]> git.wh0rd.org - tt-rss.git/blob - include/functions.php
remove deprecated theme_image()
[tt-rss.git] / include / functions.php
1 <?php
2 define('EXPECTED_CONFIG_VERSION', 26);
3 define('SCHEMA_VERSION', 106);
4
5 $fetch_last_error = false;
6 $pluginhost = false;
7
8 function __autoload($class) {
9 $class_file = str_replace("_", "/", strtolower(basename($class)));
10
11 $file = dirname(__FILE__)."/../classes/$class_file.php";
12
13 if (file_exists($file)) {
14 require $file;
15 }
16
17 }
18
19 mb_internal_encoding("UTF-8");
20 date_default_timezone_set('UTC');
21 if (defined('E_DEPRECATED')) {
22 error_reporting(E_ALL & ~E_NOTICE & ~E_DEPRECATED);
23 } else {
24 error_reporting(E_ALL & ~E_NOTICE);
25 }
26
27 require_once 'config.php';
28
29 if (DB_TYPE == "pgsql") {
30 define('SUBSTRING_FOR_DATE', 'SUBSTRING_FOR_DATE');
31 } else {
32 define('SUBSTRING_FOR_DATE', 'SUBSTRING');
33 }
34
35 define('THEME_VERSION_REQUIRED', 1.1);
36
37 /**
38 * Return available translations names.
39 *
40 * @access public
41 * @return array A array of available translations.
42 */
43 function get_translations() {
44 $tr = array(
45 "auto" => "Detect automatically",
46 "ca_CA" => "Català",
47 "en_US" => "English",
48 "es_ES" => "Español",
49 "de_DE" => "Deutsch",
50 "fr_FR" => "Français",
51 "hu_HU" => "Magyar (Hungarian)",
52 "it_IT" => "Italiano",
53 "ja_JP" => "日本語 (Japanese)",
54 "lv_LV" => "Latviešu",
55 "nb_NO" => "Norwegian bokmål",
56 "pl_PL" => "Polski",
57 "ru_RU" => "Русский",
58 "pt_BR" => "Portuguese/Brazil",
59 "zh_CN" => "Simplified Chinese");
60
61 return $tr;
62 }
63
64 require_once "lib/accept-to-gettext.php";
65 require_once "lib/gettext/gettext.inc";
66
67
68 function startup_gettext() {
69
70 # Get locale from Accept-Language header
71 $lang = al2gt(array_keys(get_translations()), "text/html");
72
73 if (defined('_TRANSLATION_OVERRIDE_DEFAULT')) {
74 $lang = _TRANSLATION_OVERRIDE_DEFAULT;
75 }
76
77 /* In login action of mobile version */
78 if ($_POST["language"] && defined('MOBILE_VERSION')) {
79 $lang = $_POST["language"];
80 } else if ($_SESSION["language"] && $_SESSION["language"] != "auto") {
81 $lang = $_SESSION["language"];
82 }
83
84 if ($lang) {
85 if (defined('LC_MESSAGES')) {
86 _setlocale(LC_MESSAGES, $lang);
87 } else if (defined('LC_ALL')) {
88 _setlocale(LC_ALL, $lang);
89 }
90
91 if (defined('MOBILE_VERSION')) {
92 _bindtextdomain("messages", "../locale");
93 } else {
94 _bindtextdomain("messages", "locale");
95 }
96
97 _textdomain("messages");
98 _bind_textdomain_codeset("messages", "UTF-8");
99 }
100 }
101
102 startup_gettext();
103
104 require_once 'db-prefs.php';
105 require_once 'version.php';
106 require_once 'ccache.php';
107 require_once 'labels.php';
108
109 define('SELF_USER_AGENT', 'Tiny Tiny RSS/' . VERSION . ' (http://tt-rss.org/)');
110 ini_set('user_agent', SELF_USER_AGENT);
111
112 require_once 'lib/pubsubhubbub/publisher.php';
113
114 $tz_offset = -1;
115 $utc_tz = new DateTimeZone('UTC');
116 $schema_version = false;
117
118 /**
119 * Print a timestamped debug message.
120 *
121 * @param string $msg The debug message.
122 * @return void
123 */
124 function _debug($msg) {
125 if (defined('QUIET') && QUIET) {
126 return;
127 }
128 $ts = strftime("%H:%M:%S", time());
129 if (function_exists('posix_getpid')) {
130 $ts = "$ts/" . posix_getpid();
131 }
132 print "[$ts] $msg\n";
133 } // function _debug
134
135 /**
136 * Purge a feed old posts.
137 *
138 * @param mixed $link A database connection.
139 * @param mixed $feed_id The id of the purged feed.
140 * @param mixed $purge_interval Olderness of purged posts.
141 * @param boolean $debug Set to True to enable the debug. False by default.
142 * @access public
143 * @return void
144 */
145 function purge_feed($link, $feed_id, $purge_interval, $debug = false) {
146
147 if (!$purge_interval) $purge_interval = feed_purge_interval($link, $feed_id);
148
149 $rows = -1;
150
151 $result = db_query($link,
152 "SELECT owner_uid FROM ttrss_feeds WHERE id = '$feed_id'");
153
154 $owner_uid = false;
155
156 if (db_num_rows($result) == 1) {
157 $owner_uid = db_fetch_result($result, 0, "owner_uid");
158 }
159
160 if ($purge_interval == -1 || !$purge_interval) {
161 if ($owner_uid) {
162 ccache_update($link, $feed_id, $owner_uid);
163 }
164 return;
165 }
166
167 if (!$owner_uid) return;
168
169 if (FORCE_ARTICLE_PURGE == 0) {
170 $purge_unread = get_pref($link, "PURGE_UNREAD_ARTICLES",
171 $owner_uid, false);
172 } else {
173 $purge_unread = true;
174 $purge_interval = FORCE_ARTICLE_PURGE;
175 }
176
177 if (!$purge_unread) $query_limit = " unread = false AND ";
178
179 if (DB_TYPE == "pgsql") {
180 $pg_version = get_pgsql_version($link);
181
182 if (preg_match("/^7\./", $pg_version) || preg_match("/^8\.0/", $pg_version)) {
183
184 $result = db_query($link, "DELETE FROM ttrss_user_entries WHERE
185 ttrss_entries.id = ref_id AND
186 marked = false AND
187 feed_id = '$feed_id' AND
188 $query_limit
189 ttrss_entries.date_updated < NOW() - INTERVAL '$purge_interval days'");
190
191 } else {
192
193 $result = db_query($link, "DELETE FROM ttrss_user_entries
194 USING ttrss_entries
195 WHERE ttrss_entries.id = ref_id AND
196 marked = false AND
197 feed_id = '$feed_id' AND
198 $query_limit
199 ttrss_entries.date_updated < NOW() - INTERVAL '$purge_interval days'");
200 }
201
202 $rows = pg_affected_rows($result);
203
204 } else {
205
206 /* $result = db_query($link, "DELETE FROM ttrss_user_entries WHERE
207 marked = false AND feed_id = '$feed_id' AND
208 (SELECT date_updated FROM ttrss_entries WHERE
209 id = ref_id) < DATE_SUB(NOW(), INTERVAL $purge_interval DAY)"); */
210
211 $result = db_query($link, "DELETE FROM ttrss_user_entries
212 USING ttrss_user_entries, ttrss_entries
213 WHERE ttrss_entries.id = ref_id AND
214 marked = false AND
215 feed_id = '$feed_id' AND
216 $query_limit
217 ttrss_entries.date_updated < DATE_SUB(NOW(), INTERVAL $purge_interval DAY)");
218
219 $rows = mysql_affected_rows($link);
220
221 }
222
223 ccache_update($link, $feed_id, $owner_uid);
224
225 if ($debug) {
226 _debug("Purged feed $feed_id ($purge_interval): deleted $rows articles");
227 }
228
229 return $rows;
230 } // function purge_feed
231
232 function feed_purge_interval($link, $feed_id) {
233
234 $result = db_query($link, "SELECT purge_interval, owner_uid FROM ttrss_feeds
235 WHERE id = '$feed_id'");
236
237 if (db_num_rows($result) == 1) {
238 $purge_interval = db_fetch_result($result, 0, "purge_interval");
239 $owner_uid = db_fetch_result($result, 0, "owner_uid");
240
241 if ($purge_interval == 0) $purge_interval = get_pref($link,
242 'PURGE_OLD_DAYS', $owner_uid);
243
244 return $purge_interval;
245
246 } else {
247 return -1;
248 }
249 }
250
251 function purge_orphans($link, $do_output = false) {
252
253 // purge orphaned posts in main content table
254 $result = db_query($link, "DELETE FROM ttrss_entries WHERE
255 (SELECT COUNT(int_id) FROM ttrss_user_entries WHERE ref_id = id) = 0");
256
257 if ($do_output) {
258 $rows = db_affected_rows($link, $result);
259 _debug("Purged $rows orphaned posts.");
260 }
261 }
262
263 function get_feed_update_interval($link, $feed_id) {
264 $result = db_query($link, "SELECT owner_uid, update_interval FROM
265 ttrss_feeds WHERE id = '$feed_id'");
266
267 if (db_num_rows($result) == 1) {
268 $update_interval = db_fetch_result($result, 0, "update_interval");
269 $owner_uid = db_fetch_result($result, 0, "owner_uid");
270
271 if ($update_interval != 0) {
272 return $update_interval;
273 } else {
274 return get_pref($link, 'DEFAULT_UPDATE_INTERVAL', $owner_uid, false);
275 }
276
277 } else {
278 return -1;
279 }
280 }
281
282 function fetch_file_contents($url, $type = false, $login = false, $pass = false, $post_query = false, $timeout = false) {
283 $login = urlencode($login);
284 $pass = urlencode($pass);
285
286 global $fetch_last_error;
287
288 if (function_exists('curl_init') && !ini_get("open_basedir")) {
289
290 if (ini_get("safe_mode")) {
291 $ch = curl_init(geturl($url));
292 } else {
293 $ch = curl_init($url);
294 }
295
296 curl_setopt($ch, CURLOPT_CONNECTTIMEOUT, $timeout ? $timeout : 15);
297 curl_setopt($ch, CURLOPT_TIMEOUT, $timeout ? $timeout : 45);
298 curl_setopt($ch, CURLOPT_FOLLOWLOCATION, !ini_get("safe_mode"));
299 curl_setopt($ch, CURLOPT_MAXREDIRS, 20);
300 curl_setopt($ch, CURLOPT_BINARYTRANSFER, true);
301 curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
302 curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false);
303 curl_setopt($ch, CURLOPT_HTTPAUTH, CURLAUTH_ANY);
304 curl_setopt($ch, CURLOPT_USERAGENT, SELF_USER_AGENT);
305 curl_setopt($ch, CURLOPT_ENCODING , "gzip");
306 curl_setopt($ch, CURLOPT_REFERER, $url);
307
308 if ($post_query) {
309 curl_setopt($ch, CURLOPT_POST, true);
310 curl_setopt($ch, CURLOPT_POSTFIELDS, $post_query);
311 }
312
313 if ($login && $pass)
314 curl_setopt($ch, CURLOPT_USERPWD, "$login:$pass");
315
316 $contents = @curl_exec($ch);
317
318 if (curl_errno($ch) === 23 || curl_errno($ch) === 61) {
319 curl_setopt($ch, CURLOPT_ENCODING, 'none');
320 $contents = @curl_exec($ch);
321 }
322
323 if ($contents === false) {
324 $fetch_last_error = curl_errno($ch) . " " . curl_error($ch);
325 curl_close($ch);
326 return false;
327 }
328
329 $http_code = curl_getinfo($ch, CURLINFO_HTTP_CODE);
330 $content_type = curl_getinfo($ch, CURLINFO_CONTENT_TYPE);
331
332 if ($http_code != 200 || $type && strpos($content_type, "$type") === false) {
333 if (curl_errno($ch) != 0) {
334 $fetch_last_error = curl_errno($ch) . " " . curl_error($ch);
335 } else {
336 $fetch_last_error = "HTTP Code: $http_code";
337 }
338 curl_close($ch);
339 return false;
340 }
341
342 curl_close($ch);
343
344 return $contents;
345 } else {
346 if ($login && $pass ){
347 $url_parts = array();
348
349 preg_match("/(^[^:]*):\/\/(.*)/", $url, $url_parts);
350
351 if ($url_parts[1] && $url_parts[2]) {
352 $url = $url_parts[1] . "://$login:$pass@" . $url_parts[2];
353 }
354 }
355
356 $data = @file_get_contents($url);
357
358 $gzdecoded = gzdecode($data);
359 if ($gzdecoded) $data = $gzdecoded;
360
361 if (!$data && function_exists('error_get_last')) {
362 $error = error_get_last();
363 $fetch_last_error = $error["message"];
364 }
365 return $data;
366 }
367
368 }
369
370 /**
371 * Try to determine the favicon URL for a feed.
372 * adapted from wordpress favicon plugin by Jeff Minard (http://thecodepro.com/)
373 * http://dev.wp-plugins.org/file/favatars/trunk/favatars.php
374 *
375 * @param string $url A feed or page URL
376 * @access public
377 * @return mixed The favicon URL, or false if none was found.
378 */
379 function get_favicon_url($url) {
380
381 $favicon_url = false;
382
383 if ($html = @fetch_file_contents($url)) {
384
385 libxml_use_internal_errors(true);
386
387 $doc = new DOMDocument();
388 $doc->loadHTML($html);
389 $xpath = new DOMXPath($doc);
390
391 $base = $xpath->query('/html/head/base');
392 foreach ($base as $b) {
393 $url = $b->getAttribute("href");
394 break;
395 }
396
397 $entries = $xpath->query('/html/head/link[@rel="shortcut icon" or @rel="icon"]');
398 if (count($entries) > 0) {
399 foreach ($entries as $entry) {
400 $favicon_url = rewrite_relative_url($url, $entry->getAttribute("href"));
401 break;
402 }
403 }
404 }
405
406 if (!$favicon_url)
407 $favicon_url = rewrite_relative_url($url, "/favicon.ico");
408
409 return $favicon_url;
410 } // function get_favicon_url
411
412 function check_feed_favicon($site_url, $feed, $link) {
413 # print "FAVICON [$site_url]: $favicon_url\n";
414
415 $icon_file = ICONS_DIR . "/$feed.ico";
416
417 if (!file_exists($icon_file)) {
418 $favicon_url = get_favicon_url($site_url);
419
420 if ($favicon_url) {
421 // Limiting to "image" type misses those served with text/plain
422 $contents = fetch_file_contents($favicon_url); // , "image");
423
424 if ($contents) {
425 // Crude image type matching.
426 // Patterns gleaned from the file(1) source code.
427 if (preg_match('/^\x00\x00\x01\x00/', $contents)) {
428 // 0 string \000\000\001\000 MS Windows icon resource
429 //error_log("check_feed_favicon: favicon_url=$favicon_url isa MS Windows icon resource");
430 }
431 elseif (preg_match('/^GIF8/', $contents)) {
432 // 0 string GIF8 GIF image data
433 //error_log("check_feed_favicon: favicon_url=$favicon_url isa GIF image");
434 }
435 elseif (preg_match('/^\x89PNG\x0d\x0a\x1a\x0a/', $contents)) {
436 // 0 string \x89PNG\x0d\x0a\x1a\x0a PNG image data
437 //error_log("check_feed_favicon: favicon_url=$favicon_url isa PNG image");
438 }
439 elseif (preg_match('/^\xff\xd8/', $contents)) {
440 // 0 beshort 0xffd8 JPEG image data
441 //error_log("check_feed_favicon: favicon_url=$favicon_url isa JPG image");
442 }
443 else {
444 //error_log("check_feed_favicon: favicon_url=$favicon_url isa UNKNOWN type");
445 $contents = "";
446 }
447 }
448
449 if ($contents) {
450 $fp = @fopen($icon_file, "w");
451
452 if ($fp) {
453 fwrite($fp, $contents);
454 fclose($fp);
455 chmod($icon_file, 0644);
456 }
457 }
458 }
459 }
460 }
461
462 function print_select($id, $default, $values, $attributes = "") {
463 print "<select name=\"$id\" id=\"$id\" $attributes>";
464 foreach ($values as $v) {
465 if ($v == $default)
466 $sel = "selected=\"1\"";
467 else
468 $sel = "";
469
470 $v = trim($v);
471
472 print "<option value=\"$v\" $sel>$v</option>";
473 }
474 print "</select>";
475 }
476
477 function print_select_hash($id, $default, $values, $attributes = "") {
478 print "<select name=\"$id\" id='$id' $attributes>";
479 foreach (array_keys($values) as $v) {
480 if ($v == $default)
481 $sel = 'selected="selected"';
482 else
483 $sel = "";
484
485 $v = trim($v);
486
487 print "<option $sel value=\"$v\">".$values[$v]."</option>";
488 }
489
490 print "</select>";
491 }
492
493 function print_radio($id, $default, $true_is, $values, $attributes = "") {
494 foreach ($values as $v) {
495
496 if ($v == $default)
497 $sel = "checked";
498 else
499 $sel = "";
500
501 if ($v == $true_is) {
502 $sel .= " value=\"1\"";
503 } else {
504 $sel .= " value=\"0\"";
505 }
506
507 print "<input class=\"noborder\" dojoType=\"dijit.form.RadioButton\"
508 type=\"radio\" $sel $attributes name=\"$id\">&nbsp;$v&nbsp;";
509
510 }
511 }
512
513 function initialize_user_prefs($link, $uid, $profile = false) {
514
515 $uid = db_escape_string($uid);
516
517 if (!$profile) {
518 $profile = "NULL";
519 $profile_qpart = "AND profile IS NULL";
520 } else {
521 $profile_qpart = "AND profile = '$profile'";
522 }
523
524 if (get_schema_version($link) < 63) $profile_qpart = "";
525
526 db_query($link, "BEGIN");
527
528 $result = db_query($link, "SELECT pref_name,def_value FROM ttrss_prefs");
529
530 $u_result = db_query($link, "SELECT pref_name
531 FROM ttrss_user_prefs WHERE owner_uid = '$uid' $profile_qpart");
532
533 $active_prefs = array();
534
535 while ($line = db_fetch_assoc($u_result)) {
536 array_push($active_prefs, $line["pref_name"]);
537 }
538
539 while ($line = db_fetch_assoc($result)) {
540 if (array_search($line["pref_name"], $active_prefs) === FALSE) {
541 // print "adding " . $line["pref_name"] . "<br>";
542
543 if (get_schema_version($link) < 63) {
544 db_query($link, "INSERT INTO ttrss_user_prefs
545 (owner_uid,pref_name,value) VALUES
546 ('$uid', '".$line["pref_name"]."','".$line["def_value"]."')");
547
548 } else {
549 db_query($link, "INSERT INTO ttrss_user_prefs
550 (owner_uid,pref_name,value, profile) VALUES
551 ('$uid', '".$line["pref_name"]."','".$line["def_value"]."', $profile)");
552 }
553
554 }
555 }
556
557 db_query($link, "COMMIT");
558
559 }
560
561 function get_ssl_certificate_id() {
562 if ($_SERVER["REDIRECT_SSL_CLIENT_M_SERIAL"]) {
563 return sha1($_SERVER["REDIRECT_SSL_CLIENT_M_SERIAL"] .
564 $_SERVER["REDIRECT_SSL_CLIENT_V_START"] .
565 $_SERVER["REDIRECT_SSL_CLIENT_V_END"] .
566 $_SERVER["REDIRECT_SSL_CLIENT_S_DN"]);
567 }
568 return "";
569 }
570
571 function authenticate_user($link, $login, $password, $check_only = false) {
572
573 if (!SINGLE_USER_MODE) {
574
575 $user_id = false;
576
577 global $pluginhost;
578 foreach ($pluginhost->get_hooks($pluginhost::HOOK_AUTH_USER) as $plugin) {
579
580 $user_id = (int) $plugin->authenticate($login, $password);
581
582 if ($user_id) {
583 $_SESSION["auth_module"] = strtolower(get_class($plugin));
584 break;
585 }
586 }
587
588 if ($user_id && !$check_only) {
589 $_SESSION["uid"] = $user_id;
590
591 $result = db_query($link, "SELECT login,access_level,pwd_hash FROM ttrss_users
592 WHERE id = '$user_id'");
593
594 $_SESSION["name"] = db_fetch_result($result, 0, "login");
595 $_SESSION["access_level"] = db_fetch_result($result, 0, "access_level");
596 $_SESSION["csrf_token"] = sha1(uniqid(rand(), true));
597
598 db_query($link, "UPDATE ttrss_users SET last_login = NOW() WHERE id = " .
599 $_SESSION["uid"]);
600
601 $_SESSION["ip_address"] = $_SERVER["REMOTE_ADDR"];
602 $_SESSION["pwd_hash"] = db_fetch_result($result, 0, "pwd_hash");
603
604 $_SESSION["last_version_check"] = time();
605
606 initialize_user_prefs($link, $_SESSION["uid"]);
607
608 return true;
609 }
610
611 return false;
612
613 } else {
614
615 $_SESSION["uid"] = 1;
616 $_SESSION["name"] = "admin";
617 $_SESSION["access_level"] = 10;
618
619 $_SESSION["hide_hello"] = true;
620 $_SESSION["hide_logout"] = true;
621
622 $_SESSION["auth_module"] = false;
623
624 if (!$_SESSION["csrf_token"]) {
625 $_SESSION["csrf_token"] = sha1(uniqid(rand(), true));
626 }
627
628 $_SESSION["ip_address"] = $_SERVER["REMOTE_ADDR"];
629
630 initialize_user_prefs($link, $_SESSION["uid"]);
631
632 return true;
633 }
634 }
635
636 function make_password($length = 8) {
637
638 $password = "";
639 $possible = "0123456789abcdfghjkmnpqrstvwxyzABCDFGHJKMNPQRSTVWXYZ";
640
641 $i = 0;
642
643 while ($i < $length) {
644 $char = substr($possible, mt_rand(0, strlen($possible)-1), 1);
645
646 if (!strstr($password, $char)) {
647 $password .= $char;
648 $i++;
649 }
650 }
651 return $password;
652 }
653
654 // this is called after user is created to initialize default feeds, labels
655 // or whatever else
656
657 // user preferences are checked on every login, not here
658
659 function initialize_user($link, $uid) {
660
661 db_query($link, "insert into ttrss_feeds (owner_uid,title,feed_url)
662 values ('$uid', 'Tiny Tiny RSS: New Releases',
663 'http://tt-rss.org/releases.rss')");
664
665 db_query($link, "insert into ttrss_feeds (owner_uid,title,feed_url)
666 values ('$uid', 'Tiny Tiny RSS: Forum',
667 'http://tt-rss.org/forum/rss.php')");
668 }
669
670 function logout_user() {
671 session_destroy();
672 if (isset($_COOKIE[session_name()])) {
673 setcookie(session_name(), '', time()-42000, '/');
674 }
675 }
676
677 function validate_csrf($csrf_token) {
678 return $csrf_token == $_SESSION['csrf_token'];
679 }
680
681 function validate_session($link) {
682 if (SINGLE_USER_MODE) return true;
683
684 $check_ip = $_SESSION['ip_address'];
685
686 switch (SESSION_CHECK_ADDRESS) {
687 case 0:
688 $check_ip = '';
689 break;
690 case 1:
691 $check_ip = substr($check_ip, 0, strrpos($check_ip, '.')+1);
692 break;
693 case 2:
694 $check_ip = substr($check_ip, 0, strrpos($check_ip, '.'));
695 $check_ip = substr($check_ip, 0, strrpos($check_ip, '.')+1);
696 break;
697 };
698
699 if ($check_ip && strpos($_SERVER['REMOTE_ADDR'], $check_ip) !== 0) {
700 $_SESSION["login_error_msg"] =
701 __("Session failed to validate (incorrect IP)");
702 return false;
703 }
704
705 if ($_SESSION["ref_schema_version"] != get_schema_version($link, true))
706 return false;
707
708 if ($_SESSION["uid"]) {
709
710 $result = db_query($link,
711 "SELECT pwd_hash FROM ttrss_users WHERE id = '".$_SESSION["uid"]."'");
712
713 $pwd_hash = db_fetch_result($result, 0, "pwd_hash");
714
715 if ($pwd_hash != $_SESSION["pwd_hash"]) {
716 return false;
717 }
718 }
719
720 /* if ($_SESSION["cookie_lifetime"] && $_SESSION["uid"]) {
721
722 //print_r($_SESSION);
723
724 if (time() > $_SESSION["cookie_lifetime"]) {
725 return false;
726 }
727 } */
728
729 return true;
730 }
731
732 function load_user_plugins($link, $owner_uid) {
733 if ($owner_uid) {
734 $plugins = get_pref($link, "_ENABLED_PLUGINS", $owner_uid);
735
736 global $pluginhost;
737 $pluginhost->load($plugins, $pluginhost::KIND_USER, $owner_uid);
738
739 if (get_schema_version($link) > 100) {
740 $pluginhost->load_data();
741 }
742 }
743 }
744
745 function login_sequence($link, $login_form = 0) {
746 $_SESSION["prefs_cache"] = false;
747
748 if (SINGLE_USER_MODE) {
749 authenticate_user($link, "admin", null);
750 cache_prefs($link);
751 load_user_plugins($link, $_SESSION["uid"]);
752 } else {
753 if (!$_SESSION["uid"] || !validate_session($link)) {
754
755 if (AUTH_AUTO_LOGIN && authenticate_user($link, null, null)) {
756 $_SESSION["ref_schema_version"] = get_schema_version($link, true);
757 } else {
758 authenticate_user($link, null, null, true);
759 }
760
761 if (!$_SESSION["uid"]) render_login_form($link, $login_form);
762
763 } else {
764 /* bump login timestamp */
765 db_query($link, "UPDATE ttrss_users SET last_login = NOW() WHERE id = " .
766 $_SESSION["uid"]);
767 }
768
769 if ($_SESSION["uid"] && $_SESSION["language"] && SESSION_COOKIE_LIFETIME > 0) {
770 setcookie("ttrss_lang", $_SESSION["language"],
771 time() + SESSION_COOKIE_LIFETIME);
772 }
773
774 if ($_SESSION["uid"]) {
775 cache_prefs($link);
776 load_user_plugins($link, $_SESSION["uid"]);
777 }
778 }
779 }
780
781 function truncate_string($str, $max_len, $suffix = '&hellip;') {
782 if (mb_strlen($str, "utf-8") > $max_len - 3) {
783 return mb_substr($str, 0, $max_len, "utf-8") . $suffix;
784 } else {
785 return $str;
786 }
787 }
788
789 function convert_timestamp($timestamp, $source_tz, $dest_tz) {
790
791 try {
792 $source_tz = new DateTimeZone($source_tz);
793 } catch (Exception $e) {
794 $source_tz = new DateTimeZone('UTC');
795 }
796
797 try {
798 $dest_tz = new DateTimeZone($dest_tz);
799 } catch (Exception $e) {
800 $dest_tz = new DateTimeZone('UTC');
801 }
802
803 $dt = new DateTime(date('Y-m-d H:i:s', $timestamp), $source_tz);
804 return $dt->format('U') + $dest_tz->getOffset($dt);
805 }
806
807 function make_local_datetime($link, $timestamp, $long, $owner_uid = false,
808 $no_smart_dt = false) {
809
810 if (!$owner_uid) $owner_uid = $_SESSION['uid'];
811 if (!$timestamp) $timestamp = '1970-01-01 0:00';
812
813 global $utc_tz;
814 global $tz_offset;
815
816 # We store date in UTC internally
817 $dt = new DateTime($timestamp, $utc_tz);
818
819 if ($tz_offset == -1) {
820
821 $user_tz_string = get_pref($link, 'USER_TIMEZONE', $owner_uid);
822
823 try {
824 $user_tz = new DateTimeZone($user_tz_string);
825 } catch (Exception $e) {
826 $user_tz = $utc_tz;
827 }
828
829 $tz_offset = $user_tz->getOffset($dt);
830 }
831
832 $user_timestamp = $dt->format('U') + $tz_offset;
833
834 if (!$no_smart_dt) {
835 return smart_date_time($link, $user_timestamp,
836 $tz_offset, $owner_uid);
837 } else {
838 if ($long)
839 $format = get_pref($link, 'LONG_DATE_FORMAT', $owner_uid);
840 else
841 $format = get_pref($link, 'SHORT_DATE_FORMAT', $owner_uid);
842
843 return date($format, $user_timestamp);
844 }
845 }
846
847 function smart_date_time($link, $timestamp, $tz_offset = 0, $owner_uid = false) {
848 if (!$owner_uid) $owner_uid = $_SESSION['uid'];
849
850 if (date("Y.m.d", $timestamp) == date("Y.m.d", time() + $tz_offset)) {
851 return date("G:i", $timestamp);
852 } else if (date("Y", $timestamp) == date("Y", time() + $tz_offset)) {
853 $format = get_pref($link, 'SHORT_DATE_FORMAT', $owner_uid);
854 return date($format, $timestamp);
855 } else {
856 $format = get_pref($link, 'LONG_DATE_FORMAT', $owner_uid);
857 return date($format, $timestamp);
858 }
859 }
860
861 function sql_bool_to_bool($s) {
862 if ($s == "t" || $s == "1" || strtolower($s) == "true") {
863 return true;
864 } else {
865 return false;
866 }
867 }
868
869 function bool_to_sql_bool($s) {
870 if ($s) {
871 return "true";
872 } else {
873 return "false";
874 }
875 }
876
877 // Session caching removed due to causing wrong redirects to upgrade
878 // script when get_schema_version() is called on an obsolete session
879 // created on a previous schema version.
880 function get_schema_version($link, $nocache = false) {
881 global $schema_version;
882
883 if (!$schema_version) {
884 $result = db_query($link, "SELECT schema_version FROM ttrss_version");
885 $version = db_fetch_result($result, 0, "schema_version");
886 $schema_version = $version;
887 return $version;
888 } else {
889 return $schema_version;
890 }
891 }
892
893 function sanity_check($link) {
894 require_once 'errors.php';
895
896 $error_code = 0;
897 $schema_version = get_schema_version($link, true);
898
899 if ($schema_version != SCHEMA_VERSION) {
900 $error_code = 5;
901 }
902
903 if (DB_TYPE == "mysql") {
904 $result = db_query($link, "SELECT true", false);
905 if (db_num_rows($result) != 1) {
906 $error_code = 10;
907 }
908 }
909
910 if (db_escape_string("testTEST") != "testTEST") {
911 $error_code = 12;
912 }
913
914 return array("code" => $error_code, "message" => $ERRORS[$error_code]);
915 }
916
917 function file_is_locked($filename) {
918 if (function_exists('flock')) {
919 $fp = @fopen(LOCK_DIRECTORY . "/$filename", "r");
920 if ($fp) {
921 if (flock($fp, LOCK_EX | LOCK_NB)) {
922 flock($fp, LOCK_UN);
923 fclose($fp);
924 return false;
925 }
926 fclose($fp);
927 return true;
928 } else {
929 return false;
930 }
931 }
932 return true; // consider the file always locked and skip the test
933 }
934
935 function make_lockfile($filename) {
936 $fp = fopen(LOCK_DIRECTORY . "/$filename", "w");
937
938 if ($fp && flock($fp, LOCK_EX | LOCK_NB)) {
939 if (function_exists('posix_getpid')) {
940 fwrite($fp, posix_getpid() . "\n");
941 }
942 return $fp;
943 } else {
944 return false;
945 }
946 }
947
948 function make_stampfile($filename) {
949 $fp = fopen(LOCK_DIRECTORY . "/$filename", "w");
950
951 if (flock($fp, LOCK_EX | LOCK_NB)) {
952 fwrite($fp, time() . "\n");
953 flock($fp, LOCK_UN);
954 fclose($fp);
955 return true;
956 } else {
957 return false;
958 }
959 }
960
961 function sql_random_function() {
962 if (DB_TYPE == "mysql") {
963 return "RAND()";
964 } else {
965 return "RANDOM()";
966 }
967 }
968
969 function catchup_feed($link, $feed, $cat_view, $owner_uid = false, $max_id = false) {
970
971 if (!$owner_uid) $owner_uid = $_SESSION['uid'];
972
973 //if (preg_match("/^-?[0-9][0-9]*$/", $feed) != false) {
974
975 $ref_check_qpart = ($max_id &&
976 !get_pref($link, 'REVERSE_HEADLINES')) ? "ref_id <= '$max_id'" : "true";
977
978 if (is_numeric($feed)) {
979 if ($cat_view) {
980
981 if ($feed >= 0) {
982
983 if ($feed > 0) {
984 $children = getChildCategories($link, $feed, $owner_uid);
985 array_push($children, $feed);
986
987 $children = join(",", $children);
988
989 $cat_qpart = "cat_id IN ($children)";
990 } else {
991 $cat_qpart = "cat_id IS NULL";
992 }
993
994 db_query($link, "UPDATE ttrss_user_entries
995 SET unread = false,last_read = NOW()
996 WHERE feed_id IN (SELECT id FROM ttrss_feeds WHERE $cat_qpart)
997 AND $ref_check_qpart AND unread = true
998 AND owner_uid = $owner_uid");
999
1000 } else if ($feed == -2) {
1001
1002 db_query($link, "UPDATE ttrss_user_entries
1003 SET unread = false,last_read = NOW() WHERE (SELECT COUNT(*)
1004 FROM ttrss_user_labels2 WHERE article_id = ref_id) > 0
1005 AND $ref_check_qpart
1006 AND unread = true AND owner_uid = $owner_uid");
1007 }
1008
1009 } else if ($feed > 0) {
1010
1011 db_query($link, "UPDATE ttrss_user_entries
1012 SET unread = false,last_read = NOW()
1013 WHERE feed_id = '$feed'
1014 AND $ref_check_qpart AND unread = true
1015 AND owner_uid = $owner_uid");
1016
1017 } else if ($feed < 0 && $feed > -10) { // special, like starred
1018
1019 if ($feed == -1) {
1020 db_query($link, "UPDATE ttrss_user_entries
1021 SET unread = false,last_read = NOW()
1022 WHERE marked = true
1023 AND $ref_check_qpart AND unread = true
1024 AND owner_uid = $owner_uid");
1025 }
1026
1027 if ($feed == -2) {
1028 db_query($link, "UPDATE ttrss_user_entries
1029 SET unread = false,last_read = NOW()
1030 WHERE published = true
1031 AND $ref_check_qpart AND unread = true
1032 AND owner_uid = $owner_uid");
1033 }
1034
1035 if ($feed == -3) {
1036
1037 $intl = get_pref($link, "FRESH_ARTICLE_MAX_AGE");
1038
1039 if (DB_TYPE == "pgsql") {
1040 $match_part = "updated > NOW() - INTERVAL '$intl hour' ";
1041 } else {
1042 $match_part = "updated > DATE_SUB(NOW(),
1043 INTERVAL $intl HOUR) ";
1044 }
1045
1046 $result = db_query($link, "SELECT id FROM ttrss_entries,
1047 ttrss_user_entries WHERE $match_part AND
1048 unread = true AND
1049 ttrss_user_entries.ref_id = ttrss_entries.id AND
1050 owner_uid = $owner_uid");
1051
1052 $affected_ids = array();
1053
1054 while ($line = db_fetch_assoc($result)) {
1055 array_push($affected_ids, $line["id"]);
1056 }
1057
1058 catchupArticlesById($link, $affected_ids, 0);
1059 }
1060
1061 if ($feed == -4) {
1062 db_query($link, "UPDATE ttrss_user_entries
1063 SET unread = false,last_read = NOW()
1064 WHERE $ref_check_qpart AND unread = true AND
1065 owner_uid = $owner_uid");
1066 }
1067
1068 } else if ($feed < -10) { // label
1069
1070 $label_id = -$feed - 11;
1071
1072 db_query($link, "UPDATE ttrss_user_entries, ttrss_user_labels2
1073 SET unread = false, last_read = NOW()
1074 WHERE label_id = '$label_id' AND unread = true
1075 AND $ref_check_qpart
1076 AND owner_uid = '$owner_uid' AND ref_id = article_id");
1077
1078 }
1079
1080 ccache_update($link, $feed, $owner_uid, $cat_view);
1081
1082 } else { // tag
1083 db_query($link, "BEGIN");
1084
1085 $tag_name = db_escape_string($feed);
1086
1087 $result = db_query($link, "SELECT post_int_id FROM ttrss_tags
1088 WHERE tag_name = '$tag_name' AND owner_uid = $owner_uid");
1089
1090 while ($line = db_fetch_assoc($result)) {
1091 db_query($link, "UPDATE ttrss_user_entries SET
1092 unread = false, last_read = NOW()
1093 WHERE $ref_check_qpart AND unread = true
1094 AND int_id = " . $line["post_int_id"]);
1095 }
1096 db_query($link, "COMMIT");
1097 }
1098 }
1099
1100 function getAllCounters($link) {
1101 $data = getGlobalCounters($link);
1102
1103 $data = array_merge($data, getVirtCounters($link));
1104 $data = array_merge($data, getLabelCounters($link));
1105 $data = array_merge($data, getFeedCounters($link, $active_feed));
1106 $data = array_merge($data, getCategoryCounters($link));
1107
1108 return $data;
1109 }
1110
1111 function getCategoryTitle($link, $cat_id) {
1112
1113 if ($cat_id == -1) {
1114 return __("Special");
1115 } else if ($cat_id == -2) {
1116 return __("Labels");
1117 } else {
1118
1119 $result = db_query($link, "SELECT title FROM ttrss_feed_categories WHERE
1120 id = '$cat_id'");
1121
1122 if (db_num_rows($result) == 1) {
1123 return db_fetch_result($result, 0, "title");
1124 } else {
1125 return __("Uncategorized");
1126 }
1127 }
1128 }
1129
1130
1131 function getCategoryCounters($link) {
1132 $ret_arr = array();
1133
1134 /* Labels category */
1135
1136 $cv = array("id" => -2, "kind" => "cat",
1137 "counter" => getCategoryUnread($link, -2));
1138
1139 array_push($ret_arr, $cv);
1140
1141 $result = db_query($link, "SELECT id AS cat_id, value AS unread,
1142 (SELECT COUNT(id) FROM ttrss_feed_categories AS c2
1143 WHERE c2.parent_cat = ttrss_feed_categories.id) AS num_children
1144 FROM ttrss_feed_categories, ttrss_cat_counters_cache
1145 WHERE ttrss_cat_counters_cache.feed_id = id AND
1146 ttrss_cat_counters_cache.owner_uid = ttrss_feed_categories.owner_uid AND
1147 ttrss_feed_categories.owner_uid = " . $_SESSION["uid"]);
1148
1149 while ($line = db_fetch_assoc($result)) {
1150 $line["cat_id"] = (int) $line["cat_id"];
1151
1152 if ($line["num_children"] > 0) {
1153 $child_counter = getCategoryChildrenUnread($link, $line["cat_id"], $_SESSION["uid"]);
1154 } else {
1155 $child_counter = 0;
1156 }
1157
1158 $cv = array("id" => $line["cat_id"], "kind" => "cat",
1159 "counter" => $line["unread"] + $child_counter);
1160
1161 array_push($ret_arr, $cv);
1162 }
1163
1164 /* Special case: NULL category doesn't actually exist in the DB */
1165
1166 $cv = array("id" => 0, "kind" => "cat",
1167 "counter" => (int) ccache_find($link, 0, $_SESSION["uid"], true));
1168
1169 array_push($ret_arr, $cv);
1170
1171 return $ret_arr;
1172 }
1173
1174 // only accepts real cats (>= 0)
1175 function getCategoryChildrenUnread($link, $cat, $owner_uid = false) {
1176 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1177
1178 $result = db_query($link, "SELECT id FROM ttrss_feed_categories WHERE parent_cat = '$cat'
1179 AND owner_uid = $owner_uid");
1180
1181 $unread = 0;
1182
1183 while ($line = db_fetch_assoc($result)) {
1184 $unread += getCategoryUnread($link, $line["id"], $owner_uid);
1185 $unread += getCategoryChildrenUnread($link, $line["id"], $owner_uid);
1186 }
1187
1188 return $unread;
1189 }
1190
1191 function getCategoryUnread($link, $cat, $owner_uid = false) {
1192
1193 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1194
1195 if ($cat >= 0) {
1196
1197 if ($cat != 0) {
1198 $cat_query = "cat_id = '$cat'";
1199 } else {
1200 $cat_query = "cat_id IS NULL";
1201 }
1202
1203 $result = db_query($link, "SELECT id FROM ttrss_feeds WHERE $cat_query
1204 AND owner_uid = " . $owner_uid);
1205
1206 $cat_feeds = array();
1207 while ($line = db_fetch_assoc($result)) {
1208 array_push($cat_feeds, "feed_id = " . $line["id"]);
1209 }
1210
1211 if (count($cat_feeds) == 0) return 0;
1212
1213 $match_part = implode(" OR ", $cat_feeds);
1214
1215 $result = db_query($link, "SELECT COUNT(int_id) AS unread
1216 FROM ttrss_user_entries
1217 WHERE unread = true AND ($match_part)
1218 AND owner_uid = " . $owner_uid);
1219
1220 $unread = 0;
1221
1222 # this needs to be rewritten
1223 while ($line = db_fetch_assoc($result)) {
1224 $unread += $line["unread"];
1225 }
1226
1227 return $unread;
1228 } else if ($cat == -1) {
1229 return getFeedUnread($link, -1) + getFeedUnread($link, -2) + getFeedUnread($link, -3) + getFeedUnread($link, 0);
1230 } else if ($cat == -2) {
1231
1232 $result = db_query($link, "
1233 SELECT COUNT(unread) AS unread FROM
1234 ttrss_user_entries, ttrss_user_labels2
1235 WHERE article_id = ref_id AND unread = true
1236 AND ttrss_user_entries.owner_uid = '$owner_uid'");
1237
1238 $unread = db_fetch_result($result, 0, "unread");
1239
1240 return $unread;
1241
1242 }
1243 }
1244
1245 function getFeedUnread($link, $feed, $is_cat = false) {
1246 return getFeedArticles($link, $feed, $is_cat, true, $_SESSION["uid"]);
1247 }
1248
1249 function getLabelUnread($link, $label_id, $owner_uid = false) {
1250 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1251
1252 $result = db_query($link, "SELECT COUNT(ref_id) AS unread FROM ttrss_user_entries, ttrss_user_labels2
1253 WHERE owner_uid = '$owner_uid' AND unread = true AND label_id = '$label_id' AND article_id = ref_id");
1254
1255 if (db_num_rows($result) != 0) {
1256 return db_fetch_result($result, 0, "unread");
1257 } else {
1258 return 0;
1259 }
1260 }
1261
1262 function getFeedArticles($link, $feed, $is_cat = false, $unread_only = false,
1263 $owner_uid = false) {
1264
1265 $n_feed = (int) $feed;
1266 $need_entries = false;
1267
1268 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1269
1270 if ($unread_only) {
1271 $unread_qpart = "unread = true";
1272 } else {
1273 $unread_qpart = "true";
1274 }
1275
1276 if ($is_cat) {
1277 return getCategoryUnread($link, $n_feed, $owner_uid);
1278 } else if ($n_feed == -6) {
1279 return 0;
1280 } else if ($feed != "0" && $n_feed == 0) {
1281
1282 $feed = db_escape_string($feed);
1283
1284 $result = db_query($link, "SELECT SUM((SELECT COUNT(int_id)
1285 FROM ttrss_user_entries,ttrss_entries WHERE int_id = post_int_id
1286 AND ref_id = id AND $unread_qpart)) AS count FROM ttrss_tags
1287 WHERE owner_uid = $owner_uid AND tag_name = '$feed'");
1288 return db_fetch_result($result, 0, "count");
1289
1290 } else if ($n_feed == -1) {
1291 $match_part = "marked = true";
1292 } else if ($n_feed == -2) {
1293 $match_part = "published = true";
1294 } else if ($n_feed == -3) {
1295 $match_part = "unread = true AND score >= 0";
1296
1297 $intl = get_pref($link, "FRESH_ARTICLE_MAX_AGE", $owner_uid);
1298
1299 if (DB_TYPE == "pgsql") {
1300 $match_part .= " AND updated > NOW() - INTERVAL '$intl hour' ";
1301 } else {
1302 $match_part .= " AND updated > DATE_SUB(NOW(), INTERVAL $intl HOUR) ";
1303 }
1304
1305 $need_entries = true;
1306
1307 } else if ($n_feed == -4) {
1308 $match_part = "true";
1309 } else if ($n_feed >= 0) {
1310
1311 if ($n_feed != 0) {
1312 $match_part = "feed_id = '$n_feed'";
1313 } else {
1314 $match_part = "feed_id IS NULL";
1315 }
1316
1317 } else if ($feed < -10) {
1318
1319 $label_id = -$feed - 11;
1320
1321 return getLabelUnread($link, $label_id, $owner_uid);
1322
1323 }
1324
1325 if ($match_part) {
1326
1327 if ($need_entries) {
1328 $from_qpart = "ttrss_user_entries,ttrss_entries";
1329 $from_where = "ttrss_entries.id = ttrss_user_entries.ref_id AND";
1330 } else {
1331 $from_qpart = "ttrss_user_entries";
1332 }
1333
1334 $query = "SELECT count(int_id) AS unread
1335 FROM $from_qpart WHERE
1336 $unread_qpart AND $from_where ($match_part) AND ttrss_user_entries.owner_uid = $owner_uid";
1337
1338 //echo "[$feed/$query]\n";
1339
1340 $result = db_query($link, $query);
1341
1342 } else {
1343
1344 $result = db_query($link, "SELECT COUNT(post_int_id) AS unread
1345 FROM ttrss_tags,ttrss_user_entries,ttrss_entries
1346 WHERE tag_name = '$feed' AND post_int_id = int_id AND ref_id = ttrss_entries.id
1347 AND $unread_qpart AND ttrss_tags.owner_uid = " . $owner_uid);
1348 }
1349
1350 $unread = db_fetch_result($result, 0, "unread");
1351
1352 return $unread;
1353 }
1354
1355 function getGlobalUnread($link, $user_id = false) {
1356
1357 if (!$user_id) {
1358 $user_id = $_SESSION["uid"];
1359 }
1360
1361 $result = db_query($link, "SELECT SUM(value) AS c_id FROM ttrss_counters_cache
1362 WHERE owner_uid = '$user_id' AND feed_id > 0");
1363
1364 $c_id = db_fetch_result($result, 0, "c_id");
1365
1366 return $c_id;
1367 }
1368
1369 function getGlobalCounters($link, $global_unread = -1) {
1370 $ret_arr = array();
1371
1372 if ($global_unread == -1) {
1373 $global_unread = getGlobalUnread($link);
1374 }
1375
1376 $cv = array("id" => "global-unread",
1377 "counter" => (int) $global_unread);
1378
1379 array_push($ret_arr, $cv);
1380
1381 $result = db_query($link, "SELECT COUNT(id) AS fn FROM
1382 ttrss_feeds WHERE owner_uid = " . $_SESSION["uid"]);
1383
1384 $subscribed_feeds = db_fetch_result($result, 0, "fn");
1385
1386 $cv = array("id" => "subscribed-feeds",
1387 "counter" => (int) $subscribed_feeds);
1388
1389 array_push($ret_arr, $cv);
1390
1391 return $ret_arr;
1392 }
1393
1394 function getVirtCounters($link) {
1395
1396 $ret_arr = array();
1397
1398 for ($i = 0; $i >= -4; $i--) {
1399
1400 $count = getFeedUnread($link, $i);
1401
1402 $cv = array("id" => $i,
1403 "counter" => (int) $count);
1404
1405 // if (get_pref($link, 'EXTENDED_FEEDLIST'))
1406 // $cv["xmsg"] = getFeedArticles($link, $i)." ".__("total");
1407
1408 array_push($ret_arr, $cv);
1409 }
1410
1411 return $ret_arr;
1412 }
1413
1414 function getLabelCounters($link, $descriptions = false) {
1415
1416 $ret_arr = array();
1417
1418 $owner_uid = $_SESSION["uid"];
1419
1420 $result = db_query($link, "SELECT id,caption,COUNT(unread) AS unread
1421 FROM ttrss_labels2 LEFT JOIN ttrss_user_labels2 ON
1422 (ttrss_labels2.id = label_id)
1423 LEFT JOIN ttrss_user_entries ON (ref_id = article_id AND unread = true)
1424 WHERE ttrss_labels2.owner_uid = $owner_uid GROUP BY ttrss_labels2.id,
1425 ttrss_labels2.caption");
1426
1427 while ($line = db_fetch_assoc($result)) {
1428
1429 $id = -$line["id"] - 11;
1430
1431 $label_name = $line["caption"];
1432 $count = $line["unread"];
1433
1434 $cv = array("id" => $id,
1435 "counter" => (int) $count);
1436
1437 if ($descriptions)
1438 $cv["description"] = $label_name;
1439
1440 // if (get_pref($link, 'EXTENDED_FEEDLIST'))
1441 // $cv["xmsg"] = getFeedArticles($link, $id)." ".__("total");
1442
1443 array_push($ret_arr, $cv);
1444 }
1445
1446 return $ret_arr;
1447 }
1448
1449 function getFeedCounters($link, $active_feed = false) {
1450
1451 $ret_arr = array();
1452
1453 $query = "SELECT ttrss_feeds.id,
1454 ttrss_feeds.title,
1455 ".SUBSTRING_FOR_DATE."(ttrss_feeds.last_updated,1,19) AS last_updated,
1456 last_error, value AS count
1457 FROM ttrss_feeds, ttrss_counters_cache
1458 WHERE ttrss_feeds.owner_uid = ".$_SESSION["uid"]."
1459 AND ttrss_counters_cache.owner_uid = ttrss_feeds.owner_uid
1460 AND ttrss_counters_cache.feed_id = id";
1461
1462 $result = db_query($link, $query);
1463 $fctrs_modified = false;
1464
1465 while ($line = db_fetch_assoc($result)) {
1466
1467 $id = $line["id"];
1468 $count = $line["count"];
1469 $last_error = htmlspecialchars($line["last_error"]);
1470
1471 $last_updated = make_local_datetime($link, $line['last_updated'], false);
1472
1473 $has_img = feed_has_icon($id);
1474
1475 if (date('Y') - date('Y', strtotime($line['last_updated'])) > 2)
1476 $last_updated = '';
1477
1478 $cv = array("id" => $id,
1479 "updated" => $last_updated,
1480 "counter" => (int) $count,
1481 "has_img" => (int) $has_img);
1482
1483 if ($last_error)
1484 $cv["error"] = $last_error;
1485
1486 // if (get_pref($link, 'EXTENDED_FEEDLIST'))
1487 // $cv["xmsg"] = getFeedArticles($link, $id)." ".__("total");
1488
1489 if ($active_feed && $id == $active_feed)
1490 $cv["title"] = truncate_string($line["title"], 30);
1491
1492 array_push($ret_arr, $cv);
1493
1494 }
1495
1496 return $ret_arr;
1497 }
1498
1499 function get_pgsql_version($link) {
1500 $result = db_query($link, "SELECT version() AS version");
1501 $version = explode(" ", db_fetch_result($result, 0, "version"));
1502 return $version[1];
1503 }
1504
1505 /**
1506 * @return array (code => Status code, message => error message if available)
1507 *
1508 * 0 - OK, Feed already exists
1509 * 1 - OK, Feed added
1510 * 2 - Invalid URL
1511 * 3 - URL content is HTML, no feeds available
1512 * 4 - URL content is HTML which contains multiple feeds.
1513 * Here you should call extractfeedurls in rpc-backend
1514 * to get all possible feeds.
1515 * 5 - Couldn't download the URL content.
1516 */
1517 function subscribe_to_feed($link, $url, $cat_id = 0,
1518 $auth_login = '', $auth_pass = '', $need_auth = false) {
1519
1520 global $fetch_last_error;
1521
1522 require_once "include/rssfuncs.php";
1523
1524 $url = fix_url($url);
1525
1526 if (!$url || !validate_feed_url($url)) return array("code" => 2);
1527
1528 $contents = @fetch_file_contents($url, false, $auth_login, $auth_pass);
1529
1530 if (!$contents) {
1531 return array("code" => 5, "message" => $fetch_last_error);
1532 }
1533
1534 if (is_html($contents)) {
1535 $feedUrls = get_feeds_from_html($url, $contents);
1536
1537 if (count($feedUrls) == 0) {
1538 return array("code" => 3);
1539 } else if (count($feedUrls) > 1) {
1540 return array("code" => 4, "feeds" => $feedUrls);
1541 }
1542 //use feed url as new URL
1543 $url = key($feedUrls);
1544 }
1545
1546 if ($cat_id == "0" || !$cat_id) {
1547 $cat_qpart = "NULL";
1548 } else {
1549 $cat_qpart = "'$cat_id'";
1550 }
1551
1552 $result = db_query($link,
1553 "SELECT id FROM ttrss_feeds
1554 WHERE feed_url = '$url' AND owner_uid = ".$_SESSION["uid"]);
1555
1556 if (db_num_rows($result) == 0) {
1557 $result = db_query($link,
1558 "INSERT INTO ttrss_feeds
1559 (owner_uid,feed_url,title,cat_id, auth_login,auth_pass,update_method)
1560 VALUES ('".$_SESSION["uid"]."', '$url',
1561 '[Unknown]', $cat_qpart, '$auth_login', '$auth_pass', 0)");
1562
1563 $result = db_query($link,
1564 "SELECT id FROM ttrss_feeds WHERE feed_url = '$url'
1565 AND owner_uid = " . $_SESSION["uid"]);
1566
1567 $feed_id = db_fetch_result($result, 0, "id");
1568
1569 if ($feed_id) {
1570 update_rss_feed($link, $feed_id, true);
1571 }
1572
1573 return array("code" => 1);
1574 } else {
1575 return array("code" => 0);
1576 }
1577 }
1578
1579 function print_feed_select($link, $id, $default_id = "",
1580 $attributes = "", $include_all_feeds = true,
1581 $root_id = false, $nest_level = 0) {
1582
1583 if (!$root_id) {
1584 print "<select id=\"$id\" name=\"$id\" $attributes>";
1585 if ($include_all_feeds) {
1586 $is_selected = ("0" == $default_id) ? "selected=\"1\"" : "";
1587 print "<option $is_selected value=\"0\">".__('All feeds')."</option>";
1588 }
1589 }
1590
1591 if (get_pref($link, 'ENABLE_FEED_CATS')) {
1592
1593 if ($root_id)
1594 $parent_qpart = "parent_cat = '$root_id'";
1595 else
1596 $parent_qpart = "parent_cat IS NULL";
1597
1598 $result = db_query($link, "SELECT id,title,
1599 (SELECT COUNT(id) FROM ttrss_feed_categories AS c2 WHERE
1600 c2.parent_cat = ttrss_feed_categories.id) AS num_children
1601 FROM ttrss_feed_categories
1602 WHERE owner_uid = ".$_SESSION["uid"]." AND $parent_qpart ORDER BY title");
1603
1604 while ($line = db_fetch_assoc($result)) {
1605
1606 for ($i = 0; $i < $nest_level; $i++)
1607 $line["title"] = " - " . $line["title"];
1608
1609 $is_selected = ("CAT:".$line["id"] == $default_id) ? "selected=\"1\"" : "";
1610
1611 printf("<option $is_selected value='CAT:%d'>%s</option>",
1612 $line["id"], htmlspecialchars($line["title"]));
1613
1614 if ($line["num_children"] > 0)
1615 print_feed_select($link, $id, $default_id, $attributes,
1616 $include_all_feeds, $line["id"], $nest_level+1);
1617
1618 $feed_result = db_query($link, "SELECT id,title FROM ttrss_feeds
1619 WHERE cat_id = '".$line["id"]."' AND owner_uid = ".$_SESSION["uid"] . " ORDER BY title");
1620
1621 while ($fline = db_fetch_assoc($feed_result)) {
1622 $is_selected = ($fline["id"] == $default_id) ? "selected=\"1\"" : "";
1623
1624 $fline["title"] = " + " . $fline["title"];
1625
1626 for ($i = 0; $i < $nest_level; $i++)
1627 $fline["title"] = " - " . $fline["title"];
1628
1629 printf("<option $is_selected value='%d'>%s</option>",
1630 $fline["id"], htmlspecialchars($fline["title"]));
1631 }
1632 }
1633
1634 if (!$root_id) {
1635 $is_selected = ($default_id == "CAT:0") ? "selected=\"1\"" : "";
1636
1637 printf("<option $is_selected value='CAT:0'>%s</option>",
1638 __("Uncategorized"));
1639
1640 $feed_result = db_query($link, "SELECT id,title FROM ttrss_feeds
1641 WHERE cat_id IS NULL AND owner_uid = ".$_SESSION["uid"] . " ORDER BY title");
1642
1643 while ($fline = db_fetch_assoc($feed_result)) {
1644 $is_selected = ($fline["id"] == $default_id && !$default_is_cat) ? "selected=\"1\"" : "";
1645
1646 $fline["title"] = " + " . $fline["title"];
1647
1648 for ($i = 0; $i < $nest_level; $i++)
1649 $fline["title"] = " - " . $fline["title"];
1650
1651 printf("<option $is_selected value='%d'>%s</option>",
1652 $fline["id"], htmlspecialchars($fline["title"]));
1653 }
1654 }
1655
1656 } else {
1657 $result = db_query($link, "SELECT id,title FROM ttrss_feeds
1658 WHERE owner_uid = ".$_SESSION["uid"]." ORDER BY title");
1659
1660 while ($line = db_fetch_assoc($result)) {
1661
1662 $is_selected = ($line["id"] == $default_id) ? "selected=\"1\"" : "";
1663
1664 printf("<option $is_selected value='%d'>%s</option>",
1665 $line["id"], htmlspecialchars($line["title"]));
1666 }
1667 }
1668
1669 if (!$root_id) {
1670 print "</select>";
1671 }
1672 }
1673
1674 function print_feed_cat_select($link, $id, $default_id,
1675 $attributes, $include_all_cats = true, $root_id = false, $nest_level = 0) {
1676
1677 if (!$root_id) {
1678 print "<select id=\"$id\" name=\"$id\" default=\"$default_id\" onchange=\"catSelectOnChange(this)\" $attributes>";
1679 }
1680
1681 if ($root_id)
1682 $parent_qpart = "parent_cat = '$root_id'";
1683 else
1684 $parent_qpart = "parent_cat IS NULL";
1685
1686 $result = db_query($link, "SELECT id,title,
1687 (SELECT COUNT(id) FROM ttrss_feed_categories AS c2 WHERE
1688 c2.parent_cat = ttrss_feed_categories.id) AS num_children
1689 FROM ttrss_feed_categories
1690 WHERE owner_uid = ".$_SESSION["uid"]." AND $parent_qpart ORDER BY title");
1691
1692 while ($line = db_fetch_assoc($result)) {
1693 if ($line["id"] == $default_id) {
1694 $is_selected = "selected=\"1\"";
1695 } else {
1696 $is_selected = "";
1697 }
1698
1699 for ($i = 0; $i < $nest_level; $i++)
1700 $line["title"] = " - " . $line["title"];
1701
1702 if ($line["title"])
1703 printf("<option $is_selected value='%d'>%s</option>",
1704 $line["id"], htmlspecialchars($line["title"]));
1705
1706 if ($line["num_children"] > 0)
1707 print_feed_cat_select($link, $id, $default_id, $attributes,
1708 $include_all_cats, $line["id"], $nest_level+1);
1709 }
1710
1711 if (!$root_id) {
1712 if ($include_all_cats) {
1713 if (db_num_rows($result) > 0) {
1714 print "<option disabled=\"1\">--------</option>";
1715 }
1716
1717 if ($default_id == 0) {
1718 $is_selected = "selected=\"1\"";
1719 } else {
1720 $is_selected = "";
1721 }
1722
1723 print "<option $is_selected value=\"0\">".__('Uncategorized')."</option>";
1724 }
1725 print "</select>";
1726 }
1727 }
1728
1729 function checkbox_to_sql_bool($val) {
1730 return ($val == "on") ? "true" : "false";
1731 }
1732
1733 function getFeedCatTitle($link, $id) {
1734 if ($id == -1) {
1735 return __("Special");
1736 } else if ($id < -10) {
1737 return __("Labels");
1738 } else if ($id > 0) {
1739 $result = db_query($link, "SELECT ttrss_feed_categories.title
1740 FROM ttrss_feeds, ttrss_feed_categories WHERE ttrss_feeds.id = '$id' AND
1741 cat_id = ttrss_feed_categories.id");
1742 if (db_num_rows($result) == 1) {
1743 return db_fetch_result($result, 0, "title");
1744 } else {
1745 return __("Uncategorized");
1746 }
1747 } else {
1748 return "getFeedCatTitle($id) failed";
1749 }
1750
1751 }
1752
1753 function getFeedIcon($id) {
1754 switch ($id) {
1755 case 0:
1756 return "images/archive.png";
1757 break;
1758 case -1:
1759 return "images/mark_set.svg";
1760 break;
1761 case -2:
1762 return "images/pub_set.svg";
1763 break;
1764 case -3:
1765 return "images/fresh.png";
1766 break;
1767 case -4:
1768 return "images/tag.png";
1769 break;
1770 case -6:
1771 return "images/recently_read.png";
1772 break;
1773 default:
1774 if ($id < -10) {
1775 return "images/label.png";
1776 } else {
1777 if (file_exists(ICONS_DIR . "/$id.ico"))
1778 return ICONS_URL . "/$id.ico";
1779 }
1780 break;
1781 }
1782 }
1783
1784 function getFeedTitle($link, $id, $cat = false) {
1785 if ($cat) {
1786 return getCategoryTitle($link, $id);
1787 } else if ($id == -1) {
1788 return __("Starred articles");
1789 } else if ($id == -2) {
1790 return __("Published articles");
1791 } else if ($id == -3) {
1792 return __("Fresh articles");
1793 } else if ($id == -4) {
1794 return __("All articles");
1795 } else if ($id === 0 || $id === "0") {
1796 return __("Archived articles");
1797 } else if ($id == -6) {
1798 return __("Recently read");
1799 } else if ($id < -10) {
1800 $label_id = -$id - 11;
1801 $result = db_query($link, "SELECT caption FROM ttrss_labels2 WHERE id = '$label_id'");
1802 if (db_num_rows($result) == 1) {
1803 return db_fetch_result($result, 0, "caption");
1804 } else {
1805 return "Unknown label ($label_id)";
1806 }
1807
1808 } else if (is_numeric($id) && $id > 0) {
1809 $result = db_query($link, "SELECT title FROM ttrss_feeds WHERE id = '$id'");
1810 if (db_num_rows($result) == 1) {
1811 return db_fetch_result($result, 0, "title");
1812 } else {
1813 return "Unknown feed ($id)";
1814 }
1815 } else {
1816 return $id;
1817 }
1818 }
1819
1820 function make_init_params($link) {
1821 $params = array();
1822
1823 $params["sign_progress"] = "images/indicator_white.gif";
1824 $params["sign_progress_tiny"] = "images/indicator_tiny.gif";
1825 $params["sign_excl"] = "images/sign_excl.svg";
1826 $params["sign_info"] = "images/sign_info.svg";
1827
1828 foreach (array("ON_CATCHUP_SHOW_NEXT_FEED", "HIDE_READ_FEEDS",
1829 "ENABLE_FEED_CATS", "FEEDS_SORT_BY_UNREAD", "CONFIRM_FEED_CATCHUP",
1830 "CDM_AUTO_CATCHUP", "FRESH_ARTICLE_MAX_AGE", "DEFAULT_ARTICLE_LIMIT",
1831 "HIDE_READ_SHOWS_SPECIAL", "COMBINED_DISPLAY_MODE") as $param) {
1832
1833 $params[strtolower($param)] = (int) get_pref($link, $param);
1834 }
1835
1836 $params["icons_url"] = ICONS_URL;
1837 $params["cookie_lifetime"] = SESSION_COOKIE_LIFETIME;
1838 $params["default_view_mode"] = get_pref($link, "_DEFAULT_VIEW_MODE");
1839 $params["default_view_limit"] = (int) get_pref($link, "_DEFAULT_VIEW_LIMIT");
1840 $params["default_view_order_by"] = get_pref($link, "_DEFAULT_VIEW_ORDER_BY");
1841 $params["bw_limit"] = (int) $_SESSION["bw_limit"];
1842
1843 $result = db_query($link, "SELECT MAX(id) AS mid, COUNT(*) AS nf FROM
1844 ttrss_feeds WHERE owner_uid = " . $_SESSION["uid"]);
1845
1846 $max_feed_id = db_fetch_result($result, 0, "mid");
1847 $num_feeds = db_fetch_result($result, 0, "nf");
1848
1849 $params["max_feed_id"] = (int) $max_feed_id;
1850 $params["num_feeds"] = (int) $num_feeds;
1851
1852 $params["collapsed_feedlist"] = (int) get_pref($link, "_COLLAPSED_FEEDLIST");
1853 $params["hotkeys"] = get_hotkeys_map($link);
1854
1855 $params["csrf_token"] = $_SESSION["csrf_token"];
1856 $params["widescreen"] = (int) $_COOKIE["ttrss_widescreen"];
1857
1858 $params['simple_update'] = defined('SIMPLE_UPDATE_MODE') && SIMPLE_UPDATE_MODE;
1859
1860 return $params;
1861 }
1862
1863 function get_hotkeys_info($link) {
1864 $hotkeys = array(
1865 __("Navigation") => array(
1866 "next_feed" => __("Open next feed"),
1867 "prev_feed" => __("Open previous feed"),
1868 "next_article" => __("Open next article"),
1869 "prev_article" => __("Open previous article"),
1870 "next_article_noscroll" => __("Open next article (don't scroll long articles)"),
1871 "prev_article_noscroll" => __("Open previous article (don't scroll long articles)"),
1872 "search_dialog" => __("Show search dialog")),
1873 __("Article") => array(
1874 "toggle_mark" => __("Toggle starred"),
1875 "toggle_publ" => __("Toggle published"),
1876 "toggle_unread" => __("Toggle unread"),
1877 "edit_tags" => __("Edit tags"),
1878 "dismiss_selected" => __("Dismiss selected"),
1879 "dismiss_read" => __("Dismiss read"),
1880 "open_in_new_window" => __("Open in new window"),
1881 "catchup_below" => __("Mark below as read"),
1882 "catchup_above" => __("Mark above as read"),
1883 "article_scroll_down" => __("Scroll down"),
1884 "article_scroll_up" => __("Scroll up"),
1885 "select_article_cursor" => __("Select article under cursor"),
1886 "email_article" => __("Email article"),
1887 "close_article" => __("Close/collapse article"),
1888 "toggle_widescreen" => __("Toggle widescreen mode")),
1889 __("Article selection") => array(
1890 "select_all" => __("Select all articles"),
1891 "select_unread" => __("Select unread"),
1892 "select_marked" => __("Select starred"),
1893 "select_published" => __("Select published"),
1894 "select_invert" => __("Invert selection"),
1895 "select_none" => __("Deselect everything")),
1896 __("Feed") => array(
1897 "feed_refresh" => __("Refresh current feed"),
1898 "feed_unhide_read" => __("Un/hide read feeds"),
1899 "feed_subscribe" => __("Subscribe to feed"),
1900 "feed_edit" => __("Edit feed"),
1901 "feed_catchup" => __("Mark as read"),
1902 "feed_reverse" => __("Reverse headlines"),
1903 "feed_debug_update" => __("Debug feed update"),
1904 "catchup_all" => __("Mark all feeds as read"),
1905 "cat_toggle_collapse" => __("Un/collapse current category"),
1906 "toggle_combined_mode" => __("Toggle combined mode")),
1907 __("Go to") => array(
1908 "goto_all" => __("All articles"),
1909 "goto_fresh" => __("Fresh"),
1910 "goto_marked" => __("Starred"),
1911 "goto_published" => __("Published"),
1912 "goto_tagcloud" => __("Tag cloud"),
1913 "goto_prefs" => __("Preferences")),
1914 __("Other") => array(
1915 "create_label" => __("Create label"),
1916 "create_filter" => __("Create filter"),
1917 "collapse_sidebar" => __("Un/collapse sidebar"),
1918 "help_dialog" => __("Show help dialog"))
1919 );
1920
1921 return $hotkeys;
1922 }
1923
1924 function get_hotkeys_map($link) {
1925 $hotkeys = array(
1926 // "navigation" => array(
1927 "k" => "next_feed",
1928 "j" => "prev_feed",
1929 "n" => "next_article",
1930 "p" => "prev_article",
1931 "(38)|up" => "prev_article",
1932 "(40)|down" => "next_article",
1933 // "^(38)|Ctrl-up" => "prev_article_noscroll",
1934 // "^(40)|Ctrl-down" => "next_article_noscroll",
1935 "(191)|/" => "search_dialog",
1936 // "article" => array(
1937 "s" => "toggle_mark",
1938 "*s" => "toggle_publ",
1939 "u" => "toggle_unread",
1940 "*t" => "edit_tags",
1941 "*d" => "dismiss_selected",
1942 "*x" => "dismiss_read",
1943 "o" => "open_in_new_window",
1944 "c p" => "catchup_below",
1945 "c n" => "catchup_above",
1946 "*n" => "article_scroll_down",
1947 "*p" => "article_scroll_up",
1948 "*(38)|Shift+up" => "article_scroll_up",
1949 "*(40)|Shift+down" => "article_scroll_down",
1950 "a *w" => "toggle_widescreen",
1951 "e" => "email_article",
1952 "a q" => "close_article",
1953 // "article_selection" => array(
1954 "a a" => "select_all",
1955 "a u" => "select_unread",
1956 "a *u" => "select_marked",
1957 "a p" => "select_published",
1958 "a i" => "select_invert",
1959 "a n" => "select_none",
1960 // "feed" => array(
1961 "f r" => "feed_refresh",
1962 "f a" => "feed_unhide_read",
1963 "f s" => "feed_subscribe",
1964 "f e" => "feed_edit",
1965 "f q" => "feed_catchup",
1966 "f x" => "feed_reverse",
1967 "f *d" => "feed_debug_update",
1968 "f *c" => "toggle_combined_mode",
1969 "*q" => "catchup_all",
1970 "x" => "cat_toggle_collapse",
1971 // "goto" => array(
1972 "g a" => "goto_all",
1973 "g f" => "goto_fresh",
1974 "g s" => "goto_marked",
1975 "g p" => "goto_published",
1976 "g t" => "goto_tagcloud",
1977 "g *p" => "goto_prefs",
1978 // "other" => array(
1979 "(9)|Tab" => "select_article_cursor", // tab
1980 "c l" => "create_label",
1981 "c f" => "create_filter",
1982 "c s" => "collapse_sidebar",
1983 "^(191)|Ctrl+/" => "help_dialog",
1984 );
1985
1986 if (get_pref($link, 'COMBINED_DISPLAY_MODE')) {
1987 $hotkeys["^(38)|Ctrl-up"] = "prev_article_noscroll";
1988 $hotkeys["^(40)|Ctrl-down"] = "next_article_noscroll";
1989 }
1990
1991 global $pluginhost;
1992 foreach ($pluginhost->get_hooks($pluginhost::HOOK_HOTKEY_MAP) as $plugin) {
1993 $hotkeys = $plugin->hook_hotkey_map($hotkeys);
1994 }
1995
1996 $prefixes = array();
1997
1998 foreach (array_keys($hotkeys) as $hotkey) {
1999 $pair = explode(" ", $hotkey, 2);
2000
2001 if (count($pair) > 1 && !in_array($pair[0], $prefixes)) {
2002 array_push($prefixes, $pair[0]);
2003 }
2004 }
2005
2006 return array($prefixes, $hotkeys);
2007 }
2008
2009 function make_runtime_info($link) {
2010 $data = array();
2011
2012 $result = db_query($link, "SELECT MAX(id) AS mid, COUNT(*) AS nf FROM
2013 ttrss_feeds WHERE owner_uid = " . $_SESSION["uid"]);
2014
2015 $max_feed_id = db_fetch_result($result, 0, "mid");
2016 $num_feeds = db_fetch_result($result, 0, "nf");
2017
2018 $data["max_feed_id"] = (int) $max_feed_id;
2019 $data["num_feeds"] = (int) $num_feeds;
2020
2021 $data['last_article_id'] = getLastArticleId($link);
2022 $data['cdm_expanded'] = get_pref($link, 'CDM_EXPANDED');
2023
2024 if (file_exists(LOCK_DIRECTORY . "/update_daemon.lock")) {
2025
2026 $data['daemon_is_running'] = (int) file_is_locked("update_daemon.lock");
2027
2028 if (time() - $_SESSION["daemon_stamp_check"] > 30) {
2029
2030 $stamp = (int) @file_get_contents(LOCK_DIRECTORY . "/update_daemon.stamp");
2031
2032 if ($stamp) {
2033 $stamp_delta = time() - $stamp;
2034
2035 if ($stamp_delta > 1800) {
2036 $stamp_check = 0;
2037 } else {
2038 $stamp_check = 1;
2039 $_SESSION["daemon_stamp_check"] = time();
2040 }
2041
2042 $data['daemon_stamp_ok'] = $stamp_check;
2043
2044 $stamp_fmt = date("Y.m.d, G:i", $stamp);
2045
2046 $data['daemon_stamp'] = $stamp_fmt;
2047 }
2048 }
2049 }
2050
2051 if ($_SESSION["last_version_check"] + 86400 + rand(-1000, 1000) < time()) {
2052 $new_version_details = @check_for_update($link);
2053
2054 $data['new_version_available'] = (int) ($new_version_details != false);
2055
2056 $_SESSION["last_version_check"] = time();
2057 $_SESSION["version_data"] = $new_version_details;
2058 }
2059
2060 return $data;
2061 }
2062
2063 function search_to_sql($link, $search, $match_on) {
2064
2065 $search_query_part = "";
2066
2067 $keywords = explode(" ", $search);
2068 $query_keywords = array();
2069
2070 foreach ($keywords as $k) {
2071 if (strpos($k, "-") === 0) {
2072 $k = substr($k, 1);
2073 $not = "NOT";
2074 } else {
2075 $not = "";
2076 }
2077
2078 $commandpair = explode(":", mb_strtolower($k), 2);
2079
2080 if ($commandpair[0] == "note" && $commandpair[1]) {
2081
2082 if ($commandpair[1] == "true")
2083 array_push($query_keywords, "($not (note IS NOT NULL AND note != ''))");
2084 else
2085 array_push($query_keywords, "($not (note IS NULL OR note = ''))");
2086
2087 } else if ($commandpair[0] == "star" && $commandpair[1]) {
2088
2089 if ($commandpair[1] == "true")
2090 array_push($query_keywords, "($not (marked = true))");
2091 else
2092 array_push($query_keywords, "($not (marked = false))");
2093
2094 } else if ($commandpair[0] == "pub" && $commandpair[1]) {
2095
2096 if ($commandpair[1] == "true")
2097 array_push($query_keywords, "($not (published = true))");
2098 else
2099 array_push($query_keywords, "($not (published = false))");
2100
2101 } else if (strpos($k, "@") === 0) {
2102
2103 $user_tz_string = get_pref($link, 'USER_TIMEZONE', $_SESSION['uid']);
2104 $orig_ts = strtotime(substr($k, 1));
2105 $k = date("Y-m-d", convert_timestamp($orig_ts, $user_tz_string, 'UTC'));
2106
2107 //$k = date("Y-m-d", strtotime(substr($k, 1)));
2108
2109 array_push($query_keywords, "(".SUBSTRING_FOR_DATE."(updated,1,LENGTH('$k')) $not = '$k')");
2110 } else if ($match_on == "both") {
2111 array_push($query_keywords, "(UPPER(ttrss_entries.title) $not LIKE UPPER('%$k%')
2112 OR UPPER(ttrss_entries.content) $not LIKE UPPER('%$k%'))");
2113 } else if ($match_on == "title") {
2114 array_push($query_keywords, "(UPPER(ttrss_entries.title) $not LIKE UPPER('%$k%'))");
2115 } else if ($match_on == "content") {
2116 array_push($query_keywords, "(UPPER(ttrss_entries.content) $not LIKE UPPER('%$k%'))");
2117 }
2118 }
2119
2120 $search_query_part = implode("AND", $query_keywords);
2121
2122 return $search_query_part;
2123 }
2124
2125 function getParentCategories($link, $cat, $owner_uid) {
2126 $rv = array();
2127
2128 $result = db_query($link, "SELECT parent_cat FROM ttrss_feed_categories
2129 WHERE id = '$cat' AND parent_cat IS NOT NULL AND owner_uid = $owner_uid");
2130
2131 while ($line = db_fetch_assoc($result)) {
2132 array_push($rv, $line["parent_cat"]);
2133 $rv = array_merge($rv, getParentCategories($link, $line["parent_cat"], $owner_uid));
2134 }
2135
2136 return $rv;
2137 }
2138
2139 function getChildCategories($link, $cat, $owner_uid) {
2140 $rv = array();
2141
2142 $result = db_query($link, "SELECT id FROM ttrss_feed_categories
2143 WHERE parent_cat = '$cat' AND owner_uid = $owner_uid");
2144
2145 while ($line = db_fetch_assoc($result)) {
2146 array_push($rv, $line["id"]);
2147 $rv = array_merge($rv, getChildCategories($link, $line["id"], $owner_uid));
2148 }
2149
2150 return $rv;
2151 }
2152
2153 function queryFeedHeadlines($link, $feed, $limit, $view_mode, $cat_view, $search, $search_mode, $match_on, $override_order = false, $offset = 0, $owner_uid = 0, $filter = false, $since_id = 0, $include_children = false, $ignore_vfeed_group = false) {
2154
2155 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
2156
2157 $ext_tables_part = "";
2158
2159 if ($search) {
2160
2161 if (SPHINX_ENABLED) {
2162 $ids = join(",", @sphinx_search($search, 0, 500));
2163
2164 if ($ids)
2165 $search_query_part = "ref_id IN ($ids) AND ";
2166 else
2167 $search_query_part = "ref_id = -1 AND ";
2168
2169 } else {
2170 $search_query_part = search_to_sql($link, $search, $match_on);
2171 $search_query_part .= " AND ";
2172 }
2173
2174 } else {
2175 $search_query_part = "";
2176 }
2177
2178 if ($filter) {
2179
2180 if (DB_TYPE == "pgsql") {
2181 $query_strategy_part .= " AND updated > NOW() - INTERVAL '14 days' ";
2182 } else {
2183 $query_strategy_part .= " AND updated > DATE_SUB(NOW(), INTERVAL 14 DAY) ";
2184 }
2185
2186 $override_order = "updated DESC";
2187
2188 $filter_query_part = filter_to_sql($link, $filter, $owner_uid);
2189
2190 // Try to check if SQL regexp implementation chokes on a valid regexp
2191 $result = db_query($link, "SELECT true AS true_val FROM ttrss_entries,
2192 ttrss_user_entries, ttrss_feeds, ttrss_feed_categories
2193 WHERE $filter_query_part LIMIT 1", false);
2194
2195 if ($result) {
2196 $test = db_fetch_result($result, 0, "true_val");
2197
2198 if (!$test) {
2199 $filter_query_part = "false AND";
2200 } else {
2201 $filter_query_part .= " AND";
2202 }
2203 } else {
2204 $filter_query_part = "false AND";
2205 }
2206
2207 } else {
2208 $filter_query_part = "";
2209 }
2210
2211 if ($since_id) {
2212 $since_id_part = "ttrss_entries.id > $since_id AND ";
2213 } else {
2214 $since_id_part = "";
2215 }
2216
2217 $view_query_part = "";
2218
2219 if ($view_mode == "adaptive" || $view_query_part == "noscores") {
2220 if ($search) {
2221 $view_query_part = " ";
2222 } else if ($feed != -1) {
2223 $unread = getFeedUnread($link, $feed, $cat_view);
2224
2225 if ($cat_view && $feed > 0 && $include_children)
2226 $unread += getCategoryChildrenUnread($link, $feed);
2227
2228 if ($unread > 0) {
2229 $view_query_part = " unread = true AND ";
2230 }
2231 }
2232 }
2233
2234 if ($view_mode == "marked") {
2235 $view_query_part = " marked = true AND ";
2236 }
2237
2238 if ($view_mode == "published") {
2239 $view_query_part = " published = true AND ";
2240 }
2241
2242 if ($view_mode == "unread") {
2243 $view_query_part = " unread = true AND ";
2244 }
2245
2246 if ($view_mode == "updated") {
2247 $view_query_part = " (last_read is null and unread = false) AND ";
2248 }
2249
2250 if ($limit > 0) {
2251 $limit_query_part = "LIMIT " . $limit;
2252 }
2253
2254 $allow_archived = false;
2255
2256 $vfeed_query_part = "";
2257
2258 // override query strategy and enable feed display when searching globally
2259 if ($search && $search_mode == "all_feeds") {
2260 $query_strategy_part = "true";
2261 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2262 /* tags */
2263 } else if (!is_numeric($feed)) {
2264 $query_strategy_part = "true";
2265 $vfeed_query_part = "(SELECT title FROM ttrss_feeds WHERE
2266 id = feed_id) as feed_title,";
2267 } else if ($search && $search_mode == "this_cat") {
2268 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2269
2270 if ($feed > 0) {
2271 if ($include_children) {
2272 $subcats = getChildCategories($link, $feed, $owner_uid);
2273 array_push($subcats, $feed);
2274 $cats_qpart = join(",", $subcats);
2275 } else {
2276 $cats_qpart = $feed;
2277 }
2278
2279 $query_strategy_part = "ttrss_feeds.cat_id IN ($cats_qpart)";
2280
2281 } else {
2282 $query_strategy_part = "ttrss_feeds.cat_id IS NULL";
2283 }
2284
2285 } else if ($feed > 0) {
2286
2287 if ($cat_view) {
2288
2289 if ($feed > 0) {
2290 if ($include_children) {
2291 # sub-cats
2292 $subcats = getChildCategories($link, $feed, $owner_uid);
2293
2294 array_push($subcats, $feed);
2295 $query_strategy_part = "cat_id IN (".
2296 implode(",", $subcats).")";
2297
2298 } else {
2299 $query_strategy_part = "cat_id = '$feed'";
2300 }
2301
2302 } else {
2303 $query_strategy_part = "cat_id IS NULL";
2304 }
2305
2306 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2307
2308 } else {
2309 $query_strategy_part = "feed_id = '$feed'";
2310 }
2311 } else if ($feed == 0 && !$cat_view) { // archive virtual feed
2312 $query_strategy_part = "feed_id IS NULL";
2313 $allow_archived = true;
2314 } else if ($feed == 0 && $cat_view) { // uncategorized
2315 $query_strategy_part = "cat_id IS NULL AND feed_id IS NOT NULL";
2316 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2317 } else if ($feed == -1) { // starred virtual feed
2318 $query_strategy_part = "marked = true";
2319 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2320 $allow_archived = true;
2321
2322 if (!$override_order) $override_order = "last_marked DESC, updated DESC";
2323
2324 } else if ($feed == -2) { // published virtual feed OR labels category
2325
2326 if (!$cat_view) {
2327 $query_strategy_part = "published = true";
2328 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2329 $allow_archived = true;
2330
2331 if (!$override_order) $override_order = "last_published DESC, updated DESC";
2332 } else {
2333 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2334
2335 $ext_tables_part = ",ttrss_labels2,ttrss_user_labels2";
2336
2337 $query_strategy_part = "ttrss_labels2.id = ttrss_user_labels2.label_id AND
2338 ttrss_user_labels2.article_id = ref_id";
2339
2340 }
2341 } else if ($feed == -6) { // recently read
2342 $query_strategy_part = "unread = false AND last_read IS NOT NULL";
2343 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2344 $allow_archived = true;
2345
2346 if (!$override_order) $override_order = "last_read DESC";
2347 } else if ($feed == -3) { // fresh virtual feed
2348 $query_strategy_part = "unread = true AND score >= 0";
2349
2350 $intl = get_pref($link, "FRESH_ARTICLE_MAX_AGE", $owner_uid);
2351
2352 if (DB_TYPE == "pgsql") {
2353 $query_strategy_part .= " AND updated > NOW() - INTERVAL '$intl hour' ";
2354 } else {
2355 $query_strategy_part .= " AND updated > DATE_SUB(NOW(), INTERVAL $intl HOUR) ";
2356 }
2357
2358 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2359 } else if ($feed == -4) { // all articles virtual feed
2360 $query_strategy_part = "true";
2361 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2362 } else if ($feed <= -10) { // labels
2363 $label_id = -$feed - 11;
2364
2365 $query_strategy_part = "label_id = '$label_id' AND
2366 ttrss_labels2.id = ttrss_user_labels2.label_id AND
2367 ttrss_user_labels2.article_id = ref_id";
2368
2369 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2370 $ext_tables_part = ",ttrss_labels2,ttrss_user_labels2";
2371 $allow_archived = true;
2372
2373 } else {
2374 $query_strategy_part = "true";
2375 }
2376
2377 if (get_pref($link, "SORT_HEADLINES_BY_FEED_DATE", $owner_uid)) {
2378 $date_sort_field = "updated";
2379 } else {
2380 $date_sort_field = "date_entered";
2381 }
2382
2383 if (get_pref($link, 'REVERSE_HEADLINES', $owner_uid)) {
2384 $order_by = "$date_sort_field";
2385 } else {
2386 $order_by = "$date_sort_field DESC";
2387 }
2388
2389 if ($view_mode != "noscores") {
2390 $order_by = "score DESC, $order_by";
2391 }
2392
2393 if ($override_order) {
2394 $order_by = $override_order;
2395 }
2396
2397 $feed_title = "";
2398
2399 if ($search) {
2400 $feed_title = T_sprintf("Search results: %s", $search);
2401 } else {
2402 if ($cat_view) {
2403 $feed_title = getCategoryTitle($link, $feed);
2404 } else {
2405 if (is_numeric($feed) && $feed > 0) {
2406 $result = db_query($link, "SELECT title,site_url,last_error
2407 FROM ttrss_feeds WHERE id = '$feed' AND owner_uid = $owner_uid");
2408
2409 $feed_title = db_fetch_result($result, 0, "title");
2410 $feed_site_url = db_fetch_result($result, 0, "site_url");
2411 $last_error = db_fetch_result($result, 0, "last_error");
2412 } else {
2413 $feed_title = getFeedTitle($link, $feed);
2414 }
2415 }
2416 }
2417
2418 $content_query_part = "content as content_preview, cached_content, ";
2419
2420 if (is_numeric($feed)) {
2421
2422 if ($feed >= 0) {
2423 $feed_kind = "Feeds";
2424 } else {
2425 $feed_kind = "Labels";
2426 }
2427
2428 if ($limit_query_part) {
2429 $offset_query_part = "OFFSET $offset";
2430 }
2431
2432 // proper override_order applied above
2433 if ($vfeed_query_part && !$ignore_vfeed_group && get_pref($link, 'VFEED_GROUP_BY_FEED', $owner_uid)) {
2434 if (!$override_order) {
2435 $order_by = "ttrss_feeds.title, $order_by";
2436 } else {
2437 $order_by = "ttrss_feeds.title, $override_order";
2438 }
2439 }
2440
2441 if (!$allow_archived) {
2442 $from_qpart = "ttrss_entries,ttrss_user_entries,ttrss_feeds$ext_tables_part";
2443 $feed_check_qpart = "ttrss_user_entries.feed_id = ttrss_feeds.id AND";
2444
2445 } else {
2446 $from_qpart = "ttrss_entries$ext_tables_part,ttrss_user_entries
2447 LEFT JOIN ttrss_feeds ON (feed_id = ttrss_feeds.id)";
2448 }
2449
2450 $query = "SELECT DISTINCT
2451 date_entered,
2452 guid,
2453 ttrss_entries.id,ttrss_entries.title,
2454 updated,
2455 label_cache,
2456 tag_cache,
2457 always_display_enclosures,
2458 site_url,
2459 note,
2460 num_comments,
2461 comments,
2462 int_id,
2463 hide_images,
2464 unread,feed_id,marked,published,link,last_read,orig_feed_id,
2465 last_marked, last_published,
2466 ".SUBSTRING_FOR_DATE."(last_read,1,19) as last_read_noms,
2467 $vfeed_query_part
2468 $content_query_part
2469 ".SUBSTRING_FOR_DATE."(updated,1,19) as updated_noms,
2470 author,score
2471 FROM
2472 $from_qpart
2473 WHERE
2474 $feed_check_qpart
2475 ttrss_user_entries.ref_id = ttrss_entries.id AND
2476 ttrss_user_entries.owner_uid = '$owner_uid' AND
2477 $search_query_part
2478 $filter_query_part
2479 $view_query_part
2480 $since_id_part
2481 $query_strategy_part ORDER BY $order_by
2482 $limit_query_part $offset_query_part";
2483
2484 if ($_REQUEST["debug"]) print $query;
2485
2486 $result = db_query($link, $query);
2487
2488 } else {
2489 // browsing by tag
2490
2491 $select_qpart = "SELECT DISTINCT " .
2492 "date_entered," .
2493 "guid," .
2494 "note," .
2495 "ttrss_entries.id as id," .
2496 "title," .
2497 "updated," .
2498 "unread," .
2499 "feed_id," .
2500 "orig_feed_id," .
2501 "marked," .
2502 "num_comments, " .
2503 "comments, " .
2504 "tag_cache," .
2505 "label_cache," .
2506 "link," .
2507 "last_read," .
2508 "hide_images," .
2509 "last_marked, last_published, " .
2510 SUBSTRING_FOR_DATE . "(last_read,1,19) as last_read_noms," .
2511 $since_id_part .
2512 $vfeed_query_part .
2513 $content_query_part .
2514 SUBSTRING_FOR_DATE . "(updated,1,19) as updated_noms," .
2515 "score ";
2516
2517 $feed_kind = "Tags";
2518 $all_tags = explode(",", $feed);
2519 if ($search_mode == 'any') {
2520 $tag_sql = "tag_name in (" . implode(", ", array_map("db_quote", $all_tags)) . ")";
2521 $from_qpart = " FROM ttrss_entries,ttrss_user_entries,ttrss_tags ";
2522 $where_qpart = " WHERE " .
2523 "ref_id = ttrss_entries.id AND " .
2524 "ttrss_user_entries.owner_uid = $owner_uid AND " .
2525 "post_int_id = int_id AND $tag_sql AND " .
2526 $view_query_part .
2527 $search_query_part .
2528 $query_strategy_part . " ORDER BY $order_by " .
2529 $limit_query_part;
2530
2531 } else {
2532 $i = 1;
2533 $sub_selects = array();
2534 $sub_ands = array();
2535 foreach ($all_tags as $term) {
2536 array_push($sub_selects, "(SELECT post_int_id from ttrss_tags WHERE tag_name = " . db_quote($term) . " AND owner_uid = $owner_uid) as A$i");
2537 $i++;
2538 }
2539 if ($i > 2) {
2540 $x = 1;
2541 $y = 2;
2542 do {
2543 array_push($sub_ands, "A$x.post_int_id = A$y.post_int_id");
2544 $x++;
2545 $y++;
2546 } while ($y < $i);
2547 }
2548 array_push($sub_ands, "A1.post_int_id = ttrss_user_entries.int_id and ttrss_user_entries.owner_uid = $owner_uid");
2549 array_push($sub_ands, "ttrss_user_entries.ref_id = ttrss_entries.id");
2550 $from_qpart = " FROM " . implode(", ", $sub_selects) . ", ttrss_user_entries, ttrss_entries";
2551 $where_qpart = " WHERE " . implode(" AND ", $sub_ands);
2552 }
2553 // error_log("TAG SQL: " . $tag_sql);
2554 // $tag_sql = "tag_name = '$feed'"; DEFAULT way
2555
2556 // error_log("[". $select_qpart . "][" . $from_qpart . "][" .$where_qpart . "]");
2557 $result = db_query($link, $select_qpart . $from_qpart . $where_qpart);
2558 }
2559
2560 return array($result, $feed_title, $feed_site_url, $last_error);
2561
2562 }
2563
2564 function sanitize($link, $str, $force_remove_images = false, $owner = false, $site_url = false) {
2565 if (!$owner) $owner = $_SESSION["uid"];
2566
2567 $res = trim($str); if (!$res) return '';
2568
2569 if (strpos($res, "href=") === false)
2570 $res = rewrite_urls($res);
2571
2572 $charset_hack = '<head>
2573 <meta http-equiv="Content-Type" content="text/html; charset=utf-8"/>
2574 </head>';
2575
2576 $res = trim($res); if (!$res) return '';
2577
2578 libxml_use_internal_errors(true);
2579
2580 $doc = new DOMDocument();
2581 $doc->loadHTML($charset_hack . $res);
2582 $xpath = new DOMXPath($doc);
2583
2584 $entries = $xpath->query('(//a[@href]|//img[@src])');
2585
2586 foreach ($entries as $entry) {
2587
2588 if ($site_url) {
2589
2590 if ($entry->hasAttribute('href'))
2591 $entry->setAttribute('href',
2592 rewrite_relative_url($site_url, $entry->getAttribute('href')));
2593
2594 if ($entry->hasAttribute('src')) {
2595 $src = rewrite_relative_url($site_url, $entry->getAttribute('src'));
2596
2597 $cached_filename = CACHE_DIR . '/images/' . sha1($src) . '.png';
2598
2599 if (file_exists($cached_filename)) {
2600 $src = SELF_URL_PATH . '/image.php?hash=' . sha1($src);
2601 }
2602
2603 $entry->setAttribute('src', $src);
2604 }
2605
2606 if ($entry->nodeName == 'img') {
2607 if (($owner && get_pref($link, "STRIP_IMAGES", $owner)) ||
2608 $force_remove_images) {
2609
2610 $p = $doc->createElement('p');
2611
2612 $a = $doc->createElement('a');
2613 $a->setAttribute('href', $entry->getAttribute('src'));
2614
2615 $a->appendChild(new DOMText($entry->getAttribute('src')));
2616 $a->setAttribute('target', '_blank');
2617
2618 $p->appendChild($a);
2619
2620 $entry->parentNode->replaceChild($p, $entry);
2621 }
2622 }
2623 }
2624
2625 if (strtolower($entry->nodeName) == "a") {
2626 $entry->setAttribute("target", "_blank");
2627 }
2628 }
2629
2630 $entries = $xpath->query('//iframe');
2631 foreach ($entries as $entry) {
2632 $entry->setAttribute('sandbox', 'allow-scripts');
2633
2634 }
2635
2636 global $pluginhost;
2637
2638 if (isset($pluginhost)) {
2639 foreach ($pluginhost->get_hooks($pluginhost::HOOK_SANITIZE) as $plugin) {
2640 $doc = $plugin->hook_sanitize($doc, $site_url);
2641 }
2642 }
2643
2644 $doc->removeChild($doc->firstChild); //remove doctype
2645 $doc = strip_harmful_tags($doc);
2646 $res = $doc->saveHTML();
2647 return $res;
2648 }
2649
2650 function strip_harmful_tags($doc) {
2651 $entries = $doc->getElementsByTagName("*");
2652
2653 $allowed_elements = array('a', 'address', 'audio', 'article',
2654 'b', 'big', 'blockquote', 'body', 'br', 'cite',
2655 'code', 'dd', 'del', 'details', 'div', 'dl', 'font',
2656 'dt', 'em', 'footer', 'h1', 'h2', 'h3', 'h4', 'h5', 'h6',
2657 'header', 'html', 'i', 'img', 'ins', 'kbd',
2658 'li', 'nav', 'ol', 'p', 'pre', 'q', 's','small',
2659 'source', 'span', 'strike', 'strong', 'sub', 'summary',
2660 'sup', 'table', 'tbody', 'td', 'tfoot', 'th', 'thead',
2661 'tr', 'track', 'tt', 'u', 'ul', 'var', 'wbr', 'video' );
2662
2663 if ($_SESSION['hasSandbox']) array_push($allowed_elements, 'iframe');
2664
2665 $disallowed_attributes = array('id', 'style', 'class');
2666
2667 foreach ($entries as $entry) {
2668 if (!in_array($entry->nodeName, $allowed_elements)) {
2669 $entry->parentNode->removeChild($entry);
2670 }
2671
2672 if ($entry->hasAttributes()) {
2673 foreach (iterator_to_array($entry->attributes) as $attr) {
2674
2675 if (strpos($attr->nodeName, 'on') === 0) {
2676 $entry->removeAttributeNode($attr);
2677 }
2678
2679 if (in_array($attr->nodeName, $disallowed_attributes)) {
2680 $entry->removeAttributeNode($attr);
2681 }
2682 }
2683 }
2684 }
2685
2686 return $doc;
2687 }
2688
2689 function check_for_update($link) {
2690 if (CHECK_FOR_NEW_VERSION && $_SESSION['access_level'] >= 10) {
2691 $version_url = "http://tt-rss.org/version.php?ver=" . VERSION .
2692 "&iid=" . sha1(SELF_URL_PATH);
2693
2694 $version_data = @fetch_file_contents($version_url);
2695
2696 if ($version_data) {
2697 $version_data = json_decode($version_data, true);
2698 if ($version_data && $version_data['version']) {
2699
2700 if (version_compare(VERSION, $version_data['version']) == -1) {
2701 return $version_data;
2702 }
2703 }
2704 }
2705 }
2706 return false;
2707 }
2708
2709 function catchupArticlesById($link, $ids, $cmode, $owner_uid = false) {
2710
2711 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
2712 if (count($ids) == 0) return;
2713
2714 $tmp_ids = array();
2715
2716 foreach ($ids as $id) {
2717 array_push($tmp_ids, "ref_id = '$id'");
2718 }
2719
2720 $ids_qpart = join(" OR ", $tmp_ids);
2721
2722 if ($cmode == 0) {
2723 db_query($link, "UPDATE ttrss_user_entries SET
2724 unread = false,last_read = NOW()
2725 WHERE ($ids_qpart) AND owner_uid = $owner_uid");
2726 } else if ($cmode == 1) {
2727 db_query($link, "UPDATE ttrss_user_entries SET
2728 unread = true
2729 WHERE ($ids_qpart) AND owner_uid = $owner_uid");
2730 } else {
2731 db_query($link, "UPDATE ttrss_user_entries SET
2732 unread = NOT unread,last_read = NOW()
2733 WHERE ($ids_qpart) AND owner_uid = $owner_uid");
2734 }
2735
2736 /* update ccache */
2737
2738 $result = db_query($link, "SELECT DISTINCT feed_id FROM ttrss_user_entries
2739 WHERE ($ids_qpart) AND owner_uid = $owner_uid");
2740
2741 while ($line = db_fetch_assoc($result)) {
2742 ccache_update($link, $line["feed_id"], $owner_uid);
2743 }
2744 }
2745
2746 function get_article_tags($link, $id, $owner_uid = 0, $tag_cache = false) {
2747
2748 $a_id = db_escape_string($id);
2749
2750 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
2751
2752 $query = "SELECT DISTINCT tag_name,
2753 owner_uid as owner FROM
2754 ttrss_tags WHERE post_int_id = (SELECT int_id FROM ttrss_user_entries WHERE
2755 ref_id = '$a_id' AND owner_uid = '$owner_uid' LIMIT 1) ORDER BY tag_name";
2756
2757 $obj_id = md5("TAGS:$owner_uid:$id");
2758 $tags = array();
2759
2760 /* check cache first */
2761
2762 if ($tag_cache === false) {
2763 $result = db_query($link, "SELECT tag_cache FROM ttrss_user_entries
2764 WHERE ref_id = '$id' AND owner_uid = $owner_uid");
2765
2766 $tag_cache = db_fetch_result($result, 0, "tag_cache");
2767 }
2768
2769 if ($tag_cache) {
2770 $tags = explode(",", $tag_cache);
2771 } else {
2772
2773 /* do it the hard way */
2774
2775 $tmp_result = db_query($link, $query);
2776
2777 while ($tmp_line = db_fetch_assoc($tmp_result)) {
2778 array_push($tags, $tmp_line["tag_name"]);
2779 }
2780
2781 /* update the cache */
2782
2783 $tags_str = db_escape_string(join(",", $tags));
2784
2785 db_query($link, "UPDATE ttrss_user_entries
2786 SET tag_cache = '$tags_str' WHERE ref_id = '$id'
2787 AND owner_uid = $owner_uid");
2788 }
2789
2790 return $tags;
2791 }
2792
2793 function trim_array($array) {
2794 $tmp = $array;
2795 array_walk($tmp, 'trim');
2796 return $tmp;
2797 }
2798
2799 function tag_is_valid($tag) {
2800 if ($tag == '') return false;
2801 if (preg_match("/^[0-9]*$/", $tag)) return false;
2802 if (mb_strlen($tag) > 250) return false;
2803
2804 if (function_exists('iconv')) {
2805 $tag = iconv("utf-8", "utf-8", $tag);
2806 }
2807
2808 if (!$tag) return false;
2809
2810 return true;
2811 }
2812
2813 function render_login_form($link, $form_id = 0) {
2814 switch ($form_id) {
2815 case 0:
2816 require_once "login_form.php";
2817 break;
2818 case 1:
2819 require_once "mobile/login_form.php";
2820 break;
2821 }
2822 exit;
2823 }
2824
2825 // from http://developer.apple.com/internet/safari/faq.html
2826 function no_cache_incantation() {
2827 header("Expires: Mon, 22 Dec 1980 00:00:00 GMT"); // Happy birthday to me :)
2828 header("Last-Modified: " . gmdate("D, d M Y H:i:s") . " GMT"); // always modified
2829 header("Cache-Control: no-store, no-cache, must-revalidate, max-age=0"); // HTTP/1.1
2830 header("Cache-Control: post-check=0, pre-check=0", false);
2831 header("Pragma: no-cache"); // HTTP/1.0
2832 }
2833
2834 function format_warning($msg, $id = "") {
2835 global $link;
2836 return "<div class=\"warning\" id=\"$id\">
2837 <img src=\"images/sign_excl.svg\">$msg</div>";
2838 }
2839
2840 function format_notice($msg, $id = "") {
2841 global $link;
2842 return "<div class=\"notice\" id=\"$id\">
2843 <img src=\"images/sign_info.svg\">$msg</div>";
2844 }
2845
2846 function format_error($msg, $id = "") {
2847 global $link;
2848 return "<div class=\"error\" id=\"$id\">
2849 <img src=\"images/sign_excl.svg\">$msg</div>";
2850 }
2851
2852 function print_notice($msg) {
2853 return print format_notice($msg);
2854 }
2855
2856 function print_warning($msg) {
2857 return print format_warning($msg);
2858 }
2859
2860 function print_error($msg) {
2861 return print format_error($msg);
2862 }
2863
2864
2865 function T_sprintf() {
2866 $args = func_get_args();
2867 return vsprintf(__(array_shift($args)), $args);
2868 }
2869
2870 function format_inline_player($link, $url, $ctype) {
2871
2872 $entry = "";
2873
2874 $url = htmlspecialchars($url);
2875
2876 if (strpos($ctype, "audio/") === 0) {
2877
2878 if ($_SESSION["hasAudio"] && (strpos($ctype, "ogg") !== false ||
2879 strpos($_SERVER['HTTP_USER_AGENT'], "Chrome") !== false ||
2880 strpos($_SERVER['HTTP_USER_AGENT'], "Safari") !== false )) {
2881
2882 $id = 'AUDIO-' . uniqid();
2883
2884 $entry .= "<audio id=\"$id\"\" controls style='display : none'>
2885 <source type=\"$ctype\" src=\"$url\"></source>
2886 </audio>";
2887
2888 $entry .= "<span onclick=\"player(this)\"
2889 title=\"".__("Click to play")."\" status=\"0\"
2890 class=\"player\" audio-id=\"$id\">".__("Play")."</span>";
2891
2892 } else {
2893
2894 $entry .= "<object type=\"application/x-shockwave-flash\"
2895 data=\"lib/button/musicplayer.swf?song_url=$url\"
2896 width=\"17\" height=\"17\" style='float : left; margin-right : 5px;'>
2897 <param name=\"movie\"
2898 value=\"lib/button/musicplayer.swf?song_url=$url\" />
2899 </object>";
2900 }
2901
2902 if ($entry) $entry .= "&nbsp; <a target=\"_blank\"
2903 href=\"$url\">" . basename($url) . "</a>";
2904
2905 return $entry;
2906
2907 }
2908
2909 return "";
2910
2911 /* $filename = substr($url, strrpos($url, "/")+1);
2912
2913 $entry .= " <a target=\"_blank\" href=\"" . htmlspecialchars($url) . "\">" .
2914 $filename . " (" . $ctype . ")" . "</a>"; */
2915
2916 }
2917
2918 function format_article($link, $id, $mark_as_read = true, $zoom_mode = false, $owner_uid = false) {
2919 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
2920
2921 $rv = array();
2922
2923 $rv['id'] = $id;
2924
2925 /* we can figure out feed_id from article id anyway, why do we
2926 * pass feed_id here? let's ignore the argument :( */
2927
2928 $result = db_query($link, "SELECT feed_id FROM ttrss_user_entries
2929 WHERE ref_id = '$id'");
2930
2931 $feed_id = (int) db_fetch_result($result, 0, "feed_id");
2932
2933 $rv['feed_id'] = $feed_id;
2934
2935 //if (!$zoom_mode) { print "<article id='$id'><![CDATA["; };
2936
2937 if ($mark_as_read) {
2938 $result = db_query($link, "UPDATE ttrss_user_entries
2939 SET unread = false,last_read = NOW()
2940 WHERE ref_id = '$id' AND owner_uid = $owner_uid");
2941
2942 ccache_update($link, $feed_id, $owner_uid);
2943 }
2944
2945 $result = db_query($link, "SELECT id,title,link,content,feed_id,comments,int_id,
2946 ".SUBSTRING_FOR_DATE."(updated,1,16) as updated,
2947 (SELECT site_url FROM ttrss_feeds WHERE id = feed_id) as site_url,
2948 num_comments,
2949 tag_cache,
2950 author,
2951 orig_feed_id,
2952 note,
2953 cached_content
2954 FROM ttrss_entries,ttrss_user_entries
2955 WHERE id = '$id' AND ref_id = id AND owner_uid = $owner_uid");
2956
2957 if ($result) {
2958
2959 $line = db_fetch_assoc($result);
2960
2961 $tag_cache = $line["tag_cache"];
2962
2963 $line["tags"] = get_article_tags($link, $id, $owner_uid, $line["tag_cache"]);
2964 unset($line["tag_cache"]);
2965
2966 $line["content"] = sanitize($link, $line["content"], false, $owner_uid, $line["site_url"]);
2967
2968 global $pluginhost;
2969
2970 foreach ($pluginhost->get_hooks($pluginhost::HOOK_RENDER_ARTICLE) as $p) {
2971 $line = $p->hook_render_article($line);
2972 }
2973
2974 $num_comments = $line["num_comments"];
2975 $entry_comments = "";
2976
2977 if ($num_comments > 0) {
2978 if ($line["comments"]) {
2979 $comments_url = htmlspecialchars($line["comments"]);
2980 } else {
2981 $comments_url = htmlspecialchars($line["link"]);
2982 }
2983 $entry_comments = "<a target='_blank' href=\"$comments_url\">$num_comments comments</a>";
2984 } else {
2985 if ($line["comments"] && $line["link"] != $line["comments"]) {
2986 $entry_comments = "<a target='_blank' href=\"".htmlspecialchars($line["comments"])."\">comments</a>";
2987 }
2988 }
2989
2990 if ($zoom_mode) {
2991 header("Content-Type: text/html");
2992 $rv['content'] .= "<html><head>
2993 <meta http-equiv=\"Content-Type\" content=\"text/html; charset=utf-8\"/>
2994 <title>Tiny Tiny RSS - ".$line["title"]."</title>
2995 <link rel=\"stylesheet\" type=\"text/css\" href=\"tt-rss.css\">
2996 </head><body>";
2997 }
2998
2999 $title_escaped = htmlspecialchars($line['title']);
3000
3001 $rv['content'] .= "<div id=\"PTITLE-FULL-$id\" style=\"display : none\">" .
3002 strip_tags($line['title']) . "</div>";
3003
3004 $rv['content'] .= "<div class=\"postReply\" id=\"POST-$id\">";
3005
3006 $rv['content'] .= "<div class=\"postHeader\" id=\"POSTHDR-$id\">";
3007
3008 $entry_author = $line["author"];
3009
3010 if ($entry_author) {
3011 $entry_author = __(" - ") . $entry_author;
3012 }
3013
3014 $parsed_updated = make_local_datetime($link, $line["updated"], true,
3015 $owner_uid, true);
3016
3017 $rv['content'] .= "<div class=\"postDate\">$parsed_updated</div>";
3018
3019 if ($line["link"]) {
3020 $rv['content'] .= "<div class='postTitle'><a target='_blank'
3021 title=\"".htmlspecialchars($line['title'])."\"
3022 href=\"" .
3023 htmlspecialchars($line["link"]) . "\">" .
3024 $line["title"] .
3025 "<span class='author'>$entry_author</span></a></div>";
3026 } else {
3027 $rv['content'] .= "<div class='postTitle'>" . $line["title"] . "$entry_author</div>";
3028 }
3029
3030 $tags_str = format_tags_string($line["tags"], $id);
3031 $tags_str_full = join(", ", $line["tags"]);
3032
3033 if (!$tags_str_full) $tags_str_full = __("no tags");
3034
3035 if (!$entry_comments) $entry_comments = "&nbsp;"; # placeholder
3036
3037 $rv['content'] .= "<div class='postTags' style='float : right'>
3038 <img src='images/tag.png'
3039 class='tagsPic' alt='Tags' title='Tags'>&nbsp;";
3040
3041 if (!$zoom_mode) {
3042 $rv['content'] .= "<span id=\"ATSTR-$id\">$tags_str</span>
3043 <a title=\"".__('Edit tags for this article')."\"
3044 href=\"#\" onclick=\"editArticleTags($id, $feed_id)\">(+)</a>";
3045
3046 $rv['content'] .= "<div dojoType=\"dijit.Tooltip\"
3047 id=\"ATSTRTIP-$id\" connectId=\"ATSTR-$id\"
3048 position=\"below\">$tags_str_full</div>";
3049
3050 global $pluginhost;
3051
3052 foreach ($pluginhost->get_hooks($pluginhost::HOOK_ARTICLE_BUTTON) as $p) {
3053 $rv['content'] .= $p->hook_article_button($line);
3054 }
3055
3056
3057 } else {
3058 $tags_str = strip_tags($tags_str);
3059 $rv['content'] .= "<span id=\"ATSTR-$id\">$tags_str</span>";
3060 }
3061 $rv['content'] .= "</div>";
3062 $rv['content'] .= "<div clear='both'>$entry_comments</div>";
3063
3064 if ($line["orig_feed_id"]) {
3065
3066 $tmp_result = db_query($link, "SELECT * FROM ttrss_archived_feeds
3067 WHERE id = ".$line["orig_feed_id"]);
3068
3069 if (db_num_rows($tmp_result) != 0) {
3070
3071 $rv['content'] .= "<div clear='both'>";
3072 $rv['content'] .= __("Originally from:");
3073
3074 $rv['content'] .= "&nbsp;";
3075
3076 $tmp_line = db_fetch_assoc($tmp_result);
3077
3078 $rv['content'] .= "<a target='_blank'
3079 href=' " . htmlspecialchars($tmp_line['site_url']) . "'>" .
3080 $tmp_line['title'] . "</a>";
3081
3082 $rv['content'] .= "&nbsp;";
3083
3084 $rv['content'] .= "<a target='_blank' href='" . htmlspecialchars($tmp_line['feed_url']) . "'>";
3085 $rv['content'] .= "<img title='".__('Feed URL')."'class='tinyFeedIcon' src='images/pub_set.svg'></a>";
3086
3087 $rv['content'] .= "</div>";
3088 }
3089 }
3090
3091 $rv['content'] .= "</div>";
3092
3093 $rv['content'] .= "<div id=\"POSTNOTE-$id\">";
3094 if ($line['note']) {
3095 $rv['content'] .= format_article_note($id, $line['note'], !$zoom_mode);
3096 }
3097 $rv['content'] .= "</div>";
3098
3099 $rv['content'] .= "<div class=\"postContent\">";
3100
3101 // N-grams
3102
3103 if (DB_TYPE == "pgsql" and defined('_NGRAM_TITLE_RELATED_THRESHOLD')) {
3104
3105 $ngram_result = db_query($link, "SELECT id,title FROM
3106 ttrss_entries,ttrss_user_entries
3107 WHERE ref_id = id AND updated >= NOW() - INTERVAL '7 day'
3108 AND similarity(title, '$title_escaped') >= "._NGRAM_TITLE_RELATED_THRESHOLD."
3109 AND title != '$title_escaped'
3110 AND owner_uid = $owner_uid");
3111
3112 if (db_num_rows($ngram_result) > 0) {
3113 $rv['content'] .= "<div dojoType=\"dijit.form.DropDownButton\">".
3114 "<span>" . __('Related')."</span>";
3115 $rv['content'] .= "<div dojoType=\"dijit.Menu\" style=\"display: none;\">";
3116
3117 while ($nline = db_fetch_assoc($ngram_result)) {
3118 $rv['content'] .= "<div onclick=\"hlOpenInNewTab(null,".$nline['id'].")\"
3119 dojoType=\"dijit.MenuItem\">".$nline['title']."</div>";
3120
3121 }
3122 $rv['content'] .= "</div></div><br/";
3123 }
3124 }
3125
3126 $rv['content'] .= $line["content"];
3127
3128 $rv['content'] .= format_article_enclosures($link, $id,
3129 $always_display_enclosures, $line["content"]);
3130
3131 $rv['content'] .= "</div>";
3132
3133 $rv['content'] .= "</div>";
3134
3135 }
3136
3137 if ($zoom_mode) {
3138 $rv['content'] .= "
3139 <div style=\"text-align : center\">
3140 <button onclick=\"return window.close()\">".
3141 __("Close this window")."</button></div>";
3142 $rv['content'] .= "</body></html>";
3143 }
3144
3145 return $rv;
3146
3147 }
3148
3149 function print_checkpoint($n, $s) {
3150 $ts = microtime(true);
3151 echo sprintf("<!-- CP[$n] %.4f seconds -->", $ts - $s);
3152 return $ts;
3153 }
3154
3155 function sanitize_tag($tag) {
3156 $tag = trim($tag);
3157
3158 $tag = mb_strtolower($tag, 'utf-8');
3159
3160 $tag = preg_replace('/[\'\"\+\>\<]/', "", $tag);
3161
3162 // $tag = str_replace('"', "", $tag);
3163 // $tag = str_replace("+", " ", $tag);
3164 $tag = str_replace("technorati tag: ", "", $tag);
3165
3166 return $tag;
3167 }
3168
3169 function get_self_url_prefix() {
3170 if (strrpos(SELF_URL_PATH, "/") === strlen(SELF_URL_PATH)-1) {
3171 return substr(SELF_URL_PATH, 0, strlen(SELF_URL_PATH)-1);
3172 } else {
3173 return SELF_URL_PATH;
3174 }
3175 }
3176
3177 /**
3178 * Compute the Mozilla Firefox feed adding URL from server HOST and REQUEST_URI.
3179 *
3180 * @return string The Mozilla Firefox feed adding URL.
3181 */
3182 function add_feed_url() {
3183 //$url_path = ($_SERVER['HTTPS'] != "on" ? 'http://' : 'https://') . $_SERVER["HTTP_HOST"] . parse_url($_SERVER["REQUEST_URI"], PHP_URL_PATH);
3184
3185 $url_path = get_self_url_prefix() .
3186 "/public.php?op=subscribe&feed_url=%s";
3187 return $url_path;
3188 } // function add_feed_url
3189
3190 function encrypt_password($pass, $salt = '', $mode2 = false) {
3191 if ($salt && $mode2) {
3192 return "MODE2:" . hash('sha256', $salt . $pass);
3193 } else if ($salt) {
3194 return "SHA1X:" . sha1("$salt:$pass");
3195 } else {
3196 return "SHA1:" . sha1($pass);
3197 }
3198 } // function encrypt_password
3199
3200 function load_filters($link, $feed_id, $owner_uid, $action_id = false) {
3201 $filters = array();
3202
3203 $cat_id = (int)getFeedCategory($link, $feed_id);
3204
3205 $result = db_query($link, "SELECT * FROM ttrss_filters2 WHERE
3206 owner_uid = $owner_uid AND enabled = true");
3207
3208 $check_cats = join(",", array_merge(
3209 getParentCategories($link, $cat_id, $owner_uid),
3210 array($cat_id)));
3211
3212 while ($line = db_fetch_assoc($result)) {
3213 $filter_id = $line["id"];
3214
3215 $result2 = db_query($link, "SELECT
3216 r.reg_exp, r.feed_id, r.cat_id, r.cat_filter, t.name AS type_name
3217 FROM ttrss_filters2_rules AS r,
3218 ttrss_filter_types AS t
3219 WHERE
3220 (cat_id IS NULL OR cat_id IN ($check_cats)) AND
3221 (feed_id IS NULL OR feed_id = '$feed_id') AND
3222 filter_type = t.id AND filter_id = '$filter_id'");
3223
3224 $rules = array();
3225 $actions = array();
3226
3227 while ($rule_line = db_fetch_assoc($result2)) {
3228 # print_r($rule_line);
3229
3230 $rule = array();
3231 $rule["reg_exp"] = $rule_line["reg_exp"];
3232 $rule["type"] = $rule_line["type_name"];
3233
3234 array_push($rules, $rule);
3235 }
3236
3237 $result2 = db_query($link, "SELECT a.action_param,t.name AS type_name
3238 FROM ttrss_filters2_actions AS a,
3239 ttrss_filter_actions AS t
3240 WHERE
3241 action_id = t.id AND filter_id = '$filter_id'");
3242
3243 while ($action_line = db_fetch_assoc($result2)) {
3244 # print_r($action_line);
3245
3246 $action = array();
3247 $action["type"] = $action_line["type_name"];
3248 $action["param"] = $action_line["action_param"];
3249
3250 array_push($actions, $action);
3251 }
3252
3253
3254 $filter = array();
3255 $filter["match_any_rule"] = sql_bool_to_bool($line["match_any_rule"]);
3256 $filter["rules"] = $rules;
3257 $filter["actions"] = $actions;
3258
3259 if (count($rules) > 0 && count($actions) > 0) {
3260 array_push($filters, $filter);
3261 }
3262 }
3263
3264 return $filters;
3265 }
3266
3267 function get_score_pic($score) {
3268 if ($score > 100) {
3269 return "score_high.png";
3270 } else if ($score > 0) {
3271 return "score_half_high.png";
3272 } else if ($score < -100) {
3273 return "score_low.png";
3274 } else if ($score < 0) {
3275 return "score_half_low.png";
3276 } else {
3277 return "score_neutral.png";
3278 }
3279 }
3280
3281 function feed_has_icon($id) {
3282 return is_file(ICONS_DIR . "/$id.ico") && filesize(ICONS_DIR . "/$id.ico") > 0;
3283 }
3284
3285 function init_connection($link) {
3286 if ($link) {
3287
3288 if (DB_TYPE == "pgsql") {
3289 pg_query($link, "set client_encoding = 'UTF-8'");
3290 pg_set_client_encoding("UNICODE");
3291 pg_query($link, "set datestyle = 'ISO, european'");
3292 pg_query($link, "set TIME ZONE 0");
3293 } else {
3294 db_query($link, "SET time_zone = '+0:0'");
3295
3296 if (defined('MYSQL_CHARSET') && MYSQL_CHARSET) {
3297 db_query($link, "SET NAMES " . MYSQL_CHARSET);
3298 }
3299 }
3300
3301 global $pluginhost;
3302
3303 $pluginhost = new PluginHost($link);
3304 $pluginhost->load(PLUGINS, $pluginhost::KIND_ALL);
3305
3306 return true;
3307 } else {
3308 print "Unable to connect to database:" . db_last_error();
3309 return false;
3310 }
3311 }
3312
3313 function format_tags_string($tags, $id) {
3314
3315 $tags_str = "";
3316 $tags_nolinks_str = "";
3317
3318 $num_tags = 0;
3319
3320 $tag_limit = 6;
3321
3322 $formatted_tags = array();
3323
3324 foreach ($tags as $tag) {
3325 $num_tags++;
3326 $tag_escaped = str_replace("'", "\\'", $tag);
3327
3328 if (mb_strlen($tag) > 30) {
3329 $tag = truncate_string($tag, 30);
3330 }
3331
3332 $tag_str = "<a href=\"javascript:viewfeed('$tag_escaped')\">$tag</a>";
3333
3334 array_push($formatted_tags, $tag_str);
3335
3336 $tmp_tags_str = implode(", ", $formatted_tags);
3337
3338 if ($num_tags == $tag_limit || mb_strlen($tmp_tags_str) > 150) {
3339 break;
3340 }
3341 }
3342
3343 $tags_str = implode(", ", $formatted_tags);
3344
3345 if ($num_tags < count($tags)) {
3346 $tags_str .= ", &hellip;";
3347 }
3348
3349 if ($num_tags == 0) {
3350 $tags_str = __("no tags");
3351 }
3352
3353 return $tags_str;
3354
3355 }
3356
3357 function format_article_labels($labels, $id) {
3358
3359 $labels_str = "";
3360
3361 foreach ($labels as $l) {
3362 $labels_str .= sprintf("<span class='hlLabelRef'
3363 style='color : %s; background-color : %s'>%s</span>",
3364 $l[2], $l[3], $l[1]);
3365 }
3366
3367 return $labels_str;
3368
3369 }
3370
3371 function format_article_note($id, $note, $allow_edit = true) {
3372
3373 $str = "<div class='articleNote' onclick=\"editArticleNote($id)\">
3374 <div class='noteEdit' onclick=\"editArticleNote($id)\">".
3375 ($allow_edit ? __('(edit note)') : "")."</div>$note</div>";
3376
3377 return $str;
3378 }
3379
3380
3381 function get_feed_category($link, $feed_cat, $parent_cat_id = false) {
3382 if ($parent_cat_id) {
3383 $parent_qpart = "parent_cat = '$parent_cat_id'";
3384 $parent_insert = "'$parent_cat_id'";
3385 } else {
3386 $parent_qpart = "parent_cat IS NULL";
3387 $parent_insert = "NULL";
3388 }
3389
3390 $result = db_query($link,
3391 "SELECT id FROM ttrss_feed_categories
3392 WHERE $parent_qpart AND title = '$feed_cat' AND owner_uid = ".$_SESSION["uid"]);
3393
3394 if (db_num_rows($result) == 0) {
3395 return false;
3396 } else {
3397 return db_fetch_result($result, 0, "id");
3398 }
3399 }
3400
3401 function add_feed_category($link, $feed_cat, $parent_cat_id = false) {
3402
3403 if (!$feed_cat) return false;
3404
3405 db_query($link, "BEGIN");
3406
3407 if ($parent_cat_id) {
3408 $parent_qpart = "parent_cat = '$parent_cat_id'";
3409 $parent_insert = "'$parent_cat_id'";
3410 } else {
3411 $parent_qpart = "parent_cat IS NULL";
3412 $parent_insert = "NULL";
3413 }
3414
3415 $result = db_query($link,
3416 "SELECT id FROM ttrss_feed_categories
3417 WHERE $parent_qpart AND title = '$feed_cat' AND owner_uid = ".$_SESSION["uid"]);
3418
3419 if (db_num_rows($result) == 0) {
3420
3421 $result = db_query($link,
3422 "INSERT INTO ttrss_feed_categories (owner_uid,title,parent_cat)
3423 VALUES ('".$_SESSION["uid"]."', '$feed_cat', $parent_insert)");
3424
3425 db_query($link, "COMMIT");
3426
3427 return true;
3428 }
3429
3430 return false;
3431 }
3432
3433 function getArticleFeed($link, $id) {
3434 $result = db_query($link, "SELECT feed_id FROM ttrss_user_entries
3435 WHERE ref_id = '$id' AND owner_uid = " . $_SESSION["uid"]);
3436
3437 if (db_num_rows($result) != 0) {
3438 return db_fetch_result($result, 0, "feed_id");
3439 } else {
3440 return 0;
3441 }
3442 }
3443
3444 /**
3445 * Fixes incomplete URLs by prepending "http://".
3446 * Also replaces feed:// with http://, and
3447 * prepends a trailing slash if the url is a domain name only.
3448 *
3449 * @param string $url Possibly incomplete URL
3450 *
3451 * @return string Fixed URL.
3452 */
3453 function fix_url($url) {
3454 if (strpos($url, '://') === false) {
3455 $url = 'http://' . $url;
3456 } else if (substr($url, 0, 5) == 'feed:') {
3457 $url = 'http:' . substr($url, 5);
3458 }
3459
3460 //prepend slash if the URL has no slash in it
3461 // "http://www.example" -> "http://www.example/"
3462 if (strpos($url, '/', strpos($url, ':') + 3) === false) {
3463 $url .= '/';
3464 }
3465
3466 if ($url != "http:///")
3467 return $url;
3468 else
3469 return '';
3470 }
3471
3472 function validate_feed_url($url) {
3473 $parts = parse_url($url);
3474
3475 return ($parts['scheme'] == 'http' || $parts['scheme'] == 'feed' || $parts['scheme'] == 'https');
3476
3477 }
3478
3479 function get_article_enclosures($link, $id) {
3480
3481 $query = "SELECT * FROM ttrss_enclosures
3482 WHERE post_id = '$id' AND content_url != ''";
3483
3484 $rv = array();
3485
3486 $result = db_query($link, $query);
3487
3488 if (db_num_rows($result) > 0) {
3489 while ($line = db_fetch_assoc($result)) {
3490 array_push($rv, $line);
3491 }
3492 }
3493
3494 return $rv;
3495 }
3496
3497 function save_email_address($link, $email) {
3498 // FIXME: implement persistent storage of emails
3499
3500 if (!$_SESSION['stored_emails'])
3501 $_SESSION['stored_emails'] = array();
3502
3503 if (!in_array($email, $_SESSION['stored_emails']))
3504 array_push($_SESSION['stored_emails'], $email);
3505 }
3506
3507
3508 function get_feed_access_key($link, $feed_id, $is_cat, $owner_uid = false) {
3509
3510 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
3511
3512 $sql_is_cat = bool_to_sql_bool($is_cat);
3513
3514 $result = db_query($link, "SELECT access_key FROM ttrss_access_keys
3515 WHERE feed_id = '$feed_id' AND is_cat = $sql_is_cat
3516 AND owner_uid = " . $owner_uid);
3517
3518 if (db_num_rows($result) == 1) {
3519 return db_fetch_result($result, 0, "access_key");
3520 } else {
3521 $key = db_escape_string(sha1(uniqid(rand(), true)));
3522
3523 $result = db_query($link, "INSERT INTO ttrss_access_keys
3524 (access_key, feed_id, is_cat, owner_uid)
3525 VALUES ('$key', '$feed_id', $sql_is_cat, '$owner_uid')");
3526
3527 return $key;
3528 }
3529 return false;
3530 }
3531
3532 function get_feeds_from_html($url, $content)
3533 {
3534 $url = fix_url($url);
3535 $baseUrl = substr($url, 0, strrpos($url, '/') + 1);
3536
3537 libxml_use_internal_errors(true);
3538
3539 $doc = new DOMDocument();
3540 $doc->loadHTML($content);
3541 $xpath = new DOMXPath($doc);
3542 $entries = $xpath->query('/html/head/link[@rel="alternate"]');
3543 $feedUrls = array();
3544 foreach ($entries as $entry) {
3545 if ($entry->hasAttribute('href')) {
3546 $title = $entry->getAttribute('title');
3547 if ($title == '') {
3548 $title = $entry->getAttribute('type');
3549 }
3550 $feedUrl = rewrite_relative_url(
3551 $baseUrl, $entry->getAttribute('href')
3552 );
3553 $feedUrls[$feedUrl] = $title;
3554 }
3555 }
3556 return $feedUrls;
3557 }
3558
3559 function is_html($content) {
3560 return preg_match("/<html|DOCTYPE html/i", substr($content, 0, 20)) !== 0;
3561 }
3562
3563 function url_is_html($url, $login = false, $pass = false) {
3564 return is_html(fetch_file_contents($url, false, $login, $pass));
3565 }
3566
3567 function print_label_select($link, $name, $value, $attributes = "") {
3568
3569 $result = db_query($link, "SELECT caption FROM ttrss_labels2
3570 WHERE owner_uid = '".$_SESSION["uid"]."' ORDER BY caption");
3571
3572 print "<select default=\"$value\" name=\"" . htmlspecialchars($name) .
3573 "\" $attributes onchange=\"labelSelectOnChange(this)\" >";
3574
3575 while ($line = db_fetch_assoc($result)) {
3576
3577 $issel = ($line["caption"] == $value) ? "selected=\"1\"" : "";
3578
3579 print "<option value=\"".htmlspecialchars($line["caption"])."\"
3580 $issel>" . htmlspecialchars($line["caption"]) . "</option>";
3581
3582 }
3583
3584 # print "<option value=\"ADD_LABEL\">" .__("Add label...") . "</option>";
3585
3586 print "</select>";
3587
3588
3589 }
3590
3591 function format_article_enclosures($link, $id, $always_display_enclosures,
3592 $article_content) {
3593
3594 $result = get_article_enclosures($link, $id);
3595 $rv = '';
3596
3597 if (count($result) > 0) {
3598
3599 $entries_html = array();
3600 $entries = array();
3601 $entries_inline = array();
3602
3603 foreach ($result as $line) {
3604
3605 $url = $line["content_url"];
3606 $ctype = $line["content_type"];
3607
3608 if (!$ctype) $ctype = __("unknown type");
3609
3610 $filename = substr($url, strrpos($url, "/")+1);
3611
3612 $player = format_inline_player($link, $url, $ctype);
3613
3614 if ($player) array_push($entries_inline, $player);
3615
3616 # $entry .= " <a target=\"_blank\" href=\"" . htmlspecialchars($url) . "\">" .
3617 # $filename . " (" . $ctype . ")" . "</a>";
3618
3619 $entry = "<div onclick=\"window.open('".htmlspecialchars($url)."')\"
3620 dojoType=\"dijit.MenuItem\">$filename ($ctype)</div>";
3621
3622 array_push($entries_html, $entry);
3623
3624 $entry = array();
3625
3626 $entry["type"] = $ctype;
3627 $entry["filename"] = $filename;
3628 $entry["url"] = $url;
3629
3630 array_push($entries, $entry);
3631 }
3632
3633 if ($_SESSION['uid'] && !get_pref($link, "STRIP_IMAGES")) {
3634 if ($always_display_enclosures ||
3635 !preg_match("/<img/i", $article_content)) {
3636
3637 foreach ($entries as $entry) {
3638
3639 if (preg_match("/image/", $entry["type"]) ||
3640 preg_match("/\.(jpg|png|gif|bmp)/i", $entry["filename"])) {
3641
3642 $rv .= "<p><img
3643 alt=\"".htmlspecialchars($entry["filename"])."\"
3644 src=\"" .htmlspecialchars($entry["url"]) . "\"/></p>";
3645
3646 }
3647 }
3648 }
3649 }
3650
3651 if (count($entries_inline) > 0) {
3652 $rv .= "<hr clear='both'/>";
3653 foreach ($entries_inline as $entry) { $rv .= $entry; };
3654 $rv .= "<hr clear='both'/>";
3655 }
3656
3657 $rv .= "<br/><div dojoType=\"dijit.form.DropDownButton\">".
3658 "<span>" . __('Attachments')."</span>";
3659 $rv .= "<div dojoType=\"dijit.Menu\" style=\"display: none;\">";
3660
3661 foreach ($entries_html as $entry) { $rv .= $entry; };
3662
3663 $rv .= "</div></div>";
3664 }
3665
3666 return $rv;
3667 }
3668
3669 function getLastArticleId($link) {
3670 $result = db_query($link, "SELECT MAX(ref_id) AS id FROM ttrss_user_entries
3671 WHERE owner_uid = " . $_SESSION["uid"]);
3672
3673 if (db_num_rows($result) == 1) {
3674 return db_fetch_result($result, 0, "id");
3675 } else {
3676 return -1;
3677 }
3678 }
3679
3680 function build_url($parts) {
3681 return $parts['scheme'] . "://" . $parts['host'] . $parts['path'];
3682 }
3683
3684 /**
3685 * Converts a (possibly) relative URL to a absolute one.
3686 *
3687 * @param string $url Base URL (i.e. from where the document is)
3688 * @param string $rel_url Possibly relative URL in the document
3689 *
3690 * @return string Absolute URL
3691 */
3692 function rewrite_relative_url($url, $rel_url) {
3693 if (strpos($rel_url, "magnet:") === 0) {
3694 return $rel_url;
3695 } else if (strpos($rel_url, "://") !== false) {
3696 return $rel_url;
3697 } else if (strpos($rel_url, "//") === 0) {
3698 # protocol-relative URL (rare but they exist)
3699 return $rel_url;
3700 } else if (strpos($rel_url, "/") === 0)
3701 {
3702 $parts = parse_url($url);
3703 $parts['path'] = $rel_url;
3704
3705 return build_url($parts);
3706
3707 } else {
3708 $parts = parse_url($url);
3709 if (!isset($parts['path'])) {
3710 $parts['path'] = '/';
3711 }
3712 $dir = $parts['path'];
3713 if (substr($dir, -1) !== '/') {
3714 $dir = dirname($parts['path']);
3715 $dir !== '/' && $dir .= '/';
3716 }
3717 $parts['path'] = $dir . $rel_url;
3718
3719 return build_url($parts);
3720 }
3721 }
3722
3723 function sphinx_search($query, $offset = 0, $limit = 30) {
3724 require_once 'lib/sphinxapi.php';
3725
3726 $sphinxClient = new SphinxClient();
3727
3728 $sphinxClient->SetServer('localhost', 9312);
3729 $sphinxClient->SetConnectTimeout(1);
3730
3731 $sphinxClient->SetFieldWeights(array('title' => 70, 'content' => 30,
3732 'feed_title' => 20));
3733
3734 $sphinxClient->SetMatchMode(SPH_MATCH_EXTENDED2);
3735 $sphinxClient->SetRankingMode(SPH_RANK_PROXIMITY_BM25);
3736 $sphinxClient->SetLimits($offset, $limit, 1000);
3737 $sphinxClient->SetArrayResult(false);
3738 $sphinxClient->SetFilter('owner_uid', array($_SESSION['uid']));
3739
3740 $result = $sphinxClient->Query($query, SPHINX_INDEX);
3741
3742 $ids = array();
3743
3744 if (is_array($result['matches'])) {
3745 foreach (array_keys($result['matches']) as $int_id) {
3746 $ref_id = $result['matches'][$int_id]['attrs']['ref_id'];
3747 array_push($ids, $ref_id);
3748 }
3749 }
3750
3751 return $ids;
3752 }
3753
3754 function cleanup_tags($link, $days = 14, $limit = 1000) {
3755
3756 if (DB_TYPE == "pgsql") {
3757 $interval_query = "date_updated < NOW() - INTERVAL '$days days'";
3758 } else if (DB_TYPE == "mysql") {
3759 $interval_query = "date_updated < DATE_SUB(NOW(), INTERVAL $days DAY)";
3760 }
3761
3762 $tags_deleted = 0;
3763
3764 while ($limit > 0) {
3765 $limit_part = 500;
3766
3767 $query = "SELECT ttrss_tags.id AS id
3768 FROM ttrss_tags, ttrss_user_entries, ttrss_entries
3769 WHERE post_int_id = int_id AND $interval_query AND
3770 ref_id = ttrss_entries.id AND tag_cache != '' LIMIT $limit_part";
3771
3772 $result = db_query($link, $query);
3773
3774 $ids = array();
3775
3776 while ($line = db_fetch_assoc($result)) {
3777 array_push($ids, $line['id']);
3778 }
3779
3780 if (count($ids) > 0) {
3781 $ids = join(",", $ids);
3782 print ".";
3783
3784 $tmp_result = db_query($link, "DELETE FROM ttrss_tags WHERE id IN ($ids)");
3785 $tags_deleted += db_affected_rows($link, $tmp_result);
3786 } else {
3787 break;
3788 }
3789
3790 $limit -= $limit_part;
3791 }
3792
3793 print "\n";
3794
3795 return $tags_deleted;
3796 }
3797
3798 function print_user_stylesheet($link) {
3799 $value = get_pref($link, 'USER_STYLESHEET');
3800
3801 if ($value) {
3802 print "<style type=\"text/css\">";
3803 print str_replace("<br/>", "\n", $value);
3804 print "</style>";
3805 }
3806
3807 }
3808
3809 function rewrite_urls($html) {
3810 libxml_use_internal_errors(true);
3811
3812 $charset_hack = '<head>
3813 <meta http-equiv="Content-Type" content="text/html; charset=utf-8"/>
3814 </head>';
3815
3816 $doc = new DOMDocument();
3817 $doc->loadHTML($charset_hack . $html);
3818 $xpath = new DOMXPath($doc);
3819
3820 $entries = $xpath->query('//*/text()');
3821
3822 foreach ($entries as $entry) {
3823 if (strstr($entry->wholeText, "://") !== false) {
3824 $text = preg_replace("/((?<!=.)((http|https|ftp)+):\/\/[^ ,!]+)/i",
3825 "<a target=\"_blank\" href=\"\\1\">\\1</a>", $entry->wholeText);
3826
3827 if ($text != $entry->wholeText) {
3828 $cdoc = new DOMDocument();
3829 $cdoc->loadHTML($charset_hack . $text);
3830
3831
3832 foreach ($cdoc->childNodes as $cnode) {
3833 $cnode = $doc->importNode($cnode, true);
3834
3835 if ($cnode) {
3836 $entry->parentNode->insertBefore($cnode);
3837 }
3838 }
3839
3840 $entry->parentNode->removeChild($entry);
3841
3842 }
3843 }
3844 }
3845
3846 $node = $doc->getElementsByTagName('body')->item(0);
3847
3848 // http://tt-rss.org/forum/viewtopic.php?f=1&t=970
3849 if ($node)
3850 return $doc->saveXML($node);
3851 else
3852 return $html;
3853 }
3854
3855 function filter_to_sql($link, $filter, $owner_uid) {
3856 $query = array();
3857
3858 if (DB_TYPE == "pgsql")
3859 $reg_qpart = "~";
3860 else
3861 $reg_qpart = "REGEXP";
3862
3863 foreach ($filter["rules"] AS $rule) {
3864 $regexp_valid = preg_match('/' . $rule['reg_exp'] . '/',
3865 $rule['reg_exp']) !== FALSE;
3866
3867 if ($regexp_valid) {
3868
3869 $rule['reg_exp'] = db_escape_string($rule['reg_exp']);
3870
3871 switch ($rule["type"]) {
3872 case "title":
3873 $qpart = "LOWER(ttrss_entries.title) $reg_qpart LOWER('".
3874 $rule['reg_exp'] . "')";
3875 break;
3876 case "content":
3877 $qpart = "LOWER(ttrss_entries.content) $reg_qpart LOWER('".
3878 $rule['reg_exp'] . "')";
3879 break;
3880 case "both":
3881 $qpart = "LOWER(ttrss_entries.title) $reg_qpart LOWER('".
3882 $rule['reg_exp'] . "') OR LOWER(" .
3883 "ttrss_entries.content) $reg_qpart LOWER('" . $rule['reg_exp'] . "')";
3884 break;
3885 case "tag":
3886 $qpart = "LOWER(ttrss_user_entries.tag_cache) $reg_qpart LOWER('".
3887 $rule['reg_exp'] . "')";
3888 break;
3889 case "link":
3890 $qpart = "LOWER(ttrss_entries.link) $reg_qpart LOWER('".
3891 $rule['reg_exp'] . "')";
3892 break;
3893 case "author":
3894 $qpart = "LOWER(ttrss_entries.author) $reg_qpart LOWER('".
3895 $rule['reg_exp'] . "')";
3896 break;
3897 }
3898
3899 if (isset($rule["feed_id"]) && $rule["feed_id"] > 0) {
3900 $qpart .= " AND feed_id = " . db_escape_string($rule["feed_id"]);
3901 }
3902
3903 if (isset($rule["cat_id"])) {
3904
3905 if ($rule["cat_id"] > 0) {
3906 $children = getChildCategories($link, $rule["cat_id"], $owner_uid);
3907 array_push($children, $rule["cat_id"]);
3908
3909 $children = join(",", $children);
3910
3911 $cat_qpart = "cat_id IN ($children)";
3912 } else {
3913 $cat_qpart = "cat_id IS NULL";
3914 }
3915
3916 $qpart .= " AND $cat_qpart";
3917 }
3918
3919 array_push($query, "($qpart)");
3920
3921 }
3922 }
3923
3924 if (count($query) > 0) {
3925 return "(" . join($filter["match_any_rule"] ? "OR" : "AND", $query) . ")";
3926 } else {
3927 return "(false)";
3928 }
3929 }
3930
3931 if (!function_exists('gzdecode')) {
3932 function gzdecode($string) { // no support for 2nd argument
3933 return file_get_contents('compress.zlib://data:who/cares;base64,'.
3934 base64_encode($string));
3935 }
3936 }
3937
3938 function get_random_bytes($length) {
3939 if (function_exists('openssl_random_pseudo_bytes')) {
3940 return openssl_random_pseudo_bytes($length);
3941 } else {
3942 $output = "";
3943
3944 for ($i = 0; $i < $length; $i++)
3945 $output .= chr(mt_rand(0, 255));
3946
3947 return $output;
3948 }
3949 }
3950
3951 function read_stdin() {
3952 $fp = fopen("php://stdin", "r");
3953
3954 if ($fp) {
3955 $line = trim(fgets($fp));
3956 fclose($fp);
3957 return $line;
3958 }
3959
3960 return null;
3961 }
3962
3963 function tmpdirname($path, $prefix) {
3964 // Use PHP's tmpfile function to create a temporary
3965 // directory name. Delete the file and keep the name.
3966 $tempname = tempnam($path,$prefix);
3967 if (!$tempname)
3968 return false;
3969
3970 if (!unlink($tempname))
3971 return false;
3972
3973 return $tempname;
3974 }
3975
3976 function getFeedCategory($link, $feed) {
3977 $result = db_query($link, "SELECT cat_id FROM ttrss_feeds
3978 WHERE id = '$feed'");
3979
3980 if (db_num_rows($result) > 0) {
3981 return db_fetch_result($result, 0, "cat_id");
3982 } else {
3983 return false;
3984 }
3985
3986 }
3987
3988 function implements_interface($class, $interface) {
3989 return in_array($interface, class_implements($class));
3990 }
3991
3992 function geturl($url){
3993
3994 (function_exists('curl_init')) ? '' : die('cURL Must be installed for geturl function to work. Ask your host to enable it or uncomment extension=php_curl.dll in php.ini');
3995
3996 $curl = curl_init();
3997 $header[0] = "Accept: text/xml,application/xml,application/xhtml+xml,";
3998 $header[0] .= "text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5";
3999 $header[] = "Cache-Control: max-age=0";
4000 $header[] = "Connection: keep-alive";
4001 $header[] = "Keep-Alive: 300";
4002 $header[] = "Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.7";
4003 $header[] = "Accept-Language: en-us,en;q=0.5";
4004 $header[] = "Pragma: ";
4005
4006 curl_setopt($curl, CURLOPT_URL, $url);
4007 curl_setopt($curl, CURLOPT_USERAGENT, 'Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0 Firefox/5.0');
4008 curl_setopt($curl, CURLOPT_HTTPHEADER, $header);
4009 curl_setopt($curl, CURLOPT_HEADER, true);
4010 curl_setopt($curl, CURLOPT_REFERER, $url);
4011 curl_setopt($curl, CURLOPT_ENCODING, 'gzip,deflate');
4012 curl_setopt($curl, CURLOPT_AUTOREFERER, true);
4013 curl_setopt($curl, CURLOPT_RETURNTRANSFER, true);
4014 //curl_setopt($curl, CURLOPT_FOLLOWLOCATION, true); //CURLOPT_FOLLOWLOCATION Disabled...
4015 curl_setopt($curl, CURLOPT_TIMEOUT, 60);
4016
4017 $html = curl_exec($curl);
4018
4019 $status = curl_getinfo($curl);
4020 curl_close($curl);
4021
4022 if($status['http_code']!=200){
4023 if($status['http_code'] == 301 || $status['http_code'] == 302) {
4024 list($header) = explode("\r\n\r\n", $html, 2);
4025 $matches = array();
4026 preg_match("/(Location:|URI:)[^(\n)]*/", $header, $matches);
4027 $url = trim(str_replace($matches[1],"",$matches[0]));
4028 $url_parsed = parse_url($url);
4029 return (isset($url_parsed))? geturl($url, $referer):'';
4030 }
4031 $oline='';
4032 foreach($status as $key=>$eline){$oline.='['.$key.']'.$eline.' ';}
4033 $line =$oline." \r\n ".$url."\r\n-----------------\r\n";
4034 # $handle = @fopen('./curl.error.log', 'a');
4035 # fwrite($handle, $line);
4036 return FALSE;
4037 }
4038 return $url;
4039 }
4040
4041 function get_minified_js($files) {
4042 require_once 'lib/jshrink/Minifier.php';
4043
4044 $rv = '';
4045
4046 foreach ($files as $js) {
4047 if (!isset($_GET['debug'])) {
4048 $cached_file = CACHE_DIR . "/js/$js.js";
4049
4050 if (file_exists($cached_file) &&
4051 is_readable($cached_file) &&
4052 filemtime($cached_file) >= filemtime("js/$js.js")) {
4053
4054 $rv .= file_get_contents($cached_file);
4055
4056 } else {
4057 $minified = JShrink\Minifier::minify(file_get_contents("js/$js.js"));
4058 file_put_contents($cached_file, $minified);
4059 $rv .= $minified;
4060 }
4061 } else {
4062 $rv .= file_get_contents("js/$js.js");
4063 }
4064 }
4065
4066 return $rv;
4067 }
4068
4069 function stylesheet_tag($filename) {
4070 $timestamp = filemtime($filename);
4071
4072 echo "<link rel=\"stylesheet\" type=\"text/css\" href=\"$filename?$timestamp\"/>\n";
4073 }
4074
4075 function javascript_tag($filename) {
4076 $query = "";
4077
4078 if (!(strpos($filename, "?") === FALSE)) {
4079 $query = substr($filename, strpos($filename, "?")+1);
4080 $filename = substr($filename, 0, strpos($filename, "?"));
4081 }
4082
4083 $timestamp = filemtime($filename);
4084
4085 if ($query) $timestamp .= "&$query";
4086
4087 echo "<script type=\"text/javascript\" charset=\"utf-8\" src=\"$filename?$timestamp\"></script>\n";
4088 }
4089
4090 ?>