]> git.wh0rd.org Git - tt-rss.git/blob - include/functions.php
bad01eb96777643dc387bb5ac68b1cb365676c15
[tt-rss.git] / include / functions.php
1 <?php
2         define('EXPECTED_CONFIG_VERSION', 26);
3         define('SCHEMA_VERSION', 120);
4
5         define('LABEL_BASE_INDEX', -1024);
6         define('PLUGIN_FEED_BASE_INDEX', -128);
7
8         define('COOKIE_LIFETIME_LONG', 86400*365);
9
10         $fetch_last_error = false;
11         $fetch_last_error_code = false;
12         $fetch_last_content_type = false;
13         $fetch_curl_used = false;
14
15         mb_internal_encoding("UTF-8");
16         date_default_timezone_set('UTC');
17         if (defined('E_DEPRECATED')) {
18                 error_reporting(E_ALL & ~E_NOTICE & ~E_DEPRECATED);
19         } else {
20                 error_reporting(E_ALL & ~E_NOTICE);
21         }
22
23         require_once 'config.php';
24
25         /**
26          * Define a constant if not already defined
27          *
28          * @param string $name The constant name.
29          * @param mixed $value The constant value.
30          * @access public
31          * @return boolean True if defined successfully or not.
32          */
33         function define_default($name, $value) {
34                 defined($name) or define($name, $value);
35         }
36
37         ///// Some defaults that you can override in config.php //////
38
39         define_default('FEED_FETCH_TIMEOUT', 45);
40         // How may seconds to wait for response when requesting feed from a site
41         define_default('FEED_FETCH_NO_CACHE_TIMEOUT', 15);
42         // How may seconds to wait for response when requesting feed from a
43         // site when that feed wasn't cached before
44         define_default('FILE_FETCH_TIMEOUT', 45);
45         // Default timeout when fetching files from remote sites
46         define_default('FILE_FETCH_CONNECT_TIMEOUT', 15);
47         // How many seconds to wait for initial response from website when
48         // fetching files from remote sites
49
50         if (DB_TYPE == "pgsql") {
51                 define('SUBSTRING_FOR_DATE', 'SUBSTRING_FOR_DATE');
52         } else {
53                 define('SUBSTRING_FOR_DATE', 'SUBSTRING');
54         }
55
56         /**
57          * Return available translations names.
58          *
59          * @access public
60          * @return array A array of available translations.
61          */
62         function get_translations() {
63                 $tr = array(
64                                         "auto"  => "Detect automatically",
65                                         "ca_CA" => "Català",
66                                         "cs_CZ" => "Česky",
67                                         "en_US" => "English",
68                                         "es_ES" => "Español",
69                                         "de_DE" => "Deutsch",
70                                         "fr_FR" => "Français",
71                                         "hu_HU" => "Magyar (Hungarian)",
72                                         "it_IT" => "Italiano",
73                                         "ja_JP" => "日本語 (Japanese)",
74                                         "lv_LV" => "Latviešu",
75                                         "nb_NO" => "Norwegian bokmål",
76                                         "nl_NL" => "Dutch",
77                                         "pl_PL" => "Polski",
78                                         "ru_RU" => "Русский",
79                                         "pt_BR" => "Portuguese/Brazil",
80                                         "zh_CN" => "Simplified Chinese",
81                                         "sv_SE" => "Svenska",
82                                         "fi_FI" => "Suomi");
83
84                 return $tr;
85         }
86
87         require_once "lib/accept-to-gettext.php";
88         require_once "lib/gettext/gettext.inc";
89
90
91         function startup_gettext() {
92
93                 # Get locale from Accept-Language header
94                 $lang = al2gt(array_keys(get_translations()), "text/html");
95
96                 if (defined('_TRANSLATION_OVERRIDE_DEFAULT')) {
97                         $lang = _TRANSLATION_OVERRIDE_DEFAULT;
98                 }
99
100                 if ($_SESSION["uid"] && get_schema_version() >= 120) {
101                         $pref_lang = get_pref("USER_LANGUAGE", $_SESSION["uid"]);
102
103                         if ($pref_lang) {
104                                 $lang = $pref_lang;
105                         }
106                 }
107
108                 if ($lang) {
109                         if (defined('LC_MESSAGES')) {
110                                 _setlocale(LC_MESSAGES, $lang);
111                         } else if (defined('LC_ALL')) {
112                                 _setlocale(LC_ALL, $lang);
113                         }
114
115                         _bindtextdomain("messages", "locale");
116
117                         _textdomain("messages");
118                         _bind_textdomain_codeset("messages", "UTF-8");
119                 }
120         }
121
122         require_once 'db-prefs.php';
123         require_once 'version.php';
124         require_once 'ccache.php';
125         require_once 'labels.php';
126
127         define('SELF_USER_AGENT', 'Tiny Tiny RSS/' . VERSION . ' (http://tt-rss.org/)');
128         ini_set('user_agent', SELF_USER_AGENT);
129
130         require_once 'lib/pubsubhubbub/publisher.php';
131
132         $schema_version = false;
133
134         /**
135          * Print a timestamped debug message.
136          *
137          * @param string $msg The debug message.
138          * @return void
139          */
140         function _debug($msg, $show = true) {
141
142                 $ts = strftime("%H:%M:%S", time());
143                 if (function_exists('posix_getpid')) {
144                         $ts = "$ts/" . posix_getpid();
145                 }
146
147                 if ($show && !(defined('QUIET') && QUIET)) {
148                         print "[$ts] $msg\n";
149                 }
150
151                 if (defined('LOGFILE'))  {
152                         $fp = fopen(LOGFILE, 'a+');
153
154                         if ($fp) {
155                                 fputs($fp, "[$ts] $msg\n");
156                                 fclose($fp);
157                         }
158                 }
159
160         } // function _debug
161
162         /**
163          * Purge a feed old posts.
164          *
165          * @param mixed $link A database connection.
166          * @param mixed $feed_id The id of the purged feed.
167          * @param mixed $purge_interval Olderness of purged posts.
168          * @param boolean $debug Set to True to enable the debug. False by default.
169          * @access public
170          * @return void
171          */
172         function purge_feed($feed_id, $purge_interval, $debug = false) {
173
174                 if (!$purge_interval) $purge_interval = feed_purge_interval($feed_id);
175
176                 $rows = -1;
177
178                 $result = db_query(
179                         "SELECT owner_uid FROM ttrss_feeds WHERE id = '$feed_id'");
180
181                 $owner_uid = false;
182
183                 if (db_num_rows($result) == 1) {
184                         $owner_uid = db_fetch_result($result, 0, "owner_uid");
185                 }
186
187                 if ($purge_interval == -1 || !$purge_interval) {
188                         if ($owner_uid) {
189                                 ccache_update($feed_id, $owner_uid);
190                         }
191                         return;
192                 }
193
194                 if (!$owner_uid) return;
195
196                 if (FORCE_ARTICLE_PURGE == 0) {
197                         $purge_unread = get_pref("PURGE_UNREAD_ARTICLES",
198                                 $owner_uid, false);
199                 } else {
200                         $purge_unread = true;
201                         $purge_interval = FORCE_ARTICLE_PURGE;
202                 }
203
204                 if (!$purge_unread) $query_limit = " unread = false AND ";
205
206                 if (DB_TYPE == "pgsql") {
207                         $pg_version = get_pgsql_version();
208
209                         if (preg_match("/^7\./", $pg_version) || preg_match("/^8\.0/", $pg_version)) {
210
211                                 $result = db_query("DELETE FROM ttrss_user_entries WHERE
212                                         ttrss_entries.id = ref_id AND
213                                         marked = false AND
214                                         feed_id = '$feed_id' AND
215                                         $query_limit
216                                         ttrss_entries.date_updated < NOW() - INTERVAL '$purge_interval days'");
217
218                         } else {
219
220                                 $result = db_query("DELETE FROM ttrss_user_entries
221                                         USING ttrss_entries
222                                         WHERE ttrss_entries.id = ref_id AND
223                                         marked = false AND
224                                         feed_id = '$feed_id' AND
225                                         $query_limit
226                                         ttrss_entries.date_updated < NOW() - INTERVAL '$purge_interval days'");
227                         }
228
229                 } else {
230
231 /*                      $result = db_query("DELETE FROM ttrss_user_entries WHERE
232                                 marked = false AND feed_id = '$feed_id' AND
233                                 (SELECT date_updated FROM ttrss_entries WHERE
234                                         id = ref_id) < DATE_SUB(NOW(), INTERVAL $purge_interval DAY)"); */
235
236                         $result = db_query("DELETE FROM ttrss_user_entries
237                                 USING ttrss_user_entries, ttrss_entries
238                                 WHERE ttrss_entries.id = ref_id AND
239                                 marked = false AND
240                                 feed_id = '$feed_id' AND
241                                 $query_limit
242                                 ttrss_entries.date_updated < DATE_SUB(NOW(), INTERVAL $purge_interval DAY)");
243                 }
244
245                 $rows = db_affected_rows($result);
246
247                 ccache_update($feed_id, $owner_uid);
248
249                 if ($debug) {
250                         _debug("Purged feed $feed_id ($purge_interval): deleted $rows articles");
251                 }
252
253                 return $rows;
254         } // function purge_feed
255
256         function feed_purge_interval($feed_id) {
257
258                 $result = db_query("SELECT purge_interval, owner_uid FROM ttrss_feeds
259                         WHERE id = '$feed_id'");
260
261                 if (db_num_rows($result) == 1) {
262                         $purge_interval = db_fetch_result($result, 0, "purge_interval");
263                         $owner_uid = db_fetch_result($result, 0, "owner_uid");
264
265                         if ($purge_interval == 0) $purge_interval = get_pref(
266                                 'PURGE_OLD_DAYS', $owner_uid);
267
268                         return $purge_interval;
269
270                 } else {
271                         return -1;
272                 }
273         }
274
275         function purge_orphans($do_output = false) {
276
277                 // purge orphaned posts in main content table
278                 $result = db_query("DELETE FROM ttrss_entries WHERE
279                         (SELECT COUNT(int_id) FROM ttrss_user_entries WHERE ref_id = id) = 0");
280
281                 if ($do_output) {
282                         $rows = db_affected_rows($result);
283                         _debug("Purged $rows orphaned posts.");
284                 }
285         }
286
287         function get_feed_update_interval($feed_id) {
288                 $result = db_query("SELECT owner_uid, update_interval FROM
289                         ttrss_feeds WHERE id = '$feed_id'");
290
291                 if (db_num_rows($result) == 1) {
292                         $update_interval = db_fetch_result($result, 0, "update_interval");
293                         $owner_uid = db_fetch_result($result, 0, "owner_uid");
294
295                         if ($update_interval != 0) {
296                                 return $update_interval;
297                         } else {
298                                 return get_pref('DEFAULT_UPDATE_INTERVAL', $owner_uid, false);
299                         }
300
301                 } else {
302                         return -1;
303                 }
304         }
305
306         function fetch_file_contents($url, $type = false, $login = false, $pass = false, $post_query = false, $timeout = false, $timestamp = 0) {
307
308                 global $fetch_last_error;
309                 global $fetch_last_error_code;
310                 global $fetch_last_content_type;
311                 global $fetch_curl_used;
312
313                 $url = str_replace(' ', '%20', $url);
314
315                 if (!defined('NO_CURL') && function_exists('curl_init')) {
316
317                         $fetch_curl_used = true;
318
319                         if (ini_get("safe_mode") || ini_get("open_basedir")) {
320                                 $ch = curl_init(geturl($url));
321                         } else {
322                                 $ch = curl_init($url);
323                         }
324
325                         if ($timestamp && !$post_query) {
326                                 curl_setopt($ch, CURLOPT_HTTPHEADER,
327                                         array("If-Modified-Since: ".gmdate('D, d M Y H:i:s \G\M\T', $timestamp)));
328                         }
329
330                         curl_setopt($ch, CURLOPT_CONNECTTIMEOUT, $timeout ? $timeout : FILE_FETCH_CONNECT_TIMEOUT);
331                         curl_setopt($ch, CURLOPT_TIMEOUT, $timeout ? $timeout : FILE_FETCH_TIMEOUT);
332                         curl_setopt($ch, CURLOPT_FOLLOWLOCATION, !ini_get("safe_mode") && !ini_get("open_basedir"));
333                         curl_setopt($ch, CURLOPT_MAXREDIRS, 20);
334                         curl_setopt($ch, CURLOPT_BINARYTRANSFER, true);
335                         curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
336                         curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false);
337                         curl_setopt($ch, CURLOPT_HTTPAUTH, CURLAUTH_ANY);
338                         curl_setopt($ch, CURLOPT_USERAGENT, SELF_USER_AGENT);
339                         curl_setopt($ch, CURLOPT_ENCODING, "");
340                         curl_setopt($ch, CURLOPT_REFERER, $url);
341
342                         if ($post_query) {
343                                 curl_setopt($ch, CURLOPT_POST, true);
344                                 curl_setopt($ch, CURLOPT_POSTFIELDS, $post_query);
345                         }
346
347                         if ($login && $pass)
348                                 curl_setopt($ch, CURLOPT_USERPWD, "$login:$pass");
349
350                         $contents = @curl_exec($ch);
351
352                         if (curl_errno($ch) === 23 || curl_errno($ch) === 61) {
353                                 curl_setopt($ch, CURLOPT_ENCODING, 'none');
354                                 $contents = @curl_exec($ch);
355                         }
356
357                         if ($contents === false) {
358                                 $fetch_last_error = curl_errno($ch) . " " . curl_error($ch);
359                                 curl_close($ch);
360                                 return false;
361                         }
362
363                         $http_code = curl_getinfo($ch, CURLINFO_HTTP_CODE);
364                         $fetch_last_content_type = curl_getinfo($ch, CURLINFO_CONTENT_TYPE);
365
366                         $fetch_last_error_code = $http_code;
367
368                         if ($http_code != 200 || $type && strpos($fetch_last_content_type, "$type") === false) {
369                                 if (curl_errno($ch) != 0) {
370                                         $fetch_last_error = curl_errno($ch) . " " . curl_error($ch);
371                                 } else {
372                                         $fetch_last_error = "HTTP Code: $http_code";
373                                 }
374                                 curl_close($ch);
375                                 return false;
376                         }
377
378                         curl_close($ch);
379
380                         return $contents;
381                 } else {
382
383                         $fetch_curl_used = false;
384
385                         if ($login && $pass){
386                                 $url_parts = array();
387
388                                 preg_match("/(^[^:]*):\/\/(.*)/", $url, $url_parts);
389
390                                 $pass = urlencode($pass);
391
392                                 if ($url_parts[1] && $url_parts[2]) {
393                                         $url = $url_parts[1] . "://$login:$pass@" . $url_parts[2];
394                                 }
395                         }
396
397                         if (!$post_query && $timestamp) {
398                                 $context = stream_context_create(array(
399                                         'http' => array(
400                                                 'method' => 'GET',
401                                                 'header' => "If-Modified-Since: ".gmdate("D, d M Y H:i:s \\G\\M\\T\r\n", $timestamp)
402                                         )));
403                         } else {
404                                 $context = NULL;
405                         }
406
407                         $old_error = error_get_last();
408
409                         $data = @file_get_contents($url, false, $context);
410
411                         $fetch_last_content_type = false;  // reset if no type was sent from server
412                         if (isset($http_response_header) && is_array($http_response_header)) {
413                                 foreach ($http_response_header as $h) {
414                                         if (substr(strtolower($h), 0, 13) == 'content-type:') {
415                                                 $fetch_last_content_type = substr($h, 14);
416                                                 // don't abort here b/c there might be more than one
417                                                 // e.g. if we were being redirected -- last one is the right one
418                                         }
419
420                                         if (substr(strtolower($h), 0, 7) == 'http/1.') {
421                                                 $fetch_last_error_code = (int) substr($h, 9, 3);
422                                         }
423                                 }
424                         }
425
426                         if (!$data) {
427                                 $error = error_get_last();
428
429                                 if ($error['message'] != $old_error['message']) {
430                                         $fetch_last_error = $error["message"];
431                                 } else {
432                                         $fetch_last_error = "HTTP Code: $fetch_last_error_code";
433                                 }
434                         }
435                         return $data;
436                 }
437
438         }
439
440         /**
441          * Try to determine the favicon URL for a feed.
442          * adapted from wordpress favicon plugin by Jeff Minard (http://thecodepro.com/)
443          * http://dev.wp-plugins.org/file/favatars/trunk/favatars.php
444          *
445          * @param string $url A feed or page URL
446          * @access public
447          * @return mixed The favicon URL, or false if none was found.
448          */
449         function get_favicon_url($url) {
450
451                 $favicon_url = false;
452
453                 if ($html = @fetch_file_contents($url)) {
454
455                         libxml_use_internal_errors(true);
456
457                         $doc = new DOMDocument();
458                         $doc->loadHTML($html);
459                         $xpath = new DOMXPath($doc);
460
461                         $base = $xpath->query('/html/head/base');
462                         foreach ($base as $b) {
463                                 $url = $b->getAttribute("href");
464                                 break;
465                         }
466
467                         $entries = $xpath->query('/html/head/link[@rel="shortcut icon" or @rel="icon"]');
468                         if (count($entries) > 0) {
469                                 foreach ($entries as $entry) {
470                                         $favicon_url = rewrite_relative_url($url, $entry->getAttribute("href"));
471                                         break;
472                                 }
473                         }
474                 }
475
476                 if (!$favicon_url)
477                         $favicon_url = rewrite_relative_url($url, "/favicon.ico");
478
479                 return $favicon_url;
480         } // function get_favicon_url
481
482         function check_feed_favicon($site_url, $feed) {
483 #               print "FAVICON [$site_url]: $favicon_url\n";
484
485                 $icon_file = ICONS_DIR . "/$feed.ico";
486
487                 if (!file_exists($icon_file)) {
488                         $favicon_url = get_favicon_url($site_url);
489
490                         if ($favicon_url) {
491                                 // Limiting to "image" type misses those served with text/plain
492                                 $contents = fetch_file_contents($favicon_url); // , "image");
493
494                                 if ($contents) {
495                                         // Crude image type matching.
496                                         // Patterns gleaned from the file(1) source code.
497                                         if (preg_match('/^\x00\x00\x01\x00/', $contents)) {
498                                                 // 0       string  \000\000\001\000        MS Windows icon resource
499                                                 //error_log("check_feed_favicon: favicon_url=$favicon_url isa MS Windows icon resource");
500                                         }
501                                         elseif (preg_match('/^GIF8/', $contents)) {
502                                                 // 0       string          GIF8            GIF image data
503                                                 //error_log("check_feed_favicon: favicon_url=$favicon_url isa GIF image");
504                                         }
505                                         elseif (preg_match('/^\x89PNG\x0d\x0a\x1a\x0a/', $contents)) {
506                                                 // 0       string          \x89PNG\x0d\x0a\x1a\x0a         PNG image data
507                                                 //error_log("check_feed_favicon: favicon_url=$favicon_url isa PNG image");
508                                         }
509                                         elseif (preg_match('/^\xff\xd8/', $contents)) {
510                                                 // 0       beshort         0xffd8          JPEG image data
511                                                 //error_log("check_feed_favicon: favicon_url=$favicon_url isa JPG image");
512                                         }
513                                         else {
514                                                 //error_log("check_feed_favicon: favicon_url=$favicon_url isa UNKNOWN type");
515                                                 $contents = "";
516                                         }
517                                 }
518
519                                 if ($contents) {
520                                         $fp = @fopen($icon_file, "w");
521
522                                         if ($fp) {
523                                                 fwrite($fp, $contents);
524                                                 fclose($fp);
525                                                 chmod($icon_file, 0644);
526                                         }
527                                 }
528                         }
529             return $icon_file;
530                 }
531         }
532
533         function print_select($id, $default, $values, $attributes = "") {
534                 print "<select name=\"$id\" id=\"$id\" $attributes>";
535                 foreach ($values as $v) {
536                         if ($v == $default)
537                                 $sel = "selected=\"1\"";
538                          else
539                                 $sel = "";
540
541                         $v = trim($v);
542
543                         print "<option value=\"$v\" $sel>$v</option>";
544                 }
545                 print "</select>";
546         }
547
548         function print_select_hash($id, $default, $values, $attributes = "") {
549                 print "<select name=\"$id\" id='$id' $attributes>";
550                 foreach (array_keys($values) as $v) {
551                         if ($v == $default)
552                                 $sel = 'selected="selected"';
553                          else
554                                 $sel = "";
555
556                         $v = trim($v);
557
558                         print "<option $sel value=\"$v\">".$values[$v]."</option>";
559                 }
560
561                 print "</select>";
562         }
563
564         function print_radio($id, $default, $true_is, $values, $attributes = "") {
565                 foreach ($values as $v) {
566
567                         if ($v == $default)
568                                 $sel = "checked";
569                          else
570                                 $sel = "";
571
572                         if ($v == $true_is) {
573                                 $sel .= " value=\"1\"";
574                         } else {
575                                 $sel .= " value=\"0\"";
576                         }
577
578                         print "<input class=\"noborder\" dojoType=\"dijit.form.RadioButton\"
579                                 type=\"radio\" $sel $attributes name=\"$id\">&nbsp;$v&nbsp;";
580
581                 }
582         }
583
584         function initialize_user_prefs($uid, $profile = false) {
585
586                 $uid = db_escape_string($uid);
587
588                 if (!$profile) {
589                         $profile = "NULL";
590                         $profile_qpart = "AND profile IS NULL";
591                 } else {
592                         $profile_qpart = "AND profile = '$profile'";
593                 }
594
595                 if (get_schema_version() < 63) $profile_qpart = "";
596
597                 db_query("BEGIN");
598
599                 $result = db_query("SELECT pref_name,def_value FROM ttrss_prefs");
600
601                 $u_result = db_query("SELECT pref_name
602                         FROM ttrss_user_prefs WHERE owner_uid = '$uid' $profile_qpart");
603
604                 $active_prefs = array();
605
606                 while ($line = db_fetch_assoc($u_result)) {
607                         array_push($active_prefs, $line["pref_name"]);
608                 }
609
610                 while ($line = db_fetch_assoc($result)) {
611                         if (array_search($line["pref_name"], $active_prefs) === FALSE) {
612 //                              print "adding " . $line["pref_name"] . "<br>";
613
614                                 $line["def_value"] = db_escape_string($line["def_value"]);
615                                 $line["pref_name"] = db_escape_string($line["pref_name"]);
616
617                                 if (get_schema_version() < 63) {
618                                         db_query("INSERT INTO ttrss_user_prefs
619                                                 (owner_uid,pref_name,value) VALUES
620                                                 ('$uid', '".$line["pref_name"]."','".$line["def_value"]."')");
621
622                                 } else {
623                                         db_query("INSERT INTO ttrss_user_prefs
624                                                 (owner_uid,pref_name,value, profile) VALUES
625                                                 ('$uid', '".$line["pref_name"]."','".$line["def_value"]."', $profile)");
626                                 }
627
628                         }
629                 }
630
631                 db_query("COMMIT");
632
633         }
634
635         function get_ssl_certificate_id() {
636                 if ($_SERVER["REDIRECT_SSL_CLIENT_M_SERIAL"]) {
637                         return sha1($_SERVER["REDIRECT_SSL_CLIENT_M_SERIAL"] .
638                                 $_SERVER["REDIRECT_SSL_CLIENT_V_START"] .
639                                 $_SERVER["REDIRECT_SSL_CLIENT_V_END"] .
640                                 $_SERVER["REDIRECT_SSL_CLIENT_S_DN"]);
641                 }
642                 return "";
643         }
644
645         function authenticate_user($login, $password, $check_only = false) {
646
647                 if (!SINGLE_USER_MODE) {
648                         $user_id = false;
649
650                         foreach (PluginHost::getInstance()->get_hooks(PluginHost::HOOK_AUTH_USER) as $plugin) {
651
652                                 $user_id = (int) $plugin->authenticate($login, $password);
653
654                                 if ($user_id) {
655                                         $_SESSION["auth_module"] = strtolower(get_class($plugin));
656                                         break;
657                                 }
658                         }
659
660                         if ($user_id && !$check_only) {
661                                 @session_start();
662
663                                 $_SESSION["uid"] = $user_id;
664                                 $_SESSION["version"] = VERSION_STATIC;
665
666                                 $result = db_query("SELECT login,access_level,pwd_hash FROM ttrss_users
667                                         WHERE id = '$user_id'");
668
669                                 $_SESSION["name"] = db_fetch_result($result, 0, "login");
670                                 $_SESSION["access_level"] = db_fetch_result($result, 0, "access_level");
671                                 $_SESSION["csrf_token"] = sha1(uniqid(rand(), true));
672
673                                 db_query("UPDATE ttrss_users SET last_login = NOW() WHERE id = " .
674                                         $_SESSION["uid"]);
675
676                                 $_SESSION["ip_address"] = $_SERVER["REMOTE_ADDR"];
677                                 $_SESSION["user_agent"] = sha1($_SERVER['HTTP_USER_AGENT']);
678                                 $_SESSION["pwd_hash"] = db_fetch_result($result, 0, "pwd_hash");
679
680                                 $_SESSION["last_version_check"] = time();
681
682                                 initialize_user_prefs($_SESSION["uid"]);
683
684                                 return true;
685                         }
686
687                         return false;
688
689                 } else {
690
691                         $_SESSION["uid"] = 1;
692                         $_SESSION["name"] = "admin";
693                         $_SESSION["access_level"] = 10;
694
695                         $_SESSION["hide_hello"] = true;
696                         $_SESSION["hide_logout"] = true;
697
698                         $_SESSION["auth_module"] = false;
699
700                         if (!$_SESSION["csrf_token"]) {
701                                 $_SESSION["csrf_token"] = sha1(uniqid(rand(), true));
702                         }
703
704                         $_SESSION["ip_address"] = $_SERVER["REMOTE_ADDR"];
705
706                         initialize_user_prefs($_SESSION["uid"]);
707
708                         return true;
709                 }
710         }
711
712         function make_password($length = 8) {
713
714                 $password = "";
715                 $possible = "0123456789abcdfghjkmnpqrstvwxyzABCDFGHJKMNPQRSTVWXYZ";
716
717         $i = 0;
718
719                 while ($i < $length) {
720                         $char = substr($possible, mt_rand(0, strlen($possible)-1), 1);
721
722                         if (!strstr($password, $char)) {
723                                 $password .= $char;
724                                 $i++;
725                         }
726                 }
727                 return $password;
728         }
729
730         // this is called after user is created to initialize default feeds, labels
731         // or whatever else
732
733         // user preferences are checked on every login, not here
734
735         function initialize_user($uid) {
736
737                 db_query("insert into ttrss_feeds (owner_uid,title,feed_url)
738                         values ('$uid', 'Tiny Tiny RSS: New Releases',
739                         'http://tt-rss.org/releases.rss')");
740
741                 db_query("insert into ttrss_feeds (owner_uid,title,feed_url)
742                         values ('$uid', 'Tiny Tiny RSS: Forum',
743                                 'http://tt-rss.org/forum/rss.php')");
744         }
745
746         function logout_user() {
747                 session_destroy();
748                 if (isset($_COOKIE[session_name()])) {
749                    setcookie(session_name(), '', time()-42000, '/');
750                 }
751         }
752
753         function validate_csrf($csrf_token) {
754                 return $csrf_token == $_SESSION['csrf_token'];
755         }
756
757         function load_user_plugins($owner_uid) {
758                 if ($owner_uid) {
759                         $plugins = get_pref("_ENABLED_PLUGINS", $owner_uid);
760
761                         PluginHost::getInstance()->load($plugins, PluginHost::KIND_USER, $owner_uid);
762
763                         if (get_schema_version() > 100) {
764                                 PluginHost::getInstance()->load_data();
765                         }
766                 }
767         }
768
769         function login_sequence() {
770                 if (SINGLE_USER_MODE) {
771                         @session_start();
772                         authenticate_user("admin", null);
773                         load_user_plugins($_SESSION["uid"]);
774                 } else {
775                         if (!validate_session()) $_SESSION["uid"] = false;
776
777                         if (!$_SESSION["uid"]) {
778
779                                 if (AUTH_AUTO_LOGIN && authenticate_user(null, null)) {
780                                     $_SESSION["ref_schema_version"] = get_schema_version(true);
781                                 } else {
782                                          authenticate_user(null, null, true);
783                                 }
784
785                                 if (!$_SESSION["uid"]) {
786                                         @session_destroy();
787                                         setcookie(session_name(), '', time()-42000, '/');
788
789                                         render_login_form();
790                                         exit;
791                                 }
792
793                         } else {
794                                 /* bump login timestamp */
795                                 db_query("UPDATE ttrss_users SET last_login = NOW() WHERE id = " .
796                                         $_SESSION["uid"]);
797                                 $_SESSION["last_login_update"] = time();
798                         }
799
800                         if ($_SESSION["uid"]) {
801                                 startup_gettext();
802                                 load_user_plugins($_SESSION["uid"]);
803
804                                 /* cleanup ccache */
805
806                                 db_query("DELETE FROM ttrss_counters_cache WHERE owner_uid = ".
807                                         $_SESSION["uid"] . " AND
808                                                 (SELECT COUNT(id) FROM ttrss_feeds WHERE
809                                                         ttrss_feeds.id = feed_id) = 0");
810
811                                 db_query("DELETE FROM ttrss_cat_counters_cache WHERE owner_uid = ".
812                                         $_SESSION["uid"] . " AND
813                                                 (SELECT COUNT(id) FROM ttrss_feed_categories WHERE
814                                                         ttrss_feed_categories.id = feed_id) = 0");
815
816                         }
817
818                 }
819         }
820
821         function truncate_string($str, $max_len, $suffix = '&hellip;') {
822                 if (mb_strlen($str, "utf-8") > $max_len - 3) {
823                         return mb_substr($str, 0, $max_len, "utf-8") . $suffix;
824                 } else {
825                         return $str;
826                 }
827         }
828
829         function convert_timestamp($timestamp, $source_tz, $dest_tz) {
830
831                 try {
832                         $source_tz = new DateTimeZone($source_tz);
833                 } catch (Exception $e) {
834                         $source_tz = new DateTimeZone('UTC');
835                 }
836
837                 try {
838                         $dest_tz = new DateTimeZone($dest_tz);
839                 } catch (Exception $e) {
840                         $dest_tz = new DateTimeZone('UTC');
841                 }
842
843                 $dt = new DateTime(date('Y-m-d H:i:s', $timestamp), $source_tz);
844                 return $dt->format('U') + $dest_tz->getOffset($dt);
845         }
846
847         function make_local_datetime($timestamp, $long, $owner_uid = false,
848                                         $no_smart_dt = false) {
849
850                 if (!$owner_uid) $owner_uid = $_SESSION['uid'];
851                 if (!$timestamp) $timestamp = '1970-01-01 0:00';
852
853                 global $utc_tz;
854                 global $user_tz;
855
856                 if (!$utc_tz) $utc_tz = new DateTimeZone('UTC');
857
858                 $timestamp = substr($timestamp, 0, 19);
859
860                 # We store date in UTC internally
861                 $dt = new DateTime($timestamp, $utc_tz);
862
863                 $user_tz_string = get_pref('USER_TIMEZONE', $owner_uid);
864
865                 if ($user_tz_string != 'Automatic') {
866
867                         try {
868                                 if (!$user_tz) $user_tz = new DateTimeZone($user_tz_string);
869                         } catch (Exception $e) {
870                                 $user_tz = $utc_tz;
871                         }
872
873                         $tz_offset = $user_tz->getOffset($dt);
874                 } else {
875                         $tz_offset = (int) -$_SESSION["clientTzOffset"];
876                 }
877
878                 $user_timestamp = $dt->format('U') + $tz_offset;
879
880                 if (!$no_smart_dt) {
881                         return smart_date_time($user_timestamp,
882                                 $tz_offset, $owner_uid);
883                 } else {
884                         if ($long)
885                                 $format = get_pref('LONG_DATE_FORMAT', $owner_uid);
886                         else
887                                 $format = get_pref('SHORT_DATE_FORMAT', $owner_uid);
888
889                         return date($format, $user_timestamp);
890                 }
891         }
892
893         function smart_date_time($timestamp, $tz_offset = 0, $owner_uid = false) {
894                 if (!$owner_uid) $owner_uid = $_SESSION['uid'];
895
896                 if (date("Y.m.d", $timestamp) == date("Y.m.d", time() + $tz_offset)) {
897                         return date("G:i", $timestamp);
898                 } else if (date("Y", $timestamp) == date("Y", time() + $tz_offset)) {
899                         $format = get_pref('SHORT_DATE_FORMAT', $owner_uid);
900                         return date($format, $timestamp);
901                 } else {
902                         $format = get_pref('LONG_DATE_FORMAT', $owner_uid);
903                         return date($format, $timestamp);
904                 }
905         }
906
907         function sql_bool_to_bool($s) {
908                 if ($s == "t" || $s == "1" || strtolower($s) == "true") {
909                         return true;
910                 } else {
911                         return false;
912                 }
913         }
914
915         function bool_to_sql_bool($s) {
916                 if ($s) {
917                         return "true";
918                 } else {
919                         return "false";
920                 }
921         }
922
923         // Session caching removed due to causing wrong redirects to upgrade
924         // script when get_schema_version() is called on an obsolete session
925         // created on a previous schema version.
926         function get_schema_version($nocache = false) {
927                 global $schema_version;
928
929                 if (!$schema_version && !$nocache) {
930                         $result = db_query("SELECT schema_version FROM ttrss_version");
931                         $version = db_fetch_result($result, 0, "schema_version");
932                         $schema_version = $version;
933                         return $version;
934                 } else {
935                         return $schema_version;
936                 }
937         }
938
939         function sanity_check() {
940                 require_once 'errors.php';
941
942                 $error_code = 0;
943                 $schema_version = get_schema_version(true);
944
945                 if ($schema_version != SCHEMA_VERSION) {
946                         $error_code = 5;
947                 }
948
949                 if (DB_TYPE == "mysql") {
950                         $result = db_query("SELECT true", false);
951                         if (db_num_rows($result) != 1) {
952                                 $error_code = 10;
953                         }
954                 }
955
956                 if (db_escape_string("testTEST") != "testTEST") {
957                         $error_code = 12;
958                 }
959
960                 return array("code" => $error_code, "message" => $ERRORS[$error_code]);
961         }
962
963         function file_is_locked($filename) {
964                 if (file_exists(LOCK_DIRECTORY . "/$filename")) {
965                         if (function_exists('flock')) {
966                                 $fp = @fopen(LOCK_DIRECTORY . "/$filename", "r");
967                                 if ($fp) {
968                                         if (flock($fp, LOCK_EX | LOCK_NB)) {
969                                                 flock($fp, LOCK_UN);
970                                                 fclose($fp);
971                                                 return false;
972                                         }
973                                         fclose($fp);
974                                         return true;
975                                 } else {
976                                         return false;
977                                 }
978                         }
979                         return true; // consider the file always locked and skip the test
980                 } else {
981                         return false;
982                 }
983         }
984
985
986         function make_lockfile($filename) {
987                 $fp = fopen(LOCK_DIRECTORY . "/$filename", "w");
988
989                 if ($fp && flock($fp, LOCK_EX | LOCK_NB)) {
990                         if (function_exists('posix_getpid')) {
991                                 fwrite($fp, posix_getpid() . "\n");
992                         }
993                         return $fp;
994                 } else {
995                         return false;
996                 }
997         }
998
999         function make_stampfile($filename) {
1000                 $fp = fopen(LOCK_DIRECTORY . "/$filename", "w");
1001
1002                 if (flock($fp, LOCK_EX | LOCK_NB)) {
1003                         fwrite($fp, time() . "\n");
1004                         flock($fp, LOCK_UN);
1005                         fclose($fp);
1006                         return true;
1007                 } else {
1008                         return false;
1009                 }
1010         }
1011
1012         function sql_random_function() {
1013                 if (DB_TYPE == "mysql") {
1014                         return "RAND()";
1015                 } else {
1016                         return "RANDOM()";
1017                 }
1018         }
1019
1020         function catchup_feed($feed, $cat_view, $owner_uid = false, $max_id = false, $mode = 'all') {
1021
1022                         if (!$owner_uid) $owner_uid = $_SESSION['uid'];
1023
1024                         //if (preg_match("/^-?[0-9][0-9]*$/", $feed) != false) {
1025
1026                         // Todo: all this interval stuff needs some generic generator function
1027
1028                         $date_qpart = "false";
1029
1030                         switch ($mode) {
1031                         case "1day":
1032                                 if (DB_TYPE == "pgsql") {
1033                                         $date_qpart = "date_entered < NOW() - INTERVAL '1 day' ";
1034                                 } else {
1035                                         $date_qpart = "date_entered < DATE_SUB(NOW(), INTERVAL 1 DAY) ";
1036                                 }
1037                                 break;
1038                         case "1week":
1039                                 if (DB_TYPE == "pgsql") {
1040                                         $date_qpart = "date_entered < NOW() - INTERVAL '1 week' ";
1041                                 } else {
1042                                         $date_qpart = "date_entered < DATE_SUB(NOW(), INTERVAL 1 WEEK) ";
1043                                 }
1044                                 break;
1045                         case "2weeks":
1046                                 if (DB_TYPE == "pgsql") {
1047                                         $date_qpart = "date_entered < NOW() - INTERVAL '2 week' ";
1048                                 } else {
1049                                         $date_qpart = "date_entered < DATE_SUB(NOW(), INTERVAL 2 WEEK) ";
1050                                 }
1051                                 break;
1052                         default:
1053                                 $date_qpart = "true";
1054                         }
1055
1056                         if (is_numeric($feed)) {
1057                                 if ($cat_view) {
1058
1059                                         if ($feed >= 0) {
1060
1061                                                 if ($feed > 0) {
1062                                                         $children = getChildCategories($feed, $owner_uid);
1063                                                         array_push($children, $feed);
1064
1065                                                         $children = join(",", $children);
1066
1067                                                         $cat_qpart = "cat_id IN ($children)";
1068                                                 } else {
1069                                                         $cat_qpart = "cat_id IS NULL";
1070                                                 }
1071
1072                                                 db_query("UPDATE ttrss_user_entries
1073                                                         SET unread = false, last_read = NOW() WHERE ref_id IN
1074                                                                 (SELECT id FROM
1075                                                                         (SELECT id FROM ttrss_entries, ttrss_user_entries WHERE ref_id = id
1076                                                                                 AND owner_uid = $owner_uid AND unread = true AND feed_id IN
1077                                                                                         (SELECT id FROM ttrss_feeds WHERE $cat_qpart) AND $date_qpart) as tmp)");
1078
1079                                         } else if ($feed == -2) {
1080
1081                                                 db_query("UPDATE ttrss_user_entries
1082                                                         SET unread = false,last_read = NOW() WHERE (SELECT COUNT(*)
1083                                                                 FROM ttrss_user_labels2 WHERE article_id = ref_id) > 0
1084                                                                 AND unread = true AND $date_qpart AND owner_uid = $owner_uid");
1085                                         }
1086
1087                                 } else if ($feed > 0) {
1088
1089                                         db_query("UPDATE ttrss_user_entries
1090                                                 SET unread = false, last_read = NOW() WHERE ref_id IN
1091                                                         (SELECT id FROM
1092                                                                 (SELECT id FROM ttrss_entries, ttrss_user_entries WHERE ref_id = id
1093                                                                         AND owner_uid = $owner_uid AND unread = true AND feed_id = $feed AND $date_qpart) as tmp)");
1094
1095                                 } else if ($feed < 0 && $feed > LABEL_BASE_INDEX) { // special, like starred
1096
1097                                         if ($feed == -1) {
1098                                                 db_query("UPDATE ttrss_user_entries
1099                                                         SET unread = false, last_read = NOW() WHERE ref_id IN
1100                                                                 (SELECT id FROM
1101                                                                         (SELECT id FROM ttrss_entries, ttrss_user_entries WHERE ref_id = id
1102                                                                                 AND owner_uid = $owner_uid AND unread = true AND marked = true AND $date_qpart) as tmp)");
1103                                         }
1104
1105                                         if ($feed == -2) {
1106                                                 db_query("UPDATE ttrss_user_entries
1107                                                         SET unread = false, last_read = NOW() WHERE ref_id IN
1108                                                                 (SELECT id FROM
1109                                                                         (SELECT id FROM ttrss_entries, ttrss_user_entries WHERE ref_id = id
1110                                                                                 AND owner_uid = $owner_uid AND unread = true AND published = true AND $date_qpart) as tmp)");
1111                                         }
1112
1113                                         if ($feed == -3) {
1114
1115                                                 $intl = get_pref("FRESH_ARTICLE_MAX_AGE");
1116
1117                                                 if (DB_TYPE == "pgsql") {
1118                                                         $match_part = "date_entered > NOW() - INTERVAL '$intl hour' ";
1119                                                 } else {
1120                                                         $match_part = "date_entered > DATE_SUB(NOW(),
1121                                                                 INTERVAL $intl HOUR) ";
1122                                                 }
1123
1124                                                 db_query("UPDATE ttrss_user_entries
1125                                                         SET unread = false, last_read = NOW() WHERE ref_id IN
1126                                                                 (SELECT id FROM
1127                                                                         (SELECT id FROM ttrss_entries, ttrss_user_entries WHERE ref_id = id
1128                                                                                 AND owner_uid = $owner_uid AND unread = true AND $date_qpart AND $match_part) as tmp)");
1129                                         }
1130
1131                                         if ($feed == -4) {
1132                                                 db_query("UPDATE ttrss_user_entries
1133                                                         SET unread = false, last_read = NOW() WHERE ref_id IN
1134                                                                 (SELECT id FROM
1135                                                                         (SELECT id FROM ttrss_entries, ttrss_user_entries WHERE ref_id = id
1136                                                                                 AND owner_uid = $owner_uid AND unread = true AND $date_qpart) as tmp)");
1137                                         }
1138
1139                                 } else if ($feed < LABEL_BASE_INDEX) { // label
1140
1141                                         $label_id = feed_to_label_id($feed);
1142
1143                                         db_query("UPDATE ttrss_user_entries
1144                                                 SET unread = false, last_read = NOW() WHERE ref_id IN
1145                                                         (SELECT id FROM
1146                                                                 (SELECT ttrss_entries.id FROM ttrss_entries, ttrss_user_entries, ttrss_user_labels2 WHERE ref_id = id
1147                                                                         AND label_id = '$label_id' AND ref_id = article_id
1148                                                                         AND owner_uid = $owner_uid AND unread = true AND $date_qpart) as tmp)");
1149
1150                                 }
1151
1152                                 ccache_update($feed, $owner_uid, $cat_view);
1153
1154                         } else { // tag
1155                                 db_query("UPDATE ttrss_user_entries
1156                                         SET unread = false, last_read = NOW() WHERE ref_id IN
1157                                                 (SELECT id FROM
1158                                                         (SELECT ttrss_entries.id FROM ttrss_entries, ttrss_user_entries, ttrss_tags WHERE ref_id = ttrss_entries.id
1159                                                                 AND post_int_id = int_id AND tag_name = '$feed'
1160                                                                 AND ttrss_user_entries.owner_uid = $owner_uid AND unread = true AND $date_qpart) as tmp)");
1161
1162                         }
1163         }
1164
1165         function getAllCounters() {
1166                 $data = getGlobalCounters();
1167
1168                 $data = array_merge($data, getVirtCounters());
1169                 $data = array_merge($data, getLabelCounters());
1170                 $data = array_merge($data, getFeedCounters());
1171                 $data = array_merge($data, getCategoryCounters());
1172
1173                 return $data;
1174         }
1175
1176         function getCategoryTitle($cat_id) {
1177
1178                 if ($cat_id == -1) {
1179                         return __("Special");
1180                 } else if ($cat_id == -2) {
1181                         return __("Labels");
1182                 } else {
1183
1184                         $result = db_query("SELECT title FROM ttrss_feed_categories WHERE
1185                                 id = '$cat_id'");
1186
1187                         if (db_num_rows($result) == 1) {
1188                                 return db_fetch_result($result, 0, "title");
1189                         } else {
1190                                 return __("Uncategorized");
1191                         }
1192                 }
1193         }
1194
1195
1196         function getCategoryCounters() {
1197                 $ret_arr = array();
1198
1199                 /* Labels category */
1200
1201                 $cv = array("id" => -2, "kind" => "cat",
1202                         "counter" => getCategoryUnread(-2));
1203
1204                 array_push($ret_arr, $cv);
1205
1206                 $result = db_query("SELECT id AS cat_id, value AS unread,
1207                         (SELECT COUNT(id) FROM ttrss_feed_categories AS c2
1208                                 WHERE c2.parent_cat = ttrss_feed_categories.id) AS num_children
1209                         FROM ttrss_feed_categories, ttrss_cat_counters_cache
1210                         WHERE ttrss_cat_counters_cache.feed_id = id AND
1211                         ttrss_cat_counters_cache.owner_uid = ttrss_feed_categories.owner_uid AND
1212                         ttrss_feed_categories.owner_uid = " . $_SESSION["uid"]);
1213
1214                 while ($line = db_fetch_assoc($result)) {
1215                         $line["cat_id"] = (int) $line["cat_id"];
1216
1217                         if ($line["num_children"] > 0) {
1218                                 $child_counter = getCategoryChildrenUnread($line["cat_id"], $_SESSION["uid"]);
1219                         } else {
1220                                 $child_counter = 0;
1221                         }
1222
1223                         $cv = array("id" => $line["cat_id"], "kind" => "cat",
1224                                 "counter" => $line["unread"] + $child_counter);
1225
1226                         array_push($ret_arr, $cv);
1227                 }
1228
1229                 /* Special case: NULL category doesn't actually exist in the DB */
1230
1231                 $cv = array("id" => 0, "kind" => "cat",
1232                         "counter" => (int) ccache_find(0, $_SESSION["uid"], true));
1233
1234                 array_push($ret_arr, $cv);
1235
1236                 return $ret_arr;
1237         }
1238
1239         // only accepts real cats (>= 0)
1240         function getCategoryChildrenUnread($cat, $owner_uid = false) {
1241                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1242
1243                 $result = db_query("SELECT id FROM ttrss_feed_categories WHERE parent_cat = '$cat'
1244                                 AND owner_uid = $owner_uid");
1245
1246                 $unread = 0;
1247
1248                 while ($line = db_fetch_assoc($result)) {
1249                         $unread += getCategoryUnread($line["id"], $owner_uid);
1250                         $unread += getCategoryChildrenUnread($line["id"], $owner_uid);
1251                 }
1252
1253                 return $unread;
1254         }
1255
1256         function getCategoryUnread($cat, $owner_uid = false) {
1257
1258                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1259
1260                 if ($cat >= 0) {
1261
1262                         if ($cat != 0) {
1263                                 $cat_query = "cat_id = '$cat'";
1264                         } else {
1265                                 $cat_query = "cat_id IS NULL";
1266                         }
1267
1268                         $result = db_query("SELECT id FROM ttrss_feeds WHERE $cat_query
1269                                         AND owner_uid = " . $owner_uid);
1270
1271                         $cat_feeds = array();
1272                         while ($line = db_fetch_assoc($result)) {
1273                                 array_push($cat_feeds, "feed_id = " . $line["id"]);
1274                         }
1275
1276                         if (count($cat_feeds) == 0) return 0;
1277
1278                         $match_part = implode(" OR ", $cat_feeds);
1279
1280                         $result = db_query("SELECT COUNT(int_id) AS unread
1281                                 FROM ttrss_user_entries
1282                                 WHERE   unread = true AND ($match_part)
1283                                 AND owner_uid = " . $owner_uid);
1284
1285                         $unread = 0;
1286
1287                         # this needs to be rewritten
1288                         while ($line = db_fetch_assoc($result)) {
1289                                 $unread += $line["unread"];
1290                         }
1291
1292                         return $unread;
1293                 } else if ($cat == -1) {
1294                         return getFeedUnread(-1) + getFeedUnread(-2) + getFeedUnread(-3) + getFeedUnread(0);
1295                 } else if ($cat == -2) {
1296
1297                         $result = db_query("
1298                                 SELECT COUNT(unread) AS unread FROM
1299                                         ttrss_user_entries, ttrss_user_labels2
1300                                 WHERE article_id = ref_id AND unread = true
1301                                         AND ttrss_user_entries.owner_uid = '$owner_uid'");
1302
1303                         $unread = db_fetch_result($result, 0, "unread");
1304
1305                         return $unread;
1306
1307                 }
1308         }
1309
1310         function getFeedUnread($feed, $is_cat = false) {
1311                 return getFeedArticles($feed, $is_cat, true, $_SESSION["uid"]);
1312         }
1313
1314         function getLabelUnread($label_id, $owner_uid = false) {
1315                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1316
1317                 $result = db_query("SELECT COUNT(ref_id) AS unread FROM ttrss_user_entries, ttrss_user_labels2
1318                         WHERE owner_uid = '$owner_uid' AND unread = true AND label_id = '$label_id' AND article_id = ref_id");
1319
1320                 if (db_num_rows($result) != 0) {
1321                         return db_fetch_result($result, 0, "unread");
1322                 } else {
1323                         return 0;
1324                 }
1325         }
1326
1327         function getFeedArticles($feed, $is_cat = false, $unread_only = false,
1328                 $owner_uid = false) {
1329
1330                 $n_feed = (int) $feed;
1331                 $need_entries = false;
1332
1333                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1334
1335                 if ($unread_only) {
1336                         $unread_qpart = "unread = true";
1337                 } else {
1338                         $unread_qpart = "true";
1339                 }
1340
1341                 if ($is_cat) {
1342                         return getCategoryUnread($n_feed, $owner_uid);
1343                 } else if ($n_feed == -6) {
1344                         return 0;
1345                 } else if ($feed != "0" && $n_feed == 0) {
1346
1347                         $feed = db_escape_string($feed);
1348
1349                         $result = db_query("SELECT SUM((SELECT COUNT(int_id)
1350                                 FROM ttrss_user_entries,ttrss_entries WHERE int_id = post_int_id
1351                                         AND ref_id = id AND $unread_qpart)) AS count FROM ttrss_tags
1352                                 WHERE owner_uid = $owner_uid AND tag_name = '$feed'");
1353                         return db_fetch_result($result, 0, "count");
1354
1355                 } else if ($n_feed == -1) {
1356                         $match_part = "marked = true";
1357                 } else if ($n_feed == -2) {
1358                         $match_part = "published = true";
1359                 } else if ($n_feed == -3) {
1360                         $match_part = "unread = true AND score >= 0";
1361
1362                         $intl = get_pref("FRESH_ARTICLE_MAX_AGE", $owner_uid);
1363
1364                         if (DB_TYPE == "pgsql") {
1365                                 $match_part .= " AND updated > NOW() - INTERVAL '$intl hour' ";
1366                         } else {
1367                                 $match_part .= " AND updated > DATE_SUB(NOW(), INTERVAL $intl HOUR) ";
1368                         }
1369
1370                         $need_entries = true;
1371
1372                 } else if ($n_feed == -4) {
1373                         $match_part = "true";
1374                 } else if ($n_feed >= 0) {
1375
1376                         if ($n_feed != 0) {
1377                                 $match_part = "feed_id = '$n_feed'";
1378                         } else {
1379                                 $match_part = "feed_id IS NULL";
1380                         }
1381
1382                 } else if ($feed < LABEL_BASE_INDEX) {
1383
1384                         $label_id = feed_to_label_id($feed);
1385
1386                         return getLabelUnread($label_id, $owner_uid);
1387
1388                 }
1389
1390                 if ($match_part) {
1391
1392                         if ($need_entries) {
1393                                 $from_qpart = "ttrss_user_entries,ttrss_entries";
1394                                 $from_where = "ttrss_entries.id = ttrss_user_entries.ref_id AND";
1395                         } else {
1396                                 $from_qpart = "ttrss_user_entries";
1397                         }
1398
1399                         $query = "SELECT count(int_id) AS unread
1400                                 FROM $from_qpart WHERE
1401                                 $unread_qpart AND $from_where ($match_part) AND ttrss_user_entries.owner_uid = $owner_uid";
1402
1403                         //echo "[$feed/$query]\n";
1404
1405                         $result = db_query($query);
1406
1407                 } else {
1408
1409                         $result = db_query("SELECT COUNT(post_int_id) AS unread
1410                                 FROM ttrss_tags,ttrss_user_entries,ttrss_entries
1411                                 WHERE tag_name = '$feed' AND post_int_id = int_id AND ref_id = ttrss_entries.id
1412                                 AND $unread_qpart AND ttrss_tags.owner_uid = " . $owner_uid);
1413                 }
1414
1415                 $unread = db_fetch_result($result, 0, "unread");
1416
1417                 return $unread;
1418         }
1419
1420         function getGlobalUnread($user_id = false) {
1421
1422                 if (!$user_id) {
1423                         $user_id = $_SESSION["uid"];
1424                 }
1425
1426                 $result = db_query("SELECT SUM(value) AS c_id FROM ttrss_counters_cache
1427                         WHERE owner_uid = '$user_id' AND feed_id > 0");
1428
1429                 $c_id = db_fetch_result($result, 0, "c_id");
1430
1431                 return $c_id;
1432         }
1433
1434         function getGlobalCounters($global_unread = -1) {
1435                 $ret_arr = array();
1436
1437                 if ($global_unread == -1) {
1438                         $global_unread = getGlobalUnread();
1439                 }
1440
1441                 $cv = array("id" => "global-unread",
1442                         "counter" => (int) $global_unread);
1443
1444                 array_push($ret_arr, $cv);
1445
1446                 $result = db_query("SELECT COUNT(id) AS fn FROM
1447                         ttrss_feeds WHERE owner_uid = " . $_SESSION["uid"]);
1448
1449                 $subscribed_feeds = db_fetch_result($result, 0, "fn");
1450
1451                 $cv = array("id" => "subscribed-feeds",
1452                         "counter" => (int) $subscribed_feeds);
1453
1454                 array_push($ret_arr, $cv);
1455
1456                 return $ret_arr;
1457         }
1458
1459         function getVirtCounters() {
1460
1461                 $ret_arr = array();
1462
1463                 for ($i = 0; $i >= -4; $i--) {
1464
1465                         $count = getFeedUnread($i);
1466
1467                         if ($i == 0 || $i == -1 || $i == -2)
1468                                 $auxctr = getFeedArticles($i, false);
1469                         else
1470                                 $auxctr = 0;
1471
1472                         $cv = array("id" => $i,
1473                                 "counter" => (int) $count,
1474                                 "auxcounter" => $auxctr);
1475
1476 //                      if (get_pref('EXTENDED_FEEDLIST'))
1477 //                              $cv["xmsg"] = getFeedArticles($i)." ".__("total");
1478
1479                         array_push($ret_arr, $cv);
1480                 }
1481
1482                 $feeds = PluginHost::getInstance()->get_feeds(-1);
1483
1484                 if (is_array($feeds)) {
1485                         foreach ($feeds as $feed) {
1486                                 $cv = array("id" => PluginHost::pfeed_to_feed_id($feed['id']),
1487                                         "counter" => $feed['sender']->get_unread($feed['id']));
1488                                         array_push($ret_arr, $cv);
1489                         }
1490                 }
1491
1492                 return $ret_arr;
1493         }
1494
1495         function getLabelCounters($descriptions = false) {
1496
1497                 $ret_arr = array();
1498
1499                 $owner_uid = $_SESSION["uid"];
1500
1501                 $result = db_query("SELECT id,caption,COUNT(u1.unread) AS unread,COUNT(u2.unread) AS total
1502                         FROM ttrss_labels2 LEFT JOIN ttrss_user_labels2 ON
1503                                 (ttrss_labels2.id = label_id)
1504                                 LEFT JOIN ttrss_user_entries AS u1 ON (u1.ref_id = article_id AND u1.unread = true
1505                                         AND u1.owner_uid = $owner_uid)
1506                                 LEFT JOIN ttrss_user_entries AS u2 ON (u2.ref_id = article_id AND u2.unread = false
1507                                         AND u2.owner_uid = $owner_uid)
1508                                 WHERE ttrss_labels2.owner_uid = $owner_uid GROUP BY ttrss_labels2.id,
1509                                         ttrss_labels2.caption");
1510
1511                 while ($line = db_fetch_assoc($result)) {
1512
1513                         $id = label_to_feed_id($line["id"]);
1514
1515                         $cv = array("id" => $id,
1516                                 "counter" => (int) $line["unread"],
1517                                 "auxcounter" => (int) $line["total"]);
1518
1519                         if ($descriptions)
1520                                 $cv["description"] = $line["caption"];
1521
1522                         array_push($ret_arr, $cv);
1523                 }
1524
1525                 return $ret_arr;
1526         }
1527
1528         function getFeedCounters($active_feed = false) {
1529
1530                 $ret_arr = array();
1531
1532                 $query = "SELECT ttrss_feeds.id,
1533                                 ttrss_feeds.title,
1534                                 ".SUBSTRING_FOR_DATE."(ttrss_feeds.last_updated,1,19) AS last_updated,
1535                                 last_error, value AS count
1536                         FROM ttrss_feeds, ttrss_counters_cache
1537                         WHERE ttrss_feeds.owner_uid = ".$_SESSION["uid"]."
1538                                 AND ttrss_counters_cache.owner_uid = ttrss_feeds.owner_uid
1539                                 AND ttrss_counters_cache.feed_id = id";
1540
1541                 $result = db_query($query);
1542                 $fctrs_modified = false;
1543
1544                 while ($line = db_fetch_assoc($result)) {
1545
1546                         $id = $line["id"];
1547                         $count = $line["count"];
1548                         $last_error = htmlspecialchars($line["last_error"]);
1549
1550                         $last_updated = make_local_datetime($line['last_updated'], false);
1551
1552                         $has_img = feed_has_icon($id);
1553
1554                         if (date('Y') - date('Y', strtotime($line['last_updated'])) > 2)
1555                                 $last_updated = '';
1556
1557                         $cv = array("id" => $id,
1558                                 "updated" => $last_updated,
1559                                 "counter" => (int) $count,
1560                                 "has_img" => (int) $has_img);
1561
1562                         if ($last_error)
1563                                 $cv["error"] = $last_error;
1564
1565 //                      if (get_pref('EXTENDED_FEEDLIST'))
1566 //                              $cv["xmsg"] = getFeedArticles($id)." ".__("total");
1567
1568                         if ($active_feed && $id == $active_feed)
1569                                 $cv["title"] = truncate_string($line["title"], 30);
1570
1571                         array_push($ret_arr, $cv);
1572
1573                 }
1574
1575                 return $ret_arr;
1576         }
1577
1578         function get_pgsql_version() {
1579                 $result = db_query("SELECT version() AS version");
1580                 $version = explode(" ", db_fetch_result($result, 0, "version"));
1581                 return $version[1];
1582         }
1583
1584         /**
1585          * @return array (code => Status code, message => error message if available)
1586          *
1587          *                 0 - OK, Feed already exists
1588          *                 1 - OK, Feed added
1589          *                 2 - Invalid URL
1590          *                 3 - URL content is HTML, no feeds available
1591          *                 4 - URL content is HTML which contains multiple feeds.
1592          *                     Here you should call extractfeedurls in rpc-backend
1593          *                     to get all possible feeds.
1594          *                 5 - Couldn't download the URL content.
1595          *                 6 - Content is an invalid XML.
1596          */
1597         function subscribe_to_feed($url, $cat_id = 0,
1598                         $auth_login = '', $auth_pass = '') {
1599
1600                 global $fetch_last_error;
1601
1602                 require_once "include/rssfuncs.php";
1603
1604                 $url = fix_url($url);
1605
1606                 if (!$url || !validate_feed_url($url)) return array("code" => 2);
1607
1608                 $contents = @fetch_file_contents($url, false, $auth_login, $auth_pass);
1609
1610                 if (!$contents) {
1611                         return array("code" => 5, "message" => $fetch_last_error);
1612                 }
1613
1614                 if (is_html($contents)) {
1615                         $feedUrls = get_feeds_from_html($url, $contents);
1616
1617                         if (count($feedUrls) == 0) {
1618                                 return array("code" => 3);
1619                         } else if (count($feedUrls) > 1) {
1620                                 return array("code" => 4, "feeds" => $feedUrls);
1621                         }
1622                         //use feed url as new URL
1623                         $url = key($feedUrls);
1624                 }
1625
1626                 /* libxml_use_internal_errors(true);
1627                 $doc = new DOMDocument();
1628                 $doc->loadXML($contents);
1629                 $error = libxml_get_last_error();
1630                 libxml_clear_errors();
1631
1632                 if ($error) {
1633                         $error_message = format_libxml_error($error);
1634
1635                         return array("code" => 6, "message" => $error_message);
1636                 } */
1637
1638                 if ($cat_id == "0" || !$cat_id) {
1639                         $cat_qpart = "NULL";
1640                 } else {
1641                         $cat_qpart = "'$cat_id'";
1642                 }
1643
1644                 $result = db_query(
1645                         "SELECT id FROM ttrss_feeds
1646                         WHERE feed_url = '$url' AND owner_uid = ".$_SESSION["uid"]);
1647
1648                 if (strlen(FEED_CRYPT_KEY) > 0) {
1649                         require_once "crypt.php";
1650                         $auth_pass = substr(encrypt_string($auth_pass), 0, 250);
1651                         $auth_pass_encrypted = 'true';
1652                 } else {
1653                         $auth_pass_encrypted = 'false';
1654                 }
1655
1656                 $auth_pass = db_escape_string($auth_pass);
1657
1658                 if (db_num_rows($result) == 0) {
1659                         $result = db_query(
1660                                 "INSERT INTO ttrss_feeds
1661                                         (owner_uid,feed_url,title,cat_id, auth_login,auth_pass,update_method,auth_pass_encrypted)
1662                                 VALUES ('".$_SESSION["uid"]."', '$url',
1663                                 '[Unknown]', $cat_qpart, '$auth_login', '$auth_pass', 0, $auth_pass_encrypted)");
1664
1665                         $result = db_query(
1666                                 "SELECT id FROM ttrss_feeds WHERE feed_url = '$url'
1667                                         AND owner_uid = " . $_SESSION["uid"]);
1668
1669                         $feed_id = db_fetch_result($result, 0, "id");
1670
1671                         if ($feed_id) {
1672                                 update_rss_feed($feed_id, true);
1673                         }
1674
1675                         return array("code" => 1);
1676                 } else {
1677                         return array("code" => 0);
1678                 }
1679         }
1680
1681         function print_feed_select($id, $default_id = "",
1682                 $attributes = "", $include_all_feeds = true,
1683                 $root_id = false, $nest_level = 0) {
1684
1685                 if (!$root_id) {
1686                         print "<select id=\"$id\" name=\"$id\" $attributes>";
1687                         if ($include_all_feeds) {
1688                                 $is_selected = ("0" == $default_id) ? "selected=\"1\"" : "";
1689                                 print "<option $is_selected value=\"0\">".__('All feeds')."</option>";
1690                         }
1691                 }
1692
1693                 if (get_pref('ENABLE_FEED_CATS')) {
1694
1695                         if ($root_id)
1696                                 $parent_qpart = "parent_cat = '$root_id'";
1697                         else
1698                                 $parent_qpart = "parent_cat IS NULL";
1699
1700                         $result = db_query("SELECT id,title,
1701                                 (SELECT COUNT(id) FROM ttrss_feed_categories AS c2 WHERE
1702                                         c2.parent_cat = ttrss_feed_categories.id) AS num_children
1703                                 FROM ttrss_feed_categories
1704                                 WHERE owner_uid = ".$_SESSION["uid"]." AND $parent_qpart ORDER BY title");
1705
1706                         while ($line = db_fetch_assoc($result)) {
1707
1708                                 for ($i = 0; $i < $nest_level; $i++)
1709                                         $line["title"] = " - " . $line["title"];
1710
1711                                 $is_selected = ("CAT:".$line["id"] == $default_id) ? "selected=\"1\"" : "";
1712
1713                                 printf("<option $is_selected value='CAT:%d'>%s</option>",
1714                                         $line["id"], htmlspecialchars($line["title"]));
1715
1716                                 if ($line["num_children"] > 0)
1717                                         print_feed_select($id, $default_id, $attributes,
1718                                                 $include_all_feeds, $line["id"], $nest_level+1);
1719
1720                                 $feed_result = db_query("SELECT id,title FROM ttrss_feeds
1721                                         WHERE cat_id = '".$line["id"]."' AND owner_uid = ".$_SESSION["uid"] . " ORDER BY title");
1722
1723                                 while ($fline = db_fetch_assoc($feed_result)) {
1724                                         $is_selected = ($fline["id"] == $default_id) ? "selected=\"1\"" : "";
1725
1726                                         $fline["title"] = " + " . $fline["title"];
1727
1728                                         for ($i = 0; $i < $nest_level; $i++)
1729                                                 $fline["title"] = " - " . $fline["title"];
1730
1731                                         printf("<option $is_selected value='%d'>%s</option>",
1732                                                 $fline["id"], htmlspecialchars($fline["title"]));
1733                                 }
1734                         }
1735
1736                         if (!$root_id) {
1737                                 $default_is_cat = ($default_id == "CAT:0");
1738                                 $is_selected = $default_is_cat ? "selected=\"1\"" : "";
1739
1740                                 printf("<option $is_selected value='CAT:0'>%s</option>",
1741                                         __("Uncategorized"));
1742
1743                                 $feed_result = db_query("SELECT id,title FROM ttrss_feeds
1744                                         WHERE cat_id IS NULL AND owner_uid = ".$_SESSION["uid"] . " ORDER BY title");
1745
1746                                 while ($fline = db_fetch_assoc($feed_result)) {
1747                                         $is_selected = ($fline["id"] == $default_id && !$default_is_cat) ? "selected=\"1\"" : "";
1748
1749                                         $fline["title"] = " + " . $fline["title"];
1750
1751                                         for ($i = 0; $i < $nest_level; $i++)
1752                                                 $fline["title"] = " - " . $fline["title"];
1753
1754                                         printf("<option $is_selected value='%d'>%s</option>",
1755                                                 $fline["id"], htmlspecialchars($fline["title"]));
1756                                 }
1757                         }
1758
1759                 } else {
1760                         $result = db_query("SELECT id,title FROM ttrss_feeds
1761                                 WHERE owner_uid = ".$_SESSION["uid"]." ORDER BY title");
1762
1763                         while ($line = db_fetch_assoc($result)) {
1764
1765                                 $is_selected = ($line["id"] == $default_id) ? "selected=\"1\"" : "";
1766
1767                                 printf("<option $is_selected value='%d'>%s</option>",
1768                                         $line["id"], htmlspecialchars($line["title"]));
1769                         }
1770                 }
1771
1772                 if (!$root_id) {
1773                         print "</select>";
1774                 }
1775         }
1776
1777         function print_feed_cat_select($id, $default_id,
1778                 $attributes, $include_all_cats = true, $root_id = false, $nest_level = 0) {
1779
1780                         if (!$root_id) {
1781                                         print "<select id=\"$id\" name=\"$id\" default=\"$default_id\" onchange=\"catSelectOnChange(this)\" $attributes>";
1782                         }
1783
1784                         if ($root_id)
1785                                 $parent_qpart = "parent_cat = '$root_id'";
1786                         else
1787                                 $parent_qpart = "parent_cat IS NULL";
1788
1789                         $result = db_query("SELECT id,title,
1790                                 (SELECT COUNT(id) FROM ttrss_feed_categories AS c2 WHERE
1791                                         c2.parent_cat = ttrss_feed_categories.id) AS num_children
1792                                 FROM ttrss_feed_categories
1793                                 WHERE owner_uid = ".$_SESSION["uid"]." AND $parent_qpart ORDER BY title");
1794
1795                         while ($line = db_fetch_assoc($result)) {
1796                                 if ($line["id"] == $default_id) {
1797                                         $is_selected = "selected=\"1\"";
1798                                 } else {
1799                                         $is_selected = "";
1800                                 }
1801
1802                                 for ($i = 0; $i < $nest_level; $i++)
1803                                         $line["title"] = " - " . $line["title"];
1804
1805                                 if ($line["title"])
1806                                         printf("<option $is_selected value='%d'>%s</option>",
1807                                                 $line["id"], htmlspecialchars($line["title"]));
1808
1809                                 if ($line["num_children"] > 0)
1810                                         print_feed_cat_select($id, $default_id, $attributes,
1811                                                 $include_all_cats, $line["id"], $nest_level+1);
1812                         }
1813
1814                         if (!$root_id) {
1815                                 if ($include_all_cats) {
1816                                         if (db_num_rows($result) > 0) {
1817                                                 print "<option disabled=\"1\">--------</option>";
1818                                         }
1819
1820                                         if ($default_id == 0) {
1821                                                 $is_selected = "selected=\"1\"";
1822                                         } else {
1823                                                 $is_selected = "";
1824                                         }
1825
1826                                         print "<option $is_selected value=\"0\">".__('Uncategorized')."</option>";
1827                                 }
1828                                 print "</select>";
1829                         }
1830                 }
1831
1832         function checkbox_to_sql_bool($val) {
1833                 return ($val == "on") ? "true" : "false";
1834         }
1835
1836         function getFeedCatTitle($id) {
1837                 if ($id == -1) {
1838                         return __("Special");
1839                 } else if ($id < LABEL_BASE_INDEX) {
1840                         return __("Labels");
1841                 } else if ($id > 0) {
1842                         $result = db_query("SELECT ttrss_feed_categories.title
1843                                 FROM ttrss_feeds, ttrss_feed_categories WHERE ttrss_feeds.id = '$id' AND
1844                                         cat_id = ttrss_feed_categories.id");
1845                         if (db_num_rows($result) == 1) {
1846                                 return db_fetch_result($result, 0, "title");
1847                         } else {
1848                                 return __("Uncategorized");
1849                         }
1850                 } else {
1851                         return "getFeedCatTitle($id) failed";
1852                 }
1853
1854         }
1855
1856         function getFeedIcon($id) {
1857                 switch ($id) {
1858                 case 0:
1859                         return "images/archive.png";
1860                         break;
1861                 case -1:
1862                         return "images/mark_set.svg";
1863                         break;
1864                 case -2:
1865                         return "images/pub_set.svg";
1866                         break;
1867                 case -3:
1868                         return "images/fresh.png";
1869                         break;
1870                 case -4:
1871                         return "images/tag.png";
1872                         break;
1873                 case -6:
1874                         return "images/recently_read.png";
1875                         break;
1876                 default:
1877                         if ($id < LABEL_BASE_INDEX) {
1878                                 return "images/label.png";
1879                         } else {
1880                                 if (file_exists(ICONS_DIR . "/$id.ico"))
1881                                         return ICONS_URL . "/$id.ico";
1882                         }
1883                         break;
1884                 }
1885
1886                 return false;
1887         }
1888
1889         function getFeedTitle($id, $cat = false) {
1890                 if ($cat) {
1891                         return getCategoryTitle($id);
1892                 } else if ($id == -1) {
1893                         return __("Starred articles");
1894                 } else if ($id == -2) {
1895                         return __("Published articles");
1896                 } else if ($id == -3) {
1897                         return __("Fresh articles");
1898                 } else if ($id == -4) {
1899                         return __("All articles");
1900                 } else if ($id === 0 || $id === "0") {
1901                         return __("Archived articles");
1902                 } else if ($id == -6) {
1903                         return __("Recently read");
1904                 } else if ($id < LABEL_BASE_INDEX) {
1905                         $label_id = feed_to_label_id($id);
1906                         $result = db_query("SELECT caption FROM ttrss_labels2 WHERE id = '$label_id'");
1907                         if (db_num_rows($result) == 1) {
1908                                 return db_fetch_result($result, 0, "caption");
1909                         } else {
1910                                 return "Unknown label ($label_id)";
1911                         }
1912
1913                 } else if (is_numeric($id) && $id > 0) {
1914                         $result = db_query("SELECT title FROM ttrss_feeds WHERE id = '$id'");
1915                         if (db_num_rows($result) == 1) {
1916                                 return db_fetch_result($result, 0, "title");
1917                         } else {
1918                                 return "Unknown feed ($id)";
1919                         }
1920                 } else {
1921                         return $id;
1922                 }
1923         }
1924
1925         function make_init_params() {
1926                 $params = array();
1927
1928                 foreach (array("ON_CATCHUP_SHOW_NEXT_FEED", "HIDE_READ_FEEDS",
1929                         "ENABLE_FEED_CATS", "FEEDS_SORT_BY_UNREAD", "CONFIRM_FEED_CATCHUP",
1930                         "CDM_AUTO_CATCHUP", "FRESH_ARTICLE_MAX_AGE",
1931                         "HIDE_READ_SHOWS_SPECIAL", "COMBINED_DISPLAY_MODE") as $param) {
1932
1933                                  $params[strtolower($param)] = (int) get_pref($param);
1934                  }
1935
1936                 $params["icons_url"] = ICONS_URL;
1937                 $params["cookie_lifetime"] = SESSION_COOKIE_LIFETIME;
1938                 $params["default_view_mode"] = get_pref("_DEFAULT_VIEW_MODE");
1939                 $params["default_view_limit"] = (int) get_pref("_DEFAULT_VIEW_LIMIT");
1940                 $params["default_view_order_by"] = get_pref("_DEFAULT_VIEW_ORDER_BY");
1941                 $params["bw_limit"] = (int) $_SESSION["bw_limit"];
1942                 $params["label_base_index"] = (int) LABEL_BASE_INDEX;
1943
1944                 $result = db_query("SELECT MAX(id) AS mid, COUNT(*) AS nf FROM
1945                         ttrss_feeds WHERE owner_uid = " . $_SESSION["uid"]);
1946
1947                 $max_feed_id = db_fetch_result($result, 0, "mid");
1948                 $num_feeds = db_fetch_result($result, 0, "nf");
1949
1950                 $params["max_feed_id"] = (int) $max_feed_id;
1951                 $params["num_feeds"] = (int) $num_feeds;
1952
1953                 $params["collapsed_feedlist"] = (int) get_pref("_COLLAPSED_FEEDLIST");
1954                 $params["hotkeys"] = get_hotkeys_map();
1955
1956                 $params["csrf_token"] = $_SESSION["csrf_token"];
1957                 $params["widescreen"] = (int) $_COOKIE["ttrss_widescreen"];
1958
1959                 $params['simple_update'] = defined('SIMPLE_UPDATE_MODE') && SIMPLE_UPDATE_MODE;
1960
1961                 return $params;
1962         }
1963
1964         function get_hotkeys_info() {
1965                 $hotkeys = array(
1966                         __("Navigation") => array(
1967                                 "next_feed" => __("Open next feed"),
1968                                 "prev_feed" => __("Open previous feed"),
1969                                 "next_article" => __("Open next article"),
1970                                 "prev_article" => __("Open previous article"),
1971                                 "next_article_noscroll" => __("Open next article (don't scroll long articles)"),
1972                                 "prev_article_noscroll" => __("Open previous article (don't scroll long articles)"),
1973                                 "next_article_noexpand" => __("Move to next article (don't expand or mark read)"),
1974                                 "prev_article_noexpand" => __("Move to previous article (don't expand or mark read)"),
1975                                 "search_dialog" => __("Show search dialog")),
1976                         __("Article") => array(
1977                                 "toggle_mark" => __("Toggle starred"),
1978                                 "toggle_publ" => __("Toggle published"),
1979                                 "toggle_unread" => __("Toggle unread"),
1980                                 "edit_tags" => __("Edit tags"),
1981                                 "dismiss_selected" => __("Dismiss selected"),
1982                                 "dismiss_read" => __("Dismiss read"),
1983                                 "open_in_new_window" => __("Open in new window"),
1984                                 "catchup_below" => __("Mark below as read"),
1985                                 "catchup_above" => __("Mark above as read"),
1986                                 "article_scroll_down" => __("Scroll down"),
1987                                 "article_scroll_up" => __("Scroll up"),
1988                                 "select_article_cursor" => __("Select article under cursor"),
1989                                 "email_article" => __("Email article"),
1990                                 "close_article" => __("Close/collapse article"),
1991                                 "toggle_expand" => __("Toggle article expansion (combined mode)"),
1992                                 "toggle_widescreen" => __("Toggle widescreen mode"),
1993                                 "toggle_embed_original" => __("Toggle embed original")),
1994                         __("Article selection") => array(
1995                                 "select_all" => __("Select all articles"),
1996                                 "select_unread" => __("Select unread"),
1997                                 "select_marked" => __("Select starred"),
1998                                 "select_published" => __("Select published"),
1999                                 "select_invert" => __("Invert selection"),
2000                                 "select_none" => __("Deselect everything")),
2001                         __("Feed") => array(
2002                                 "feed_refresh" => __("Refresh current feed"),
2003                                 "feed_unhide_read" => __("Un/hide read feeds"),
2004                                 "feed_subscribe" => __("Subscribe to feed"),
2005                                 "feed_edit" => __("Edit feed"),
2006                                 "feed_catchup" => __("Mark as read"),
2007                                 "feed_reverse" => __("Reverse headlines"),
2008                                 "feed_debug_update" => __("Debug feed update"),
2009                                 "catchup_all" => __("Mark all feeds as read"),
2010                                 "cat_toggle_collapse" => __("Un/collapse current category"),
2011                                 "toggle_combined_mode" => __("Toggle combined mode"),
2012                                 "toggle_cdm_expanded" => __("Toggle auto expand in combined mode")),
2013                         __("Go to") => array(
2014                                 "goto_all" => __("All articles"),
2015                                 "goto_fresh" => __("Fresh"),
2016                                 "goto_marked" => __("Starred"),
2017                                 "goto_published" => __("Published"),
2018                                 "goto_tagcloud" => __("Tag cloud"),
2019                                 "goto_prefs" => __("Preferences")),
2020                         __("Other") => array(
2021                                 "create_label" => __("Create label"),
2022                                 "create_filter" => __("Create filter"),
2023                                 "collapse_sidebar" => __("Un/collapse sidebar"),
2024                                 "help_dialog" => __("Show help dialog"))
2025                         );
2026
2027                 foreach (PluginHost::getInstance()->get_hooks(PluginHost::HOOK_HOTKEY_INFO) as $plugin) {
2028                         $hotkeys = $plugin->hook_hotkey_info($hotkeys);
2029                 }
2030
2031                 return $hotkeys;
2032         }
2033
2034         function get_hotkeys_map() {
2035                 $hotkeys = array(
2036 //                      "navigation" => array(
2037                                 "k" => "next_feed",
2038                                 "j" => "prev_feed",
2039                                 "n" => "next_article",
2040                                 "p" => "prev_article",
2041                                 "(38)|up" => "prev_article",
2042                                 "(40)|down" => "next_article",
2043 //                              "^(38)|Ctrl-up" => "prev_article_noscroll",
2044 //                              "^(40)|Ctrl-down" => "next_article_noscroll",
2045                                 "(191)|/" => "search_dialog",
2046 //                      "article" => array(
2047                                 "s" => "toggle_mark",
2048                                 "*s" => "toggle_publ",
2049                                 "u" => "toggle_unread",
2050                                 "*t" => "edit_tags",
2051                                 "*d" => "dismiss_selected",
2052                                 "*x" => "dismiss_read",
2053                                 "o" => "open_in_new_window",
2054                                 "c p" => "catchup_below",
2055                                 "c n" => "catchup_above",
2056                                 "*n" => "article_scroll_down",
2057                                 "*p" => "article_scroll_up",
2058                                 "*(38)|Shift+up" => "article_scroll_up",
2059                                 "*(40)|Shift+down" => "article_scroll_down",
2060                                 "a *w" => "toggle_widescreen",
2061                                 "a e" => "toggle_embed_original",
2062                                 "e" => "email_article",
2063                                 "a q" => "close_article",
2064 //                      "article_selection" => array(
2065                                 "a a" => "select_all",
2066                                 "a u" => "select_unread",
2067                                 "a *u" => "select_marked",
2068                                 "a p" => "select_published",
2069                                 "a i" => "select_invert",
2070                                 "a n" => "select_none",
2071 //                      "feed" => array(
2072                                 "f r" => "feed_refresh",
2073                                 "f a" => "feed_unhide_read",
2074                                 "f s" => "feed_subscribe",
2075                                 "f e" => "feed_edit",
2076                                 "f q" => "feed_catchup",
2077                                 "f x" => "feed_reverse",
2078                                 "f *d" => "feed_debug_update",
2079                                 "f *c" => "toggle_combined_mode",
2080                                 "f c" => "toggle_cdm_expanded",
2081                                 "*q" => "catchup_all",
2082                                 "x" => "cat_toggle_collapse",
2083 //                      "goto" => array(
2084                                 "g a" => "goto_all",
2085                                 "g f" => "goto_fresh",
2086                                 "g s" => "goto_marked",
2087                                 "g p" => "goto_published",
2088                                 "g t" => "goto_tagcloud",
2089                                 "g *p" => "goto_prefs",
2090 //                      "other" => array(
2091                                 "(9)|Tab" => "select_article_cursor", // tab
2092                                 "c l" => "create_label",
2093                                 "c f" => "create_filter",
2094                                 "c s" => "collapse_sidebar",
2095                                 "^(191)|Ctrl+/" => "help_dialog",
2096                         );
2097
2098                 if (get_pref('COMBINED_DISPLAY_MODE')) {
2099                         $hotkeys["^(38)|Ctrl-up"] = "prev_article_noscroll";
2100                         $hotkeys["^(40)|Ctrl-down"] = "next_article_noscroll";
2101                 }
2102
2103                 foreach (PluginHost::getInstance()->get_hooks(PluginHost::HOOK_HOTKEY_MAP) as $plugin) {
2104                         $hotkeys = $plugin->hook_hotkey_map($hotkeys);
2105                 }
2106
2107                 $prefixes = array();
2108
2109                 foreach (array_keys($hotkeys) as $hotkey) {
2110                         $pair = explode(" ", $hotkey, 2);
2111
2112                         if (count($pair) > 1 && !in_array($pair[0], $prefixes)) {
2113                                 array_push($prefixes, $pair[0]);
2114                         }
2115                 }
2116
2117                 return array($prefixes, $hotkeys);
2118         }
2119
2120         function make_runtime_info() {
2121                 $data = array();
2122
2123                 $result = db_query("SELECT MAX(id) AS mid, COUNT(*) AS nf FROM
2124                         ttrss_feeds WHERE owner_uid = " . $_SESSION["uid"]);
2125
2126                 $max_feed_id = db_fetch_result($result, 0, "mid");
2127                 $num_feeds = db_fetch_result($result, 0, "nf");
2128
2129                 $data["max_feed_id"] = (int) $max_feed_id;
2130                 $data["num_feeds"] = (int) $num_feeds;
2131
2132                 $data['last_article_id'] = getLastArticleId();
2133                 $data['cdm_expanded'] = get_pref('CDM_EXPANDED');
2134
2135                 $data['dep_ts'] = calculate_dep_timestamp();
2136                 $data['reload_on_ts_change'] = !defined('_NO_RELOAD_ON_TS_CHANGE');
2137
2138                 if (file_exists(LOCK_DIRECTORY . "/update_daemon.lock")) {
2139
2140                         $data['daemon_is_running'] = (int) file_is_locked("update_daemon.lock");
2141
2142                         if (time() - $_SESSION["daemon_stamp_check"] > 30) {
2143
2144                                 $stamp = (int) @file_get_contents(LOCK_DIRECTORY . "/update_daemon.stamp");
2145
2146                                 if ($stamp) {
2147                                         $stamp_delta = time() - $stamp;
2148
2149                                         if ($stamp_delta > 1800) {
2150                                                 $stamp_check = 0;
2151                                         } else {
2152                                                 $stamp_check = 1;
2153                                                 $_SESSION["daemon_stamp_check"] = time();
2154                                         }
2155
2156                                         $data['daemon_stamp_ok'] = $stamp_check;
2157
2158                                         $stamp_fmt = date("Y.m.d, G:i", $stamp);
2159
2160                                         $data['daemon_stamp'] = $stamp_fmt;
2161                                 }
2162                         }
2163                 }
2164
2165                 if ($_SESSION["last_version_check"] + 86400 + rand(-1000, 1000) < time()) {
2166                                 $new_version_details = @check_for_update();
2167
2168                                 $data['new_version_available'] = (int) ($new_version_details != false);
2169
2170                                 $_SESSION["last_version_check"] = time();
2171                                 $_SESSION["version_data"] = $new_version_details;
2172                 }
2173
2174                 return $data;
2175         }
2176
2177         function search_to_sql($search) {
2178
2179                 $search_query_part = "";
2180
2181                 $keywords = explode(" ", $search);
2182                 $query_keywords = array();
2183
2184                 foreach ($keywords as $k) {
2185                         if (strpos($k, "-") === 0) {
2186                                 $k = substr($k, 1);
2187                                 $not = "NOT";
2188                         } else {
2189                                 $not = "";
2190                         }
2191
2192                         $commandpair = explode(":", mb_strtolower($k), 2);
2193
2194                         switch ($commandpair[0]) {
2195                         case "title":
2196                                 if ($commandpair[1]) {
2197                                         array_push($query_keywords, "($not (LOWER(ttrss_entries.title) LIKE '%".
2198                                                 db_escape_string(mb_strtolower($commandpair[1]))."%'))");
2199                                 } else {
2200                                         array_push($query_keywords, "(UPPER(ttrss_entries.title) $not LIKE UPPER('%$k%')
2201                                                         OR UPPER(ttrss_entries.content) $not LIKE UPPER('%$k%'))");
2202                                 }
2203                                 break;
2204                         case "author":
2205                                 if ($commandpair[1]) {
2206                                         array_push($query_keywords, "($not (LOWER(author) LIKE '%".
2207                                                 db_escape_string(mb_strtolower($commandpair[1]))."%'))");
2208                                 } else {
2209                                         array_push($query_keywords, "(UPPER(ttrss_entries.title) $not LIKE UPPER('%$k%')
2210                                                         OR UPPER(ttrss_entries.content) $not LIKE UPPER('%$k%'))");
2211                                 }
2212                                 break;
2213                         case "note":
2214                                 if ($commandpair[1]) {
2215                                         if ($commandpair[1] == "true")
2216                                                 array_push($query_keywords, "($not (note IS NOT NULL AND note != ''))");
2217                                         else if ($commandpair[1] == "false")
2218                                                 array_push($query_keywords, "($not (note IS NULL OR note = ''))");
2219                                         else
2220                                                 array_push($query_keywords, "($not (LOWER(note) LIKE '%".
2221                                                         db_escape_string(mb_strtolower($commandpair[1]))."%'))");
2222                                 } else {
2223                                         array_push($query_keywords, "(UPPER(ttrss_entries.title) $not LIKE UPPER('%$k%')
2224                                                         OR UPPER(ttrss_entries.content) $not LIKE UPPER('%$k%'))");
2225                                 }
2226                                 break;
2227                         case "star":
2228
2229                                 if ($commandpair[1]) {
2230                                         if ($commandpair[1] == "true")
2231                                                 array_push($query_keywords, "($not (marked = true))");
2232                                         else
2233                                                 array_push($query_keywords, "($not (marked = false))");
2234                                 } else {
2235                                         array_push($query_keywords, "(UPPER(ttrss_entries.title) $not LIKE UPPER('%$k%')
2236                                                         OR UPPER(ttrss_entries.content) $not LIKE UPPER('%$k%'))");
2237                                 }
2238                                 break;
2239                         case "pub":
2240                                 if ($commandpair[1]) {
2241                                         if ($commandpair[1] == "true")
2242                                                 array_push($query_keywords, "($not (published = true))");
2243                                         else
2244                                                 array_push($query_keywords, "($not (published = false))");
2245
2246                                 } else {
2247                                         array_push($query_keywords, "(UPPER(ttrss_entries.title) $not LIKE UPPER('%$k%')
2248                                                         OR UPPER(ttrss_entries.content) $not LIKE UPPER('%$k%'))");
2249                                 }
2250                                 break;
2251                         default:
2252                                 if (strpos($k, "@") === 0) {
2253
2254                                         $user_tz_string = get_pref('USER_TIMEZONE', $_SESSION['uid']);
2255                                         $orig_ts = strtotime(substr($k, 1));
2256                                         $k = date("Y-m-d", convert_timestamp($orig_ts, $user_tz_string, 'UTC'));
2257
2258                                         //$k = date("Y-m-d", strtotime(substr($k, 1)));
2259
2260                                         array_push($query_keywords, "(".SUBSTRING_FOR_DATE."(updated,1,LENGTH('$k')) $not = '$k')");
2261                                 } else {
2262                                         array_push($query_keywords, "(UPPER(ttrss_entries.title) $not LIKE UPPER('%$k%')
2263                                                         OR UPPER(ttrss_entries.content) $not LIKE UPPER('%$k%'))");
2264                                 }
2265                         }
2266                 }
2267
2268                 $search_query_part = implode("AND", $query_keywords);
2269
2270                 return $search_query_part;
2271         }
2272
2273         function getParentCategories($cat, $owner_uid) {
2274                 $rv = array();
2275
2276                 $result = db_query("SELECT parent_cat FROM ttrss_feed_categories
2277                         WHERE id = '$cat' AND parent_cat IS NOT NULL AND owner_uid = $owner_uid");
2278
2279                 while ($line = db_fetch_assoc($result)) {
2280                         array_push($rv, $line["parent_cat"]);
2281                         $rv = array_merge($rv, getParentCategories($line["parent_cat"], $owner_uid));
2282                 }
2283
2284                 return $rv;
2285         }
2286
2287         function getChildCategories($cat, $owner_uid) {
2288                 $rv = array();
2289
2290                 $result = db_query("SELECT id FROM ttrss_feed_categories
2291                         WHERE parent_cat = '$cat' AND owner_uid = $owner_uid");
2292
2293                 while ($line = db_fetch_assoc($result)) {
2294                         array_push($rv, $line["id"]);
2295                         $rv = array_merge($rv, getChildCategories($line["id"], $owner_uid));
2296                 }
2297
2298                 return $rv;
2299         }
2300
2301         function queryFeedHeadlines($feed, $limit, $view_mode, $cat_view, $search, $search_mode, $override_order = false, $offset = 0, $owner_uid = 0, $filter = false, $since_id = 0, $include_children = false, $ignore_vfeed_group = false) {
2302
2303                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
2304
2305                 $ext_tables_part = "";
2306
2307                         if ($search) {
2308
2309                                 if (SPHINX_ENABLED) {
2310                                         $ids = join(",", @sphinx_search($search, 0, 500));
2311
2312                                         if ($ids)
2313                                                 $search_query_part = "ref_id IN ($ids) AND ";
2314                                         else
2315                                                 $search_query_part = "ref_id = -1 AND ";
2316
2317                                 } else {
2318                                         $search_query_part = search_to_sql($search);
2319                                         $search_query_part .= " AND ";
2320                                 }
2321
2322                         } else {
2323                                 $search_query_part = "";
2324                         }
2325
2326                         if ($filter) {
2327
2328                                 if (DB_TYPE == "pgsql") {
2329                                         $query_strategy_part .= " AND updated > NOW() - INTERVAL '14 days' ";
2330                                 } else {
2331                                         $query_strategy_part .= " AND updated > DATE_SUB(NOW(), INTERVAL 14 DAY) ";
2332                                 }
2333
2334                                 $override_order = "updated DESC";
2335
2336                                 $filter_query_part = filter_to_sql($filter, $owner_uid);
2337
2338                                 // Try to check if SQL regexp implementation chokes on a valid regexp
2339
2340
2341                                 $result = db_query("SELECT true AS true_val FROM ttrss_entries,
2342                                         ttrss_user_entries, ttrss_feeds
2343                                         WHERE $filter_query_part LIMIT 1", false);
2344
2345                                 if ($result) {
2346                                         $test = db_fetch_result($result, 0, "true_val");
2347
2348                                         if (!$test) {
2349                                                 $filter_query_part = "false AND";
2350                                         } else {
2351                                                 $filter_query_part .= " AND";
2352                                         }
2353                                 } else {
2354                                         $filter_query_part = "false AND";
2355                                 }
2356
2357                         } else {
2358                                 $filter_query_part = "";
2359                         }
2360
2361                         if ($since_id) {
2362                                 $since_id_part = "ttrss_entries.id > $since_id AND ";
2363                         } else {
2364                                 $since_id_part = "";
2365                         }
2366
2367                         $view_query_part = "";
2368
2369                         if ($view_mode == "adaptive") {
2370                                 if ($search) {
2371                                         $view_query_part = " ";
2372                                 } else if ($feed != -1) {
2373
2374                                         $unread = getFeedUnread($feed, $cat_view);
2375
2376                                         if ($cat_view && $feed > 0 && $include_children)
2377                                                 $unread += getCategoryChildrenUnread($feed);
2378
2379                                         if ($unread > 0)
2380                                 $view_query_part = " unread = true AND ";
2381
2382                                 }
2383                         }
2384
2385                         if ($view_mode == "marked") {
2386                                 $view_query_part = " marked = true AND ";
2387                         }
2388
2389                         if ($view_mode == "has_note") {
2390                                 $view_query_part = " (note IS NOT NULL AND note != '') AND ";
2391                         }
2392
2393                         if ($view_mode == "published") {
2394                                 $view_query_part = " published = true AND ";
2395                         }
2396
2397                         if ($view_mode == "unread" && $feed != -6) {
2398                                 $view_query_part = " unread = true AND ";
2399                         }
2400
2401                         if ($limit > 0) {
2402                                 $limit_query_part = "LIMIT " . $limit;
2403                         }
2404
2405                         $allow_archived = false;
2406
2407                         $vfeed_query_part = "";
2408
2409                         // override query strategy and enable feed display when searching globally
2410                         if ($search && $search_mode == "all_feeds") {
2411                                 $query_strategy_part = "true";
2412                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2413                         /* tags */
2414                         } else if (!is_numeric($feed)) {
2415                                 $query_strategy_part = "true";
2416                                 $vfeed_query_part = "(SELECT title FROM ttrss_feeds WHERE
2417                                         id = feed_id) as feed_title,";
2418                         } else if ($search && $search_mode == "this_cat") {
2419                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2420
2421                                 if ($feed > 0) {
2422                                         if ($include_children) {
2423                                                 $subcats = getChildCategories($feed, $owner_uid);
2424                                                 array_push($subcats, $feed);
2425                                                 $cats_qpart = join(",", $subcats);
2426                                         } else {
2427                                                 $cats_qpart = $feed;
2428                                         }
2429
2430                                         $query_strategy_part = "ttrss_feeds.cat_id IN ($cats_qpart)";
2431
2432                                 } else {
2433                                         $query_strategy_part = "ttrss_feeds.cat_id IS NULL";
2434                                 }
2435
2436                         } else if ($feed > 0) {
2437
2438                                 if ($cat_view) {
2439
2440                                         if ($feed > 0) {
2441                                                 if ($include_children) {
2442                                                         # sub-cats
2443                                                         $subcats = getChildCategories($feed, $owner_uid);
2444
2445                                                         array_push($subcats, $feed);
2446                                                         $query_strategy_part = "cat_id IN (".
2447                                                                         implode(",", $subcats).")";
2448
2449                                                 } else {
2450                                                         $query_strategy_part = "cat_id = '$feed'";
2451                                                 }
2452
2453                                         } else {
2454                                                 $query_strategy_part = "cat_id IS NULL";
2455                                         }
2456
2457                                         $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2458
2459                                 } else {
2460                                         $query_strategy_part = "feed_id = '$feed'";
2461                                 }
2462                         } else if ($feed == 0 && !$cat_view) { // archive virtual feed
2463                                 $query_strategy_part = "feed_id IS NULL";
2464                                 $allow_archived = true;
2465                         } else if ($feed == 0 && $cat_view) { // uncategorized
2466                                 $query_strategy_part = "cat_id IS NULL AND feed_id IS NOT NULL";
2467                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2468                         } else if ($feed == -1) { // starred virtual feed
2469                                 $query_strategy_part = "marked = true";
2470                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2471                                 $allow_archived = true;
2472
2473                                 if (!$override_order) {
2474                                         $override_order = "last_marked DESC, date_entered DESC, updated DESC";
2475                                 }
2476
2477                         } else if ($feed == -2) { // published virtual feed OR labels category
2478
2479                                 if (!$cat_view) {
2480                                         $query_strategy_part = "published = true";
2481                                         $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2482                                         $allow_archived = true;
2483
2484                                         if (!$override_order) {
2485                                                 $override_order = "last_published DESC, date_entered DESC, updated DESC";
2486                                         }
2487
2488                                 } else {
2489                                         $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2490
2491                                         $ext_tables_part = ",ttrss_labels2,ttrss_user_labels2";
2492
2493                                         $query_strategy_part = "ttrss_labels2.id = ttrss_user_labels2.label_id AND
2494                                                 ttrss_user_labels2.article_id = ref_id";
2495
2496                                 }
2497                         } else if ($feed == -6) { // recently read
2498                                 $query_strategy_part = "unread = false AND last_read IS NOT NULL";
2499                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2500                                 $allow_archived = true;
2501
2502                                 if (!$override_order) $override_order = "last_read DESC";
2503                         } else if ($feed == -3) { // fresh virtual feed
2504                                 $query_strategy_part = "unread = true AND score >= 0";
2505
2506                                 $intl = get_pref("FRESH_ARTICLE_MAX_AGE", $owner_uid);
2507
2508                                 if (DB_TYPE == "pgsql") {
2509                                         $query_strategy_part .= " AND date_entered > NOW() - INTERVAL '$intl hour' ";
2510                                 } else {
2511                                         $query_strategy_part .= " AND date_entered > DATE_SUB(NOW(), INTERVAL $intl HOUR) ";
2512                                 }
2513
2514                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2515                         } else if ($feed == -4) { // all articles virtual feed
2516                                 $allow_archived = true;
2517                                 $query_strategy_part = "true";
2518                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2519                         } else if ($feed <= LABEL_BASE_INDEX) { // labels
2520                                 $label_id = feed_to_label_id($feed);
2521
2522                                 $query_strategy_part = "label_id = '$label_id' AND
2523                                         ttrss_labels2.id = ttrss_user_labels2.label_id AND
2524                                         ttrss_user_labels2.article_id = ref_id";
2525
2526                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2527                                 $ext_tables_part = ",ttrss_labels2,ttrss_user_labels2";
2528                                 $allow_archived = true;
2529
2530                         } else {
2531                                 $query_strategy_part = "true";
2532                         }
2533
2534                         $order_by = "score DESC, date_entered DESC, updated DESC";
2535
2536                         if ($view_mode == "unread_first") {
2537                                 $order_by = "unread DESC, $order_by";
2538                         }
2539
2540                         if ($override_order) {
2541                                 $order_by = $override_order;
2542                         }
2543
2544                         $feed_title = "";
2545
2546                         if ($search) {
2547                                 $feed_title = T_sprintf("Search results: %s", $search);
2548                         } else {
2549                                 if ($cat_view) {
2550                                         $feed_title = getCategoryTitle($feed);
2551                                 } else {
2552                                         if (is_numeric($feed) && $feed > 0) {
2553                                                 $result = db_query("SELECT title,site_url,last_error,last_updated
2554                                                         FROM ttrss_feeds WHERE id = '$feed' AND owner_uid = $owner_uid");
2555
2556                                                 $feed_title = db_fetch_result($result, 0, "title");
2557                                                 $feed_site_url = db_fetch_result($result, 0, "site_url");
2558                                                 $last_error = db_fetch_result($result, 0, "last_error");
2559                                                 $last_updated = db_fetch_result($result, 0, "last_updated");
2560                                         } else {
2561                                                 $feed_title = getFeedTitle($feed);
2562                                         }
2563                                 }
2564                         }
2565
2566                         $content_query_part = "content as content_preview, cached_content, ";
2567
2568                         if (is_numeric($feed)) {
2569
2570                                 if ($feed >= 0) {
2571                                         $feed_kind = "Feeds";
2572                                 } else {
2573                                         $feed_kind = "Labels";
2574                                 }
2575
2576                                 if ($limit_query_part) {
2577                                         $offset_query_part = "OFFSET $offset";
2578                                 }
2579
2580                                 // proper override_order applied above
2581                                 if ($vfeed_query_part && !$ignore_vfeed_group && get_pref('VFEED_GROUP_BY_FEED', $owner_uid)) {
2582                                         if (!$override_order) {
2583                                                 $order_by = "ttrss_feeds.title, $order_by";
2584                                         } else {
2585                                                 $order_by = "ttrss_feeds.title, $override_order";
2586                                         }
2587                                 }
2588
2589                                 if (!$allow_archived) {
2590                                         $from_qpart = "ttrss_entries,ttrss_user_entries,ttrss_feeds$ext_tables_part";
2591                                         $feed_check_qpart = "ttrss_user_entries.feed_id = ttrss_feeds.id AND";
2592
2593                                 } else {
2594                                         $from_qpart = "ttrss_entries$ext_tables_part,ttrss_user_entries
2595                                                 LEFT JOIN ttrss_feeds ON (feed_id = ttrss_feeds.id)";
2596                                 }
2597
2598                                 if ($vfeed_query_part)
2599                                         $vfeed_query_part .= "favicon_avg_color,";
2600
2601                                 $query = "SELECT DISTINCT
2602                                                 date_entered,
2603                                                 guid,
2604                                                 ttrss_entries.id,ttrss_entries.title,
2605                                                 updated,
2606                                                 label_cache,
2607                                                 tag_cache,
2608                                                 always_display_enclosures,
2609                                                 site_url,
2610                                                 note,
2611                                                 num_comments,
2612                                                 comments,
2613                                                 int_id,
2614                                                 hide_images,
2615                                                 unread,feed_id,marked,published,link,last_read,orig_feed_id,
2616                                                 last_marked, last_published,
2617                                                 $vfeed_query_part
2618                                                 $content_query_part
2619                                                 author,score
2620                                         FROM
2621                                                 $from_qpart
2622                                         WHERE
2623                                         $feed_check_qpart
2624                                         ttrss_user_entries.ref_id = ttrss_entries.id AND
2625                                         ttrss_user_entries.owner_uid = '$owner_uid' AND
2626                                         $search_query_part
2627                                         $filter_query_part
2628                                         $view_query_part
2629                                         $since_id_part
2630                                         $query_strategy_part ORDER BY $order_by
2631                                         $limit_query_part $offset_query_part";
2632
2633                                 if ($_REQUEST["debug"]) print $query;
2634
2635                                 $result = db_query($query);
2636
2637                         } else {
2638                                 // browsing by tag
2639
2640                                 $select_qpart = "SELECT DISTINCT " .
2641                                                                 "date_entered," .
2642                                                                 "guid," .
2643                                                                 "note," .
2644                                                                 "ttrss_entries.id as id," .
2645                                                                 "title," .
2646                                                                 "updated," .
2647                                                                 "unread," .
2648                                                                 "feed_id," .
2649                                                                 "orig_feed_id," .
2650                                                                 "marked," .
2651                                                                 "num_comments, " .
2652                                                                 "comments, " .
2653                                                                 "tag_cache," .
2654                                                                 "label_cache," .
2655                                                                 "link," .
2656                                                                 "last_read," .
2657                                                                 "(SELECT hide_images FROM ttrss_feeds WHERE id = feed_id) AS hide_images," .
2658                                                                 "last_marked, last_published, " .
2659                                                                 $since_id_part .
2660                                                                 $vfeed_query_part .
2661                                                                 $content_query_part .
2662                                                                 "score ";
2663
2664                                 $feed_kind = "Tags";
2665                                 $all_tags = explode(",", $feed);
2666                                 if ($search_mode == 'any') {
2667                                         $tag_sql = "tag_name in (" . implode(", ", array_map("db_quote", $all_tags)) . ")";
2668                                         $from_qpart = " FROM ttrss_entries,ttrss_user_entries,ttrss_tags ";
2669                                         $where_qpart = " WHERE " .
2670                                                                    "ref_id = ttrss_entries.id AND " .
2671                                                                    "ttrss_user_entries.owner_uid = $owner_uid AND " .
2672                                                                    "post_int_id = int_id AND $tag_sql AND " .
2673                                                                    $view_query_part .
2674                                                                    $search_query_part .
2675                                                                    $query_strategy_part . " ORDER BY $order_by " .
2676                                                                    $limit_query_part;
2677
2678                                 } else {
2679                                         $i = 1;
2680                                         $sub_selects = array();
2681                                         $sub_ands = array();
2682                                         foreach ($all_tags as $term) {
2683                                                 array_push($sub_selects, "(SELECT post_int_id from ttrss_tags WHERE tag_name = " . db_quote($term) . " AND owner_uid = $owner_uid) as A$i");
2684                                                 $i++;
2685                                         }
2686                                         if ($i > 2) {
2687                                                 $x = 1;
2688                                                 $y = 2;
2689                                                 do {
2690                                                         array_push($sub_ands, "A$x.post_int_id = A$y.post_int_id");
2691                                                         $x++;
2692                                                         $y++;
2693                                                 } while ($y < $i);
2694                                         }
2695                                         array_push($sub_ands, "A1.post_int_id = ttrss_user_entries.int_id and ttrss_user_entries.owner_uid = $owner_uid");
2696                                         array_push($sub_ands, "ttrss_user_entries.ref_id = ttrss_entries.id");
2697                                         $from_qpart = " FROM " . implode(", ", $sub_selects) . ", ttrss_user_entries, ttrss_entries";
2698                                         $where_qpart = " WHERE " . implode(" AND ", $sub_ands);
2699                                 }
2700                                 //                              error_log("TAG SQL: " . $tag_sql);
2701                                 // $tag_sql = "tag_name = '$feed'";   DEFAULT way
2702
2703                                 //                              error_log("[". $select_qpart . "][" . $from_qpart . "][" .$where_qpart . "]");
2704                                 $result = db_query($select_qpart . $from_qpart . $where_qpart);
2705                         }
2706
2707                         return array($result, $feed_title, $feed_site_url, $last_error, $last_updated);
2708
2709         }
2710
2711         function sanitize($str, $force_remove_images = false, $owner = false, $site_url = false) {
2712                 if (!$owner) $owner = $_SESSION["uid"];
2713
2714                 $res = trim($str); if (!$res) return '';
2715
2716                 if (strpos($res, "href=") === false)
2717                         $res = rewrite_urls($res);
2718
2719                 $charset_hack = '<head>
2720                         <meta http-equiv="Content-Type" content="text/html; charset=utf-8"/>
2721                 </head>';
2722
2723                 $res = trim($res); if (!$res) return '';
2724
2725                 libxml_use_internal_errors(true);
2726
2727                 $doc = new DOMDocument();
2728                 $doc->loadHTML($charset_hack . $res);
2729                 $xpath = new DOMXPath($doc);
2730
2731                 $entries = $xpath->query('(//a[@href]|//img[@src])');
2732
2733                 foreach ($entries as $entry) {
2734
2735                         if ($site_url) {
2736
2737                                 if ($entry->hasAttribute('href'))
2738                                         $entry->setAttribute('href',
2739                                                 rewrite_relative_url($site_url, $entry->getAttribute('href')));
2740
2741                                 if ($entry->hasAttribute('src')) {
2742                                         $src = rewrite_relative_url($site_url, $entry->getAttribute('src'));
2743
2744                                         $cached_filename = CACHE_DIR . '/images/' . sha1($src) . '.png';
2745
2746                                         if (file_exists($cached_filename)) {
2747                                                 $src = SELF_URL_PATH . '/image.php?hash=' . sha1($src);
2748                                         }
2749
2750                                         $entry->setAttribute('src', $src);
2751                                 }
2752
2753                                 if ($entry->nodeName == 'img') {
2754                                         if (($owner && get_pref("STRIP_IMAGES", $owner)) ||
2755                                                         $force_remove_images || $_SESSION["bw_limit"]) {
2756
2757                                                 $p = $doc->createElement('p');
2758
2759                                                 $a = $doc->createElement('a');
2760                                                 $a->setAttribute('href', $entry->getAttribute('src'));
2761
2762                                                 $a->appendChild(new DOMText($entry->getAttribute('src')));
2763                                                 $a->setAttribute('target', '_blank');
2764
2765                                                 $p->appendChild($a);
2766
2767                                                 $entry->parentNode->replaceChild($p, $entry);
2768                                         }
2769                                 }
2770                         }
2771
2772                         if (strtolower($entry->nodeName) == "a") {
2773                                 $entry->setAttribute("target", "_blank");
2774                         }
2775                 }
2776
2777                 $entries = $xpath->query('//iframe');
2778                 foreach ($entries as $entry) {
2779                         $entry->setAttribute('sandbox', 'allow-scripts');
2780
2781                 }
2782
2783                 $allowed_elements = array('a', 'address', 'audio', 'article', 'aside',
2784                         'b', 'bdi', 'bdo', 'big', 'blockquote', 'body', 'br',
2785                         'caption', 'cite', 'center', 'code', 'col', 'colgroup',
2786                         'data', 'dd', 'del', 'details', 'div', 'dl', 'font',
2787                         'dt', 'em', 'footer', 'figure', 'figcaption',
2788                         'h1', 'h2', 'h3', 'h4', 'h5', 'h6', 'header', 'html', 'i',
2789                         'img', 'ins', 'kbd', 'li', 'main', 'mark', 'nav', 'noscript',
2790                         'ol', 'p', 'pre', 'q', 'ruby', 'rp', 'rt', 's', 'samp', 'section',
2791                         'small', 'source', 'span', 'strike', 'strong', 'sub', 'summary',
2792                         'sup', 'table', 'tbody', 'td', 'tfoot', 'th', 'thead', 'time',
2793                         'tr', 'track', 'tt', 'u', 'ul', 'var', 'wbr', 'video' );
2794
2795                 if ($_SESSION['hasSandbox']) $allowed_elements[] = 'iframe';
2796
2797                 $disallowed_attributes = array('id', 'style', 'class');
2798
2799                 foreach (PluginHost::getInstance()->get_hooks(PluginHost::HOOK_SANITIZE) as $plugin) {
2800                         $retval = $plugin->hook_sanitize($doc, $site_url, $allowed_elements, $disallowed_attributes);
2801                         if (is_array($retval)) {
2802                                 $doc = $retval[0];
2803                                 $allowed_elements = $retval[1];
2804                                 $disallowed_attributes = $retval[2];
2805                         } else {
2806                                 $doc = $retval;
2807                         }
2808                 }
2809
2810                 $doc->removeChild($doc->firstChild); //remove doctype
2811                 $doc = strip_harmful_tags($doc, $allowed_elements, $disallowed_attributes);
2812                 $res = $doc->saveHTML();
2813                 return $res;
2814         }
2815
2816         function strip_harmful_tags($doc, $allowed_elements, $disallowed_attributes) {
2817                 $xpath = new DOMXPath($doc);
2818                 $entries = $xpath->query('//*');
2819
2820                 foreach ($entries as $entry) {
2821                         if (!in_array($entry->nodeName, $allowed_elements)) {
2822                                 $entry->parentNode->removeChild($entry);
2823                         }
2824
2825                         if ($entry->hasAttributes()) {
2826                                 $attrs_to_remove = array();
2827
2828                                 foreach ($entry->attributes as $attr) {
2829
2830                                         if (strpos($attr->nodeName, 'on') === 0) {
2831                                                 array_push($attrs_to_remove, $attr);
2832                                         }
2833
2834                                         if (in_array($attr->nodeName, $disallowed_attributes)) {
2835                                                 array_push($attrs_to_remove, $attr);
2836                                         }
2837                                 }
2838
2839                                 foreach ($attrs_to_remove as $attr) {
2840                                         $entry->removeAttributeNode($attr);
2841                                 }
2842                         }
2843                 }
2844
2845                 return $doc;
2846         }
2847
2848         function check_for_update() {
2849                 if (CHECK_FOR_NEW_VERSION && $_SESSION['access_level'] >= 10) {
2850                         $version_url = "http://tt-rss.org/version.php?ver=" . VERSION .
2851                                 "&iid=" . sha1(SELF_URL_PATH);
2852
2853                         $version_data = @fetch_file_contents($version_url);
2854
2855                         if ($version_data) {
2856                                 $version_data = json_decode($version_data, true);
2857                                 if ($version_data && $version_data['version']) {
2858                                         if (version_compare(VERSION_STATIC, $version_data['version']) == -1) {
2859                                                 return $version_data;
2860                                         }
2861                                 }
2862                         }
2863                 }
2864                 return false;
2865         }
2866
2867         function catchupArticlesById($ids, $cmode, $owner_uid = false) {
2868
2869                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
2870                 if (count($ids) == 0) return;
2871
2872                 $tmp_ids = array();
2873
2874                 foreach ($ids as $id) {
2875                         array_push($tmp_ids, "ref_id = '$id'");
2876                 }
2877
2878                 $ids_qpart = join(" OR ", $tmp_ids);
2879
2880                 if ($cmode == 0) {
2881                         db_query("UPDATE ttrss_user_entries SET
2882                         unread = false,last_read = NOW()
2883                         WHERE ($ids_qpart) AND owner_uid = $owner_uid");
2884                 } else if ($cmode == 1) {
2885                         db_query("UPDATE ttrss_user_entries SET
2886                         unread = true
2887                         WHERE ($ids_qpart) AND owner_uid = $owner_uid");
2888                 } else {
2889                         db_query("UPDATE ttrss_user_entries SET
2890                         unread = NOT unread,last_read = NOW()
2891                         WHERE ($ids_qpart) AND owner_uid = $owner_uid");
2892                 }
2893
2894                 /* update ccache */
2895
2896                 $result = db_query("SELECT DISTINCT feed_id FROM ttrss_user_entries
2897                         WHERE ($ids_qpart) AND owner_uid = $owner_uid");
2898
2899                 while ($line = db_fetch_assoc($result)) {
2900                         ccache_update($line["feed_id"], $owner_uid);
2901                 }
2902         }
2903
2904         function get_article_tags($id, $owner_uid = 0, $tag_cache = false) {
2905
2906                 $a_id = db_escape_string($id);
2907
2908                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
2909
2910                 $query = "SELECT DISTINCT tag_name,
2911                         owner_uid as owner FROM
2912                         ttrss_tags WHERE post_int_id = (SELECT int_id FROM ttrss_user_entries WHERE
2913                         ref_id = '$a_id' AND owner_uid = '$owner_uid' LIMIT 1) ORDER BY tag_name";
2914
2915                 $tags = array();
2916
2917                 /* check cache first */
2918
2919                 if ($tag_cache === false) {
2920                         $result = db_query("SELECT tag_cache FROM ttrss_user_entries
2921                                 WHERE ref_id = '$id' AND owner_uid = $owner_uid");
2922
2923                         $tag_cache = db_fetch_result($result, 0, "tag_cache");
2924                 }
2925
2926                 if ($tag_cache) {
2927                         $tags = explode(",", $tag_cache);
2928                 } else {
2929
2930                         /* do it the hard way */
2931
2932                         $tmp_result = db_query($query);
2933
2934                         while ($tmp_line = db_fetch_assoc($tmp_result)) {
2935                                 array_push($tags, $tmp_line["tag_name"]);
2936                         }
2937
2938                         /* update the cache */
2939
2940                         $tags_str = db_escape_string(join(",", $tags));
2941
2942                         db_query("UPDATE ttrss_user_entries
2943                                 SET tag_cache = '$tags_str' WHERE ref_id = '$id'
2944                                 AND owner_uid = $owner_uid");
2945                 }
2946
2947                 return $tags;
2948         }
2949
2950         function trim_array($array) {
2951                 $tmp = $array;
2952                 array_walk($tmp, 'trim');
2953                 return $tmp;
2954         }
2955
2956         function tag_is_valid($tag) {
2957                 if ($tag == '') return false;
2958                 if (preg_match("/^[0-9]*$/", $tag)) return false;
2959                 if (mb_strlen($tag) > 250) return false;
2960
2961                 if (function_exists('iconv')) {
2962                         $tag = iconv("utf-8", "utf-8", $tag);
2963                 }
2964
2965                 if (!$tag) return false;
2966
2967                 return true;
2968         }
2969
2970         function render_login_form() {
2971                 header('Cache-Control: public');
2972
2973                 require_once "login_form.php";
2974                 exit;
2975         }
2976
2977         function format_warning($msg, $id = "") {
2978                 global $link;
2979                 return "<div class=\"warning\" id=\"$id\">
2980                         <span><img src=\"images/sign_excl.svg\"></span><span>$msg</span></div>";
2981         }
2982
2983         function format_notice($msg, $id = "") {
2984                 global $link;
2985                 return "<div class=\"notice\" id=\"$id\">
2986                         <span><img src=\"images/sign_info.svg\"></span><span>$msg</span></div>";
2987         }
2988
2989         function format_error($msg, $id = "") {
2990                 global $link;
2991                 return "<div class=\"error\" id=\"$id\">
2992                         <span><img src=\"images/sign_excl.svg\"></span><span>$msg</span></div>";
2993         }
2994
2995         function print_notice($msg) {
2996                 return print format_notice($msg);
2997         }
2998
2999         function print_warning($msg) {
3000                 return print format_warning($msg);
3001         }
3002
3003         function print_error($msg) {
3004                 return print format_error($msg);
3005         }
3006
3007
3008         function T_sprintf() {
3009                 $args = func_get_args();
3010                 return vsprintf(__(array_shift($args)), $args);
3011         }
3012
3013         function format_inline_player($url, $ctype) {
3014
3015                 $entry = "";
3016
3017                 $url = htmlspecialchars($url);
3018
3019                 if (strpos($ctype, "audio/") === 0) {
3020
3021                         if ($_SESSION["hasAudio"] && (strpos($ctype, "ogg") !== false ||
3022                                 $_SESSION["hasMp3"])) {
3023
3024                                 $entry .= "<audio controls>
3025                                         <source type=\"$ctype\" src=\"$url\"></source>
3026                                         </audio>";
3027
3028                         } else {
3029
3030                                 $entry .= "<object type=\"application/x-shockwave-flash\"
3031                                         data=\"lib/button/musicplayer.swf?song_url=$url\"
3032                                         width=\"17\" height=\"17\" style='float : left; margin-right : 5px;'>
3033                                         <param name=\"movie\"
3034                                                 value=\"lib/button/musicplayer.swf?song_url=$url\" />
3035                                         </object>";
3036                         }
3037
3038                         if ($entry) $entry .= "&nbsp; <a target=\"_blank\"
3039                                 href=\"$url\">" . basename($url) . "</a>";
3040
3041                         return $entry;
3042
3043                 }
3044
3045                 return "";
3046
3047 /*              $filename = substr($url, strrpos($url, "/")+1);
3048
3049                 $entry .= " <a target=\"_blank\" href=\"" . htmlspecialchars($url) . "\">" .
3050                         $filename . " (" . $ctype . ")" . "</a>"; */
3051
3052         }
3053
3054         function format_article($id, $mark_as_read = true, $zoom_mode = false, $owner_uid = false) {
3055                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
3056
3057                 $rv = array();
3058
3059                 $rv['id'] = $id;
3060
3061                 /* we can figure out feed_id from article id anyway, why do we
3062                  * pass feed_id here? let's ignore the argument :(*/
3063
3064                 $result = db_query("SELECT feed_id FROM ttrss_user_entries
3065                         WHERE ref_id = '$id'");
3066
3067                 $feed_id = (int) db_fetch_result($result, 0, "feed_id");
3068
3069                 $rv['feed_id'] = $feed_id;
3070
3071                 //if (!$zoom_mode) { print "<article id='$id'><![CDATA["; };
3072
3073                 if ($mark_as_read) {
3074                         $result = db_query("UPDATE ttrss_user_entries
3075                                 SET unread = false,last_read = NOW()
3076                                 WHERE ref_id = '$id' AND owner_uid = $owner_uid");
3077
3078                         ccache_update($feed_id, $owner_uid);
3079                 }
3080
3081                 $result = db_query("SELECT id,title,link,content,feed_id,comments,int_id,
3082                         ".SUBSTRING_FOR_DATE."(updated,1,16) as updated,
3083                         (SELECT site_url FROM ttrss_feeds WHERE id = feed_id) as site_url,
3084                         (SELECT hide_images FROM ttrss_feeds WHERE id = feed_id) as hide_images,
3085                         (SELECT always_display_enclosures FROM ttrss_feeds WHERE id = feed_id) as always_display_enclosures,
3086                         num_comments,
3087                         tag_cache,
3088                         author,
3089                         orig_feed_id,
3090                         note,
3091                         cached_content
3092                         FROM ttrss_entries,ttrss_user_entries
3093                         WHERE   id = '$id' AND ref_id = id AND owner_uid = $owner_uid");
3094
3095                 if ($result) {
3096
3097                         $line = db_fetch_assoc($result);
3098
3099                         $tag_cache = $line["tag_cache"];
3100
3101                         $line["tags"] = get_article_tags($id, $owner_uid, $line["tag_cache"]);
3102                         unset($line["tag_cache"]);
3103
3104                         $line["content"] = sanitize($line["content"], false, $owner_uid,        $line["site_url"]);
3105
3106                         foreach (PluginHost::getInstance()->get_hooks(PluginHost::HOOK_RENDER_ARTICLE) as $p) {
3107                                 $line = $p->hook_render_article($line);
3108                         }
3109
3110                         $num_comments = $line["num_comments"];
3111                         $entry_comments = "";
3112
3113                         if ($num_comments > 0) {
3114                                 if ($line["comments"]) {
3115                                         $comments_url = htmlspecialchars($line["comments"]);
3116                                 } else {
3117                                         $comments_url = htmlspecialchars($line["link"]);
3118                                 }
3119                                 $entry_comments = "<a target='_blank' href=\"$comments_url\">$num_comments comments</a>";
3120                         } else {
3121                                 if ($line["comments"] && $line["link"] != $line["comments"]) {
3122                                         $entry_comments = "<a target='_blank' href=\"".htmlspecialchars($line["comments"])."\">comments</a>";
3123                                 }
3124                         }
3125
3126                         if ($zoom_mode) {
3127                                 header("Content-Type: text/html");
3128                                 $rv['content'] .= "<html><head>
3129                                                 <meta http-equiv=\"Content-Type\" content=\"text/html; charset=utf-8\"/>
3130                                                 <title>Tiny Tiny RSS - ".$line["title"]."</title>
3131                                                 <link rel=\"stylesheet\" type=\"text/css\" href=\"css/tt-rss.css\">
3132                                         </head><body id=\"ttrssZoom\">";
3133                         }
3134
3135                         $rv['content'] .= "<div class=\"postReply\" id=\"POST-$id\">";
3136
3137                         $rv['content'] .= "<div class=\"postHeader\" id=\"POSTHDR-$id\">";
3138
3139                         $entry_author = $line["author"];
3140
3141                         if ($entry_author) {
3142                                 $entry_author = __(" - ") . $entry_author;
3143                         }
3144
3145                         $parsed_updated = make_local_datetime($line["updated"], true,
3146                                 $owner_uid, true);
3147
3148                         $rv['content'] .= "<div class=\"postDate\">$parsed_updated</div>";
3149
3150                         if ($line["link"]) {
3151                                 $rv['content'] .= "<div class='postTitle'><a target='_blank'
3152                                         title=\"".htmlspecialchars($line['title'])."\"
3153                                         href=\"" .
3154                                         htmlspecialchars($line["link"]) . "\">" .
3155                                         $line["title"] . "</a>" .
3156                                         "<span class='author'>$entry_author</span></div>";
3157                         } else {
3158                                 $rv['content'] .= "<div class='postTitle'>" . $line["title"] . "$entry_author</div>";
3159                         }
3160
3161                         $tags_str = format_tags_string($line["tags"], $id);
3162                         $tags_str_full = join(", ", $line["tags"]);
3163
3164                         if (!$tags_str_full) $tags_str_full = __("no tags");
3165
3166                         if (!$entry_comments) $entry_comments = "&nbsp;"; # placeholder
3167
3168                         $rv['content'] .= "<div class='postTags' style='float : right'>
3169                                 <img src='images/tag.png'
3170                                 class='tagsPic' alt='Tags' title='Tags'>&nbsp;";
3171
3172                         if (!$zoom_mode) {
3173                                 $rv['content'] .= "<span id=\"ATSTR-$id\">$tags_str</span>
3174                                         <a title=\"".__('Edit tags for this article')."\"
3175                                         href=\"#\" onclick=\"editArticleTags($id, $feed_id)\">(+)</a>";
3176
3177                                 $rv['content'] .= "<div dojoType=\"dijit.Tooltip\"
3178                                         id=\"ATSTRTIP-$id\" connectId=\"ATSTR-$id\"
3179                                         position=\"below\">$tags_str_full</div>";
3180
3181                                 foreach (PluginHost::getInstance()->get_hooks(PluginHost::HOOK_ARTICLE_BUTTON) as $p) {
3182                                         $rv['content'] .= $p->hook_article_button($line);
3183                                 }
3184
3185                         } else {
3186                                 $tags_str = strip_tags($tags_str);
3187                                 $rv['content'] .= "<span id=\"ATSTR-$id\">$tags_str</span>";
3188                         }
3189                         $rv['content'] .= "</div>";
3190                         $rv['content'] .= "<div clear='both'>";
3191
3192                         foreach (PluginHost::getInstance()->get_hooks(PluginHost::HOOK_ARTICLE_LEFT_BUTTON) as $p) {
3193                                 $rv['content'] .= $p->hook_article_left_button($line);
3194                         }
3195
3196                         $rv['content'] .= "$entry_comments</div>";
3197
3198                         if ($line["orig_feed_id"]) {
3199
3200                                 $tmp_result = db_query("SELECT * FROM ttrss_archived_feeds
3201                                         WHERE id = ".$line["orig_feed_id"]);
3202
3203                                 if (db_num_rows($tmp_result) != 0) {
3204
3205                                         $rv['content'] .= "<div clear='both'>";
3206                                         $rv['content'] .= __("Originally from:");
3207
3208                                         $rv['content'] .= "&nbsp;";
3209
3210                                         $tmp_line = db_fetch_assoc($tmp_result);
3211
3212                                         $rv['content'] .= "<a target='_blank'
3213                                                 href=' " . htmlspecialchars($tmp_line['site_url']) . "'>" .
3214                                                 $tmp_line['title'] . "</a>";
3215
3216                                         $rv['content'] .= "&nbsp;";
3217
3218                                         $rv['content'] .= "<a target='_blank' href='" . htmlspecialchars($tmp_line['feed_url']) . "'>";
3219                                         $rv['content'] .= "<img title='".__('Feed URL')."'class='tinyFeedIcon' src='images/pub_set.svg'></a>";
3220
3221                                         $rv['content'] .= "</div>";
3222                                 }
3223                         }
3224
3225                         $rv['content'] .= "</div>";
3226
3227                         $rv['content'] .= "<div id=\"POSTNOTE-$id\">";
3228                                 if ($line['note']) {
3229                                         $rv['content'] .= format_article_note($id, $line['note'], !$zoom_mode);
3230                                 }
3231                         $rv['content'] .= "</div>";
3232
3233                         $rv['content'] .= "<div class=\"postContent\">";
3234
3235                         $rv['content'] .= $line["content"];
3236                         $rv['content'] .= format_article_enclosures($id,
3237                                 sql_bool_to_bool($line["always_display_enclosures"]),
3238                                 $line["content"],
3239                                 sql_bool_to_bool($line["hide_images"]));
3240
3241                         $rv['content'] .= "</div>";
3242
3243                         $rv['content'] .= "</div>";
3244
3245                 }
3246
3247                 if ($zoom_mode) {
3248                         $rv['content'] .= "
3249                                 <div class='footer'>
3250                                 <button onclick=\"return window.close()\">".
3251                                         __("Close this window")."</button></div>";
3252                         $rv['content'] .= "</body></html>";
3253                 }
3254
3255                 return $rv;
3256
3257         }
3258
3259         function print_checkpoint($n, $s) {
3260                 $ts = microtime(true);
3261                 echo sprintf("<!-- CP[$n] %.4f seconds -->\n", $ts - $s);
3262                 return $ts;
3263         }
3264
3265         function sanitize_tag($tag) {
3266                 $tag = trim($tag);
3267
3268                 $tag = mb_strtolower($tag, 'utf-8');
3269
3270                 $tag = preg_replace('/[\'\"\+\>\<]/', "", $tag);
3271
3272 //              $tag = str_replace('"', "", $tag);
3273 //              $tag = str_replace("+", " ", $tag);
3274                 $tag = str_replace("technorati tag: ", "", $tag);
3275
3276                 return $tag;
3277         }
3278
3279         function get_self_url_prefix() {
3280                 if (strrpos(SELF_URL_PATH, "/") === strlen(SELF_URL_PATH)-1) {
3281                         return substr(SELF_URL_PATH, 0, strlen(SELF_URL_PATH)-1);
3282                 } else {
3283                         return SELF_URL_PATH;
3284                 }
3285         }
3286
3287         /**
3288          * Compute the Mozilla Firefox feed adding URL from server HOST and REQUEST_URI.
3289          *
3290          * @return string The Mozilla Firefox feed adding URL.
3291          */
3292         function add_feed_url() {
3293                 //$url_path = ($_SERVER['HTTPS'] != "on" ? 'http://' :  'https://') . $_SERVER["HTTP_HOST"] . parse_url($_SERVER["REQUEST_URI"], PHP_URL_PATH);
3294
3295                 $url_path = get_self_url_prefix() .
3296                         "/public.php?op=subscribe&feed_url=%s";
3297                 return $url_path;
3298         } // function add_feed_url
3299
3300         function encrypt_password($pass, $salt = '', $mode2 = false) {
3301                 if ($salt && $mode2) {
3302                         return "MODE2:" . hash('sha256', $salt . $pass);
3303                 } else if ($salt) {
3304                         return "SHA1X:" . sha1("$salt:$pass");
3305                 } else {
3306                         return "SHA1:" . sha1($pass);
3307                 }
3308         } // function encrypt_password
3309
3310         function load_filters($feed_id, $owner_uid, $action_id = false) {
3311                 $filters = array();
3312
3313                 $cat_id = (int)getFeedCategory($feed_id);
3314
3315                 $result = db_query("SELECT * FROM ttrss_filters2 WHERE
3316                         owner_uid = $owner_uid AND enabled = true ORDER BY order_id, title");
3317
3318                 $check_cats = join(",", array_merge(
3319                         getParentCategories($cat_id, $owner_uid),
3320                         array($cat_id)));
3321
3322                 while ($line = db_fetch_assoc($result)) {
3323                         $filter_id = $line["id"];
3324
3325                         $result2 = db_query("SELECT
3326                                 r.reg_exp, r.inverse, r.feed_id, r.cat_id, r.cat_filter, t.name AS type_name
3327                                 FROM ttrss_filters2_rules AS r,
3328                                 ttrss_filter_types AS t
3329                                 WHERE
3330                                         (cat_id IS NULL OR cat_id IN ($check_cats)) AND
3331                                         (feed_id IS NULL OR feed_id = '$feed_id') AND
3332                                         filter_type = t.id AND filter_id = '$filter_id'");
3333
3334                         $rules = array();
3335                         $actions = array();
3336
3337                         while ($rule_line = db_fetch_assoc($result2)) {
3338 #                               print_r($rule_line);
3339
3340                                 $rule = array();
3341                                 $rule["reg_exp"] = $rule_line["reg_exp"];
3342                                 $rule["type"] = $rule_line["type_name"];
3343                                 $rule["inverse"] = sql_bool_to_bool($rule_line["inverse"]);
3344
3345                                 array_push($rules, $rule);
3346                         }
3347
3348                         $result2 = db_query("SELECT a.action_param,t.name AS type_name
3349                                 FROM ttrss_filters2_actions AS a,
3350                                 ttrss_filter_actions AS t
3351                                 WHERE
3352                                         action_id = t.id AND filter_id = '$filter_id'");
3353
3354                         while ($action_line = db_fetch_assoc($result2)) {
3355 #                               print_r($action_line);
3356
3357                                 $action = array();
3358                                 $action["type"] = $action_line["type_name"];
3359                                 $action["param"] = $action_line["action_param"];
3360
3361                                 array_push($actions, $action);
3362                         }
3363
3364
3365                         $filter = array();
3366                         $filter["match_any_rule"] = sql_bool_to_bool($line["match_any_rule"]);
3367                         $filter["inverse"] = sql_bool_to_bool($line["inverse"]);
3368                         $filter["rules"] = $rules;
3369                         $filter["actions"] = $actions;
3370
3371                         if (count($rules) > 0 && count($actions) > 0) {
3372                                 array_push($filters, $filter);
3373                         }
3374                 }
3375
3376                 return $filters;
3377         }
3378
3379         function get_score_pic($score) {
3380                 if ($score > 100) {
3381                         return "score_high.png";
3382                 } else if ($score > 0) {
3383                         return "score_half_high.png";
3384                 } else if ($score < -100) {
3385                         return "score_low.png";
3386                 } else if ($score < 0) {
3387                         return "score_half_low.png";
3388                 } else {
3389                         return "score_neutral.png";
3390                 }
3391         }
3392
3393         function feed_has_icon($id) {
3394                 return is_file(ICONS_DIR . "/$id.ico") && filesize(ICONS_DIR . "/$id.ico") > 0;
3395         }
3396
3397         function init_plugins() {
3398                 PluginHost::getInstance()->load(PLUGINS, PluginHost::KIND_ALL);
3399
3400                 return true;
3401         }
3402
3403         function format_tags_string($tags, $id) {
3404                 if (!is_array($tags) || count($tags) == 0) {
3405                         return __("no tags");
3406                 } else {
3407                         $maxtags = min(5, count($tags));
3408
3409                         for ($i = 0; $i < $maxtags; $i++) {
3410                                 $tags_str .= "<a class=\"tag\" href=\"#\" onclick=\"viewfeed('".$tags[$i]."'\")>" . $tags[$i] . "</a>, ";
3411                         }
3412
3413                         $tags_str = mb_substr($tags_str, 0, mb_strlen($tags_str)-2);
3414
3415                         if (count($tags) > $maxtags)
3416                                 $tags_str .= ", &hellip;";
3417
3418                         return $tags_str;
3419                 }
3420         }
3421
3422         function format_article_labels($labels, $id) {
3423
3424                 if (!is_array($labels)) return '';
3425
3426                 $labels_str = "";
3427
3428                 foreach ($labels as $l) {
3429                         $labels_str .= sprintf("<span class='hlLabelRef'
3430                                 style='color : %s; background-color : %s'>%s</span>",
3431                                         $l[2], $l[3], $l[1]);
3432                         }
3433
3434                 return $labels_str;
3435
3436         }
3437
3438         function format_article_note($id, $note, $allow_edit = true) {
3439
3440                 $str = "<div class='articleNote'        onclick=\"editArticleNote($id)\">
3441                         <div class='noteEdit' onclick=\"editArticleNote($id)\">".
3442                         ($allow_edit ? __('(edit note)') : "")."</div>$note</div>";
3443
3444                 return $str;
3445         }
3446
3447
3448         function get_feed_category($feed_cat, $parent_cat_id = false) {
3449                 if ($parent_cat_id) {
3450                         $parent_qpart = "parent_cat = '$parent_cat_id'";
3451                         $parent_insert = "'$parent_cat_id'";
3452                 } else {
3453                         $parent_qpart = "parent_cat IS NULL";
3454                         $parent_insert = "NULL";
3455                 }
3456
3457                 $result = db_query(
3458                         "SELECT id FROM ttrss_feed_categories
3459                         WHERE $parent_qpart AND title = '$feed_cat' AND owner_uid = ".$_SESSION["uid"]);
3460
3461                 if (db_num_rows($result) == 0) {
3462                         return false;
3463                 } else {
3464                         return db_fetch_result($result, 0, "id");
3465                 }
3466         }
3467
3468         function add_feed_category($feed_cat, $parent_cat_id = false) {
3469
3470                 if (!$feed_cat) return false;
3471
3472                 db_query("BEGIN");
3473
3474                 if ($parent_cat_id) {
3475                         $parent_qpart = "parent_cat = '$parent_cat_id'";
3476                         $parent_insert = "'$parent_cat_id'";
3477                 } else {
3478                         $parent_qpart = "parent_cat IS NULL";
3479                         $parent_insert = "NULL";
3480                 }
3481
3482                 $feed_cat = mb_substr($feed_cat, 0, 250);
3483
3484                 $result = db_query(
3485                         "SELECT id FROM ttrss_feed_categories
3486                         WHERE $parent_qpart AND title = '$feed_cat' AND owner_uid = ".$_SESSION["uid"]);
3487
3488                 if (db_num_rows($result) == 0) {
3489
3490                         $result = db_query(
3491                                 "INSERT INTO ttrss_feed_categories (owner_uid,title,parent_cat)
3492                                 VALUES ('".$_SESSION["uid"]."', '$feed_cat', $parent_insert)");
3493
3494                         db_query("COMMIT");
3495
3496                         return true;
3497                 }
3498
3499                 return false;
3500         }
3501
3502         function getArticleFeed($id) {
3503                 $result = db_query("SELECT feed_id FROM ttrss_user_entries
3504                         WHERE ref_id = '$id' AND owner_uid = " . $_SESSION["uid"]);
3505
3506                 if (db_num_rows($result) != 0) {
3507                         return db_fetch_result($result, 0, "feed_id");
3508                 } else {
3509                         return 0;
3510                 }
3511         }
3512
3513         /**
3514          * Fixes incomplete URLs by prepending "http://".
3515          * Also replaces feed:// with http://, and
3516          * prepends a trailing slash if the url is a domain name only.
3517          *
3518          * @param string $url Possibly incomplete URL
3519          *
3520          * @return string Fixed URL.
3521          */
3522         function fix_url($url) {
3523                 if (strpos($url, '://') === false) {
3524                         $url = 'http://' . $url;
3525                 } else if (substr($url, 0, 5) == 'feed:') {
3526                         $url = 'http:' . substr($url, 5);
3527                 }
3528
3529                 //prepend slash if the URL has no slash in it
3530                 // "http://www.example" -> "http://www.example/"
3531                 if (strpos($url, '/', strpos($url, ':') + 3) === false) {
3532                         $url .= '/';
3533                 }
3534
3535                 if ($url != "http:///")
3536                         return $url;
3537                 else
3538                         return '';
3539         }
3540
3541         function validate_feed_url($url) {
3542                 $parts = parse_url($url);
3543
3544                 return ($parts['scheme'] == 'http' || $parts['scheme'] == 'feed' || $parts['scheme'] == 'https');
3545
3546         }
3547
3548         function get_article_enclosures($id) {
3549
3550                 $query = "SELECT * FROM ttrss_enclosures
3551                         WHERE post_id = '$id' AND content_url != ''";
3552
3553                 $rv = array();
3554
3555                 $result = db_query($query);
3556
3557                 if (db_num_rows($result) > 0) {
3558                         while ($line = db_fetch_assoc($result)) {
3559                                 array_push($rv, $line);
3560                         }
3561                 }
3562
3563                 return $rv;
3564         }
3565
3566         function save_email_address($email) {
3567                 // FIXME: implement persistent storage of emails
3568
3569                 if (!$_SESSION['stored_emails'])
3570                         $_SESSION['stored_emails'] = array();
3571
3572                 if (!in_array($email, $_SESSION['stored_emails']))
3573                         array_push($_SESSION['stored_emails'], $email);
3574         }
3575
3576
3577         function get_feed_access_key($feed_id, $is_cat, $owner_uid = false) {
3578
3579                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
3580
3581                 $sql_is_cat = bool_to_sql_bool($is_cat);
3582
3583                 $result = db_query("SELECT access_key FROM ttrss_access_keys
3584                         WHERE feed_id = '$feed_id'      AND is_cat = $sql_is_cat
3585                         AND owner_uid = " . $owner_uid);
3586
3587                 if (db_num_rows($result) == 1) {
3588                         return db_fetch_result($result, 0, "access_key");
3589                 } else {
3590                         $key = db_escape_string(sha1(uniqid(rand(), true)));
3591
3592                         $result = db_query("INSERT INTO ttrss_access_keys
3593                                 (access_key, feed_id, is_cat, owner_uid)
3594                                 VALUES ('$key', '$feed_id', $sql_is_cat, '$owner_uid')");
3595
3596                         return $key;
3597                 }
3598                 return false;
3599         }
3600
3601         function get_feeds_from_html($url, $content)
3602         {
3603                 $url     = fix_url($url);
3604                 $baseUrl = substr($url, 0, strrpos($url, '/') + 1);
3605
3606                 libxml_use_internal_errors(true);
3607
3608                 $doc = new DOMDocument();
3609                 $doc->loadHTML($content);
3610                 $xpath = new DOMXPath($doc);
3611                 $entries = $xpath->query('/html/head/link[@rel="alternate"]');
3612                 $feedUrls = array();
3613                 foreach ($entries as $entry) {
3614                         if ($entry->hasAttribute('href')) {
3615                                 $title = $entry->getAttribute('title');
3616                                 if ($title == '') {
3617                                         $title = $entry->getAttribute('type');
3618                                 }
3619                                 $feedUrl = rewrite_relative_url(
3620                                         $baseUrl, $entry->getAttribute('href')
3621                                 );
3622                                 $feedUrls[$feedUrl] = $title;
3623                         }
3624                 }
3625                 return $feedUrls;
3626         }
3627
3628         function is_html($content) {
3629                 return preg_match("/<html|DOCTYPE html/i", substr($content, 0, 20)) !== 0;
3630         }
3631
3632         function url_is_html($url, $login = false, $pass = false) {
3633                 return is_html(fetch_file_contents($url, false, $login, $pass));
3634         }
3635
3636         function print_label_select($name, $value, $attributes = "") {
3637
3638                 $result = db_query("SELECT caption FROM ttrss_labels2
3639                         WHERE owner_uid = '".$_SESSION["uid"]."' ORDER BY caption");
3640
3641                 print "<select default=\"$value\" name=\"" . htmlspecialchars($name) .
3642                         "\" $attributes onchange=\"labelSelectOnChange(this)\" >";
3643
3644                 while ($line = db_fetch_assoc($result)) {
3645
3646                         $issel = ($line["caption"] == $value) ? "selected=\"1\"" : "";
3647
3648                         print "<option value=\"".htmlspecialchars($line["caption"])."\"
3649                                 $issel>" . htmlspecialchars($line["caption"]) . "</option>";
3650
3651                 }
3652
3653 #               print "<option value=\"ADD_LABEL\">" .__("Add label...") . "</option>";
3654
3655                 print "</select>";
3656
3657
3658         }
3659
3660         function format_article_enclosures($id, $always_display_enclosures,
3661                                         $article_content, $hide_images = false) {
3662
3663                 $result = get_article_enclosures($id);
3664                 $rv = '';
3665
3666                 if (count($result) > 0) {
3667
3668                         $entries_html = array();
3669                         $entries = array();
3670                         $entries_inline = array();
3671
3672                         foreach ($result as $line) {
3673
3674                                 $url = $line["content_url"];
3675                                 $ctype = $line["content_type"];
3676
3677                                 if (!$ctype) $ctype = __("unknown type");
3678
3679                                 $filename = substr($url, strrpos($url, "/")+1);
3680
3681                                 $player = format_inline_player($url, $ctype);
3682
3683                                 if ($player) array_push($entries_inline, $player);
3684
3685 #                               $entry .= " <a target=\"_blank\" href=\"" . htmlspecialchars($url) . "\">" .
3686 #                                       $filename . " (" . $ctype . ")" . "</a>";
3687
3688                                 $entry = "<div onclick=\"window.open('".htmlspecialchars($url)."')\"
3689                                         dojoType=\"dijit.MenuItem\">$filename ($ctype)</div>";
3690
3691                                 array_push($entries_html, $entry);
3692
3693                                 $entry = array();
3694
3695                                 $entry["type"] = $ctype;
3696                                 $entry["filename"] = $filename;
3697                                 $entry["url"] = $url;
3698
3699                                 array_push($entries, $entry);
3700                         }
3701
3702                         if ($_SESSION['uid'] && !get_pref("STRIP_IMAGES") && !$_SESSION["bw_limit"]) {
3703                                 if ($always_display_enclosures ||
3704                                                         !preg_match("/<img/i", $article_content)) {
3705
3706                                         foreach ($entries as $entry) {
3707
3708                                                 if (preg_match("/image/", $entry["type"]) ||
3709                                                                 preg_match("/\.(jpg|png|gif|bmp)/i", $entry["filename"])) {
3710
3711                                                                 if (!$hide_images) {
3712                                                                         $rv .= "<p><img
3713                                                                         alt=\"".htmlspecialchars($entry["filename"])."\"
3714                                                                         src=\"" .htmlspecialchars($entry["url"]) . "\"/></p>";
3715                                                                 } else {
3716                                                                         $rv .= "<p><a target=\"_blank\"
3717                                                                         href=\"".htmlspecialchars($entry["url"])."\"
3718                                                                         >" .htmlspecialchars($entry["url"]) . "</a></p>";
3719
3720                                                                 }
3721                                                 }
3722                                         }
3723                                 }
3724                         }
3725
3726                         if (count($entries_inline) > 0) {
3727                                 $rv .= "<hr clear='both'/>";
3728                                 foreach ($entries_inline as $entry) { $rv .= $entry; };
3729                                 $rv .= "<hr clear='both'/>";
3730                         }
3731
3732                         $rv .= "<select class=\"attachments\" onchange=\"openSelectedAttachment(this)\">".
3733                                 "<option value=''>" . __('Attachments')."</option>";
3734
3735                         foreach ($entries as $entry) {
3736                                 $rv .= "<option value=\"".htmlspecialchars($entry["url"])."\">" . htmlspecialchars($entry["filename"]) . "</option>";
3737
3738                         };
3739
3740                         $rv .= "</select>";
3741                 }
3742
3743                 return $rv;
3744         }
3745
3746         function getLastArticleId() {
3747                 $result = db_query("SELECT MAX(ref_id) AS id FROM ttrss_user_entries
3748                         WHERE owner_uid = " . $_SESSION["uid"]);
3749
3750                 if (db_num_rows($result) == 1) {
3751                         return db_fetch_result($result, 0, "id");
3752                 } else {
3753                         return -1;
3754                 }
3755         }
3756
3757         function build_url($parts) {
3758                 return $parts['scheme'] . "://" . $parts['host'] . $parts['path'];
3759         }
3760
3761         /**
3762          * Converts a (possibly) relative URL to a absolute one.
3763          *
3764          * @param string $url     Base URL (i.e. from where the document is)
3765          * @param string $rel_url Possibly relative URL in the document
3766          *
3767          * @return string Absolute URL
3768          */
3769         function rewrite_relative_url($url, $rel_url) {
3770                 if (strpos($rel_url, "magnet:") === 0) {
3771                         return $rel_url;
3772                 } else if (strpos($rel_url, "://") !== false) {
3773                         return $rel_url;
3774                 } else if (strpos($rel_url, "//") === 0) {
3775                         # protocol-relative URL (rare but they exist)
3776                         return $rel_url;
3777                 } else if (strpos($rel_url, "/") === 0)
3778                 {
3779                         $parts = parse_url($url);
3780                         $parts['path'] = $rel_url;
3781
3782                         return build_url($parts);
3783
3784                 } else {
3785                         $parts = parse_url($url);
3786                         if (!isset($parts['path'])) {
3787                                 $parts['path'] = '/';
3788                         }
3789                         $dir = $parts['path'];
3790                         if (substr($dir, -1) !== '/') {
3791                                 $dir = dirname($parts['path']);
3792                                 $dir !== '/' && $dir .= '/';
3793                         }
3794                         $parts['path'] = $dir . $rel_url;
3795
3796                         return build_url($parts);
3797                 }
3798         }
3799
3800         function sphinx_search($query, $offset = 0, $limit = 30) {
3801                 require_once 'lib/sphinxapi.php';
3802
3803                 $sphinxClient = new SphinxClient();
3804
3805                 $sphinxpair = explode(":", SPHINX_SERVER, 2);
3806
3807                 $sphinxClient->SetServer($sphinxpair[0], $sphinxpair[1]);
3808                 $sphinxClient->SetConnectTimeout(1);
3809
3810                 $sphinxClient->SetFieldWeights(array('title' => 70, 'content' => 30,
3811                         'feed_title' => 20));
3812
3813                 $sphinxClient->SetMatchMode(SPH_MATCH_EXTENDED2);
3814                 $sphinxClient->SetRankingMode(SPH_RANK_PROXIMITY_BM25);
3815                 $sphinxClient->SetLimits($offset, $limit, 1000);
3816                 $sphinxClient->SetArrayResult(false);
3817                 $sphinxClient->SetFilter('owner_uid', array($_SESSION['uid']));
3818
3819                 $result = $sphinxClient->Query($query, SPHINX_INDEX);
3820
3821                 $ids = array();
3822
3823                 if (is_array($result['matches'])) {
3824                         foreach (array_keys($result['matches']) as $int_id) {
3825                                 $ref_id = $result['matches'][$int_id]['attrs']['ref_id'];
3826                                 array_push($ids, $ref_id);
3827                         }
3828                 }
3829
3830                 return $ids;
3831         }
3832
3833         function cleanup_tags($days = 14, $limit = 1000) {
3834
3835                 if (DB_TYPE == "pgsql") {
3836                         $interval_query = "date_updated < NOW() - INTERVAL '$days days'";
3837                 } else if (DB_TYPE == "mysql") {
3838                         $interval_query = "date_updated < DATE_SUB(NOW(), INTERVAL $days DAY)";
3839                 }
3840
3841                 $tags_deleted = 0;
3842
3843                 while ($limit > 0) {
3844                         $limit_part = 500;
3845
3846                         $query = "SELECT ttrss_tags.id AS id
3847                                 FROM ttrss_tags, ttrss_user_entries, ttrss_entries
3848                                 WHERE post_int_id = int_id AND $interval_query AND
3849                                 ref_id = ttrss_entries.id AND tag_cache != '' LIMIT $limit_part";
3850
3851                         $result = db_query($query);
3852
3853                         $ids = array();
3854
3855                         while ($line = db_fetch_assoc($result)) {
3856                                 array_push($ids, $line['id']);
3857                         }
3858
3859                         if (count($ids) > 0) {
3860                                 $ids = join(",", $ids);
3861
3862                                 $tmp_result = db_query("DELETE FROM ttrss_tags WHERE id IN ($ids)");
3863                                 $tags_deleted += db_affected_rows($tmp_result);
3864                         } else {
3865                                 break;
3866                         }
3867
3868                         $limit -= $limit_part;
3869                 }
3870
3871                 return $tags_deleted;
3872         }
3873
3874         function print_user_stylesheet() {
3875                 $value = get_pref('USER_STYLESHEET');
3876
3877                 if ($value) {
3878                         print "<style type=\"text/css\">";
3879                         print str_replace("<br/>", "\n", $value);
3880                         print "</style>";
3881                 }
3882
3883         }
3884
3885         function rewrite_urls($html) {
3886                 libxml_use_internal_errors(true);
3887
3888                 $charset_hack = '<head>
3889                         <meta http-equiv="Content-Type" content="text/html; charset=utf-8"/>
3890                 </head>';
3891
3892                 $doc = new DOMDocument();
3893                 $doc->loadHTML($charset_hack . $html);
3894                 $xpath = new DOMXPath($doc);
3895
3896                 $entries = $xpath->query('//*/text()');
3897
3898                 foreach ($entries as $entry) {
3899                         if (strstr($entry->wholeText, "://") !== false) {
3900                                 $text = preg_replace("/((?<!=.)((http|https|ftp)+):\/\/[^ ,!]+)/i",
3901                                         "<a target=\"_blank\" href=\"\\1\">\\1</a>", $entry->wholeText);
3902
3903                                 if ($text != $entry->wholeText) {
3904                                         $cdoc = new DOMDocument();
3905                                         $cdoc->loadHTML($charset_hack . $text);
3906
3907
3908                                         foreach ($cdoc->childNodes as $cnode) {
3909                                                 $cnode = $doc->importNode($cnode, true);
3910
3911                                                 if ($cnode) {
3912                                                         $entry->parentNode->insertBefore($cnode);
3913                                                 }
3914                                         }
3915
3916                                         $entry->parentNode->removeChild($entry);
3917
3918                                 }
3919                         }
3920                 }
3921
3922                 $node = $doc->getElementsByTagName('body')->item(0);
3923
3924                 // http://tt-rss.org/forum/viewtopic.php?f=1&t=970
3925                 if ($node)
3926                         return $doc->saveXML($node);
3927                 else
3928                         return $html;
3929         }
3930
3931         function filter_to_sql($filter, $owner_uid) {
3932                 $query = array();
3933
3934                 if (DB_TYPE == "pgsql")
3935                         $reg_qpart = "~";
3936                 else
3937                         $reg_qpart = "REGEXP";
3938
3939                 foreach ($filter["rules"] AS $rule) {
3940                         $regexp_valid = preg_match('/' . $rule['reg_exp'] . '/',
3941                                 $rule['reg_exp']) !== FALSE;
3942
3943                         if ($regexp_valid) {
3944
3945                                 $rule['reg_exp'] = db_escape_string($rule['reg_exp']);
3946
3947                                         switch ($rule["type"]) {
3948                                         case "title":
3949                                                 $qpart = "LOWER(ttrss_entries.title) $reg_qpart LOWER('".
3950                                                         $rule['reg_exp'] . "')";
3951                                                 break;
3952                                         case "content":
3953                                                 $qpart = "LOWER(ttrss_entries.content) $reg_qpart LOWER('".
3954                                                         $rule['reg_exp'] . "')";
3955                                                 break;
3956                                         case "both":
3957                                                 $qpart = "LOWER(ttrss_entries.title) $reg_qpart LOWER('".
3958                                                         $rule['reg_exp'] . "') OR LOWER(" .
3959                                                         "ttrss_entries.content) $reg_qpart LOWER('" . $rule['reg_exp'] . "')";
3960                                                 break;
3961                                         case "tag":
3962                                                 $qpart = "LOWER(ttrss_user_entries.tag_cache) $reg_qpart LOWER('".
3963                                                         $rule['reg_exp'] . "')";
3964                                                 break;
3965                                         case "link":
3966                                                 $qpart = "LOWER(ttrss_entries.link) $reg_qpart LOWER('".
3967                                                         $rule['reg_exp'] . "')";
3968                                                 break;
3969                                         case "author":
3970                                                 $qpart = "LOWER(ttrss_entries.author) $reg_qpart LOWER('".
3971                                                         $rule['reg_exp'] . "')";
3972                                                 break;
3973                                 }
3974
3975                                 if (isset($rule['inverse'])) $qpart = "NOT ($qpart)";
3976
3977                                 if (isset($rule["feed_id"]) && $rule["feed_id"] > 0) {
3978                                         $qpart .= " AND feed_id = " . db_escape_string($rule["feed_id"]);
3979                                 }
3980
3981                                 if (isset($rule["cat_id"])) {
3982
3983                                         if ($rule["cat_id"] > 0) {
3984                                                 $children = getChildCategories($rule["cat_id"], $owner_uid);
3985                                                 array_push($children, $rule["cat_id"]);
3986
3987                                                 $children = join(",", $children);
3988
3989                                                 $cat_qpart = "cat_id IN ($children)";
3990                                         } else {
3991                                                 $cat_qpart = "cat_id IS NULL";
3992                                         }
3993
3994                                         $qpart .= " AND $cat_qpart";
3995                                 }
3996
3997                                 array_push($query, "($qpart)");
3998
3999                         }
4000                 }
4001
4002                 if (count($query) > 0) {
4003                         $fullquery = "(" . join($filter["match_any_rule"] ? "OR" : "AND", $query) . ")";
4004                 } else {
4005                         $fullquery = "(false)";
4006                 }
4007
4008                 if ($filter['inverse']) $fullquery = "(NOT $fullquery)";
4009
4010                 return $fullquery;
4011         }
4012
4013         if (!function_exists('gzdecode')) {
4014                 function gzdecode($string) { // no support for 2nd argument
4015                         return file_get_contents('compress.zlib://data:who/cares;base64,'.
4016                                 base64_encode($string));
4017                 }
4018         }
4019
4020         function get_random_bytes($length) {
4021                 if (function_exists('openssl_random_pseudo_bytes')) {
4022                         return openssl_random_pseudo_bytes($length);
4023                 } else {
4024                         $output = "";
4025
4026                         for ($i = 0; $i < $length; $i++)
4027                                 $output .= chr(mt_rand(0, 255));
4028
4029                         return $output;
4030                 }
4031         }
4032
4033         function read_stdin() {
4034                 $fp = fopen("php://stdin", "r");
4035
4036                 if ($fp) {
4037                         $line = trim(fgets($fp));
4038                         fclose($fp);
4039                         return $line;
4040                 }
4041
4042                 return null;
4043         }
4044
4045         function tmpdirname($path, $prefix) {
4046                 // Use PHP's tmpfile function to create a temporary
4047                 // directory name. Delete the file and keep the name.
4048                 $tempname = tempnam($path,$prefix);
4049                 if (!$tempname)
4050                         return false;
4051
4052                 if (!unlink($tempname))
4053                         return false;
4054
4055        return $tempname;
4056         }
4057
4058         function getFeedCategory($feed) {
4059                 $result = db_query("SELECT cat_id FROM ttrss_feeds
4060                         WHERE id = '$feed'");
4061
4062                 if (db_num_rows($result) > 0) {
4063                         return db_fetch_result($result, 0, "cat_id");
4064                 } else {
4065                         return false;
4066                 }
4067
4068         }
4069
4070         function implements_interface($class, $interface) {
4071                 return in_array($interface, class_implements($class));
4072         }
4073
4074         function geturl($url){
4075
4076                 if (!function_exists('curl_init'))
4077                         return user_error('CURL Must be installed for geturl function to work. Ask your host to enable it or uncomment extension=php_curl.dll in php.ini', E_USER_ERROR);
4078
4079                 $curl = curl_init();
4080                 $header[0] = "Accept: text/xml,application/xml,application/xhtml+xml,";
4081                 $header[0] .= "text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5";
4082                 $header[] = "Cache-Control: max-age=0";
4083                 $header[] = "Connection: keep-alive";
4084                 $header[] = "Keep-Alive: 300";
4085                 $header[] = "Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.7";
4086                 $header[] = "Accept-Language: en-us,en;q=0.5";
4087                 $header[] = "Pragma: ";
4088
4089                 curl_setopt($curl, CURLOPT_URL, $url);
4090                 curl_setopt($curl, CURLOPT_USERAGENT, 'Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0 Firefox/5.0');
4091                 curl_setopt($curl, CURLOPT_HTTPHEADER, $header);
4092                 curl_setopt($curl, CURLOPT_HEADER, true);
4093                 curl_setopt($curl, CURLOPT_REFERER, $url);
4094                 curl_setopt($curl, CURLOPT_ENCODING, 'gzip,deflate');
4095                 curl_setopt($curl, CURLOPT_AUTOREFERER, true);
4096                 curl_setopt($curl, CURLOPT_RETURNTRANSFER, true);
4097                 //curl_setopt($curl, CURLOPT_FOLLOWLOCATION, true); //CURLOPT_FOLLOWLOCATION Disabled...
4098                 curl_setopt($curl, CURLOPT_TIMEOUT, 60);
4099
4100                 $html = curl_exec($curl);
4101
4102                 $status = curl_getinfo($curl);
4103                 curl_close($curl);
4104
4105                 if($status['http_code']!=200){
4106                         if($status['http_code'] == 301 || $status['http_code'] == 302) {
4107                                 list($header) = explode("\r\n\r\n", $html, 2);
4108                                 $matches = array();
4109                                 preg_match("/(Location:|URI:)[^(\n)]*/", $header, $matches);
4110                                 $url = trim(str_replace($matches[1],"",$matches[0]));
4111                                 $url_parsed = parse_url($url);
4112                                 return (isset($url_parsed))? geturl($url):'';
4113                         }
4114                         $oline='';
4115                         foreach($status as $key=>$eline){$oline.='['.$key.']'.$eline.' ';}
4116                         $line =$oline." \r\n ".$url."\r\n-----------------\r\n";
4117 #                       $handle = @fopen('./curl.error.log', 'a');
4118 #                       fwrite($handle, $line);
4119                         return FALSE;
4120                 }
4121                 return $url;
4122         }
4123
4124         function get_minified_js($files) {
4125                 require_once 'lib/jshrink/Minifier.php';
4126
4127                 $rv = '';
4128
4129                 foreach ($files as $js) {
4130                         if (!isset($_GET['debug'])) {
4131                                 $cached_file = CACHE_DIR . "/js/".basename($js).".js";
4132
4133                                 if (file_exists($cached_file) &&
4134                                                 is_readable($cached_file) &&
4135                                                 filemtime($cached_file) >= filemtime("js/$js.js")) {
4136
4137                                         $rv .= file_get_contents($cached_file);
4138
4139                                 } else {
4140                                         $minified = JShrink\Minifier::minify(file_get_contents("js/$js.js"));
4141                                         file_put_contents($cached_file, $minified);
4142                                         $rv .= $minified;
4143                                 }
4144                         } else {
4145                                 $rv .= file_get_contents("js/$js.js");
4146                         }
4147                 }
4148
4149                 return $rv;
4150         }
4151
4152         function stylesheet_tag($filename) {
4153                 $timestamp = filemtime($filename);
4154
4155                 echo "<link rel=\"stylesheet\" type=\"text/css\" href=\"$filename?$timestamp\"/>\n";
4156         }
4157
4158         function javascript_tag($filename) {
4159                 $query = "";
4160
4161                 if (!(strpos($filename, "?") === FALSE)) {
4162                         $query = substr($filename, strpos($filename, "?")+1);
4163                         $filename = substr($filename, 0, strpos($filename, "?"));
4164                 }
4165
4166                 $timestamp = filemtime($filename);
4167
4168                 if ($query) $timestamp .= "&$query";
4169
4170                 echo "<script type=\"text/javascript\" charset=\"utf-8\" src=\"$filename?$timestamp\"></script>\n";
4171         }
4172
4173         function calculate_dep_timestamp() {
4174                 $files = array_merge(glob("js/*.js"), glob("css/*.css"));
4175
4176                 $max_ts = -1;
4177
4178                 foreach ($files as $file) {
4179                         if (filemtime($file) > $max_ts) $max_ts = filemtime($file);
4180                 }
4181
4182                 return $max_ts;
4183         }
4184
4185         function T_js_decl($s1, $s2) {
4186                 if ($s1 && $s2) {
4187                         $s1 = preg_replace("/\n/", "", $s1);
4188                         $s2 = preg_replace("/\n/", "", $s2);
4189
4190                         $s1 = preg_replace("/\"/", "\\\"", $s1);
4191                         $s2 = preg_replace("/\"/", "\\\"", $s2);
4192
4193                         return "T_messages[\"$s1\"] = \"$s2\";\n";
4194                 }
4195         }
4196
4197         function init_js_translations() {
4198
4199         print 'var T_messages = new Object();
4200
4201                 function __(msg) {
4202                         if (T_messages[msg]) {
4203                                 return T_messages[msg];
4204                         } else {
4205                                 return msg;
4206                         }
4207                 }
4208
4209                 function ngettext(msg1, msg2, n) {
4210                         return (parseInt(n) > 1) ? msg2 : msg1;
4211                 }';
4212
4213                 $l10n = _get_reader();
4214
4215                 for ($i = 0; $i < $l10n->total; $i++) {
4216                         $orig = $l10n->get_original_string($i);
4217                         $translation = __($orig);
4218
4219                         print T_js_decl($orig, $translation);
4220                 }
4221         }
4222
4223         function label_to_feed_id($label) {
4224                 return LABEL_BASE_INDEX - 1 - abs($label);
4225         }
4226
4227         function feed_to_label_id($feed) {
4228                 return LABEL_BASE_INDEX - 1 + abs($feed);
4229         }
4230
4231         function format_libxml_error($error) {
4232                 return T_sprintf("LibXML error %s at line %d (column %d): %s",
4233                                 $error->code, $error->line, $error->column,
4234                                 $error->message);
4235         }
4236
4237 ?>