]> git.wh0rd.org Git - tt-rss.git/blob - include/functions.php
4cc8f134da6962b90557ba9507cad915d6701ca5
[tt-rss.git] / include / functions.php
1 <?php
2         define('EXPECTED_CONFIG_VERSION', 26);
3         define('SCHEMA_VERSION', 118);
4
5         define('LABEL_BASE_INDEX', -1024);
6         define('PLUGIN_FEED_BASE_INDEX', -128);
7
8         $fetch_last_error = false;
9         $fetch_last_error_code = false;
10         $fetch_last_content_type = false;
11         $fetch_curl_used = false;
12
13         mb_internal_encoding("UTF-8");
14         date_default_timezone_set('UTC');
15         if (defined('E_DEPRECATED')) {
16                 error_reporting(E_ALL & ~E_NOTICE & ~E_DEPRECATED);
17         } else {
18                 error_reporting(E_ALL & ~E_NOTICE);
19         }
20
21         require_once 'config.php';
22
23         /**
24          * Define a constant if not already defined
25          *
26          * @param string $name The constant name.
27          * @param mixed $value The constant value.
28          * @access public
29          * @return boolean True if defined successfully or not.
30          */
31         function define_default($name, $value) {
32                 defined($name) or define($name, $value);
33         }
34
35         ///// Some defaults that you can override in config.php //////
36
37         define_default('FEED_FETCH_TIMEOUT', 45);
38         // How may seconds to wait for response when requesting feed from a site
39         define_default('FEED_FETCH_NO_CACHE_TIMEOUT', 15);
40         // How may seconds to wait for response when requesting feed from a
41         // site when that feed wasn't cached before
42         define_default('FILE_FETCH_TIMEOUT', 45);
43         // Default timeout when fetching files from remote sites
44         define_default('FILE_FETCH_CONNECT_TIMEOUT', 15);
45         // How many seconds to wait for initial response from website when
46         // fetching files from remote sites
47
48         if (DB_TYPE == "pgsql") {
49                 define('SUBSTRING_FOR_DATE', 'SUBSTRING_FOR_DATE');
50         } else {
51                 define('SUBSTRING_FOR_DATE', 'SUBSTRING');
52         }
53
54         /**
55          * Return available translations names.
56          *
57          * @access public
58          * @return array A array of available translations.
59          */
60         function get_translations() {
61                 $tr = array(
62                                         "auto"  => "Detect automatically",
63                                         "ca_CA" => "Català",
64                                         "cs_CZ" => "Česky",
65                                         "en_US" => "English",
66                                         "es_ES" => "Español",
67                                         "de_DE" => "Deutsch",
68                                         "fr_FR" => "Français",
69                                         "hu_HU" => "Magyar (Hungarian)",
70                                         "it_IT" => "Italiano",
71                                         "ja_JP" => "日本語 (Japanese)",
72                                         "lv_LV" => "Latviešu",
73                                         "nb_NO" => "Norwegian bokmål",
74                                         "nl_NL" => "Dutch",
75                                         "pl_PL" => "Polski",
76                                         "ru_RU" => "Русский",
77                                         "pt_BR" => "Portuguese/Brazil",
78                                         "zh_CN" => "Simplified Chinese",
79                                         "sv_SE" => "Svenska",
80                                         "fi_FI" => "Suomi");
81
82                 return $tr;
83         }
84
85         require_once "lib/accept-to-gettext.php";
86         require_once "lib/gettext/gettext.inc";
87
88
89         function startup_gettext() {
90
91                 # Get locale from Accept-Language header
92                 $lang = al2gt(array_keys(get_translations()), "text/html");
93
94                 if (defined('_TRANSLATION_OVERRIDE_DEFAULT')) {
95                         $lang = _TRANSLATION_OVERRIDE_DEFAULT;
96                 }
97
98                 if ($_SESSION["language"] && $_SESSION["language"] != "auto") {
99                         $lang = $_SESSION["language"];
100                 }
101
102                 if ($lang) {
103                         if (defined('LC_MESSAGES')) {
104                                 _setlocale(LC_MESSAGES, $lang);
105                         } else if (defined('LC_ALL')) {
106                                 _setlocale(LC_ALL, $lang);
107                         }
108
109                         _bindtextdomain("messages", "locale");
110
111                         _textdomain("messages");
112                         _bind_textdomain_codeset("messages", "UTF-8");
113                 }
114         }
115
116         startup_gettext();
117
118         require_once 'db-prefs.php';
119         require_once 'version.php';
120         require_once 'ccache.php';
121         require_once 'labels.php';
122
123         define('SELF_USER_AGENT', 'Tiny Tiny RSS/' . VERSION . ' (http://tt-rss.org/)');
124         ini_set('user_agent', SELF_USER_AGENT);
125
126         require_once 'lib/pubsubhubbub/publisher.php';
127
128         $tz_offset = -1;
129         $utc_tz = new DateTimeZone('UTC');
130         $schema_version = false;
131
132         /**
133          * Print a timestamped debug message.
134          *
135          * @param string $msg The debug message.
136          * @return void
137          */
138         function _debug($msg) {
139                 $ts = strftime("%H:%M:%S", time());
140                 if (function_exists('posix_getpid')) {
141                         $ts = "$ts/" . posix_getpid();
142                 }
143
144                 if (!(defined('QUIET') && QUIET)) {
145                         print "[$ts] $msg\n";
146                 }
147
148                 if (defined('LOGFILE'))  {
149                         $fp = fopen(LOGFILE, 'a+');
150
151                         if ($fp) {
152                                 fputs($fp, "[$ts] $msg\n");
153                                 fclose($fp);
154                         }
155                 }
156
157         } // function _debug
158
159         /**
160          * Purge a feed old posts.
161          *
162          * @param mixed $link A database connection.
163          * @param mixed $feed_id The id of the purged feed.
164          * @param mixed $purge_interval Olderness of purged posts.
165          * @param boolean $debug Set to True to enable the debug. False by default.
166          * @access public
167          * @return void
168          */
169         function purge_feed($feed_id, $purge_interval, $debug = false) {
170
171                 if (!$purge_interval) $purge_interval = feed_purge_interval($feed_id);
172
173                 $rows = -1;
174
175                 $result = db_query(
176                         "SELECT owner_uid FROM ttrss_feeds WHERE id = '$feed_id'");
177
178                 $owner_uid = false;
179
180                 if (db_num_rows($result) == 1) {
181                         $owner_uid = db_fetch_result($result, 0, "owner_uid");
182                 }
183
184                 if ($purge_interval == -1 || !$purge_interval) {
185                         if ($owner_uid) {
186                                 ccache_update($feed_id, $owner_uid);
187                         }
188                         return;
189                 }
190
191                 if (!$owner_uid) return;
192
193                 if (FORCE_ARTICLE_PURGE == 0) {
194                         $purge_unread = get_pref("PURGE_UNREAD_ARTICLES",
195                                 $owner_uid, false);
196                 } else {
197                         $purge_unread = true;
198                         $purge_interval = FORCE_ARTICLE_PURGE;
199                 }
200
201                 if (!$purge_unread) $query_limit = " unread = false AND ";
202
203                 if (DB_TYPE == "pgsql") {
204                         $pg_version = get_pgsql_version();
205
206                         if (preg_match("/^7\./", $pg_version) || preg_match("/^8\.0/", $pg_version)) {
207
208                                 $result = db_query("DELETE FROM ttrss_user_entries WHERE
209                                         ttrss_entries.id = ref_id AND
210                                         marked = false AND
211                                         feed_id = '$feed_id' AND
212                                         $query_limit
213                                         ttrss_entries.date_updated < NOW() - INTERVAL '$purge_interval days'");
214
215                         } else {
216
217                                 $result = db_query("DELETE FROM ttrss_user_entries
218                                         USING ttrss_entries
219                                         WHERE ttrss_entries.id = ref_id AND
220                                         marked = false AND
221                                         feed_id = '$feed_id' AND
222                                         $query_limit
223                                         ttrss_entries.date_updated < NOW() - INTERVAL '$purge_interval days'");
224                         }
225
226                 } else {
227
228 /*                      $result = db_query("DELETE FROM ttrss_user_entries WHERE
229                                 marked = false AND feed_id = '$feed_id' AND
230                                 (SELECT date_updated FROM ttrss_entries WHERE
231                                         id = ref_id) < DATE_SUB(NOW(), INTERVAL $purge_interval DAY)"); */
232
233                         $result = db_query("DELETE FROM ttrss_user_entries
234                                 USING ttrss_user_entries, ttrss_entries
235                                 WHERE ttrss_entries.id = ref_id AND
236                                 marked = false AND
237                                 feed_id = '$feed_id' AND
238                                 $query_limit
239                                 ttrss_entries.date_updated < DATE_SUB(NOW(), INTERVAL $purge_interval DAY)");
240                 }
241
242                 $rows = db_affected_rows($result);
243
244                 ccache_update($feed_id, $owner_uid);
245
246                 if ($debug) {
247                         _debug("Purged feed $feed_id ($purge_interval): deleted $rows articles");
248                 }
249
250                 return $rows;
251         } // function purge_feed
252
253         function feed_purge_interval($feed_id) {
254
255                 $result = db_query("SELECT purge_interval, owner_uid FROM ttrss_feeds
256                         WHERE id = '$feed_id'");
257
258                 if (db_num_rows($result) == 1) {
259                         $purge_interval = db_fetch_result($result, 0, "purge_interval");
260                         $owner_uid = db_fetch_result($result, 0, "owner_uid");
261
262                         if ($purge_interval == 0) $purge_interval = get_pref(
263                                 'PURGE_OLD_DAYS', $owner_uid);
264
265                         return $purge_interval;
266
267                 } else {
268                         return -1;
269                 }
270         }
271
272         function purge_orphans($do_output = false) {
273
274                 // purge orphaned posts in main content table
275                 $result = db_query("DELETE FROM ttrss_entries WHERE
276                         (SELECT COUNT(int_id) FROM ttrss_user_entries WHERE ref_id = id) = 0");
277
278                 if ($do_output) {
279                         $rows = db_affected_rows($result);
280                         _debug("Purged $rows orphaned posts.");
281                 }
282         }
283
284         function get_feed_update_interval($feed_id) {
285                 $result = db_query("SELECT owner_uid, update_interval FROM
286                         ttrss_feeds WHERE id = '$feed_id'");
287
288                 if (db_num_rows($result) == 1) {
289                         $update_interval = db_fetch_result($result, 0, "update_interval");
290                         $owner_uid = db_fetch_result($result, 0, "owner_uid");
291
292                         if ($update_interval != 0) {
293                                 return $update_interval;
294                         } else {
295                                 return get_pref('DEFAULT_UPDATE_INTERVAL', $owner_uid, false);
296                         }
297
298                 } else {
299                         return -1;
300                 }
301         }
302
303         function fetch_file_contents($url, $type = false, $login = false, $pass = false, $post_query = false, $timeout = false, $timestamp = 0) {
304
305                 global $fetch_last_error;
306                 global $fetch_last_error_code;
307                 global $fetch_last_content_type;
308                 global $fetch_curl_used;
309
310                 $url = str_replace(' ', '%20', $url);
311
312                 if (!defined('NO_CURL') && function_exists('curl_init')) {
313
314                         $fetch_curl_used = true;
315
316                         if (ini_get("safe_mode") || ini_get("open_basedir")) {
317                                 $ch = curl_init(geturl($url));
318                         } else {
319                                 $ch = curl_init($url);
320                         }
321
322                         if ($timestamp) {
323                                 curl_setopt($ch, CURLOPT_HTTPHEADER,
324                                         array("If-Modified-Since: ".gmdate('D, d M Y H:i:s \G\M\T', $timestamp)));
325                         }
326
327                         curl_setopt($ch, CURLOPT_CONNECTTIMEOUT, $timeout ? $timeout : FILE_FETCH_CONNECT_TIMEOUT);
328                         curl_setopt($ch, CURLOPT_TIMEOUT, $timeout ? $timeout : FILE_FETCH_TIMEOUT);
329                         curl_setopt($ch, CURLOPT_FOLLOWLOCATION, !ini_get("safe_mode") && !ini_get("open_basedir"));
330                         curl_setopt($ch, CURLOPT_MAXREDIRS, 20);
331                         curl_setopt($ch, CURLOPT_BINARYTRANSFER, true);
332                         curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
333                         curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false);
334                         curl_setopt($ch, CURLOPT_HTTPAUTH, CURLAUTH_ANY);
335                         curl_setopt($ch, CURLOPT_USERAGENT, SELF_USER_AGENT);
336                         curl_setopt($ch, CURLOPT_ENCODING, "");
337                         curl_setopt($ch, CURLOPT_REFERER, $url);
338
339                         if ($post_query) {
340                                 curl_setopt($ch, CURLOPT_POST, true);
341                                 curl_setopt($ch, CURLOPT_POSTFIELDS, $post_query);
342                         }
343
344                         if ($login && $pass)
345                                 curl_setopt($ch, CURLOPT_USERPWD, "$login:$pass");
346
347                         $contents = @curl_exec($ch);
348
349                         if (curl_errno($ch) === 23 || curl_errno($ch) === 61) {
350                                 curl_setopt($ch, CURLOPT_ENCODING, 'none');
351                                 $contents = @curl_exec($ch);
352                         }
353
354                         if ($contents === false) {
355                                 $fetch_last_error = curl_errno($ch) . " " . curl_error($ch);
356                                 curl_close($ch);
357                                 return false;
358                         }
359
360                         $http_code = curl_getinfo($ch, CURLINFO_HTTP_CODE);
361                         $fetch_last_content_type = curl_getinfo($ch, CURLINFO_CONTENT_TYPE);
362
363                         $fetch_last_error_code = $http_code;
364
365                         if ($http_code != 200 || $type && strpos($fetch_last_content_type, "$type") === false) {
366                                 if (curl_errno($ch) != 0) {
367                                         $fetch_last_error = curl_errno($ch) . " " . curl_error($ch);
368                                 } else {
369                                         $fetch_last_error = "HTTP Code: $http_code";
370                                 }
371                                 curl_close($ch);
372                                 return false;
373                         }
374
375                         curl_close($ch);
376
377                         return $contents;
378                 } else {
379
380                         $fetch_curl_used = false;
381
382                         if ($login && $pass){
383                                 $url_parts = array();
384
385                                 preg_match("/(^[^:]*):\/\/(.*)/", $url, $url_parts);
386
387                                 $pass = urlencode($pass);
388
389                                 if ($url_parts[1] && $url_parts[2]) {
390                                         $url = $url_parts[1] . "://$login:$pass@" . $url_parts[2];
391                                 }
392                         }
393
394                         $data = @file_get_contents($url);
395
396                         $fetch_last_content_type = false;  // reset if no type was sent from server
397                         if (is_array($http_response_header)) {
398                                 foreach ($http_response_header as $h) {
399                                         if (substr(strtolower($h), 0, 13) == 'content-type:') {
400                                                 $fetch_last_content_type = substr($h, 14);
401                                                 // don't abort here b/c there might be more than one
402                                                 // e.g. if we were being redirected -- last one is the right one
403                                         }
404                                 }
405                         }
406
407                         if (!$data && function_exists('error_get_last')) {
408                                 $error = error_get_last();
409                                 $fetch_last_error = $error["message"];
410                         }
411                         return $data;
412                 }
413
414         }
415
416         /**
417          * Try to determine the favicon URL for a feed.
418          * adapted from wordpress favicon plugin by Jeff Minard (http://thecodepro.com/)
419          * http://dev.wp-plugins.org/file/favatars/trunk/favatars.php
420          *
421          * @param string $url A feed or page URL
422          * @access public
423          * @return mixed The favicon URL, or false if none was found.
424          */
425         function get_favicon_url($url) {
426
427                 $favicon_url = false;
428
429                 if ($html = @fetch_file_contents($url)) {
430
431                         libxml_use_internal_errors(true);
432
433                         $doc = new DOMDocument();
434                         $doc->loadHTML($html);
435                         $xpath = new DOMXPath($doc);
436
437                         $base = $xpath->query('/html/head/base');
438                         foreach ($base as $b) {
439                                 $url = $b->getAttribute("href");
440                                 break;
441                         }
442
443                         $entries = $xpath->query('/html/head/link[@rel="shortcut icon" or @rel="icon"]');
444                         if (count($entries) > 0) {
445                                 foreach ($entries as $entry) {
446                                         $favicon_url = rewrite_relative_url($url, $entry->getAttribute("href"));
447                                         break;
448                                 }
449                         }
450                 }
451
452                 if (!$favicon_url)
453                         $favicon_url = rewrite_relative_url($url, "/favicon.ico");
454
455                 return $favicon_url;
456         } // function get_favicon_url
457
458         function check_feed_favicon($site_url, $feed) {
459 #               print "FAVICON [$site_url]: $favicon_url\n";
460
461                 $icon_file = ICONS_DIR . "/$feed.ico";
462
463                 if (!file_exists($icon_file)) {
464                         $favicon_url = get_favicon_url($site_url);
465
466                         if ($favicon_url) {
467                                 // Limiting to "image" type misses those served with text/plain
468                                 $contents = fetch_file_contents($favicon_url); // , "image");
469
470                                 if ($contents) {
471                                         // Crude image type matching.
472                                         // Patterns gleaned from the file(1) source code.
473                                         if (preg_match('/^\x00\x00\x01\x00/', $contents)) {
474                                                 // 0       string  \000\000\001\000        MS Windows icon resource
475                                                 //error_log("check_feed_favicon: favicon_url=$favicon_url isa MS Windows icon resource");
476                                         }
477                                         elseif (preg_match('/^GIF8/', $contents)) {
478                                                 // 0       string          GIF8            GIF image data
479                                                 //error_log("check_feed_favicon: favicon_url=$favicon_url isa GIF image");
480                                         }
481                                         elseif (preg_match('/^\x89PNG\x0d\x0a\x1a\x0a/', $contents)) {
482                                                 // 0       string          \x89PNG\x0d\x0a\x1a\x0a         PNG image data
483                                                 //error_log("check_feed_favicon: favicon_url=$favicon_url isa PNG image");
484                                         }
485                                         elseif (preg_match('/^\xff\xd8/', $contents)) {
486                                                 // 0       beshort         0xffd8          JPEG image data
487                                                 //error_log("check_feed_favicon: favicon_url=$favicon_url isa JPG image");
488                                         }
489                                         else {
490                                                 //error_log("check_feed_favicon: favicon_url=$favicon_url isa UNKNOWN type");
491                                                 $contents = "";
492                                         }
493                                 }
494
495                                 if ($contents) {
496                                         $fp = @fopen($icon_file, "w");
497
498                                         if ($fp) {
499                                                 fwrite($fp, $contents);
500                                                 fclose($fp);
501                                                 chmod($icon_file, 0644);
502                                         }
503                                 }
504                         }
505             return $icon_file;
506                 }
507         }
508
509         function print_select($id, $default, $values, $attributes = "") {
510                 print "<select name=\"$id\" id=\"$id\" $attributes>";
511                 foreach ($values as $v) {
512                         if ($v == $default)
513                                 $sel = "selected=\"1\"";
514                          else
515                                 $sel = "";
516
517                         $v = trim($v);
518
519                         print "<option value=\"$v\" $sel>$v</option>";
520                 }
521                 print "</select>";
522         }
523
524         function print_select_hash($id, $default, $values, $attributes = "") {
525                 print "<select name=\"$id\" id='$id' $attributes>";
526                 foreach (array_keys($values) as $v) {
527                         if ($v == $default)
528                                 $sel = 'selected="selected"';
529                          else
530                                 $sel = "";
531
532                         $v = trim($v);
533
534                         print "<option $sel value=\"$v\">".$values[$v]."</option>";
535                 }
536
537                 print "</select>";
538         }
539
540         function print_radio($id, $default, $true_is, $values, $attributes = "") {
541                 foreach ($values as $v) {
542
543                         if ($v == $default)
544                                 $sel = "checked";
545                          else
546                                 $sel = "";
547
548                         if ($v == $true_is) {
549                                 $sel .= " value=\"1\"";
550                         } else {
551                                 $sel .= " value=\"0\"";
552                         }
553
554                         print "<input class=\"noborder\" dojoType=\"dijit.form.RadioButton\"
555                                 type=\"radio\" $sel $attributes name=\"$id\">&nbsp;$v&nbsp;";
556
557                 }
558         }
559
560         function initialize_user_prefs($uid, $profile = false) {
561
562                 $uid = db_escape_string($uid);
563
564                 if (!$profile) {
565                         $profile = "NULL";
566                         $profile_qpart = "AND profile IS NULL";
567                 } else {
568                         $profile_qpart = "AND profile = '$profile'";
569                 }
570
571                 if (get_schema_version() < 63) $profile_qpart = "";
572
573                 db_query("BEGIN");
574
575                 $result = db_query("SELECT pref_name,def_value FROM ttrss_prefs");
576
577                 $u_result = db_query("SELECT pref_name
578                         FROM ttrss_user_prefs WHERE owner_uid = '$uid' $profile_qpart");
579
580                 $active_prefs = array();
581
582                 while ($line = db_fetch_assoc($u_result)) {
583                         array_push($active_prefs, $line["pref_name"]);
584                 }
585
586                 while ($line = db_fetch_assoc($result)) {
587                         if (array_search($line["pref_name"], $active_prefs) === FALSE) {
588 //                              print "adding " . $line["pref_name"] . "<br>";
589
590                                 $line["def_value"] = db_escape_string($line["def_value"]);
591                                 $line["pref_name"] = db_escape_string($line["pref_name"]);
592
593                                 if (get_schema_version() < 63) {
594                                         db_query("INSERT INTO ttrss_user_prefs
595                                                 (owner_uid,pref_name,value) VALUES
596                                                 ('$uid', '".$line["pref_name"]."','".$line["def_value"]."')");
597
598                                 } else {
599                                         db_query("INSERT INTO ttrss_user_prefs
600                                                 (owner_uid,pref_name,value, profile) VALUES
601                                                 ('$uid', '".$line["pref_name"]."','".$line["def_value"]."', $profile)");
602                                 }
603
604                         }
605                 }
606
607                 db_query("COMMIT");
608
609         }
610
611         function get_ssl_certificate_id() {
612                 if ($_SERVER["REDIRECT_SSL_CLIENT_M_SERIAL"]) {
613                         return sha1($_SERVER["REDIRECT_SSL_CLIENT_M_SERIAL"] .
614                                 $_SERVER["REDIRECT_SSL_CLIENT_V_START"] .
615                                 $_SERVER["REDIRECT_SSL_CLIENT_V_END"] .
616                                 $_SERVER["REDIRECT_SSL_CLIENT_S_DN"]);
617                 }
618                 return "";
619         }
620
621         function authenticate_user($login, $password, $check_only = false) {
622
623                 if (!SINGLE_USER_MODE) {
624                         $user_id = false;
625
626                         foreach (PluginHost::getInstance()->get_hooks(PluginHost::HOOK_AUTH_USER) as $plugin) {
627
628                                 $user_id = (int) $plugin->authenticate($login, $password);
629
630                                 if ($user_id) {
631                                         $_SESSION["auth_module"] = strtolower(get_class($plugin));
632                                         break;
633                                 }
634                         }
635
636                         if ($user_id && !$check_only) {
637                                 @session_start();
638
639                                 $_SESSION["uid"] = $user_id;
640                                 $_SESSION["version"] = VERSION;
641
642                                 $result = db_query("SELECT login,access_level,pwd_hash FROM ttrss_users
643                                         WHERE id = '$user_id'");
644
645                                 $_SESSION["name"] = db_fetch_result($result, 0, "login");
646                                 $_SESSION["access_level"] = db_fetch_result($result, 0, "access_level");
647                                 $_SESSION["csrf_token"] = sha1(uniqid(rand(), true));
648
649                                 db_query("UPDATE ttrss_users SET last_login = NOW() WHERE id = " .
650                                         $_SESSION["uid"]);
651
652                                 $_SESSION["ip_address"] = $_SERVER["REMOTE_ADDR"];
653                                 $_SESSION["user_agent"] = sha1($_SERVER['HTTP_USER_AGENT']);
654                                 $_SESSION["pwd_hash"] = db_fetch_result($result, 0, "pwd_hash");
655
656                                 $_SESSION["last_version_check"] = time();
657
658                                 initialize_user_prefs($_SESSION["uid"]);
659
660                                 return true;
661                         }
662
663                         return false;
664
665                 } else {
666
667                         $_SESSION["uid"] = 1;
668                         $_SESSION["name"] = "admin";
669                         $_SESSION["access_level"] = 10;
670
671                         $_SESSION["hide_hello"] = true;
672                         $_SESSION["hide_logout"] = true;
673
674                         $_SESSION["auth_module"] = false;
675
676                         if (!$_SESSION["csrf_token"]) {
677                                 $_SESSION["csrf_token"] = sha1(uniqid(rand(), true));
678                         }
679
680                         $_SESSION["ip_address"] = $_SERVER["REMOTE_ADDR"];
681
682                         initialize_user_prefs($_SESSION["uid"]);
683
684                         return true;
685                 }
686         }
687
688         function make_password($length = 8) {
689
690                 $password = "";
691                 $possible = "0123456789abcdfghjkmnpqrstvwxyzABCDFGHJKMNPQRSTVWXYZ";
692
693         $i = 0;
694
695                 while ($i < $length) {
696                         $char = substr($possible, mt_rand(0, strlen($possible)-1), 1);
697
698                         if (!strstr($password, $char)) {
699                                 $password .= $char;
700                                 $i++;
701                         }
702                 }
703                 return $password;
704         }
705
706         // this is called after user is created to initialize default feeds, labels
707         // or whatever else
708
709         // user preferences are checked on every login, not here
710
711         function initialize_user($uid) {
712
713                 db_query("insert into ttrss_feeds (owner_uid,title,feed_url)
714                         values ('$uid', 'Tiny Tiny RSS: New Releases',
715                         'http://tt-rss.org/releases.rss')");
716
717                 db_query("insert into ttrss_feeds (owner_uid,title,feed_url)
718                         values ('$uid', 'Tiny Tiny RSS: Forum',
719                                 'http://tt-rss.org/forum/rss.php')");
720         }
721
722         function logout_user() {
723                 session_destroy();
724                 if (isset($_COOKIE[session_name()])) {
725                    setcookie(session_name(), '', time()-42000, '/');
726                 }
727         }
728
729         function validate_csrf($csrf_token) {
730                 return $csrf_token == $_SESSION['csrf_token'];
731         }
732
733         function load_user_plugins($owner_uid) {
734                 if ($owner_uid) {
735                         $plugins = get_pref("_ENABLED_PLUGINS", $owner_uid);
736
737                         PluginHost::getInstance()->load($plugins, PluginHost::KIND_USER, $owner_uid);
738
739                         if (get_schema_version() > 100) {
740                                 PluginHost::getInstance()->load_data();
741                         }
742                 }
743         }
744
745         function login_sequence() {
746                 if (SINGLE_USER_MODE) {
747                         @session_start();
748                         authenticate_user("admin", null);
749                         load_user_plugins($_SESSION["uid"]);
750                 } else {
751                         if (!validate_session()) $_SESSION["uid"] = false;
752
753                         if (!$_SESSION["uid"]) {
754
755                                 if (AUTH_AUTO_LOGIN && authenticate_user(null, null)) {
756                                     $_SESSION["ref_schema_version"] = get_schema_version(true);
757                                 } else {
758                                          authenticate_user(null, null, true);
759                                 }
760
761                                 if (!$_SESSION["uid"]) {
762                                         @session_destroy();
763                                         setcookie(session_name(), '', time()-42000, '/');
764
765                                         render_login_form();
766                                         exit;
767                                 }
768
769                         } else {
770                                 /* bump login timestamp */
771                                 db_query("UPDATE ttrss_users SET last_login = NOW() WHERE id = " .
772                                         $_SESSION["uid"]);
773                                 $_SESSION["last_login_update"] = time();
774                         }
775
776                         if ($_SESSION["uid"] && $_SESSION["language"] && SESSION_COOKIE_LIFETIME > 0) {
777                                 setcookie("ttrss_lang", $_SESSION["language"],
778                                         time() + SESSION_COOKIE_LIFETIME);
779                         }
780
781                         if ($_SESSION["uid"]) {
782                                 load_user_plugins($_SESSION["uid"]);
783
784                                 /* cleanup ccache */
785
786                                 db_query("DELETE FROM ttrss_counters_cache WHERE owner_uid = ".
787                                         $_SESSION["uid"] . " AND
788                                                 (SELECT COUNT(id) FROM ttrss_feeds WHERE
789                                                         ttrss_feeds.id = feed_id) = 0");
790
791                                 db_query("DELETE FROM ttrss_cat_counters_cache WHERE owner_uid = ".
792                                         $_SESSION["uid"] . " AND
793                                                 (SELECT COUNT(id) FROM ttrss_feed_categories WHERE
794                                                         ttrss_feed_categories.id = feed_id) = 0");
795
796                         }
797
798                 }
799         }
800
801         function truncate_string($str, $max_len, $suffix = '&hellip;') {
802                 if (mb_strlen($str, "utf-8") > $max_len - 3) {
803                         return mb_substr($str, 0, $max_len, "utf-8") . $suffix;
804                 } else {
805                         return $str;
806                 }
807         }
808
809         function convert_timestamp($timestamp, $source_tz, $dest_tz) {
810
811                 try {
812                         $source_tz = new DateTimeZone($source_tz);
813                 } catch (Exception $e) {
814                         $source_tz = new DateTimeZone('UTC');
815                 }
816
817                 try {
818                         $dest_tz = new DateTimeZone($dest_tz);
819                 } catch (Exception $e) {
820                         $dest_tz = new DateTimeZone('UTC');
821                 }
822
823                 $dt = new DateTime(date('Y-m-d H:i:s', $timestamp), $source_tz);
824                 return $dt->format('U') + $dest_tz->getOffset($dt);
825         }
826
827         function make_local_datetime($timestamp, $long, $owner_uid = false,
828                                         $no_smart_dt = false) {
829
830                 if (!$owner_uid) $owner_uid = $_SESSION['uid'];
831                 if (!$timestamp) $timestamp = '1970-01-01 0:00';
832
833                 global $utc_tz;
834                 global $tz_offset;
835
836                 # We store date in UTC internally
837                 $dt = new DateTime($timestamp, $utc_tz);
838
839                 if ($tz_offset == -1) {
840
841                         $user_tz_string = get_pref('USER_TIMEZONE', $owner_uid);
842
843                         try {
844                                 $user_tz = new DateTimeZone($user_tz_string);
845                         } catch (Exception $e) {
846                                 $user_tz = $utc_tz;
847                         }
848
849                         $tz_offset = $user_tz->getOffset($dt);
850                 }
851
852                 $user_timestamp = $dt->format('U') + $tz_offset;
853
854                 if (!$no_smart_dt) {
855                         return smart_date_time($user_timestamp,
856                                 $tz_offset, $owner_uid);
857                 } else {
858                         if ($long)
859                                 $format = get_pref('LONG_DATE_FORMAT', $owner_uid);
860                         else
861                                 $format = get_pref('SHORT_DATE_FORMAT', $owner_uid);
862
863                         return date($format, $user_timestamp);
864                 }
865         }
866
867         function smart_date_time($timestamp, $tz_offset = 0, $owner_uid = false) {
868                 if (!$owner_uid) $owner_uid = $_SESSION['uid'];
869
870                 if (date("Y.m.d", $timestamp) == date("Y.m.d", time() + $tz_offset)) {
871                         return date("G:i", $timestamp);
872                 } else if (date("Y", $timestamp) == date("Y", time() + $tz_offset)) {
873                         $format = get_pref('SHORT_DATE_FORMAT', $owner_uid);
874                         return date($format, $timestamp);
875                 } else {
876                         $format = get_pref('LONG_DATE_FORMAT', $owner_uid);
877                         return date($format, $timestamp);
878                 }
879         }
880
881         function sql_bool_to_bool($s) {
882                 if ($s == "t" || $s == "1" || strtolower($s) == "true") {
883                         return true;
884                 } else {
885                         return false;
886                 }
887         }
888
889         function bool_to_sql_bool($s) {
890                 if ($s) {
891                         return "true";
892                 } else {
893                         return "false";
894                 }
895         }
896
897         // Session caching removed due to causing wrong redirects to upgrade
898         // script when get_schema_version() is called on an obsolete session
899         // created on a previous schema version.
900         function get_schema_version($nocache = false) {
901                 global $schema_version;
902
903                 if (!$schema_version) {
904                         $result = db_query("SELECT schema_version FROM ttrss_version");
905                         $version = db_fetch_result($result, 0, "schema_version");
906                         $schema_version = $version;
907                         return $version;
908                 } else {
909                         return $schema_version;
910                 }
911         }
912
913         function sanity_check() {
914                 require_once 'errors.php';
915
916                 $error_code = 0;
917                 $schema_version = get_schema_version(true);
918
919                 if ($schema_version != SCHEMA_VERSION) {
920                         $error_code = 5;
921                 }
922
923                 if (DB_TYPE == "mysql") {
924                         $result = db_query("SELECT true", false);
925                         if (db_num_rows($result) != 1) {
926                                 $error_code = 10;
927                         }
928                 }
929
930                 if (db_escape_string("testTEST") != "testTEST") {
931                         $error_code = 12;
932                 }
933
934                 return array("code" => $error_code, "message" => $ERRORS[$error_code]);
935         }
936
937         function file_is_locked($filename) {
938                 if (function_exists('flock')) {
939                         $fp = @fopen(LOCK_DIRECTORY . "/$filename", "r");
940                         if ($fp) {
941                                 if (flock($fp, LOCK_EX | LOCK_NB)) {
942                                         flock($fp, LOCK_UN);
943                                         fclose($fp);
944                                         return false;
945                                 }
946                                 fclose($fp);
947                                 return true;
948                         } else {
949                                 return false;
950                         }
951                 }
952                 return true; // consider the file always locked and skip the test
953         }
954
955         function make_lockfile($filename) {
956                 $fp = fopen(LOCK_DIRECTORY . "/$filename", "w");
957
958                 if ($fp && flock($fp, LOCK_EX | LOCK_NB)) {
959                         if (function_exists('posix_getpid')) {
960                                 fwrite($fp, posix_getpid() . "\n");
961                         }
962                         return $fp;
963                 } else {
964                         return false;
965                 }
966         }
967
968         function make_stampfile($filename) {
969                 $fp = fopen(LOCK_DIRECTORY . "/$filename", "w");
970
971                 if (flock($fp, LOCK_EX | LOCK_NB)) {
972                         fwrite($fp, time() . "\n");
973                         flock($fp, LOCK_UN);
974                         fclose($fp);
975                         return true;
976                 } else {
977                         return false;
978                 }
979         }
980
981         function sql_random_function() {
982                 if (DB_TYPE == "mysql") {
983                         return "RAND()";
984                 } else {
985                         return "RANDOM()";
986                 }
987         }
988
989         function catchup_feed($feed, $cat_view, $owner_uid = false, $max_id = false, $mode = 'all') {
990
991                         if (!$owner_uid) $owner_uid = $_SESSION['uid'];
992
993                         //if (preg_match("/^-?[0-9][0-9]*$/", $feed) != false) {
994
995                         // Todo: all this interval stuff needs some generic generator function
996
997                         $date_qpart = "false";
998
999                         switch ($mode) {
1000                         case "1day":
1001                                 if (DB_TYPE == "pgsql") {
1002                                         $date_qpart = "date_entered < NOW() - INTERVAL '1 day' ";
1003                                 } else {
1004                                         $date_qpart = "date_entered < DATE_SUB(NOW(), INTERVAL 1 DAY) ";
1005                                 }
1006                                 break;
1007                         case "1week":
1008                                 if (DB_TYPE == "pgsql") {
1009                                         $date_qpart = "date_entered < NOW() - INTERVAL '1 week' ";
1010                                 } else {
1011                                         $date_qpart = "date_entered < DATE_SUB(NOW(), INTERVAL 1 WEEK) ";
1012                                 }
1013                                 break;
1014                         case "2weeks":
1015                                 if (DB_TYPE == "pgsql") {
1016                                         $date_qpart = "date_entered < NOW() - INTERVAL '2 week' ";
1017                                 } else {
1018                                         $date_qpart = "date_entered < DATE_SUB(NOW(), INTERVAL 2 WEEK) ";
1019                                 }
1020                                 break;
1021                         default:
1022                                 $date_qpart = "true";
1023                         }
1024
1025                         if (is_numeric($feed)) {
1026                                 if ($cat_view) {
1027
1028                                         if ($feed >= 0) {
1029
1030                                                 if ($feed > 0) {
1031                                                         $children = getChildCategories($feed, $owner_uid);
1032                                                         array_push($children, $feed);
1033
1034                                                         $children = join(",", $children);
1035
1036                                                         $cat_qpart = "cat_id IN ($children)";
1037                                                 } else {
1038                                                         $cat_qpart = "cat_id IS NULL";
1039                                                 }
1040
1041                                                 db_query("UPDATE ttrss_user_entries
1042                                                         SET unread = false, last_read = NOW() WHERE ref_id IN
1043                                                                 (SELECT id FROM
1044                                                                         (SELECT id FROM ttrss_entries, ttrss_user_entries WHERE ref_id = id
1045                                                                                 AND owner_uid = $owner_uid AND unread = true AND feed_id IN
1046                                                                                         (SELECT id FROM ttrss_feeds WHERE $cat_qpart) AND $date_qpart) as tmp)");
1047
1048                                         } else if ($feed == -2) {
1049
1050                                                 db_query("UPDATE ttrss_user_entries
1051                                                         SET unread = false,last_read = NOW() WHERE (SELECT COUNT(*)
1052                                                                 FROM ttrss_user_labels2 WHERE article_id = ref_id) > 0
1053                                                                 AND unread = true AND $date_qpart AND owner_uid = $owner_uid");
1054                                         }
1055
1056                                 } else if ($feed > 0) {
1057
1058                                         db_query("UPDATE ttrss_user_entries
1059                                                 SET unread = false, last_read = NOW() WHERE ref_id IN
1060                                                         (SELECT id FROM
1061                                                                 (SELECT id FROM ttrss_entries, ttrss_user_entries WHERE ref_id = id
1062                                                                         AND owner_uid = $owner_uid AND unread = true AND feed_id = $feed AND $date_qpart) as tmp)");
1063
1064                                 } else if ($feed < 0 && $feed > LABEL_BASE_INDEX) { // special, like starred
1065
1066                                         if ($feed == -1) {
1067                                                 db_query("UPDATE ttrss_user_entries
1068                                                         SET unread = false, last_read = NOW() WHERE ref_id IN
1069                                                                 (SELECT id FROM
1070                                                                         (SELECT id FROM ttrss_entries, ttrss_user_entries WHERE ref_id = id
1071                                                                                 AND owner_uid = $owner_uid AND unread = true AND marked = true AND $date_qpart) as tmp)");
1072                                         }
1073
1074                                         if ($feed == -2) {
1075                                                 db_query("UPDATE ttrss_user_entries
1076                                                         SET unread = false, last_read = NOW() WHERE ref_id IN
1077                                                                 (SELECT id FROM
1078                                                                         (SELECT id FROM ttrss_entries, ttrss_user_entries WHERE ref_id = id
1079                                                                                 AND owner_uid = $owner_uid AND unread = true AND published = true AND $date_qpart) as tmp)");
1080                                         }
1081
1082                                         if ($feed == -3) {
1083
1084                                                 $intl = get_pref("FRESH_ARTICLE_MAX_AGE");
1085
1086                                                 if (DB_TYPE == "pgsql") {
1087                                                         $match_part = "date_entered > NOW() - INTERVAL '$intl hour' ";
1088                                                 } else {
1089                                                         $match_part = "date_entered > DATE_SUB(NOW(),
1090                                                                 INTERVAL $intl HOUR) ";
1091                                                 }
1092
1093                                                 db_query("UPDATE ttrss_user_entries
1094                                                         SET unread = false, last_read = NOW() WHERE ref_id IN
1095                                                                 (SELECT id FROM
1096                                                                         (SELECT id FROM ttrss_entries, ttrss_user_entries WHERE ref_id = id
1097                                                                                 AND owner_uid = $owner_uid AND unread = true AND $date_qpart AND $match_part) as tmp)");
1098                                         }
1099
1100                                         if ($feed == -4) {
1101                                                 db_query("UPDATE ttrss_user_entries
1102                                                         SET unread = false, last_read = NOW() WHERE ref_id IN
1103                                                                 (SELECT id FROM
1104                                                                         (SELECT id FROM ttrss_entries, ttrss_user_entries WHERE ref_id = id
1105                                                                                 AND owner_uid = $owner_uid AND unread = true AND $date_qpart) as tmp)");
1106                                         }
1107
1108                                 } else if ($feed < LABEL_BASE_INDEX) { // label
1109
1110                                         $label_id = feed_to_label_id($feed);
1111
1112                                         db_query("UPDATE ttrss_user_entries
1113                                                 SET unread = false, last_read = NOW() WHERE ref_id IN
1114                                                         (SELECT id FROM
1115                                                                 (SELECT ttrss_entries.id FROM ttrss_entries, ttrss_user_entries, ttrss_user_labels2 WHERE ref_id = id
1116                                                                         AND label_id = '$label_id' AND ref_id = article_id
1117                                                                         AND owner_uid = $owner_uid AND unread = true AND $date_qpart) as tmp)");
1118
1119                                 }
1120
1121                                 ccache_update($feed, $owner_uid, $cat_view);
1122
1123                         } else { // tag
1124                                 db_query("UPDATE ttrss_user_entries
1125                                         SET unread = false, last_read = NOW() WHERE ref_id IN
1126                                                 (SELECT id FROM
1127                                                         (SELECT ttrss_entries.id FROM ttrss_entries, ttrss_user_entries, ttrss_tags WHERE ref_id = ttrss_entries.id
1128                                                                 AND post_int_id = int_id AND tag_name = '$feed'
1129                                                                 AND ttrss_user_entries.owner_uid = $owner_uid AND unread = true AND $date_qpart) as tmp)");
1130
1131                         }
1132         }
1133
1134         function getAllCounters() {
1135                 $data = getGlobalCounters();
1136
1137                 $data = array_merge($data, getVirtCounters());
1138                 $data = array_merge($data, getLabelCounters());
1139                 $data = array_merge($data, getFeedCounters($active_feed));
1140                 $data = array_merge($data, getCategoryCounters());
1141
1142                 return $data;
1143         }
1144
1145         function getCategoryTitle($cat_id) {
1146
1147                 if ($cat_id == -1) {
1148                         return __("Special");
1149                 } else if ($cat_id == -2) {
1150                         return __("Labels");
1151                 } else {
1152
1153                         $result = db_query("SELECT title FROM ttrss_feed_categories WHERE
1154                                 id = '$cat_id'");
1155
1156                         if (db_num_rows($result) == 1) {
1157                                 return db_fetch_result($result, 0, "title");
1158                         } else {
1159                                 return __("Uncategorized");
1160                         }
1161                 }
1162         }
1163
1164
1165         function getCategoryCounters() {
1166                 $ret_arr = array();
1167
1168                 /* Labels category */
1169
1170                 $cv = array("id" => -2, "kind" => "cat",
1171                         "counter" => getCategoryUnread(-2));
1172
1173                 array_push($ret_arr, $cv);
1174
1175                 $result = db_query("SELECT id AS cat_id, value AS unread,
1176                         (SELECT COUNT(id) FROM ttrss_feed_categories AS c2
1177                                 WHERE c2.parent_cat = ttrss_feed_categories.id) AS num_children
1178                         FROM ttrss_feed_categories, ttrss_cat_counters_cache
1179                         WHERE ttrss_cat_counters_cache.feed_id = id AND
1180                         ttrss_cat_counters_cache.owner_uid = ttrss_feed_categories.owner_uid AND
1181                         ttrss_feed_categories.owner_uid = " . $_SESSION["uid"]);
1182
1183                 while ($line = db_fetch_assoc($result)) {
1184                         $line["cat_id"] = (int) $line["cat_id"];
1185
1186                         if ($line["num_children"] > 0) {
1187                                 $child_counter = getCategoryChildrenUnread($line["cat_id"], $_SESSION["uid"]);
1188                         } else {
1189                                 $child_counter = 0;
1190                         }
1191
1192                         $cv = array("id" => $line["cat_id"], "kind" => "cat",
1193                                 "counter" => $line["unread"] + $child_counter);
1194
1195                         array_push($ret_arr, $cv);
1196                 }
1197
1198                 /* Special case: NULL category doesn't actually exist in the DB */
1199
1200                 $cv = array("id" => 0, "kind" => "cat",
1201                         "counter" => (int) ccache_find(0, $_SESSION["uid"], true));
1202
1203                 array_push($ret_arr, $cv);
1204
1205                 return $ret_arr;
1206         }
1207
1208         // only accepts real cats (>= 0)
1209         function getCategoryChildrenUnread($cat, $owner_uid = false) {
1210                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1211
1212                 $result = db_query("SELECT id FROM ttrss_feed_categories WHERE parent_cat = '$cat'
1213                                 AND owner_uid = $owner_uid");
1214
1215                 $unread = 0;
1216
1217                 while ($line = db_fetch_assoc($result)) {
1218                         $unread += getCategoryUnread($line["id"], $owner_uid);
1219                         $unread += getCategoryChildrenUnread($line["id"], $owner_uid);
1220                 }
1221
1222                 return $unread;
1223         }
1224
1225         function getCategoryUnread($cat, $owner_uid = false) {
1226
1227                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1228
1229                 if ($cat >= 0) {
1230
1231                         if ($cat != 0) {
1232                                 $cat_query = "cat_id = '$cat'";
1233                         } else {
1234                                 $cat_query = "cat_id IS NULL";
1235                         }
1236
1237                         $result = db_query("SELECT id FROM ttrss_feeds WHERE $cat_query
1238                                         AND owner_uid = " . $owner_uid);
1239
1240                         $cat_feeds = array();
1241                         while ($line = db_fetch_assoc($result)) {
1242                                 array_push($cat_feeds, "feed_id = " . $line["id"]);
1243                         }
1244
1245                         if (count($cat_feeds) == 0) return 0;
1246
1247                         $match_part = implode(" OR ", $cat_feeds);
1248
1249                         $result = db_query("SELECT COUNT(int_id) AS unread
1250                                 FROM ttrss_user_entries
1251                                 WHERE   unread = true AND ($match_part)
1252                                 AND owner_uid = " . $owner_uid);
1253
1254                         $unread = 0;
1255
1256                         # this needs to be rewritten
1257                         while ($line = db_fetch_assoc($result)) {
1258                                 $unread += $line["unread"];
1259                         }
1260
1261                         return $unread;
1262                 } else if ($cat == -1) {
1263                         return getFeedUnread(-1) + getFeedUnread($link, -2) + getFeedUnread($link, -3) + getFeedUnread($link, 0);
1264                 } else if ($cat == -2) {
1265
1266                         $result = db_query("
1267                                 SELECT COUNT(unread) AS unread FROM
1268                                         ttrss_user_entries, ttrss_user_labels2
1269                                 WHERE article_id = ref_id AND unread = true
1270                                         AND ttrss_user_entries.owner_uid = '$owner_uid'");
1271
1272                         $unread = db_fetch_result($result, 0, "unread");
1273
1274                         return $unread;
1275
1276                 }
1277         }
1278
1279         function getFeedUnread($feed, $is_cat = false) {
1280                 return getFeedArticles($feed, $is_cat, true, $_SESSION["uid"]);
1281         }
1282
1283         function getLabelUnread($label_id, $owner_uid = false) {
1284                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1285
1286                 $result = db_query("SELECT COUNT(ref_id) AS unread FROM ttrss_user_entries, ttrss_user_labels2
1287                         WHERE owner_uid = '$owner_uid' AND unread = true AND label_id = '$label_id' AND article_id = ref_id");
1288
1289                 if (db_num_rows($result) != 0) {
1290                         return db_fetch_result($result, 0, "unread");
1291                 } else {
1292                         return 0;
1293                 }
1294         }
1295
1296         function getFeedArticles($feed, $is_cat = false, $unread_only = false,
1297                 $owner_uid = false) {
1298
1299                 $n_feed = (int) $feed;
1300                 $need_entries = false;
1301
1302                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1303
1304                 if ($unread_only) {
1305                         $unread_qpart = "unread = true";
1306                 } else {
1307                         $unread_qpart = "true";
1308                 }
1309
1310                 if ($is_cat) {
1311                         return getCategoryUnread($n_feed, $owner_uid);
1312                 } else if ($n_feed == -6) {
1313                         return 0;
1314                 } else if ($feed != "0" && $n_feed == 0) {
1315
1316                         $feed = db_escape_string($feed);
1317
1318                         $result = db_query("SELECT SUM((SELECT COUNT(int_id)
1319                                 FROM ttrss_user_entries,ttrss_entries WHERE int_id = post_int_id
1320                                         AND ref_id = id AND $unread_qpart)) AS count FROM ttrss_tags
1321                                 WHERE owner_uid = $owner_uid AND tag_name = '$feed'");
1322                         return db_fetch_result($result, 0, "count");
1323
1324                 } else if ($n_feed == -1) {
1325                         $match_part = "marked = true";
1326                 } else if ($n_feed == -2) {
1327                         $match_part = "published = true";
1328                 } else if ($n_feed == -3) {
1329                         $match_part = "unread = true AND score >= 0";
1330
1331                         $intl = get_pref("FRESH_ARTICLE_MAX_AGE", $owner_uid);
1332
1333                         if (DB_TYPE == "pgsql") {
1334                                 $match_part .= " AND updated > NOW() - INTERVAL '$intl hour' ";
1335                         } else {
1336                                 $match_part .= " AND updated > DATE_SUB(NOW(), INTERVAL $intl HOUR) ";
1337                         }
1338
1339                         $need_entries = true;
1340
1341                 } else if ($n_feed == -4) {
1342                         $match_part = "true";
1343                 } else if ($n_feed >= 0) {
1344
1345                         if ($n_feed != 0) {
1346                                 $match_part = "feed_id = '$n_feed'";
1347                         } else {
1348                                 $match_part = "feed_id IS NULL";
1349                         }
1350
1351                 } else if ($feed < LABEL_BASE_INDEX) {
1352
1353                         $label_id = feed_to_label_id($feed);
1354
1355                         return getLabelUnread($label_id, $owner_uid);
1356
1357                 }
1358
1359                 if ($match_part) {
1360
1361                         if ($need_entries) {
1362                                 $from_qpart = "ttrss_user_entries,ttrss_entries";
1363                                 $from_where = "ttrss_entries.id = ttrss_user_entries.ref_id AND";
1364                         } else {
1365                                 $from_qpart = "ttrss_user_entries";
1366                         }
1367
1368                         $query = "SELECT count(int_id) AS unread
1369                                 FROM $from_qpart WHERE
1370                                 $unread_qpart AND $from_where ($match_part) AND ttrss_user_entries.owner_uid = $owner_uid";
1371
1372                         //echo "[$feed/$query]\n";
1373
1374                         $result = db_query($query);
1375
1376                 } else {
1377
1378                         $result = db_query("SELECT COUNT(post_int_id) AS unread
1379                                 FROM ttrss_tags,ttrss_user_entries,ttrss_entries
1380                                 WHERE tag_name = '$feed' AND post_int_id = int_id AND ref_id = ttrss_entries.id
1381                                 AND $unread_qpart AND ttrss_tags.owner_uid = " . $owner_uid);
1382                 }
1383
1384                 $unread = db_fetch_result($result, 0, "unread");
1385
1386                 return $unread;
1387         }
1388
1389         function getGlobalUnread($user_id = false) {
1390
1391                 if (!$user_id) {
1392                         $user_id = $_SESSION["uid"];
1393                 }
1394
1395                 $result = db_query("SELECT SUM(value) AS c_id FROM ttrss_counters_cache
1396                         WHERE owner_uid = '$user_id' AND feed_id > 0");
1397
1398                 $c_id = db_fetch_result($result, 0, "c_id");
1399
1400                 return $c_id;
1401         }
1402
1403         function getGlobalCounters($global_unread = -1) {
1404                 $ret_arr = array();
1405
1406                 if ($global_unread == -1) {
1407                         $global_unread = getGlobalUnread();
1408                 }
1409
1410                 $cv = array("id" => "global-unread",
1411                         "counter" => (int) $global_unread);
1412
1413                 array_push($ret_arr, $cv);
1414
1415                 $result = db_query("SELECT COUNT(id) AS fn FROM
1416                         ttrss_feeds WHERE owner_uid = " . $_SESSION["uid"]);
1417
1418                 $subscribed_feeds = db_fetch_result($result, 0, "fn");
1419
1420                 $cv = array("id" => "subscribed-feeds",
1421                         "counter" => (int) $subscribed_feeds);
1422
1423                 array_push($ret_arr, $cv);
1424
1425                 return $ret_arr;
1426         }
1427
1428         function getVirtCounters() {
1429
1430                 $ret_arr = array();
1431
1432                 for ($i = 0; $i >= -4; $i--) {
1433
1434                         $count = getFeedUnread($i);
1435
1436                         $cv = array("id" => $i,
1437                                 "counter" => (int) $count);
1438
1439 //                      if (get_pref('EXTENDED_FEEDLIST'))
1440 //                              $cv["xmsg"] = getFeedArticles($i)." ".__("total");
1441
1442                         array_push($ret_arr, $cv);
1443                 }
1444
1445                 $feeds = PluginHost::getInstance()->get_feeds(-1);
1446
1447                 if (is_array($feeds)) {
1448                         foreach ($feeds as $feed) {
1449                                 $cv = array("id" => PluginHost::pfeed_to_feed_id($feed['id']),
1450                                         "counter" => $feed['sender']->get_unread($feed['id']));
1451                                         array_push($ret_arr, $cv);
1452                         }
1453                 }
1454
1455                 return $ret_arr;
1456         }
1457
1458         function getLabelCounters($descriptions = false) {
1459
1460                 $ret_arr = array();
1461
1462                 $owner_uid = $_SESSION["uid"];
1463
1464                 $result = db_query("SELECT id,caption,COUNT(unread) AS unread
1465                         FROM ttrss_labels2 LEFT JOIN ttrss_user_labels2 ON
1466                                 (ttrss_labels2.id = label_id)
1467                                 LEFT JOIN ttrss_user_entries ON (ref_id = article_id AND unread = true
1468                                         AND ttrss_user_entries.owner_uid = $owner_uid)
1469                                 WHERE ttrss_labels2.owner_uid = $owner_uid GROUP BY ttrss_labels2.id,
1470                                         ttrss_labels2.caption");
1471
1472                 while ($line = db_fetch_assoc($result)) {
1473
1474                         $id = label_to_feed_id($line["id"]);
1475
1476                         $label_name = $line["caption"];
1477                         $count = $line["unread"];
1478
1479                         $cv = array("id" => $id,
1480                                 "counter" => (int) $count);
1481
1482                         if ($descriptions)
1483                                 $cv["description"] = $label_name;
1484
1485 //                      if (get_pref('EXTENDED_FEEDLIST'))
1486 //                              $cv["xmsg"] = getFeedArticles($id)." ".__("total");
1487
1488                         array_push($ret_arr, $cv);
1489                 }
1490
1491                 return $ret_arr;
1492         }
1493
1494         function getFeedCounters($active_feed = false) {
1495
1496                 $ret_arr = array();
1497
1498                 $query = "SELECT ttrss_feeds.id,
1499                                 ttrss_feeds.title,
1500                                 ".SUBSTRING_FOR_DATE."(ttrss_feeds.last_updated,1,19) AS last_updated,
1501                                 last_error, value AS count
1502                         FROM ttrss_feeds, ttrss_counters_cache
1503                         WHERE ttrss_feeds.owner_uid = ".$_SESSION["uid"]."
1504                                 AND ttrss_counters_cache.owner_uid = ttrss_feeds.owner_uid
1505                                 AND ttrss_counters_cache.feed_id = id";
1506
1507                 $result = db_query($query);
1508                 $fctrs_modified = false;
1509
1510                 while ($line = db_fetch_assoc($result)) {
1511
1512                         $id = $line["id"];
1513                         $count = $line["count"];
1514                         $last_error = htmlspecialchars($line["last_error"]);
1515
1516                         $last_updated = make_local_datetime($line['last_updated'], false);
1517
1518                         $has_img = feed_has_icon($id);
1519
1520                         if (date('Y') - date('Y', strtotime($line['last_updated'])) > 2)
1521                                 $last_updated = '';
1522
1523                         $cv = array("id" => $id,
1524                                 "updated" => $last_updated,
1525                                 "counter" => (int) $count,
1526                                 "has_img" => (int) $has_img);
1527
1528                         if ($last_error)
1529                                 $cv["error"] = $last_error;
1530
1531 //                      if (get_pref('EXTENDED_FEEDLIST'))
1532 //                              $cv["xmsg"] = getFeedArticles($id)." ".__("total");
1533
1534                         if ($active_feed && $id == $active_feed)
1535                                 $cv["title"] = truncate_string($line["title"], 30);
1536
1537                         array_push($ret_arr, $cv);
1538
1539                 }
1540
1541                 return $ret_arr;
1542         }
1543
1544         function get_pgsql_version() {
1545                 $result = db_query("SELECT version() AS version");
1546                 $version = explode(" ", db_fetch_result($result, 0, "version"));
1547                 return $version[1];
1548         }
1549
1550         /**
1551          * @return array (code => Status code, message => error message if available)
1552          *
1553          *                 0 - OK, Feed already exists
1554          *                 1 - OK, Feed added
1555          *                 2 - Invalid URL
1556          *                 3 - URL content is HTML, no feeds available
1557          *                 4 - URL content is HTML which contains multiple feeds.
1558          *                     Here you should call extractfeedurls in rpc-backend
1559          *                     to get all possible feeds.
1560          *                 5 - Couldn't download the URL content.
1561          */
1562         function subscribe_to_feed($url, $cat_id = 0,
1563                         $auth_login = '', $auth_pass = '') {
1564
1565                 global $fetch_last_error;
1566
1567                 require_once "include/rssfuncs.php";
1568
1569                 $url = fix_url($url);
1570
1571                 if (!$url || !validate_feed_url($url)) return array("code" => 2);
1572
1573                 $contents = @fetch_file_contents($url, false, $auth_login, $auth_pass);
1574
1575                 if (!$contents) {
1576                         return array("code" => 5, "message" => $fetch_last_error);
1577                 }
1578
1579                 if (is_html($contents)) {
1580                         $feedUrls = get_feeds_from_html($url, $contents);
1581
1582                         if (count($feedUrls) == 0) {
1583                                 return array("code" => 3);
1584                         } else if (count($feedUrls) > 1) {
1585                                 return array("code" => 4, "feeds" => $feedUrls);
1586                         }
1587                         //use feed url as new URL
1588                         $url = key($feedUrls);
1589                 }
1590
1591                 if ($cat_id == "0" || !$cat_id) {
1592                         $cat_qpart = "NULL";
1593                 } else {
1594                         $cat_qpart = "'$cat_id'";
1595                 }
1596
1597                 $result = db_query(
1598                         "SELECT id FROM ttrss_feeds
1599                         WHERE feed_url = '$url' AND owner_uid = ".$_SESSION["uid"]);
1600
1601                 if (strlen(FEED_CRYPT_KEY) > 0) {
1602                         require_once "crypt.php";
1603                         $auth_pass = substr(encrypt_string($auth_pass), 0, 250);
1604                         $auth_pass_encrypted = 'true';
1605                 } else {
1606                         $auth_pass_encrypted = 'false';
1607                 }
1608
1609                 $auth_pass = db_escape_string($auth_pass);
1610
1611                 if (db_num_rows($result) == 0) {
1612                         $result = db_query(
1613                                 "INSERT INTO ttrss_feeds
1614                                         (owner_uid,feed_url,title,cat_id, auth_login,auth_pass,update_method,auth_pass_encrypted)
1615                                 VALUES ('".$_SESSION["uid"]."', '$url',
1616                                 '[Unknown]', $cat_qpart, '$auth_login', '$auth_pass', 0, $auth_pass_encrypted)");
1617
1618                         $result = db_query(
1619                                 "SELECT id FROM ttrss_feeds WHERE feed_url = '$url'
1620                                         AND owner_uid = " . $_SESSION["uid"]);
1621
1622                         $feed_id = db_fetch_result($result, 0, "id");
1623
1624                         if ($feed_id) {
1625                                 update_rss_feed($feed_id, true);
1626                         }
1627
1628                         return array("code" => 1);
1629                 } else {
1630                         return array("code" => 0);
1631                 }
1632         }
1633
1634         function print_feed_select($id, $default_id = "",
1635                 $attributes = "", $include_all_feeds = true,
1636                 $root_id = false, $nest_level = 0) {
1637
1638                 if (!$root_id) {
1639                         print "<select id=\"$id\" name=\"$id\" $attributes>";
1640                         if ($include_all_feeds) {
1641                                 $is_selected = ("0" == $default_id) ? "selected=\"1\"" : "";
1642                                 print "<option $is_selected value=\"0\">".__('All feeds')."</option>";
1643                         }
1644                 }
1645
1646                 if (get_pref('ENABLE_FEED_CATS')) {
1647
1648                         if ($root_id)
1649                                 $parent_qpart = "parent_cat = '$root_id'";
1650                         else
1651                                 $parent_qpart = "parent_cat IS NULL";
1652
1653                         $result = db_query("SELECT id,title,
1654                                 (SELECT COUNT(id) FROM ttrss_feed_categories AS c2 WHERE
1655                                         c2.parent_cat = ttrss_feed_categories.id) AS num_children
1656                                 FROM ttrss_feed_categories
1657                                 WHERE owner_uid = ".$_SESSION["uid"]." AND $parent_qpart ORDER BY title");
1658
1659                         while ($line = db_fetch_assoc($result)) {
1660
1661                                 for ($i = 0; $i < $nest_level; $i++)
1662                                         $line["title"] = " - " . $line["title"];
1663
1664                                 $is_selected = ("CAT:".$line["id"] == $default_id) ? "selected=\"1\"" : "";
1665
1666                                 printf("<option $is_selected value='CAT:%d'>%s</option>",
1667                                         $line["id"], htmlspecialchars($line["title"]));
1668
1669                                 if ($line["num_children"] > 0)
1670                                         print_feed_select($id, $default_id, $attributes,
1671                                                 $include_all_feeds, $line["id"], $nest_level+1);
1672
1673                                 $feed_result = db_query("SELECT id,title FROM ttrss_feeds
1674                                         WHERE cat_id = '".$line["id"]."' AND owner_uid = ".$_SESSION["uid"] . " ORDER BY title");
1675
1676                                 while ($fline = db_fetch_assoc($feed_result)) {
1677                                         $is_selected = ($fline["id"] == $default_id) ? "selected=\"1\"" : "";
1678
1679                                         $fline["title"] = " + " . $fline["title"];
1680
1681                                         for ($i = 0; $i < $nest_level; $i++)
1682                                                 $fline["title"] = " - " . $fline["title"];
1683
1684                                         printf("<option $is_selected value='%d'>%s</option>",
1685                                                 $fline["id"], htmlspecialchars($fline["title"]));
1686                                 }
1687                         }
1688
1689                         if (!$root_id) {
1690                                 $is_selected = ($default_id == "CAT:0") ? "selected=\"1\"" : "";
1691
1692                                 printf("<option $is_selected value='CAT:0'>%s</option>",
1693                                         __("Uncategorized"));
1694
1695                                 $feed_result = db_query("SELECT id,title FROM ttrss_feeds
1696                                         WHERE cat_id IS NULL AND owner_uid = ".$_SESSION["uid"] . " ORDER BY title");
1697
1698                                 while ($fline = db_fetch_assoc($feed_result)) {
1699                                         $is_selected = ($fline["id"] == $default_id && !$default_is_cat) ? "selected=\"1\"" : "";
1700
1701                                         $fline["title"] = " + " . $fline["title"];
1702
1703                                         for ($i = 0; $i < $nest_level; $i++)
1704                                                 $fline["title"] = " - " . $fline["title"];
1705
1706                                         printf("<option $is_selected value='%d'>%s</option>",
1707                                                 $fline["id"], htmlspecialchars($fline["title"]));
1708                                 }
1709                         }
1710
1711                 } else {
1712                         $result = db_query("SELECT id,title FROM ttrss_feeds
1713                                 WHERE owner_uid = ".$_SESSION["uid"]." ORDER BY title");
1714
1715                         while ($line = db_fetch_assoc($result)) {
1716
1717                                 $is_selected = ($line["id"] == $default_id) ? "selected=\"1\"" : "";
1718
1719                                 printf("<option $is_selected value='%d'>%s</option>",
1720                                         $line["id"], htmlspecialchars($line["title"]));
1721                         }
1722                 }
1723
1724                 if (!$root_id) {
1725                         print "</select>";
1726                 }
1727         }
1728
1729         function print_feed_cat_select($id, $default_id,
1730                 $attributes, $include_all_cats = true, $root_id = false, $nest_level = 0) {
1731
1732                         if (!$root_id) {
1733                                         print "<select id=\"$id\" name=\"$id\" default=\"$default_id\" onchange=\"catSelectOnChange(this)\" $attributes>";
1734                         }
1735
1736                         if ($root_id)
1737                                 $parent_qpart = "parent_cat = '$root_id'";
1738                         else
1739                                 $parent_qpart = "parent_cat IS NULL";
1740
1741                         $result = db_query("SELECT id,title,
1742                                 (SELECT COUNT(id) FROM ttrss_feed_categories AS c2 WHERE
1743                                         c2.parent_cat = ttrss_feed_categories.id) AS num_children
1744                                 FROM ttrss_feed_categories
1745                                 WHERE owner_uid = ".$_SESSION["uid"]." AND $parent_qpart ORDER BY title");
1746
1747                         while ($line = db_fetch_assoc($result)) {
1748                                 if ($line["id"] == $default_id) {
1749                                         $is_selected = "selected=\"1\"";
1750                                 } else {
1751                                         $is_selected = "";
1752                                 }
1753
1754                                 for ($i = 0; $i < $nest_level; $i++)
1755                                         $line["title"] = " - " . $line["title"];
1756
1757                                 if ($line["title"])
1758                                         printf("<option $is_selected value='%d'>%s</option>",
1759                                                 $line["id"], htmlspecialchars($line["title"]));
1760
1761                                 if ($line["num_children"] > 0)
1762                                         print_feed_cat_select($id, $default_id, $attributes,
1763                                                 $include_all_cats, $line["id"], $nest_level+1);
1764                         }
1765
1766                         if (!$root_id) {
1767                                 if ($include_all_cats) {
1768                                         if (db_num_rows($result) > 0) {
1769                                                 print "<option disabled=\"1\">--------</option>";
1770                                         }
1771
1772                                         if ($default_id == 0) {
1773                                                 $is_selected = "selected=\"1\"";
1774                                         } else {
1775                                                 $is_selected = "";
1776                                         }
1777
1778                                         print "<option $is_selected value=\"0\">".__('Uncategorized')."</option>";
1779                                 }
1780                                 print "</select>";
1781                         }
1782                 }
1783
1784         function checkbox_to_sql_bool($val) {
1785                 return ($val == "on") ? "true" : "false";
1786         }
1787
1788         function getFeedCatTitle($id) {
1789                 if ($id == -1) {
1790                         return __("Special");
1791                 } else if ($id < LABEL_BASE_INDEX) {
1792                         return __("Labels");
1793                 } else if ($id > 0) {
1794                         $result = db_query("SELECT ttrss_feed_categories.title
1795                                 FROM ttrss_feeds, ttrss_feed_categories WHERE ttrss_feeds.id = '$id' AND
1796                                         cat_id = ttrss_feed_categories.id");
1797                         if (db_num_rows($result) == 1) {
1798                                 return db_fetch_result($result, 0, "title");
1799                         } else {
1800                                 return __("Uncategorized");
1801                         }
1802                 } else {
1803                         return "getFeedCatTitle($id) failed";
1804                 }
1805
1806         }
1807
1808         function getFeedIcon($id) {
1809                 switch ($id) {
1810                 case 0:
1811                         return "images/archive.png";
1812                         break;
1813                 case -1:
1814                         return "images/mark_set.svg";
1815                         break;
1816                 case -2:
1817                         return "images/pub_set.svg";
1818                         break;
1819                 case -3:
1820                         return "images/fresh.png";
1821                         break;
1822                 case -4:
1823                         return "images/tag.png";
1824                         break;
1825                 case -6:
1826                         return "images/recently_read.png";
1827                         break;
1828                 default:
1829                         if ($id < LABEL_BASE_INDEX) {
1830                                 return "images/label.png";
1831                         } else {
1832                                 if (file_exists(ICONS_DIR . "/$id.ico"))
1833                                         return ICONS_URL . "/$id.ico";
1834                         }
1835                         break;
1836                 }
1837
1838                 return false;
1839         }
1840
1841         function getFeedTitle($id, $cat = false) {
1842                 if ($cat) {
1843                         return getCategoryTitle($id);
1844                 } else if ($id == -1) {
1845                         return __("Starred articles");
1846                 } else if ($id == -2) {
1847                         return __("Published articles");
1848                 } else if ($id == -3) {
1849                         return __("Fresh articles");
1850                 } else if ($id == -4) {
1851                         return __("All articles");
1852                 } else if ($id === 0 || $id === "0") {
1853                         return __("Archived articles");
1854                 } else if ($id == -6) {
1855                         return __("Recently read");
1856                 } else if ($id < LABEL_BASE_INDEX) {
1857                         $label_id = feed_to_label_id($id);
1858                         $result = db_query("SELECT caption FROM ttrss_labels2 WHERE id = '$label_id'");
1859                         if (db_num_rows($result) == 1) {
1860                                 return db_fetch_result($result, 0, "caption");
1861                         } else {
1862                                 return "Unknown label ($label_id)";
1863                         }
1864
1865                 } else if (is_numeric($id) && $id > 0) {
1866                         $result = db_query("SELECT title FROM ttrss_feeds WHERE id = '$id'");
1867                         if (db_num_rows($result) == 1) {
1868                                 return db_fetch_result($result, 0, "title");
1869                         } else {
1870                                 return "Unknown feed ($id)";
1871                         }
1872                 } else {
1873                         return $id;
1874                 }
1875         }
1876
1877         function make_init_params() {
1878                 $params = array();
1879
1880                 foreach (array("ON_CATCHUP_SHOW_NEXT_FEED", "HIDE_READ_FEEDS",
1881                         "ENABLE_FEED_CATS", "FEEDS_SORT_BY_UNREAD", "CONFIRM_FEED_CATCHUP",
1882                         "CDM_AUTO_CATCHUP", "FRESH_ARTICLE_MAX_AGE",
1883                         "HIDE_READ_SHOWS_SPECIAL", "COMBINED_DISPLAY_MODE") as $param) {
1884
1885                                  $params[strtolower($param)] = (int) get_pref($param);
1886                  }
1887
1888                 $params["icons_url"] = ICONS_URL;
1889                 $params["cookie_lifetime"] = SESSION_COOKIE_LIFETIME;
1890                 $params["default_view_mode"] = get_pref("_DEFAULT_VIEW_MODE");
1891                 $params["default_view_limit"] = (int) get_pref("_DEFAULT_VIEW_LIMIT");
1892                 $params["default_view_order_by"] = get_pref("_DEFAULT_VIEW_ORDER_BY");
1893                 $params["bw_limit"] = (int) $_SESSION["bw_limit"];
1894                 $params["label_base_index"] = (int) LABEL_BASE_INDEX;
1895
1896                 $result = db_query("SELECT MAX(id) AS mid, COUNT(*) AS nf FROM
1897                         ttrss_feeds WHERE owner_uid = " . $_SESSION["uid"]);
1898
1899                 $max_feed_id = db_fetch_result($result, 0, "mid");
1900                 $num_feeds = db_fetch_result($result, 0, "nf");
1901
1902                 $params["max_feed_id"] = (int) $max_feed_id;
1903                 $params["num_feeds"] = (int) $num_feeds;
1904
1905                 $params["collapsed_feedlist"] = (int) get_pref("_COLLAPSED_FEEDLIST");
1906                 $params["hotkeys"] = get_hotkeys_map();
1907
1908                 $params["csrf_token"] = $_SESSION["csrf_token"];
1909                 $params["widescreen"] = (int) $_COOKIE["ttrss_widescreen"];
1910
1911                 $params['simple_update'] = defined('SIMPLE_UPDATE_MODE') && SIMPLE_UPDATE_MODE;
1912
1913                 return $params;
1914         }
1915
1916         function get_hotkeys_info() {
1917                 $hotkeys = array(
1918                         __("Navigation") => array(
1919                                 "next_feed" => __("Open next feed"),
1920                                 "prev_feed" => __("Open previous feed"),
1921                                 "next_article" => __("Open next article"),
1922                                 "prev_article" => __("Open previous article"),
1923                                 "next_article_noscroll" => __("Open next article (don't scroll long articles)"),
1924                                 "prev_article_noscroll" => __("Open previous article (don't scroll long articles)"),
1925                                 "next_article_noexpand" => __("Move to next article (don't expand or mark read)"),
1926                                 "prev_article_noexpand" => __("Move to previous article (don't expand or mark read)"),
1927                                 "search_dialog" => __("Show search dialog")),
1928                         __("Article") => array(
1929                                 "toggle_mark" => __("Toggle starred"),
1930                                 "toggle_publ" => __("Toggle published"),
1931                                 "toggle_unread" => __("Toggle unread"),
1932                                 "edit_tags" => __("Edit tags"),
1933                                 "dismiss_selected" => __("Dismiss selected"),
1934                                 "dismiss_read" => __("Dismiss read"),
1935                                 "open_in_new_window" => __("Open in new window"),
1936                                 "catchup_below" => __("Mark below as read"),
1937                                 "catchup_above" => __("Mark above as read"),
1938                                 "article_scroll_down" => __("Scroll down"),
1939                                 "article_scroll_up" => __("Scroll up"),
1940                                 "select_article_cursor" => __("Select article under cursor"),
1941                                 "email_article" => __("Email article"),
1942                                 "close_article" => __("Close/collapse article"),
1943                                 "toggle_expand" => __("Toggle article expansion (combined mode)"),
1944                                 "toggle_widescreen" => __("Toggle widescreen mode"),
1945                                 "toggle_embed_original" => __("Toggle embed original")),
1946                         __("Article selection") => array(
1947                                 "select_all" => __("Select all articles"),
1948                                 "select_unread" => __("Select unread"),
1949                                 "select_marked" => __("Select starred"),
1950                                 "select_published" => __("Select published"),
1951                                 "select_invert" => __("Invert selection"),
1952                                 "select_none" => __("Deselect everything")),
1953                         __("Feed") => array(
1954                                 "feed_refresh" => __("Refresh current feed"),
1955                                 "feed_unhide_read" => __("Un/hide read feeds"),
1956                                 "feed_subscribe" => __("Subscribe to feed"),
1957                                 "feed_edit" => __("Edit feed"),
1958                                 "feed_catchup" => __("Mark as read"),
1959                                 "feed_reverse" => __("Reverse headlines"),
1960                                 "feed_debug_update" => __("Debug feed update"),
1961                                 "catchup_all" => __("Mark all feeds as read"),
1962                                 "cat_toggle_collapse" => __("Un/collapse current category"),
1963                                 "toggle_combined_mode" => __("Toggle combined mode"),
1964                                 "toggle_cdm_expanded" => __("Toggle auto expand in combined mode")),
1965                         __("Go to") => array(
1966                                 "goto_all" => __("All articles"),
1967                                 "goto_fresh" => __("Fresh"),
1968                                 "goto_marked" => __("Starred"),
1969                                 "goto_published" => __("Published"),
1970                                 "goto_tagcloud" => __("Tag cloud"),
1971                                 "goto_prefs" => __("Preferences")),
1972                         __("Other") => array(
1973                                 "create_label" => __("Create label"),
1974                                 "create_filter" => __("Create filter"),
1975                                 "collapse_sidebar" => __("Un/collapse sidebar"),
1976                                 "help_dialog" => __("Show help dialog"))
1977                         );
1978
1979                 foreach (PluginHost::getInstance()->get_hooks(PluginHost::HOOK_HOTKEY_INFO) as $plugin) {
1980                         $hotkeys = $plugin->hook_hotkey_info($hotkeys);
1981                 }
1982
1983                 return $hotkeys;
1984         }
1985
1986         function get_hotkeys_map() {
1987                 $hotkeys = array(
1988 //                      "navigation" => array(
1989                                 "k" => "next_feed",
1990                                 "j" => "prev_feed",
1991                                 "n" => "next_article",
1992                                 "p" => "prev_article",
1993                                 "(38)|up" => "prev_article",
1994                                 "(40)|down" => "next_article",
1995 //                              "^(38)|Ctrl-up" => "prev_article_noscroll",
1996 //                              "^(40)|Ctrl-down" => "next_article_noscroll",
1997                                 "(191)|/" => "search_dialog",
1998 //                      "article" => array(
1999                                 "s" => "toggle_mark",
2000                                 "*s" => "toggle_publ",
2001                                 "u" => "toggle_unread",
2002                                 "*t" => "edit_tags",
2003                                 "*d" => "dismiss_selected",
2004                                 "*x" => "dismiss_read",
2005                                 "o" => "open_in_new_window",
2006                                 "c p" => "catchup_below",
2007                                 "c n" => "catchup_above",
2008                                 "*n" => "article_scroll_down",
2009                                 "*p" => "article_scroll_up",
2010                                 "*(38)|Shift+up" => "article_scroll_up",
2011                                 "*(40)|Shift+down" => "article_scroll_down",
2012                                 "a *w" => "toggle_widescreen",
2013                                 "a e" => "toggle_embed_original",
2014                                 "e" => "email_article",
2015                                 "a q" => "close_article",
2016 //                      "article_selection" => array(
2017                                 "a a" => "select_all",
2018                                 "a u" => "select_unread",
2019                                 "a *u" => "select_marked",
2020                                 "a p" => "select_published",
2021                                 "a i" => "select_invert",
2022                                 "a n" => "select_none",
2023 //                      "feed" => array(
2024                                 "f r" => "feed_refresh",
2025                                 "f a" => "feed_unhide_read",
2026                                 "f s" => "feed_subscribe",
2027                                 "f e" => "feed_edit",
2028                                 "f q" => "feed_catchup",
2029                                 "f x" => "feed_reverse",
2030                                 "f *d" => "feed_debug_update",
2031                                 "f *c" => "toggle_combined_mode",
2032                                 "f c" => "toggle_cdm_expanded",
2033                                 "*q" => "catchup_all",
2034                                 "x" => "cat_toggle_collapse",
2035 //                      "goto" => array(
2036                                 "g a" => "goto_all",
2037                                 "g f" => "goto_fresh",
2038                                 "g s" => "goto_marked",
2039                                 "g p" => "goto_published",
2040                                 "g t" => "goto_tagcloud",
2041                                 "g *p" => "goto_prefs",
2042 //                      "other" => array(
2043                                 "(9)|Tab" => "select_article_cursor", // tab
2044                                 "c l" => "create_label",
2045                                 "c f" => "create_filter",
2046                                 "c s" => "collapse_sidebar",
2047                                 "^(191)|Ctrl+/" => "help_dialog",
2048                         );
2049
2050                 if (get_pref('COMBINED_DISPLAY_MODE')) {
2051                         $hotkeys["^(38)|Ctrl-up"] = "prev_article_noscroll";
2052                         $hotkeys["^(40)|Ctrl-down"] = "next_article_noscroll";
2053                 }
2054
2055                 foreach (PluginHost::getInstance()->get_hooks(PluginHost::HOOK_HOTKEY_MAP) as $plugin) {
2056                         $hotkeys = $plugin->hook_hotkey_map($hotkeys);
2057                 }
2058
2059                 $prefixes = array();
2060
2061                 foreach (array_keys($hotkeys) as $hotkey) {
2062                         $pair = explode(" ", $hotkey, 2);
2063
2064                         if (count($pair) > 1 && !in_array($pair[0], $prefixes)) {
2065                                 array_push($prefixes, $pair[0]);
2066                         }
2067                 }
2068
2069                 return array($prefixes, $hotkeys);
2070         }
2071
2072         function make_runtime_info() {
2073                 $data = array();
2074
2075                 $result = db_query("SELECT MAX(id) AS mid, COUNT(*) AS nf FROM
2076                         ttrss_feeds WHERE owner_uid = " . $_SESSION["uid"]);
2077
2078                 $max_feed_id = db_fetch_result($result, 0, "mid");
2079                 $num_feeds = db_fetch_result($result, 0, "nf");
2080
2081                 $data["max_feed_id"] = (int) $max_feed_id;
2082                 $data["num_feeds"] = (int) $num_feeds;
2083
2084                 $data['last_article_id'] = getLastArticleId();
2085                 $data['cdm_expanded'] = get_pref('CDM_EXPANDED');
2086
2087                 $data['dep_ts'] = calculate_dep_timestamp();
2088                 $data['reload_on_ts_change'] = !defined('_NO_RELOAD_ON_TS_CHANGE');
2089
2090                 if (file_exists(LOCK_DIRECTORY . "/update_daemon.lock")) {
2091
2092                         $data['daemon_is_running'] = (int) file_is_locked("update_daemon.lock");
2093
2094                         if (time() - $_SESSION["daemon_stamp_check"] > 30) {
2095
2096                                 $stamp = (int) @file_get_contents(LOCK_DIRECTORY . "/update_daemon.stamp");
2097
2098                                 if ($stamp) {
2099                                         $stamp_delta = time() - $stamp;
2100
2101                                         if ($stamp_delta > 1800) {
2102                                                 $stamp_check = 0;
2103                                         } else {
2104                                                 $stamp_check = 1;
2105                                                 $_SESSION["daemon_stamp_check"] = time();
2106                                         }
2107
2108                                         $data['daemon_stamp_ok'] = $stamp_check;
2109
2110                                         $stamp_fmt = date("Y.m.d, G:i", $stamp);
2111
2112                                         $data['daemon_stamp'] = $stamp_fmt;
2113                                 }
2114                         }
2115                 }
2116
2117                 if ($_SESSION["last_version_check"] + 86400 + rand(-1000, 1000) < time()) {
2118                                 $new_version_details = @check_for_update();
2119
2120                                 $data['new_version_available'] = (int) ($new_version_details != false);
2121
2122                                 $_SESSION["last_version_check"] = time();
2123                                 $_SESSION["version_data"] = $new_version_details;
2124                 }
2125
2126                 return $data;
2127         }
2128
2129         function search_to_sql($search) {
2130
2131                 $search_query_part = "";
2132
2133                 $keywords = explode(" ", $search);
2134                 $query_keywords = array();
2135
2136                 foreach ($keywords as $k) {
2137                         if (strpos($k, "-") === 0) {
2138                                 $k = substr($k, 1);
2139                                 $not = "NOT";
2140                         } else {
2141                                 $not = "";
2142                         }
2143
2144                         $commandpair = explode(":", mb_strtolower($k), 2);
2145
2146                         switch ($commandpair[0]) {
2147                         case "title":
2148                                 if ($commandpair[1]) {
2149                                         array_push($query_keywords, "($not (LOWER(ttrss_entries.title) LIKE '%".
2150                                                 db_escape_string(mb_strtolower($commandpair[1]))."%'))");
2151                                 } else {
2152                                         array_push($query_keywords, "(UPPER(ttrss_entries.title) $not LIKE UPPER('%$k%')
2153                                                         OR UPPER(ttrss_entries.content) $not LIKE UPPER('%$k%'))");
2154                                 }
2155                                 break;
2156                         case "author":
2157                                 if ($commandpair[1]) {
2158                                         array_push($query_keywords, "($not (LOWER(author) LIKE '%".
2159                                                 db_escape_string(mb_strtolower($commandpair[1]))."%'))");
2160                                 } else {
2161                                         array_push($query_keywords, "(UPPER(ttrss_entries.title) $not LIKE UPPER('%$k%')
2162                                                         OR UPPER(ttrss_entries.content) $not LIKE UPPER('%$k%'))");
2163                                 }
2164                                 break;
2165                         case "note":
2166                                 if ($commandpair[1]) {
2167                                         if ($commandpair[1] == "true")
2168                                                 array_push($query_keywords, "($not (note IS NOT NULL AND note != ''))");
2169                                         else if ($commandpair[1] == "false")
2170                                                 array_push($query_keywords, "($not (note IS NULL OR note = ''))");
2171                                         else
2172                                                 array_push($query_keywords, "($not (LOWER(note) LIKE '%".
2173                                                         db_escape_string(mb_strtolower($commandpair[1]))."%'))");
2174                                 } else {
2175                                         array_push($query_keywords, "(UPPER(ttrss_entries.title) $not LIKE UPPER('%$k%')
2176                                                         OR UPPER(ttrss_entries.content) $not LIKE UPPER('%$k%'))");
2177                                 }
2178                                 break;
2179                         case "star":
2180
2181                                 if ($commandpair[1]) {
2182                                         if ($commandpair[1] == "true")
2183                                                 array_push($query_keywords, "($not (marked = true))");
2184                                         else
2185                                                 array_push($query_keywords, "($not (marked = false))");
2186                                 } else {
2187                                         array_push($query_keywords, "(UPPER(ttrss_entries.title) $not LIKE UPPER('%$k%')
2188                                                         OR UPPER(ttrss_entries.content) $not LIKE UPPER('%$k%'))");
2189                                 }
2190                                 break;
2191                         case "pub":
2192                                 if ($commandpair[1]) {
2193                                         if ($commandpair[1] == "true")
2194                                                 array_push($query_keywords, "($not (published = true))");
2195                                         else
2196                                                 array_push($query_keywords, "($not (published = false))");
2197
2198                                 } else {
2199                                         array_push($query_keywords, "(UPPER(ttrss_entries.title) $not LIKE UPPER('%$k%')
2200                                                         OR UPPER(ttrss_entries.content) $not LIKE UPPER('%$k%'))");
2201                                 }
2202                                 break;
2203                         default:
2204                                 if (strpos($k, "@") === 0) {
2205
2206                                         $user_tz_string = get_pref('USER_TIMEZONE', $_SESSION['uid']);
2207                                         $orig_ts = strtotime(substr($k, 1));
2208                                         $k = date("Y-m-d", convert_timestamp($orig_ts, $user_tz_string, 'UTC'));
2209
2210                                         //$k = date("Y-m-d", strtotime(substr($k, 1)));
2211
2212                                         array_push($query_keywords, "(".SUBSTRING_FOR_DATE."(updated,1,LENGTH('$k')) $not = '$k')");
2213                                 } else {
2214                                         array_push($query_keywords, "(UPPER(ttrss_entries.title) $not LIKE UPPER('%$k%')
2215                                                         OR UPPER(ttrss_entries.content) $not LIKE UPPER('%$k%'))");
2216                                 }
2217                         }
2218                 }
2219
2220                 $search_query_part = implode("AND", $query_keywords);
2221
2222                 return $search_query_part;
2223         }
2224
2225         function getParentCategories($cat, $owner_uid) {
2226                 $rv = array();
2227
2228                 $result = db_query("SELECT parent_cat FROM ttrss_feed_categories
2229                         WHERE id = '$cat' AND parent_cat IS NOT NULL AND owner_uid = $owner_uid");
2230
2231                 while ($line = db_fetch_assoc($result)) {
2232                         array_push($rv, $line["parent_cat"]);
2233                         $rv = array_merge($rv, getParentCategories($line["parent_cat"], $owner_uid));
2234                 }
2235
2236                 return $rv;
2237         }
2238
2239         function getChildCategories($cat, $owner_uid) {
2240                 $rv = array();
2241
2242                 $result = db_query("SELECT id FROM ttrss_feed_categories
2243                         WHERE parent_cat = '$cat' AND owner_uid = $owner_uid");
2244
2245                 while ($line = db_fetch_assoc($result)) {
2246                         array_push($rv, $line["id"]);
2247                         $rv = array_merge($rv, getChildCategories($line["id"], $owner_uid));
2248                 }
2249
2250                 return $rv;
2251         }
2252
2253         function queryFeedHeadlines($feed, $limit, $view_mode, $cat_view, $search, $search_mode, $override_order = false, $offset = 0, $owner_uid = 0, $filter = false, $since_id = 0, $include_children = false, $ignore_vfeed_group = false) {
2254
2255                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
2256
2257                 $ext_tables_part = "";
2258
2259                         if ($search) {
2260
2261                                 if (SPHINX_ENABLED) {
2262                                         $ids = join(",", @sphinx_search($search, 0, 500));
2263
2264                                         if ($ids)
2265                                                 $search_query_part = "ref_id IN ($ids) AND ";
2266                                         else
2267                                                 $search_query_part = "ref_id = -1 AND ";
2268
2269                                 } else {
2270                                         $search_query_part = search_to_sql($search);
2271                                         $search_query_part .= " AND ";
2272                                 }
2273
2274                         } else {
2275                                 $search_query_part = "";
2276                         }
2277
2278                         if ($filter) {
2279
2280                                 if (DB_TYPE == "pgsql") {
2281                                         $query_strategy_part .= " AND updated > NOW() - INTERVAL '14 days' ";
2282                                 } else {
2283                                         $query_strategy_part .= " AND updated > DATE_SUB(NOW(), INTERVAL 14 DAY) ";
2284                                 }
2285
2286                                 $override_order = "updated DESC";
2287
2288                                 $filter_query_part = filter_to_sql($filter, $owner_uid);
2289
2290                                 // Try to check if SQL regexp implementation chokes on a valid regexp
2291                                 $result = db_query("SELECT true AS true_val FROM ttrss_entries,
2292                                         ttrss_user_entries, ttrss_feeds, ttrss_feed_categories
2293                                         WHERE $filter_query_part LIMIT 1", false);
2294
2295                                 if ($result) {
2296                                         $test = db_fetch_result($result, 0, "true_val");
2297
2298                                         if (!$test) {
2299                                                 $filter_query_part = "false AND";
2300                                         } else {
2301                                                 $filter_query_part .= " AND";
2302                                         }
2303                                 } else {
2304                                         $filter_query_part = "false AND";
2305                                 }
2306
2307                         } else {
2308                                 $filter_query_part = "";
2309                         }
2310
2311                         if ($since_id) {
2312                                 $since_id_part = "ttrss_entries.id > $since_id AND ";
2313                         } else {
2314                                 $since_id_part = "";
2315                         }
2316
2317                         $view_query_part = "";
2318
2319                         if ($view_mode == "adaptive") {
2320                                 if ($search) {
2321                                         $view_query_part = " ";
2322                                 } else if ($feed != -1) {
2323
2324                                         $unread = getFeedUnread($feed, $cat_view);
2325
2326                                         if ($cat_view && $feed > 0 && $include_children)
2327                                                 $unread += getCategoryChildrenUnread($feed);
2328
2329                                         if ($unread > 0)
2330                                 $view_query_part = " unread = true AND ";
2331
2332                                 }
2333                         }
2334
2335                         if ($view_mode == "marked") {
2336                                 $view_query_part = " marked = true AND ";
2337                         }
2338
2339                         if ($view_mode == "has_note") {
2340                                 $view_query_part = " (note IS NOT NULL AND note != '') AND ";
2341                         }
2342
2343                         if ($view_mode == "published") {
2344                                 $view_query_part = " published = true AND ";
2345                         }
2346
2347                         if ($view_mode == "unread" && $feed != -6) {
2348                                 $view_query_part = " unread = true AND ";
2349                         }
2350
2351                         if ($limit > 0) {
2352                                 $limit_query_part = "LIMIT " . $limit;
2353                         }
2354
2355                         $allow_archived = false;
2356
2357                         $vfeed_query_part = "";
2358
2359                         // override query strategy and enable feed display when searching globally
2360                         if ($search && $search_mode == "all_feeds") {
2361                                 $query_strategy_part = "true";
2362                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2363                         /* tags */
2364                         } else if (!is_numeric($feed)) {
2365                                 $query_strategy_part = "true";
2366                                 $vfeed_query_part = "(SELECT title FROM ttrss_feeds WHERE
2367                                         id = feed_id) as feed_title,";
2368                         } else if ($search && $search_mode == "this_cat") {
2369                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2370
2371                                 if ($feed > 0) {
2372                                         if ($include_children) {
2373                                                 $subcats = getChildCategories($feed, $owner_uid);
2374                                                 array_push($subcats, $feed);
2375                                                 $cats_qpart = join(",", $subcats);
2376                                         } else {
2377                                                 $cats_qpart = $feed;
2378                                         }
2379
2380                                         $query_strategy_part = "ttrss_feeds.cat_id IN ($cats_qpart)";
2381
2382                                 } else {
2383                                         $query_strategy_part = "ttrss_feeds.cat_id IS NULL";
2384                                 }
2385
2386                         } else if ($feed > 0) {
2387
2388                                 if ($cat_view) {
2389
2390                                         if ($feed > 0) {
2391                                                 if ($include_children) {
2392                                                         # sub-cats
2393                                                         $subcats = getChildCategories($feed, $owner_uid);
2394
2395                                                         array_push($subcats, $feed);
2396                                                         $query_strategy_part = "cat_id IN (".
2397                                                                         implode(",", $subcats).")";
2398
2399                                                 } else {
2400                                                         $query_strategy_part = "cat_id = '$feed'";
2401                                                 }
2402
2403                                         } else {
2404                                                 $query_strategy_part = "cat_id IS NULL";
2405                                         }
2406
2407                                         $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2408
2409                                 } else {
2410                                         $query_strategy_part = "feed_id = '$feed'";
2411                                 }
2412                         } else if ($feed == 0 && !$cat_view) { // archive virtual feed
2413                                 $query_strategy_part = "feed_id IS NULL";
2414                                 $allow_archived = true;
2415                         } else if ($feed == 0 && $cat_view) { // uncategorized
2416                                 $query_strategy_part = "cat_id IS NULL AND feed_id IS NOT NULL";
2417                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2418                         } else if ($feed == -1) { // starred virtual feed
2419                                 $query_strategy_part = "marked = true";
2420                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2421                                 $allow_archived = true;
2422
2423                                 if (!$override_order) {
2424                                         $override_order = "last_marked DESC, date_entered DESC, updated DESC";
2425                                 }
2426
2427                         } else if ($feed == -2) { // published virtual feed OR labels category
2428
2429                                 if (!$cat_view) {
2430                                         $query_strategy_part = "published = true";
2431                                         $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2432                                         $allow_archived = true;
2433
2434                                         if (!$override_order) {
2435                                                 $override_order = "last_published DESC, date_entered DESC, updated DESC";
2436                                         }
2437
2438                                 } else {
2439                                         $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2440
2441                                         $ext_tables_part = ",ttrss_labels2,ttrss_user_labels2";
2442
2443                                         $query_strategy_part = "ttrss_labels2.id = ttrss_user_labels2.label_id AND
2444                                                 ttrss_user_labels2.article_id = ref_id";
2445
2446                                 }
2447                         } else if ($feed == -6) { // recently read
2448                                 $query_strategy_part = "unread = false AND last_read IS NOT NULL";
2449                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2450                                 $allow_archived = true;
2451
2452                                 if (!$override_order) $override_order = "last_read DESC";
2453                         } else if ($feed == -3) { // fresh virtual feed
2454                                 $query_strategy_part = "unread = true AND score >= 0";
2455
2456                                 $intl = get_pref("FRESH_ARTICLE_MAX_AGE", $owner_uid);
2457
2458                                 if (DB_TYPE == "pgsql") {
2459                                         $query_strategy_part .= " AND date_entered > NOW() - INTERVAL '$intl hour' ";
2460                                 } else {
2461                                         $query_strategy_part .= " AND date_entered > DATE_SUB(NOW(), INTERVAL $intl HOUR) ";
2462                                 }
2463
2464                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2465                         } else if ($feed == -4) { // all articles virtual feed
2466                                 $allow_archived = true;
2467                                 $query_strategy_part = "true";
2468                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2469                         } else if ($feed <= LABEL_BASE_INDEX) { // labels
2470                                 $label_id = feed_to_label_id($feed);
2471
2472                                 $query_strategy_part = "label_id = '$label_id' AND
2473                                         ttrss_labels2.id = ttrss_user_labels2.label_id AND
2474                                         ttrss_user_labels2.article_id = ref_id";
2475
2476                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2477                                 $ext_tables_part = ",ttrss_labels2,ttrss_user_labels2";
2478                                 $allow_archived = true;
2479
2480                         } else {
2481                                 $query_strategy_part = "true";
2482                         }
2483
2484                         $order_by = "score DESC, date_entered DESC, updated DESC";
2485
2486                         if ($view_mode == "unread_first") {
2487                                 $order_by = "unread DESC, $order_by";
2488                         }
2489
2490                         if ($override_order) {
2491                                 $order_by = $override_order;
2492                         }
2493
2494                         $feed_title = "";
2495
2496                         if ($search) {
2497                                 $feed_title = T_sprintf("Search results: %s", $search);
2498                         } else {
2499                                 if ($cat_view) {
2500                                         $feed_title = getCategoryTitle($feed);
2501                                 } else {
2502                                         if (is_numeric($feed) && $feed > 0) {
2503                                                 $result = db_query("SELECT title,site_url,last_error
2504                                                         FROM ttrss_feeds WHERE id = '$feed' AND owner_uid = $owner_uid");
2505
2506                                                 $feed_title = db_fetch_result($result, 0, "title");
2507                                                 $feed_site_url = db_fetch_result($result, 0, "site_url");
2508                                                 $last_error = db_fetch_result($result, 0, "last_error");
2509                                         } else {
2510                                                 $feed_title = getFeedTitle($feed);
2511                                         }
2512                                 }
2513                         }
2514
2515                         $content_query_part = "content as content_preview, cached_content, ";
2516
2517                         if (is_numeric($feed)) {
2518
2519                                 if ($feed >= 0) {
2520                                         $feed_kind = "Feeds";
2521                                 } else {
2522                                         $feed_kind = "Labels";
2523                                 }
2524
2525                                 if ($limit_query_part) {
2526                                         $offset_query_part = "OFFSET $offset";
2527                                 }
2528
2529                                 // proper override_order applied above
2530                                 if ($vfeed_query_part && !$ignore_vfeed_group && get_pref('VFEED_GROUP_BY_FEED', $owner_uid)) {
2531                                         if (!$override_order) {
2532                                                 $order_by = "ttrss_feeds.title, $order_by";
2533                                         } else {
2534                                                 $order_by = "ttrss_feeds.title, $override_order";
2535                                         }
2536                                 }
2537
2538                                 if (!$allow_archived) {
2539                                         $from_qpart = "ttrss_entries,ttrss_user_entries,ttrss_feeds$ext_tables_part";
2540                                         $feed_check_qpart = "ttrss_user_entries.feed_id = ttrss_feeds.id AND";
2541
2542                                 } else {
2543                                         $from_qpart = "ttrss_entries$ext_tables_part,ttrss_user_entries
2544                                                 LEFT JOIN ttrss_feeds ON (feed_id = ttrss_feeds.id)";
2545                                 }
2546
2547                                 if ($vfeed_query_part)
2548                                         $vfeed_query_part .= "favicon_avg_color,";
2549
2550                                 $query = "SELECT DISTINCT
2551                                                 date_entered,
2552                                                 guid,
2553                                                 ttrss_entries.id,ttrss_entries.title,
2554                                                 updated,
2555                                                 label_cache,
2556                                                 tag_cache,
2557                                                 always_display_enclosures,
2558                                                 site_url,
2559                                                 note,
2560                                                 num_comments,
2561                                                 comments,
2562                                                 int_id,
2563                                                 hide_images,
2564                                                 unread,feed_id,marked,published,link,last_read,orig_feed_id,
2565                                                 last_marked, last_published,
2566                                                 $vfeed_query_part
2567                                                 $content_query_part
2568                                                 author,score
2569                                         FROM
2570                                                 $from_qpart
2571                                         WHERE
2572                                         $feed_check_qpart
2573                                         ttrss_user_entries.ref_id = ttrss_entries.id AND
2574                                         ttrss_user_entries.owner_uid = '$owner_uid' AND
2575                                         $search_query_part
2576                                         $filter_query_part
2577                                         $view_query_part
2578                                         $since_id_part
2579                                         $query_strategy_part ORDER BY $order_by
2580                                         $limit_query_part $offset_query_part";
2581
2582                                 if ($_REQUEST["debug"]) print $query;
2583
2584                                 $result = db_query($query);
2585
2586                         } else {
2587                                 // browsing by tag
2588
2589                                 $select_qpart = "SELECT DISTINCT " .
2590                                                                 "date_entered," .
2591                                                                 "guid," .
2592                                                                 "note," .
2593                                                                 "ttrss_entries.id as id," .
2594                                                                 "title," .
2595                                                                 "updated," .
2596                                                                 "unread," .
2597                                                                 "feed_id," .
2598                                                                 "orig_feed_id," .
2599                                                                 "marked," .
2600                                                                 "num_comments, " .
2601                                                                 "comments, " .
2602                                                                 "tag_cache," .
2603                                                                 "label_cache," .
2604                                                                 "link," .
2605                                                                 "last_read," .
2606                                                                 "(SELECT hide_images FROM ttrss_feeds WHERE id = feed_id) AS hide_images," .
2607                                                                 "last_marked, last_published, " .
2608                                                                 $since_id_part .
2609                                                                 $vfeed_query_part .
2610                                                                 $content_query_part .
2611                                                                 "score ";
2612
2613                                 $feed_kind = "Tags";
2614                                 $all_tags = explode(",", $feed);
2615                                 if ($search_mode == 'any') {
2616                                         $tag_sql = "tag_name in (" . implode(", ", array_map("db_quote", $all_tags)) . ")";
2617                                         $from_qpart = " FROM ttrss_entries,ttrss_user_entries,ttrss_tags ";
2618                                         $where_qpart = " WHERE " .
2619                                                                    "ref_id = ttrss_entries.id AND " .
2620                                                                    "ttrss_user_entries.owner_uid = $owner_uid AND " .
2621                                                                    "post_int_id = int_id AND $tag_sql AND " .
2622                                                                    $view_query_part .
2623                                                                    $search_query_part .
2624                                                                    $query_strategy_part . " ORDER BY $order_by " .
2625                                                                    $limit_query_part;
2626
2627                                 } else {
2628                                         $i = 1;
2629                                         $sub_selects = array();
2630                                         $sub_ands = array();
2631                                         foreach ($all_tags as $term) {
2632                                                 array_push($sub_selects, "(SELECT post_int_id from ttrss_tags WHERE tag_name = " . db_quote($term) . " AND owner_uid = $owner_uid) as A$i");
2633                                                 $i++;
2634                                         }
2635                                         if ($i > 2) {
2636                                                 $x = 1;
2637                                                 $y = 2;
2638                                                 do {
2639                                                         array_push($sub_ands, "A$x.post_int_id = A$y.post_int_id");
2640                                                         $x++;
2641                                                         $y++;
2642                                                 } while ($y < $i);
2643                                         }
2644                                         array_push($sub_ands, "A1.post_int_id = ttrss_user_entries.int_id and ttrss_user_entries.owner_uid = $owner_uid");
2645                                         array_push($sub_ands, "ttrss_user_entries.ref_id = ttrss_entries.id");
2646                                         $from_qpart = " FROM " . implode(", ", $sub_selects) . ", ttrss_user_entries, ttrss_entries";
2647                                         $where_qpart = " WHERE " . implode(" AND ", $sub_ands);
2648                                 }
2649                                 //                              error_log("TAG SQL: " . $tag_sql);
2650                                 // $tag_sql = "tag_name = '$feed'";   DEFAULT way
2651
2652                                 //                              error_log("[". $select_qpart . "][" . $from_qpart . "][" .$where_qpart . "]");
2653                                 $result = db_query($select_qpart . $from_qpart . $where_qpart);
2654                         }
2655
2656                         return array($result, $feed_title, $feed_site_url, $last_error);
2657
2658         }
2659
2660         function sanitize($str, $force_remove_images = false, $owner = false, $site_url = false) {
2661                 if (!$owner) $owner = $_SESSION["uid"];
2662
2663                 $res = trim($str); if (!$res) return '';
2664
2665                 if (strpos($res, "href=") === false)
2666                         $res = rewrite_urls($res);
2667
2668                 $charset_hack = '<head>
2669                         <meta http-equiv="Content-Type" content="text/html; charset=utf-8"/>
2670                 </head>';
2671
2672                 $res = trim($res); if (!$res) return '';
2673
2674                 libxml_use_internal_errors(true);
2675
2676                 $doc = new DOMDocument();
2677                 $doc->loadHTML($charset_hack . $res);
2678                 $xpath = new DOMXPath($doc);
2679
2680                 $entries = $xpath->query('(//a[@href]|//img[@src])');
2681
2682                 foreach ($entries as $entry) {
2683
2684                         if ($site_url) {
2685
2686                                 if ($entry->hasAttribute('href'))
2687                                         $entry->setAttribute('href',
2688                                                 rewrite_relative_url($site_url, $entry->getAttribute('href')));
2689
2690                                 if ($entry->hasAttribute('src')) {
2691                                         $src = rewrite_relative_url($site_url, $entry->getAttribute('src'));
2692
2693                                         $cached_filename = CACHE_DIR . '/images/' . sha1($src) . '.png';
2694
2695                                         if (file_exists($cached_filename)) {
2696                                                 $src = SELF_URL_PATH . '/image.php?hash=' . sha1($src);
2697                                         }
2698
2699                                         $entry->setAttribute('src', $src);
2700                                 }
2701
2702                                 if ($entry->nodeName == 'img') {
2703                                         if (($owner && get_pref("STRIP_IMAGES", $owner)) ||
2704                                                         $force_remove_images || $_SESSION["bw_limit"]) {
2705
2706                                                 $p = $doc->createElement('p');
2707
2708                                                 $a = $doc->createElement('a');
2709                                                 $a->setAttribute('href', $entry->getAttribute('src'));
2710
2711                                                 $a->appendChild(new DOMText($entry->getAttribute('src')));
2712                                                 $a->setAttribute('target', '_blank');
2713
2714                                                 $p->appendChild($a);
2715
2716                                                 $entry->parentNode->replaceChild($p, $entry);
2717                                         }
2718                                 }
2719                         }
2720
2721                         if (strtolower($entry->nodeName) == "a") {
2722                                 $entry->setAttribute("target", "_blank");
2723                         }
2724                 }
2725
2726                 $entries = $xpath->query('//iframe');
2727                 foreach ($entries as $entry) {
2728                         $entry->setAttribute('sandbox', 'allow-scripts');
2729
2730                 }
2731
2732                 $allowed_elements = array('a', 'address', 'audio', 'article', 'aside',
2733                         'b', 'bdi', 'bdo', 'big', 'blockquote', 'body', 'br',
2734                         'caption', 'cite', 'center', 'code', 'col', 'colgroup',
2735                         'data', 'dd', 'del', 'details', 'div', 'dl', 'font',
2736                         'dt', 'em', 'footer', 'figure', 'figcaption',
2737                         'h1', 'h2', 'h3', 'h4', 'h5', 'h6', 'header', 'html', 'i',
2738                         'img', 'ins', 'kbd', 'li', 'main', 'mark', 'nav', 'noscript',
2739                         'ol', 'p', 'pre', 'q', 'ruby', 'rp', 'rt', 's', 'samp', 'section',
2740                         'small', 'source', 'span', 'strike', 'strong', 'sub', 'summary',
2741                         'sup', 'table', 'tbody', 'td', 'tfoot', 'th', 'thead', 'time',
2742                         'tr', 'track', 'tt', 'u', 'ul', 'var', 'wbr', 'video' );
2743
2744                 if ($_SESSION['hasSandbox']) $allowed_elements[] = 'iframe';
2745
2746                 $disallowed_attributes = array('id', 'style', 'class');
2747
2748                 foreach (PluginHost::getInstance()->get_hooks(PluginHost::HOOK_SANITIZE) as $plugin) {
2749                         $retval = $plugin->hook_sanitize($doc, $site_url, $allowed_elements, $disallowed_attributes);
2750                         if (is_array($retval)) {
2751                                 $doc = $retval[0];
2752                                 $allowed_elements = $retval[1];
2753                                 $disallowed_attributes = $retval[2];
2754                         } else {
2755                                 $doc = $retval;
2756                         }
2757                 }
2758
2759                 $doc->removeChild($doc->firstChild); //remove doctype
2760                 $doc = strip_harmful_tags($doc, $allowed_elements, $disallowed_attributes);
2761                 $res = $doc->saveHTML();
2762                 return $res;
2763         }
2764
2765         function strip_harmful_tags($doc, $allowed_elements, $disallowed_attributes) {
2766                 $entries = $doc->getElementsByTagName("*");
2767
2768                 foreach ($entries as $entry) {
2769                         if (!in_array($entry->nodeName, $allowed_elements)) {
2770                                 $entry->parentNode->removeChild($entry);
2771                         }
2772
2773                         if ($entry->hasAttributes()) {
2774                                 $attrs_to_remove = array();
2775
2776                                 foreach ($entry->attributes as $attr) {
2777
2778                                         if (strpos($attr->nodeName, 'on') === 0) {
2779                                                 array_push($attrs_to_remove, $attr);
2780                                         }
2781
2782                                         if (in_array($attr->nodeName, $disallowed_attributes)) {
2783                                                 array_push($attrs_to_remove, $attr);
2784                                         }
2785                                 }
2786
2787                                 foreach ($attrs_to_remove as $attr) {
2788                                         $entry->removeAttributeNode($attr);
2789                                 }
2790                         }
2791                 }
2792
2793                 return $doc;
2794         }
2795
2796         function check_for_update() {
2797                 if (CHECK_FOR_NEW_VERSION && $_SESSION['access_level'] >= 10) {
2798                         $version_url = "http://tt-rss.org/version.php?ver=" . VERSION .
2799                                 "&iid=" . sha1(SELF_URL_PATH);
2800
2801                         $version_data = @fetch_file_contents($version_url);
2802
2803                         if ($version_data) {
2804                                 $version_data = json_decode($version_data, true);
2805                                 if ($version_data && $version_data['version']) {
2806
2807                                         if (version_compare(VERSION, $version_data['version']) == -1) {
2808                                                 return $version_data;
2809                                         }
2810                                 }
2811                         }
2812                 }
2813                 return false;
2814         }
2815
2816         function catchupArticlesById($ids, $cmode, $owner_uid = false) {
2817
2818                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
2819                 if (count($ids) == 0) return;
2820
2821                 $tmp_ids = array();
2822
2823                 foreach ($ids as $id) {
2824                         array_push($tmp_ids, "ref_id = '$id'");
2825                 }
2826
2827                 $ids_qpart = join(" OR ", $tmp_ids);
2828
2829                 if ($cmode == 0) {
2830                         db_query("UPDATE ttrss_user_entries SET
2831                         unread = false,last_read = NOW()
2832                         WHERE ($ids_qpart) AND owner_uid = $owner_uid");
2833                 } else if ($cmode == 1) {
2834                         db_query("UPDATE ttrss_user_entries SET
2835                         unread = true
2836                         WHERE ($ids_qpart) AND owner_uid = $owner_uid");
2837                 } else {
2838                         db_query("UPDATE ttrss_user_entries SET
2839                         unread = NOT unread,last_read = NOW()
2840                         WHERE ($ids_qpart) AND owner_uid = $owner_uid");
2841                 }
2842
2843                 /* update ccache */
2844
2845                 $result = db_query("SELECT DISTINCT feed_id FROM ttrss_user_entries
2846                         WHERE ($ids_qpart) AND owner_uid = $owner_uid");
2847
2848                 while ($line = db_fetch_assoc($result)) {
2849                         ccache_update($line["feed_id"], $owner_uid);
2850                 }
2851         }
2852
2853         function get_article_tags($id, $owner_uid = 0, $tag_cache = false) {
2854
2855                 $a_id = db_escape_string($id);
2856
2857                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
2858
2859                 $query = "SELECT DISTINCT tag_name,
2860                         owner_uid as owner FROM
2861                         ttrss_tags WHERE post_int_id = (SELECT int_id FROM ttrss_user_entries WHERE
2862                         ref_id = '$a_id' AND owner_uid = '$owner_uid' LIMIT 1) ORDER BY tag_name";
2863
2864                 $obj_id = md5("TAGS:$owner_uid:$id");
2865                 $tags = array();
2866
2867                 /* check cache first */
2868
2869                 if ($tag_cache === false) {
2870                         $result = db_query("SELECT tag_cache FROM ttrss_user_entries
2871                                 WHERE ref_id = '$id' AND owner_uid = $owner_uid");
2872
2873                         $tag_cache = db_fetch_result($result, 0, "tag_cache");
2874                 }
2875
2876                 if ($tag_cache) {
2877                         $tags = explode(",", $tag_cache);
2878                 } else {
2879
2880                         /* do it the hard way */
2881
2882                         $tmp_result = db_query($query);
2883
2884                         while ($tmp_line = db_fetch_assoc($tmp_result)) {
2885                                 array_push($tags, $tmp_line["tag_name"]);
2886                         }
2887
2888                         /* update the cache */
2889
2890                         $tags_str = db_escape_string(join(",", $tags));
2891
2892                         db_query("UPDATE ttrss_user_entries
2893                                 SET tag_cache = '$tags_str' WHERE ref_id = '$id'
2894                                 AND owner_uid = $owner_uid");
2895                 }
2896
2897                 return $tags;
2898         }
2899
2900         function trim_array($array) {
2901                 $tmp = $array;
2902                 array_walk($tmp, 'trim');
2903                 return $tmp;
2904         }
2905
2906         function tag_is_valid($tag) {
2907                 if ($tag == '') return false;
2908                 if (preg_match("/^[0-9]*$/", $tag)) return false;
2909                 if (mb_strlen($tag) > 250) return false;
2910
2911                 if (function_exists('iconv')) {
2912                         $tag = iconv("utf-8", "utf-8", $tag);
2913                 }
2914
2915                 if (!$tag) return false;
2916
2917                 return true;
2918         }
2919
2920         function render_login_form() {
2921                 header('Cache-Control: public');
2922
2923                 require_once "login_form.php";
2924                 exit;
2925         }
2926
2927         function format_warning($msg, $id = "") {
2928                 global $link;
2929                 return "<div class=\"warning\" id=\"$id\">
2930                         <span><img src=\"images/sign_excl.svg\"></span><span>$msg</span></div>";
2931         }
2932
2933         function format_notice($msg, $id = "") {
2934                 global $link;
2935                 return "<div class=\"notice\" id=\"$id\">
2936                         <span><img src=\"images/sign_info.svg\"></span><span>$msg</span></div>";
2937         }
2938
2939         function format_error($msg, $id = "") {
2940                 global $link;
2941                 return "<div class=\"error\" id=\"$id\">
2942                         <span><img src=\"images/sign_excl.svg\"></span><span>$msg</span></div>";
2943         }
2944
2945         function print_notice($msg) {
2946                 return print format_notice($msg);
2947         }
2948
2949         function print_warning($msg) {
2950                 return print format_warning($msg);
2951         }
2952
2953         function print_error($msg) {
2954                 return print format_error($msg);
2955         }
2956
2957
2958         function T_sprintf() {
2959                 $args = func_get_args();
2960                 return vsprintf(__(array_shift($args)), $args);
2961         }
2962
2963         function format_inline_player($url, $ctype) {
2964
2965                 $entry = "";
2966
2967                 $url = htmlspecialchars($url);
2968
2969                 if (strpos($ctype, "audio/") === 0) {
2970
2971                         if ($_SESSION["hasAudio"] && (strpos($ctype, "ogg") !== false ||
2972                                 $_SESSION["hasMp3"])) {
2973
2974                                 $entry .= "<audio controls>
2975                                         <source type=\"$ctype\" src=\"$url\"></source>
2976                                         </audio>";
2977
2978                         } else {
2979
2980                                 $entry .= "<object type=\"application/x-shockwave-flash\"
2981                                         data=\"lib/button/musicplayer.swf?song_url=$url\"
2982                                         width=\"17\" height=\"17\" style='float : left; margin-right : 5px;'>
2983                                         <param name=\"movie\"
2984                                                 value=\"lib/button/musicplayer.swf?song_url=$url\" />
2985                                         </object>";
2986                         }
2987
2988                         if ($entry) $entry .= "&nbsp; <a target=\"_blank\"
2989                                 href=\"$url\">" . basename($url) . "</a>";
2990
2991                         return $entry;
2992
2993                 }
2994
2995                 return "";
2996
2997 /*              $filename = substr($url, strrpos($url, "/")+1);
2998
2999                 $entry .= " <a target=\"_blank\" href=\"" . htmlspecialchars($url) . "\">" .
3000                         $filename . " (" . $ctype . ")" . "</a>"; */
3001
3002         }
3003
3004         function format_article($id, $mark_as_read = true, $zoom_mode = false, $owner_uid = false) {
3005                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
3006
3007                 $rv = array();
3008
3009                 $rv['id'] = $id;
3010
3011                 /* we can figure out feed_id from article id anyway, why do we
3012                  * pass feed_id here? let's ignore the argument :(*/
3013
3014                 $result = db_query("SELECT feed_id FROM ttrss_user_entries
3015                         WHERE ref_id = '$id'");
3016
3017                 $feed_id = (int) db_fetch_result($result, 0, "feed_id");
3018
3019                 $rv['feed_id'] = $feed_id;
3020
3021                 //if (!$zoom_mode) { print "<article id='$id'><![CDATA["; };
3022
3023                 if ($mark_as_read) {
3024                         $result = db_query("UPDATE ttrss_user_entries
3025                                 SET unread = false,last_read = NOW()
3026                                 WHERE ref_id = '$id' AND owner_uid = $owner_uid");
3027
3028                         ccache_update($feed_id, $owner_uid);
3029                 }
3030
3031                 $result = db_query("SELECT id,title,link,content,feed_id,comments,int_id,
3032                         ".SUBSTRING_FOR_DATE."(updated,1,16) as updated,
3033                         (SELECT site_url FROM ttrss_feeds WHERE id = feed_id) as site_url,
3034                         (SELECT hide_images FROM ttrss_feeds WHERE id = feed_id) as hide_images,
3035                         (SELECT always_display_enclosures FROM ttrss_feeds WHERE id = feed_id) as always_display_enclosures,
3036                         num_comments,
3037                         tag_cache,
3038                         author,
3039                         orig_feed_id,
3040                         note,
3041                         cached_content
3042                         FROM ttrss_entries,ttrss_user_entries
3043                         WHERE   id = '$id' AND ref_id = id AND owner_uid = $owner_uid");
3044
3045                 if ($result) {
3046
3047                         $line = db_fetch_assoc($result);
3048
3049                         $tag_cache = $line["tag_cache"];
3050
3051                         $line["tags"] = get_article_tags($id, $owner_uid, $line["tag_cache"]);
3052                         unset($line["tag_cache"]);
3053
3054                         $line["content"] = sanitize($line["content"], false, $owner_uid,        $line["site_url"]);
3055
3056                         foreach (PluginHost::getInstance()->get_hooks(PluginHost::HOOK_RENDER_ARTICLE) as $p) {
3057                                 $line = $p->hook_render_article($line);
3058                         }
3059
3060                         $num_comments = $line["num_comments"];
3061                         $entry_comments = "";
3062
3063                         if ($num_comments > 0) {
3064                                 if ($line["comments"]) {
3065                                         $comments_url = htmlspecialchars($line["comments"]);
3066                                 } else {
3067                                         $comments_url = htmlspecialchars($line["link"]);
3068                                 }
3069                                 $entry_comments = "<a target='_blank' href=\"$comments_url\">$num_comments comments</a>";
3070                         } else {
3071                                 if ($line["comments"] && $line["link"] != $line["comments"]) {
3072                                         $entry_comments = "<a target='_blank' href=\"".htmlspecialchars($line["comments"])."\">comments</a>";
3073                                 }
3074                         }
3075
3076                         if ($zoom_mode) {
3077                                 header("Content-Type: text/html");
3078                                 $rv['content'] .= "<html><head>
3079                                                 <meta http-equiv=\"Content-Type\" content=\"text/html; charset=utf-8\"/>
3080                                                 <title>Tiny Tiny RSS - ".$line["title"]."</title>
3081                                                 <link rel=\"stylesheet\" type=\"text/css\" href=\"tt-rss.css\">
3082                                         </head><body id=\"ttrssZoom\">";
3083                         }
3084
3085                         $rv['content'] .= "<div class=\"postReply\" id=\"POST-$id\">";
3086
3087                         $rv['content'] .= "<div class=\"postHeader\" id=\"POSTHDR-$id\">";
3088
3089                         $entry_author = $line["author"];
3090
3091                         if ($entry_author) {
3092                                 $entry_author = __(" - ") . $entry_author;
3093                         }
3094
3095                         $parsed_updated = make_local_datetime($line["updated"], true,
3096                                 $owner_uid, true);
3097
3098                         $rv['content'] .= "<div class=\"postDate\">$parsed_updated</div>";
3099
3100                         if ($line["link"]) {
3101                                 $rv['content'] .= "<div class='postTitle'><a target='_blank'
3102                                         title=\"".htmlspecialchars($line['title'])."\"
3103                                         href=\"" .
3104                                         htmlspecialchars($line["link"]) . "\">" .
3105                                         $line["title"] . "</a>" .
3106                                         "<span class='author'>$entry_author</span></div>";
3107                         } else {
3108                                 $rv['content'] .= "<div class='postTitle'>" . $line["title"] . "$entry_author</div>";
3109                         }
3110
3111                         $tags_str = format_tags_string($line["tags"], $id);
3112                         $tags_str_full = join(", ", $line["tags"]);
3113
3114                         if (!$tags_str_full) $tags_str_full = __("no tags");
3115
3116                         if (!$entry_comments) $entry_comments = "&nbsp;"; # placeholder
3117
3118                         $rv['content'] .= "<div class='postTags' style='float : right'>
3119                                 <img src='images/tag.png'
3120                                 class='tagsPic' alt='Tags' title='Tags'>&nbsp;";
3121
3122                         if (!$zoom_mode) {
3123                                 $rv['content'] .= "<span id=\"ATSTR-$id\">$tags_str</span>
3124                                         <a title=\"".__('Edit tags for this article')."\"
3125                                         href=\"#\" onclick=\"editArticleTags($id, $feed_id)\">(+)</a>";
3126
3127                                 $rv['content'] .= "<div dojoType=\"dijit.Tooltip\"
3128                                         id=\"ATSTRTIP-$id\" connectId=\"ATSTR-$id\"
3129                                         position=\"below\">$tags_str_full</div>";
3130
3131                                 foreach (PluginHost::getInstance()->get_hooks(PluginHost::HOOK_ARTICLE_BUTTON) as $p) {
3132                                         $rv['content'] .= $p->hook_article_button($line);
3133                                 }
3134
3135                         } else {
3136                                 $tags_str = strip_tags($tags_str);
3137                                 $rv['content'] .= "<span id=\"ATSTR-$id\">$tags_str</span>";
3138                         }
3139                         $rv['content'] .= "</div>";
3140                         $rv['content'] .= "<div clear='both'>";
3141
3142                         foreach (PluginHost::getInstance()->get_hooks(PluginHost::HOOK_ARTICLE_LEFT_BUTTON) as $p) {
3143                                 $rv['content'] .= $p->hook_article_left_button($line);
3144                         }
3145
3146                         $rv['content'] .= "$entry_comments</div>";
3147
3148                         if ($line["orig_feed_id"]) {
3149
3150                                 $tmp_result = db_query("SELECT * FROM ttrss_archived_feeds
3151                                         WHERE id = ".$line["orig_feed_id"]);
3152
3153                                 if (db_num_rows($tmp_result) != 0) {
3154
3155                                         $rv['content'] .= "<div clear='both'>";
3156                                         $rv['content'] .= __("Originally from:");
3157
3158                                         $rv['content'] .= "&nbsp;";
3159
3160                                         $tmp_line = db_fetch_assoc($tmp_result);
3161
3162                                         $rv['content'] .= "<a target='_blank'
3163                                                 href=' " . htmlspecialchars($tmp_line['site_url']) . "'>" .
3164                                                 $tmp_line['title'] . "</a>";
3165
3166                                         $rv['content'] .= "&nbsp;";
3167
3168                                         $rv['content'] .= "<a target='_blank' href='" . htmlspecialchars($tmp_line['feed_url']) . "'>";
3169                                         $rv['content'] .= "<img title='".__('Feed URL')."'class='tinyFeedIcon' src='images/pub_set.svg'></a>";
3170
3171                                         $rv['content'] .= "</div>";
3172                                 }
3173                         }
3174
3175                         $rv['content'] .= "</div>";
3176
3177                         $rv['content'] .= "<div id=\"POSTNOTE-$id\">";
3178                                 if ($line['note']) {
3179                                         $rv['content'] .= format_article_note($id, $line['note'], !$zoom_mode);
3180                                 }
3181                         $rv['content'] .= "</div>";
3182
3183                         $rv['content'] .= "<div class=\"postContent\">";
3184
3185                         $rv['content'] .= $line["content"];
3186                         $rv['content'] .= format_article_enclosures($id,
3187                                 sql_bool_to_bool($line["always_display_enclosures"]),
3188                                 $line["content"],
3189                                 sql_bool_to_bool($line["hide_images"]));
3190
3191                         $rv['content'] .= "</div>";
3192
3193                         $rv['content'] .= "</div>";
3194
3195                 }
3196
3197                 if ($zoom_mode) {
3198                         $rv['content'] .= "
3199                                 <div class='footer'>
3200                                 <button onclick=\"return window.close()\">".
3201                                         __("Close this window")."</button></div>";
3202                         $rv['content'] .= "</body></html>";
3203                 }
3204
3205                 return $rv;
3206
3207         }
3208
3209         function print_checkpoint($n, $s) {
3210                 $ts = microtime(true);
3211                 echo sprintf("<!-- CP[$n] %.4f seconds -->", $ts - $s);
3212                 return $ts;
3213         }
3214
3215         function sanitize_tag($tag) {
3216                 $tag = trim($tag);
3217
3218                 $tag = mb_strtolower($tag, 'utf-8');
3219
3220                 $tag = preg_replace('/[\'\"\+\>\<]/', "", $tag);
3221
3222 //              $tag = str_replace('"', "", $tag);
3223 //              $tag = str_replace("+", " ", $tag);
3224                 $tag = str_replace("technorati tag: ", "", $tag);
3225
3226                 return $tag;
3227         }
3228
3229         function get_self_url_prefix() {
3230                 if (strrpos(SELF_URL_PATH, "/") === strlen(SELF_URL_PATH)-1) {
3231                         return substr(SELF_URL_PATH, 0, strlen(SELF_URL_PATH)-1);
3232                 } else {
3233                         return SELF_URL_PATH;
3234                 }
3235         }
3236
3237         /**
3238          * Compute the Mozilla Firefox feed adding URL from server HOST and REQUEST_URI.
3239          *
3240          * @return string The Mozilla Firefox feed adding URL.
3241          */
3242         function add_feed_url() {
3243                 //$url_path = ($_SERVER['HTTPS'] != "on" ? 'http://' :  'https://') . $_SERVER["HTTP_HOST"] . parse_url($_SERVER["REQUEST_URI"], PHP_URL_PATH);
3244
3245                 $url_path = get_self_url_prefix() .
3246                         "/public.php?op=subscribe&feed_url=%s";
3247                 return $url_path;
3248         } // function add_feed_url
3249
3250         function encrypt_password($pass, $salt = '', $mode2 = false) {
3251                 if ($salt && $mode2) {
3252                         return "MODE2:" . hash('sha256', $salt . $pass);
3253                 } else if ($salt) {
3254                         return "SHA1X:" . sha1("$salt:$pass");
3255                 } else {
3256                         return "SHA1:" . sha1($pass);
3257                 }
3258         } // function encrypt_password
3259
3260         function load_filters($feed_id, $owner_uid, $action_id = false) {
3261                 $filters = array();
3262
3263                 $cat_id = (int)getFeedCategory($feed_id);
3264
3265                 $result = db_query("SELECT * FROM ttrss_filters2 WHERE
3266                         owner_uid = $owner_uid AND enabled = true ORDER BY order_id, title");
3267
3268                 $check_cats = join(",", array_merge(
3269                         getParentCategories($cat_id, $owner_uid),
3270                         array($cat_id)));
3271
3272                 while ($line = db_fetch_assoc($result)) {
3273                         $filter_id = $line["id"];
3274
3275                         $result2 = db_query("SELECT
3276                                 r.reg_exp, r.inverse, r.feed_id, r.cat_id, r.cat_filter, t.name AS type_name
3277                                 FROM ttrss_filters2_rules AS r,
3278                                 ttrss_filter_types AS t
3279                                 WHERE
3280                                         (cat_id IS NULL OR cat_id IN ($check_cats)) AND
3281                                         (feed_id IS NULL OR feed_id = '$feed_id') AND
3282                                         filter_type = t.id AND filter_id = '$filter_id'");
3283
3284                         $rules = array();
3285                         $actions = array();
3286
3287                         while ($rule_line = db_fetch_assoc($result2)) {
3288 #                               print_r($rule_line);
3289
3290                                 $rule = array();
3291                                 $rule["reg_exp"] = $rule_line["reg_exp"];
3292                                 $rule["type"] = $rule_line["type_name"];
3293                                 $rule["inverse"] = sql_bool_to_bool($rule_line["inverse"]);
3294
3295                                 array_push($rules, $rule);
3296                         }
3297
3298                         $result2 = db_query("SELECT a.action_param,t.name AS type_name
3299                                 FROM ttrss_filters2_actions AS a,
3300                                 ttrss_filter_actions AS t
3301                                 WHERE
3302                                         action_id = t.id AND filter_id = '$filter_id'");
3303
3304                         while ($action_line = db_fetch_assoc($result2)) {
3305 #                               print_r($action_line);
3306
3307                                 $action = array();
3308                                 $action["type"] = $action_line["type_name"];
3309                                 $action["param"] = $action_line["action_param"];
3310
3311                                 array_push($actions, $action);
3312                         }
3313
3314
3315                         $filter = array();
3316                         $filter["match_any_rule"] = sql_bool_to_bool($line["match_any_rule"]);
3317                         $filter["inverse"] = sql_bool_to_bool($line["inverse"]);
3318                         $filter["rules"] = $rules;
3319                         $filter["actions"] = $actions;
3320
3321                         if (count($rules) > 0 && count($actions) > 0) {
3322                                 array_push($filters, $filter);
3323                         }
3324                 }
3325
3326                 return $filters;
3327         }
3328
3329         function get_score_pic($score) {
3330                 if ($score > 100) {
3331                         return "score_high.png";
3332                 } else if ($score > 0) {
3333                         return "score_half_high.png";
3334                 } else if ($score < -100) {
3335                         return "score_low.png";
3336                 } else if ($score < 0) {
3337                         return "score_half_low.png";
3338                 } else {
3339                         return "score_neutral.png";
3340                 }
3341         }
3342
3343         function feed_has_icon($id) {
3344                 return is_file(ICONS_DIR . "/$id.ico") && filesize(ICONS_DIR . "/$id.ico") > 0;
3345         }
3346
3347         function init_plugins() {
3348                 PluginHost::getInstance()->load(PLUGINS, PluginHost::KIND_ALL);
3349
3350                 return true;
3351         }
3352
3353         function format_tags_string($tags, $id) {
3354
3355                 $tags_str = "";
3356                 $tags_nolinks_str = "";
3357
3358                 $num_tags = 0;
3359
3360                 $tag_limit = 6;
3361
3362                 $formatted_tags = array();
3363
3364                 foreach ($tags as $tag) {
3365                         $num_tags++;
3366                         $tag_escaped = str_replace("'", "\\'", $tag);
3367
3368                         if (mb_strlen($tag) > 30) {
3369                                 $tag = truncate_string($tag, 30);
3370                         }
3371
3372                         $tag_str = "<a href=\"javascript:viewfeed('$tag_escaped')\">$tag</a>";
3373
3374                         array_push($formatted_tags, $tag_str);
3375
3376                         $tmp_tags_str = implode(", ", $formatted_tags);
3377
3378                         if ($num_tags == $tag_limit || mb_strlen($tmp_tags_str) > 150) {
3379                                 break;
3380                         }
3381                 }
3382
3383                 $tags_str = implode(", ", $formatted_tags);
3384
3385                 if ($num_tags < count($tags)) {
3386                         $tags_str .= ", &hellip;";
3387                 }
3388
3389                 if ($num_tags == 0) {
3390                         $tags_str = __("no tags");
3391                 }
3392
3393                 return $tags_str;
3394
3395         }
3396
3397         function format_article_labels($labels, $id) {
3398
3399                 if (is_array($labels)) return '';
3400
3401                 $labels_str = "";
3402
3403                 foreach ($labels as $l) {
3404                         $labels_str .= sprintf("<span class='hlLabelRef'
3405                                 style='color : %s; background-color : %s'>%s</span>",
3406                                         $l[2], $l[3], $l[1]);
3407                         }
3408
3409                 return $labels_str;
3410
3411         }
3412
3413         function format_article_note($id, $note, $allow_edit = true) {
3414
3415                 $str = "<div class='articleNote'        onclick=\"editArticleNote($id)\">
3416                         <div class='noteEdit' onclick=\"editArticleNote($id)\">".
3417                         ($allow_edit ? __('(edit note)') : "")."</div>$note</div>";
3418
3419                 return $str;
3420         }
3421
3422
3423         function get_feed_category($feed_cat, $parent_cat_id = false) {
3424                 if ($parent_cat_id) {
3425                         $parent_qpart = "parent_cat = '$parent_cat_id'";
3426                         $parent_insert = "'$parent_cat_id'";
3427                 } else {
3428                         $parent_qpart = "parent_cat IS NULL";
3429                         $parent_insert = "NULL";
3430                 }
3431
3432                 $result = db_query(
3433                         "SELECT id FROM ttrss_feed_categories
3434                         WHERE $parent_qpart AND title = '$feed_cat' AND owner_uid = ".$_SESSION["uid"]);
3435
3436                 if (db_num_rows($result) == 0) {
3437                         return false;
3438                 } else {
3439                         return db_fetch_result($result, 0, "id");
3440                 }
3441         }
3442
3443         function add_feed_category($feed_cat, $parent_cat_id = false) {
3444
3445                 if (!$feed_cat) return false;
3446
3447                 db_query("BEGIN");
3448
3449                 if ($parent_cat_id) {
3450                         $parent_qpart = "parent_cat = '$parent_cat_id'";
3451                         $parent_insert = "'$parent_cat_id'";
3452                 } else {
3453                         $parent_qpart = "parent_cat IS NULL";
3454                         $parent_insert = "NULL";
3455                 }
3456
3457                 $feed_cat = mb_substr($feed_cat, 0, 250);
3458
3459                 $result = db_query(
3460                         "SELECT id FROM ttrss_feed_categories
3461                         WHERE $parent_qpart AND title = '$feed_cat' AND owner_uid = ".$_SESSION["uid"]);
3462
3463                 if (db_num_rows($result) == 0) {
3464
3465                         $result = db_query(
3466                                 "INSERT INTO ttrss_feed_categories (owner_uid,title,parent_cat)
3467                                 VALUES ('".$_SESSION["uid"]."', '$feed_cat', $parent_insert)");
3468
3469                         db_query("COMMIT");
3470
3471                         return true;
3472                 }
3473
3474                 return false;
3475         }
3476
3477         function getArticleFeed($id) {
3478                 $result = db_query("SELECT feed_id FROM ttrss_user_entries
3479                         WHERE ref_id = '$id' AND owner_uid = " . $_SESSION["uid"]);
3480
3481                 if (db_num_rows($result) != 0) {
3482                         return db_fetch_result($result, 0, "feed_id");
3483                 } else {
3484                         return 0;
3485                 }
3486         }
3487
3488         /**
3489          * Fixes incomplete URLs by prepending "http://".
3490          * Also replaces feed:// with http://, and
3491          * prepends a trailing slash if the url is a domain name only.
3492          *
3493          * @param string $url Possibly incomplete URL
3494          *
3495          * @return string Fixed URL.
3496          */
3497         function fix_url($url) {
3498                 if (strpos($url, '://') === false) {
3499                         $url = 'http://' . $url;
3500                 } else if (substr($url, 0, 5) == 'feed:') {
3501                         $url = 'http:' . substr($url, 5);
3502                 }
3503
3504                 //prepend slash if the URL has no slash in it
3505                 // "http://www.example" -> "http://www.example/"
3506                 if (strpos($url, '/', strpos($url, ':') + 3) === false) {
3507                         $url .= '/';
3508                 }
3509
3510                 if ($url != "http:///")
3511                         return $url;
3512                 else
3513                         return '';
3514         }
3515
3516         function validate_feed_url($url) {
3517                 $parts = parse_url($url);
3518
3519                 return ($parts['scheme'] == 'http' || $parts['scheme'] == 'feed' || $parts['scheme'] == 'https');
3520
3521         }
3522
3523         function get_article_enclosures($id) {
3524
3525                 $query = "SELECT * FROM ttrss_enclosures
3526                         WHERE post_id = '$id' AND content_url != ''";
3527
3528                 $rv = array();
3529
3530                 $result = db_query($query);
3531
3532                 if (db_num_rows($result) > 0) {
3533                         while ($line = db_fetch_assoc($result)) {
3534                                 array_push($rv, $line);
3535                         }
3536                 }
3537
3538                 return $rv;
3539         }
3540
3541         function save_email_address($email) {
3542                 // FIXME: implement persistent storage of emails
3543
3544                 if (!$_SESSION['stored_emails'])
3545                         $_SESSION['stored_emails'] = array();
3546
3547                 if (!in_array($email, $_SESSION['stored_emails']))
3548                         array_push($_SESSION['stored_emails'], $email);
3549         }
3550
3551
3552         function get_feed_access_key($feed_id, $is_cat, $owner_uid = false) {
3553
3554                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
3555
3556                 $sql_is_cat = bool_to_sql_bool($is_cat);
3557
3558                 $result = db_query("SELECT access_key FROM ttrss_access_keys
3559                         WHERE feed_id = '$feed_id'      AND is_cat = $sql_is_cat
3560                         AND owner_uid = " . $owner_uid);
3561
3562                 if (db_num_rows($result) == 1) {
3563                         return db_fetch_result($result, 0, "access_key");
3564                 } else {
3565                         $key = db_escape_string(sha1(uniqid(rand(), true)));
3566
3567                         $result = db_query("INSERT INTO ttrss_access_keys
3568                                 (access_key, feed_id, is_cat, owner_uid)
3569                                 VALUES ('$key', '$feed_id', $sql_is_cat, '$owner_uid')");
3570
3571                         return $key;
3572                 }
3573                 return false;
3574         }
3575
3576         function get_feeds_from_html($url, $content)
3577         {
3578                 $url     = fix_url($url);
3579                 $baseUrl = substr($url, 0, strrpos($url, '/') + 1);
3580
3581                 libxml_use_internal_errors(true);
3582
3583                 $doc = new DOMDocument();
3584                 $doc->loadHTML($content);
3585                 $xpath = new DOMXPath($doc);
3586                 $entries = $xpath->query('/html/head/link[@rel="alternate"]');
3587                 $feedUrls = array();
3588                 foreach ($entries as $entry) {
3589                         if ($entry->hasAttribute('href')) {
3590                                 $title = $entry->getAttribute('title');
3591                                 if ($title == '') {
3592                                         $title = $entry->getAttribute('type');
3593                                 }
3594                                 $feedUrl = rewrite_relative_url(
3595                                         $baseUrl, $entry->getAttribute('href')
3596                                 );
3597                                 $feedUrls[$feedUrl] = $title;
3598                         }
3599                 }
3600                 return $feedUrls;
3601         }
3602
3603         function is_html($content) {
3604                 return preg_match("/<html|DOCTYPE html/i", substr($content, 0, 20)) !== 0;
3605         }
3606
3607         function url_is_html($url, $login = false, $pass = false) {
3608                 return is_html(fetch_file_contents($url, false, $login, $pass));
3609         }
3610
3611         function print_label_select($name, $value, $attributes = "") {
3612
3613                 $result = db_query("SELECT caption FROM ttrss_labels2
3614                         WHERE owner_uid = '".$_SESSION["uid"]."' ORDER BY caption");
3615
3616                 print "<select default=\"$value\" name=\"" . htmlspecialchars($name) .
3617                         "\" $attributes onchange=\"labelSelectOnChange(this)\" >";
3618
3619                 while ($line = db_fetch_assoc($result)) {
3620
3621                         $issel = ($line["caption"] == $value) ? "selected=\"1\"" : "";
3622
3623                         print "<option value=\"".htmlspecialchars($line["caption"])."\"
3624                                 $issel>" . htmlspecialchars($line["caption"]) . "</option>";
3625
3626                 }
3627
3628 #               print "<option value=\"ADD_LABEL\">" .__("Add label...") . "</option>";
3629
3630                 print "</select>";
3631
3632
3633         }
3634
3635         function format_article_enclosures($id, $always_display_enclosures,
3636                                         $article_content, $hide_images = false) {
3637
3638                 $result = get_article_enclosures($id);
3639                 $rv = '';
3640
3641                 if (count($result) > 0) {
3642
3643                         $entries_html = array();
3644                         $entries = array();
3645                         $entries_inline = array();
3646
3647                         foreach ($result as $line) {
3648
3649                                 $url = $line["content_url"];
3650                                 $ctype = $line["content_type"];
3651
3652                                 if (!$ctype) $ctype = __("unknown type");
3653
3654                                 $filename = substr($url, strrpos($url, "/")+1);
3655
3656                                 $player = format_inline_player($url, $ctype);
3657
3658                                 if ($player) array_push($entries_inline, $player);
3659
3660 #                               $entry .= " <a target=\"_blank\" href=\"" . htmlspecialchars($url) . "\">" .
3661 #                                       $filename . " (" . $ctype . ")" . "</a>";
3662
3663                                 $entry = "<div onclick=\"window.open('".htmlspecialchars($url)."')\"
3664                                         dojoType=\"dijit.MenuItem\">$filename ($ctype)</div>";
3665
3666                                 array_push($entries_html, $entry);
3667
3668                                 $entry = array();
3669
3670                                 $entry["type"] = $ctype;
3671                                 $entry["filename"] = $filename;
3672                                 $entry["url"] = $url;
3673
3674                                 array_push($entries, $entry);
3675                         }
3676
3677                         if ($_SESSION['uid'] && !get_pref("STRIP_IMAGES") && !$_SESSION["bw_limit"]) {
3678                                 if ($always_display_enclosures ||
3679                                                         !preg_match("/<img/i", $article_content)) {
3680
3681                                         foreach ($entries as $entry) {
3682
3683                                                 if (preg_match("/image/", $entry["type"]) ||
3684                                                                 preg_match("/\.(jpg|png|gif|bmp)/i", $entry["filename"])) {
3685
3686                                                                 if (!$hide_images) {
3687                                                                         $rv .= "<p><img
3688                                                                         alt=\"".htmlspecialchars($entry["filename"])."\"
3689                                                                         src=\"" .htmlspecialchars($entry["url"]) . "\"/></p>";
3690                                                                 } else {
3691                                                                         $rv .= "<p><a target=\"_blank\"
3692                                                                         href=\"".htmlspecialchars($entry["url"])."\"
3693                                                                         >" .htmlspecialchars($entry["url"]) . "</a></p>";
3694
3695                                                                 }
3696                                                 }
3697                                         }
3698                                 }
3699                         }
3700
3701                         if (count($entries_inline) > 0) {
3702                                 $rv .= "<hr clear='both'/>";
3703                                 foreach ($entries_inline as $entry) { $rv .= $entry; };
3704                                 $rv .= "<hr clear='both'/>";
3705                         }
3706
3707                         $rv .= "<select class=\"attachments\" onchange=\"openSelectedAttachment(this)\">".
3708                                 "<option value=''>" . __('Attachments')."</option>";
3709
3710                         foreach ($entries as $entry) {
3711                                 $rv .= "<option value=\"".htmlspecialchars($entry["url"])."\">" . htmlspecialchars($entry["filename"]) . "</option>";
3712
3713                         };
3714
3715                         $rv .= "</select>";
3716                 }
3717
3718                 return $rv;
3719         }
3720
3721         function getLastArticleId() {
3722                 $result = db_query("SELECT MAX(ref_id) AS id FROM ttrss_user_entries
3723                         WHERE owner_uid = " . $_SESSION["uid"]);
3724
3725                 if (db_num_rows($result) == 1) {
3726                         return db_fetch_result($result, 0, "id");
3727                 } else {
3728                         return -1;
3729                 }
3730         }
3731
3732         function build_url($parts) {
3733                 return $parts['scheme'] . "://" . $parts['host'] . $parts['path'];
3734         }
3735
3736         /**
3737          * Converts a (possibly) relative URL to a absolute one.
3738          *
3739          * @param string $url     Base URL (i.e. from where the document is)
3740          * @param string $rel_url Possibly relative URL in the document
3741          *
3742          * @return string Absolute URL
3743          */
3744         function rewrite_relative_url($url, $rel_url) {
3745                 if (strpos($rel_url, "magnet:") === 0) {
3746                         return $rel_url;
3747                 } else if (strpos($rel_url, "://") !== false) {
3748                         return $rel_url;
3749                 } else if (strpos($rel_url, "//") === 0) {
3750                         # protocol-relative URL (rare but they exist)
3751                         return $rel_url;
3752                 } else if (strpos($rel_url, "/") === 0)
3753                 {
3754                         $parts = parse_url($url);
3755                         $parts['path'] = $rel_url;
3756
3757                         return build_url($parts);
3758
3759                 } else {
3760                         $parts = parse_url($url);
3761                         if (!isset($parts['path'])) {
3762                                 $parts['path'] = '/';
3763                         }
3764                         $dir = $parts['path'];
3765                         if (substr($dir, -1) !== '/') {
3766                                 $dir = dirname($parts['path']);
3767                                 $dir !== '/' && $dir .= '/';
3768                         }
3769                         $parts['path'] = $dir . $rel_url;
3770
3771                         return build_url($parts);
3772                 }
3773         }
3774
3775         function sphinx_search($query, $offset = 0, $limit = 30) {
3776                 require_once 'lib/sphinxapi.php';
3777
3778                 $sphinxClient = new SphinxClient();
3779
3780                 $sphinxpair = explode(":", SPHINX_SERVER, 2);
3781
3782                 $sphinxClient->SetServer($sphinxpair[0], $sphinxpair[1]);
3783                 $sphinxClient->SetConnectTimeout(1);
3784
3785                 $sphinxClient->SetFieldWeights(array('title' => 70, 'content' => 30,
3786                         'feed_title' => 20));
3787
3788                 $sphinxClient->SetMatchMode(SPH_MATCH_EXTENDED2);
3789                 $sphinxClient->SetRankingMode(SPH_RANK_PROXIMITY_BM25);
3790                 $sphinxClient->SetLimits($offset, $limit, 1000);
3791                 $sphinxClient->SetArrayResult(false);
3792                 $sphinxClient->SetFilter('owner_uid', array($_SESSION['uid']));
3793
3794                 $result = $sphinxClient->Query($query, SPHINX_INDEX);
3795
3796                 $ids = array();
3797
3798                 if (is_array($result['matches'])) {
3799                         foreach (array_keys($result['matches']) as $int_id) {
3800                                 $ref_id = $result['matches'][$int_id]['attrs']['ref_id'];
3801                                 array_push($ids, $ref_id);
3802                         }
3803                 }
3804
3805                 return $ids;
3806         }
3807
3808         function cleanup_tags($days = 14, $limit = 1000) {
3809
3810                 if (DB_TYPE == "pgsql") {
3811                         $interval_query = "date_updated < NOW() - INTERVAL '$days days'";
3812                 } else if (DB_TYPE == "mysql") {
3813                         $interval_query = "date_updated < DATE_SUB(NOW(), INTERVAL $days DAY)";
3814                 }
3815
3816                 $tags_deleted = 0;
3817
3818                 while ($limit > 0) {
3819                         $limit_part = 500;
3820
3821                         $query = "SELECT ttrss_tags.id AS id
3822                                 FROM ttrss_tags, ttrss_user_entries, ttrss_entries
3823                                 WHERE post_int_id = int_id AND $interval_query AND
3824                                 ref_id = ttrss_entries.id AND tag_cache != '' LIMIT $limit_part";
3825
3826                         $result = db_query($query);
3827
3828                         $ids = array();
3829
3830                         while ($line = db_fetch_assoc($result)) {
3831                                 array_push($ids, $line['id']);
3832                         }
3833
3834                         if (count($ids) > 0) {
3835                                 $ids = join(",", $ids);
3836
3837                                 $tmp_result = db_query("DELETE FROM ttrss_tags WHERE id IN ($ids)");
3838                                 $tags_deleted += db_affected_rows($tmp_result);
3839                         } else {
3840                                 break;
3841                         }
3842
3843                         $limit -= $limit_part;
3844                 }
3845
3846                 return $tags_deleted;
3847         }
3848
3849         function print_user_stylesheet() {
3850                 $value = get_pref('USER_STYLESHEET');
3851
3852                 if ($value) {
3853                         print "<style type=\"text/css\">";
3854                         print str_replace("<br/>", "\n", $value);
3855                         print "</style>";
3856                 }
3857
3858         }
3859
3860         function rewrite_urls($html) {
3861                 libxml_use_internal_errors(true);
3862
3863                 $charset_hack = '<head>
3864                         <meta http-equiv="Content-Type" content="text/html; charset=utf-8"/>
3865                 </head>';
3866
3867                 $doc = new DOMDocument();
3868                 $doc->loadHTML($charset_hack . $html);
3869                 $xpath = new DOMXPath($doc);
3870
3871                 $entries = $xpath->query('//*/text()');
3872
3873                 foreach ($entries as $entry) {
3874                         if (strstr($entry->wholeText, "://") !== false) {
3875                                 $text = preg_replace("/((?<!=.)((http|https|ftp)+):\/\/[^ ,!]+)/i",
3876                                         "<a target=\"_blank\" href=\"\\1\">\\1</a>", $entry->wholeText);
3877
3878                                 if ($text != $entry->wholeText) {
3879                                         $cdoc = new DOMDocument();
3880                                         $cdoc->loadHTML($charset_hack . $text);
3881
3882
3883                                         foreach ($cdoc->childNodes as $cnode) {
3884                                                 $cnode = $doc->importNode($cnode, true);
3885
3886                                                 if ($cnode) {
3887                                                         $entry->parentNode->insertBefore($cnode);
3888                                                 }
3889                                         }
3890
3891                                         $entry->parentNode->removeChild($entry);
3892
3893                                 }
3894                         }
3895                 }
3896
3897                 $node = $doc->getElementsByTagName('body')->item(0);
3898
3899                 // http://tt-rss.org/forum/viewtopic.php?f=1&t=970
3900                 if ($node)
3901                         return $doc->saveXML($node);
3902                 else
3903                         return $html;
3904         }
3905
3906         function filter_to_sql($filter, $owner_uid) {
3907                 $query = array();
3908
3909                 if (DB_TYPE == "pgsql")
3910                         $reg_qpart = "~";
3911                 else
3912                         $reg_qpart = "REGEXP";
3913
3914                 foreach ($filter["rules"] AS $rule) {
3915                         $regexp_valid = preg_match('/' . $rule['reg_exp'] . '/',
3916                                 $rule['reg_exp']) !== FALSE;
3917
3918                         if ($regexp_valid) {
3919
3920                                 $rule['reg_exp'] = db_escape_string($rule['reg_exp']);
3921
3922                                         switch ($rule["type"]) {
3923                                         case "title":
3924                                                 $qpart = "LOWER(ttrss_entries.title) $reg_qpart LOWER('".
3925                                                         $rule['reg_exp'] . "')";
3926                                                 break;
3927                                         case "content":
3928                                                 $qpart = "LOWER(ttrss_entries.content) $reg_qpart LOWER('".
3929                                                         $rule['reg_exp'] . "')";
3930                                                 break;
3931                                         case "both":
3932                                                 $qpart = "LOWER(ttrss_entries.title) $reg_qpart LOWER('".
3933                                                         $rule['reg_exp'] . "') OR LOWER(" .
3934                                                         "ttrss_entries.content) $reg_qpart LOWER('" . $rule['reg_exp'] . "')";
3935                                                 break;
3936                                         case "tag":
3937                                                 $qpart = "LOWER(ttrss_user_entries.tag_cache) $reg_qpart LOWER('".
3938                                                         $rule['reg_exp'] . "')";
3939                                                 break;
3940                                         case "link":
3941                                                 $qpart = "LOWER(ttrss_entries.link) $reg_qpart LOWER('".
3942                                                         $rule['reg_exp'] . "')";
3943                                                 break;
3944                                         case "author":
3945                                                 $qpart = "LOWER(ttrss_entries.author) $reg_qpart LOWER('".
3946                                                         $rule['reg_exp'] . "')";
3947                                                 break;
3948                                 }
3949
3950                                 if (isset($rule['inverse'])) $qpart = "NOT ($qpart)";
3951
3952                                 if (isset($rule["feed_id"]) && $rule["feed_id"] > 0) {
3953                                         $qpart .= " AND feed_id = " . db_escape_string($rule["feed_id"]);
3954                                 }
3955
3956                                 if (isset($rule["cat_id"])) {
3957
3958                                         if ($rule["cat_id"] > 0) {
3959                                                 $children = getChildCategories($rule["cat_id"], $owner_uid);
3960                                                 array_push($children, $rule["cat_id"]);
3961
3962                                                 $children = join(",", $children);
3963
3964                                                 $cat_qpart = "cat_id IN ($children)";
3965                                         } else {
3966                                                 $cat_qpart = "cat_id IS NULL";
3967                                         }
3968
3969                                         $qpart .= " AND $cat_qpart";
3970                                 }
3971
3972                                 array_push($query, "($qpart)");
3973
3974                         }
3975                 }
3976
3977                 if (count($query) > 0) {
3978                         $fullquery = "(" . join($filter["match_any_rule"] ? "OR" : "AND", $query) . ")";
3979                 } else {
3980                         $fullquery = "(false)";
3981                 }
3982
3983                 if ($filter['inverse']) $fullquery = "(NOT $fullquery)";
3984
3985                 return $fullquery;
3986         }
3987
3988         if (!function_exists('gzdecode')) {
3989                 function gzdecode($string) { // no support for 2nd argument
3990                         return file_get_contents('compress.zlib://data:who/cares;base64,'.
3991                                 base64_encode($string));
3992                 }
3993         }
3994
3995         function get_random_bytes($length) {
3996                 if (function_exists('openssl_random_pseudo_bytes')) {
3997                         return openssl_random_pseudo_bytes($length);
3998                 } else {
3999                         $output = "";
4000
4001                         for ($i = 0; $i < $length; $i++)
4002                                 $output .= chr(mt_rand(0, 255));
4003
4004                         return $output;
4005                 }
4006         }
4007
4008         function read_stdin() {
4009                 $fp = fopen("php://stdin", "r");
4010
4011                 if ($fp) {
4012                         $line = trim(fgets($fp));
4013                         fclose($fp);
4014                         return $line;
4015                 }
4016
4017                 return null;
4018         }
4019
4020         function tmpdirname($path, $prefix) {
4021                 // Use PHP's tmpfile function to create a temporary
4022                 // directory name. Delete the file and keep the name.
4023                 $tempname = tempnam($path,$prefix);
4024                 if (!$tempname)
4025                         return false;
4026
4027                 if (!unlink($tempname))
4028                         return false;
4029
4030        return $tempname;
4031         }
4032
4033         function getFeedCategory($feed) {
4034                 $result = db_query("SELECT cat_id FROM ttrss_feeds
4035                         WHERE id = '$feed'");
4036
4037                 if (db_num_rows($result) > 0) {
4038                         return db_fetch_result($result, 0, "cat_id");
4039                 } else {
4040                         return false;
4041                 }
4042
4043         }
4044
4045         function implements_interface($class, $interface) {
4046                 return in_array($interface, class_implements($class));
4047         }
4048
4049         function geturl($url){
4050
4051                 if (!function_exists('curl_init'))
4052                         return user_error('CURL Must be installed for geturl function to work. Ask your host to enable it or uncomment extension=php_curl.dll in php.ini', E_USER_ERROR);
4053
4054                 $curl = curl_init();
4055                 $header[0] = "Accept: text/xml,application/xml,application/xhtml+xml,";
4056                 $header[0] .= "text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5";
4057                 $header[] = "Cache-Control: max-age=0";
4058                 $header[] = "Connection: keep-alive";
4059                 $header[] = "Keep-Alive: 300";
4060                 $header[] = "Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.7";
4061                 $header[] = "Accept-Language: en-us,en;q=0.5";
4062                 $header[] = "Pragma: ";
4063
4064                 curl_setopt($curl, CURLOPT_URL, $url);
4065                 curl_setopt($curl, CURLOPT_USERAGENT, 'Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0 Firefox/5.0');
4066                 curl_setopt($curl, CURLOPT_HTTPHEADER, $header);
4067                 curl_setopt($curl, CURLOPT_HEADER, true);
4068                 curl_setopt($curl, CURLOPT_REFERER, $url);
4069                 curl_setopt($curl, CURLOPT_ENCODING, 'gzip,deflate');
4070                 curl_setopt($curl, CURLOPT_AUTOREFERER, true);
4071                 curl_setopt($curl, CURLOPT_RETURNTRANSFER, true);
4072                 //curl_setopt($curl, CURLOPT_FOLLOWLOCATION, true); //CURLOPT_FOLLOWLOCATION Disabled...
4073                 curl_setopt($curl, CURLOPT_TIMEOUT, 60);
4074
4075                 $html = curl_exec($curl);
4076
4077                 $status = curl_getinfo($curl);
4078                 curl_close($curl);
4079
4080                 if($status['http_code']!=200){
4081                         if($status['http_code'] == 301 || $status['http_code'] == 302) {
4082                                 list($header) = explode("\r\n\r\n", $html, 2);
4083                                 $matches = array();
4084                                 preg_match("/(Location:|URI:)[^(\n)]*/", $header, $matches);
4085                                 $url = trim(str_replace($matches[1],"",$matches[0]));
4086                                 $url_parsed = parse_url($url);
4087                                 return (isset($url_parsed))? geturl($url, $referer):'';
4088                         }
4089                         $oline='';
4090                         foreach($status as $key=>$eline){$oline.='['.$key.']'.$eline.' ';}
4091                         $line =$oline." \r\n ".$url."\r\n-----------------\r\n";
4092 #                       $handle = @fopen('./curl.error.log', 'a');
4093 #                       fwrite($handle, $line);
4094                         return FALSE;
4095                 }
4096                 return $url;
4097         }
4098
4099         function get_minified_js($files) {
4100                 require_once 'lib/jshrink/Minifier.php';
4101
4102                 $rv = '';
4103
4104                 foreach ($files as $js) {
4105                         if (!isset($_GET['debug'])) {
4106                                 $cached_file = CACHE_DIR . "/js/$js.js";
4107
4108                                 if (file_exists($cached_file) &&
4109                                                 is_readable($cached_file) &&
4110                                                 filemtime($cached_file) >= filemtime("js/$js.js")) {
4111
4112                                         $rv .= file_get_contents($cached_file);
4113
4114                                 } else {
4115                                         $minified = JShrink\Minifier::minify(file_get_contents("js/$js.js"));
4116                                         file_put_contents($cached_file, $minified);
4117                                         $rv .= $minified;
4118                                 }
4119                         } else {
4120                                 $rv .= file_get_contents("js/$js.js");
4121                         }
4122                 }
4123
4124                 return $rv;
4125         }
4126
4127         function stylesheet_tag($filename) {
4128                 $timestamp = filemtime($filename);
4129
4130                 echo "<link rel=\"stylesheet\" type=\"text/css\" href=\"$filename?$timestamp\"/>\n";
4131         }
4132
4133         function javascript_tag($filename) {
4134                 $query = "";
4135
4136                 if (!(strpos($filename, "?") === FALSE)) {
4137                         $query = substr($filename, strpos($filename, "?")+1);
4138                         $filename = substr($filename, 0, strpos($filename, "?"));
4139                 }
4140
4141                 $timestamp = filemtime($filename);
4142
4143                 if ($query) $timestamp .= "&$query";
4144
4145                 echo "<script type=\"text/javascript\" charset=\"utf-8\" src=\"$filename?$timestamp\"></script>\n";
4146         }
4147
4148         function calculate_dep_timestamp() {
4149                 $files = array_merge(glob("js/*.js"), glob("*.css"));
4150
4151                 $max_ts = -1;
4152
4153                 foreach ($files as $file) {
4154                         if (filemtime($file) > $max_ts) $max_ts = filemtime($file);
4155                 }
4156
4157                 return $max_ts;
4158         }
4159
4160         function T_js_decl($s1, $s2) {
4161                 if ($s1 && $s2) {
4162                         $s1 = preg_replace("/\n/", "", $s1);
4163                         $s2 = preg_replace("/\n/", "", $s2);
4164
4165                         $s1 = preg_replace("/\"/", "\\\"", $s1);
4166                         $s2 = preg_replace("/\"/", "\\\"", $s2);
4167
4168                         return "T_messages[\"$s1\"] = \"$s2\";\n";
4169                 }
4170         }
4171
4172         function init_js_translations() {
4173
4174         print 'var T_messages = new Object();
4175
4176                 function __(msg) {
4177                         if (T_messages[msg]) {
4178                                 return T_messages[msg];
4179                         } else {
4180                                 return msg;
4181                         }
4182                 }
4183
4184                 function ngettext(msg1, msg2, n) {
4185                         return (parseInt(n) > 1) ? msg2 : msg1;
4186                 }';
4187
4188                 $l10n = _get_reader();
4189
4190                 for ($i = 0; $i < $l10n->total; $i++) {
4191                         $orig = $l10n->get_original_string($i);
4192                         $translation = __($orig);
4193
4194                         print T_js_decl($orig, $translation);
4195                 }
4196         }
4197
4198         function label_to_feed_id($label) {
4199                 return LABEL_BASE_INDEX - 1 - abs($label);
4200         }
4201
4202         function feed_to_label_id($feed) {
4203                 return LABEL_BASE_INDEX - 1 + abs($feed);
4204         }
4205
4206 ?>