;
3871
3872 if ($regexp_valid) {
3873
3874 $rule['reg_exp'] = db_escape_string($rule['reg_exp']);
3875
3876 switch ($rule["type"]) {
3877 case "title":
3878 $qpart = "LOWER(ttrss_entries.title) $reg_qpart LOWER('".
3879 $rule['reg_exp'] . "')";
3880 break;
3881 case "content":
3882 $qpart = "LOWER(ttrss_entries.content) $reg_qpart LOWER('".
3883 $rule['reg_exp'] . "')";
3884 break;
3885 case "both":
3886 $qpart = "LOWER(ttrss_entries.title) $reg_qpart LOWER('".
3887 $rule['reg_exp'] . "') OR LOWER(" .
3888 "ttrss_entries.content) $reg_qpart LOWER('" . $rule['reg_exp'] . "')";
3889 break;
3890 case "tag":
3891 $qpart = "LOWER(ttrss_user_entries.tag_cache) $reg_qpart LOWER('".
3892 $rule['reg_exp'] . "')";
3893 break;
3894 case "link":
3895 $qpart = "LOWER(ttrss_entries.link) $reg_qpart LOWER('".
3896 $rule['reg_exp'] . "')";
3897 break;
3898 case "author":
3899 $qpart = "LOWER(ttrss_entries.author) $reg_qpart LOWER('".
3900 $rule['reg_exp'] . "')";
3901 break;
3902 }
3903
3904 if (isset($rule["feed_id"]) && $rule["feed_id"] > 0) {
3905 $qpart .= " AND feed_id = " . db_escape_string($rule["feed_id"]);
3906 }
3907
3908 if (isset($rule["cat_id"])) {
3909
3910 if ($rule["cat_id"] > 0) {
3911 $children = getChildCategories($link, $rule["cat_id"], $owner_uid);
3912 array_push($children, $rule["cat_id"]);
3913
3914 $children = join(",", $children);
3915
3916 $cat_qpart = "cat_id IN ($children)";
3917 } else {
3918 $cat_qpart = "cat_id IS NULL";
3919 }
3920
3921 $qpart .= " AND $cat_qpart";
3922 }
3923
3924 array_push($query, "($qpart)");
3925
3926 }
3927 }
3928
3929 if (count($query) > 0) {
3930 return "(" . join($filter["match_any_rule"] ? "OR" : "AND", $query) . ")";
3931 } else {
3932 return "(false)";
3933 }
3934 }
3935
3936 if (!function_exists('gzdecode')) {
3937 function gzdecode($string) { // no support for 2nd argument
3938 return file_get_contents('compress.zlib://data:who/cares;base64,'.
3939 base64_encode($string));
3940 }
3941 }
3942
3943 function get_random_bytes($length) {
3944 if (function_exists('openssl_random_pseudo_bytes')) {
3945 return openssl_random_pseudo_bytes($length);
3946 } else {
3947 $output = "";
3948
3949 for ($i = 0; $i < $length; $i++)
3950 $output .= chr(mt_rand(0, 255));
3951
3952 return $output;
3953 }
3954 }
3955
3956 function read_stdin() {
3957 $fp = fopen("php://stdin", "r");
3958
3959 if ($fp) {
3960 $line = trim(fgets($fp));
3961 fclose($fp);
3962 return $line;
3963 }
3964
3965 return null;
3966 }
3967
3968 function tmpdirname($path, $prefix) {
3969 // Use PHP's tmpfile function to create a temporary
3970 // directory name. Delete the file and keep the name.
3971 $tempname = tempnam($path,$prefix);
3972 if (!$tempname)
3973 return false;
3974
3975 if (!unlink($tempname))
3976 return false;
3977
3978 return $tempname;
3979 }
3980
3981 function getFeedCategory($link, $feed) {
3982 $result = db_query($link, "SELECT cat_id FROM ttrss_feeds
3983 WHERE id = '$feed'");
3984
3985 if (db_num_rows($result) > 0) {
3986 return db_fetch_result($result, 0, "cat_id");
3987 } else {
3988 return false;
3989 }
3990
3991 }
3992
3993 function implements_interface($class, $interface) {
3994 return in_array($interface, class_implements($class));
3995 }
3996
3997 function geturl($url){
3998
3999 (function_exists('curl_init')) ? '' : die('cURL Must be installed for geturl function to work. Ask your host to enable it or uncomment extension=php_curl.dll in php.ini');
4000
4001 $curl = curl_init();
4002 $header[0] = "Accept: text/xml,application/xml,application/xhtml+xml,";
4003 $header[0] .= "text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5";
4004 $header[] = "Cache-Control: max-age=0";
4005 $header[] = "Connection: keep-alive";
4006 $header[] = "Keep-Alive: 300";
4007 $header[] = "Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.7";
4008 $header[] = "Accept-Language: en-us,en;q=0.5";
4009 $header[] = "Pragma: ";
4010
4011 curl_setopt($curl, CURLOPT_URL, $url);
4012 curl_setopt($curl, CURLOPT_USERAGENT, 'Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0 Firefox/5.0');
4013 curl_setopt($curl, CURLOPT_HTTPHEADER, $header);
4014 curl_setopt($curl, CURLOPT_HEADER, true);
4015 curl_setopt($curl, CURLOPT_REFERER, $url);
4016 curl_setopt($curl, CURLOPT_ENCODING, 'gzip,deflate');
4017 curl_setopt($curl, CURLOPT_AUTOREFERER, true);
4018 curl_setopt($curl, CURLOPT_RETURNTRANSFER, true);
4019 //curl_setopt($curl, CURLOPT_FOLLOWLOCATION, true); //CURLOPT_FOLLOWLOCATION Disabled...
4020 curl_setopt($curl, CURLOPT_TIMEOUT, 60);
4021
4022 $html = curl_exec($curl);
4023
4024 $status = curl_getinfo($curl);
4025 curl_close($curl);
4026
4027 if($status['http_code']!=200){
4028 if($status['http_code'] == 301 || $status['http_code'] == 302) {
4029 list($header) = explode("\r\n\r\n", $html, 2);
4030 $matches = array();
4031 preg_match("/(Location:|URI:)[^(\n)]*/", $header, $matches);
4032 $url = trim(str_replace($matches[1],"",$matches[0]));
4033 $url_parsed = parse_url($url);
4034 return (isset($url_parsed))? geturl($url, $referer):'';
4035 }
4036 $oline='';
4037 foreach($status as $key=>$eline){$oline.='['.$key.']'.$eline.' ';}
4038 $line =$oline." \r\n ".$url."\r\n-----------------\r\n";
4039 # $handle = @fopen('./curl.error.log', 'a');
4040 # fwrite($handle, $line);
4041 return FALSE;
4042 }
4043 return $url;
4044 }
4045
4046 function get_minified_js($files) {
4047 require_once 'lib/jshrink/Minifier.php';
4048
4049 $rv = '';
4050
4051 foreach ($files as $js) {
4052 if (!isset($_GET['debug'])) {
4053 $cached_file = CACHE_DIR . "/js/$js.js";
4054
4055 if (file_exists($cached_file) &&
4056 is_readable($cached_file) &&
4057 filemtime($cached_file) >= filemtime("js/$js.js")) {
4058
4059 $rv .= file_get_contents($cached_file);
4060
4061 } else {
4062 $minified = JShrink\Minifier::minify(file_get_contents("js/$js.js"));
4063 file_put_contents($cached_file, $minified);
4064 $rv .= $minified;
4065 }
4066 } else {
4067 $rv .= file_get_contents("js/$js.js");
4068 }
4069 }
4070
4071 return $rv;
4072 }
4073
4074 function stylesheet_tag($filename) {
4075 $timestamp = filemtime($filename);
4076
4077 echo "<link rel=\"stylesheet\" type=\"text/css\" href=\"$filename?$timestamp\"/>\n";
4078 }
4079
4080 function javascript_tag($filename) {
4081 $query = "";
4082
4083 if (!(strpos($filename, "?") === FALSE)) {
4084 $query = substr($filename, strpos($filename, "?")+1);
4085 $filename = substr($filename, 0, strpos($filename, "?"));
4086 }
4087
4088 $timestamp = filemtime($filename);
4089
4090 if ($query) $timestamp .= "&$query";
4091
4092 echo "<script type=\"text/javascript\" charset=\"utf-8\" src=\"$filename?$timestamp\"></script>\n";
4093 }
4094
4095 ?>