]> git.wh0rd.org Git - tt-rss.git/blob - include/functions.php
only enable colored favicons in vfeeds; fix RGB triplet packing
[tt-rss.git] / include / functions.php
1 <?php
2         define('EXPECTED_CONFIG_VERSION', 26);
3         define('SCHEMA_VERSION', 117);
4
5         define('LABEL_BASE_INDEX', -1024);
6         define('PLUGIN_FEED_BASE_INDEX', -128);
7
8         $fetch_last_error = false;
9         $fetch_last_error_code = false;
10         $fetch_last_content_type = false;
11         $pluginhost = false;
12
13         function __autoload($class) {
14                 $class_file = str_replace("_", "/", strtolower(basename($class)));
15
16                 $file = dirname(__FILE__)."/../classes/$class_file.php";
17
18                 if (file_exists($file)) {
19                         require $file;
20                 }
21
22         }
23
24         mb_internal_encoding("UTF-8");
25         date_default_timezone_set('UTC');
26         if (defined('E_DEPRECATED')) {
27                 error_reporting(E_ALL & ~E_NOTICE & ~E_DEPRECATED);
28         } else {
29                 error_reporting(E_ALL & ~E_NOTICE);
30         }
31
32         require_once 'config.php';
33
34         /**
35          * Define a constant if not already defined
36          *
37          * @param string $name The constant name.
38          * @param mixed $value The constant value.
39          * @access public
40          * @return boolean True if defined successfully or not.
41          */
42         function define_default($name, $value) {
43                 defined($name) or define($name, $value);
44         }
45
46         ///// Some defaults that you can override in config.php //////
47
48         define_default('FEED_FETCH_TIMEOUT', 45);
49         // How may seconds to wait for response when requesting feed from a site
50         define_default('FEED_FETCH_NO_CACHE_TIMEOUT', 15);
51         // How may seconds to wait for response when requesting feed from a
52         // site when that feed wasn't cached before
53         define_default('FILE_FETCH_TIMEOUT', 45);
54         // Default timeout when fetching files from remote sites
55         define_default('FILE_FETCH_CONNECT_TIMEOUT', 15);
56         // How many seconds to wait for initial response from website when
57         // fetching files from remote sites
58
59         if (DB_TYPE == "pgsql") {
60                 define('SUBSTRING_FOR_DATE', 'SUBSTRING_FOR_DATE');
61         } else {
62                 define('SUBSTRING_FOR_DATE', 'SUBSTRING');
63         }
64
65         /**
66          * Return available translations names.
67          *
68          * @access public
69          * @return array A array of available translations.
70          */
71         function get_translations() {
72                 $tr = array(
73                                         "auto"  => "Detect automatically",
74                                         "ca_CA" => "Català",
75                                         "cs_CZ" => "Česky",
76                                         "en_US" => "English",
77                                         "es_ES" => "Español",
78                                         "de_DE" => "Deutsch",
79                                         "fr_FR" => "Français",
80                                         "hu_HU" => "Magyar (Hungarian)",
81                                         "it_IT" => "Italiano",
82                                         "ja_JP" => "日本語 (Japanese)",
83                                         "lv_LV" => "Latviešu",
84                                         "nb_NO" => "Norwegian bokmål",
85                                         "nl_NL" => "Dutch",
86                                         "pl_PL" => "Polski",
87                                         "ru_RU" => "Русский",
88                                         "pt_BR" => "Portuguese/Brazil",
89                                         "zh_CN" => "Simplified Chinese",
90                                         "sv_SE" => "Svenska",
91                                         "fi_FI" => "Suomi");
92
93                 return $tr;
94         }
95
96         require_once "lib/accept-to-gettext.php";
97         require_once "lib/gettext/gettext.inc";
98
99
100         function startup_gettext() {
101
102                 # Get locale from Accept-Language header
103                 $lang = al2gt(array_keys(get_translations()), "text/html");
104
105                 if (defined('_TRANSLATION_OVERRIDE_DEFAULT')) {
106                         $lang = _TRANSLATION_OVERRIDE_DEFAULT;
107                 }
108
109                 if ($_SESSION["language"] && $_SESSION["language"] != "auto") {
110                         $lang = $_SESSION["language"];
111                 }
112
113                 if ($lang) {
114                         if (defined('LC_MESSAGES')) {
115                                 _setlocale(LC_MESSAGES, $lang);
116                         } else if (defined('LC_ALL')) {
117                                 _setlocale(LC_ALL, $lang);
118                         }
119
120                         _bindtextdomain("messages", "locale");
121
122                         _textdomain("messages");
123                         _bind_textdomain_codeset("messages", "UTF-8");
124                 }
125         }
126
127         startup_gettext();
128
129         require_once 'db-prefs.php';
130         require_once 'version.php';
131         require_once 'ccache.php';
132         require_once 'labels.php';
133
134         define('SELF_USER_AGENT', 'Tiny Tiny RSS/' . VERSION . ' (http://tt-rss.org/)');
135         ini_set('user_agent', SELF_USER_AGENT);
136
137         require_once 'lib/pubsubhubbub/publisher.php';
138
139         $tz_offset = -1;
140         $utc_tz = new DateTimeZone('UTC');
141         $schema_version = false;
142
143         /**
144          * Print a timestamped debug message.
145          *
146          * @param string $msg The debug message.
147          * @return void
148          */
149         function _debug($msg) {
150                 $ts = strftime("%H:%M:%S", time());
151                 if (function_exists('posix_getpid')) {
152                         $ts = "$ts/" . posix_getpid();
153                 }
154
155                 if (!(defined('QUIET') && QUIET)) {
156                         print "[$ts] $msg\n";
157                 }
158
159                 if (defined('LOGFILE'))  {
160                         $fp = fopen(LOGFILE, 'a+');
161
162                         if ($fp) {
163                                 fputs($fp, "[$ts] $msg\n");
164                                 fclose($fp);
165                         }
166                 }
167
168         } // function _debug
169
170         /**
171          * Purge a feed old posts.
172          *
173          * @param mixed $link A database connection.
174          * @param mixed $feed_id The id of the purged feed.
175          * @param mixed $purge_interval Olderness of purged posts.
176          * @param boolean $debug Set to True to enable the debug. False by default.
177          * @access public
178          * @return void
179          */
180         function purge_feed($link, $feed_id, $purge_interval, $debug = false) {
181
182                 if (!$purge_interval) $purge_interval = feed_purge_interval($link, $feed_id);
183
184                 $rows = -1;
185
186                 $result = db_query($link,
187                         "SELECT owner_uid FROM ttrss_feeds WHERE id = '$feed_id'");
188
189                 $owner_uid = false;
190
191                 if (db_num_rows($result) == 1) {
192                         $owner_uid = db_fetch_result($result, 0, "owner_uid");
193                 }
194
195                 if ($purge_interval == -1 || !$purge_interval) {
196                         if ($owner_uid) {
197                                 ccache_update($link, $feed_id, $owner_uid);
198                         }
199                         return;
200                 }
201
202                 if (!$owner_uid) return;
203
204                 if (FORCE_ARTICLE_PURGE == 0) {
205                         $purge_unread = get_pref($link, "PURGE_UNREAD_ARTICLES",
206                                 $owner_uid, false);
207                 } else {
208                         $purge_unread = true;
209                         $purge_interval = FORCE_ARTICLE_PURGE;
210                 }
211
212                 if (!$purge_unread) $query_limit = " unread = false AND ";
213
214                 if (DB_TYPE == "pgsql") {
215                         $pg_version = get_pgsql_version($link);
216
217                         if (preg_match("/^7\./", $pg_version) || preg_match("/^8\.0/", $pg_version)) {
218
219                                 $result = db_query($link, "DELETE FROM ttrss_user_entries WHERE
220                                         ttrss_entries.id = ref_id AND
221                                         marked = false AND
222                                         feed_id = '$feed_id' AND
223                                         $query_limit
224                                         ttrss_entries.date_updated < NOW() - INTERVAL '$purge_interval days'");
225
226                         } else {
227
228                                 $result = db_query($link, "DELETE FROM ttrss_user_entries
229                                         USING ttrss_entries
230                                         WHERE ttrss_entries.id = ref_id AND
231                                         marked = false AND
232                                         feed_id = '$feed_id' AND
233                                         $query_limit
234                                         ttrss_entries.date_updated < NOW() - INTERVAL '$purge_interval days'");
235                         }
236
237                         $rows = pg_affected_rows($result);
238
239                 } else {
240
241 /*                      $result = db_query($link, "DELETE FROM ttrss_user_entries WHERE
242                                 marked = false AND feed_id = '$feed_id' AND
243                                 (SELECT date_updated FROM ttrss_entries WHERE
244                                         id = ref_id) < DATE_SUB(NOW(), INTERVAL $purge_interval DAY)"); */
245
246                         $result = db_query($link, "DELETE FROM ttrss_user_entries
247                                 USING ttrss_user_entries, ttrss_entries
248                                 WHERE ttrss_entries.id = ref_id AND
249                                 marked = false AND
250                                 feed_id = '$feed_id' AND
251                                 $query_limit
252                                 ttrss_entries.date_updated < DATE_SUB(NOW(), INTERVAL $purge_interval DAY)");
253
254                         $rows = mysql_affected_rows($link);
255
256                 }
257
258                 ccache_update($link, $feed_id, $owner_uid);
259
260                 if ($debug) {
261                         _debug("Purged feed $feed_id ($purge_interval): deleted $rows articles");
262                 }
263
264                 return $rows;
265         } // function purge_feed
266
267         function feed_purge_interval($link, $feed_id) {
268
269                 $result = db_query($link, "SELECT purge_interval, owner_uid FROM ttrss_feeds
270                         WHERE id = '$feed_id'");
271
272                 if (db_num_rows($result) == 1) {
273                         $purge_interval = db_fetch_result($result, 0, "purge_interval");
274                         $owner_uid = db_fetch_result($result, 0, "owner_uid");
275
276                         if ($purge_interval == 0) $purge_interval = get_pref($link,
277                                 'PURGE_OLD_DAYS', $owner_uid);
278
279                         return $purge_interval;
280
281                 } else {
282                         return -1;
283                 }
284         }
285
286         function purge_orphans($link, $do_output = false) {
287
288                 // purge orphaned posts in main content table
289                 $result = db_query($link, "DELETE FROM ttrss_entries WHERE
290                         (SELECT COUNT(int_id) FROM ttrss_user_entries WHERE ref_id = id) = 0");
291
292                 if ($do_output) {
293                         $rows = db_affected_rows($link, $result);
294                         _debug("Purged $rows orphaned posts.");
295                 }
296         }
297
298         function get_feed_update_interval($link, $feed_id) {
299                 $result = db_query($link, "SELECT owner_uid, update_interval FROM
300                         ttrss_feeds WHERE id = '$feed_id'");
301
302                 if (db_num_rows($result) == 1) {
303                         $update_interval = db_fetch_result($result, 0, "update_interval");
304                         $owner_uid = db_fetch_result($result, 0, "owner_uid");
305
306                         if ($update_interval != 0) {
307                                 return $update_interval;
308                         } else {
309                                 return get_pref($link, 'DEFAULT_UPDATE_INTERVAL', $owner_uid, false);
310                         }
311
312                 } else {
313                         return -1;
314                 }
315         }
316
317         function fetch_file_contents($url, $type = false, $login = false, $pass = false, $post_query = false, $timeout = false, $timestamp = 0) {
318
319                 global $fetch_last_error;
320                 global $fetch_last_error_code;
321                 global $fetch_last_content_type;
322
323                 $url = str_replace(' ', '%20', $url);
324
325                 if (!defined('NO_CURL') && function_exists('curl_init') && !ini_get("open_basedir")) {
326
327                         if (ini_get("safe_mode")) {
328                                 $ch = curl_init(geturl($url));
329                         } else {
330                                 $ch = curl_init($url);
331                         }
332
333                         if ($timestamp) {
334                                 curl_setopt($ch, CURLOPT_HTTPHEADER,
335                                         array("If-Modified-Since: ".gmdate('D, d M Y H:i:s \G\M\T', $timestamp)));
336                         }
337
338                         curl_setopt($ch, CURLOPT_CONNECTTIMEOUT, $timeout ? $timeout : FILE_FETCH_CONNECT_TIMEOUT);
339                         curl_setopt($ch, CURLOPT_TIMEOUT, $timeout ? $timeout : FILE_FETCH_TIMEOUT);
340                         curl_setopt($ch, CURLOPT_FOLLOWLOCATION, !ini_get("safe_mode"));
341                         curl_setopt($ch, CURLOPT_MAXREDIRS, 20);
342                         curl_setopt($ch, CURLOPT_BINARYTRANSFER, true);
343                         curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
344                         curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false);
345                         curl_setopt($ch, CURLOPT_HTTPAUTH, CURLAUTH_ANY);
346                         curl_setopt($ch, CURLOPT_USERAGENT, SELF_USER_AGENT);
347                         curl_setopt($ch, CURLOPT_ENCODING , "gzip");
348                         curl_setopt($ch, CURLOPT_REFERER, $url);
349
350                         if ($post_query) {
351                                 curl_setopt($ch, CURLOPT_POST, true);
352                                 curl_setopt($ch, CURLOPT_POSTFIELDS, $post_query);
353                         }
354
355                         if ($login && $pass)
356                                 curl_setopt($ch, CURLOPT_USERPWD, "$login:$pass");
357
358                         $contents = @curl_exec($ch);
359
360                         if (curl_errno($ch) === 23 || curl_errno($ch) === 61) {
361                                 curl_setopt($ch, CURLOPT_ENCODING, 'none');
362                                 $contents = @curl_exec($ch);
363                         }
364
365                         if ($contents === false) {
366                                 $fetch_last_error = curl_errno($ch) . " " . curl_error($ch);
367                                 curl_close($ch);
368                                 return false;
369                         }
370
371                         $http_code = curl_getinfo($ch, CURLINFO_HTTP_CODE);
372                         $fetch_last_content_type = curl_getinfo($ch, CURLINFO_CONTENT_TYPE);
373
374                         $fetch_last_error_code = $http_code;
375
376                         if ($http_code != 200 || $type && strpos($fetch_last_content_type, "$type") === false) {
377                                 if (curl_errno($ch) != 0) {
378                                         $fetch_last_error = curl_errno($ch) . " " . curl_error($ch);
379                                 } else {
380                                         $fetch_last_error = "HTTP Code: $http_code";
381                                 }
382                                 curl_close($ch);
383                                 return false;
384                         }
385
386                         curl_close($ch);
387
388                         return $contents;
389                 } else {
390                         if ($login && $pass){
391                                 $url_parts = array();
392
393                                 preg_match("/(^[^:]*):\/\/(.*)/", $url, $url_parts);
394
395                                 $pass = urlencode($pass);
396
397                                 if ($url_parts[1] && $url_parts[2]) {
398                                         $url = $url_parts[1] . "://$login:$pass@" . $url_parts[2];
399                                 }
400                         }
401
402                         $data = @file_get_contents($url);
403
404                         $fetch_last_content_type = false;  // reset if no type was sent from server
405                         foreach ($http_response_header as $h) {
406                                 if (substr(strtolower($h), 0, 13) == 'content-type:') {
407                                         $fetch_last_content_type = substr($h, 14);
408                                         // don't abort here b/c there might be more than one
409                                         // e.g. if we were being redirected -- last one is the right one
410                                 }
411                         }
412
413                         if (!$data && function_exists('error_get_last')) {
414                                 $error = error_get_last();
415                                 $fetch_last_error = $error["message"];
416                         }
417                         return $data;
418                 }
419
420         }
421
422         /**
423          * Try to determine the favicon URL for a feed.
424          * adapted from wordpress favicon plugin by Jeff Minard (http://thecodepro.com/)
425          * http://dev.wp-plugins.org/file/favatars/trunk/favatars.php
426          *
427          * @param string $url A feed or page URL
428          * @access public
429          * @return mixed The favicon URL, or false if none was found.
430          */
431         function get_favicon_url($url) {
432
433                 $favicon_url = false;
434
435                 if ($html = @fetch_file_contents($url)) {
436
437                         libxml_use_internal_errors(true);
438
439                         $doc = new DOMDocument();
440                         $doc->loadHTML($html);
441                         $xpath = new DOMXPath($doc);
442
443                         $base = $xpath->query('/html/head/base');
444                         foreach ($base as $b) {
445                                 $url = $b->getAttribute("href");
446                                 break;
447                         }
448
449                         $entries = $xpath->query('/html/head/link[@rel="shortcut icon" or @rel="icon"]');
450                         if (count($entries) > 0) {
451                                 foreach ($entries as $entry) {
452                                         $favicon_url = rewrite_relative_url($url, $entry->getAttribute("href"));
453                                         break;
454                                 }
455                         }
456                 }
457
458                 if (!$favicon_url)
459                         $favicon_url = rewrite_relative_url($url, "/favicon.ico");
460
461                 return $favicon_url;
462         } // function get_favicon_url
463
464         function check_feed_favicon($site_url, $feed, $link) {
465 #               print "FAVICON [$site_url]: $favicon_url\n";
466
467                 $icon_file = ICONS_DIR . "/$feed.ico";
468
469                 if (!file_exists($icon_file)) {
470                         $favicon_url = get_favicon_url($site_url);
471
472                         if ($favicon_url) {
473                                 // Limiting to "image" type misses those served with text/plain
474                                 $contents = fetch_file_contents($favicon_url); // , "image");
475
476                                 if ($contents) {
477                                         // Crude image type matching.
478                                         // Patterns gleaned from the file(1) source code.
479                                         if (preg_match('/^\x00\x00\x01\x00/', $contents)) {
480                                                 // 0       string  \000\000\001\000        MS Windows icon resource
481                                                 //error_log("check_feed_favicon: favicon_url=$favicon_url isa MS Windows icon resource");
482                                         }
483                                         elseif (preg_match('/^GIF8/', $contents)) {
484                                                 // 0       string          GIF8            GIF image data
485                                                 //error_log("check_feed_favicon: favicon_url=$favicon_url isa GIF image");
486                                         }
487                                         elseif (preg_match('/^\x89PNG\x0d\x0a\x1a\x0a/', $contents)) {
488                                                 // 0       string          \x89PNG\x0d\x0a\x1a\x0a         PNG image data
489                                                 //error_log("check_feed_favicon: favicon_url=$favicon_url isa PNG image");
490                                         }
491                                         elseif (preg_match('/^\xff\xd8/', $contents)) {
492                                                 // 0       beshort         0xffd8          JPEG image data
493                                                 //error_log("check_feed_favicon: favicon_url=$favicon_url isa JPG image");
494                                         }
495                                         else {
496                                                 //error_log("check_feed_favicon: favicon_url=$favicon_url isa UNKNOWN type");
497                                                 $contents = "";
498                                         }
499                                 }
500
501                                 if ($contents) {
502                                         $fp = @fopen($icon_file, "w");
503
504                                         if ($fp) {
505                                                 fwrite($fp, $contents);
506                                                 fclose($fp);
507                                                 chmod($icon_file, 0644);
508                                         }
509                                 }
510                         }
511             return $icon_file;
512                 }
513         }
514
515         function calculate_avg_color($iconFile) {
516
517                 require_once "lib/floIcon.php";
518
519                 $imgInfo = @getimagesize($iconFile);
520
521                 if(strtolower($imgInfo['mime'])=='image/vnd.microsoft.icon') {
522                         $ico = new floIcon();
523                         @$ico->readICO($iconFile);
524                         //TODO: error logging
525                         if(count($ico->images)==0)
526                                 return null;
527                         else {
528                                 $image = @$ico->images[count($ico->images)-1]->getImageResource();
529                         }
530                         $type = "ico";
531                         }
532                 elseif(strtolower($imgInfo['mime'])=='image/png') {
533             $image = imagecreatefrompng($iconFile);
534                         $type = 'png';
535                 }
536                 elseif(strtolower($imgInfo['mime'])=='image/jpeg') {
537                         $image = imagecreatefromjpeg($iconFile);
538                         $type = 'jpg';
539                 }
540                 elseif(strtolower($imgInfo['mime'])=='image/gif') {
541                         $image = imagecreatefromgif($iconFile);
542                         $type = 'gif';
543                 }
544                 //TODO: error logging
545                 if (is_null($image))
546                         return null;
547                 $width = imagesx($image);
548                 $height = imagesy($image);
549                 $pixel = imagecreatetruecolor(1, 1);
550                 imagecopyresampled($pixel, $image, 0, 0, 0, 0, 1, 1, $width, $height);
551                 $rgb = imagecolorat($pixel, 0, 0);
552                 $color = imagecolorsforindex($pixel, $rgb);
553                 return $color;
554         }
555
556         function print_select($id, $default, $values, $attributes = "") {
557                 print "<select name=\"$id\" id=\"$id\" $attributes>";
558                 foreach ($values as $v) {
559                         if ($v == $default)
560                                 $sel = "selected=\"1\"";
561                          else
562                                 $sel = "";
563
564                         $v = trim($v);
565
566                         print "<option value=\"$v\" $sel>$v</option>";
567                 }
568                 print "</select>";
569         }
570
571         function print_select_hash($id, $default, $values, $attributes = "") {
572                 print "<select name=\"$id\" id='$id' $attributes>";
573                 foreach (array_keys($values) as $v) {
574                         if ($v == $default)
575                                 $sel = 'selected="selected"';
576                          else
577                                 $sel = "";
578
579                         $v = trim($v);
580
581                         print "<option $sel value=\"$v\">".$values[$v]."</option>";
582                 }
583
584                 print "</select>";
585         }
586
587         function print_radio($id, $default, $true_is, $values, $attributes = "") {
588                 foreach ($values as $v) {
589
590                         if ($v == $default)
591                                 $sel = "checked";
592                          else
593                                 $sel = "";
594
595                         if ($v == $true_is) {
596                                 $sel .= " value=\"1\"";
597                         } else {
598                                 $sel .= " value=\"0\"";
599                         }
600
601                         print "<input class=\"noborder\" dojoType=\"dijit.form.RadioButton\"
602                                 type=\"radio\" $sel $attributes name=\"$id\">&nbsp;$v&nbsp;";
603
604                 }
605         }
606
607         function initialize_user_prefs($link, $uid, $profile = false) {
608
609                 $uid = db_escape_string($link, $uid);
610
611                 if (!$profile) {
612                         $profile = "NULL";
613                         $profile_qpart = "AND profile IS NULL";
614                 } else {
615                         $profile_qpart = "AND profile = '$profile'";
616                 }
617
618                 if (get_schema_version($link) < 63) $profile_qpart = "";
619
620                 db_query($link, "BEGIN");
621
622                 $result = db_query($link, "SELECT pref_name,def_value FROM ttrss_prefs");
623
624                 $u_result = db_query($link, "SELECT pref_name
625                         FROM ttrss_user_prefs WHERE owner_uid = '$uid' $profile_qpart");
626
627                 $active_prefs = array();
628
629                 while ($line = db_fetch_assoc($u_result)) {
630                         array_push($active_prefs, $line["pref_name"]);
631                 }
632
633                 while ($line = db_fetch_assoc($result)) {
634                         if (array_search($line["pref_name"], $active_prefs) === FALSE) {
635 //                              print "adding " . $line["pref_name"] . "<br>";
636
637                                 $line["def_value"] = db_escape_string($link, $line["def_value"]);
638                                 $line["pref_name"] = db_escape_string($link, $line["pref_name"]);
639
640                                 if (get_schema_version($link) < 63) {
641                                         db_query($link, "INSERT INTO ttrss_user_prefs
642                                                 (owner_uid,pref_name,value) VALUES
643                                                 ('$uid', '".$line["pref_name"]."','".$line["def_value"]."')");
644
645                                 } else {
646                                         db_query($link, "INSERT INTO ttrss_user_prefs
647                                                 (owner_uid,pref_name,value, profile) VALUES
648                                                 ('$uid', '".$line["pref_name"]."','".$line["def_value"]."', $profile)");
649                                 }
650
651                         }
652                 }
653
654                 db_query($link, "COMMIT");
655
656         }
657
658         function get_ssl_certificate_id() {
659                 if ($_SERVER["REDIRECT_SSL_CLIENT_M_SERIAL"]) {
660                         return sha1($_SERVER["REDIRECT_SSL_CLIENT_M_SERIAL"] .
661                                 $_SERVER["REDIRECT_SSL_CLIENT_V_START"] .
662                                 $_SERVER["REDIRECT_SSL_CLIENT_V_END"] .
663                                 $_SERVER["REDIRECT_SSL_CLIENT_S_DN"]);
664                 }
665                 return "";
666         }
667
668         function authenticate_user($link, $login, $password, $check_only = false) {
669
670                 if (!SINGLE_USER_MODE) {
671                         $user_id = false;
672
673                         global $pluginhost;
674                         foreach ($pluginhost->get_hooks($pluginhost::HOOK_AUTH_USER) as $plugin) {
675
676                                 $user_id = (int) $plugin->authenticate($login, $password);
677
678                                 if ($user_id) {
679                                         $_SESSION["auth_module"] = strtolower(get_class($plugin));
680                                         break;
681                                 }
682                         }
683
684                         if ($user_id && !$check_only) {
685                                 @session_start();
686
687                                 $_SESSION["uid"] = $user_id;
688                                 $_SESSION["version"] = VERSION;
689
690                                 $result = db_query($link, "SELECT login,access_level,pwd_hash FROM ttrss_users
691                                         WHERE id = '$user_id'");
692
693                                 $_SESSION["name"] = db_fetch_result($result, 0, "login");
694                                 $_SESSION["access_level"] = db_fetch_result($result, 0, "access_level");
695                                 $_SESSION["csrf_token"] = sha1(uniqid(rand(), true));
696
697                                 db_query($link, "UPDATE ttrss_users SET last_login = NOW() WHERE id = " .
698                                         $_SESSION["uid"]);
699
700                                 $_SESSION["ip_address"] = $_SERVER["REMOTE_ADDR"];
701                                 $_SESSION["user_agent"] = sha1($_SERVER['HTTP_USER_AGENT']);
702                                 $_SESSION["pwd_hash"] = db_fetch_result($result, 0, "pwd_hash");
703
704                                 $_SESSION["last_version_check"] = time();
705
706                                 initialize_user_prefs($link, $_SESSION["uid"]);
707
708                                 return true;
709                         }
710
711                         return false;
712
713                 } else {
714
715                         $_SESSION["uid"] = 1;
716                         $_SESSION["name"] = "admin";
717                         $_SESSION["access_level"] = 10;
718
719                         $_SESSION["hide_hello"] = true;
720                         $_SESSION["hide_logout"] = true;
721
722                         $_SESSION["auth_module"] = false;
723
724                         if (!$_SESSION["csrf_token"]) {
725                                 $_SESSION["csrf_token"] = sha1(uniqid(rand(), true));
726                         }
727
728                         $_SESSION["ip_address"] = $_SERVER["REMOTE_ADDR"];
729
730                         initialize_user_prefs($link, $_SESSION["uid"]);
731
732                         return true;
733                 }
734         }
735
736         function make_password($length = 8) {
737
738                 $password = "";
739                 $possible = "0123456789abcdfghjkmnpqrstvwxyzABCDFGHJKMNPQRSTVWXYZ";
740
741         $i = 0;
742
743                 while ($i < $length) {
744                         $char = substr($possible, mt_rand(0, strlen($possible)-1), 1);
745
746                         if (!strstr($password, $char)) {
747                                 $password .= $char;
748                                 $i++;
749                         }
750                 }
751                 return $password;
752         }
753
754         // this is called after user is created to initialize default feeds, labels
755         // or whatever else
756
757         // user preferences are checked on every login, not here
758
759         function initialize_user($link, $uid) {
760
761                 db_query($link, "insert into ttrss_feeds (owner_uid,title,feed_url)
762                         values ('$uid', 'Tiny Tiny RSS: New Releases',
763                         'http://tt-rss.org/releases.rss')");
764
765                 db_query($link, "insert into ttrss_feeds (owner_uid,title,feed_url)
766                         values ('$uid', 'Tiny Tiny RSS: Forum',
767                                 'http://tt-rss.org/forum/rss.php')");
768         }
769
770         function logout_user() {
771                 session_destroy();
772                 if (isset($_COOKIE[session_name()])) {
773                    setcookie(session_name(), '', time()-42000, '/');
774                 }
775         }
776
777         function validate_csrf($csrf_token) {
778                 return $csrf_token == $_SESSION['csrf_token'];
779         }
780
781         function load_user_plugins($link, $owner_uid) {
782                 if ($owner_uid) {
783                         $plugins = get_pref($link, "_ENABLED_PLUGINS", $owner_uid);
784
785                         global $pluginhost;
786                         $pluginhost->load($plugins, $pluginhost::KIND_USER, $owner_uid);
787
788                         if (get_schema_version($link) > 100) {
789                                 $pluginhost->load_data();
790                         }
791                 }
792         }
793
794         function login_sequence($link) {
795                 $_SESSION["prefs_cache"] = false;
796
797                 if (SINGLE_USER_MODE) {
798                         @session_start();
799                         authenticate_user($link, "admin", null);
800                         cache_prefs($link);
801                         load_user_plugins($link, $_SESSION["uid"]);
802                 } else {
803                         if (!validate_session($link)) $_SESSION["uid"] = false;
804
805                         if (!$_SESSION["uid"]) {
806
807                                 if (AUTH_AUTO_LOGIN && authenticate_user($link, null, null)) {
808                                     $_SESSION["ref_schema_version"] = get_schema_version($link, true);
809                                 } else {
810                                          authenticate_user($link, null, null, true);
811                                 }
812
813                                 if (!$_SESSION["uid"]) {
814                                         @session_destroy();
815                                         setcookie(session_name(), '', time()-42000, '/');
816
817                                         render_login_form($link);
818                                         exit;
819                                 }
820
821                         } else {
822                                 /* bump login timestamp */
823                                 db_query($link, "UPDATE ttrss_users SET last_login = NOW() WHERE id = " .
824                                         $_SESSION["uid"]);
825                                 $_SESSION["last_login_update"] = time();
826                         }
827
828                         if ($_SESSION["uid"] && $_SESSION["language"] && SESSION_COOKIE_LIFETIME > 0) {
829                                 setcookie("ttrss_lang", $_SESSION["language"],
830                                         time() + SESSION_COOKIE_LIFETIME);
831                         }
832
833                         if ($_SESSION["uid"]) {
834                                 cache_prefs($link);
835                                 load_user_plugins($link, $_SESSION["uid"]);
836
837                                 /* cleanup ccache */
838
839                                 db_query($link, "DELETE FROM ttrss_counters_cache WHERE owner_uid = ".
840                                         $_SESSION["uid"] . " AND
841                                                 (SELECT COUNT(id) FROM ttrss_feeds WHERE
842                                                         ttrss_feeds.id = feed_id) = 0");
843
844                                 db_query($link, "DELETE FROM ttrss_cat_counters_cache WHERE owner_uid = ".
845                                         $_SESSION["uid"] . " AND
846                                                 (SELECT COUNT(id) FROM ttrss_feed_categories WHERE
847                                                         ttrss_feed_categories.id = feed_id) = 0");
848
849                         }
850
851                 }
852         }
853
854         function truncate_string($str, $max_len, $suffix = '&hellip;') {
855                 if (mb_strlen($str, "utf-8") > $max_len - 3) {
856                         return mb_substr($str, 0, $max_len, "utf-8") . $suffix;
857                 } else {
858                         return $str;
859                 }
860         }
861
862         function convert_timestamp($timestamp, $source_tz, $dest_tz) {
863
864                 try {
865                         $source_tz = new DateTimeZone($source_tz);
866                 } catch (Exception $e) {
867                         $source_tz = new DateTimeZone('UTC');
868                 }
869
870                 try {
871                         $dest_tz = new DateTimeZone($dest_tz);
872                 } catch (Exception $e) {
873                         $dest_tz = new DateTimeZone('UTC');
874                 }
875
876                 $dt = new DateTime(date('Y-m-d H:i:s', $timestamp), $source_tz);
877                 return $dt->format('U') + $dest_tz->getOffset($dt);
878         }
879
880         function make_local_datetime($link, $timestamp, $long, $owner_uid = false,
881                                         $no_smart_dt = false) {
882
883                 if (!$owner_uid) $owner_uid = $_SESSION['uid'];
884                 if (!$timestamp) $timestamp = '1970-01-01 0:00';
885
886                 global $utc_tz;
887                 global $tz_offset;
888
889                 # We store date in UTC internally
890                 $dt = new DateTime($timestamp, $utc_tz);
891
892                 if ($tz_offset == -1) {
893
894                         $user_tz_string = get_pref($link, 'USER_TIMEZONE', $owner_uid);
895
896                         try {
897                                 $user_tz = new DateTimeZone($user_tz_string);
898                         } catch (Exception $e) {
899                                 $user_tz = $utc_tz;
900                         }
901
902                         $tz_offset = $user_tz->getOffset($dt);
903                 }
904
905                 $user_timestamp = $dt->format('U') + $tz_offset;
906
907                 if (!$no_smart_dt) {
908                         return smart_date_time($link, $user_timestamp,
909                                 $tz_offset, $owner_uid);
910                 } else {
911                         if ($long)
912                                 $format = get_pref($link, 'LONG_DATE_FORMAT', $owner_uid);
913                         else
914                                 $format = get_pref($link, 'SHORT_DATE_FORMAT', $owner_uid);
915
916                         return date($format, $user_timestamp);
917                 }
918         }
919
920         function smart_date_time($link, $timestamp, $tz_offset = 0, $owner_uid = false) {
921                 if (!$owner_uid) $owner_uid = $_SESSION['uid'];
922
923                 if (date("Y.m.d", $timestamp) == date("Y.m.d", time() + $tz_offset)) {
924                         return date("G:i", $timestamp);
925                 } else if (date("Y", $timestamp) == date("Y", time() + $tz_offset)) {
926                         $format = get_pref($link, 'SHORT_DATE_FORMAT', $owner_uid);
927                         return date($format, $timestamp);
928                 } else {
929                         $format = get_pref($link, 'LONG_DATE_FORMAT', $owner_uid);
930                         return date($format, $timestamp);
931                 }
932         }
933
934         function sql_bool_to_bool($s) {
935                 if ($s == "t" || $s == "1" || strtolower($s) == "true") {
936                         return true;
937                 } else {
938                         return false;
939                 }
940         }
941
942         function bool_to_sql_bool($s) {
943                 if ($s) {
944                         return "true";
945                 } else {
946                         return "false";
947                 }
948         }
949
950         // Session caching removed due to causing wrong redirects to upgrade
951         // script when get_schema_version() is called on an obsolete session
952         // created on a previous schema version.
953         function get_schema_version($link, $nocache = false) {
954                 global $schema_version;
955
956                 if (!$schema_version) {
957                         $result = db_query($link, "SELECT schema_version FROM ttrss_version");
958                         $version = db_fetch_result($result, 0, "schema_version");
959                         $schema_version = $version;
960                         return $version;
961                 } else {
962                         return $schema_version;
963                 }
964         }
965
966         function sanity_check($link) {
967                 require_once 'errors.php';
968
969                 $error_code = 0;
970                 $schema_version = get_schema_version($link, true);
971
972                 if ($schema_version != SCHEMA_VERSION) {
973                         $error_code = 5;
974                 }
975
976                 if (DB_TYPE == "mysql") {
977                         $result = db_query($link, "SELECT true", false);
978                         if (db_num_rows($result) != 1) {
979                                 $error_code = 10;
980                         }
981                 }
982
983                 if (db_escape_string($link, "testTEST") != "testTEST") {
984                         $error_code = 12;
985                 }
986
987                 return array("code" => $error_code, "message" => $ERRORS[$error_code]);
988         }
989
990         function file_is_locked($filename) {
991                 if (function_exists('flock')) {
992                         $fp = @fopen(LOCK_DIRECTORY . "/$filename", "r");
993                         if ($fp) {
994                                 if (flock($fp, LOCK_EX | LOCK_NB)) {
995                                         flock($fp, LOCK_UN);
996                                         fclose($fp);
997                                         return false;
998                                 }
999                                 fclose($fp);
1000                                 return true;
1001                         } else {
1002                                 return false;
1003                         }
1004                 }
1005                 return true; // consider the file always locked and skip the test
1006         }
1007
1008         function make_lockfile($filename) {
1009                 $fp = fopen(LOCK_DIRECTORY . "/$filename", "w");
1010
1011                 if ($fp && flock($fp, LOCK_EX | LOCK_NB)) {
1012                         if (function_exists('posix_getpid')) {
1013                                 fwrite($fp, posix_getpid() . "\n");
1014                         }
1015                         return $fp;
1016                 } else {
1017                         return false;
1018                 }
1019         }
1020
1021         function make_stampfile($filename) {
1022                 $fp = fopen(LOCK_DIRECTORY . "/$filename", "w");
1023
1024                 if (flock($fp, LOCK_EX | LOCK_NB)) {
1025                         fwrite($fp, time() . "\n");
1026                         flock($fp, LOCK_UN);
1027                         fclose($fp);
1028                         return true;
1029                 } else {
1030                         return false;
1031                 }
1032         }
1033
1034         function sql_random_function() {
1035                 if (DB_TYPE == "mysql") {
1036                         return "RAND()";
1037                 } else {
1038                         return "RANDOM()";
1039                 }
1040         }
1041
1042         function catchup_feed($link, $feed, $cat_view, $owner_uid = false, $max_id = false, $mode = 'all') {
1043
1044                         if (!$owner_uid) $owner_uid = $_SESSION['uid'];
1045
1046                         //if (preg_match("/^-?[0-9][0-9]*$/", $feed) != false) {
1047
1048                         // Todo: all this interval stuff needs some generic generator function
1049
1050                         $date_qpart = "false";
1051
1052                         switch ($mode) {
1053                         case "1day":
1054                                 if (DB_TYPE == "pgsql") {
1055                                         $date_qpart = "date_entered < NOW() - INTERVAL '1 day' ";
1056                                 } else {
1057                                         $date_qpart = "date_entered < DATE_SUB(NOW(), INTERVAL 1 DAY) ";
1058                                 }
1059                                 break;
1060                         case "1week":
1061                                 if (DB_TYPE == "pgsql") {
1062                                         $date_qpart = "date_entered < NOW() - INTERVAL '1 week' ";
1063                                 } else {
1064                                         $date_qpart = "date_entered < DATE_SUB(NOW(), INTERVAL 1 WEEK) ";
1065                                 }
1066                                 break;
1067                         case "2weeks":
1068                                 if (DB_TYPE == "pgsql") {
1069                                         $date_qpart = "date_entered < NOW() - INTERVAL '2 week' ";
1070                                 } else {
1071                                         $date_qpart = "date_entered < DATE_SUB(NOW(), INTERVAL 2 WEEK) ";
1072                                 }
1073                                 break;
1074                         default:
1075                                 $date_qpart = "true";
1076                         }
1077
1078                         if (is_numeric($feed)) {
1079                                 if ($cat_view) {
1080
1081                                         if ($feed >= 0) {
1082
1083                                                 if ($feed > 0) {
1084                                                         $children = getChildCategories($link, $feed, $owner_uid);
1085                                                         array_push($children, $feed);
1086
1087                                                         $children = join(",", $children);
1088
1089                                                         $cat_qpart = "cat_id IN ($children)";
1090                                                 } else {
1091                                                         $cat_qpart = "cat_id IS NULL";
1092                                                 }
1093
1094                                                 db_query($link, "UPDATE ttrss_user_entries
1095                                                         SET unread = false, last_read = NOW() WHERE ref_id IN
1096                                                                 (SELECT id FROM
1097                                                                         (SELECT id FROM ttrss_entries, ttrss_user_entries WHERE ref_id = id
1098                                                                                 AND owner_uid = $owner_uid AND unread = true AND feed_id IN
1099                                                                                         (SELECT id FROM ttrss_feeds WHERE $cat_qpart) AND $date_qpart) as tmp)");
1100
1101                                         } else if ($feed == -2) {
1102
1103                                                 db_query($link, "UPDATE ttrss_user_entries
1104                                                         SET unread = false,last_read = NOW() WHERE (SELECT COUNT(*)
1105                                                                 FROM ttrss_user_labels2 WHERE article_id = ref_id) > 0
1106                                                                 AND unread = true AND $date_qpart AND owner_uid = $owner_uid");
1107                                         }
1108
1109                                 } else if ($feed > 0) {
1110
1111                                         db_query($link, "UPDATE ttrss_user_entries
1112                                                 SET unread = false, last_read = NOW() WHERE ref_id IN
1113                                                         (SELECT id FROM
1114                                                                 (SELECT id FROM ttrss_entries, ttrss_user_entries WHERE ref_id = id
1115                                                                         AND owner_uid = $owner_uid AND unread = true AND feed_id = $feed AND $date_qpart) as tmp)");
1116
1117                                 } else if ($feed < 0 && $feed > LABEL_BASE_INDEX) { // special, like starred
1118
1119                                         if ($feed == -1) {
1120                                                 db_query($link, "UPDATE ttrss_user_entries
1121                                                         SET unread = false, last_read = NOW() WHERE ref_id IN
1122                                                                 (SELECT id FROM
1123                                                                         (SELECT id FROM ttrss_entries, ttrss_user_entries WHERE ref_id = id
1124                                                                                 AND owner_uid = $owner_uid AND unread = true AND marked = true AND $date_qpart) as tmp)");
1125                                         }
1126
1127                                         if ($feed == -2) {
1128                                                 db_query($link, "UPDATE ttrss_user_entries
1129                                                         SET unread = false, last_read = NOW() WHERE ref_id IN
1130                                                                 (SELECT id FROM
1131                                                                         (SELECT id FROM ttrss_entries, ttrss_user_entries WHERE ref_id = id
1132                                                                                 AND owner_uid = $owner_uid AND unread = true AND published = true AND $date_qpart) as tmp)");
1133                                         }
1134
1135                                         if ($feed == -3) {
1136
1137                                                 $intl = get_pref($link, "FRESH_ARTICLE_MAX_AGE");
1138
1139                                                 if (DB_TYPE == "pgsql") {
1140                                                         $match_part = "date_entered > NOW() - INTERVAL '$intl hour' ";
1141                                                 } else {
1142                                                         $match_part = "date_entered > DATE_SUB(NOW(),
1143                                                                 INTERVAL $intl HOUR) ";
1144                                                 }
1145
1146                                                 db_query($link, "UPDATE ttrss_user_entries
1147                                                         SET unread = false, last_read = NOW() WHERE ref_id IN
1148                                                                 (SELECT id FROM
1149                                                                         (SELECT id FROM ttrss_entries, ttrss_user_entries WHERE ref_id = id
1150                                                                                 AND owner_uid = $owner_uid AND unread = true AND $date_qpart AND $match_part) as tmp)");
1151                                         }
1152
1153                                         if ($feed == -4) {
1154                                                 db_query($link, "UPDATE ttrss_user_entries
1155                                                         SET unread = false, last_read = NOW() WHERE ref_id IN
1156                                                                 (SELECT id FROM
1157                                                                         (SELECT id FROM ttrss_entries, ttrss_user_entries WHERE ref_id = id
1158                                                                                 AND owner_uid = $owner_uid AND unread = true AND $date_qpart) as tmp)");
1159                                         }
1160
1161                                 } else if ($feed < LABEL_BASE_INDEX) { // label
1162
1163                                         $label_id = feed_to_label_id($feed);
1164
1165                                         db_query($link, "UPDATE ttrss_user_entries
1166                                                 SET unread = false, last_read = NOW() WHERE ref_id IN
1167                                                         (SELECT id FROM
1168                                                                 (SELECT ttrss_entries.id FROM ttrss_entries, ttrss_user_entries, ttrss_user_labels2 WHERE ref_id = id
1169                                                                         AND label_id = '$label_id' AND ref_id = article_id
1170                                                                         AND owner_uid = $owner_uid AND unread = true AND $date_qpart) as tmp)");
1171
1172                                 }
1173
1174                                 ccache_update($link, $feed, $owner_uid, $cat_view);
1175
1176                         } else { // tag
1177                                 db_query($link, "UPDATE ttrss_user_entries
1178                                         SET unread = false, last_read = NOW() WHERE ref_id IN
1179                                                 (SELECT id FROM
1180                                                         (SELECT ttrss_entries.id FROM ttrss_entries, ttrss_user_entries, ttrss_tags WHERE ref_id = ttrss_entries.id
1181                                                                 AND post_int_id = int_id AND tag_name = '$feed'
1182                                                                 AND ttrss_user_entries.owner_uid = $owner_uid AND unread = true AND $date_qpart) as tmp)");
1183
1184                         }
1185         }
1186
1187         function getAllCounters($link) {
1188                 $data = getGlobalCounters($link);
1189
1190                 $data = array_merge($data, getVirtCounters($link));
1191                 $data = array_merge($data, getLabelCounters($link));
1192                 $data = array_merge($data, getFeedCounters($link, $active_feed));
1193                 $data = array_merge($data, getCategoryCounters($link));
1194
1195                 return $data;
1196         }
1197
1198         function getCategoryTitle($link, $cat_id) {
1199
1200                 if ($cat_id == -1) {
1201                         return __("Special");
1202                 } else if ($cat_id == -2) {
1203                         return __("Labels");
1204                 } else {
1205
1206                         $result = db_query($link, "SELECT title FROM ttrss_feed_categories WHERE
1207                                 id = '$cat_id'");
1208
1209                         if (db_num_rows($result) == 1) {
1210                                 return db_fetch_result($result, 0, "title");
1211                         } else {
1212                                 return __("Uncategorized");
1213                         }
1214                 }
1215         }
1216
1217
1218         function getCategoryCounters($link) {
1219                 $ret_arr = array();
1220
1221                 /* Labels category */
1222
1223                 $cv = array("id" => -2, "kind" => "cat",
1224                         "counter" => getCategoryUnread($link, -2));
1225
1226                 array_push($ret_arr, $cv);
1227
1228                 $result = db_query($link, "SELECT id AS cat_id, value AS unread,
1229                         (SELECT COUNT(id) FROM ttrss_feed_categories AS c2
1230                                 WHERE c2.parent_cat = ttrss_feed_categories.id) AS num_children
1231                         FROM ttrss_feed_categories, ttrss_cat_counters_cache
1232                         WHERE ttrss_cat_counters_cache.feed_id = id AND
1233                         ttrss_cat_counters_cache.owner_uid = ttrss_feed_categories.owner_uid AND
1234                         ttrss_feed_categories.owner_uid = " . $_SESSION["uid"]);
1235
1236                 while ($line = db_fetch_assoc($result)) {
1237                         $line["cat_id"] = (int) $line["cat_id"];
1238
1239                         if ($line["num_children"] > 0) {
1240                                 $child_counter = getCategoryChildrenUnread($link, $line["cat_id"], $_SESSION["uid"]);
1241                         } else {
1242                                 $child_counter = 0;
1243                         }
1244
1245                         $cv = array("id" => $line["cat_id"], "kind" => "cat",
1246                                 "counter" => $line["unread"] + $child_counter);
1247
1248                         array_push($ret_arr, $cv);
1249                 }
1250
1251                 /* Special case: NULL category doesn't actually exist in the DB */
1252
1253                 $cv = array("id" => 0, "kind" => "cat",
1254                         "counter" => (int) ccache_find($link, 0, $_SESSION["uid"], true));
1255
1256                 array_push($ret_arr, $cv);
1257
1258                 return $ret_arr;
1259         }
1260
1261         // only accepts real cats (>= 0)
1262         function getCategoryChildrenUnread($link, $cat, $owner_uid = false) {
1263                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1264
1265                 $result = db_query($link, "SELECT id FROM ttrss_feed_categories WHERE parent_cat = '$cat'
1266                                 AND owner_uid = $owner_uid");
1267
1268                 $unread = 0;
1269
1270                 while ($line = db_fetch_assoc($result)) {
1271                         $unread += getCategoryUnread($link, $line["id"], $owner_uid);
1272                         $unread += getCategoryChildrenUnread($link, $line["id"], $owner_uid);
1273                 }
1274
1275                 return $unread;
1276         }
1277
1278         function getCategoryUnread($link, $cat, $owner_uid = false) {
1279
1280                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1281
1282                 if ($cat >= 0) {
1283
1284                         if ($cat != 0) {
1285                                 $cat_query = "cat_id = '$cat'";
1286                         } else {
1287                                 $cat_query = "cat_id IS NULL";
1288                         }
1289
1290                         $result = db_query($link, "SELECT id FROM ttrss_feeds WHERE $cat_query
1291                                         AND owner_uid = " . $owner_uid);
1292
1293                         $cat_feeds = array();
1294                         while ($line = db_fetch_assoc($result)) {
1295                                 array_push($cat_feeds, "feed_id = " . $line["id"]);
1296                         }
1297
1298                         if (count($cat_feeds) == 0) return 0;
1299
1300                         $match_part = implode(" OR ", $cat_feeds);
1301
1302                         $result = db_query($link, "SELECT COUNT(int_id) AS unread
1303                                 FROM ttrss_user_entries
1304                                 WHERE   unread = true AND ($match_part)
1305                                 AND owner_uid = " . $owner_uid);
1306
1307                         $unread = 0;
1308
1309                         # this needs to be rewritten
1310                         while ($line = db_fetch_assoc($result)) {
1311                                 $unread += $line["unread"];
1312                         }
1313
1314                         return $unread;
1315                 } else if ($cat == -1) {
1316                         return getFeedUnread($link, -1) + getFeedUnread($link, -2) + getFeedUnread($link, -3) + getFeedUnread($link, 0);
1317                 } else if ($cat == -2) {
1318
1319                         $result = db_query($link, "
1320                                 SELECT COUNT(unread) AS unread FROM
1321                                         ttrss_user_entries, ttrss_user_labels2
1322                                 WHERE article_id = ref_id AND unread = true
1323                                         AND ttrss_user_entries.owner_uid = '$owner_uid'");
1324
1325                         $unread = db_fetch_result($result, 0, "unread");
1326
1327                         return $unread;
1328
1329                 }
1330         }
1331
1332         function getFeedUnread($link, $feed, $is_cat = false) {
1333                 return getFeedArticles($link, $feed, $is_cat, true, $_SESSION["uid"]);
1334         }
1335
1336         function getLabelUnread($link, $label_id, $owner_uid = false) {
1337                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1338
1339                 $result = db_query($link, "SELECT COUNT(ref_id) AS unread FROM ttrss_user_entries, ttrss_user_labels2
1340                         WHERE owner_uid = '$owner_uid' AND unread = true AND label_id = '$label_id' AND article_id = ref_id");
1341
1342                 if (db_num_rows($result) != 0) {
1343                         return db_fetch_result($result, 0, "unread");
1344                 } else {
1345                         return 0;
1346                 }
1347         }
1348
1349         function getFeedArticles($link, $feed, $is_cat = false, $unread_only = false,
1350                 $owner_uid = false) {
1351
1352                 $n_feed = (int) $feed;
1353                 $need_entries = false;
1354
1355                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1356
1357                 if ($unread_only) {
1358                         $unread_qpart = "unread = true";
1359                 } else {
1360                         $unread_qpart = "true";
1361                 }
1362
1363                 if ($is_cat) {
1364                         return getCategoryUnread($link, $n_feed, $owner_uid);
1365                 } else if ($n_feed == -6) {
1366                         return 0;
1367                 } else if ($feed != "0" && $n_feed == 0) {
1368
1369                         $feed = db_escape_string($link, $feed);
1370
1371                         $result = db_query($link, "SELECT SUM((SELECT COUNT(int_id)
1372                                 FROM ttrss_user_entries,ttrss_entries WHERE int_id = post_int_id
1373                                         AND ref_id = id AND $unread_qpart)) AS count FROM ttrss_tags
1374                                 WHERE owner_uid = $owner_uid AND tag_name = '$feed'");
1375                         return db_fetch_result($result, 0, "count");
1376
1377                 } else if ($n_feed == -1) {
1378                         $match_part = "marked = true";
1379                 } else if ($n_feed == -2) {
1380                         $match_part = "published = true";
1381                 } else if ($n_feed == -3) {
1382                         $match_part = "unread = true AND score >= 0";
1383
1384                         $intl = get_pref($link, "FRESH_ARTICLE_MAX_AGE", $owner_uid);
1385
1386                         if (DB_TYPE == "pgsql") {
1387                                 $match_part .= " AND updated > NOW() - INTERVAL '$intl hour' ";
1388                         } else {
1389                                 $match_part .= " AND updated > DATE_SUB(NOW(), INTERVAL $intl HOUR) ";
1390                         }
1391
1392                         $need_entries = true;
1393
1394                 } else if ($n_feed == -4) {
1395                         $match_part = "true";
1396                 } else if ($n_feed >= 0) {
1397
1398                         if ($n_feed != 0) {
1399                                 $match_part = "feed_id = '$n_feed'";
1400                         } else {
1401                                 $match_part = "feed_id IS NULL";
1402                         }
1403
1404                 } else if ($feed < LABEL_BASE_INDEX) {
1405
1406                         $label_id = feed_to_label_id($feed);
1407
1408                         return getLabelUnread($link, $label_id, $owner_uid);
1409
1410                 }
1411
1412                 if ($match_part) {
1413
1414                         if ($need_entries) {
1415                                 $from_qpart = "ttrss_user_entries,ttrss_entries";
1416                                 $from_where = "ttrss_entries.id = ttrss_user_entries.ref_id AND";
1417                         } else {
1418                                 $from_qpart = "ttrss_user_entries";
1419                         }
1420
1421                         $query = "SELECT count(int_id) AS unread
1422                                 FROM $from_qpart WHERE
1423                                 $unread_qpart AND $from_where ($match_part) AND ttrss_user_entries.owner_uid = $owner_uid";
1424
1425                         //echo "[$feed/$query]\n";
1426
1427                         $result = db_query($link, $query);
1428
1429                 } else {
1430
1431                         $result = db_query($link, "SELECT COUNT(post_int_id) AS unread
1432                                 FROM ttrss_tags,ttrss_user_entries,ttrss_entries
1433                                 WHERE tag_name = '$feed' AND post_int_id = int_id AND ref_id = ttrss_entries.id
1434                                 AND $unread_qpart AND ttrss_tags.owner_uid = " . $owner_uid);
1435                 }
1436
1437                 $unread = db_fetch_result($result, 0, "unread");
1438
1439                 return $unread;
1440         }
1441
1442         function getGlobalUnread($link, $user_id = false) {
1443
1444                 if (!$user_id) {
1445                         $user_id = $_SESSION["uid"];
1446                 }
1447
1448                 $result = db_query($link, "SELECT SUM(value) AS c_id FROM ttrss_counters_cache
1449                         WHERE owner_uid = '$user_id' AND feed_id > 0");
1450
1451                 $c_id = db_fetch_result($result, 0, "c_id");
1452
1453                 return $c_id;
1454         }
1455
1456         function getGlobalCounters($link, $global_unread = -1) {
1457                 $ret_arr = array();
1458
1459                 if ($global_unread == -1) {
1460                         $global_unread = getGlobalUnread($link);
1461                 }
1462
1463                 $cv = array("id" => "global-unread",
1464                         "counter" => (int) $global_unread);
1465
1466                 array_push($ret_arr, $cv);
1467
1468                 $result = db_query($link, "SELECT COUNT(id) AS fn FROM
1469                         ttrss_feeds WHERE owner_uid = " . $_SESSION["uid"]);
1470
1471                 $subscribed_feeds = db_fetch_result($result, 0, "fn");
1472
1473                 $cv = array("id" => "subscribed-feeds",
1474                         "counter" => (int) $subscribed_feeds);
1475
1476                 array_push($ret_arr, $cv);
1477
1478                 return $ret_arr;
1479         }
1480
1481         function getVirtCounters($link) {
1482
1483                 $ret_arr = array();
1484
1485                 for ($i = 0; $i >= -4; $i--) {
1486
1487                         $count = getFeedUnread($link, $i);
1488
1489                         $cv = array("id" => $i,
1490                                 "counter" => (int) $count);
1491
1492 //                      if (get_pref($link, 'EXTENDED_FEEDLIST'))
1493 //                              $cv["xmsg"] = getFeedArticles($link, $i)." ".__("total");
1494
1495                         array_push($ret_arr, $cv);
1496                 }
1497
1498                 global $pluginhost;
1499
1500                 if ($pluginhost) {
1501                         $feeds = $pluginhost->get_feeds(-1);
1502
1503                         if (is_array($feeds)) {
1504                                 foreach ($feeds as $feed) {
1505                                         $cv = array("id" => PluginHost::pfeed_to_feed_id($feed['id']),
1506                                                 "counter" => $feed['sender']->get_unread($feed['id']));
1507
1508                                         array_push($ret_arr, $cv);
1509                                 }
1510                         }
1511                 }
1512
1513                 return $ret_arr;
1514         }
1515
1516         function getLabelCounters($link, $descriptions = false) {
1517
1518                 $ret_arr = array();
1519
1520                 $owner_uid = $_SESSION["uid"];
1521
1522                 $result = db_query($link, "SELECT id,caption,COUNT(unread) AS unread
1523                         FROM ttrss_labels2 LEFT JOIN ttrss_user_labels2 ON
1524                                 (ttrss_labels2.id = label_id)
1525                                 LEFT JOIN ttrss_user_entries ON (ref_id = article_id AND unread = true
1526                                         AND ttrss_user_entries.owner_uid = $owner_uid)
1527                                 WHERE ttrss_labels2.owner_uid = $owner_uid GROUP BY ttrss_labels2.id,
1528                                         ttrss_labels2.caption");
1529
1530                 while ($line = db_fetch_assoc($result)) {
1531
1532                         $id = label_to_feed_id($line["id"]);
1533
1534                         $label_name = $line["caption"];
1535                         $count = $line["unread"];
1536
1537                         $cv = array("id" => $id,
1538                                 "counter" => (int) $count);
1539
1540                         if ($descriptions)
1541                                 $cv["description"] = $label_name;
1542
1543 //                      if (get_pref($link, 'EXTENDED_FEEDLIST'))
1544 //                              $cv["xmsg"] = getFeedArticles($link, $id)." ".__("total");
1545
1546                         array_push($ret_arr, $cv);
1547                 }
1548
1549                 return $ret_arr;
1550         }
1551
1552         function getFeedCounters($link, $active_feed = false) {
1553
1554                 $ret_arr = array();
1555
1556                 $query = "SELECT ttrss_feeds.id,
1557                                 ttrss_feeds.title,
1558                                 ".SUBSTRING_FOR_DATE."(ttrss_feeds.last_updated,1,19) AS last_updated,
1559                                 last_error, value AS count
1560                         FROM ttrss_feeds, ttrss_counters_cache
1561                         WHERE ttrss_feeds.owner_uid = ".$_SESSION["uid"]."
1562                                 AND ttrss_counters_cache.owner_uid = ttrss_feeds.owner_uid
1563                                 AND ttrss_counters_cache.feed_id = id";
1564
1565                 $result = db_query($link, $query);
1566                 $fctrs_modified = false;
1567
1568                 while ($line = db_fetch_assoc($result)) {
1569
1570                         $id = $line["id"];
1571                         $count = $line["count"];
1572                         $last_error = htmlspecialchars($line["last_error"]);
1573
1574                         $last_updated = make_local_datetime($link, $line['last_updated'], false);
1575
1576                         $has_img = feed_has_icon($id);
1577
1578                         if (date('Y') - date('Y', strtotime($line['last_updated'])) > 2)
1579                                 $last_updated = '';
1580
1581                         $cv = array("id" => $id,
1582                                 "updated" => $last_updated,
1583                                 "counter" => (int) $count,
1584                                 "has_img" => (int) $has_img);
1585
1586                         if ($last_error)
1587                                 $cv["error"] = $last_error;
1588
1589 //                      if (get_pref($link, 'EXTENDED_FEEDLIST'))
1590 //                              $cv["xmsg"] = getFeedArticles($link, $id)." ".__("total");
1591
1592                         if ($active_feed && $id == $active_feed)
1593                                 $cv["title"] = truncate_string($line["title"], 30);
1594
1595                         array_push($ret_arr, $cv);
1596
1597                 }
1598
1599                 return $ret_arr;
1600         }
1601
1602         function get_pgsql_version($link) {
1603                 $result = db_query($link, "SELECT version() AS version");
1604                 $version = explode(" ", db_fetch_result($result, 0, "version"));
1605                 return $version[1];
1606         }
1607
1608         /**
1609          * @return array (code => Status code, message => error message if available)
1610          *
1611          *                 0 - OK, Feed already exists
1612          *                 1 - OK, Feed added
1613          *                 2 - Invalid URL
1614          *                 3 - URL content is HTML, no feeds available
1615          *                 4 - URL content is HTML which contains multiple feeds.
1616          *                     Here you should call extractfeedurls in rpc-backend
1617          *                     to get all possible feeds.
1618          *                 5 - Couldn't download the URL content.
1619          */
1620         function subscribe_to_feed($link, $url, $cat_id = 0,
1621                         $auth_login = '', $auth_pass = '') {
1622
1623                 global $fetch_last_error;
1624
1625                 require_once "include/rssfuncs.php";
1626
1627                 $url = fix_url($url);
1628
1629                 if (!$url || !validate_feed_url($url)) return array("code" => 2);
1630
1631                 $contents = @fetch_file_contents($url, false, $auth_login, $auth_pass);
1632
1633                 if (!$contents) {
1634                         return array("code" => 5, "message" => $fetch_last_error);
1635                 }
1636
1637                 if (is_html($contents)) {
1638                         $feedUrls = get_feeds_from_html($url, $contents);
1639
1640                         if (count($feedUrls) == 0) {
1641                                 return array("code" => 3);
1642                         } else if (count($feedUrls) > 1) {
1643                                 return array("code" => 4, "feeds" => $feedUrls);
1644                         }
1645                         //use feed url as new URL
1646                         $url = key($feedUrls);
1647                 }
1648
1649                 if ($cat_id == "0" || !$cat_id) {
1650                         $cat_qpart = "NULL";
1651                 } else {
1652                         $cat_qpart = "'$cat_id'";
1653                 }
1654
1655                 $result = db_query($link,
1656                         "SELECT id FROM ttrss_feeds
1657                         WHERE feed_url = '$url' AND owner_uid = ".$_SESSION["uid"]);
1658
1659                 if (strlen(FEED_CRYPT_KEY) > 0) {
1660                         require_once "crypt.php";
1661                         $auth_pass = substr(encrypt_string($auth_pass), 0, 250);
1662                         $auth_pass_encrypted = 'true';
1663                 } else {
1664                         $auth_pass_encrypted = 'false';
1665                 }
1666
1667                 $auth_pass = db_escape_string($link, $auth_pass);
1668
1669                 if (db_num_rows($result) == 0) {
1670                         $result = db_query($link,
1671                                 "INSERT INTO ttrss_feeds
1672                                         (owner_uid,feed_url,title,cat_id, auth_login,auth_pass,update_method,auth_pass_encrypted)
1673                                 VALUES ('".$_SESSION["uid"]."', '$url',
1674                                 '[Unknown]', $cat_qpart, '$auth_login', '$auth_pass', 0, $auth_pass_encrypted)");
1675
1676                         $result = db_query($link,
1677                                 "SELECT id FROM ttrss_feeds WHERE feed_url = '$url'
1678                                         AND owner_uid = " . $_SESSION["uid"]);
1679
1680                         $feed_id = db_fetch_result($result, 0, "id");
1681
1682                         if ($feed_id) {
1683                                 update_rss_feed($link, $feed_id, true);
1684                         }
1685
1686                         return array("code" => 1);
1687                 } else {
1688                         return array("code" => 0);
1689                 }
1690         }
1691
1692         function print_feed_select($link, $id, $default_id = "",
1693                 $attributes = "", $include_all_feeds = true,
1694                 $root_id = false, $nest_level = 0) {
1695
1696                 if (!$root_id) {
1697                         print "<select id=\"$id\" name=\"$id\" $attributes>";
1698                         if ($include_all_feeds) {
1699                                 $is_selected = ("0" == $default_id) ? "selected=\"1\"" : "";
1700                                 print "<option $is_selected value=\"0\">".__('All feeds')."</option>";
1701                         }
1702                 }
1703
1704                 if (get_pref($link, 'ENABLE_FEED_CATS')) {
1705
1706                         if ($root_id)
1707                                 $parent_qpart = "parent_cat = '$root_id'";
1708                         else
1709                                 $parent_qpart = "parent_cat IS NULL";
1710
1711                         $result = db_query($link, "SELECT id,title,
1712                                 (SELECT COUNT(id) FROM ttrss_feed_categories AS c2 WHERE
1713                                         c2.parent_cat = ttrss_feed_categories.id) AS num_children
1714                                 FROM ttrss_feed_categories
1715                                 WHERE owner_uid = ".$_SESSION["uid"]." AND $parent_qpart ORDER BY title");
1716
1717                         while ($line = db_fetch_assoc($result)) {
1718
1719                                 for ($i = 0; $i < $nest_level; $i++)
1720                                         $line["title"] = " - " . $line["title"];
1721
1722                                 $is_selected = ("CAT:".$line["id"] == $default_id) ? "selected=\"1\"" : "";
1723
1724                                 printf("<option $is_selected value='CAT:%d'>%s</option>",
1725                                         $line["id"], htmlspecialchars($line["title"]));
1726
1727                                 if ($line["num_children"] > 0)
1728                                         print_feed_select($link, $id, $default_id, $attributes,
1729                                                 $include_all_feeds, $line["id"], $nest_level+1);
1730
1731                                 $feed_result = db_query($link, "SELECT id,title FROM ttrss_feeds
1732                                         WHERE cat_id = '".$line["id"]."' AND owner_uid = ".$_SESSION["uid"] . " ORDER BY title");
1733
1734                                 while ($fline = db_fetch_assoc($feed_result)) {
1735                                         $is_selected = ($fline["id"] == $default_id) ? "selected=\"1\"" : "";
1736
1737                                         $fline["title"] = " + " . $fline["title"];
1738
1739                                         for ($i = 0; $i < $nest_level; $i++)
1740                                                 $fline["title"] = " - " . $fline["title"];
1741
1742                                         printf("<option $is_selected value='%d'>%s</option>",
1743                                                 $fline["id"], htmlspecialchars($fline["title"]));
1744                                 }
1745                         }
1746
1747                         if (!$root_id) {
1748                                 $is_selected = ($default_id == "CAT:0") ? "selected=\"1\"" : "";
1749
1750                                 printf("<option $is_selected value='CAT:0'>%s</option>",
1751                                         __("Uncategorized"));
1752
1753                                 $feed_result = db_query($link, "SELECT id,title FROM ttrss_feeds
1754                                         WHERE cat_id IS NULL AND owner_uid = ".$_SESSION["uid"] . " ORDER BY title");
1755
1756                                 while ($fline = db_fetch_assoc($feed_result)) {
1757                                         $is_selected = ($fline["id"] == $default_id && !$default_is_cat) ? "selected=\"1\"" : "";
1758
1759                                         $fline["title"] = " + " . $fline["title"];
1760
1761                                         for ($i = 0; $i < $nest_level; $i++)
1762                                                 $fline["title"] = " - " . $fline["title"];
1763
1764                                         printf("<option $is_selected value='%d'>%s</option>",
1765                                                 $fline["id"], htmlspecialchars($fline["title"]));
1766                                 }
1767                         }
1768
1769                 } else {
1770                         $result = db_query($link, "SELECT id,title FROM ttrss_feeds
1771                                 WHERE owner_uid = ".$_SESSION["uid"]." ORDER BY title");
1772
1773                         while ($line = db_fetch_assoc($result)) {
1774
1775                                 $is_selected = ($line["id"] == $default_id) ? "selected=\"1\"" : "";
1776
1777                                 printf("<option $is_selected value='%d'>%s</option>",
1778                                         $line["id"], htmlspecialchars($line["title"]));
1779                         }
1780                 }
1781
1782                 if (!$root_id) {
1783                         print "</select>";
1784                 }
1785         }
1786
1787         function print_feed_cat_select($link, $id, $default_id,
1788                 $attributes, $include_all_cats = true, $root_id = false, $nest_level = 0) {
1789
1790                         if (!$root_id) {
1791                                         print "<select id=\"$id\" name=\"$id\" default=\"$default_id\" onchange=\"catSelectOnChange(this)\" $attributes>";
1792                         }
1793
1794                         if ($root_id)
1795                                 $parent_qpart = "parent_cat = '$root_id'";
1796                         else
1797                                 $parent_qpart = "parent_cat IS NULL";
1798
1799                         $result = db_query($link, "SELECT id,title,
1800                                 (SELECT COUNT(id) FROM ttrss_feed_categories AS c2 WHERE
1801                                         c2.parent_cat = ttrss_feed_categories.id) AS num_children
1802                                 FROM ttrss_feed_categories
1803                                 WHERE owner_uid = ".$_SESSION["uid"]." AND $parent_qpart ORDER BY title");
1804
1805                         while ($line = db_fetch_assoc($result)) {
1806                                 if ($line["id"] == $default_id) {
1807                                         $is_selected = "selected=\"1\"";
1808                                 } else {
1809                                         $is_selected = "";
1810                                 }
1811
1812                                 for ($i = 0; $i < $nest_level; $i++)
1813                                         $line["title"] = " - " . $line["title"];
1814
1815                                 if ($line["title"])
1816                                         printf("<option $is_selected value='%d'>%s</option>",
1817                                                 $line["id"], htmlspecialchars($line["title"]));
1818
1819                                 if ($line["num_children"] > 0)
1820                                         print_feed_cat_select($link, $id, $default_id, $attributes,
1821                                                 $include_all_cats, $line["id"], $nest_level+1);
1822                         }
1823
1824                         if (!$root_id) {
1825                                 if ($include_all_cats) {
1826                                         if (db_num_rows($result) > 0) {
1827                                                 print "<option disabled=\"1\">--------</option>";
1828                                         }
1829
1830                                         if ($default_id == 0) {
1831                                                 $is_selected = "selected=\"1\"";
1832                                         } else {
1833                                                 $is_selected = "";
1834                                         }
1835
1836                                         print "<option $is_selected value=\"0\">".__('Uncategorized')."</option>";
1837                                 }
1838                                 print "</select>";
1839                         }
1840                 }
1841
1842         function checkbox_to_sql_bool($val) {
1843                 return ($val == "on") ? "true" : "false";
1844         }
1845
1846         function getFeedCatTitle($link, $id) {
1847                 if ($id == -1) {
1848                         return __("Special");
1849                 } else if ($id < LABEL_BASE_INDEX) {
1850                         return __("Labels");
1851                 } else if ($id > 0) {
1852                         $result = db_query($link, "SELECT ttrss_feed_categories.title
1853                                 FROM ttrss_feeds, ttrss_feed_categories WHERE ttrss_feeds.id = '$id' AND
1854                                         cat_id = ttrss_feed_categories.id");
1855                         if (db_num_rows($result) == 1) {
1856                                 return db_fetch_result($result, 0, "title");
1857                         } else {
1858                                 return __("Uncategorized");
1859                         }
1860                 } else {
1861                         return "getFeedCatTitle($id) failed";
1862                 }
1863
1864         }
1865
1866         function getFeedIcon($id) {
1867                 switch ($id) {
1868                 case 0:
1869                         return "images/archive.png";
1870                         break;
1871                 case -1:
1872                         return "images/mark_set.svg";
1873                         break;
1874                 case -2:
1875                         return "images/pub_set.svg";
1876                         break;
1877                 case -3:
1878                         return "images/fresh.png";
1879                         break;
1880                 case -4:
1881                         return "images/tag.png";
1882                         break;
1883                 case -6:
1884                         return "images/recently_read.png";
1885                         break;
1886                 default:
1887                         if ($id < LABEL_BASE_INDEX) {
1888                                 return "images/label.png";
1889                         } else {
1890                                 if (file_exists(ICONS_DIR . "/$id.ico"))
1891                                         return ICONS_URL . "/$id.ico";
1892                         }
1893                         break;
1894                 }
1895         }
1896
1897         function getFeedTitle($link, $id, $cat = false) {
1898                 if ($cat) {
1899                         return getCategoryTitle($link, $id);
1900                 } else if ($id == -1) {
1901                         return __("Starred articles");
1902                 } else if ($id == -2) {
1903                         return __("Published articles");
1904                 } else if ($id == -3) {
1905                         return __("Fresh articles");
1906                 } else if ($id == -4) {
1907                         return __("All articles");
1908                 } else if ($id === 0 || $id === "0") {
1909                         return __("Archived articles");
1910                 } else if ($id == -6) {
1911                         return __("Recently read");
1912                 } else if ($id < LABEL_BASE_INDEX) {
1913                         $label_id = feed_to_label_id($id);
1914                         $result = db_query($link, "SELECT caption FROM ttrss_labels2 WHERE id = '$label_id'");
1915                         if (db_num_rows($result) == 1) {
1916                                 return db_fetch_result($result, 0, "caption");
1917                         } else {
1918                                 return "Unknown label ($label_id)";
1919                         }
1920
1921                 } else if (is_numeric($id) && $id > 0) {
1922                         $result = db_query($link, "SELECT title FROM ttrss_feeds WHERE id = '$id'");
1923                         if (db_num_rows($result) == 1) {
1924                                 return db_fetch_result($result, 0, "title");
1925                         } else {
1926                                 return "Unknown feed ($id)";
1927                         }
1928                 } else {
1929                         return $id;
1930                 }
1931         }
1932
1933         function make_init_params($link) {
1934                 $params = array();
1935
1936                 foreach (array("ON_CATCHUP_SHOW_NEXT_FEED", "HIDE_READ_FEEDS",
1937                         "ENABLE_FEED_CATS", "FEEDS_SORT_BY_UNREAD", "CONFIRM_FEED_CATCHUP",
1938                         "CDM_AUTO_CATCHUP", "FRESH_ARTICLE_MAX_AGE",
1939                         "HIDE_READ_SHOWS_SPECIAL", "COMBINED_DISPLAY_MODE") as $param) {
1940
1941                                  $params[strtolower($param)] = (int) get_pref($link, $param);
1942                  }
1943
1944                 $params["icons_url"] = ICONS_URL;
1945                 $params["cookie_lifetime"] = SESSION_COOKIE_LIFETIME;
1946                 $params["default_view_mode"] = get_pref($link, "_DEFAULT_VIEW_MODE");
1947                 $params["default_view_limit"] = (int) get_pref($link, "_DEFAULT_VIEW_LIMIT");
1948                 $params["default_view_order_by"] = get_pref($link, "_DEFAULT_VIEW_ORDER_BY");
1949                 $params["bw_limit"] = (int) $_SESSION["bw_limit"];
1950                 $params["label_base_index"] = (int) LABEL_BASE_INDEX;
1951
1952                 $result = db_query($link, "SELECT MAX(id) AS mid, COUNT(*) AS nf FROM
1953                         ttrss_feeds WHERE owner_uid = " . $_SESSION["uid"]);
1954
1955                 $max_feed_id = db_fetch_result($result, 0, "mid");
1956                 $num_feeds = db_fetch_result($result, 0, "nf");
1957
1958                 $params["max_feed_id"] = (int) $max_feed_id;
1959                 $params["num_feeds"] = (int) $num_feeds;
1960
1961                 $params["collapsed_feedlist"] = (int) get_pref($link, "_COLLAPSED_FEEDLIST");
1962                 $params["hotkeys"] = get_hotkeys_map($link);
1963
1964                 $params["csrf_token"] = $_SESSION["csrf_token"];
1965                 $params["widescreen"] = (int) $_COOKIE["ttrss_widescreen"];
1966
1967                 $params['simple_update'] = defined('SIMPLE_UPDATE_MODE') && SIMPLE_UPDATE_MODE;
1968
1969                 return $params;
1970         }
1971
1972         function get_hotkeys_info($link) {
1973                 $hotkeys = array(
1974                         __("Navigation") => array(
1975                                 "next_feed" => __("Open next feed"),
1976                                 "prev_feed" => __("Open previous feed"),
1977                                 "next_article" => __("Open next article"),
1978                                 "prev_article" => __("Open previous article"),
1979                                 "next_article_noscroll" => __("Open next article (don't scroll long articles)"),
1980                                 "prev_article_noscroll" => __("Open previous article (don't scroll long articles)"),
1981                                 "next_article_noexpand" => __("Move to next article (don't expand or mark read)"),
1982                                 "prev_article_noexpand" => __("Move to previous article (don't expand or mark read)"),
1983                                 "search_dialog" => __("Show search dialog")),
1984                         __("Article") => array(
1985                                 "toggle_mark" => __("Toggle starred"),
1986                                 "toggle_publ" => __("Toggle published"),
1987                                 "toggle_unread" => __("Toggle unread"),
1988                                 "edit_tags" => __("Edit tags"),
1989                                 "dismiss_selected" => __("Dismiss selected"),
1990                                 "dismiss_read" => __("Dismiss read"),
1991                                 "open_in_new_window" => __("Open in new window"),
1992                                 "catchup_below" => __("Mark below as read"),
1993                                 "catchup_above" => __("Mark above as read"),
1994                                 "article_scroll_down" => __("Scroll down"),
1995                                 "article_scroll_up" => __("Scroll up"),
1996                                 "select_article_cursor" => __("Select article under cursor"),
1997                                 "email_article" => __("Email article"),
1998                                 "close_article" => __("Close/collapse article"),
1999                                 "toggle_expand" => __("Toggle article expansion (combined mode)"),
2000                                 "toggle_widescreen" => __("Toggle widescreen mode"),
2001                                 "toggle_embed_original" => __("Toggle embed original")),
2002                         __("Article selection") => array(
2003                                 "select_all" => __("Select all articles"),
2004                                 "select_unread" => __("Select unread"),
2005                                 "select_marked" => __("Select starred"),
2006                                 "select_published" => __("Select published"),
2007                                 "select_invert" => __("Invert selection"),
2008                                 "select_none" => __("Deselect everything")),
2009                         __("Feed") => array(
2010                                 "feed_refresh" => __("Refresh current feed"),
2011                                 "feed_unhide_read" => __("Un/hide read feeds"),
2012                                 "feed_subscribe" => __("Subscribe to feed"),
2013                                 "feed_edit" => __("Edit feed"),
2014                                 "feed_catchup" => __("Mark as read"),
2015                                 "feed_reverse" => __("Reverse headlines"),
2016                                 "feed_debug_update" => __("Debug feed update"),
2017                                 "catchup_all" => __("Mark all feeds as read"),
2018                                 "cat_toggle_collapse" => __("Un/collapse current category"),
2019                                 "toggle_combined_mode" => __("Toggle combined mode"),
2020                                 "toggle_cdm_expanded" => __("Toggle auto expand in combined mode")),
2021                         __("Go to") => array(
2022                                 "goto_all" => __("All articles"),
2023                                 "goto_fresh" => __("Fresh"),
2024                                 "goto_marked" => __("Starred"),
2025                                 "goto_published" => __("Published"),
2026                                 "goto_tagcloud" => __("Tag cloud"),
2027                                 "goto_prefs" => __("Preferences")),
2028                         __("Other") => array(
2029                                 "create_label" => __("Create label"),
2030                                 "create_filter" => __("Create filter"),
2031                                 "collapse_sidebar" => __("Un/collapse sidebar"),
2032                                 "help_dialog" => __("Show help dialog"))
2033                         );
2034
2035                 global $pluginhost;
2036                 foreach ($pluginhost->get_hooks($pluginhost::HOOK_HOTKEY_INFO) as $plugin) {
2037                         $hotkeys = $plugin->hook_hotkey_info($hotkeys);
2038                 }
2039
2040                 return $hotkeys;
2041         }
2042
2043         function get_hotkeys_map($link) {
2044                 $hotkeys = array(
2045 //                      "navigation" => array(
2046                                 "k" => "next_feed",
2047                                 "j" => "prev_feed",
2048                                 "n" => "next_article",
2049                                 "p" => "prev_article",
2050                                 "(38)|up" => "prev_article",
2051                                 "(40)|down" => "next_article",
2052 //                              "^(38)|Ctrl-up" => "prev_article_noscroll",
2053 //                              "^(40)|Ctrl-down" => "next_article_noscroll",
2054                                 "(191)|/" => "search_dialog",
2055 //                      "article" => array(
2056                                 "s" => "toggle_mark",
2057                                 "*s" => "toggle_publ",
2058                                 "u" => "toggle_unread",
2059                                 "*t" => "edit_tags",
2060                                 "*d" => "dismiss_selected",
2061                                 "*x" => "dismiss_read",
2062                                 "o" => "open_in_new_window",
2063                                 "c p" => "catchup_below",
2064                                 "c n" => "catchup_above",
2065                                 "*n" => "article_scroll_down",
2066                                 "*p" => "article_scroll_up",
2067                                 "*(38)|Shift+up" => "article_scroll_up",
2068                                 "*(40)|Shift+down" => "article_scroll_down",
2069                                 "a *w" => "toggle_widescreen",
2070                                 "a e" => "toggle_embed_original",
2071                                 "e" => "email_article",
2072                                 "a q" => "close_article",
2073 //                      "article_selection" => array(
2074                                 "a a" => "select_all",
2075                                 "a u" => "select_unread",
2076                                 "a *u" => "select_marked",
2077                                 "a p" => "select_published",
2078                                 "a i" => "select_invert",
2079                                 "a n" => "select_none",
2080 //                      "feed" => array(
2081                                 "f r" => "feed_refresh",
2082                                 "f a" => "feed_unhide_read",
2083                                 "f s" => "feed_subscribe",
2084                                 "f e" => "feed_edit",
2085                                 "f q" => "feed_catchup",
2086                                 "f x" => "feed_reverse",
2087                                 "f *d" => "feed_debug_update",
2088                                 "f *c" => "toggle_combined_mode",
2089                                 "f c" => "toggle_cdm_expanded",
2090                                 "*q" => "catchup_all",
2091                                 "x" => "cat_toggle_collapse",
2092 //                      "goto" => array(
2093                                 "g a" => "goto_all",
2094                                 "g f" => "goto_fresh",
2095                                 "g s" => "goto_marked",
2096                                 "g p" => "goto_published",
2097                                 "g t" => "goto_tagcloud",
2098                                 "g *p" => "goto_prefs",
2099 //                      "other" => array(
2100                                 "(9)|Tab" => "select_article_cursor", // tab
2101                                 "c l" => "create_label",
2102                                 "c f" => "create_filter",
2103                                 "c s" => "collapse_sidebar",
2104                                 "^(191)|Ctrl+/" => "help_dialog",
2105                         );
2106
2107                 if (get_pref($link, 'COMBINED_DISPLAY_MODE')) {
2108                         $hotkeys["^(38)|Ctrl-up"] = "prev_article_noscroll";
2109                         $hotkeys["^(40)|Ctrl-down"] = "next_article_noscroll";
2110                 }
2111
2112                 global $pluginhost;
2113                 foreach ($pluginhost->get_hooks($pluginhost::HOOK_HOTKEY_MAP) as $plugin) {
2114                         $hotkeys = $plugin->hook_hotkey_map($hotkeys);
2115                 }
2116
2117                 $prefixes = array();
2118
2119                 foreach (array_keys($hotkeys) as $hotkey) {
2120                         $pair = explode(" ", $hotkey, 2);
2121
2122                         if (count($pair) > 1 && !in_array($pair[0], $prefixes)) {
2123                                 array_push($prefixes, $pair[0]);
2124                         }
2125                 }
2126
2127                 return array($prefixes, $hotkeys);
2128         }
2129
2130         function make_runtime_info($link) {
2131                 $data = array();
2132
2133                 $result = db_query($link, "SELECT MAX(id) AS mid, COUNT(*) AS nf FROM
2134                         ttrss_feeds WHERE owner_uid = " . $_SESSION["uid"]);
2135
2136                 $max_feed_id = db_fetch_result($result, 0, "mid");
2137                 $num_feeds = db_fetch_result($result, 0, "nf");
2138
2139                 $data["max_feed_id"] = (int) $max_feed_id;
2140                 $data["num_feeds"] = (int) $num_feeds;
2141
2142                 $data['last_article_id'] = getLastArticleId($link);
2143                 $data['cdm_expanded'] = get_pref($link, 'CDM_EXPANDED');
2144
2145                 $data['dep_ts'] = calculate_dep_timestamp();
2146                 $data['reload_on_ts_change'] = !defined('_NO_RELOAD_ON_TS_CHANGE');
2147
2148                 if (file_exists(LOCK_DIRECTORY . "/update_daemon.lock")) {
2149
2150                         $data['daemon_is_running'] = (int) file_is_locked("update_daemon.lock");
2151
2152                         if (time() - $_SESSION["daemon_stamp_check"] > 30) {
2153
2154                                 $stamp = (int) @file_get_contents(LOCK_DIRECTORY . "/update_daemon.stamp");
2155
2156                                 if ($stamp) {
2157                                         $stamp_delta = time() - $stamp;
2158
2159                                         if ($stamp_delta > 1800) {
2160                                                 $stamp_check = 0;
2161                                         } else {
2162                                                 $stamp_check = 1;
2163                                                 $_SESSION["daemon_stamp_check"] = time();
2164                                         }
2165
2166                                         $data['daemon_stamp_ok'] = $stamp_check;
2167
2168                                         $stamp_fmt = date("Y.m.d, G:i", $stamp);
2169
2170                                         $data['daemon_stamp'] = $stamp_fmt;
2171                                 }
2172                         }
2173                 }
2174
2175                 if ($_SESSION["last_version_check"] + 86400 + rand(-1000, 1000) < time()) {
2176                                 $new_version_details = @check_for_update($link);
2177
2178                                 $data['new_version_available'] = (int) ($new_version_details != false);
2179
2180                                 $_SESSION["last_version_check"] = time();
2181                                 $_SESSION["version_data"] = $new_version_details;
2182                 }
2183
2184                 return $data;
2185         }
2186
2187         function search_to_sql($link, $search) {
2188
2189                 $search_query_part = "";
2190
2191                 $keywords = explode(" ", $search);
2192                 $query_keywords = array();
2193
2194                 foreach ($keywords as $k) {
2195                         if (strpos($k, "-") === 0) {
2196                                 $k = substr($k, 1);
2197                                 $not = "NOT";
2198                         } else {
2199                                 $not = "";
2200                         }
2201
2202                         $commandpair = explode(":", mb_strtolower($k), 2);
2203
2204                         switch ($commandpair[0]) {
2205                         case "title":
2206                                 if ($commandpair[1]) {
2207                                         array_push($query_keywords, "($not (LOWER(ttrss_entries.title) LIKE '%".
2208                                                 db_escape_string($link, mb_strtolower($commandpair[1]))."%'))");
2209                                 } else {
2210                                         array_push($query_keywords, "(UPPER(ttrss_entries.title) $not LIKE UPPER('%$k%')
2211                                                         OR UPPER(ttrss_entries.content) $not LIKE UPPER('%$k%'))");
2212                                 }
2213                                 break;
2214                         case "author":
2215                                 if ($commandpair[1]) {
2216                                         array_push($query_keywords, "($not (LOWER(author) LIKE '%".
2217                                                 db_escape_string($link, mb_strtolower($commandpair[1]))."%'))");
2218                                 } else {
2219                                         array_push($query_keywords, "(UPPER(ttrss_entries.title) $not LIKE UPPER('%$k%')
2220                                                         OR UPPER(ttrss_entries.content) $not LIKE UPPER('%$k%'))");
2221                                 }
2222                                 break;
2223                         case "note":
2224                                 if ($commandpair[1]) {
2225                                         if ($commandpair[1] == "true")
2226                                                 array_push($query_keywords, "($not (note IS NOT NULL AND note != ''))");
2227                                         else if ($commandpair[1] == "false")
2228                                                 array_push($query_keywords, "($not (note IS NULL OR note = ''))");
2229                                         else
2230                                                 array_push($query_keywords, "($not (LOWER(note) LIKE '%".
2231                                                         db_escape_string($link, mb_strtolower($commandpair[1]))."%'))");
2232                                 } else {
2233                                         array_push($query_keywords, "(UPPER(ttrss_entries.title) $not LIKE UPPER('%$k%')
2234                                                         OR UPPER(ttrss_entries.content) $not LIKE UPPER('%$k%'))");
2235                                 }
2236                                 break;
2237                         case "star":
2238
2239                                 if ($commandpair[1]) {
2240                                         if ($commandpair[1] == "true")
2241                                                 array_push($query_keywords, "($not (marked = true))");
2242                                         else
2243                                                 array_push($query_keywords, "($not (marked = false))");
2244                                 } else {
2245                                         array_push($query_keywords, "(UPPER(ttrss_entries.title) $not LIKE UPPER('%$k%')
2246                                                         OR UPPER(ttrss_entries.content) $not LIKE UPPER('%$k%'))");
2247                                 }
2248                                 break;
2249                         case "pub":
2250                                 if ($commandpair[1]) {
2251                                         if ($commandpair[1] == "true")
2252                                                 array_push($query_keywords, "($not (published = true))");
2253                                         else
2254                                                 array_push($query_keywords, "($not (published = false))");
2255
2256                                 } else {
2257                                         array_push($query_keywords, "(UPPER(ttrss_entries.title) $not LIKE UPPER('%$k%')
2258                                                         OR UPPER(ttrss_entries.content) $not LIKE UPPER('%$k%'))");
2259                                 }
2260                                 break;
2261                         default:
2262                                 if (strpos($k, "@") === 0) {
2263
2264                                         $user_tz_string = get_pref($link, 'USER_TIMEZONE', $_SESSION['uid']);
2265                                         $orig_ts = strtotime(substr($k, 1));
2266                                         $k = date("Y-m-d", convert_timestamp($orig_ts, $user_tz_string, 'UTC'));
2267
2268                                         //$k = date("Y-m-d", strtotime(substr($k, 1)));
2269
2270                                         array_push($query_keywords, "(".SUBSTRING_FOR_DATE."(updated,1,LENGTH('$k')) $not = '$k')");
2271                                 } else {
2272                                         array_push($query_keywords, "(UPPER(ttrss_entries.title) $not LIKE UPPER('%$k%')
2273                                                         OR UPPER(ttrss_entries.content) $not LIKE UPPER('%$k%'))");
2274                                 }
2275                         }
2276                 }
2277
2278                 $search_query_part = implode("AND", $query_keywords);
2279
2280                 return $search_query_part;
2281         }
2282
2283         function getParentCategories($link, $cat, $owner_uid) {
2284                 $rv = array();
2285
2286                 $result = db_query($link, "SELECT parent_cat FROM ttrss_feed_categories
2287                         WHERE id = '$cat' AND parent_cat IS NOT NULL AND owner_uid = $owner_uid");
2288
2289                 while ($line = db_fetch_assoc($result)) {
2290                         array_push($rv, $line["parent_cat"]);
2291                         $rv = array_merge($rv, getParentCategories($link, $line["parent_cat"], $owner_uid));
2292                 }
2293
2294                 return $rv;
2295         }
2296
2297         function getChildCategories($link, $cat, $owner_uid) {
2298                 $rv = array();
2299
2300                 $result = db_query($link, "SELECT id FROM ttrss_feed_categories
2301                         WHERE parent_cat = '$cat' AND owner_uid = $owner_uid");
2302
2303                 while ($line = db_fetch_assoc($result)) {
2304                         array_push($rv, $line["id"]);
2305                         $rv = array_merge($rv, getChildCategories($link, $line["id"], $owner_uid));
2306                 }
2307
2308                 return $rv;
2309         }
2310
2311         function queryFeedHeadlines($link, $feed, $limit, $view_mode, $cat_view, $search, $search_mode, $override_order = false, $offset = 0, $owner_uid = 0, $filter = false, $since_id = 0, $include_children = false, $ignore_vfeed_group = false) {
2312
2313                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
2314
2315                 $ext_tables_part = "";
2316
2317                         if ($search) {
2318
2319                                 if (SPHINX_ENABLED) {
2320                                         $ids = join(",", @sphinx_search($search, 0, 500));
2321
2322                                         if ($ids)
2323                                                 $search_query_part = "ref_id IN ($ids) AND ";
2324                                         else
2325                                                 $search_query_part = "ref_id = -1 AND ";
2326
2327                                 } else {
2328                                         $search_query_part = search_to_sql($link, $search);
2329                                         $search_query_part .= " AND ";
2330                                 }
2331
2332                         } else {
2333                                 $search_query_part = "";
2334                         }
2335
2336                         if ($filter) {
2337
2338                                 if (DB_TYPE == "pgsql") {
2339                                         $query_strategy_part .= " AND updated > NOW() - INTERVAL '14 days' ";
2340                                 } else {
2341                                         $query_strategy_part .= " AND updated > DATE_SUB(NOW(), INTERVAL 14 DAY) ";
2342                                 }
2343
2344                                 $override_order = "updated DESC";
2345
2346                                 $filter_query_part = filter_to_sql($link, $filter, $owner_uid);
2347
2348                                 // Try to check if SQL regexp implementation chokes on a valid regexp
2349                                 $result = db_query($link, "SELECT true AS true_val FROM ttrss_entries,
2350                                         ttrss_user_entries, ttrss_feeds, ttrss_feed_categories
2351                                         WHERE $filter_query_part LIMIT 1", false);
2352
2353                                 if ($result) {
2354                                         $test = db_fetch_result($result, 0, "true_val");
2355
2356                                         if (!$test) {
2357                                                 $filter_query_part = "false AND";
2358                                         } else {
2359                                                 $filter_query_part .= " AND";
2360                                         }
2361                                 } else {
2362                                         $filter_query_part = "false AND";
2363                                 }
2364
2365                         } else {
2366                                 $filter_query_part = "";
2367                         }
2368
2369                         if ($since_id) {
2370                                 $since_id_part = "ttrss_entries.id > $since_id AND ";
2371                         } else {
2372                                 $since_id_part = "";
2373                         }
2374
2375                         $view_query_part = "";
2376
2377                         if ($view_mode == "adaptive") {
2378                                 if ($search) {
2379                                         $view_query_part = " ";
2380                                 } else if ($feed != -1) {
2381
2382                                         $unread = getFeedUnread($link, $feed, $cat_view);
2383
2384                                         if ($cat_view && $feed > 0 && $include_children)
2385                                                 $unread += getCategoryChildrenUnread($link, $feed);
2386
2387                                         if ($unread > 0)
2388                                 $view_query_part = " unread = true AND ";
2389
2390                                 }
2391                         }
2392
2393                         if ($view_mode == "marked") {
2394                                 $view_query_part = " marked = true AND ";
2395                         }
2396
2397                         if ($view_mode == "has_note") {
2398                                 $view_query_part = " (note IS NOT NULL AND note != '') AND ";
2399                         }
2400
2401                         if ($view_mode == "published") {
2402                                 $view_query_part = " published = true AND ";
2403                         }
2404
2405                         if ($view_mode == "unread" && $feed != -6) {
2406                                 $view_query_part = " unread = true AND ";
2407                         }
2408
2409                         if ($limit > 0) {
2410                                 $limit_query_part = "LIMIT " . $limit;
2411                         }
2412
2413                         $allow_archived = false;
2414
2415                         $vfeed_query_part = "";
2416
2417                         // override query strategy and enable feed display when searching globally
2418                         if ($search && $search_mode == "all_feeds") {
2419                                 $query_strategy_part = "true";
2420                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2421                         /* tags */
2422                         } else if (!is_numeric($feed)) {
2423                                 $query_strategy_part = "true";
2424                                 $vfeed_query_part = "(SELECT title FROM ttrss_feeds WHERE
2425                                         id = feed_id) as feed_title,";
2426                         } else if ($search && $search_mode == "this_cat") {
2427                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2428
2429                                 if ($feed > 0) {
2430                                         if ($include_children) {
2431                                                 $subcats = getChildCategories($link, $feed, $owner_uid);
2432                                                 array_push($subcats, $feed);
2433                                                 $cats_qpart = join(",", $subcats);
2434                                         } else {
2435                                                 $cats_qpart = $feed;
2436                                         }
2437
2438                                         $query_strategy_part = "ttrss_feeds.cat_id IN ($cats_qpart)";
2439
2440                                 } else {
2441                                         $query_strategy_part = "ttrss_feeds.cat_id IS NULL";
2442                                 }
2443
2444                         } else if ($feed > 0) {
2445
2446                                 if ($cat_view) {
2447
2448                                         if ($feed > 0) {
2449                                                 if ($include_children) {
2450                                                         # sub-cats
2451                                                         $subcats = getChildCategories($link, $feed, $owner_uid);
2452
2453                                                         array_push($subcats, $feed);
2454                                                         $query_strategy_part = "cat_id IN (".
2455                                                                         implode(",", $subcats).")";
2456
2457                                                 } else {
2458                                                         $query_strategy_part = "cat_id = '$feed'";
2459                                                 }
2460
2461                                         } else {
2462                                                 $query_strategy_part = "cat_id IS NULL";
2463                                         }
2464
2465                                         $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2466
2467                                 } else {
2468                                         $query_strategy_part = "feed_id = '$feed'";
2469                                 }
2470                         } else if ($feed == 0 && !$cat_view) { // archive virtual feed
2471                                 $query_strategy_part = "feed_id IS NULL";
2472                                 $allow_archived = true;
2473                         } else if ($feed == 0 && $cat_view) { // uncategorized
2474                                 $query_strategy_part = "cat_id IS NULL AND feed_id IS NOT NULL";
2475                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2476                         } else if ($feed == -1) { // starred virtual feed
2477                                 $query_strategy_part = "marked = true";
2478                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2479                                 $allow_archived = true;
2480
2481                                 if (!$override_order) {
2482                                         $override_order = "last_marked DESC, date_entered DESC, updated DESC";
2483                                 }
2484
2485                         } else if ($feed == -2) { // published virtual feed OR labels category
2486
2487                                 if (!$cat_view) {
2488                                         $query_strategy_part = "published = true";
2489                                         $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2490                                         $allow_archived = true;
2491
2492                                         if (!$override_order) {
2493                                                 $override_order = "last_published DESC, date_entered DESC, updated DESC";
2494                                         }
2495
2496                                 } else {
2497                                         $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2498
2499                                         $ext_tables_part = ",ttrss_labels2,ttrss_user_labels2";
2500
2501                                         $query_strategy_part = "ttrss_labels2.id = ttrss_user_labels2.label_id AND
2502                                                 ttrss_user_labels2.article_id = ref_id";
2503
2504                                 }
2505                         } else if ($feed == -6) { // recently read
2506                                 $query_strategy_part = "unread = false AND last_read IS NOT NULL";
2507                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2508                                 $allow_archived = true;
2509
2510                                 if (!$override_order) $override_order = "last_read DESC";
2511                         } else if ($feed == -3) { // fresh virtual feed
2512                                 $query_strategy_part = "unread = true AND score >= 0";
2513
2514                                 $intl = get_pref($link, "FRESH_ARTICLE_MAX_AGE", $owner_uid);
2515
2516                                 if (DB_TYPE == "pgsql") {
2517                                         $query_strategy_part .= " AND date_entered > NOW() - INTERVAL '$intl hour' ";
2518                                 } else {
2519                                         $query_strategy_part .= " AND date_entered > DATE_SUB(NOW(), INTERVAL $intl HOUR) ";
2520                                 }
2521
2522                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2523                         } else if ($feed == -4) { // all articles virtual feed
2524                                 $allow_archived = true;
2525                                 $query_strategy_part = "true";
2526                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2527                         } else if ($feed <= LABEL_BASE_INDEX) { // labels
2528                                 $label_id = feed_to_label_id($feed);
2529
2530                                 $query_strategy_part = "label_id = '$label_id' AND
2531                                         ttrss_labels2.id = ttrss_user_labels2.label_id AND
2532                                         ttrss_user_labels2.article_id = ref_id";
2533
2534                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2535                                 $ext_tables_part = ",ttrss_labels2,ttrss_user_labels2";
2536                                 $allow_archived = true;
2537
2538                         } else {
2539                                 $query_strategy_part = "true";
2540                         }
2541
2542                         $order_by = "score DESC, date_entered DESC, updated DESC";
2543
2544                         if ($view_mode == "unread_first") {
2545                                 $order_by = "unread DESC, $order_by";
2546                         }
2547
2548                         if ($override_order) {
2549                                 $order_by = $override_order;
2550                         }
2551
2552                         $feed_title = "";
2553
2554                         if ($search) {
2555                                 $feed_title = T_sprintf("Search results: %s", $search);
2556                         } else {
2557                                 if ($cat_view) {
2558                                         $feed_title = getCategoryTitle($link, $feed);
2559                                 } else {
2560                                         if (is_numeric($feed) && $feed > 0) {
2561                                                 $result = db_query($link, "SELECT title,site_url,last_error
2562                                                         FROM ttrss_feeds WHERE id = '$feed' AND owner_uid = $owner_uid");
2563
2564                                                 $feed_title = db_fetch_result($result, 0, "title");
2565                                                 $feed_site_url = db_fetch_result($result, 0, "site_url");
2566                                                 $last_error = db_fetch_result($result, 0, "last_error");
2567                                         } else {
2568                                                 $feed_title = getFeedTitle($link, $feed);
2569                                         }
2570                                 }
2571                         }
2572
2573                         $content_query_part = "content as content_preview, cached_content, ";
2574
2575                         if (is_numeric($feed)) {
2576
2577                                 if ($feed >= 0) {
2578                                         $feed_kind = "Feeds";
2579                                 } else {
2580                                         $feed_kind = "Labels";
2581                                 }
2582
2583                                 if ($limit_query_part) {
2584                                         $offset_query_part = "OFFSET $offset";
2585                                 }
2586
2587                                 // proper override_order applied above
2588                                 if ($vfeed_query_part && !$ignore_vfeed_group && get_pref($link, 'VFEED_GROUP_BY_FEED', $owner_uid)) {
2589                                         if (!$override_order) {
2590                                                 $order_by = "ttrss_feeds.title, $order_by";
2591                                         } else {
2592                                                 $order_by = "ttrss_feeds.title, $override_order";
2593                                         }
2594                                 }
2595
2596                                 if (!$allow_archived) {
2597                                         $from_qpart = "ttrss_entries,ttrss_user_entries,ttrss_feeds$ext_tables_part";
2598                                         $feed_check_qpart = "ttrss_user_entries.feed_id = ttrss_feeds.id AND";
2599
2600                                 } else {
2601                                         $from_qpart = "ttrss_entries$ext_tables_part,ttrss_user_entries
2602                                                 LEFT JOIN ttrss_feeds ON (feed_id = ttrss_feeds.id)";
2603                                 }
2604
2605                                 if ($vfeed_query_part)
2606                                         $vfeed_query_part .= "favicon_avg_color,";
2607
2608                                 $query = "SELECT DISTINCT
2609                                                 date_entered,
2610                                                 guid,
2611                                                 ttrss_entries.id,ttrss_entries.title,
2612                                                 updated,
2613                                                 label_cache,
2614                                                 tag_cache,
2615                                                 always_display_enclosures,
2616                                                 site_url,
2617                                                 note,
2618                                                 num_comments,
2619                                                 comments,
2620                                                 int_id,
2621                                                 hide_images,
2622                                                 unread,feed_id,marked,published,link,last_read,orig_feed_id,
2623                                                 last_marked, last_published,
2624                                                 $vfeed_query_part
2625                                                 $content_query_part
2626                                                 author,score
2627                                         FROM
2628                                                 $from_qpart
2629                                         WHERE
2630                                         $feed_check_qpart
2631                                         ttrss_user_entries.ref_id = ttrss_entries.id AND
2632                                         ttrss_user_entries.owner_uid = '$owner_uid' AND
2633                                         $search_query_part
2634                                         $filter_query_part
2635                                         $view_query_part
2636                                         $since_id_part
2637                                         $query_strategy_part ORDER BY $order_by
2638                                         $limit_query_part $offset_query_part";
2639
2640                                 if ($_REQUEST["debug"]) print $query;
2641
2642                                 $result = db_query($link, $query);
2643
2644                         } else {
2645                                 // browsing by tag
2646
2647                                 $select_qpart = "SELECT DISTINCT " .
2648                                                                 "date_entered," .
2649                                                                 "guid," .
2650                                                                 "note," .
2651                                                                 "ttrss_entries.id as id," .
2652                                                                 "title," .
2653                                                                 "updated," .
2654                                                                 "unread," .
2655                                                                 "feed_id," .
2656                                                                 "orig_feed_id," .
2657                                                                 "marked," .
2658                                                                 "num_comments, " .
2659                                                                 "comments, " .
2660                                                                 "tag_cache," .
2661                                                                 "label_cache," .
2662                                                                 "link," .
2663                                                                 "last_read," .
2664                                                                 "(SELECT hide_images FROM ttrss_feeds WHERE id = feed_id) AS hide_images," .
2665                                                                 "last_marked, last_published, " .
2666                                                                 $since_id_part .
2667                                                                 $vfeed_query_part .
2668                                                                 $content_query_part .
2669                                                                 "score ";
2670
2671                                 $feed_kind = "Tags";
2672                                 $all_tags = explode(",", $feed);
2673                                 if ($search_mode == 'any') {
2674                                         $tag_sql = "tag_name in (" . implode(", ", array_map("db_quote", $all_tags)) . ")";
2675                                         $from_qpart = " FROM ttrss_entries,ttrss_user_entries,ttrss_tags ";
2676                                         $where_qpart = " WHERE " .
2677                                                                    "ref_id = ttrss_entries.id AND " .
2678                                                                    "ttrss_user_entries.owner_uid = $owner_uid AND " .
2679                                                                    "post_int_id = int_id AND $tag_sql AND " .
2680                                                                    $view_query_part .
2681                                                                    $search_query_part .
2682                                                                    $query_strategy_part . " ORDER BY $order_by " .
2683                                                                    $limit_query_part;
2684
2685                                 } else {
2686                                         $i = 1;
2687                                         $sub_selects = array();
2688                                         $sub_ands = array();
2689                                         foreach ($all_tags as $term) {
2690                                                 array_push($sub_selects, "(SELECT post_int_id from ttrss_tags WHERE tag_name = " . db_quote($term) . " AND owner_uid = $owner_uid) as A$i");
2691                                                 $i++;
2692                                         }
2693                                         if ($i > 2) {
2694                                                 $x = 1;
2695                                                 $y = 2;
2696                                                 do {
2697                                                         array_push($sub_ands, "A$x.post_int_id = A$y.post_int_id");
2698                                                         $x++;
2699                                                         $y++;
2700                                                 } while ($y < $i);
2701                                         }
2702                                         array_push($sub_ands, "A1.post_int_id = ttrss_user_entries.int_id and ttrss_user_entries.owner_uid = $owner_uid");
2703                                         array_push($sub_ands, "ttrss_user_entries.ref_id = ttrss_entries.id");
2704                                         $from_qpart = " FROM " . implode(", ", $sub_selects) . ", ttrss_user_entries, ttrss_entries";
2705                                         $where_qpart = " WHERE " . implode(" AND ", $sub_ands);
2706                                 }
2707                                 //                              error_log("TAG SQL: " . $tag_sql);
2708                                 // $tag_sql = "tag_name = '$feed'";   DEFAULT way
2709
2710                                 //                              error_log("[". $select_qpart . "][" . $from_qpart . "][" .$where_qpart . "]");
2711                                 $result = db_query($link, $select_qpart . $from_qpart . $where_qpart);
2712                         }
2713
2714                         return array($result, $feed_title, $feed_site_url, $last_error);
2715
2716         }
2717
2718         function sanitize($link, $str, $force_remove_images = false, $owner = false, $site_url = false) {
2719                 if (!$owner) $owner = $_SESSION["uid"];
2720
2721                 $res = trim($str); if (!$res) return '';
2722
2723                 if (strpos($res, "href=") === false)
2724                         $res = rewrite_urls($res);
2725
2726                 $charset_hack = '<head>
2727                         <meta http-equiv="Content-Type" content="text/html; charset=utf-8"/>
2728                 </head>';
2729
2730                 $res = trim($res); if (!$res) return '';
2731
2732                 libxml_use_internal_errors(true);
2733
2734                 $doc = new DOMDocument();
2735                 $doc->loadHTML($charset_hack . $res);
2736                 $xpath = new DOMXPath($doc);
2737
2738                 $entries = $xpath->query('(//a[@href]|//img[@src])');
2739
2740                 foreach ($entries as $entry) {
2741
2742                         if ($site_url) {
2743
2744                                 if ($entry->hasAttribute('href'))
2745                                         $entry->setAttribute('href',
2746                                                 rewrite_relative_url($site_url, $entry->getAttribute('href')));
2747
2748                                 if ($entry->hasAttribute('src')) {
2749                                         $src = rewrite_relative_url($site_url, $entry->getAttribute('src'));
2750
2751                                         $cached_filename = CACHE_DIR . '/images/' . sha1($src) . '.png';
2752
2753                                         if (file_exists($cached_filename)) {
2754                                                 $src = SELF_URL_PATH . '/image.php?hash=' . sha1($src);
2755                                         }
2756
2757                                         $entry->setAttribute('src', $src);
2758                                 }
2759
2760                                 if ($entry->nodeName == 'img') {
2761                                         if (($owner && get_pref($link, "STRIP_IMAGES", $owner)) ||
2762                                                         $force_remove_images || $_SESSION["bw_limit"]) {
2763
2764                                                 $p = $doc->createElement('p');
2765
2766                                                 $a = $doc->createElement('a');
2767                                                 $a->setAttribute('href', $entry->getAttribute('src'));
2768
2769                                                 $a->appendChild(new DOMText($entry->getAttribute('src')));
2770                                                 $a->setAttribute('target', '_blank');
2771
2772                                                 $p->appendChild($a);
2773
2774                                                 $entry->parentNode->replaceChild($p, $entry);
2775                                         }
2776                                 }
2777                         }
2778
2779                         if (strtolower($entry->nodeName) == "a") {
2780                                 $entry->setAttribute("target", "_blank");
2781                         }
2782                 }
2783
2784                 $entries = $xpath->query('//iframe');
2785                 foreach ($entries as $entry) {
2786                         $entry->setAttribute('sandbox', 'allow-scripts');
2787
2788                 }
2789
2790                 $allowed_elements = array('a', 'address', 'audio', 'article', 'aside',
2791                         'b', 'bdi', 'bdo', 'big', 'blockquote', 'body', 'br',
2792                         'caption', 'cite', 'center', 'code', 'col', 'colgroup',
2793                         'data', 'dd', 'del', 'details', 'div', 'dl', 'font',
2794                         'dt', 'em', 'footer', 'figure', 'figcaption',
2795                         'h1', 'h2', 'h3', 'h4', 'h5', 'h6', 'header', 'html', 'i',
2796                         'img', 'ins', 'kbd', 'li', 'main', 'mark', 'nav', 'noscript',
2797                         'ol', 'p', 'pre', 'q', 'ruby', 'rp', 'rt', 's', 'samp', 'section',
2798                         'small', 'source', 'span', 'strike', 'strong', 'sub', 'summary',
2799                         'sup', 'table', 'tbody', 'td', 'tfoot', 'th', 'thead', 'time',
2800                         'tr', 'track', 'tt', 'u', 'ul', 'var', 'wbr', 'video' );
2801
2802                 if ($_SESSION['hasSandbox']) $allowed_elements[] = 'iframe';
2803
2804                 $disallowed_attributes = array('id', 'style', 'class');
2805
2806                 global $pluginhost;
2807
2808                 if (isset($pluginhost)) {
2809                         foreach ($pluginhost->get_hooks($pluginhost::HOOK_SANITIZE) as $plugin) {
2810                                 $retval = $plugin->hook_sanitize($doc, $site_url, $allowed_elements, $disallowed_attributes);
2811                                 if (is_array($retval)) {
2812                                         $doc = $retval[0];
2813                                         $allowed_elements = $retval[1];
2814                                         $disallowed_attributes = $retval[2];
2815                                 } else {
2816                                         $doc = $retval;
2817                                 }
2818                         }
2819                 }
2820
2821                 $doc->removeChild($doc->firstChild); //remove doctype
2822                 $doc = strip_harmful_tags($doc, $allowed_elements, $disallowed_attributes);
2823                 $res = $doc->saveHTML();
2824                 return $res;
2825         }
2826
2827         function strip_harmful_tags($doc, $allowed_elements, $disallowed_attributes) {
2828                 $entries = $doc->getElementsByTagName("*");
2829
2830                 foreach ($entries as $entry) {
2831                         if (!in_array($entry->nodeName, $allowed_elements)) {
2832                                 $entry->parentNode->removeChild($entry);
2833                         }
2834
2835                         if ($entry->hasAttributes()) {
2836                                 $attrs_to_remove = array();
2837
2838                                 foreach ($entry->attributes as $attr) {
2839
2840                                         if (strpos($attr->nodeName, 'on') === 0) {
2841                                                 array_push($attrs_to_remove, $attr);
2842                                         }
2843
2844                                         if (in_array($attr->nodeName, $disallowed_attributes)) {
2845                                                 array_push($attrs_to_remove, $attr);
2846                                         }
2847                                 }
2848
2849                                 foreach ($attrs_to_remove as $attr) {
2850                                         $entry->removeAttributeNode($attr);
2851                                 }
2852                         }
2853                 }
2854
2855                 return $doc;
2856         }
2857
2858         function check_for_update($link) {
2859                 if (CHECK_FOR_NEW_VERSION && $_SESSION['access_level'] >= 10) {
2860                         $version_url = "http://tt-rss.org/version.php?ver=" . VERSION .
2861                                 "&iid=" . sha1(SELF_URL_PATH);
2862
2863                         $version_data = @fetch_file_contents($version_url);
2864
2865                         if ($version_data) {
2866                                 $version_data = json_decode($version_data, true);
2867                                 if ($version_data && $version_data['version']) {
2868
2869                                         if (version_compare(VERSION, $version_data['version']) == -1) {
2870                                                 return $version_data;
2871                                         }
2872                                 }
2873                         }
2874                 }
2875                 return false;
2876         }
2877
2878         function catchupArticlesById($link, $ids, $cmode, $owner_uid = false) {
2879
2880                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
2881                 if (count($ids) == 0) return;
2882
2883                 $tmp_ids = array();
2884
2885                 foreach ($ids as $id) {
2886                         array_push($tmp_ids, "ref_id = '$id'");
2887                 }
2888
2889                 $ids_qpart = join(" OR ", $tmp_ids);
2890
2891                 if ($cmode == 0) {
2892                         db_query($link, "UPDATE ttrss_user_entries SET
2893                         unread = false,last_read = NOW()
2894                         WHERE ($ids_qpart) AND owner_uid = $owner_uid");
2895                 } else if ($cmode == 1) {
2896                         db_query($link, "UPDATE ttrss_user_entries SET
2897                         unread = true
2898                         WHERE ($ids_qpart) AND owner_uid = $owner_uid");
2899                 } else {
2900                         db_query($link, "UPDATE ttrss_user_entries SET
2901                         unread = NOT unread,last_read = NOW()
2902                         WHERE ($ids_qpart) AND owner_uid = $owner_uid");
2903                 }
2904
2905                 /* update ccache */
2906
2907                 $result = db_query($link, "SELECT DISTINCT feed_id FROM ttrss_user_entries
2908                         WHERE ($ids_qpart) AND owner_uid = $owner_uid");
2909
2910                 while ($line = db_fetch_assoc($result)) {
2911                         ccache_update($link, $line["feed_id"], $owner_uid);
2912                 }
2913         }
2914
2915         function get_article_tags($link, $id, $owner_uid = 0, $tag_cache = false) {
2916
2917                 $a_id = db_escape_string($link, $id);
2918
2919                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
2920
2921                 $query = "SELECT DISTINCT tag_name,
2922                         owner_uid as owner FROM
2923                         ttrss_tags WHERE post_int_id = (SELECT int_id FROM ttrss_user_entries WHERE
2924                         ref_id = '$a_id' AND owner_uid = '$owner_uid' LIMIT 1) ORDER BY tag_name";
2925
2926                 $obj_id = md5("TAGS:$owner_uid:$id");
2927                 $tags = array();
2928
2929                 /* check cache first */
2930
2931                 if ($tag_cache === false) {
2932                         $result = db_query($link, "SELECT tag_cache FROM ttrss_user_entries
2933                                 WHERE ref_id = '$id' AND owner_uid = $owner_uid");
2934
2935                         $tag_cache = db_fetch_result($result, 0, "tag_cache");
2936                 }
2937
2938                 if ($tag_cache) {
2939                         $tags = explode(",", $tag_cache);
2940                 } else {
2941
2942                         /* do it the hard way */
2943
2944                         $tmp_result = db_query($link, $query);
2945
2946                         while ($tmp_line = db_fetch_assoc($tmp_result)) {
2947                                 array_push($tags, $tmp_line["tag_name"]);
2948                         }
2949
2950                         /* update the cache */
2951
2952                         $tags_str = db_escape_string($link, join(",", $tags));
2953
2954                         db_query($link, "UPDATE ttrss_user_entries
2955                                 SET tag_cache = '$tags_str' WHERE ref_id = '$id'
2956                                 AND owner_uid = $owner_uid");
2957                 }
2958
2959                 return $tags;
2960         }
2961
2962         function trim_array($array) {
2963                 $tmp = $array;
2964                 array_walk($tmp, 'trim');
2965                 return $tmp;
2966         }
2967
2968         function tag_is_valid($tag) {
2969                 if ($tag == '') return false;
2970                 if (preg_match("/^[0-9]*$/", $tag)) return false;
2971                 if (mb_strlen($tag) > 250) return false;
2972
2973                 if (function_exists('iconv')) {
2974                         $tag = iconv("utf-8", "utf-8", $tag);
2975                 }
2976
2977                 if (!$tag) return false;
2978
2979                 return true;
2980         }
2981
2982         function render_login_form($link) {
2983                 header('Cache-Control: public');
2984
2985                 require_once "login_form.php";
2986                 exit;
2987         }
2988
2989         function format_warning($msg, $id = "") {
2990                 global $link;
2991                 return "<div class=\"warning\" id=\"$id\">
2992                         <img src=\"images/sign_excl.svg\"><div class='inner'>$msg</div></div>";
2993         }
2994
2995         function format_notice($msg, $id = "") {
2996                 global $link;
2997                 return "<div class=\"notice\" id=\"$id\">
2998                         <img src=\"images/sign_info.svg\"><div class='inner'>$msg</div></div>";
2999         }
3000
3001         function format_error($msg, $id = "") {
3002                 global $link;
3003                 return "<div class=\"error\" id=\"$id\">
3004                         <img src=\"images/sign_excl.svg\"><div class='inner'>$msg</div></div>";
3005         }
3006
3007         function print_notice($msg) {
3008                 return print format_notice($msg);
3009         }
3010
3011         function print_warning($msg) {
3012                 return print format_warning($msg);
3013         }
3014
3015         function print_error($msg) {
3016                 return print format_error($msg);
3017         }
3018
3019
3020         function T_sprintf() {
3021                 $args = func_get_args();
3022                 return vsprintf(__(array_shift($args)), $args);
3023         }
3024
3025         function format_inline_player($link, $url, $ctype) {
3026
3027                 $entry = "";
3028
3029                 $url = htmlspecialchars($url);
3030
3031                 if (strpos($ctype, "audio/") === 0) {
3032
3033                         if ($_SESSION["hasAudio"] && (strpos($ctype, "ogg") !== false ||
3034                                 strpos($_SERVER['HTTP_USER_AGENT'], "Chrome") !== false ||
3035                                 strpos($_SERVER['HTTP_USER_AGENT'], "Safari") !== false )) {
3036
3037                                 $id = 'AUDIO-' . uniqid();
3038
3039                                 $entry .= "<audio id=\"$id\"\" controls style='display : none'>
3040                                         <source type=\"$ctype\" src=\"$url\"></source>
3041                                         </audio>";
3042
3043                                 $entry .= "<span onclick=\"player(this)\"
3044                                         title=\"".__("Click to play")."\" status=\"0\"
3045                                         class=\"player\" audio-id=\"$id\">".__("Play")."</span>";
3046
3047                         } else {
3048
3049                                 $entry .= "<object type=\"application/x-shockwave-flash\"
3050                                         data=\"lib/button/musicplayer.swf?song_url=$url\"
3051                                         width=\"17\" height=\"17\" style='float : left; margin-right : 5px;'>
3052                                         <param name=\"movie\"
3053                                                 value=\"lib/button/musicplayer.swf?song_url=$url\" />
3054                                         </object>";
3055                         }
3056
3057                         if ($entry) $entry .= "&nbsp; <a target=\"_blank\"
3058                                 href=\"$url\">" . basename($url) . "</a>";
3059
3060                         return $entry;
3061
3062                 }
3063
3064                 return "";
3065
3066 /*              $filename = substr($url, strrpos($url, "/")+1);
3067
3068                 $entry .= " <a target=\"_blank\" href=\"" . htmlspecialchars($url) . "\">" .
3069                         $filename . " (" . $ctype . ")" . "</a>"; */
3070
3071         }
3072
3073         function format_article($link, $id, $mark_as_read = true, $zoom_mode = false, $owner_uid = false) {
3074                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
3075
3076                 $rv = array();
3077
3078                 $rv['id'] = $id;
3079
3080                 /* we can figure out feed_id from article id anyway, why do we
3081                  * pass feed_id here? let's ignore the argument :( */
3082
3083                 $result = db_query($link, "SELECT feed_id FROM ttrss_user_entries
3084                         WHERE ref_id = '$id'");
3085
3086                 $feed_id = (int) db_fetch_result($result, 0, "feed_id");
3087
3088                 $rv['feed_id'] = $feed_id;
3089
3090                 //if (!$zoom_mode) { print "<article id='$id'><![CDATA["; };
3091
3092                 if ($mark_as_read) {
3093                         $result = db_query($link, "UPDATE ttrss_user_entries
3094                                 SET unread = false,last_read = NOW()
3095                                 WHERE ref_id = '$id' AND owner_uid = $owner_uid");
3096
3097                         ccache_update($link, $feed_id, $owner_uid);
3098                 }
3099
3100                 $result = db_query($link, "SELECT id,title,link,content,feed_id,comments,int_id,
3101                         ".SUBSTRING_FOR_DATE."(updated,1,16) as updated,
3102                         (SELECT site_url FROM ttrss_feeds WHERE id = feed_id) as site_url,
3103                         (SELECT hide_images FROM ttrss_feeds WHERE id = feed_id) as hide_images,
3104                         (SELECT always_display_enclosures FROM ttrss_feeds WHERE id = feed_id) as always_display_enclosures,
3105                         num_comments,
3106                         tag_cache,
3107                         author,
3108                         orig_feed_id,
3109                         note,
3110                         cached_content
3111                         FROM ttrss_entries,ttrss_user_entries
3112                         WHERE   id = '$id' AND ref_id = id AND owner_uid = $owner_uid");
3113
3114                 if ($result) {
3115
3116                         $line = db_fetch_assoc($result);
3117
3118                         $tag_cache = $line["tag_cache"];
3119
3120                         $line["tags"] = get_article_tags($link, $id, $owner_uid, $line["tag_cache"]);
3121                         unset($line["tag_cache"]);
3122
3123                         $line["content"] = sanitize($link, $line["content"], false, $owner_uid, $line["site_url"]);
3124
3125                         global $pluginhost;
3126
3127                         foreach ($pluginhost->get_hooks($pluginhost::HOOK_RENDER_ARTICLE) as $p) {
3128                                 $line = $p->hook_render_article($line);
3129                         }
3130
3131                         $num_comments = $line["num_comments"];
3132                         $entry_comments = "";
3133
3134                         if ($num_comments > 0) {
3135                                 if ($line["comments"]) {
3136                                         $comments_url = htmlspecialchars($line["comments"]);
3137                                 } else {
3138                                         $comments_url = htmlspecialchars($line["link"]);
3139                                 }
3140                                 $entry_comments = "<a target='_blank' href=\"$comments_url\">$num_comments comments</a>";
3141                         } else {
3142                                 if ($line["comments"] && $line["link"] != $line["comments"]) {
3143                                         $entry_comments = "<a target='_blank' href=\"".htmlspecialchars($line["comments"])."\">comments</a>";
3144                                 }
3145                         }
3146
3147                         if ($zoom_mode) {
3148                                 header("Content-Type: text/html");
3149                                 $rv['content'] .= "<html><head>
3150                                                 <meta http-equiv=\"Content-Type\" content=\"text/html; charset=utf-8\"/>
3151                                                 <title>Tiny Tiny RSS - ".$line["title"]."</title>
3152                                                 <link rel=\"stylesheet\" type=\"text/css\" href=\"tt-rss.css\">
3153                                         </head><body id=\"ttrssZoom\">";
3154                         }
3155
3156                         $rv['content'] .= "<div class=\"postReply\" id=\"POST-$id\">";
3157
3158                         $rv['content'] .= "<div class=\"postHeader\" id=\"POSTHDR-$id\">";
3159
3160                         $entry_author = $line["author"];
3161
3162                         if ($entry_author) {
3163                                 $entry_author = __(" - ") . $entry_author;
3164                         }
3165
3166                         $parsed_updated = make_local_datetime($link, $line["updated"], true,
3167                                 $owner_uid, true);
3168
3169                         $rv['content'] .= "<div class=\"postDate\">$parsed_updated</div>";
3170
3171                         if ($line["link"]) {
3172                                 $rv['content'] .= "<div class='postTitle'><a target='_blank'
3173                                         title=\"".htmlspecialchars($line['title'])."\"
3174                                         href=\"" .
3175                                         htmlspecialchars($line["link"]) . "\">" .
3176                                         $line["title"] . "</a>" .
3177                                         "<span class='author'>$entry_author</span></div>";
3178                         } else {
3179                                 $rv['content'] .= "<div class='postTitle'>" . $line["title"] . "$entry_author</div>";
3180                         }
3181
3182                         $tags_str = format_tags_string($line["tags"], $id);
3183                         $tags_str_full = join(", ", $line["tags"]);
3184
3185                         if (!$tags_str_full) $tags_str_full = __("no tags");
3186
3187                         if (!$entry_comments) $entry_comments = "&nbsp;"; # placeholder
3188
3189                         $rv['content'] .= "<div class='postTags' style='float : right'>
3190                                 <img src='images/tag.png'
3191                                 class='tagsPic' alt='Tags' title='Tags'>&nbsp;";
3192
3193                         if (!$zoom_mode) {
3194                                 $rv['content'] .= "<span id=\"ATSTR-$id\">$tags_str</span>
3195                                         <a title=\"".__('Edit tags for this article')."\"
3196                                         href=\"#\" onclick=\"editArticleTags($id, $feed_id)\">(+)</a>";
3197
3198                                 $rv['content'] .= "<div dojoType=\"dijit.Tooltip\"
3199                                         id=\"ATSTRTIP-$id\" connectId=\"ATSTR-$id\"
3200                                         position=\"below\">$tags_str_full</div>";
3201
3202                                 global $pluginhost;
3203                                 foreach ($pluginhost->get_hooks($pluginhost::HOOK_ARTICLE_BUTTON) as $p) {
3204                                         $rv['content'] .= $p->hook_article_button($line);
3205                                 }
3206
3207                         } else {
3208                                 $tags_str = strip_tags($tags_str);
3209                                 $rv['content'] .= "<span id=\"ATSTR-$id\">$tags_str</span>";
3210                         }
3211                         $rv['content'] .= "</div>";
3212                         $rv['content'] .= "<div clear='both'>";
3213
3214                         global $pluginhost;
3215                         foreach ($pluginhost->get_hooks($pluginhost::HOOK_ARTICLE_LEFT_BUTTON) as $p) {
3216                                 $rv['content'] .= $p->hook_article_left_button($line);
3217                         }
3218
3219                         $rv['content'] .= "$entry_comments</div>";
3220
3221                         if ($line["orig_feed_id"]) {
3222
3223                                 $tmp_result = db_query($link, "SELECT * FROM ttrss_archived_feeds
3224                                         WHERE id = ".$line["orig_feed_id"]);
3225
3226                                 if (db_num_rows($tmp_result) != 0) {
3227
3228                                         $rv['content'] .= "<div clear='both'>";
3229                                         $rv['content'] .= __("Originally from:");
3230
3231                                         $rv['content'] .= "&nbsp;";
3232
3233                                         $tmp_line = db_fetch_assoc($tmp_result);
3234
3235                                         $rv['content'] .= "<a target='_blank'
3236                                                 href=' " . htmlspecialchars($tmp_line['site_url']) . "'>" .
3237                                                 $tmp_line['title'] . "</a>";
3238
3239                                         $rv['content'] .= "&nbsp;";
3240
3241                                         $rv['content'] .= "<a target='_blank' href='" . htmlspecialchars($tmp_line['feed_url']) . "'>";
3242                                         $rv['content'] .= "<img title='".__('Feed URL')."'class='tinyFeedIcon' src='images/pub_set.svg'></a>";
3243
3244                                         $rv['content'] .= "</div>";
3245                                 }
3246                         }
3247
3248                         $rv['content'] .= "</div>";
3249
3250                         $rv['content'] .= "<div id=\"POSTNOTE-$id\">";
3251                                 if ($line['note']) {
3252                                         $rv['content'] .= format_article_note($id, $line['note'], !$zoom_mode);
3253                                 }
3254                         $rv['content'] .= "</div>";
3255
3256                         $rv['content'] .= "<div class=\"postContent\">";
3257
3258                         $rv['content'] .= $line["content"];
3259                         $rv['content'] .= format_article_enclosures($link, $id,
3260                                 sql_bool_to_bool($line["always_display_enclosures"]),
3261                                 $line["content"],
3262                                 sql_bool_to_bool($line["hide_images"]));
3263
3264                         $rv['content'] .= "</div>";
3265
3266                         $rv['content'] .= "</div>";
3267
3268                 }
3269
3270                 if ($zoom_mode) {
3271                         $rv['content'] .= "
3272                                 <div class='footer'>
3273                                 <button onclick=\"return window.close()\">".
3274                                         __("Close this window")."</button></div>";
3275                         $rv['content'] .= "</body></html>";
3276                 }
3277
3278                 return $rv;
3279
3280         }
3281
3282         function print_checkpoint($n, $s) {
3283                 $ts = microtime(true);
3284                 echo sprintf("<!-- CP[$n] %.4f seconds -->", $ts - $s);
3285                 return $ts;
3286         }
3287
3288         function sanitize_tag($tag) {
3289                 $tag = trim($tag);
3290
3291                 $tag = mb_strtolower($tag, 'utf-8');
3292
3293                 $tag = preg_replace('/[\'\"\+\>\<]/', "", $tag);
3294
3295 //              $tag = str_replace('"', "", $tag);
3296 //              $tag = str_replace("+", " ", $tag);
3297                 $tag = str_replace("technorati tag: ", "", $tag);
3298
3299                 return $tag;
3300         }
3301
3302         function get_self_url_prefix() {
3303                 if (strrpos(SELF_URL_PATH, "/") === strlen(SELF_URL_PATH)-1) {
3304                         return substr(SELF_URL_PATH, 0, strlen(SELF_URL_PATH)-1);
3305                 } else {
3306                         return SELF_URL_PATH;
3307                 }
3308         }
3309
3310         /**
3311          * Compute the Mozilla Firefox feed adding URL from server HOST and REQUEST_URI.
3312          *
3313          * @return string The Mozilla Firefox feed adding URL.
3314          */
3315         function add_feed_url() {
3316                 //$url_path = ($_SERVER['HTTPS'] != "on" ? 'http://' :  'https://') . $_SERVER["HTTP_HOST"] . parse_url($_SERVER["REQUEST_URI"], PHP_URL_PATH);
3317
3318                 $url_path = get_self_url_prefix() .
3319                         "/public.php?op=subscribe&feed_url=%s";
3320                 return $url_path;
3321         } // function add_feed_url
3322
3323         function encrypt_password($pass, $salt = '', $mode2 = false) {
3324                 if ($salt && $mode2) {
3325                         return "MODE2:" . hash('sha256', $salt . $pass);
3326                 } else if ($salt) {
3327                         return "SHA1X:" . sha1("$salt:$pass");
3328                 } else {
3329                         return "SHA1:" . sha1($pass);
3330                 }
3331         } // function encrypt_password
3332
3333         function load_filters($link, $feed_id, $owner_uid, $action_id = false) {
3334                 $filters = array();
3335
3336                 $cat_id = (int)getFeedCategory($link, $feed_id);
3337
3338                 $result = db_query($link, "SELECT * FROM ttrss_filters2 WHERE
3339                         owner_uid = $owner_uid AND enabled = true ORDER BY order_id, title");
3340
3341                 $check_cats = join(",", array_merge(
3342                         getParentCategories($link, $cat_id, $owner_uid),
3343                         array($cat_id)));
3344
3345                 while ($line = db_fetch_assoc($result)) {
3346                         $filter_id = $line["id"];
3347
3348                         $result2 = db_query($link, "SELECT
3349                                 r.reg_exp, r.inverse, r.feed_id, r.cat_id, r.cat_filter, t.name AS type_name
3350                                 FROM ttrss_filters2_rules AS r,
3351                                 ttrss_filter_types AS t
3352                                 WHERE
3353                                         (cat_id IS NULL OR cat_id IN ($check_cats)) AND
3354                                         (feed_id IS NULL OR feed_id = '$feed_id') AND
3355                                         filter_type = t.id AND filter_id = '$filter_id'");
3356
3357                         $rules = array();
3358                         $actions = array();
3359
3360                         while ($rule_line = db_fetch_assoc($result2)) {
3361 #                               print_r($rule_line);
3362
3363                                 $rule = array();
3364                                 $rule["reg_exp"] = $rule_line["reg_exp"];
3365                                 $rule["type"] = $rule_line["type_name"];
3366                                 $rule["inverse"] = sql_bool_to_bool($rule_line["inverse"]);
3367
3368                                 array_push($rules, $rule);
3369                         }
3370
3371                         $result2 = db_query($link, "SELECT a.action_param,t.name AS type_name
3372                                 FROM ttrss_filters2_actions AS a,
3373                                 ttrss_filter_actions AS t
3374                                 WHERE
3375                                         action_id = t.id AND filter_id = '$filter_id'");
3376
3377                         while ($action_line = db_fetch_assoc($result2)) {
3378 #                               print_r($action_line);
3379
3380                                 $action = array();
3381                                 $action["type"] = $action_line["type_name"];
3382                                 $action["param"] = $action_line["action_param"];
3383
3384                                 array_push($actions, $action);
3385                         }
3386
3387
3388                         $filter = array();
3389                         $filter["match_any_rule"] = sql_bool_to_bool($line["match_any_rule"]);
3390                         $filter["inverse"] = sql_bool_to_bool($line["inverse"]);
3391                         $filter["rules"] = $rules;
3392                         $filter["actions"] = $actions;
3393
3394                         if (count($rules) > 0 && count($actions) > 0) {
3395                                 array_push($filters, $filter);
3396                         }
3397                 }
3398
3399                 return $filters;
3400         }
3401
3402         function get_score_pic($score) {
3403                 if ($score > 100) {
3404                         return "score_high.png";
3405                 } else if ($score > 0) {
3406                         return "score_half_high.png";
3407                 } else if ($score < -100) {
3408                         return "score_low.png";
3409                 } else if ($score < 0) {
3410                         return "score_half_low.png";
3411                 } else {
3412                         return "score_neutral.png";
3413                 }
3414         }
3415
3416         function feed_has_icon($id) {
3417                 return is_file(ICONS_DIR . "/$id.ico") && filesize(ICONS_DIR . "/$id.ico") > 0;
3418         }
3419
3420         function init_connection($link) {
3421                 if ($link) {
3422
3423                         if (DB_TYPE == "pgsql") {
3424                                 pg_query($link, "set client_encoding = 'UTF-8'");
3425                                 pg_set_client_encoding("UNICODE");
3426                                 pg_query($link, "set datestyle = 'ISO, european'");
3427                                 pg_query($link, "set TIME ZONE 0");
3428                         } else {
3429                                 db_query($link, "SET time_zone = '+0:0'");
3430
3431                                 if (defined('MYSQL_CHARSET') && MYSQL_CHARSET) {
3432                                         db_query($link, "SET NAMES " . MYSQL_CHARSET);
3433                                 }
3434                         }
3435
3436                         global $pluginhost;
3437
3438                         $pluginhost = new PluginHost($link);
3439                         $pluginhost->load(PLUGINS, $pluginhost::KIND_ALL);
3440
3441                         return true;
3442                 } else {
3443                         print "Unable to connect to database:" . db_last_error();
3444                         return false;
3445                 }
3446         }
3447
3448         function format_tags_string($tags, $id) {
3449
3450                 $tags_str = "";
3451                 $tags_nolinks_str = "";
3452
3453                 $num_tags = 0;
3454
3455                 $tag_limit = 6;
3456
3457                 $formatted_tags = array();
3458
3459                 foreach ($tags as $tag) {
3460                         $num_tags++;
3461                         $tag_escaped = str_replace("'", "\\'", $tag);
3462
3463                         if (mb_strlen($tag) > 30) {
3464                                 $tag = truncate_string($tag, 30);
3465                         }
3466
3467                         $tag_str = "<a href=\"javascript:viewfeed('$tag_escaped')\">$tag</a>";
3468
3469                         array_push($formatted_tags, $tag_str);
3470
3471                         $tmp_tags_str = implode(", ", $formatted_tags);
3472
3473                         if ($num_tags == $tag_limit || mb_strlen($tmp_tags_str) > 150) {
3474                                 break;
3475                         }
3476                 }
3477
3478                 $tags_str = implode(", ", $formatted_tags);
3479
3480                 if ($num_tags < count($tags)) {
3481                         $tags_str .= ", &hellip;";
3482                 }
3483
3484                 if ($num_tags == 0) {
3485                         $tags_str = __("no tags");
3486                 }
3487
3488                 return $tags_str;
3489
3490         }
3491
3492         function format_article_labels($labels, $id) {
3493
3494                 $labels_str = "";
3495
3496                 foreach ($labels as $l) {
3497                         $labels_str .= sprintf("<span class='hlLabelRef'
3498                                 style='color : %s; background-color : %s'>%s</span>",
3499                                         $l[2], $l[3], $l[1]);
3500                         }
3501
3502                 return $labels_str;
3503
3504         }
3505
3506         function format_article_note($id, $note, $allow_edit = true) {
3507
3508                 $str = "<div class='articleNote'        onclick=\"editArticleNote($id)\">
3509                         <div class='noteEdit' onclick=\"editArticleNote($id)\">".
3510                         ($allow_edit ? __('(edit note)') : "")."</div>$note</div>";
3511
3512                 return $str;
3513         }
3514
3515
3516         function get_feed_category($link, $feed_cat, $parent_cat_id = false) {
3517                 if ($parent_cat_id) {
3518                         $parent_qpart = "parent_cat = '$parent_cat_id'";
3519                         $parent_insert = "'$parent_cat_id'";
3520                 } else {
3521                         $parent_qpart = "parent_cat IS NULL";
3522                         $parent_insert = "NULL";
3523                 }
3524
3525                 $result = db_query($link,
3526                         "SELECT id FROM ttrss_feed_categories
3527                         WHERE $parent_qpart AND title = '$feed_cat' AND owner_uid = ".$_SESSION["uid"]);
3528
3529                 if (db_num_rows($result) == 0) {
3530                         return false;
3531                 } else {
3532                         return db_fetch_result($result, 0, "id");
3533                 }
3534         }
3535
3536         function add_feed_category($link, $feed_cat, $parent_cat_id = false) {
3537
3538                 if (!$feed_cat) return false;
3539
3540                 db_query($link, "BEGIN");
3541
3542                 if ($parent_cat_id) {
3543                         $parent_qpart = "parent_cat = '$parent_cat_id'";
3544                         $parent_insert = "'$parent_cat_id'";
3545                 } else {
3546                         $parent_qpart = "parent_cat IS NULL";
3547                         $parent_insert = "NULL";
3548                 }
3549
3550                 $feed_cat = mb_substr($feed_cat, 0, 250);
3551
3552                 $result = db_query($link,
3553                         "SELECT id FROM ttrss_feed_categories
3554                         WHERE $parent_qpart AND title = '$feed_cat' AND owner_uid = ".$_SESSION["uid"]);
3555
3556                 if (db_num_rows($result) == 0) {
3557
3558                         $result = db_query($link,
3559                                 "INSERT INTO ttrss_feed_categories (owner_uid,title,parent_cat)
3560                                 VALUES ('".$_SESSION["uid"]."', '$feed_cat', $parent_insert)");
3561
3562                         db_query($link, "COMMIT");
3563
3564                         return true;
3565                 }
3566
3567                 return false;
3568         }
3569
3570         function getArticleFeed($link, $id) {
3571                 $result = db_query($link, "SELECT feed_id FROM ttrss_user_entries
3572                         WHERE ref_id = '$id' AND owner_uid = " . $_SESSION["uid"]);
3573
3574                 if (db_num_rows($result) != 0) {
3575                         return db_fetch_result($result, 0, "feed_id");
3576                 } else {
3577                         return 0;
3578                 }
3579         }
3580
3581         /**
3582          * Fixes incomplete URLs by prepending "http://".
3583          * Also replaces feed:// with http://, and
3584          * prepends a trailing slash if the url is a domain name only.
3585          *
3586          * @param string $url Possibly incomplete URL
3587          *
3588          * @return string Fixed URL.
3589          */
3590         function fix_url($url) {
3591                 if (strpos($url, '://') === false) {
3592                         $url = 'http://' . $url;
3593                 } else if (substr($url, 0, 5) == 'feed:') {
3594                         $url = 'http:' . substr($url, 5);
3595                 }
3596
3597                 //prepend slash if the URL has no slash in it
3598                 // "http://www.example" -> "http://www.example/"
3599                 if (strpos($url, '/', strpos($url, ':') + 3) === false) {
3600                         $url .= '/';
3601                 }
3602
3603                 if ($url != "http:///")
3604                         return $url;
3605                 else
3606                         return '';
3607         }
3608
3609         function validate_feed_url($url) {
3610                 $parts = parse_url($url);
3611
3612                 return ($parts['scheme'] == 'http' || $parts['scheme'] == 'feed' || $parts['scheme'] == 'https');
3613
3614         }
3615
3616         function get_article_enclosures($link, $id) {
3617
3618                 $query = "SELECT * FROM ttrss_enclosures
3619                         WHERE post_id = '$id' AND content_url != ''";
3620
3621                 $rv = array();
3622
3623                 $result = db_query($link, $query);
3624
3625                 if (db_num_rows($result) > 0) {
3626                         while ($line = db_fetch_assoc($result)) {
3627                                 array_push($rv, $line);
3628                         }
3629                 }
3630
3631                 return $rv;
3632         }
3633
3634         function save_email_address($link, $email) {
3635                 // FIXME: implement persistent storage of emails
3636
3637                 if (!$_SESSION['stored_emails'])
3638                         $_SESSION['stored_emails'] = array();
3639
3640                 if (!in_array($email, $_SESSION['stored_emails']))
3641                         array_push($_SESSION['stored_emails'], $email);
3642         }
3643
3644
3645         function get_feed_access_key($link, $feed_id, $is_cat, $owner_uid = false) {
3646
3647                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
3648
3649                 $sql_is_cat = bool_to_sql_bool($is_cat);
3650
3651                 $result = db_query($link, "SELECT access_key FROM ttrss_access_keys
3652                         WHERE feed_id = '$feed_id'      AND is_cat = $sql_is_cat
3653                         AND owner_uid = " . $owner_uid);
3654
3655                 if (db_num_rows($result) == 1) {
3656                         return db_fetch_result($result, 0, "access_key");
3657                 } else {
3658                         $key = db_escape_string($link, sha1(uniqid(rand(), true)));
3659
3660                         $result = db_query($link, "INSERT INTO ttrss_access_keys
3661                                 (access_key, feed_id, is_cat, owner_uid)
3662                                 VALUES ('$key', '$feed_id', $sql_is_cat, '$owner_uid')");
3663
3664                         return $key;
3665                 }
3666                 return false;
3667         }
3668
3669         function get_feeds_from_html($url, $content)
3670         {
3671                 $url     = fix_url($url);
3672                 $baseUrl = substr($url, 0, strrpos($url, '/') + 1);
3673
3674                 libxml_use_internal_errors(true);
3675
3676                 $doc = new DOMDocument();
3677                 $doc->loadHTML($content);
3678                 $xpath = new DOMXPath($doc);
3679                 $entries = $xpath->query('/html/head/link[@rel="alternate"]');
3680                 $feedUrls = array();
3681                 foreach ($entries as $entry) {
3682                         if ($entry->hasAttribute('href')) {
3683                                 $title = $entry->getAttribute('title');
3684                                 if ($title == '') {
3685                                         $title = $entry->getAttribute('type');
3686                                 }
3687                                 $feedUrl = rewrite_relative_url(
3688                                         $baseUrl, $entry->getAttribute('href')
3689                                 );
3690                                 $feedUrls[$feedUrl] = $title;
3691                         }
3692                 }
3693                 return $feedUrls;
3694         }
3695
3696         function is_html($content) {
3697                 return preg_match("/<html|DOCTYPE html/i", substr($content, 0, 20)) !== 0;
3698         }
3699
3700         function url_is_html($url, $login = false, $pass = false) {
3701                 return is_html(fetch_file_contents($url, false, $login, $pass));
3702         }
3703
3704         function print_label_select($link, $name, $value, $attributes = "") {
3705
3706                 $result = db_query($link, "SELECT caption FROM ttrss_labels2
3707                         WHERE owner_uid = '".$_SESSION["uid"]."' ORDER BY caption");
3708
3709                 print "<select default=\"$value\" name=\"" . htmlspecialchars($name) .
3710                         "\" $attributes onchange=\"labelSelectOnChange(this)\" >";
3711
3712                 while ($line = db_fetch_assoc($result)) {
3713
3714                         $issel = ($line["caption"] == $value) ? "selected=\"1\"" : "";
3715
3716                         print "<option value=\"".htmlspecialchars($line["caption"])."\"
3717                                 $issel>" . htmlspecialchars($line["caption"]) . "</option>";
3718
3719                 }
3720
3721 #               print "<option value=\"ADD_LABEL\">" .__("Add label...") . "</option>";
3722
3723                 print "</select>";
3724
3725
3726         }
3727
3728         function format_article_enclosures($link, $id, $always_display_enclosures,
3729                                         $article_content, $hide_images = false) {
3730
3731                 $result = get_article_enclosures($link, $id);
3732                 $rv = '';
3733
3734                 if (count($result) > 0) {
3735
3736                         $entries_html = array();
3737                         $entries = array();
3738                         $entries_inline = array();
3739
3740                         foreach ($result as $line) {
3741
3742                                 $url = $line["content_url"];
3743                                 $ctype = $line["content_type"];
3744
3745                                 if (!$ctype) $ctype = __("unknown type");
3746
3747                                 $filename = substr($url, strrpos($url, "/")+1);
3748
3749                                 $player = format_inline_player($link, $url, $ctype);
3750
3751                                 if ($player) array_push($entries_inline, $player);
3752
3753 #                               $entry .= " <a target=\"_blank\" href=\"" . htmlspecialchars($url) . "\">" .
3754 #                                       $filename . " (" . $ctype . ")" . "</a>";
3755
3756                                 $entry = "<div onclick=\"window.open('".htmlspecialchars($url)."')\"
3757                                         dojoType=\"dijit.MenuItem\">$filename ($ctype)</div>";
3758
3759                                 array_push($entries_html, $entry);
3760
3761                                 $entry = array();
3762
3763                                 $entry["type"] = $ctype;
3764                                 $entry["filename"] = $filename;
3765                                 $entry["url"] = $url;
3766
3767                                 array_push($entries, $entry);
3768                         }
3769
3770                         if ($_SESSION['uid'] && !get_pref($link, "STRIP_IMAGES") && !$_SESSION["bw_limit"]) {
3771                                 if ($always_display_enclosures ||
3772                                                         !preg_match("/<img/i", $article_content)) {
3773
3774                                         foreach ($entries as $entry) {
3775
3776                                                 if (preg_match("/image/", $entry["type"]) ||
3777                                                                 preg_match("/\.(jpg|png|gif|bmp)/i", $entry["filename"])) {
3778
3779                                                                 if (!$hide_images) {
3780                                                                         $rv .= "<p><img
3781                                                                         alt=\"".htmlspecialchars($entry["filename"])."\"
3782                                                                         src=\"" .htmlspecialchars($entry["url"]) . "\"/></p>";
3783                                                                 } else {
3784                                                                         $rv .= "<p><a target=\"_blank\"
3785                                                                         href=\"".htmlspecialchars($entry["url"])."\"
3786                                                                         >" .htmlspecialchars($entry["url"]) . "</a></p>";
3787
3788                                                                 }
3789                                                 }
3790                                         }
3791                                 }
3792                         }
3793
3794                         if (count($entries_inline) > 0) {
3795                                 $rv .= "<hr clear='both'/>";
3796                                 foreach ($entries_inline as $entry) { $rv .= $entry; };
3797                                 $rv .= "<hr clear='both'/>";
3798                         }
3799
3800                         $rv .= "<select class=\"attachments\" onchange=\"openSelectedAttachment(this)\">".
3801                                 "<option value=''>" . __('Attachments')."</option>";
3802
3803                         foreach ($entries as $entry) {
3804                                 $rv .= "<option value=\"".htmlspecialchars($entry["url"])."\">" . htmlspecialchars($entry["filename"]) . "</option>";
3805
3806                         };
3807
3808                         $rv .= "</select>";
3809                 }
3810
3811                 return $rv;
3812         }
3813
3814         function getLastArticleId($link) {
3815                 $result = db_query($link, "SELECT MAX(ref_id) AS id FROM ttrss_user_entries
3816                         WHERE owner_uid = " . $_SESSION["uid"]);
3817
3818                 if (db_num_rows($result) == 1) {
3819                         return db_fetch_result($result, 0, "id");
3820                 } else {
3821                         return -1;
3822                 }
3823         }
3824
3825         function build_url($parts) {
3826                 return $parts['scheme'] . "://" . $parts['host'] . $parts['path'];
3827         }
3828
3829         /**
3830          * Converts a (possibly) relative URL to a absolute one.
3831          *
3832          * @param string $url     Base URL (i.e. from where the document is)
3833          * @param string $rel_url Possibly relative URL in the document
3834          *
3835          * @return string Absolute URL
3836          */
3837         function rewrite_relative_url($url, $rel_url) {
3838                 if (strpos($rel_url, "magnet:") === 0) {
3839                         return $rel_url;
3840                 } else if (strpos($rel_url, "://") !== false) {
3841                         return $rel_url;
3842                 } else if (strpos($rel_url, "//") === 0) {
3843                         # protocol-relative URL (rare but they exist)
3844                         return $rel_url;
3845                 } else if (strpos($rel_url, "/") === 0)
3846                 {
3847                         $parts = parse_url($url);
3848                         $parts['path'] = $rel_url;
3849
3850                         return build_url($parts);
3851
3852                 } else {
3853                         $parts = parse_url($url);
3854                         if (!isset($parts['path'])) {
3855                                 $parts['path'] = '/';
3856                         }
3857                         $dir = $parts['path'];
3858                         if (substr($dir, -1) !== '/') {
3859                                 $dir = dirname($parts['path']);
3860                                 $dir !== '/' && $dir .= '/';
3861                         }
3862                         $parts['path'] = $dir . $rel_url;
3863
3864                         return build_url($parts);
3865                 }
3866         }
3867
3868         function sphinx_search($query, $offset = 0, $limit = 30) {
3869                 require_once 'lib/sphinxapi.php';
3870
3871                 $sphinxClient = new SphinxClient();
3872
3873                 $sphinxClient->SetServer('localhost', 9312);
3874                 $sphinxClient->SetConnectTimeout(1);
3875
3876                 $sphinxClient->SetFieldWeights(array('title' => 70, 'content' => 30,
3877                         'feed_title' => 20));
3878
3879                 $sphinxClient->SetMatchMode(SPH_MATCH_EXTENDED2);
3880                 $sphinxClient->SetRankingMode(SPH_RANK_PROXIMITY_BM25);
3881                 $sphinxClient->SetLimits($offset, $limit, 1000);
3882                 $sphinxClient->SetArrayResult(false);
3883                 $sphinxClient->SetFilter('owner_uid', array($_SESSION['uid']));
3884
3885                 $result = $sphinxClient->Query($query, SPHINX_INDEX);
3886
3887                 $ids = array();
3888
3889                 if (is_array($result['matches'])) {
3890                         foreach (array_keys($result['matches']) as $int_id) {
3891                                 $ref_id = $result['matches'][$int_id]['attrs']['ref_id'];
3892                                 array_push($ids, $ref_id);
3893                         }
3894                 }
3895
3896                 return $ids;
3897         }
3898
3899         function cleanup_tags($link, $days = 14, $limit = 1000) {
3900
3901                 if (DB_TYPE == "pgsql") {
3902                         $interval_query = "date_updated < NOW() - INTERVAL '$days days'";
3903                 } else if (DB_TYPE == "mysql") {
3904                         $interval_query = "date_updated < DATE_SUB(NOW(), INTERVAL $days DAY)";
3905                 }
3906
3907                 $tags_deleted = 0;
3908
3909                 while ($limit > 0) {
3910                         $limit_part = 500;
3911
3912                         $query = "SELECT ttrss_tags.id AS id
3913                                 FROM ttrss_tags, ttrss_user_entries, ttrss_entries
3914                                 WHERE post_int_id = int_id AND $interval_query AND
3915                                 ref_id = ttrss_entries.id AND tag_cache != '' LIMIT $limit_part";
3916
3917                         $result = db_query($link, $query);
3918
3919                         $ids = array();
3920
3921                         while ($line = db_fetch_assoc($result)) {
3922                                 array_push($ids, $line['id']);
3923                         }
3924
3925                         if (count($ids) > 0) {
3926                                 $ids = join(",", $ids);
3927
3928                                 $tmp_result = db_query($link, "DELETE FROM ttrss_tags WHERE id IN ($ids)");
3929                                 $tags_deleted += db_affected_rows($link, $tmp_result);
3930                         } else {
3931                                 break;
3932                         }
3933
3934                         $limit -= $limit_part;
3935                 }
3936
3937                 return $tags_deleted;
3938         }
3939
3940         function print_user_stylesheet($link) {
3941                 $value = get_pref($link, 'USER_STYLESHEET');
3942
3943                 if ($value) {
3944                         print "<style type=\"text/css\">";
3945                         print str_replace("<br/>", "\n", $value);
3946                         print "</style>";
3947                 }
3948
3949         }
3950
3951         function rewrite_urls($html) {
3952                 libxml_use_internal_errors(true);
3953
3954                 $charset_hack = '<head>
3955                         <meta http-equiv="Content-Type" content="text/html; charset=utf-8"/>
3956                 </head>';
3957
3958                 $doc = new DOMDocument();
3959                 $doc->loadHTML($charset_hack . $html);
3960                 $xpath = new DOMXPath($doc);
3961
3962                 $entries = $xpath->query('//*/text()');
3963
3964                 foreach ($entries as $entry) {
3965                         if (strstr($entry->wholeText, "://") !== false) {
3966                                 $text = preg_replace("/((?<!=.)((http|https|ftp)+):\/\/[^ ,!]+)/i",
3967                                         "<a target=\"_blank\" href=\"\\1\">\\1</a>", $entry->wholeText);
3968
3969                                 if ($text != $entry->wholeText) {
3970                                         $cdoc = new DOMDocument();
3971                                         $cdoc->loadHTML($charset_hack . $text);
3972
3973
3974                                         foreach ($cdoc->childNodes as $cnode) {
3975                                                 $cnode = $doc->importNode($cnode, true);
3976
3977                                                 if ($cnode) {
3978                                                         $entry->parentNode->insertBefore($cnode);
3979                                                 }
3980                                         }
3981
3982                                         $entry->parentNode->removeChild($entry);
3983
3984                                 }
3985                         }
3986                 }
3987
3988                 $node = $doc->getElementsByTagName('body')->item(0);
3989
3990                 // http://tt-rss.org/forum/viewtopic.php?f=1&t=970
3991                 if ($node)
3992                         return $doc->saveXML($node);
3993                 else
3994                         return $html;
3995         }
3996
3997         function filter_to_sql($link, $filter, $owner_uid) {
3998                 $query = array();
3999
4000                 if (DB_TYPE == "pgsql")
4001                         $reg_qpart = "~";
4002                 else
4003                         $reg_qpart = "REGEXP";
4004
4005                 foreach ($filter["rules"] AS $rule) {
4006                         $regexp_valid = preg_match('/' . $rule['reg_exp'] . '/',
4007                                 $rule['reg_exp']) !== FALSE;
4008
4009                         if ($regexp_valid) {
4010
4011                                 $rule['reg_exp'] = db_escape_string($link, $rule['reg_exp']);
4012
4013                                         switch ($rule["type"]) {
4014                                         case "title":
4015                                                 $qpart = "LOWER(ttrss_entries.title) $reg_qpart LOWER('".
4016                                                         $rule['reg_exp'] . "')";
4017                                                 break;
4018                                         case "content":
4019                                                 $qpart = "LOWER(ttrss_entries.content) $reg_qpart LOWER('".
4020                                                         $rule['reg_exp'] . "')";
4021                                                 break;
4022                                         case "both":
4023                                                 $qpart = "LOWER(ttrss_entries.title) $reg_qpart LOWER('".
4024                                                         $rule['reg_exp'] . "') OR LOWER(" .
4025                                                         "ttrss_entries.content) $reg_qpart LOWER('" . $rule['reg_exp'] . "')";
4026                                                 break;
4027                                         case "tag":
4028                                                 $qpart = "LOWER(ttrss_user_entries.tag_cache) $reg_qpart LOWER('".
4029                                                         $rule['reg_exp'] . "')";
4030                                                 break;
4031                                         case "link":
4032                                                 $qpart = "LOWER(ttrss_entries.link) $reg_qpart LOWER('".
4033                                                         $rule['reg_exp'] . "')";
4034                                                 break;
4035                                         case "author":
4036                                                 $qpart = "LOWER(ttrss_entries.author) $reg_qpart LOWER('".
4037                                                         $rule['reg_exp'] . "')";
4038                                                 break;
4039                                 }
4040
4041                                 if (isset($rule['inverse'])) $qpart = "NOT ($qpart)";
4042
4043                                 if (isset($rule["feed_id"]) && $rule["feed_id"] > 0) {
4044                                         $qpart .= " AND feed_id = " . db_escape_string($link, $rule["feed_id"]);
4045                                 }
4046
4047                                 if (isset($rule["cat_id"])) {
4048
4049                                         if ($rule["cat_id"] > 0) {
4050                                                 $children = getChildCategories($link, $rule["cat_id"], $owner_uid);
4051                                                 array_push($children, $rule["cat_id"]);
4052
4053                                                 $children = join(",", $children);
4054
4055                                                 $cat_qpart = "cat_id IN ($children)";
4056                                         } else {
4057                                                 $cat_qpart = "cat_id IS NULL";
4058                                         }
4059
4060                                         $qpart .= " AND $cat_qpart";
4061                                 }
4062
4063                                 array_push($query, "($qpart)");
4064
4065                         }
4066                 }
4067
4068                 if (count($query) > 0) {
4069                         $fullquery = "(" . join($filter["match_any_rule"] ? "OR" : "AND", $query) . ")";
4070                 } else {
4071                         $fullquery = "(false)";
4072                 }
4073
4074                 if ($filter['inverse']) $fullquery = "(NOT $fullquery)";
4075
4076                 return $fullquery;
4077         }
4078
4079         if (!function_exists('gzdecode')) {
4080                 function gzdecode($string) { // no support for 2nd argument
4081                         return file_get_contents('compress.zlib://data:who/cares;base64,'.
4082                                 base64_encode($string));
4083                 }
4084         }
4085
4086         function get_random_bytes($length) {
4087                 if (function_exists('openssl_random_pseudo_bytes')) {
4088                         return openssl_random_pseudo_bytes($length);
4089                 } else {
4090                         $output = "";
4091
4092                         for ($i = 0; $i < $length; $i++)
4093                                 $output .= chr(mt_rand(0, 255));
4094
4095                         return $output;
4096                 }
4097         }
4098
4099         function read_stdin() {
4100                 $fp = fopen("php://stdin", "r");
4101
4102                 if ($fp) {
4103                         $line = trim(fgets($fp));
4104                         fclose($fp);
4105                         return $line;
4106                 }
4107
4108                 return null;
4109         }
4110
4111         function tmpdirname($path, $prefix) {
4112                 // Use PHP's tmpfile function to create a temporary
4113                 // directory name. Delete the file and keep the name.
4114                 $tempname = tempnam($path,$prefix);
4115                 if (!$tempname)
4116                         return false;
4117
4118                 if (!unlink($tempname))
4119                         return false;
4120
4121        return $tempname;
4122         }
4123
4124         function getFeedCategory($link, $feed) {
4125                 $result = db_query($link, "SELECT cat_id FROM ttrss_feeds
4126                         WHERE id = '$feed'");
4127
4128                 if (db_num_rows($result) > 0) {
4129                         return db_fetch_result($result, 0, "cat_id");
4130                 } else {
4131                         return false;
4132                 }
4133
4134         }
4135
4136         function implements_interface($class, $interface) {
4137                 return in_array($interface, class_implements($class));
4138         }
4139
4140         function geturl($url){
4141
4142                 (function_exists('curl_init')) ? '' : die('cURL Must be installed for geturl function to work. Ask your host to enable it or uncomment extension=php_curl.dll in php.ini');
4143
4144                 $curl = curl_init();
4145                 $header[0] = "Accept: text/xml,application/xml,application/xhtml+xml,";
4146                 $header[0] .= "text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5";
4147                 $header[] = "Cache-Control: max-age=0";
4148                 $header[] = "Connection: keep-alive";
4149                 $header[] = "Keep-Alive: 300";
4150                 $header[] = "Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.7";
4151                 $header[] = "Accept-Language: en-us,en;q=0.5";
4152                 $header[] = "Pragma: ";
4153
4154                 curl_setopt($curl, CURLOPT_URL, $url);
4155                 curl_setopt($curl, CURLOPT_USERAGENT, 'Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0 Firefox/5.0');
4156                 curl_setopt($curl, CURLOPT_HTTPHEADER, $header);
4157                 curl_setopt($curl, CURLOPT_HEADER, true);
4158                 curl_setopt($curl, CURLOPT_REFERER, $url);
4159                 curl_setopt($curl, CURLOPT_ENCODING, 'gzip,deflate');
4160                 curl_setopt($curl, CURLOPT_AUTOREFERER, true);
4161                 curl_setopt($curl, CURLOPT_RETURNTRANSFER, true);
4162                 //curl_setopt($curl, CURLOPT_FOLLOWLOCATION, true); //CURLOPT_FOLLOWLOCATION Disabled...
4163                 curl_setopt($curl, CURLOPT_TIMEOUT, 60);
4164
4165                 $html = curl_exec($curl);
4166
4167                 $status = curl_getinfo($curl);
4168                 curl_close($curl);
4169
4170                 if($status['http_code']!=200){
4171                         if($status['http_code'] == 301 || $status['http_code'] == 302) {
4172                                 list($header) = explode("\r\n\r\n", $html, 2);
4173                                 $matches = array();
4174                                 preg_match("/(Location:|URI:)[^(\n)]*/", $header, $matches);
4175                                 $url = trim(str_replace($matches[1],"",$matches[0]));
4176                                 $url_parsed = parse_url($url);
4177                                 return (isset($url_parsed))? geturl($url, $referer):'';
4178                         }
4179                         $oline='';
4180                         foreach($status as $key=>$eline){$oline.='['.$key.']'.$eline.' ';}
4181                         $line =$oline." \r\n ".$url."\r\n-----------------\r\n";
4182 #                       $handle = @fopen('./curl.error.log', 'a');
4183 #                       fwrite($handle, $line);
4184                         return FALSE;
4185                 }
4186                 return $url;
4187         }
4188
4189         function get_minified_js($files) {
4190                 require_once 'lib/jshrink/Minifier.php';
4191
4192                 $rv = '';
4193
4194                 foreach ($files as $js) {
4195                         if (!isset($_GET['debug'])) {
4196                                 $cached_file = CACHE_DIR . "/js/$js.js";
4197
4198                                 if (file_exists($cached_file) &&
4199                                                 is_readable($cached_file) &&
4200                                                 filemtime($cached_file) >= filemtime("js/$js.js")) {
4201
4202                                         $rv .= file_get_contents($cached_file);
4203
4204                                 } else {
4205                                         $minified = JShrink\Minifier::minify(file_get_contents("js/$js.js"));
4206                                         file_put_contents($cached_file, $minified);
4207                                         $rv .= $minified;
4208                                 }
4209                         } else {
4210                                 $rv .= file_get_contents("js/$js.js");
4211                         }
4212                 }
4213
4214                 return $rv;
4215         }
4216
4217         function stylesheet_tag($filename) {
4218                 $timestamp = filemtime($filename);
4219
4220                 echo "<link rel=\"stylesheet\" type=\"text/css\" href=\"$filename?$timestamp\"/>\n";
4221         }
4222
4223         function javascript_tag($filename) {
4224                 $query = "";
4225
4226                 if (!(strpos($filename, "?") === FALSE)) {
4227                         $query = substr($filename, strpos($filename, "?")+1);
4228                         $filename = substr($filename, 0, strpos($filename, "?"));
4229                 }
4230
4231                 $timestamp = filemtime($filename);
4232
4233                 if ($query) $timestamp .= "&$query";
4234
4235                 echo "<script type=\"text/javascript\" charset=\"utf-8\" src=\"$filename?$timestamp\"></script>\n";
4236         }
4237
4238         function calculate_dep_timestamp() {
4239                 $files = array_merge(glob("js/*.js"), glob("*.css"));
4240
4241                 $max_ts = -1;
4242
4243                 foreach ($files as $file) {
4244                         if (filemtime($file) > $max_ts) $max_ts = filemtime($file);
4245                 }
4246
4247                 return $max_ts;
4248         }
4249
4250         function T_js_decl($s1, $s2) {
4251                 if ($s1 && $s2) {
4252                         $s1 = preg_replace("/\n/", "", $s1);
4253                         $s2 = preg_replace("/\n/", "", $s2);
4254
4255                         $s1 = preg_replace("/\"/", "\\\"", $s1);
4256                         $s2 = preg_replace("/\"/", "\\\"", $s2);
4257
4258                         return "T_messages[\"$s1\"] = \"$s2\";\n";
4259                 }
4260         }
4261
4262         function init_js_translations() {
4263
4264         print 'var T_messages = new Object();
4265
4266                 function __(msg) {
4267                         if (T_messages[msg]) {
4268                                 return T_messages[msg];
4269                         } else {
4270                                 return msg;
4271                         }
4272                 }
4273
4274                 function ngettext(msg1, msg2, n) {
4275                         return (parseInt(n) > 1) ? msg2 : msg1;
4276                 }';
4277
4278                 $l10n = _get_reader();
4279
4280                 for ($i = 0; $i < $l10n->total; $i++) {
4281                         $orig = $l10n->get_original_string($i);
4282                         $translation = __($orig);
4283
4284                         print T_js_decl($orig, $translation);
4285                 }
4286         }
4287
4288         function label_to_feed_id($label) {
4289                 return LABEL_BASE_INDEX - 1 - abs($label);
4290         }
4291
4292         function feed_to_label_id($feed) {
4293                 return LABEL_BASE_INDEX - 1 + abs($feed);
4294         }
4295
4296 ?>