]> git.wh0rd.org Git - tt-rss.git/blob - include/functions.php
properly handle invalid regular expressions supplied when testing filters, add some...
[tt-rss.git] / include / functions.php
1 <?php
2         date_default_timezone_set('UTC');
3         if (defined('E_DEPRECATED')) {
4                 error_reporting(E_ALL & ~E_NOTICE & ~E_DEPRECATED);
5         } else {
6                 error_reporting(E_ALL & ~E_NOTICE);
7         }
8
9         require_once 'config.php';
10
11         if (DB_TYPE == "pgsql") {
12                 define('SUBSTRING_FOR_DATE', 'SUBSTRING_FOR_DATE');
13         } else {
14                 define('SUBSTRING_FOR_DATE', 'SUBSTRING');
15         }
16
17         define('THEME_VERSION_REQUIRED', 1.1);
18
19         /**
20          * Return available translations names.
21          *
22          * @access public
23          * @return array A array of available translations.
24          */
25         function get_translations() {
26                 $tr = array(
27                                         "auto"  => "Detect automatically",
28                                         "ca_CA" => "Català",
29                                         "en_US" => "English",
30                                         "es_ES" => "Español",
31                                         "de_DE" => "Deutsch",
32                                         "fr_FR" => "Français",
33                                         "hu_HU" => "Magyar (Hungarian)",
34                                         "it_IT" => "Italiano",
35                                         "ja_JP" => "日本語 (Japanese)",
36                                         "nb_NO" => "Norwegian bokmål",
37                                         "ru_RU" => "Русский",
38                                         "pt_BR" => "Portuguese/Brazil",
39                                         "zh_CN" => "Simplified Chinese");
40
41                 return $tr;
42         }
43
44         require_once "lib/accept-to-gettext.php";
45         require_once "lib/gettext/gettext.inc";
46
47         function startup_gettext() {
48
49                 # Get locale from Accept-Language header
50                 $lang = al2gt(array_keys(get_translations()), "text/html");
51
52                 if (defined('_TRANSLATION_OVERRIDE_DEFAULT')) {
53                         $lang = _TRANSLATION_OVERRIDE_DEFAULT;
54                 }
55
56                 if ($_COOKIE["ttrss_lang"] && $_COOKIE["ttrss_lang"] != "auto") {
57                         $lang = $_COOKIE["ttrss_lang"];
58                 }
59
60                 /* In login action of mobile version */
61                 if ($_POST["language"] && defined('MOBILE_VERSION')) {
62                         $lang = $_POST["language"];
63                         $_COOKIE["ttrss_lang"] = $lang;
64                 }
65
66                 if ($lang) {
67                         if (defined('LC_MESSAGES')) {
68                                 _setlocale(LC_MESSAGES, $lang);
69                         } else if (defined('LC_ALL')) {
70                                 _setlocale(LC_ALL, $lang);
71                         }
72
73                         if (defined('MOBILE_VERSION')) {
74                                 _bindtextdomain("messages", "../locale");
75                         } else {
76                                 _bindtextdomain("messages", "locale");
77                         }
78
79                         _textdomain("messages");
80                         _bind_textdomain_codeset("messages", "UTF-8");
81                 }
82         }
83
84         startup_gettext();
85
86         if (defined('MEMCACHE_SERVER')) {
87                 $memcache = new Memcache;
88                 $memcache->connect(MEMCACHE_SERVER, 11211);
89         }
90
91         require_once 'db-prefs.php';
92         require_once 'version.php';
93
94         define('MAGPIE_OUTPUT_ENCODING', 'UTF-8');
95
96         define('SELF_USER_AGENT', 'Tiny Tiny RSS/' . VERSION . ' (http://tt-rss.org/)');
97         define('MAGPIE_USER_AGENT', SELF_USER_AGENT);
98
99         ini_set('user_agent', SELF_USER_AGENT);
100
101         require_once 'lib/pubsubhubbub/publisher.php';
102
103         $purifier = false;
104
105         $tz_offset = -1;
106         $utc_tz = new DateTimeZone('UTC');
107         $schema_version = false;
108
109         /**
110          * Print a timestamped debug message.
111          *
112          * @param string $msg The debug message.
113          * @return void
114          */
115         function _debug($msg) {
116                 $ts = strftime("%H:%M:%S", time());
117                 if (function_exists('posix_getpid')) {
118                         $ts = "$ts/" . posix_getpid();
119                 }
120                 print "[$ts] $msg\n";
121         } // function _debug
122
123         /**
124          * Purge a feed old posts.
125          *
126          * @param mixed $link A database connection.
127          * @param mixed $feed_id The id of the purged feed.
128          * @param mixed $purge_interval Olderness of purged posts.
129          * @param boolean $debug Set to True to enable the debug. False by default.
130          * @access public
131          * @return void
132          */
133         function purge_feed($link, $feed_id, $purge_interval, $debug = false) {
134
135                 if (!$purge_interval) $purge_interval = feed_purge_interval($link, $feed_id);
136
137                 $rows = -1;
138
139                 $result = db_query($link,
140                         "SELECT owner_uid FROM ttrss_feeds WHERE id = '$feed_id'");
141
142                 $owner_uid = false;
143
144                 if (db_num_rows($result) == 1) {
145                         $owner_uid = db_fetch_result($result, 0, "owner_uid");
146                 }
147
148                 if ($purge_interval == -1 || !$purge_interval) {
149                         if ($owner_uid) {
150                                 ccache_update($link, $feed_id, $owner_uid);
151                         }
152                         return;
153                 }
154
155                 if (!$owner_uid) return;
156
157                 if (FORCE_ARTICLE_PURGE == 0) {
158                         $purge_unread = get_pref($link, "PURGE_UNREAD_ARTICLES",
159                                 $owner_uid, false);
160                 } else {
161                         $purge_unread = true;
162                         $purge_interval = FORCE_ARTICLE_PURGE;
163                 }
164
165                 if (!$purge_unread) $query_limit = " unread = false AND ";
166
167                 if (DB_TYPE == "pgsql") {
168                         $pg_version = get_pgsql_version($link);
169
170                         if (preg_match("/^7\./", $pg_version) || preg_match("/^8\.0/", $pg_version)) {
171
172                                 $result = db_query($link, "DELETE FROM ttrss_user_entries WHERE
173                                         ttrss_entries.id = ref_id AND
174                                         marked = false AND
175                                         feed_id = '$feed_id' AND
176                                         $query_limit
177                                         ttrss_entries.date_updated < NOW() - INTERVAL '$purge_interval days'");
178
179                         } else {
180
181                                 $result = db_query($link, "DELETE FROM ttrss_user_entries
182                                         USING ttrss_entries
183                                         WHERE ttrss_entries.id = ref_id AND
184                                         marked = false AND
185                                         feed_id = '$feed_id' AND
186                                         $query_limit
187                                         ttrss_entries.date_updated < NOW() - INTERVAL '$purge_interval days'");
188                         }
189
190                         $rows = pg_affected_rows($result);
191
192                 } else {
193
194 /*                      $result = db_query($link, "DELETE FROM ttrss_user_entries WHERE
195                                 marked = false AND feed_id = '$feed_id' AND
196                                 (SELECT date_updated FROM ttrss_entries WHERE
197                                         id = ref_id) < DATE_SUB(NOW(), INTERVAL $purge_interval DAY)"); */
198
199                         $result = db_query($link, "DELETE FROM ttrss_user_entries
200                                 USING ttrss_user_entries, ttrss_entries
201                                 WHERE ttrss_entries.id = ref_id AND
202                                 marked = false AND
203                                 feed_id = '$feed_id' AND
204                                 $query_limit
205                                 ttrss_entries.date_updated < DATE_SUB(NOW(), INTERVAL $purge_interval DAY)");
206
207                         $rows = mysql_affected_rows($link);
208
209                 }
210
211                 ccache_update($link, $feed_id, $owner_uid);
212
213                 if ($debug) {
214                         _debug("Purged feed $feed_id ($purge_interval): deleted $rows articles");
215                 }
216         } // function purge_feed
217
218         function feed_purge_interval($link, $feed_id) {
219
220                 $result = db_query($link, "SELECT purge_interval, owner_uid FROM ttrss_feeds
221                         WHERE id = '$feed_id'");
222
223                 if (db_num_rows($result) == 1) {
224                         $purge_interval = db_fetch_result($result, 0, "purge_interval");
225                         $owner_uid = db_fetch_result($result, 0, "owner_uid");
226
227                         if ($purge_interval == 0) $purge_interval = get_pref($link,
228                                 'PURGE_OLD_DAYS', $owner_uid);
229
230                         return $purge_interval;
231
232                 } else {
233                         return -1;
234                 }
235         }
236
237         function purge_orphans($link, $do_output = false) {
238
239                 // purge orphaned posts in main content table
240                 $result = db_query($link, "DELETE FROM ttrss_entries WHERE
241                         (SELECT COUNT(int_id) FROM ttrss_user_entries WHERE ref_id = id) = 0");
242
243                 if ($do_output) {
244                         $rows = db_affected_rows($link, $result);
245                         _debug("Purged $rows orphaned posts.");
246                 }
247         }
248
249         function get_feed_update_interval($link, $feed_id) {
250                 $result = db_query($link, "SELECT owner_uid, update_interval FROM
251                         ttrss_feeds WHERE id = '$feed_id'");
252
253                 if (db_num_rows($result) == 1) {
254                         $update_interval = db_fetch_result($result, 0, "update_interval");
255                         $owner_uid = db_fetch_result($result, 0, "owner_uid");
256
257                         if ($update_interval != 0) {
258                                 return $update_interval;
259                         } else {
260                                 return get_pref($link, 'DEFAULT_UPDATE_INTERVAL', $owner_uid, false);
261                         }
262
263                 } else {
264                         return -1;
265                 }
266         }
267
268         function fetch_file_contents($url, $type = false, $login = false, $pass = false, $post_query = false) {
269                 $login = urlencode($login);
270                 $pass = urlencode($pass);
271
272                 if (function_exists('curl_init') && !ini_get("open_basedir")) {
273                         $ch = curl_init($url);
274
275                         curl_setopt($ch, CURLOPT_CONNECTTIMEOUT, 15);
276                         curl_setopt($ch, CURLOPT_TIMEOUT, 45);
277                         curl_setopt($ch, CURLOPT_FOLLOWLOCATION, true);
278                         curl_setopt($ch, CURLOPT_MAXREDIRS, 20);
279                         curl_setopt($ch, CURLOPT_BINARYTRANSFER, true);
280                         curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
281                         curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false);
282                         curl_setopt($ch, CURLOPT_HTTPAUTH, CURLAUTH_ANY);
283                         curl_setopt($ch, CURLOPT_USERAGENT, SELF_USER_AGENT);
284                         curl_setopt($ch, CURLOPT_ENCODING , "gzip");
285
286                         if ($post_query) {
287                                 curl_setopt($ch, CURLOPT_POST, true);
288                                 curl_setopt($ch, CURLOPT_POSTFIELDS, $post_query);
289                         }
290
291                         if ($login && $pass)
292                                 curl_setopt($ch, CURLOPT_USERPWD, "$login:$pass");
293
294                         $contents = @curl_exec($ch);
295
296                         if ($contents === false) {
297                                 curl_close($ch);
298                                 return false;
299                         }
300
301                         $http_code = curl_getinfo($ch, CURLINFO_HTTP_CODE);
302                         $content_type = curl_getinfo($ch, CURLINFO_CONTENT_TYPE);
303                         curl_close($ch);
304
305                         if ($http_code != 200 || $type && strpos($content_type, "$type") === false) {
306                                 return false;
307                         }
308
309                         return $contents;
310                 } else {
311                         if ($login && $pass ){
312                                 $url_parts = array();
313
314                                 preg_match("/(^[^:]*):\/\/(.*)/", $url, $url_parts);
315
316                                 if ($url_parts[1] && $url_parts[2]) {
317                                         $url = $url_parts[1] . "://$login:$pass@" . $url_parts[2];
318                                 }
319                         }
320
321                         return @file_get_contents($url);
322                 }
323
324         }
325
326         /**
327          * Try to determine the favicon URL for a feed.
328          * adapted from wordpress favicon plugin by Jeff Minard (http://thecodepro.com/)
329          * http://dev.wp-plugins.org/file/favatars/trunk/favatars.php
330          *
331          * @param string $url A feed or page URL
332          * @access public
333          * @return mixed The favicon URL, or false if none was found.
334          */
335         function get_favicon_url($url) {
336
337                 $favicon_url = false;
338
339                 if ($html = @fetch_file_contents($url)) {
340
341                         libxml_use_internal_errors(true);
342
343                         $doc = new DOMDocument();
344                         $doc->loadHTML($html);
345                         $xpath = new DOMXPath($doc);
346
347                         $base = $xpath->query('/html/head/base');
348                         foreach ($base as $b) {
349                                 $url = $b->getAttribute("href");
350                                 break;
351                         }
352
353                         $entries = $xpath->query('/html/head/link[@rel="shortcut icon" or @rel="icon"]');
354                         if (count($entries) > 0) {
355                                 foreach ($entries as $entry) {
356                                         $favicon_url = rewrite_relative_url($url, $entry->getAttribute("href"));
357                                         break;
358                                 }
359                         }
360                 }
361
362                 if (!$favicon_url)
363                         $favicon_url = rewrite_relative_url($url, "/favicon.ico");
364
365                 return $favicon_url;
366         } // function get_favicon_url
367
368         function check_feed_favicon($site_url, $feed, $link) {
369 #               print "FAVICON [$site_url]: $favicon_url\n";
370
371                 $icon_file = ICONS_DIR . "/$feed.ico";
372
373                 if (!file_exists($icon_file)) {
374                         $favicon_url = get_favicon_url($site_url);
375
376                         if ($favicon_url) {
377                                 $contents = fetch_file_contents($favicon_url, "image");
378
379                                 if ($contents) {
380                                         $fp = @fopen($icon_file, "w");
381
382                                         if ($fp) {
383                                                 fwrite($fp, $contents);
384                                                 fclose($fp);
385                                                 chmod($icon_file, 0644);
386                                         }
387                                 }
388                         }
389                 }
390         }
391
392         function print_select($id, $default, $values, $attributes = "") {
393                 print "<select name=\"$id\" id=\"$id\" $attributes>";
394                 foreach ($values as $v) {
395                         if ($v == $default)
396                                 $sel = "selected=\"1\"";
397                          else
398                                 $sel = "";
399
400                         print "<option value=\"$v\" $sel>$v</option>";
401                 }
402                 print "</select>";
403         }
404
405         function print_select_hash($id, $default, $values, $attributes = "") {
406                 print "<select name=\"$id\" id='$id' $attributes>";
407                 foreach (array_keys($values) as $v) {
408                         if ($v == $default)
409                                 $sel = 'selected="selected"';
410                          else
411                                 $sel = "";
412
413                         print "<option $sel value=\"$v\">".$values[$v]."</option>";
414                 }
415
416                 print "</select>";
417         }
418
419         function get_article_filters($filters, $title, $content, $link, $timestamp, $author, $tags) {
420                 $matches = array();
421
422                 if ($filters["title"]) {
423                         foreach ($filters["title"] as $filter) {
424                                 $reg_exp = $filter["reg_exp"];
425                                 $inverse = $filter["inverse"];
426                                 if ((!$inverse && @preg_match("/$reg_exp/i", $title)) ||
427                                                 ($inverse && !@preg_match("/$reg_exp/i", $title))) {
428
429                                         array_push($matches, array($filter["action"], $filter["action_param"]));
430                                 }
431                         }
432                 }
433
434                 if ($filters["content"]) {
435                         foreach ($filters["content"] as $filter) {
436                                 $reg_exp = $filter["reg_exp"];
437                                 $inverse = $filter["inverse"];
438
439                                 if ((!$inverse && @preg_match("/$reg_exp/i", $content)) ||
440                                                 ($inverse && !@preg_match("/$reg_exp/i", $content))) {
441
442                                         array_push($matches, array($filter["action"], $filter["action_param"]));
443                                 }
444                         }
445                 }
446
447                 if ($filters["both"]) {
448                         foreach ($filters["both"] as $filter) {
449                                 $reg_exp = $filter["reg_exp"];
450                                 $inverse = $filter["inverse"];
451
452                                 if ($inverse) {
453                                         if (!@preg_match("/$reg_exp/i", $title) && !preg_match("/$reg_exp/i", $content)) {
454                                                 array_push($matches, array($filter["action"], $filter["action_param"]));
455                                         }
456                                 } else {
457                                         if (@preg_match("/$reg_exp/i", $title) || preg_match("/$reg_exp/i", $content)) {
458                                                 array_push($matches, array($filter["action"], $filter["action_param"]));
459                                         }
460                                 }
461                         }
462                 }
463
464                 if ($filters["link"]) {
465                         $reg_exp = $filter["reg_exp"];
466                         foreach ($filters["link"] as $filter) {
467                                 $reg_exp = $filter["reg_exp"];
468                                 $inverse = $filter["inverse"];
469
470                                 if ((!$inverse && @preg_match("/$reg_exp/i", $link)) ||
471                                                 ($inverse && !@preg_match("/$reg_exp/i", $link))) {
472
473                                         array_push($matches, array($filter["action"], $filter["action_param"]));
474                                 }
475                         }
476                 }
477
478                 if ($filters["date"]) {
479                         $reg_exp = $filter["reg_exp"];
480                         foreach ($filters["date"] as $filter) {
481                                 $date_modifier = $filter["filter_param"];
482                                 $inverse = $filter["inverse"];
483                                 $check_timestamp = strtotime($filter["reg_exp"]);
484
485                                 # no-op when timestamp doesn't parse to prevent misfires
486
487                                 if ($check_timestamp) {
488                                         $match_ok = false;
489
490                                         if ($date_modifier == "before" && $timestamp < $check_timestamp ||
491                                                 $date_modifier == "after" && $timestamp > $check_timestamp) {
492                                                         $match_ok = true;
493                                         }
494
495                                         if ($inverse) $match_ok = !$match_ok;
496
497                                         if ($match_ok) {
498                                                 array_push($matches, array($filter["action"], $filter["action_param"]));
499                                         }
500                                 }
501                         }
502                 }
503
504                 if ($filters["author"]) {
505                         foreach ($filters["author"] as $filter) {
506                                 $reg_exp = $filter["reg_exp"];
507                                 $inverse = $filter["inverse"];
508                                 if ((!$inverse && @preg_match("/$reg_exp/i", $author)) ||
509                                                 ($inverse && !@preg_match("/$reg_exp/i", $author))) {
510
511                                         array_push($matches, array($filter["action"], $filter["action_param"]));
512                                 }
513                         }
514                 }
515
516                 if ($filters["tag"]) {
517
518                         $tag_string = join(",", $tags);
519
520                         foreach ($filters["tag"] as $filter) {
521                                 $reg_exp = $filter["reg_exp"];
522                                 $inverse = $filter["inverse"];
523
524                                 if ((!$inverse && @preg_match("/$reg_exp/i", $tag_string)) ||
525                                                 ($inverse && !@preg_match("/$reg_exp/i", $tag_string))) {
526
527                                         array_push($matches, array($filter["action"], $filter["action_param"]));
528                                 }
529                         }
530                 }
531
532
533                 return $matches;
534         }
535
536         function find_article_filter($filters, $filter_name) {
537                 foreach ($filters as $f) {
538                         if ($f[0] == $filter_name) {
539                                 return $f;
540                         };
541                 }
542                 return false;
543         }
544
545         function calculate_article_score($filters) {
546                 $score = 0;
547
548                 foreach ($filters as $f) {
549                         if ($f[0] == "score") {
550                                 $score += $f[1];
551                         };
552                 }
553                 return $score;
554         }
555
556         function assign_article_to_labels($link, $id, $filters, $owner_uid) {
557                 foreach ($filters as $f) {
558                         if ($f[0] == "label") {
559                                 label_add_article($link, $id, $f[1], $owner_uid);
560                         };
561                 }
562         }
563
564         function getmicrotime() {
565                 list($usec, $sec) = explode(" ",microtime());
566                 return ((float)$usec + (float)$sec);
567         }
568
569         function print_radio($id, $default, $true_is, $values, $attributes = "") {
570                 foreach ($values as $v) {
571
572                         if ($v == $default)
573                                 $sel = "checked";
574                          else
575                                 $sel = "";
576
577                         if ($v == $true_is) {
578                                 $sel .= " value=\"1\"";
579                         } else {
580                                 $sel .= " value=\"0\"";
581                         }
582
583                         print "<input class=\"noborder\" dojoType=\"dijit.form.RadioButton\"
584                                 type=\"radio\" $sel $attributes name=\"$id\">&nbsp;$v&nbsp;";
585
586                 }
587         }
588
589         function initialize_user_prefs($link, $uid, $profile = false) {
590
591                 $uid = db_escape_string($uid);
592
593                 if (!$profile) {
594                         $profile = "NULL";
595                         $profile_qpart = "AND profile IS NULL";
596                 } else {
597                         $profile_qpart = "AND profile = '$profile'";
598                 }
599
600                 if (get_schema_version($link) < 63) $profile_qpart = "";
601
602                 db_query($link, "BEGIN");
603
604                 $result = db_query($link, "SELECT pref_name,def_value FROM ttrss_prefs");
605
606                 $u_result = db_query($link, "SELECT pref_name
607                         FROM ttrss_user_prefs WHERE owner_uid = '$uid' $profile_qpart");
608
609                 $active_prefs = array();
610
611                 while ($line = db_fetch_assoc($u_result)) {
612                         array_push($active_prefs, $line["pref_name"]);
613                 }
614
615                 while ($line = db_fetch_assoc($result)) {
616                         if (array_search($line["pref_name"], $active_prefs) === FALSE) {
617 //                              print "adding " . $line["pref_name"] . "<br>";
618
619                                 if (get_schema_version($link) < 63) {
620                                         db_query($link, "INSERT INTO ttrss_user_prefs
621                                                 (owner_uid,pref_name,value) VALUES
622                                                 ('$uid', '".$line["pref_name"]."','".$line["def_value"]."')");
623
624                                 } else {
625                                         db_query($link, "INSERT INTO ttrss_user_prefs
626                                                 (owner_uid,pref_name,value, profile) VALUES
627                                                 ('$uid', '".$line["pref_name"]."','".$line["def_value"]."', $profile)");
628                                 }
629
630                         }
631                 }
632
633                 db_query($link, "COMMIT");
634
635         }
636
637         function get_ssl_certificate_id() {
638                 if ($_SERVER["REDIRECT_SSL_CLIENT_M_SERIAL"]) {
639                         return sha1($_SERVER["REDIRECT_SSL_CLIENT_M_SERIAL"] .
640                                 $_SERVER["REDIRECT_SSL_CLIENT_V_START"] .
641                                 $_SERVER["REDIRECT_SSL_CLIENT_V_END"] .
642                                 $_SERVER["REDIRECT_SSL_CLIENT_S_DN"]);
643                 }
644                 return "";
645         }
646
647         function get_login_by_ssl_certificate($link) {
648
649                 $cert_serial = db_escape_string(get_ssl_certificate_id());
650
651                 if ($cert_serial) {
652                         $result = db_query($link, "SELECT login FROM ttrss_user_prefs, ttrss_users
653                                 WHERE pref_name = 'SSL_CERT_SERIAL' AND value = '$cert_serial' AND
654                                 owner_uid = ttrss_users.id");
655
656                         if (db_num_rows($result) != 0) {
657                                 return db_escape_string(db_fetch_result($result, 0, "login"));
658                         }
659                 }
660
661                 return "";
662         }
663
664         function get_remote_user($link) {
665
666                 if (defined('ALLOW_REMOTE_USER_AUTH') && ALLOW_REMOTE_USER_AUTH) {
667                         return db_escape_string($_SERVER["REMOTE_USER"]);
668                 }
669
670                 return db_escape_string(get_login_by_ssl_certificate($link));
671         }
672
673         function get_remote_fakepass($link) {
674                 if (get_remote_user($link))
675                         return "******";
676                 else
677                         return "";
678         }
679
680         function authenticate_user($link, $login, $password, $force_auth = false) {
681
682                 if (!SINGLE_USER_MODE) {
683
684                         $pwd_hash1 = encrypt_password($password);
685                         $pwd_hash2 = encrypt_password($password, $login);
686                         $login = db_escape_string($login);
687
688                         $remote_user = get_remote_user($link);
689
690                         if ($remote_user && $remote_user == $login && $login != "admin") {
691
692                                 $login = $remote_user;
693
694                                 $query = "SELECT id,login,access_level,pwd_hash
695                     FROM ttrss_users WHERE
696                                         login = '$login'";
697
698                                 if (defined('AUTO_CREATE_USER') && AUTO_CREATE_USER
699                                                 && $_SERVER["REMOTE_USER"]) {
700                                         $result = db_query($link, $query);
701
702                                         // First login ?
703                                         if (db_num_rows($result) == 0) {
704                                                 $salt = substr(bin2hex(get_random_bytes(125)), 0, 250);
705                                                 $pwd_hash = encrypt_password($password, $salt, true);
706
707                                                 $query2 = "INSERT INTO ttrss_users
708                                                                 (login,access_level,last_login,created,pwd_hash,salt)
709                                                                 VALUES ('$login', 0, null, NOW(), '$pwd_hash','$salt')";
710                                                 db_query($link, $query2);
711                                         }
712                                 }
713
714                         } else if (get_schema_version($link) > 87) {
715                                 $result = db_query($link, "SELECT salt FROM ttrss_users WHERE
716                                         login = '$login'");
717
718                                 if (db_num_rows($result) != 1) {
719                                         return false;
720                                 }
721
722                                 $salt = db_fetch_result($result, 0, "salt");
723
724                                 if ($salt == "") {
725
726                                         $query = "SELECT id,login,access_level,pwd_hash
727                             FROM ttrss_users WHERE
728                                                 login = '$login' AND (pwd_hash = '$pwd_hash1' OR
729                                                 pwd_hash = '$pwd_hash2')";
730
731                                         // verify and upgrade password to new salt base
732
733                                         $result = db_query($link, $query);
734
735                                         if (db_num_rows($result) == 1) {
736                                                 // upgrade password to MODE2
737
738                                                 $salt = substr(bin2hex(get_random_bytes(125)), 0, 250);
739                                                 $pwd_hash = encrypt_password($password, $salt, true);
740
741                                                 db_query($link, "UPDATE ttrss_users SET
742                                                         pwd_hash = '$pwd_hash', salt = '$salt' WHERE login = '$login'");
743
744                                                 $query = "SELECT id,login,access_level,pwd_hash
745                                     FROM ttrss_users WHERE
746                                                         login = '$login' AND pwd_hash = '$pwd_hash'";
747
748                                         } else {
749                                                 return false;
750                                         }
751
752                                 } else {
753
754                                         $pwd_hash = encrypt_password($password, $salt, true);
755
756                                         $query = "SELECT id,login,access_level,pwd_hash
757                                  FROM ttrss_users WHERE
758                                                 login = '$login' AND pwd_hash = '$pwd_hash'";
759
760                                 }
761                         } else {
762                                 $query = "SELECT id,login,access_level,pwd_hash
763                          FROM ttrss_users WHERE
764                                         login = '$login' AND (pwd_hash = '$pwd_hash1' OR
765                                                 pwd_hash = '$pwd_hash2')";
766                         }
767
768                         $result = db_query($link, $query);
769
770                         if (db_num_rows($result) == 1) {
771                                 $_SESSION["uid"] = db_fetch_result($result, 0, "id");
772                                 $_SESSION["name"] = db_fetch_result($result, 0, "login");
773                                 $_SESSION["access_level"] = db_fetch_result($result, 0, "access_level");
774                                 $_SESSION["csrf_token"] = sha1(uniqid(rand(), true));
775
776                                 db_query($link, "UPDATE ttrss_users SET last_login = NOW() WHERE id = " .
777                                         $_SESSION["uid"]);
778
779
780                                 // LemonLDAP can send user informations via HTTP HEADER
781                                 if (defined('AUTO_CREATE_USER') && AUTO_CREATE_USER){
782                                         // update user name
783                                         $fullname = $_SERVER['HTTP_USER_NAME'] ? $_SERVER['HTTP_USER_NAME'] : $_SERVER['AUTHENTICATE_CN'];
784                                         if ($fullname){
785                                                 $fullname = db_escape_string($fullname);
786                                                 db_query($link, "UPDATE ttrss_users SET full_name = '$fullname' WHERE id = " .
787                                                         $_SESSION["uid"]);
788                                         }
789                                         // update user mail
790                                         $email = $_SERVER['HTTP_USER_MAIL'] ? $_SERVER['HTTP_USER_MAIL'] : $_SERVER['AUTHENTICATE_MAIL'];
791                                         if ($email){
792                                                 $email = db_escape_string($email);
793                                                 db_query($link, "UPDATE ttrss_users SET email = '$email' WHERE id = " .
794                                                         $_SESSION["uid"]);
795                                         }
796                                 }
797
798                                 $_SESSION["ip_address"] = $_SERVER["REMOTE_ADDR"];
799                                 $_SESSION["pwd_hash"] = db_fetch_result($result, 0, "pwd_hash");
800
801                                 $_SESSION["last_version_check"] = time();
802
803                                 initialize_user_prefs($link, $_SESSION["uid"]);
804
805                                 return true;
806                         }
807
808                         return false;
809
810                 } else {
811
812                         $_SESSION["uid"] = 1;
813                         $_SESSION["name"] = "admin";
814
815                         $_SESSION["ip_address"] = $_SERVER["REMOTE_ADDR"];
816
817                         initialize_user_prefs($link, $_SESSION["uid"]);
818
819                         return true;
820                 }
821         }
822
823         function make_password($length = 8) {
824
825                 $password = "";
826                 $possible = "0123456789abcdfghjkmnpqrstvwxyzABCDFGHJKMNPQRSTVWXYZ";
827
828         $i = 0;
829
830                 while ($i < $length) {
831                         $char = substr($possible, mt_rand(0, strlen($possible)-1), 1);
832
833                         if (!strstr($password, $char)) {
834                                 $password .= $char;
835                                 $i++;
836                         }
837                 }
838                 return $password;
839         }
840
841         // this is called after user is created to initialize default feeds, labels
842         // or whatever else
843
844         // user preferences are checked on every login, not here
845
846         function initialize_user($link, $uid) {
847
848                 db_query($link, "insert into ttrss_feeds (owner_uid,title,feed_url)
849                         values ('$uid', 'Tiny Tiny RSS: New Releases',
850                         'http://tt-rss.org/releases.rss')");
851
852                 db_query($link, "insert into ttrss_feeds (owner_uid,title,feed_url)
853                         values ('$uid', 'Tiny Tiny RSS: Forum',
854                                 'http://tt-rss.org/forum/rss.php')");
855         }
856
857         function logout_user() {
858                 session_destroy();
859                 if (isset($_COOKIE[session_name()])) {
860                    setcookie(session_name(), '', time()-42000, '/');
861                 }
862         }
863
864         function validate_csrf($csrf_token) {
865                 return $csrf_token == $_SESSION['csrf_token'];
866         }
867
868         function validate_session($link) {
869                 if (SINGLE_USER_MODE) return true;
870
871                 $check_ip = $_SESSION['ip_address'];
872
873                 switch (SESSION_CHECK_ADDRESS) {
874                 case 0:
875                         $check_ip = '';
876                         break;
877                 case 1:
878                         $check_ip = substr($check_ip, 0, strrpos($check_ip, '.')+1);
879                         break;
880                 case 2:
881                         $check_ip = substr($check_ip, 0, strrpos($check_ip, '.'));
882                         $check_ip = substr($check_ip, 0, strrpos($check_ip, '.')+1);
883                         break;
884                 };
885
886                 if ($check_ip && strpos($_SERVER['REMOTE_ADDR'], $check_ip) !== 0) {
887                         $_SESSION["login_error_msg"] =
888                                 __("Session failed to validate (incorrect IP)");
889                         return false;
890                 }
891
892                 if ($_SESSION["ref_schema_version"] != get_schema_version($link, true))
893                         return false;
894
895                 if ($_SESSION["uid"]) {
896
897                         $result = db_query($link,
898                                 "SELECT pwd_hash FROM ttrss_users WHERE id = '".$_SESSION["uid"]."'");
899
900                         $pwd_hash = db_fetch_result($result, 0, "pwd_hash");
901
902                         if ($pwd_hash != $_SESSION["pwd_hash"]) {
903                                 return false;
904                         }
905                 }
906
907 /*              if ($_SESSION["cookie_lifetime"] && $_SESSION["uid"]) {
908
909                         //print_r($_SESSION);
910
911                         if (time() > $_SESSION["cookie_lifetime"]) {
912                                 return false;
913                         }
914                 } */
915
916                 return true;
917         }
918
919         function login_sequence($link, $mobile = false) {
920                 $_SESSION["prefs_cache"] = array();
921
922                 if (!SINGLE_USER_MODE) {
923
924                         $login_action = $_POST["login_action"];
925
926                         # try to authenticate user if called from login form
927                         if ($login_action == "do_login") {
928                                 $login = db_escape_string($_POST["login"]);
929                                 $password = $_POST["password"];
930                                 $remember_me = $_POST["remember_me"];
931
932                                 if (authenticate_user($link, $login, $password)) {
933                                         $_POST["password"] = "";
934
935                                         $_SESSION["language"] = $_POST["language"];
936                                         $_SESSION["ref_schema_version"] = get_schema_version($link, true);
937                                         $_SESSION["bw_limit"] = !!$_POST["bw_limit"];
938
939                                         if ($_POST["profile"]) {
940
941                                                 $profile = db_escape_string($_POST["profile"]);
942
943                                                 $result = db_query($link, "SELECT id FROM ttrss_settings_profiles
944                                                         WHERE id = '$profile' AND owner_uid = " . $_SESSION["uid"]);
945
946                                                 if (db_num_rows($result) != 0) {
947                                                         $_SESSION["profile"] = $profile;
948                                                         $_SESSION["prefs_cache"] = array();
949                                                 }
950                                         }
951
952                                         if ($_REQUEST['return']) {
953                                                 header("Location: " . $_REQUEST['return']);
954                                         } else {
955                                                 header("Location: " . $_SERVER["REQUEST_URI"]);
956                                         }
957
958                                         exit;
959
960                                         return;
961                                 } else {
962                                         $_SESSION["login_error_msg"] = __("Incorrect username or password");
963                                 }
964                         }
965
966                         if (!$_SESSION["uid"] || !validate_session($link)) {
967
968                                 if (get_remote_user($link) && AUTO_LOGIN) {
969                                     authenticate_user($link, get_remote_user($link), null);
970                                     $_SESSION["ref_schema_version"] = get_schema_version($link, true);
971                                 } else {
972                                     render_login_form($link, $mobile);
973                                     //header("Location: login.php");
974                                     exit;
975                                 }
976                         } else {
977                                 /* bump login timestamp */
978                                 db_query($link, "UPDATE ttrss_users SET last_login = NOW() WHERE id = " .
979                                         $_SESSION["uid"]);
980
981                                 if ($_SESSION["language"] && SESSION_COOKIE_LIFETIME > 0) {
982                                         setcookie("ttrss_lang", $_SESSION["language"],
983                                                 time() + SESSION_COOKIE_LIFETIME);
984                                 }
985
986                                 // try to remove possible duplicates from feed counter cache
987 //                              ccache_cleanup($link, $_SESSION["uid"]);
988                         }
989
990                 } else {
991                         return authenticate_user($link, "admin", null);
992                 }
993         }
994
995         function truncate_string($str, $max_len, $suffix = '&hellip;') {
996                 if (mb_strlen($str, "utf-8") > $max_len - 3) {
997                         return mb_substr($str, 0, $max_len, "utf-8") . $suffix;
998                 } else {
999                         return $str;
1000                 }
1001         }
1002
1003         function theme_image($link, $filename) {
1004                 if ($link) {
1005                         $theme_path = get_user_theme_path($link);
1006
1007                         if ($theme_path && is_file($theme_path.$filename)) {
1008                                 return $theme_path.$filename;
1009                         } else {
1010                                 return $filename;
1011                         }
1012                 } else {
1013                         return $filename;
1014                 }
1015         }
1016
1017         function get_user_theme($link) {
1018
1019                 if (get_schema_version($link) >= 63 && $_SESSION["uid"]) {
1020                         $theme_name = get_pref($link, "_THEME_ID");
1021                         if (is_dir("themes/$theme_name")) {
1022                                 return $theme_name;
1023                         } else {
1024                                 return '';
1025                         }
1026                 } else {
1027                         return '';
1028                 }
1029
1030         }
1031
1032         function get_user_theme_path($link) {
1033                 $theme_path = '';
1034
1035                 if (get_schema_version($link) >= 63 && $_SESSION["uid"]) {
1036                         $theme_name = get_pref($link, "_THEME_ID");
1037
1038                         if ($theme_name && is_dir("themes/$theme_name")) {
1039                                 $theme_path = "themes/$theme_name/";
1040                         } else {
1041                                 $theme_name = '';
1042                         }
1043                 } else {
1044                         $theme_path = '';
1045                 }
1046
1047                 if ($theme_path) {
1048                         if (is_file("$theme_path/theme.ini")) {
1049                                 $ini = parse_ini_file("$theme_path/theme.ini", true);
1050                                 if ($ini['theme']['version'] >= THEME_VERSION_REQUIRED) {
1051                                         return $theme_path;
1052                                 }
1053                         }
1054                 }
1055                 return '';
1056         }
1057
1058         function get_user_theme_options($link) {
1059                 $t = get_user_theme_path($link);
1060
1061                 if ($t) {
1062                         if (is_file("$t/theme.ini")) {
1063                                 $ini = parse_ini_file("$t/theme.ini", true);
1064                                 if ($ini['theme']['version']) {
1065                                         return $ini['theme']['options'];
1066                                 }
1067                         }
1068                 }
1069                 return '';
1070         }
1071
1072         function print_theme_includes($link) {
1073
1074                 $t = get_user_theme_path($link);
1075                 $time = time();
1076
1077                 if ($t) {
1078                         print "<link rel=\"stylesheet\" type=\"text/css\"
1079                                 href=\"$t/theme.css?$time \">";
1080                         if (file_exists("$t/theme.js")) {
1081                                 print "<script type=\"text/javascript\" src=\"$t/theme.js?$time\">
1082                                         </script>";
1083                         }
1084                 }
1085         }
1086
1087         function get_all_themes() {
1088                 $themes = glob("themes/*");
1089
1090                 asort($themes);
1091
1092                 $rv = array();
1093
1094                 foreach ($themes as $t) {
1095                         if (is_file("$t/theme.ini")) {
1096                                 $ini = parse_ini_file("$t/theme.ini", true);
1097                                 if ($ini['theme']['version'] >= THEME_VERSION_REQUIRED &&
1098                                                         !$ini['theme']['disabled']) {
1099                                         $entry = array();
1100                                         $entry["path"] = $t;
1101                                         $entry["base"] = basename($t);
1102                                         $entry["name"] = $ini['theme']['name'];
1103                                         $entry["version"] = $ini['theme']['version'];
1104                                         $entry["author"] = $ini['theme']['author'];
1105                                         $entry["options"] = $ini['theme']['options'];
1106                                         array_push($rv, $entry);
1107                                 }
1108                         }
1109                 }
1110
1111                 return $rv;
1112         }
1113
1114         function convert_timestamp($timestamp, $source_tz, $dest_tz) {
1115
1116                 try {
1117                         $source_tz = new DateTimeZone($source_tz);
1118                 } catch (Exception $e) {
1119                         $source_tz = new DateTimeZone('UTC');
1120                 }
1121
1122                 try {
1123                         $dest_tz = new DateTimeZone($dest_tz);
1124                 } catch (Exception $e) {
1125                         $dest_tz = new DateTimeZone('UTC');
1126                 }
1127
1128                 $dt = new DateTime(date('Y-m-d H:i:s', $timestamp), $source_tz);
1129                 return $dt->format('U') + $dest_tz->getOffset($dt);
1130         }
1131
1132         function make_local_datetime($link, $timestamp, $long, $owner_uid = false,
1133                                         $no_smart_dt = false) {
1134
1135                 if (!$owner_uid) $owner_uid = $_SESSION['uid'];
1136                 if (!$timestamp) $timestamp = '1970-01-01 0:00';
1137
1138                 global $utc_tz;
1139                 global $tz_offset;
1140
1141                 # We store date in UTC internally
1142                 $dt = new DateTime($timestamp, $utc_tz);
1143
1144                 if ($tz_offset == -1) {
1145
1146                         $user_tz_string = get_pref($link, 'USER_TIMEZONE', $owner_uid);
1147
1148                         try {
1149                                 $user_tz = new DateTimeZone($user_tz_string);
1150                         } catch (Exception $e) {
1151                                 $user_tz = $utc_tz;
1152                         }
1153
1154                         $tz_offset = $user_tz->getOffset($dt);
1155                 }
1156
1157                 $user_timestamp = $dt->format('U') + $tz_offset;
1158
1159                 if (!$no_smart_dt) {
1160                         return smart_date_time($link, $user_timestamp,
1161                                 $tz_offset, $owner_uid);
1162                 } else {
1163                         if ($long)
1164                                 $format = get_pref($link, 'LONG_DATE_FORMAT', $owner_uid);
1165                         else
1166                                 $format = get_pref($link, 'SHORT_DATE_FORMAT', $owner_uid);
1167
1168                         return date($format, $user_timestamp);
1169                 }
1170         }
1171
1172         function smart_date_time($link, $timestamp, $tz_offset = 0, $owner_uid = false) {
1173                 if (!$owner_uid) $owner_uid = $_SESSION['uid'];
1174
1175                 if (date("Y.m.d", $timestamp) == date("Y.m.d", time() + $tz_offset)) {
1176                         return date("G:i", $timestamp);
1177                 } else if (date("Y", $timestamp) == date("Y", time() + $tz_offset)) {
1178                         $format = get_pref($link, 'SHORT_DATE_FORMAT', $owner_uid);
1179                         return date($format, $timestamp);
1180                 } else {
1181                         $format = get_pref($link, 'LONG_DATE_FORMAT', $owner_uid);
1182                         return date($format, $timestamp);
1183                 }
1184         }
1185
1186         function sql_bool_to_bool($s) {
1187                 if ($s == "t" || $s == "1" || $s == "true") {
1188                         return true;
1189                 } else {
1190                         return false;
1191                 }
1192         }
1193
1194         function bool_to_sql_bool($s) {
1195                 if ($s) {
1196                         return "true";
1197                 } else {
1198                         return "false";
1199                 }
1200         }
1201
1202         // Session caching removed due to causing wrong redirects to upgrade
1203         // script when get_schema_version() is called on an obsolete session
1204         // created on a previous schema version.
1205         function get_schema_version($link, $nocache = false) {
1206                 global $schema_version;
1207
1208                 if (!$schema_version) {
1209                         $result = db_query($link, "SELECT schema_version FROM ttrss_version");
1210                         $version = db_fetch_result($result, 0, "schema_version");
1211                         $schema_version = $version;
1212                         return $version;
1213                 } else {
1214                         return $schema_version;
1215                 }
1216         }
1217
1218         function sanity_check($link) {
1219                 require_once 'errors.php';
1220
1221                 $error_code = 0;
1222                 $schema_version = get_schema_version($link, true);
1223
1224                 if ($schema_version != SCHEMA_VERSION) {
1225                         $error_code = 5;
1226                 }
1227
1228                 if (DB_TYPE == "mysql") {
1229                         $result = db_query($link, "SELECT true", false);
1230                         if (db_num_rows($result) != 1) {
1231                                 $error_code = 10;
1232                         }
1233                 }
1234
1235                 if (db_escape_string("testTEST") != "testTEST") {
1236                         $error_code = 12;
1237                 }
1238
1239                 return array("code" => $error_code, "message" => $ERRORS[$error_code]);
1240         }
1241
1242         function file_is_locked($filename) {
1243                 if (function_exists('flock')) {
1244                         $fp = @fopen(LOCK_DIRECTORY . "/$filename", "r");
1245                         if ($fp) {
1246                                 if (flock($fp, LOCK_EX | LOCK_NB)) {
1247                                         flock($fp, LOCK_UN);
1248                                         fclose($fp);
1249                                         return false;
1250                                 }
1251                                 fclose($fp);
1252                                 return true;
1253                         } else {
1254                                 return false;
1255                         }
1256                 }
1257                 return true; // consider the file always locked and skip the test
1258         }
1259
1260         function make_lockfile($filename) {
1261                 $fp = fopen(LOCK_DIRECTORY . "/$filename", "w");
1262
1263                 if (flock($fp, LOCK_EX | LOCK_NB)) {
1264                         if (function_exists('posix_getpid')) {
1265                                 fwrite($fp, posix_getpid() . "\n");
1266                         }
1267                         return $fp;
1268                 } else {
1269                         return false;
1270                 }
1271         }
1272
1273         function make_stampfile($filename) {
1274                 $fp = fopen(LOCK_DIRECTORY . "/$filename", "w");
1275
1276                 if (flock($fp, LOCK_EX | LOCK_NB)) {
1277                         fwrite($fp, time() . "\n");
1278                         flock($fp, LOCK_UN);
1279                         fclose($fp);
1280                         return true;
1281                 } else {
1282                         return false;
1283                 }
1284         }
1285
1286         function sql_random_function() {
1287                 if (DB_TYPE == "mysql") {
1288                         return "RAND()";
1289                 } else {
1290                         return "RANDOM()";
1291                 }
1292         }
1293
1294         function catchup_feed($link, $feed, $cat_view, $owner_uid = false) {
1295
1296                         if (!$owner_uid) $owner_uid = $_SESSION['uid'];
1297
1298                         //if (preg_match("/^-?[0-9][0-9]*$/", $feed) != false) {
1299
1300                         if (is_numeric($feed)) {
1301                                 if ($cat_view) {
1302
1303                                         if ($feed >= 0) {
1304
1305                                                 if ($feed > 0) {
1306                                                         $cat_qpart = "cat_id = '$feed'";
1307                                                 } else {
1308                                                         $cat_qpart = "cat_id IS NULL";
1309                                                 }
1310
1311                                                 $tmp_result = db_query($link, "SELECT id
1312                                                         FROM ttrss_feeds WHERE $cat_qpart AND owner_uid = $owner_uid");
1313
1314                                                 while ($tmp_line = db_fetch_assoc($tmp_result)) {
1315
1316                                                         $tmp_feed = $tmp_line["id"];
1317
1318                                                         db_query($link, "UPDATE ttrss_user_entries
1319                                                                 SET unread = false,last_read = NOW()
1320                                                                 WHERE feed_id = '$tmp_feed' AND owner_uid = $owner_uid");
1321                                                 }
1322                                         } else if ($feed == -2) {
1323
1324                                                 db_query($link, "UPDATE ttrss_user_entries
1325                                                         SET unread = false,last_read = NOW() WHERE (SELECT COUNT(*)
1326                                                                 FROM ttrss_user_labels2 WHERE article_id = ref_id) > 0
1327                                                         AND unread = true AND owner_uid = $owner_uid");
1328                                         }
1329
1330                                 } else if ($feed > 0) {
1331
1332                                         db_query($link, "UPDATE ttrss_user_entries
1333                                                         SET unread = false,last_read = NOW()
1334                                                         WHERE feed_id = '$feed' AND owner_uid = $owner_uid");
1335
1336                                 } else if ($feed < 0 && $feed > -10) { // special, like starred
1337
1338                                         if ($feed == -1) {
1339                                                 db_query($link, "UPDATE ttrss_user_entries
1340                                                         SET unread = false,last_read = NOW()
1341                                                         WHERE marked = true AND owner_uid = $owner_uid");
1342                                         }
1343
1344                                         if ($feed == -2) {
1345                                                 db_query($link, "UPDATE ttrss_user_entries
1346                                                         SET unread = false,last_read = NOW()
1347                                                         WHERE published = true AND owner_uid = $owner_uid");
1348                                         }
1349
1350                                         if ($feed == -3) {
1351
1352                                                 $intl = get_pref($link, "FRESH_ARTICLE_MAX_AGE");
1353
1354                                                 if (DB_TYPE == "pgsql") {
1355                                                         $match_part = "updated > NOW() - INTERVAL '$intl hour' ";
1356                                                 } else {
1357                                                         $match_part = "updated > DATE_SUB(NOW(),
1358                                                                 INTERVAL $intl HOUR) ";
1359                                                 }
1360
1361                                                 $result = db_query($link, "SELECT id FROM ttrss_entries,
1362                                                         ttrss_user_entries WHERE $match_part AND
1363                                                         unread = true AND
1364                                                         ttrss_user_entries.ref_id = ttrss_entries.id AND
1365                                                         owner_uid = $owner_uid");
1366
1367                                                 $affected_ids = array();
1368
1369                                                 while ($line = db_fetch_assoc($result)) {
1370                                                         array_push($affected_ids, $line["id"]);
1371                                                 }
1372
1373                                                 catchupArticlesById($link, $affected_ids, 0);
1374                                         }
1375
1376                                         if ($feed == -4) {
1377                                                 db_query($link, "UPDATE ttrss_user_entries
1378                                                         SET unread = false,last_read = NOW()
1379                                                         WHERE owner_uid = $owner_uid");
1380                                         }
1381
1382                                 } else if ($feed < -10) { // label
1383
1384                                         $label_id = -$feed - 11;
1385
1386                                         db_query($link, "UPDATE ttrss_user_entries, ttrss_user_labels2
1387                                                 SET unread = false, last_read = NOW()
1388                                                         WHERE label_id = '$label_id' AND unread = true
1389                                                         AND owner_uid = '$owner_uid' AND ref_id = article_id");
1390
1391                                 }
1392
1393                                 ccache_update($link, $feed, $owner_uid, $cat_view);
1394
1395                         } else { // tag
1396                                 db_query($link, "BEGIN");
1397
1398                                 $tag_name = db_escape_string($feed);
1399
1400                                 $result = db_query($link, "SELECT post_int_id FROM ttrss_tags
1401                                         WHERE tag_name = '$tag_name' AND owner_uid = $owner_uid");
1402
1403                                 while ($line = db_fetch_assoc($result)) {
1404                                         db_query($link, "UPDATE ttrss_user_entries SET
1405                                                 unread = false, last_read = NOW()
1406                                                 WHERE int_id = " . $line["post_int_id"]);
1407                                 }
1408                                 db_query($link, "COMMIT");
1409                         }
1410         }
1411
1412         function getAllCounters($link, $omode = "flc", $active_feed = false) {
1413
1414                 if (!$omode) $omode = "flc";
1415
1416                 $data = getGlobalCounters($link);
1417
1418                 $data = array_merge($data, getVirtCounters($link));
1419
1420                 if (strchr($omode, "l")) $data = array_merge($data, getLabelCounters($link));
1421                 if (strchr($omode, "f")) $data = array_merge($data, getFeedCounters($link, $active_feed));
1422                 if (strchr($omode, "t")) $data = array_merge($data, getTagCounters($link));
1423                 if (strchr($omode, "c")) $data = array_merge($data, getCategoryCounters($link));
1424
1425                 return $data;
1426         }
1427
1428         function getCategoryTitle($link, $cat_id) {
1429
1430                 if ($cat_id == -1) {
1431                         return __("Special");
1432                 } else if ($cat_id == -2) {
1433                         return __("Labels");
1434                 } else {
1435
1436                         $result = db_query($link, "SELECT title FROM ttrss_feed_categories WHERE
1437                                 id = '$cat_id'");
1438
1439                         if (db_num_rows($result) == 1) {
1440                                 return db_fetch_result($result, 0, "title");
1441                         } else {
1442                                 return "Uncategorized";
1443                         }
1444                 }
1445         }
1446
1447
1448         function getCategoryCounters($link) {
1449                 $ret_arr = array();
1450
1451                 /* Labels category */
1452
1453                 $cv = array("id" => -2, "kind" => "cat",
1454                         "counter" => getCategoryUnread($link, -2));
1455
1456                 array_push($ret_arr, $cv);
1457
1458                 $age_qpart = getMaxAgeSubquery();
1459
1460                 $result = db_query($link, "SELECT id AS cat_id, value AS unread
1461                         FROM ttrss_feed_categories, ttrss_cat_counters_cache
1462                         WHERE ttrss_cat_counters_cache.feed_id = id AND
1463                         ttrss_feed_categories.owner_uid = " . $_SESSION["uid"]);
1464
1465                 while ($line = db_fetch_assoc($result)) {
1466                         $line["cat_id"] = (int) $line["cat_id"];
1467
1468                         $cv = array("id" => $line["cat_id"], "kind" => "cat",
1469                                 "counter" => $line["unread"]);
1470
1471                         array_push($ret_arr, $cv);
1472                 }
1473
1474                 /* Special case: NULL category doesn't actually exist in the DB */
1475
1476                 $cv = array("id" => 0, "kind" => "cat",
1477                         "counter" => ccache_find($link, 0, $_SESSION["uid"], true));
1478
1479                 array_push($ret_arr, $cv);
1480
1481                 return $ret_arr;
1482         }
1483
1484         function getCategoryUnread($link, $cat, $owner_uid = false) {
1485
1486                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1487
1488                 if ($cat >= 0) {
1489
1490                         if ($cat != 0) {
1491                                 $cat_query = "cat_id = '$cat'";
1492                         } else {
1493                                 $cat_query = "cat_id IS NULL";
1494                         }
1495
1496                         $age_qpart = getMaxAgeSubquery();
1497
1498                         $result = db_query($link, "SELECT id FROM ttrss_feeds WHERE $cat_query
1499                                         AND owner_uid = " . $owner_uid);
1500
1501                         $cat_feeds = array();
1502                         while ($line = db_fetch_assoc($result)) {
1503                                 array_push($cat_feeds, "feed_id = " . $line["id"]);
1504                         }
1505
1506                         if (count($cat_feeds) == 0) return 0;
1507
1508                         $match_part = implode(" OR ", $cat_feeds);
1509
1510                         $result = db_query($link, "SELECT COUNT(int_id) AS unread
1511                                 FROM ttrss_user_entries,ttrss_entries
1512                                 WHERE   unread = true AND ($match_part) AND id = ref_id
1513                                 AND $age_qpart AND owner_uid = " . $owner_uid);
1514
1515                         $unread = 0;
1516
1517                         # this needs to be rewritten
1518                         while ($line = db_fetch_assoc($result)) {
1519                                 $unread += $line["unread"];
1520                         }
1521
1522                         return $unread;
1523                 } else if ($cat == -1) {
1524                         return getFeedUnread($link, -1) + getFeedUnread($link, -2) + getFeedUnread($link, -3) + getFeedUnread($link, 0);
1525                 } else if ($cat == -2) {
1526
1527                         $result = db_query($link, "
1528                                 SELECT COUNT(unread) AS unread FROM
1529                                         ttrss_user_entries, ttrss_labels2, ttrss_user_labels2, ttrss_feeds
1530                                 WHERE label_id = ttrss_labels2.id AND article_id = ref_id AND
1531                                         ttrss_labels2.owner_uid = '$owner_uid'
1532                                         AND unread = true AND feed_id = ttrss_feeds.id
1533                                         AND ttrss_user_entries.owner_uid = '$owner_uid'");
1534
1535                         $unread = db_fetch_result($result, 0, "unread");
1536
1537                         return $unread;
1538
1539                 }
1540         }
1541
1542         function getMaxAgeSubquery($days = COUNTERS_MAX_AGE) {
1543                 if (DB_TYPE == "pgsql") {
1544                         return "ttrss_entries.date_updated >
1545                                 NOW() - INTERVAL '$days days'";
1546                 } else {
1547                         return "ttrss_entries.date_updated >
1548                                 DATE_SUB(NOW(), INTERVAL $days DAY)";
1549                 }
1550         }
1551
1552         function getFeedUnread($link, $feed, $is_cat = false) {
1553                 return getFeedArticles($link, $feed, $is_cat, true, $_SESSION["uid"]);
1554         }
1555
1556         function getLabelUnread($link, $label_id, $owner_uid = false) {
1557                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1558
1559                 $result = db_query($link, "
1560                         SELECT COUNT(unread) AS unread FROM
1561                                 ttrss_user_entries, ttrss_labels2, ttrss_user_labels2, ttrss_feeds
1562                         WHERE label_id = ttrss_labels2.id AND article_id = ref_id AND
1563                                 ttrss_labels2.owner_uid = '$owner_uid' AND ttrss_labels2.id = '$label_id'
1564                                 AND unread = true AND feed_id = ttrss_feeds.id
1565                                 AND ttrss_user_entries.owner_uid = '$owner_uid'");
1566
1567                 if (db_num_rows($result) != 0) {
1568                         return db_fetch_result($result, 0, "unread");
1569                 } else {
1570                         return 0;
1571                 }
1572         }
1573
1574         function getFeedArticles($link, $feed, $is_cat = false, $unread_only = false,
1575                 $owner_uid = false) {
1576
1577                 $n_feed = (int) $feed;
1578
1579                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1580
1581                 if ($unread_only) {
1582                         $unread_qpart = "unread = true";
1583                 } else {
1584                         $unread_qpart = "true";
1585                 }
1586
1587                 $age_qpart = getMaxAgeSubquery();
1588
1589                 if ($is_cat) {
1590                         return getCategoryUnread($link, $n_feed, $owner_uid);
1591                 } if ($feed != "0" && $n_feed == 0) {
1592
1593                         $feed = db_escape_string($feed);
1594
1595                         $result = db_query($link, "SELECT SUM((SELECT COUNT(int_id)
1596                                 FROM ttrss_user_entries,ttrss_entries WHERE int_id = post_int_id
1597                                         AND ref_id = id AND $age_qpart
1598                                         AND $unread_qpart)) AS count FROM ttrss_tags
1599                                 WHERE owner_uid = $owner_uid AND tag_name = '$feed'");
1600                         return db_fetch_result($result, 0, "count");
1601
1602                 } else if ($n_feed == -1) {
1603                         $match_part = "marked = true";
1604                 } else if ($n_feed == -2) {
1605                         $match_part = "published = true";
1606                 } else if ($n_feed == -3) {
1607                         $match_part = "unread = true AND score >= 0";
1608
1609                         $intl = get_pref($link, "FRESH_ARTICLE_MAX_AGE", $owner_uid);
1610
1611                         if (DB_TYPE == "pgsql") {
1612                                 $match_part .= " AND updated > NOW() - INTERVAL '$intl hour' ";
1613                         } else {
1614                                 $match_part .= " AND updated > DATE_SUB(NOW(), INTERVAL $intl HOUR) ";
1615                         }
1616                 } else if ($n_feed == -4) {
1617                         $match_part = "true";
1618                 } else if ($n_feed >= 0) {
1619
1620                         if ($n_feed != 0) {
1621                                 $match_part = "feed_id = '$n_feed'";
1622                         } else {
1623                                 $match_part = "feed_id IS NULL";
1624                         }
1625
1626                 } else if ($feed < -10) {
1627
1628                         $label_id = -$feed - 11;
1629
1630                         return getLabelUnread($link, $label_id, $owner_uid);
1631
1632                 }
1633
1634                 if ($match_part) {
1635
1636                         if ($n_feed != 0) {
1637                                 $from_qpart = "ttrss_user_entries,ttrss_feeds,ttrss_entries";
1638                                 $feeds_qpart = "ttrss_user_entries.feed_id = ttrss_feeds.id AND";
1639                         } else {
1640                                 $from_qpart = "ttrss_user_entries,ttrss_entries";
1641                                 $feeds_qpart = '';
1642                         }
1643
1644                         $query = "SELECT count(int_id) AS unread
1645                                 FROM $from_qpart WHERE
1646                                 ttrss_user_entries.ref_id = ttrss_entries.id AND
1647                                 $age_qpart AND
1648                                 $feeds_qpart
1649                                 $unread_qpart AND ($match_part) AND ttrss_user_entries.owner_uid = $owner_uid";
1650
1651                         $result = db_query($link, $query);
1652
1653                 } else {
1654
1655                         $result = db_query($link, "SELECT COUNT(post_int_id) AS unread
1656                                 FROM ttrss_tags,ttrss_user_entries,ttrss_entries
1657                                 WHERE tag_name = '$feed' AND post_int_id = int_id AND ref_id = ttrss_entries.id
1658                                 AND $unread_qpart AND $age_qpart AND
1659                                         ttrss_tags.owner_uid = " . $owner_uid);
1660                 }
1661
1662                 $unread = db_fetch_result($result, 0, "unread");
1663
1664                 return $unread;
1665         }
1666
1667         function getGlobalUnread($link, $user_id = false) {
1668
1669                 if (!$user_id) {
1670                         $user_id = $_SESSION["uid"];
1671                 }
1672
1673                 $result = db_query($link, "SELECT SUM(value) AS c_id FROM ttrss_counters_cache
1674                         WHERE owner_uid = '$user_id' AND feed_id > 0");
1675
1676                 $c_id = db_fetch_result($result, 0, "c_id");
1677
1678                 return $c_id;
1679         }
1680
1681         function getGlobalCounters($link, $global_unread = -1) {
1682                 $ret_arr = array();
1683
1684                 if ($global_unread == -1) {
1685                         $global_unread = getGlobalUnread($link);
1686                 }
1687
1688                 $cv = array("id" => "global-unread",
1689                         "counter" => $global_unread);
1690
1691                 array_push($ret_arr, $cv);
1692
1693                 $result = db_query($link, "SELECT COUNT(id) AS fn FROM
1694                         ttrss_feeds WHERE owner_uid = " . $_SESSION["uid"]);
1695
1696                 $subscribed_feeds = db_fetch_result($result, 0, "fn");
1697
1698                 $cv = array("id" => "subscribed-feeds",
1699                         "counter" => $subscribed_feeds);
1700
1701                 array_push($ret_arr, $cv);
1702
1703                 return $ret_arr;
1704         }
1705
1706         function getTagCounters($link) {
1707
1708                 $ret_arr = array();
1709
1710                 $age_qpart = getMaxAgeSubquery();
1711
1712                 $result = db_query($link, "SELECT tag_name,SUM((SELECT COUNT(int_id)
1713                         FROM ttrss_user_entries,ttrss_entries WHERE int_id = post_int_id
1714                                 AND ref_id = id AND $age_qpart
1715                                 AND unread = true)) AS count FROM ttrss_tags
1716                                 WHERE owner_uid = ".$_SESSION['uid']." GROUP BY tag_name
1717                                 ORDER BY count DESC LIMIT 55");
1718
1719                 $tags = array();
1720
1721                 while ($line = db_fetch_assoc($result)) {
1722                         $tags[$line["tag_name"]] += $line["count"];
1723                 }
1724
1725                 foreach (array_keys($tags) as $tag) {
1726                         $unread = $tags[$tag];
1727                         $tag = htmlspecialchars($tag);
1728
1729                         $cv = array("id" => $tag,
1730                                 "kind" => "tag",
1731                                 "counter" => $unread);
1732
1733                         array_push($ret_arr, $cv);
1734                 }
1735
1736                 return $ret_arr;
1737         }
1738
1739         function getVirtCounters($link) {
1740
1741                 $ret_arr = array();
1742
1743                 for ($i = 0; $i >= -4; $i--) {
1744
1745                         $count = getFeedUnread($link, $i);
1746
1747                         $cv = array("id" => $i,
1748                                 "counter" => $count);
1749
1750 //                      if (get_pref($link, 'EXTENDED_FEEDLIST'))
1751 //                              $cv["xmsg"] = getFeedArticles($link, $i)." ".__("total");
1752
1753                         array_push($ret_arr, $cv);
1754                 }
1755
1756                 return $ret_arr;
1757         }
1758
1759         function getLabelCounters($link, $descriptions = false) {
1760
1761                 $ret_arr = array();
1762
1763                 $age_qpart = getMaxAgeSubquery();
1764
1765                 $owner_uid = $_SESSION["uid"];
1766
1767                 $result = db_query($link, "SELECT id, caption FROM ttrss_labels2
1768                         WHERE owner_uid = '$owner_uid'");
1769
1770                 while ($line = db_fetch_assoc($result)) {
1771
1772                         $id = -$line["id"] - 11;
1773
1774                         $label_name = $line["caption"];
1775                         $count = getFeedUnread($link, $id);
1776
1777                         $cv = array("id" => $id,
1778                                 "counter" => $count);
1779
1780                         if ($descriptions)
1781                                 $cv["description"] = $label_name;
1782
1783 //                      if (get_pref($link, 'EXTENDED_FEEDLIST'))
1784 //                              $cv["xmsg"] = getFeedArticles($link, $id)." ".__("total");
1785
1786                         array_push($ret_arr, $cv);
1787                 }
1788
1789                 return $ret_arr;
1790         }
1791
1792         function getFeedCounters($link, $active_feed = false) {
1793
1794                 $ret_arr = array();
1795
1796                 $age_qpart = getMaxAgeSubquery();
1797
1798                 $query = "SELECT ttrss_feeds.id,
1799                                 ttrss_feeds.title,
1800                                 ".SUBSTRING_FOR_DATE."(ttrss_feeds.last_updated,1,19) AS last_updated,
1801                                 last_error, value AS count
1802                         FROM ttrss_feeds, ttrss_counters_cache
1803                         WHERE ttrss_feeds.owner_uid = ".$_SESSION["uid"]."
1804                                 AND ttrss_counters_cache.feed_id = id";
1805
1806                 $result = db_query($link, $query);
1807                 $fctrs_modified = false;
1808
1809                 while ($line = db_fetch_assoc($result)) {
1810
1811                         $id = $line["id"];
1812                         $count = $line["count"];
1813                         $last_error = htmlspecialchars($line["last_error"]);
1814
1815                         $last_updated = make_local_datetime($link, $line['last_updated'], false);
1816
1817                         $has_img = feed_has_icon($id);
1818
1819                         if (date('Y') - date('Y', strtotime($line['last_updated'])) > 2)
1820                                 $last_updated = '';
1821
1822                         $cv = array("id" => $id,
1823                                 "updated" => $last_updated,
1824                                 "counter" => $count,
1825                                 "has_img" => (int) $has_img);
1826
1827                         if ($last_error)
1828                                 $cv["error"] = $last_error;
1829
1830 //                      if (get_pref($link, 'EXTENDED_FEEDLIST'))
1831 //                              $cv["xmsg"] = getFeedArticles($link, $id)." ".__("total");
1832
1833                         if ($active_feed && $id == $active_feed)
1834                                 $cv["title"] = truncate_string($line["title"], 30);
1835
1836                         array_push($ret_arr, $cv);
1837
1838                 }
1839
1840                 return $ret_arr;
1841         }
1842
1843         function get_pgsql_version($link) {
1844                 $result = db_query($link, "SELECT version() AS version");
1845                 $version = explode(" ", db_fetch_result($result, 0, "version"));
1846                 return $version[1];
1847         }
1848
1849         /**
1850          * @return integer Status code:
1851          *                 0 - OK, Feed already exists
1852          *                 1 - OK, Feed added
1853          *                 2 - Invalid URL
1854          *                 3 - URL content is HTML, no feeds available
1855          *                 4 - URL content is HTML which contains multiple feeds.
1856          *                     Here you should call extractfeedurls in rpc-backend
1857          *                     to get all possible feeds.
1858          *                 5 - Couldn't download the URL content.
1859          */
1860         function subscribe_to_feed($link, $url, $cat_id = 0,
1861                         $auth_login = '', $auth_pass = '', $need_auth = false) {
1862
1863                 require_once "include/rssfuncs.php";
1864
1865                 $url = fix_url($url);
1866
1867                 if (!$url || !validate_feed_url($url)) return 2;
1868
1869                 $update_method = 0;
1870
1871                 $result = db_query($link, "SELECT twitter_oauth FROM ttrss_users
1872                         WHERE id = ".$_SESSION['uid']);
1873
1874                 $has_oauth = db_fetch_result($result, 0, 'twitter_oauth');
1875
1876                 if (!$need_auth || !$has_oauth || strpos($url, '://api.twitter.com') === false) {
1877                         if (!fetch_file_contents($url, false, $auth_login, $auth_pass)) return 5;
1878
1879                         if (url_is_html($url, $auth_login, $auth_pass)) {
1880                                 $feedUrls = get_feeds_from_html($url, $auth_login, $auth_pass);
1881                                 if (count($feedUrls) == 0) {
1882                                         return 3;
1883                                 } else if (count($feedUrls) > 1) {
1884                                         return 4;
1885                                 }
1886                                 //use feed url as new URL
1887                                 $url = key($feedUrls);
1888                         }
1889
1890                         } else {
1891                                 if (!fetch_twitter_rss($link, $url, $_SESSION['uid']))
1892                                         return 5;
1893
1894                                 $update_method = 3;
1895                         }
1896                 if ($cat_id == "0" || !$cat_id) {
1897                         $cat_qpart = "NULL";
1898                 } else {
1899                         $cat_qpart = "'$cat_id'";
1900                 }
1901
1902                 $result = db_query($link,
1903                         "SELECT id FROM ttrss_feeds
1904                         WHERE feed_url = '$url' AND owner_uid = ".$_SESSION["uid"]);
1905
1906                 if (db_num_rows($result) == 0) {
1907                         $result = db_query($link,
1908                                 "INSERT INTO ttrss_feeds
1909                                         (owner_uid,feed_url,title,cat_id, auth_login,auth_pass,update_method)
1910                                 VALUES ('".$_SESSION["uid"]."', '$url',
1911                                 '[Unknown]', $cat_qpart, '$auth_login', '$auth_pass', '$update_method')");
1912
1913                         $result = db_query($link,
1914                                 "SELECT id FROM ttrss_feeds WHERE feed_url = '$url'
1915                                         AND owner_uid = " . $_SESSION["uid"]);
1916
1917                         $feed_id = db_fetch_result($result, 0, "id");
1918
1919                         if ($feed_id) {
1920                                 update_rss_feed($link, $feed_id, true);
1921                         }
1922
1923                         return 1;
1924                 } else {
1925                         return 0;
1926                 }
1927         }
1928
1929         function print_feed_select($link, $id, $default_id = "",
1930                 $attributes = "", $include_all_feeds = true) {
1931
1932                 print "<select id=\"$id\" name=\"$id\" $attributes>";
1933                 if ($include_all_feeds) {
1934                         print "<option value=\"0\">".__('All feeds')."</option>";
1935                 }
1936
1937                 $result = db_query($link, "SELECT id,title FROM ttrss_feeds
1938                         WHERE owner_uid = ".$_SESSION["uid"]." ORDER BY title");
1939
1940                 if (db_num_rows($result) > 0 && $include_all_feeds) {
1941                         print "<option disabled>--------</option>";
1942                 }
1943
1944                 while ($line = db_fetch_assoc($result)) {
1945                         if ($line["id"] == $default_id) {
1946                                 $is_selected = "selected=\"1\"";
1947                         } else {
1948                                 $is_selected = "";
1949                         }
1950
1951                         $title = truncate_string(htmlspecialchars($line["title"]), 40);
1952
1953                         printf("<option $is_selected value='%d'>%s</option>",
1954                                 $line["id"], $title);
1955                 }
1956
1957                 print "</select>";
1958         }
1959
1960         function print_feed_cat_select($link, $id, $default_id = "",
1961                 $attributes = "", $include_all_cats = true) {
1962
1963                 print "<select id=\"$id\" name=\"$id\" default=\"$default_id\" onchange=\"catSelectOnChange(this)\" $attributes>";
1964
1965                 if ($include_all_cats) {
1966                         print "<option value=\"0\">".__('Uncategorized')."</option>";
1967                 }
1968
1969                 $result = db_query($link, "SELECT id,title FROM ttrss_feed_categories
1970                         WHERE owner_uid = ".$_SESSION["uid"]." ORDER BY title");
1971
1972                 if (db_num_rows($result) > 0 && $include_all_cats) {
1973                         print "<option disabled=\"1\">--------</option>";
1974                 }
1975
1976                 while ($line = db_fetch_assoc($result)) {
1977                         if ($line["id"] == $default_id) {
1978                                 $is_selected = "selected=\"1\"";
1979                         } else {
1980                                 $is_selected = "";
1981                         }
1982
1983                         if ($line["title"])
1984                                 printf("<option $is_selected value='%d'>%s</option>",
1985                                         $line["id"], htmlspecialchars($line["title"]));
1986                 }
1987
1988 #               print "<option value=\"ADD_CAT\">" .__("Add category...") . "</option>";
1989
1990                 print "</select>";
1991         }
1992
1993         function checkbox_to_sql_bool($val) {
1994                 return ($val == "on") ? "true" : "false";
1995         }
1996
1997         function getFeedCatTitle($link, $id) {
1998                 if ($id == -1) {
1999                         return __("Special");
2000                 } else if ($id < -10) {
2001                         return __("Labels");
2002                 } else if ($id > 0) {
2003                         $result = db_query($link, "SELECT ttrss_feed_categories.title
2004                                 FROM ttrss_feeds, ttrss_feed_categories WHERE ttrss_feeds.id = '$id' AND
2005                                         cat_id = ttrss_feed_categories.id");
2006                         if (db_num_rows($result) == 1) {
2007                                 return db_fetch_result($result, 0, "title");
2008                         } else {
2009                                 return __("Uncategorized");
2010                         }
2011                 } else {
2012                         return "getFeedCatTitle($id) failed";
2013                 }
2014
2015         }
2016
2017         function getFeedIcon($id) {
2018                 switch ($id) {
2019                 case 0:
2020                         return "images/archive.png";
2021                         break;
2022                 case -1:
2023                         return "images/mark_set.png";
2024                         break;
2025                 case -2:
2026                         return "images/pub_set.png";
2027                         break;
2028                 case -3:
2029                         return "images/fresh.png";
2030                         break;
2031                 case -4:
2032                         return "images/tag.png";
2033                         break;
2034                 default:
2035                         if ($id < -10) {
2036                                 return "images/label.png";
2037                         } else {
2038                                 if (file_exists(ICONS_DIR . "/$id.ico"))
2039                                         return ICONS_URL . "/$id.ico";
2040                         }
2041                         break;
2042                 }
2043         }
2044
2045         function getFeedTitle($link, $id) {
2046                 if ($id == -1) {
2047                         return __("Starred articles");
2048                 } else if ($id == -2) {
2049                         return __("Published articles");
2050                 } else if ($id == -3) {
2051                         return __("Fresh articles");
2052                 } else if ($id == -4) {
2053                         return __("All articles");
2054                 } else if ($id === 0 || $id === "0") {
2055                         return __("Archived articles");
2056                 } else if ($id < -10) {
2057                         $label_id = -$id - 11;
2058                         $result = db_query($link, "SELECT caption FROM ttrss_labels2 WHERE id = '$label_id'");
2059                         if (db_num_rows($result) == 1) {
2060                                 return db_fetch_result($result, 0, "caption");
2061                         } else {
2062                                 return "Unknown label ($label_id)";
2063                         }
2064
2065                 } else if (is_numeric($id) && $id > 0) {
2066                         $result = db_query($link, "SELECT title FROM ttrss_feeds WHERE id = '$id'");
2067                         if (db_num_rows($result) == 1) {
2068                                 return db_fetch_result($result, 0, "title");
2069                         } else {
2070                                 return "Unknown feed ($id)";
2071                         }
2072                 } else {
2073                         return $id;
2074                 }
2075         }
2076
2077         function make_init_params($link) {
2078                 $params = array();
2079
2080                 $params["theme"] = get_user_theme($link);
2081                 $params["theme_options"] = get_user_theme_options($link);
2082
2083                 $params["sign_progress"] = theme_image($link, "images/indicator_white.gif");
2084                 $params["sign_progress_tiny"] = theme_image($link, "images/indicator_tiny.gif");
2085                 $params["sign_excl"] = theme_image($link, "images/sign_excl.png");
2086                 $params["sign_info"] = theme_image($link, "images/sign_info.png");
2087
2088                 foreach (array("ON_CATCHUP_SHOW_NEXT_FEED", "HIDE_READ_FEEDS",
2089                         "ENABLE_FEED_CATS", "FEEDS_SORT_BY_UNREAD", "CONFIRM_FEED_CATCHUP",
2090                         "CDM_AUTO_CATCHUP", "FRESH_ARTICLE_MAX_AGE", "DEFAULT_ARTICLE_LIMIT",
2091                         "HIDE_READ_SHOWS_SPECIAL", "COMBINED_DISPLAY_MODE") as $param) {
2092
2093                                  $params[strtolower($param)] = (int) get_pref($link, $param);
2094                  }
2095
2096                 $params["icons_url"] = ICONS_URL;
2097                 $params["cookie_lifetime"] = SESSION_COOKIE_LIFETIME;
2098                 $params["default_view_mode"] = get_pref($link, "_DEFAULT_VIEW_MODE");
2099                 $params["default_view_limit"] = (int) get_pref($link, "_DEFAULT_VIEW_LIMIT");
2100                 $params["default_view_order_by"] = get_pref($link, "_DEFAULT_VIEW_ORDER_BY");
2101                 $params["bw_limit"] = (int) $_SESSION["bw_limit"];
2102
2103                 $result = db_query($link, "SELECT MAX(id) AS mid, COUNT(*) AS nf FROM
2104                         ttrss_feeds WHERE owner_uid = " . $_SESSION["uid"]);
2105
2106                 $max_feed_id = db_fetch_result($result, 0, "mid");
2107                 $num_feeds = db_fetch_result($result, 0, "nf");
2108
2109                 $params["max_feed_id"] = (int) $max_feed_id;
2110                 $params["num_feeds"] = (int) $num_feeds;
2111
2112                 $params["collapsed_feedlist"] = (int) get_pref($link, "_COLLAPSED_FEEDLIST");
2113
2114                 $params["csrf_token"] = $_SESSION["csrf_token"];
2115
2116                 return $params;
2117         }
2118
2119         function make_runtime_info($link) {
2120                 $data = array();
2121
2122                 $result = db_query($link, "SELECT MAX(id) AS mid, COUNT(*) AS nf FROM
2123                         ttrss_feeds WHERE owner_uid = " . $_SESSION["uid"]);
2124
2125                 $max_feed_id = db_fetch_result($result, 0, "mid");
2126                 $num_feeds = db_fetch_result($result, 0, "nf");
2127
2128                 $data["max_feed_id"] = (int) $max_feed_id;
2129                 $data["num_feeds"] = (int) $num_feeds;
2130
2131                 $data['last_article_id'] = getLastArticleId($link);
2132                 $data['cdm_expanded'] = get_pref($link, 'CDM_EXPANDED');
2133
2134                 if (file_exists(LOCK_DIRECTORY . "/update_daemon.lock")) {
2135
2136                         $data['daemon_is_running'] = (int) file_is_locked("update_daemon.lock");
2137
2138                         if (time() - $_SESSION["daemon_stamp_check"] > 30) {
2139
2140                                 $stamp = (int) @file_get_contents(LOCK_DIRECTORY . "/update_daemon.stamp");
2141
2142                                 if ($stamp) {
2143                                         $stamp_delta = time() - $stamp;
2144
2145                                         if ($stamp_delta > 1800) {
2146                                                 $stamp_check = 0;
2147                                         } else {
2148                                                 $stamp_check = 1;
2149                                                 $_SESSION["daemon_stamp_check"] = time();
2150                                         }
2151
2152                                         $data['daemon_stamp_ok'] = $stamp_check;
2153
2154                                         $stamp_fmt = date("Y.m.d, G:i", $stamp);
2155
2156                                         $data['daemon_stamp'] = $stamp_fmt;
2157                                 }
2158                         }
2159                 }
2160
2161                 if ($_SESSION["last_version_check"] + 86400 + rand(-1000, 1000) < time()) {
2162                                 $new_version_details = @check_for_update($link);
2163
2164                                 $data['new_version_available'] = (int) ($new_version_details != false);
2165
2166                                 $_SESSION["last_version_check"] = time();
2167                 }
2168
2169                 return $data;
2170         }
2171
2172         function search_to_sql($link, $search, $match_on) {
2173
2174                 $search_query_part = "";
2175
2176                 $keywords = explode(" ", $search);
2177                 $query_keywords = array();
2178
2179                 foreach ($keywords as $k) {
2180                         if (strpos($k, "-") === 0) {
2181                                 $k = substr($k, 1);
2182                                 $not = "NOT";
2183                         } else {
2184                                 $not = "";
2185                         }
2186
2187                         $commandpair = explode(":", mb_strtolower($k), 2);
2188
2189                         if ($commandpair[0] == "note" && $commandpair[1]) {
2190
2191                                 if ($commandpair[1] == "true")
2192                                         array_push($query_keywords, "($not (note IS NOT NULL AND note != ''))");
2193                                 else
2194                                         array_push($query_keywords, "($not (note IS NULL OR note = ''))");
2195
2196                         } else if ($commandpair[0] == "star" && $commandpair[1]) {
2197
2198                                 if ($commandpair[1] == "true")
2199                                         array_push($query_keywords, "($not (marked = true))");
2200                                 else
2201                                         array_push($query_keywords, "($not (marked = false))");
2202
2203                         } else if ($commandpair[0] == "pub" && $commandpair[1]) {
2204
2205                                 if ($commandpair[1] == "true")
2206                                         array_push($query_keywords, "($not (published = true))");
2207                                 else
2208                                         array_push($query_keywords, "($not (published = false))");
2209
2210                         } else if (strpos($k, "@") === 0) {
2211
2212                                 $user_tz_string = get_pref($link, 'USER_TIMEZONE', $_SESSION['uid']);
2213                                 $orig_ts = strtotime(substr($k, 1));
2214                                 $k = date("Y-m-d", convert_timestamp($orig_ts, $user_tz_string, 'UTC'));
2215
2216                                 //$k = date("Y-m-d", strtotime(substr($k, 1)));
2217
2218                                 array_push($query_keywords, "(".SUBSTRING_FOR_DATE."(updated,1,LENGTH('$k')) $not = '$k')");
2219                         } else if ($match_on == "both") {
2220                                 array_push($query_keywords, "(UPPER(ttrss_entries.title) $not LIKE UPPER('%$k%')
2221                                                 OR UPPER(ttrss_entries.content) $not LIKE UPPER('%$k%'))");
2222                         } else if ($match_on == "title") {
2223                                 array_push($query_keywords, "(UPPER(ttrss_entries.title) $not LIKE UPPER('%$k%'))");
2224                         } else if ($match_on == "content") {
2225                                 array_push($query_keywords, "(UPPER(ttrss_entries.content) $not LIKE UPPER('%$k%'))");
2226                         }
2227                 }
2228
2229                 $search_query_part = implode("AND", $query_keywords);
2230
2231                 return $search_query_part;
2232         }
2233
2234
2235         function queryFeedHeadlines($link, $feed, $limit, $view_mode, $cat_view, $search, $search_mode, $match_on, $override_order = false, $offset = 0, $owner_uid = 0, $filter = false, $since_id = 0) {
2236
2237                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
2238
2239                 $ext_tables_part = "";
2240
2241                         if ($search) {
2242
2243                                 if (SPHINX_ENABLED) {
2244                                         $ids = join(",", @sphinx_search($search, 0, 500));
2245
2246                                         if ($ids)
2247                                                 $search_query_part = "ref_id IN ($ids) AND ";
2248                                         else
2249                                                 $search_query_part = "ref_id = -1 AND ";
2250
2251                                 } else {
2252                                         $search_query_part = search_to_sql($link, $search, $match_on);
2253                                         $search_query_part .= " AND ";
2254                                 }
2255
2256                         } else {
2257                                 $search_query_part = "";
2258                         }
2259
2260                         if ($filter) {
2261                                 $filter_query_part = filter_to_sql($filter);
2262                         } else {
2263                                 $filter_query_part = "";
2264                         }
2265
2266                         if ($since_id) {
2267                                 $since_id_part = "ttrss_entries.id > $since_id AND ";
2268                         } else {
2269                                 $since_id_part = "";
2270                         }
2271
2272                         $view_query_part = "";
2273
2274                         if ($view_mode == "adaptive" || $view_query_part == "noscores") {
2275                                 if ($search) {
2276                                         $view_query_part = " ";
2277                                 } else if ($feed != -1) {
2278                                         $unread = getFeedUnread($link, $feed, $cat_view);
2279                                         if ($unread > 0) {
2280                                                 $view_query_part = " unread = true AND ";
2281                                         }
2282                                 }
2283                         }
2284
2285                         if ($view_mode == "marked") {
2286                                 $view_query_part = " marked = true AND ";
2287                         }
2288
2289                         if ($view_mode == "published") {
2290                                 $view_query_part = " published = true AND ";
2291                         }
2292
2293                         if ($view_mode == "unread") {
2294                                 $view_query_part = " unread = true AND ";
2295                         }
2296
2297                         if ($view_mode == "updated") {
2298                                 $view_query_part = " (last_read is null and unread = false) AND ";
2299                         }
2300
2301                         if ($limit > 0) {
2302                                 $limit_query_part = "LIMIT " . $limit;
2303                         }
2304
2305                         $vfeed_query_part = "";
2306
2307                         // override query strategy and enable feed display when searching globally
2308                         if ($search && $search_mode == "all_feeds") {
2309                                 $query_strategy_part = "ttrss_entries.id > 0";
2310                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2311                         /* tags */
2312                         } else if (preg_match("/^-?[0-9][0-9]*$/", $feed) == false) {
2313                                 $query_strategy_part = "ttrss_entries.id > 0";
2314                                 $vfeed_query_part = "(SELECT title FROM ttrss_feeds WHERE
2315                                         id = feed_id) as feed_title,";
2316                         } else if ($feed > 0 && $search && $search_mode == "this_cat") {
2317
2318                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2319
2320                                 $tmp_result = false;
2321
2322                                 if ($cat_view) {
2323                                         $tmp_result = db_query($link, "SELECT id
2324                                                 FROM ttrss_feeds WHERE cat_id = '$feed'");
2325                                 } else {
2326                                         $tmp_result = db_query($link, "SELECT id
2327                                                 FROM ttrss_feeds WHERE cat_id = (SELECT cat_id FROM ttrss_feeds
2328                                                         WHERE id = '$feed') AND id != '$feed'");
2329                                 }
2330
2331                                 $cat_siblings = array();
2332
2333                                 if (db_num_rows($tmp_result) > 0) {
2334                                         while ($p = db_fetch_assoc($tmp_result)) {
2335                                                 array_push($cat_siblings, "feed_id = " . $p["id"]);
2336                                         }
2337
2338                                         $query_strategy_part = sprintf("(feed_id = %d OR %s)",
2339                                                 $feed, implode(" OR ", $cat_siblings));
2340
2341                                 } else {
2342                                         $query_strategy_part = "ttrss_entries.id > 0";
2343                                 }
2344
2345                         } else if ($feed > 0) {
2346
2347                                 if ($cat_view) {
2348
2349                                         if ($feed > 0) {
2350                                                 $query_strategy_part = "cat_id = '$feed'";
2351                                         } else {
2352                                                 $query_strategy_part = "cat_id IS NULL";
2353                                         }
2354
2355                                         $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2356
2357                                 } else {
2358                                         $query_strategy_part = "feed_id = '$feed'";
2359                                 }
2360                         } else if ($feed == 0 && !$cat_view) { // archive virtual feed
2361                                 $query_strategy_part = "feed_id IS NULL";
2362                         } else if ($feed == 0 && $cat_view) { // uncategorized
2363                                 $query_strategy_part = "cat_id IS NULL";
2364                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2365                         } else if ($feed == -1) { // starred virtual feed
2366                                 $query_strategy_part = "marked = true";
2367                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2368                         } else if ($feed == -2) { // published virtual feed OR labels category
2369
2370                                 if (!$cat_view) {
2371                                         $query_strategy_part = "published = true";
2372                                         $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2373                                 } else {
2374                                         $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2375
2376                                         $ext_tables_part = ",ttrss_labels2,ttrss_user_labels2";
2377
2378                                         $query_strategy_part = "ttrss_labels2.id = ttrss_user_labels2.label_id AND
2379                                                 ttrss_user_labels2.article_id = ref_id";
2380
2381                                 }
2382
2383                         } else if ($feed == -3) { // fresh virtual feed
2384                                 $query_strategy_part = "unread = true AND score >= 0";
2385
2386                                 $intl = get_pref($link, "FRESH_ARTICLE_MAX_AGE", $owner_uid);
2387
2388                                 if (DB_TYPE == "pgsql") {
2389                                         $query_strategy_part .= " AND updated > NOW() - INTERVAL '$intl hour' ";
2390                                 } else {
2391                                         $query_strategy_part .= " AND updated > DATE_SUB(NOW(), INTERVAL $intl HOUR) ";
2392                                 }
2393
2394                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2395                         } else if ($feed == -4) { // all articles virtual feed
2396                                 $query_strategy_part = "true";
2397                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2398                         } else if ($feed <= -10) { // labels
2399                                 $label_id = -$feed - 11;
2400
2401                                 $query_strategy_part = "label_id = '$label_id' AND
2402                                         ttrss_labels2.id = ttrss_user_labels2.label_id AND
2403                                         ttrss_user_labels2.article_id = ref_id";
2404
2405                                 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2406                                 $ext_tables_part = ",ttrss_labels2,ttrss_user_labels2";
2407
2408                         } else {
2409                                 $query_strategy_part = "id > 0"; // dumb
2410                         }
2411
2412                         if (get_pref($link, "SORT_HEADLINES_BY_FEED_DATE", $owner_uid)) {
2413                                 $date_sort_field = "updated";
2414                         } else {
2415                                 $date_sort_field = "date_entered";
2416                         }
2417
2418                         if (get_pref($link, 'REVERSE_HEADLINES', $owner_uid)) {
2419                                 $order_by = "$date_sort_field";
2420                         } else {
2421                                 $order_by = "$date_sort_field DESC";
2422                         }
2423
2424                         if ($view_mode != "noscores") {
2425                                 $order_by = "score DESC, $order_by";
2426                         }
2427
2428                         if ($override_order) {
2429                                 $order_by = $override_order;
2430                         }
2431
2432                         $feed_title = "";
2433
2434                         if ($search) {
2435                                 $feed_title = "Search results";
2436                         } else {
2437                                 if ($cat_view) {
2438                                         $feed_title = getCategoryTitle($link, $feed);
2439                                 } else {
2440                                         if (is_numeric($feed) && $feed > 0) {
2441                                                 $result = db_query($link, "SELECT title,site_url,last_error
2442                                                         FROM ttrss_feeds WHERE id = '$feed' AND owner_uid = $owner_uid");
2443
2444                                                 $feed_title = db_fetch_result($result, 0, "title");
2445                                                 $feed_site_url = db_fetch_result($result, 0, "site_url");
2446                                                 $last_error = db_fetch_result($result, 0, "last_error");
2447                                         } else {
2448                                                 $feed_title = getFeedTitle($link, $feed);
2449                                         }
2450                                 }
2451                         }
2452
2453                         $content_query_part = "content as content_preview,";
2454
2455                         if (preg_match("/^-?[0-9][0-9]*$/", $feed) != false) {
2456
2457                                 if ($feed >= 0) {
2458                                         $feed_kind = "Feeds";
2459                                 } else {
2460                                         $feed_kind = "Labels";
2461                                 }
2462
2463                                 if ($limit_query_part) {
2464                                         $offset_query_part = "OFFSET $offset";
2465                                 }
2466
2467                                 if ($vfeed_query_part && get_pref($link, 'VFEED_GROUP_BY_FEED', $owner_uid)) {
2468                                         if (!$override_order) {
2469                                                 $order_by = "ttrss_feeds.title, $order_by";
2470                                         }
2471                                 }
2472
2473                                 if ($feed != "0") {
2474                                         $from_qpart = "ttrss_entries,ttrss_user_entries,ttrss_feeds$ext_tables_part";
2475                                         $feed_check_qpart = "ttrss_user_entries.feed_id = ttrss_feeds.id AND";
2476
2477                                 } else {
2478                                         $from_qpart = "ttrss_entries,ttrss_user_entries$ext_tables_part
2479                                                 LEFT JOIN ttrss_feeds ON (feed_id = ttrss_feeds.id)";
2480                                 }
2481
2482                                 $query = "SELECT DISTINCT
2483                                                 date_entered,
2484                                                 guid,
2485                                                 ttrss_entries.id,ttrss_entries.title,
2486                                                 updated,
2487                                                 label_cache,
2488                                                 tag_cache,
2489                                                 always_display_enclosures,
2490                                                 site_url,
2491                                                 note,
2492                                                 num_comments,
2493                                                 comments,
2494                                                 int_id,
2495                                                 unread,feed_id,marked,published,link,last_read,orig_feed_id,
2496                                                 ".SUBSTRING_FOR_DATE."(last_read,1,19) as last_read_noms,
2497                                                 $vfeed_query_part
2498                                                 $content_query_part
2499                                                 ".SUBSTRING_FOR_DATE."(updated,1,19) as updated_noms,
2500                                                 author,score
2501                                         FROM
2502                                                 $from_qpart
2503                                         WHERE
2504                                         $feed_check_qpart
2505                                         ttrss_user_entries.ref_id = ttrss_entries.id AND
2506                                         ttrss_user_entries.owner_uid = '$owner_uid' AND
2507                                         $search_query_part
2508                                         $filter_query_part
2509                                         $view_query_part
2510                                         $since_id_part
2511                                         $query_strategy_part ORDER BY $order_by
2512                                         $limit_query_part $offset_query_part";
2513
2514                                 if ($_REQUEST["debug"]) print $query;
2515
2516                                 $result = db_query($link, $query);
2517
2518                         } else {
2519                                 // browsing by tag
2520
2521                                 $select_qpart = "SELECT DISTINCT " .
2522                                                                 "date_entered," .
2523                                                                 "guid," .
2524                                                                 "note," .
2525                                                                 "ttrss_entries.id as id," .
2526                                                                 "title," .
2527                                                                 "updated," .
2528                                                                 "unread," .
2529                                                                 "feed_id," .
2530                                                                 "orig_feed_id," .
2531                                                                 "marked," .
2532                                                                 "num_comments, " .
2533                                                                 "comments, " .
2534                                                                 "tag_cache," .
2535                                                                 "label_cache," .
2536                                                                 "link," .
2537                                                                 "last_read," .
2538                                                                 SUBSTRING_FOR_DATE . "(last_read,1,19) as last_read_noms," .
2539                                                                 $since_id_part .
2540                                                                 $vfeed_query_part .
2541                                                                 $content_query_part .
2542                                                                 SUBSTRING_FOR_DATE . "(updated,1,19) as updated_noms," .
2543                                                                 "score ";
2544
2545                                 $feed_kind = "Tags";
2546                                 $all_tags = explode(",", $feed);
2547                                 if ($search_mode == 'any') {
2548                                         $tag_sql = "tag_name in (" . implode(", ", array_map("db_quote", $all_tags)) . ")";
2549                                         $from_qpart = " FROM ttrss_entries,ttrss_user_entries,ttrss_tags ";
2550                                         $where_qpart = " WHERE " .
2551                                                                    "ref_id = ttrss_entries.id AND " .
2552                                                                    "ttrss_user_entries.owner_uid = $owner_uid AND " .
2553                                                                    "post_int_id = int_id AND $tag_sql AND " .
2554                                                                    $view_query_part .
2555                                                                    $search_query_part .
2556                                                                    $query_strategy_part . " ORDER BY $order_by " .
2557                                                                    $limit_query_part;
2558
2559                                 } else {
2560                                         $i = 1;
2561                                         $sub_selects = array();
2562                                         $sub_ands = array();
2563                                         foreach ($all_tags as $term) {
2564                                                 array_push($sub_selects, "(SELECT post_int_id from ttrss_tags WHERE tag_name = " . db_quote($term) . " AND owner_uid = $owner_uid) as A$i");
2565                                                 $i++;
2566                                         }
2567                                         if ($i > 2) {
2568                                                 $x = 1;
2569                                                 $y = 2;
2570                                                 do {
2571                                                         array_push($sub_ands, "A$x.post_int_id = A$y.post_int_id");
2572                                                         $x++;
2573                                                         $y++;
2574                                                 } while ($y < $i);
2575                                         }
2576                                         array_push($sub_ands, "A1.post_int_id = ttrss_user_entries.int_id and ttrss_user_entries.owner_uid = $owner_uid");
2577                                         array_push($sub_ands, "ttrss_user_entries.ref_id = ttrss_entries.id");
2578                                         $from_qpart = " FROM " . implode(", ", $sub_selects) . ", ttrss_user_entries, ttrss_entries";
2579                                         $where_qpart = " WHERE " . implode(" AND ", $sub_ands);
2580                                 }
2581                                 //                              error_log("TAG SQL: " . $tag_sql);
2582                                 // $tag_sql = "tag_name = '$feed'";   DEFAULT way
2583
2584                                 //                              error_log("[". $select_qpart . "][" . $from_qpart . "][" .$where_qpart . "]");
2585                                 $result = db_query($link, $select_qpart . $from_qpart . $where_qpart);
2586                         }
2587
2588                         return array($result, $feed_title, $feed_site_url, $last_error);
2589
2590         }
2591
2592         function sanitize($link, $str, $force_strip_tags = false, $owner = false, $site_url = false) {
2593                 global $purifier;
2594
2595                 if (!$owner) $owner = $_SESSION["uid"];
2596
2597                 $res = trim($str); if (!$res) return '';
2598
2599                 // create global Purifier object if needed
2600                 if (!$purifier) {
2601                         require_once 'lib/htmlpurifier/library/HTMLPurifier.auto.php';
2602
2603                         $config = HTMLPurifier_Config::createDefault();
2604
2605                         $allowed = "p,a[href],i,em,b,strong,code,pre,blockquote,br,img[src|alt|title|align|hspace],ul,ol,li,h1,h2,h3,h4,s,object[classid|type|id|name|width|height|codebase],param[name|value],table,tr,td,span[class]";
2606
2607                         $config->set('HTML.SafeObject', true);
2608                         @$config->set('HTML', 'Allowed', $allowed);
2609                         $config->set('Output.FlashCompat', true);
2610                         $config->set('Attr.EnableID', true);
2611                         if (!defined('MOBILE_VERSION')) {
2612                                 @$config->set('Cache', 'SerializerPath', CACHE_DIR . "/htmlpurifier");
2613                         } else {
2614                                 @$config->set('Cache', 'SerializerPath', "../" . CACHE_DIR . "/htmlpurifier");
2615                         }
2616
2617                         $config->set('Filter.YouTube', true);
2618
2619                         $purifier = new HTMLPurifier($config);
2620                 }
2621
2622                 $res = $purifier->purify($res);
2623
2624                 if (get_pref($link, "STRIP_IMAGES", $owner)) {
2625                         $res = preg_replace('/<img[^>]+>/is', '', $res);
2626                 }
2627
2628                 if (strpos($res, "href=") === false)
2629                         $res = rewrite_urls($res);
2630
2631                 $charset_hack = '<head>
2632                         <meta http-equiv="Content-Type" content="text/html; charset=utf-8"/>
2633                 </head>';
2634
2635                 $res = trim($res); if (!$res) return '';
2636
2637                 libxml_use_internal_errors(true);
2638
2639                 $doc = new DOMDocument();
2640                 $doc->loadHTML($charset_hack . $res);
2641                 $xpath = new DOMXPath($doc);
2642
2643                 $entries = $xpath->query('(//a[@href]|//img[@src])');
2644                 $br_inserted = 0;
2645
2646                 foreach ($entries as $entry) {
2647
2648                         if ($site_url) {
2649
2650                                 if ($entry->hasAttribute('href'))
2651                                         $entry->setAttribute('href',
2652                                                 rewrite_relative_url($site_url, $entry->getAttribute('href')));
2653
2654                                 if ($entry->hasAttribute('src'))
2655                                         if (preg_match('/^image.php\?i=[a-z0-9]+$/', $entry->getAttribute('src')) == 0)
2656                                                 $entry->setAttribute('src',
2657                                                         rewrite_relative_url($site_url, $entry->getAttribute('src')));
2658                         }
2659
2660                         if (strtolower($entry->nodeName) == "a") {
2661                                 $entry->setAttribute("target", "_blank");
2662                         }
2663
2664                         if (strtolower($entry->nodeName) == "img" && !$br_inserted) {
2665                                 $br = $doc->createElement("br");
2666
2667                                 if ($entry->parentNode->nextSibling) {
2668                                         $entry->parentNode->insertBefore($br, $entry->nextSibling);
2669                                         $br_inserted = 1;
2670                                 }
2671
2672                         }
2673                 }
2674
2675                 $node = $doc->getElementsByTagName('body')->item(0);
2676
2677                 return $doc->saveXML($node, LIBXML_NOEMPTYTAG);
2678         }
2679
2680         /**
2681          * Send by mail a digest of last articles.
2682          *
2683          * @param mixed $link The database connection.
2684          * @param integer $limit The maximum number of articles by digest.
2685          * @return boolean Return false if digests are not enabled.
2686          */
2687         function send_headlines_digests($link, $debug = false) {
2688
2689                 require_once 'lib/phpmailer/class.phpmailer.php';
2690
2691                 $user_limit = 15; // amount of users to process (e.g. emails to send out)
2692                 $limit = 1000; // maximum amount of headlines to include
2693
2694                 if ($debug) _debug("Sending digests, batch of max $user_limit users, headline limit = $limit");
2695
2696                 if (DB_TYPE == "pgsql") {
2697                         $interval_query = "last_digest_sent < NOW() - INTERVAL '1 days'";
2698                 } else if (DB_TYPE == "mysql") {
2699                         $interval_query = "last_digest_sent < DATE_SUB(NOW(), INTERVAL 1 DAY)";
2700                 }
2701
2702                 $result = db_query($link, "SELECT id,email FROM ttrss_users
2703                                 WHERE email != '' AND (last_digest_sent IS NULL OR $interval_query)");
2704
2705                 while ($line = db_fetch_assoc($result)) {
2706
2707                         if (get_pref($link, 'DIGEST_ENABLE', $line['id'], false)) {
2708                                 $preferred_ts = strtotime(get_pref($link, 'DIGEST_PREFERRED_TIME', $line['id'], '00:00'));
2709
2710                                 // try to send digests within 2 hours of preferred time
2711                                 if ($preferred_ts && time() >= $preferred_ts &&
2712                                                 time() - $preferred_ts <= 7200) {
2713
2714                                         if ($debug) print "Sending digest for UID:" . $line['id'] . " - " . $line["email"] . " ... ";
2715
2716                                         $do_catchup = get_pref($link, 'DIGEST_CATCHUP', $line['id'], false);
2717
2718                                         global $tz_offset;
2719
2720                                         // reset tz_offset global to prevent tz cache clash between users
2721                                         $tz_offset = -1;
2722
2723                                         $tuple = prepare_headlines_digest($link, $line["id"], 1, $limit);
2724                                         $digest = $tuple[0];
2725                                         $headlines_count = $tuple[1];
2726                                         $affected_ids = $tuple[2];
2727                                         $digest_text = $tuple[3];
2728
2729                                         if ($headlines_count > 0) {
2730
2731                                                 $mail = new PHPMailer();
2732
2733                                                 $mail->PluginDir = "lib/phpmailer/";
2734                                                 $mail->SetLanguage("en", "lib/phpmailer/language/");
2735
2736                                                 $mail->CharSet = "UTF-8";
2737
2738                                                 $mail->From = SMTP_FROM_ADDRESS;
2739                                                 $mail->FromName = SMTP_FROM_NAME;
2740                                                 $mail->AddAddress($line["email"], $line["login"]);
2741
2742                                                 if (SMTP_HOST) {
2743                                                         $mail->Host = SMTP_HOST;
2744                                                         $mail->Mailer = "smtp";
2745                                                         $mail->SMTPAuth = SMTP_LOGIN != '';
2746                                                         $mail->Username = SMTP_LOGIN;
2747                                                         $mail->Password = SMTP_PASSWORD;
2748                                                 }
2749
2750                                                 $mail->IsHTML(true);
2751                                                 $mail->Subject = DIGEST_SUBJECT;
2752                                                 $mail->Body = $digest;
2753                                                 $mail->AltBody = $digest_text;
2754
2755                                                 $rc = $mail->Send();
2756
2757                                                 if (!$rc && $debug) print "ERROR: " . $mail->ErrorInfo;
2758
2759                                                 if ($debug) print "RC=$rc\n";
2760
2761                                                 if ($rc && $do_catchup) {
2762                                                         if ($debug) print "Marking affected articles as read...\n";
2763                                                         catchupArticlesById($link, $affected_ids, 0, $line["id"]);
2764                                                 }
2765                                         } else {
2766                                                 if ($debug) print "No headlines\n";
2767                                         }
2768
2769                                         db_query($link, "UPDATE ttrss_users SET last_digest_sent = NOW()
2770                                                 WHERE id = " . $line["id"]);
2771
2772                                 }
2773                         }
2774                 }
2775
2776                 if ($debug) _debug("All done.");
2777
2778         }
2779
2780         function prepare_headlines_digest($link, $user_id, $days = 1, $limit = 1000) {
2781
2782                 require_once "lib/MiniTemplator.class.php";
2783
2784                 $tpl = new MiniTemplator;
2785                 $tpl_t = new MiniTemplator;
2786
2787                 $tpl->readTemplateFromFile("templates/digest_template_html.txt");
2788                 $tpl_t->readTemplateFromFile("templates/digest_template.txt");
2789
2790                 $user_tz_string = get_pref($link, 'USER_TIMEZONE', $user_id);
2791                 $local_ts = convert_timestamp(time(), 'UTC', $user_tz_string);
2792
2793                 $tpl->setVariable('CUR_DATE', date('Y/m/d', $local_ts));
2794                 $tpl->setVariable('CUR_TIME', date('G:i', $local_ts));
2795
2796                 $tpl_t->setVariable('CUR_DATE', date('Y/m/d', $local_ts));
2797                 $tpl_t->setVariable('CUR_TIME', date('G:i', $local_ts));
2798
2799                 $affected_ids = array();
2800
2801                 if (DB_TYPE == "pgsql") {
2802                         $interval_query = "ttrss_entries.date_updated > NOW() - INTERVAL '$days days'";
2803                 } else if (DB_TYPE == "mysql") {
2804                         $interval_query = "ttrss_entries.date_updated > DATE_SUB(NOW(), INTERVAL $days DAY)";
2805                 }
2806
2807                 $result = db_query($link, "SELECT ttrss_entries.title,
2808                                 ttrss_feeds.title AS feed_title,
2809                                 ttrss_feed_categories.title AS cat_title,
2810                                 date_updated,
2811                                 ttrss_user_entries.ref_id,
2812                                 link,
2813                                 score,
2814                                 content,
2815                                 ".SUBSTRING_FOR_DATE."(last_updated,1,19) AS last_updated
2816                         FROM
2817                                 ttrss_user_entries,ttrss_entries,ttrss_feeds
2818                         LEFT JOIN
2819                                 ttrss_feed_categories ON (cat_id = ttrss_feed_categories.id)
2820                         WHERE
2821                                 ref_id = ttrss_entries.id AND feed_id = ttrss_feeds.id
2822                                 AND include_in_digest = true
2823                                 AND $interval_query
2824                                 AND ttrss_user_entries.owner_uid = $user_id
2825                                 AND unread = true
2826                                 AND score >= 0
2827                         ORDER BY ttrss_feed_categories.title, ttrss_feeds.title, score DESC, date_updated DESC
2828                         LIMIT $limit");
2829
2830                 $cur_feed_title = "";
2831
2832                 $headlines_count = db_num_rows($result);
2833
2834                 $headlines = array();
2835
2836                 while ($line = db_fetch_assoc($result)) {
2837                         array_push($headlines, $line);
2838                 }
2839
2840                 for ($i = 0; $i < sizeof($headlines); $i++) {
2841
2842                         $line = $headlines[$i];
2843
2844                         array_push($affected_ids, $line["ref_id"]);
2845
2846                         $updated = make_local_datetime($link, $line['last_updated'], false,
2847                                 $user_id);
2848
2849 /*                      if ($line["score"] != 0) {
2850                                 if ($line["score"] > 0) $line["score"] = '+' . $line["score"];
2851
2852                                 $line["title"] .= " (".$line['score'].")";
2853                         } */
2854
2855                         if (get_pref($link, 'ENABLE_FEED_CATS', $user_id)) {
2856                                 if (!$line['cat_title']) $line['cat_title'] = __("Uncategorized");
2857
2858                                 $line['feed_title'] = $line['cat_title'] . " / " . $line['feed_title'];
2859                         }
2860
2861                         $tpl->setVariable('FEED_TITLE', $line["feed_title"]);
2862                         $tpl->setVariable('ARTICLE_TITLE', $line["title"]);
2863                         $tpl->setVariable('ARTICLE_LINK', $line["link"]);
2864                         $tpl->setVariable('ARTICLE_UPDATED', $updated);
2865                         $tpl->setVariable('ARTICLE_EXCERPT',
2866                                 truncate_string(strip_tags($line["content"]), 300));
2867 //                      $tpl->setVariable('ARTICLE_CONTENT',
2868 //                              strip_tags($article_content));
2869
2870                         $tpl->addBlock('article');
2871
2872                         $tpl_t->setVariable('FEED_TITLE', $line["feed_title"]);
2873                         $tpl_t->setVariable('ARTICLE_TITLE', $line["title"]);
2874                         $tpl_t->setVariable('ARTICLE_LINK', $line["link"]);
2875                         $tpl_t->setVariable('ARTICLE_UPDATED', $updated);
2876 //                      $tpl_t->setVariable('ARTICLE_EXCERPT',
2877 //                              truncate_string(strip_tags($line["excerpt"]), 100));
2878
2879                         $tpl_t->addBlock('article');
2880
2881                         if ($headlines[$i]['feed_title'] != $headlines[$i+1]['feed_title']) {
2882                                 $tpl->addBlock('feed');
2883                                 $tpl_t->addBlock('feed');
2884                         }
2885
2886                 }
2887
2888                 $tpl->addBlock('digest');
2889                 $tpl->generateOutputToString($tmp);
2890
2891                 $tpl_t->addBlock('digest');
2892                 $tpl_t->generateOutputToString($tmp_t);
2893
2894                 return array($tmp, $headlines_count, $affected_ids, $tmp_t);
2895         }
2896
2897         function check_for_update($link) {
2898                 if (CHECK_FOR_NEW_VERSION && $_SESSION['access_level'] >= 10) {
2899                         $version_url = "http://tt-rss.org/version.php?ver=" . VERSION;
2900
2901                         $version_data = @fetch_file_contents($version_url);
2902
2903                         if ($version_data) {
2904                                 $version_data = json_decode($version_data, true);
2905                                 if ($version_data && $version_data['version']) {
2906
2907                                         if (version_compare(VERSION, $version_data['version']) == -1) {
2908                                                 return $version_data;
2909                                         }
2910                                 }
2911                         }
2912                 }
2913                 return false;
2914         }
2915
2916         function markArticlesById($link, $ids, $cmode) {
2917
2918                 $tmp_ids = array();
2919
2920                 foreach ($ids as $id) {
2921                         array_push($tmp_ids, "ref_id = '$id'");
2922                 }
2923
2924                 $ids_qpart = join(" OR ", $tmp_ids);
2925
2926                 if ($cmode == 0) {
2927                         db_query($link, "UPDATE ttrss_user_entries SET
2928                         marked = false,last_read = NOW()
2929                         WHERE ($ids_qpart) AND owner_uid = " . $_SESSION["uid"]);
2930                 } else if ($cmode == 1) {
2931                         db_query($link, "UPDATE ttrss_user_entries SET
2932                         marked = true
2933                         WHERE ($ids_qpart) AND owner_uid = " . $_SESSION["uid"]);
2934                 } else {
2935                         db_query($link, "UPDATE ttrss_user_entries SET
2936                         marked = NOT marked,last_read = NOW()
2937                         WHERE ($ids_qpart) AND owner_uid = " . $_SESSION["uid"]);
2938                 }
2939         }
2940
2941         function publishArticlesById($link, $ids, $cmode) {
2942
2943                 $tmp_ids = array();
2944
2945                 foreach ($ids as $id) {
2946                         array_push($tmp_ids, "ref_id = '$id'");
2947                 }
2948
2949                 $ids_qpart = join(" OR ", $tmp_ids);
2950
2951                 if ($cmode == 0) {
2952                         db_query($link, "UPDATE ttrss_user_entries SET
2953                         published = false,last_read = NOW()
2954                         WHERE ($ids_qpart) AND owner_uid = " . $_SESSION["uid"]);
2955                 } else if ($cmode == 1) {
2956                         db_query($link, "UPDATE ttrss_user_entries SET
2957                         published = true
2958                         WHERE ($ids_qpart) AND owner_uid = " . $_SESSION["uid"]);
2959                 } else {
2960                         db_query($link, "UPDATE ttrss_user_entries SET
2961                         published = NOT published,last_read = NOW()
2962                         WHERE ($ids_qpart) AND owner_uid = " . $_SESSION["uid"]);
2963                 }
2964
2965                 if (PUBSUBHUBBUB_HUB) {
2966                         $rss_link = get_self_url_prefix() .
2967                                 "/public.php?op=rss&id=-2&key=" .
2968                                 get_feed_access_key($link, -2, false);
2969
2970                         $p = new Publisher(PUBSUBHUBBUB_HUB);
2971
2972                         $pubsub_result = $p->publish_update($rss_link);
2973                 }
2974         }
2975
2976         function catchupArticlesById($link, $ids, $cmode, $owner_uid = false) {
2977
2978                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
2979                 if (count($ids) == 0) return;
2980
2981                 $tmp_ids = array();
2982
2983                 foreach ($ids as $id) {
2984                         array_push($tmp_ids, "ref_id = '$id'");
2985                 }
2986
2987                 $ids_qpart = join(" OR ", $tmp_ids);
2988
2989                 if ($cmode == 0) {
2990                         db_query($link, "UPDATE ttrss_user_entries SET
2991                         unread = false,last_read = NOW()
2992                         WHERE ($ids_qpart) AND owner_uid = $owner_uid");
2993                 } else if ($cmode == 1) {
2994                         db_query($link, "UPDATE ttrss_user_entries SET
2995                         unread = true
2996                         WHERE ($ids_qpart) AND owner_uid = $owner_uid");
2997                 } else {
2998                         db_query($link, "UPDATE ttrss_user_entries SET
2999                         unread = NOT unread,last_read = NOW()
3000                         WHERE ($ids_qpart) AND owner_uid = $owner_uid");
3001                 }
3002
3003                 /* update ccache */
3004
3005                 $result = db_query($link, "SELECT DISTINCT feed_id FROM ttrss_user_entries
3006                         WHERE ($ids_qpart) AND owner_uid = $owner_uid");
3007
3008                 while ($line = db_fetch_assoc($result)) {
3009                         ccache_update($link, $line["feed_id"], $owner_uid);
3010                 }
3011         }
3012
3013         function catchupArticleById($link, $id, $cmode) {
3014
3015                 if ($cmode == 0) {
3016                         db_query($link, "UPDATE ttrss_user_entries SET
3017                         unread = false,last_read = NOW()
3018                         WHERE ref_id = '$id' AND owner_uid = " . $_SESSION["uid"]);
3019                 } else if ($cmode == 1) {
3020                         db_query($link, "UPDATE ttrss_user_entries SET
3021                         unread = true
3022                         WHERE ref_id = '$id' AND owner_uid = " . $_SESSION["uid"]);
3023                 } else {
3024                         db_query($link, "UPDATE ttrss_user_entries SET
3025                         unread = NOT unread,last_read = NOW()
3026                         WHERE ref_id = '$id' AND owner_uid = " . $_SESSION["uid"]);
3027                 }
3028
3029                 $feed_id = getArticleFeed($link, $id);
3030                 ccache_update($link, $feed_id, $_SESSION["uid"]);
3031         }
3032
3033         function make_guid_from_title($title) {
3034                 return preg_replace("/[ \"\',.:;]/", "-",
3035                         mb_strtolower(strip_tags($title), 'utf-8'));
3036         }
3037
3038         function get_article_tags($link, $id, $owner_uid = 0, $tag_cache = false) {
3039
3040                 global $memcache;
3041
3042                 $a_id = db_escape_string($id);
3043
3044                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
3045
3046                 $query = "SELECT DISTINCT tag_name,
3047                         owner_uid as owner FROM
3048                         ttrss_tags WHERE post_int_id = (SELECT int_id FROM ttrss_user_entries WHERE
3049                         ref_id = '$a_id' AND owner_uid = '$owner_uid' LIMIT 1) ORDER BY tag_name";
3050
3051                 $obj_id = md5("TAGS:$owner_uid:$id");
3052                 $tags = array();
3053
3054                 if ($memcache && $obj = $memcache->get($obj_id)) {
3055                         $tags = $obj;
3056                 } else {
3057                         /* check cache first */
3058
3059                         if ($tag_cache === false) {
3060                                 $result = db_query($link, "SELECT tag_cache FROM ttrss_user_entries
3061                                         WHERE ref_id = '$id' AND owner_uid = " . $_SESSION["uid"]);
3062
3063                                 $tag_cache = db_fetch_result($result, 0, "tag_cache");
3064                         }
3065
3066                         if ($tag_cache) {
3067                                 $tags = explode(",", $tag_cache);
3068                         } else {
3069
3070                                 /* do it the hard way */
3071
3072                                 $tmp_result = db_query($link, $query);
3073
3074                                 while ($tmp_line = db_fetch_assoc($tmp_result)) {
3075                                         array_push($tags, $tmp_line["tag_name"]);
3076                                 }
3077
3078                                 /* update the cache */
3079
3080                                 $tags_str = db_escape_string(join(",", $tags));
3081
3082                                 db_query($link, "UPDATE ttrss_user_entries
3083                                         SET tag_cache = '$tags_str' WHERE ref_id = '$id'
3084                                         AND owner_uid = " . $_SESSION["uid"]);
3085                         }
3086
3087                         if ($memcache) $memcache->add($obj_id, $tags, 0, 3600);
3088                 }
3089
3090                 return $tags;
3091         }
3092
3093         function trim_array($array) {
3094                 $tmp = $array;
3095                 array_walk($tmp, 'trim');
3096                 return $tmp;
3097         }
3098
3099         function tag_is_valid($tag) {
3100                 if ($tag == '') return false;
3101                 if (preg_match("/^[0-9]*$/", $tag)) return false;
3102                 if (mb_strlen($tag) > 250) return false;
3103
3104                 if (function_exists('iconv')) {
3105                         $tag = iconv("utf-8", "utf-8", $tag);
3106                 }
3107
3108                 if (!$tag) return false;
3109
3110                 return true;
3111         }
3112
3113         function render_login_form($link, $mobile = 0) {
3114                 switch ($mobile) {
3115                 case 0:
3116                         require_once "login_form.php";
3117                         break;
3118                 case 1:
3119                         require_once "mobile/login_form.php";
3120                         break;
3121                 case 2:
3122                         require_once "mobile/classic/login_form.php";
3123                 }
3124         }
3125
3126         // from http://developer.apple.com/internet/safari/faq.html
3127         function no_cache_incantation() {
3128                 header("Expires: Mon, 22 Dec 1980 00:00:00 GMT"); // Happy birthday to me :)
3129                 header("Last-Modified: " . gmdate("D, d M Y H:i:s") . " GMT"); // always modified
3130                 header("Cache-Control: no-store, no-cache, must-revalidate, max-age=0"); // HTTP/1.1
3131                 header("Cache-Control: post-check=0, pre-check=0", false);
3132                 header("Pragma: no-cache"); // HTTP/1.0
3133         }
3134
3135         function format_warning($msg, $id = "") {
3136                 global $link;
3137                 return "<div class=\"warning\" id=\"$id\">
3138                         <img src=\"".theme_image($link, "images/sign_excl.png")."\">$msg</div>";
3139         }
3140
3141         function format_notice($msg, $id = "") {
3142                 global $link;
3143                 return "<div class=\"notice\" id=\"$id\">
3144                         <img src=\"".theme_image($link, "images/sign_info.png")."\">$msg</div>";
3145         }
3146
3147         function format_error($msg, $id = "") {
3148                 global $link;
3149                 return "<div class=\"error\" id=\"$id\">
3150                         <img src=\"".theme_image($link, "images/sign_excl.png")."\">$msg</div>";
3151         }
3152
3153         function print_notice($msg) {
3154                 return print format_notice($msg);
3155         }
3156
3157         function print_warning($msg) {
3158                 return print format_warning($msg);
3159         }
3160
3161         function print_error($msg) {
3162                 return print format_error($msg);
3163         }
3164
3165
3166         function T_sprintf() {
3167                 $args = func_get_args();
3168                 return vsprintf(__(array_shift($args)), $args);
3169         }
3170
3171         function format_inline_player($link, $url, $ctype) {
3172
3173                 $entry = "";
3174
3175                 if (strpos($ctype, "audio/") === 0) {
3176
3177                         if ($_SESSION["hasAudio"] && (strpos($ctype, "ogg") !== false ||
3178                                 strpos($_SERVER['HTTP_USER_AGENT'], "Chrome") !== false ||
3179                                 strpos($_SERVER['HTTP_USER_AGENT'], "Safari") !== false )) {
3180
3181                                 $id = 'AUDIO-' . uniqid();
3182
3183                                 $entry .= "<audio id=\"$id\"\">
3184                                         <source src=\"$url\"></source>
3185                                         </audio>";
3186
3187                                 $entry .= "<span onclick=\"player(this)\"
3188                                         title=\"".__("Click to play")."\" status=\"0\"
3189                                         class=\"player\" audio-id=\"$id\">".__("Play")."</span>";
3190
3191                         } else {
3192
3193                                 $entry .= "<object type=\"application/x-shockwave-flash\"
3194                                         data=\"lib/button/musicplayer.swf?song_url=$url\"
3195                                         width=\"17\" height=\"17\" style='float : left; margin-right : 5px;'>
3196                                         <param name=\"movie\"
3197                                                 value=\"lib/button/musicplayer.swf?song_url=$url\" />
3198                                         </object>";
3199                         }
3200                 }
3201
3202                 $filename = substr($url, strrpos($url, "/")+1);
3203
3204                 $entry .= " <a target=\"_blank\" href=\"" . htmlspecialchars($url) . "\">" .
3205                         $filename . " (" . $ctype . ")" . "</a>";
3206
3207                 return $entry;
3208         }
3209
3210         function format_article($link, $id, $mark_as_read = true, $zoom_mode = false) {
3211
3212                 $rv = array();
3213
3214                 $rv['id'] = $id;
3215
3216                 /* we can figure out feed_id from article id anyway, why do we
3217                  * pass feed_id here? let's ignore the argument :( */
3218
3219                 $result = db_query($link, "SELECT feed_id FROM ttrss_user_entries
3220                         WHERE ref_id = '$id'");
3221
3222                 $feed_id = (int) db_fetch_result($result, 0, "feed_id");
3223
3224                 $rv['feed_id'] = $feed_id;
3225
3226                 //if (!$zoom_mode) { print "<article id='$id'><![CDATA["; };
3227
3228                 $result = db_query($link, "SELECT rtl_content, always_display_enclosures FROM ttrss_feeds
3229                         WHERE id = '$feed_id' AND owner_uid = " . $_SESSION["uid"]);
3230
3231                 if (db_num_rows($result) == 1) {
3232                         $rtl_content = sql_bool_to_bool(db_fetch_result($result, 0, "rtl_content"));
3233                         $always_display_enclosures = sql_bool_to_bool(db_fetch_result($result, 0, "always_display_enclosures"));
3234                 } else {
3235                         $rtl_content = false;
3236                         $always_display_enclosures = false;
3237                 }
3238
3239                 if ($rtl_content) {
3240                         $rtl_tag = "dir=\"RTL\"";
3241                         $rtl_class = "RTL";
3242                 } else {
3243                         $rtl_tag = "";
3244                         $rtl_class = "";
3245                 }
3246
3247                 if ($mark_as_read) {
3248                         $result = db_query($link, "UPDATE ttrss_user_entries
3249                                 SET unread = false,last_read = NOW()
3250                                 WHERE ref_id = '$id' AND owner_uid = " . $_SESSION["uid"]);
3251
3252                         ccache_update($link, $feed_id, $_SESSION["uid"]);
3253                 }
3254
3255                 $result = db_query($link, "SELECT title,link,content,feed_id,comments,int_id,
3256                         ".SUBSTRING_FOR_DATE."(updated,1,16) as updated,
3257                         (SELECT icon_url FROM ttrss_feeds WHERE id = feed_id) as icon_url,
3258                         (SELECT site_url FROM ttrss_feeds WHERE id = feed_id) as site_url,
3259                         num_comments,
3260                         tag_cache,
3261                         author,
3262                         orig_feed_id,
3263                         note
3264                         FROM ttrss_entries,ttrss_user_entries
3265                         WHERE   id = '$id' AND ref_id = id AND owner_uid = " . $_SESSION["uid"]);
3266
3267                 if ($result) {
3268
3269                         $line = db_fetch_assoc($result);
3270
3271                         if ($line["icon_url"]) {
3272                                 $feed_icon = "<img src=\"" . $line["icon_url"] . "\">";
3273                         } else {
3274                                 $feed_icon = "&nbsp;";
3275                         }
3276
3277                         $feed_site_url = $line['site_url'];
3278
3279                         $num_comments = $line["num_comments"];
3280                         $entry_comments = "";
3281
3282                         if ($num_comments > 0) {
3283                                 if ($line["comments"]) {
3284                                         $comments_url = $line["comments"];
3285                                 } else {
3286                                         $comments_url = $line["link"];
3287                                 }
3288                                 $entry_comments = "<a target='_blank' href=\"$comments_url\">$num_comments comments</a>";
3289                         } else {
3290                                 if ($line["comments"] && $line["link"] != $line["comments"]) {
3291                                         $entry_comments = "<a target='_blank' href=\"".$line["comments"]."\">comments</a>";
3292                                 }
3293                         }
3294
3295                         if ($zoom_mode) {
3296                                 header("Content-Type: text/html");
3297                                 $rv['content'] .= "<html><head>
3298                                                 <meta http-equiv=\"Content-Type\" content=\"text/html; charset=utf-8\"/>
3299                                                 <title>Tiny Tiny RSS - ".$line["title"]."</title>
3300                                                 <link rel=\"stylesheet\" type=\"text/css\" href=\"tt-rss.css\">
3301                                         </head><body>";
3302                         }
3303
3304                         $rv['content'] .= "<div id=\"PTITLE-$id\" style=\"display : none\">" .
3305                                 truncate_string(strip_tags($line['title']), 15) . "</div>";
3306
3307                         $rv['content'] .= "<div class=\"postReply\" id=\"POST-$id\">";
3308
3309                         $rv['content'] .= "<div onclick=\"return postClicked(event, $id)\"
3310                                 class=\"postHeader\" id=\"POSTHDR-$id\">";
3311
3312                         $entry_author = $line["author"];
3313
3314                         if ($entry_author) {
3315                                 $entry_author = __(" - ") . $entry_author;
3316                         }
3317
3318                         $parsed_updated = make_local_datetime($link, $line["updated"], true,
3319                                 false, true);
3320
3321                         $rv['content'] .= "<div class=\"postDate$rtl_class\">$parsed_updated</div>";
3322
3323                         if ($line["link"]) {
3324                                 $rv['content'] .= "<div clear='both'><a target='_blank'
3325                                         title=\"".htmlspecialchars($line['title'])."\"
3326                                         href=\"" .
3327                                         $line["link"] . "\">" .
3328                                         truncate_string($line["title"], 100) .
3329                                         "<span class='author'>$entry_author</span></a></div>";
3330                         } else {
3331                                 $rv['content'] .= "<div clear='both'>" . $line["title"] . "$entry_author</div>";
3332                         }
3333
3334                         $tag_cache = $line["tag_cache"];
3335
3336                         if (!$tag_cache)
3337                                 $tags = get_article_tags($link, $id);
3338                         else
3339                                 $tags = explode(",", $tag_cache);
3340
3341                         $tags_str = format_tags_string($tags, $id);
3342                         $tags_str_full = join(", ", $tags);
3343
3344                         if (!$tags_str_full) $tags_str_full = __("no tags");
3345
3346                         if (!$entry_comments) $entry_comments = "&nbsp;"; # placeholder
3347
3348                         $rv['content'] .= "<div style='float : right'>
3349                                 <img src='".theme_image($link, 'images/tag.png')."'
3350                                 class='tagsPic' alt='Tags' title='Tags'>&nbsp;";
3351
3352                         if (!$zoom_mode) {
3353                                 $rv['content'] .= "<span id=\"ATSTR-$id\">$tags_str</span>
3354                                         <a title=\"".__('Edit tags for this article')."\"
3355                                         href=\"#\" onclick=\"editArticleTags($id, $feed_id)\">(+)</a>";
3356
3357                                 $rv['content'] .= "<div dojoType=\"dijit.Tooltip\"
3358                                         id=\"ATSTRTIP-$id\" connectId=\"ATSTR-$id\"
3359                                         position=\"below\">$tags_str_full</div>";
3360
3361                                 $rv['content'] .= "<img src=\"".theme_image($link, 'images/art-zoom.png')."\"
3362                                                 class='tagsPic' style=\"cursor : pointer\"
3363                                                 onclick=\"postOpenInNewTab(event, $id)\"
3364                                                 alt='Zoom' title='".__('Open article in new tab')."'>";
3365
3366                                 $button_plugins = explode(",", ARTICLE_BUTTON_PLUGINS);
3367
3368                                 foreach ($button_plugins as $p) {
3369                                         $pclass = trim("${p}_button");
3370
3371                                         if (class_exists($pclass)) {
3372                                                 $plugin = new $pclass($link);
3373                                                 $rv['content'] .= $plugin->render($id, $line);
3374                                         }
3375                                 }
3376
3377                                 $rv['content'] .= "<img src=\"".theme_image($link, 'images/digest_checkbox.png')."\"
3378                                                 class='tagsPic' style=\"cursor : pointer\"
3379                                                 onclick=\"closeArticlePanel($id)\"
3380                                                 title='".__('Close article')."'>";
3381
3382                         } else {
3383                                 $tags_str = strip_tags($tags_str);
3384                                 $rv['content'] .= "<span id=\"ATSTR-$id\">$tags_str</span>";
3385                         }
3386                         $rv['content'] .= "</div>";
3387                         $rv['content'] .= "<div clear='both'>$entry_comments</div>";
3388
3389                         if ($line["orig_feed_id"]) {
3390
3391                                 $tmp_result = db_query($link, "SELECT * FROM ttrss_archived_feeds
3392                                         WHERE id = ".$line["orig_feed_id"]);
3393
3394                                 if (db_num_rows($tmp_result) != 0) {
3395
3396                                         $rv['content'] .= "<div clear='both'>";
3397                                         $rv['content'] .= __("Originally from:");
3398
3399                                         $rv['content'] .= "&nbsp;";
3400
3401                                         $tmp_line = db_fetch_assoc($tmp_result);
3402
3403                                         $rv['content'] .= "<a target='_blank'
3404                                                 href=' " . htmlspecialchars($tmp_line['site_url']) . "'>" .
3405                                                 $tmp_line['title'] . "</a>";
3406
3407                                         $rv['content'] .= "&nbsp;";
3408
3409                                         $rv['content'] .= "<a target='_blank' href='" . htmlspecialchars($tmp_line['feed_url']) . "'>";
3410                                         $rv['content'] .= "<img title='".__('Feed URL')."'class='tinyFeedIcon' src='images/pub_set.png'></a>";
3411
3412                                         $rv['content'] .= "</div>";
3413                                 }
3414                         }
3415
3416                         $rv['content'] .= "</div>";
3417
3418                         $rv['content'] .= "<div id=\"POSTNOTE-$id\">";
3419                                 if ($line['note']) {
3420                                         $rv['content'] .= format_article_note($id, $line['note']);
3421                                 }
3422                         $rv['content'] .= "</div>";
3423
3424                         $rv['content'] .= "<div class=\"postIcon\">" .
3425                                 "<a target=\"_blank\" title=\"".__("Visit the website")."\"$
3426                                 href=\"".htmlspecialchars($feed_site_url)."\">".
3427                                 $feed_icon . "</a></div>";
3428
3429                         $rv['content'] .= "<div class=\"postContent\">";
3430
3431                         $article_content = sanitize($link, $line["content"], false, false,
3432                                 $feed_site_url);
3433
3434                         $rv['content'] .= $article_content;
3435
3436                         $rv['content'] .= format_article_enclosures($link, $id,
3437                                 $always_display_enclosures, $article_content);
3438
3439                         $rv['content'] .= "</div>";
3440
3441                         $rv['content'] .= "</div>";
3442
3443                 }
3444
3445                 if ($zoom_mode) {
3446                         $rv['content'] .= "
3447                                 <div style=\"text-align : center\">
3448                                 <button onclick=\"return window.close()\">".
3449                                         __("Close this window")."</button></div>";
3450                         $rv['content'] .= "</body></html>";
3451                 }
3452
3453                 return $rv;
3454
3455         }
3456
3457         function print_checkpoint($n, $s) {
3458                 $ts = getmicrotime();
3459                 echo sprintf("<!-- CP[$n] %.4f seconds -->", $ts - $s);
3460                 return $ts;
3461         }
3462
3463         function sanitize_tag($tag) {
3464                 $tag = trim($tag);
3465
3466                 $tag = mb_strtolower($tag, 'utf-8');
3467
3468                 $tag = preg_replace('/[\'\"\+\>\<]/', "", $tag);
3469
3470 //              $tag = str_replace('"', "", $tag);
3471 //              $tag = str_replace("+", " ", $tag);
3472                 $tag = str_replace("technorati tag: ", "", $tag);
3473
3474                 return $tag;
3475         }
3476
3477         function get_self_url_prefix() {
3478                 return SELF_URL_PATH;
3479         }
3480
3481         function opml_publish_url($link){
3482
3483                 $url_path = get_self_url_prefix();
3484                 $url_path .= "/opml.php?op=publish&key=" .
3485                         get_feed_access_key($link, 'OPML:Publish', false, $_SESSION["uid"]);
3486
3487                 return $url_path;
3488         }
3489
3490         /**
3491          * Purge a feed contents, marked articles excepted.
3492          *
3493          * @param mixed $link The database connection.
3494          * @param integer $id The id of the feed to purge.
3495          * @return void
3496          */
3497         function clear_feed_articles($link, $id) {
3498
3499                 if ($id != 0) {
3500                         $result = db_query($link, "DELETE FROM ttrss_user_entries
3501                         WHERE feed_id = '$id' AND marked = false AND owner_uid = " . $_SESSION["uid"]);
3502                 } else {
3503                         $result = db_query($link, "DELETE FROM ttrss_user_entries
3504                         WHERE feed_id IS NULL AND marked = false AND owner_uid = " . $_SESSION["uid"]);
3505                 }
3506
3507                 $result = db_query($link, "DELETE FROM ttrss_entries WHERE
3508                         (SELECT COUNT(int_id) FROM ttrss_user_entries WHERE ref_id = id) = 0");
3509
3510                 ccache_update($link, $id, $_SESSION['uid']);
3511         } // function clear_feed_articles
3512
3513         /**
3514          * Compute the Mozilla Firefox feed adding URL from server HOST and REQUEST_URI.
3515          *
3516          * @return string The Mozilla Firefox feed adding URL.
3517          */
3518         function add_feed_url() {
3519                 //$url_path = ($_SERVER['HTTPS'] != "on" ? 'http://' :  'https://') . $_SERVER["HTTP_HOST"] . parse_url($_SERVER["REQUEST_URI"], PHP_URL_PATH);
3520
3521                 $url_path = get_self_url_prefix() .
3522                         "/backend.php?op=pref-feeds&quiet=1&method=add&feed_url=%s";
3523                 return $url_path;
3524         } // function add_feed_url
3525
3526         function encrypt_password($pass, $salt = '', $mode2 = false) {
3527                 if ($salt && $mode2) {
3528                         return "MODE2:" . hash('sha256', $salt . $pass);
3529                 } else if ($salt) {
3530                         return "SHA1X:" . sha1("$salt:$pass");
3531                 } else {
3532                         return "SHA1:" . sha1($pass);
3533                 }
3534         } // function encrypt_password
3535
3536         function sanitize_article_content($text) {
3537                 # we don't support CDATA sections in articles, they break our own escaping
3538                 $text = preg_replace("/\[\[CDATA/", "", $text);
3539                 $text = preg_replace("/\]\]\>/", "", $text);
3540                 return $text;
3541         }
3542
3543         function load_filters($link, $feed, $owner_uid, $action_id = false) {
3544                 $filters = array();
3545
3546                 global $memcache;
3547
3548                 $obj_id = md5("FILTER:$feed:$owner_uid:$action_id");
3549
3550                 if ($memcache && $obj = $memcache->get($obj_id)) {
3551
3552                         return $obj;
3553
3554                 } else {
3555
3556                         if ($action_id) $ftype_query_part = "action_id = '$action_id' AND";
3557
3558                         $result = db_query($link, "SELECT reg_exp,
3559                                 ttrss_filter_types.name AS name,
3560                                 ttrss_filter_actions.name AS action,
3561                                 inverse,
3562                                 action_param,
3563                                 filter_param
3564                                 FROM ttrss_filters
3565                                         LEFT JOIN ttrss_feeds ON (ttrss_feeds.id = '$feed'),
3566                                         ttrss_filter_types,ttrss_filter_actions
3567                                 WHERE
3568                                         enabled = true AND
3569                                         $ftype_query_part
3570                                         ttrss_filters.owner_uid = $owner_uid AND
3571                                         ttrss_filter_types.id = filter_type AND
3572                                         ttrss_filter_actions.id = action_id AND
3573                                         ((cat_filter = true AND ttrss_feeds.cat_id = ttrss_filters.cat_id) OR
3574                                         (cat_filter = true AND ttrss_feeds.cat_id IS NULL AND
3575                                                 ttrss_filters.cat_id IS NULL) OR
3576                                         (cat_filter = false AND (feed_id IS NULL OR feed_id = '$feed')))
3577                                 ORDER BY reg_exp");
3578
3579                         while ($line = db_fetch_assoc($result)) {
3580
3581                                 if (!$filters[$line["name"]]) $filters[$line["name"]] = array();
3582                                         $filter["reg_exp"] = $line["reg_exp"];
3583                                         $filter["action"] = $line["action"];
3584                                         $filter["action_param"] = $line["action_param"];
3585                                         $filter["filter_param"] = $line["filter_param"];
3586                                         $filter["inverse"] = sql_bool_to_bool($line["inverse"]);
3587
3588                                         array_push($filters[$line["name"]], $filter);
3589                                 }
3590
3591                         if ($memcache) $memcache->add($obj_id, $filters, 0, 3600*8);
3592
3593                         return $filters;
3594                 }
3595         }
3596
3597         function get_score_pic($score) {
3598                 if ($score > 100) {
3599                         return "score_high.png";
3600                 } else if ($score > 0) {
3601                         return "score_half_high.png";
3602                 } else if ($score < -100) {
3603                         return "score_low.png";
3604                 } else if ($score < 0) {
3605                         return "score_half_low.png";
3606                 } else {
3607                         return "score_neutral.png";
3608                 }
3609         }
3610
3611         function feed_has_icon($id) {
3612                 return is_file(ICONS_DIR . "/$id.ico") && filesize(ICONS_DIR . "/$id.ico") > 0;
3613         }
3614
3615         function init_connection($link) {
3616                 if ($link) {
3617
3618                         if (DB_TYPE == "pgsql") {
3619                                 pg_query($link, "set client_encoding = 'UTF-8'");
3620                                 pg_set_client_encoding("UNICODE");
3621                                 pg_query($link, "set datestyle = 'ISO, european'");
3622                                 pg_query($link, "set TIME ZONE 0");
3623                         } else {
3624                                 db_query($link, "SET time_zone = '+0:0'");
3625
3626                                 if (defined('MYSQL_CHARSET') && MYSQL_CHARSET) {
3627                                         db_query($link, "SET NAMES " . MYSQL_CHARSET);
3628                                 }
3629                         }
3630                         return true;
3631                 } else {
3632                         print "Unable to connect to database:" . db_last_error();
3633                         return false;
3634                 }
3635         }
3636
3637         /* function ccache_zero($link, $feed_id, $owner_uid) {
3638                 db_query($link, "UPDATE ttrss_counters_cache SET
3639                         value = 0, updated = NOW() WHERE
3640                         feed_id = '$feed_id' AND owner_uid = '$owner_uid'");
3641         } */
3642
3643         function ccache_zero_all($link, $owner_uid) {
3644                 db_query($link, "UPDATE ttrss_counters_cache SET
3645                         value = 0 WHERE owner_uid = '$owner_uid'");
3646
3647                 db_query($link, "UPDATE ttrss_cat_counters_cache SET
3648                         value = 0 WHERE owner_uid = '$owner_uid'");
3649         }
3650
3651         function ccache_remove($link, $feed_id, $owner_uid, $is_cat = false) {
3652
3653                 if (!$is_cat) {
3654                         $table = "ttrss_counters_cache";
3655                 } else {
3656                         $table = "ttrss_cat_counters_cache";
3657                 }
3658
3659                 db_query($link, "DELETE FROM $table WHERE
3660                         feed_id = '$feed_id' AND owner_uid = '$owner_uid'");
3661
3662         }
3663
3664         function ccache_update_all($link, $owner_uid) {
3665
3666                 if (get_pref($link, 'ENABLE_FEED_CATS', $owner_uid)) {
3667
3668                         $result = db_query($link, "SELECT feed_id FROM ttrss_cat_counters_cache
3669                                 WHERE feed_id > 0 AND owner_uid = '$owner_uid'");
3670
3671                         while ($line = db_fetch_assoc($result)) {
3672                                 ccache_update($link, $line["feed_id"], $owner_uid, true);
3673                         }
3674
3675                         /* We have to manually include category 0 */
3676
3677                         ccache_update($link, 0, $owner_uid, true);
3678
3679                 } else {
3680                         $result = db_query($link, "SELECT feed_id FROM ttrss_counters_cache
3681                                 WHERE feed_id > 0 AND owner_uid = '$owner_uid'");
3682
3683                         while ($line = db_fetch_assoc($result)) {
3684                                 print ccache_update($link, $line["feed_id"], $owner_uid);
3685
3686                         }
3687
3688                 }
3689         }
3690
3691         function ccache_find($link, $feed_id, $owner_uid, $is_cat = false,
3692                 $no_update = false) {
3693
3694                 if (!is_numeric($feed_id)) return;
3695
3696                 if (!$is_cat) {
3697                         $table = "ttrss_counters_cache";
3698                         if ($feed_id > 0) {
3699                                 $tmp_result = db_query($link, "SELECT owner_uid FROM ttrss_feeds
3700                                         WHERE id = '$feed_id'");
3701                                 $owner_uid = db_fetch_result($tmp_result, 0, "owner_uid");
3702                         }
3703                 } else {
3704                         $table = "ttrss_cat_counters_cache";
3705                 }
3706
3707                 if (DB_TYPE == "pgsql") {
3708                         $date_qpart = "updated > NOW() - INTERVAL '15 minutes'";
3709                 } else if (DB_TYPE == "mysql") {
3710                         $date_qpart = "updated > DATE_SUB(NOW(), INTERVAL 15 MINUTE)";
3711                 }
3712
3713                 $result = db_query($link, "SELECT value FROM $table
3714                         WHERE owner_uid = '$owner_uid' AND feed_id = '$feed_id'
3715                         LIMIT 1");
3716
3717                 if (db_num_rows($result) == 1) {
3718                         return db_fetch_result($result, 0, "value");
3719                 } else {
3720                         if ($no_update) {
3721                                 return -1;
3722                         } else {
3723                                 return ccache_update($link, $feed_id, $owner_uid, $is_cat);
3724                         }
3725                 }
3726
3727         }
3728
3729         function ccache_update($link, $feed_id, $owner_uid, $is_cat = false,
3730                 $update_pcat = true) {
3731
3732                 if (!is_numeric($feed_id)) return;
3733
3734                 if (!$is_cat && $feed_id > 0) {
3735                         $tmp_result = db_query($link, "SELECT owner_uid FROM ttrss_feeds
3736                                 WHERE id = '$feed_id'");
3737                         $owner_uid = db_fetch_result($tmp_result, 0, "owner_uid");
3738                 }
3739
3740                 $prev_unread = ccache_find($link, $feed_id, $owner_uid, $is_cat, true);
3741
3742                 /* When updating a label, all we need to do is recalculate feed counters
3743                  * because labels are not cached */
3744
3745                 if ($feed_id < 0) {
3746                         ccache_update_all($link, $owner_uid);
3747                         return;
3748                 }
3749
3750                 if (!$is_cat) {
3751                         $table = "ttrss_counters_cache";
3752                 } else {
3753                         $table = "ttrss_cat_counters_cache";
3754                 }
3755
3756                 if ($is_cat && $feed_id >= 0) {
3757                         if ($feed_id != 0) {
3758                                 $cat_qpart = "cat_id = '$feed_id'";
3759                         } else {
3760                                 $cat_qpart = "cat_id IS NULL";
3761                         }
3762
3763                         /* Recalculate counters for child feeds */
3764
3765                         $result = db_query($link, "SELECT id FROM ttrss_feeds
3766                                                 WHERE owner_uid = '$owner_uid' AND $cat_qpart");
3767
3768                         while ($line = db_fetch_assoc($result)) {
3769                                 ccache_update($link, $line["id"], $owner_uid, false, false);
3770                         }
3771
3772                         $result = db_query($link, "SELECT SUM(value) AS sv
3773                                 FROM ttrss_counters_cache, ttrss_feeds
3774                                 WHERE id = feed_id AND $cat_qpart AND
3775                                 ttrss_feeds.owner_uid = '$owner_uid'");
3776
3777                         $unread = (int) db_fetch_result($result, 0, "sv");
3778
3779                 } else {
3780                         $unread = (int) getFeedArticles($link, $feed_id, $is_cat, true, $owner_uid);
3781                 }
3782
3783                 db_query($link, "BEGIN");
3784
3785                 $result = db_query($link, "SELECT feed_id FROM $table
3786                         WHERE owner_uid = '$owner_uid' AND feed_id = '$feed_id' LIMIT 1");
3787
3788                 if (db_num_rows($result) == 1) {
3789                         db_query($link, "UPDATE $table SET
3790                                 value = '$unread', updated = NOW() WHERE
3791                                 feed_id = '$feed_id' AND owner_uid = '$owner_uid'");
3792
3793                 } else {
3794                         db_query($link, "INSERT INTO $table
3795                                 (feed_id, value, owner_uid, updated)
3796                                 VALUES
3797                                 ($feed_id, $unread, $owner_uid, NOW())");
3798                 }
3799
3800                 db_query($link, "COMMIT");
3801
3802                 if ($feed_id > 0 && $prev_unread != $unread) {
3803
3804                         if (!$is_cat) {
3805
3806                                 /* Update parent category */
3807
3808                                 if ($update_pcat) {
3809
3810                                         $result = db_query($link, "SELECT cat_id FROM ttrss_feeds
3811                                                 WHERE owner_uid = '$owner_uid' AND id = '$feed_id'");
3812
3813                                         $cat_id = (int) db_fetch_result($result, 0, "cat_id");
3814
3815                                         ccache_update($link, $cat_id, $owner_uid, true);
3816
3817                                 }
3818                         }
3819                 } else if ($feed_id < 0) {
3820                         ccache_update_all($link, $owner_uid);
3821                 }
3822
3823                 return $unread;
3824         }
3825
3826         /* function ccache_cleanup($link, $owner_uid) {
3827
3828                 if (DB_TYPE == "pgsql") {
3829                         db_query($link, "DELETE FROM ttrss_counters_cache AS c1 WHERE
3830                                 (SELECT count(*) FROM ttrss_counters_cache AS c2
3831                                         WHERE c1.feed_id = c2.feed_id AND c2.owner_uid = c1.owner_uid) > 1
3832                                         AND owner_uid = '$owner_uid'");
3833
3834                         db_query($link, "DELETE FROM ttrss_cat_counters_cache AS c1 WHERE
3835                                 (SELECT count(*) FROM ttrss_cat_counters_cache AS c2
3836                                         WHERE c1.feed_id = c2.feed_id AND c2.owner_uid = c1.owner_uid) > 1
3837                                         AND owner_uid = '$owner_uid'");
3838                 } else {
3839                         db_query($link, "DELETE c1 FROM
3840                                         ttrss_counters_cache AS c1,
3841                                         ttrss_counters_cache AS c2
3842                                 WHERE
3843                                         c1.owner_uid = '$owner_uid' AND
3844                                         c1.owner_uid = c2.owner_uid AND
3845                                         c1.feed_id = c2.feed_id");
3846
3847                         db_query($link, "DELETE c1 FROM
3848                                         ttrss_cat_counters_cache AS c1,
3849                                         ttrss_cat_counters_cache AS c2
3850                                 WHERE
3851                                         c1.owner_uid = '$owner_uid' AND
3852                                         c1.owner_uid = c2.owner_uid AND
3853                                         c1.feed_id = c2.feed_id");
3854
3855                 }
3856         } */
3857
3858         function label_find_id($link, $label, $owner_uid) {
3859                 $result = db_query($link,
3860                         "SELECT id FROM ttrss_labels2 WHERE caption = '$label'
3861                                 AND owner_uid = '$owner_uid' LIMIT 1");
3862
3863                 if (db_num_rows($result) == 1) {
3864                         return db_fetch_result($result, 0, "id");
3865                 } else {
3866                         return 0;
3867                 }
3868         }
3869
3870         function get_article_labels($link, $id) {
3871                 global $memcache;
3872
3873                 $obj_id = md5("LABELS:$id:" . $_SESSION["uid"]);
3874
3875                 $rv = array();
3876
3877                 if ($memcache && $obj = $memcache->get($obj_id)) {
3878                         return $obj;
3879                 } else {
3880
3881                         $result = db_query($link, "SELECT label_cache FROM
3882                                 ttrss_user_entries WHERE ref_id = '$id' AND owner_uid = " .
3883                                 $_SESSION["uid"]);
3884
3885                         $label_cache = db_fetch_result($result, 0, "label_cache");
3886
3887                         if ($label_cache) {
3888
3889                                 $label_cache = json_decode($label_cache, true);
3890
3891                                 if ($label_cache["no-labels"] == 1)
3892                                         return $rv;
3893                                 else
3894                                         return $label_cache;
3895                         }
3896
3897                         $result = db_query($link,
3898                                 "SELECT DISTINCT label_id,caption,fg_color,bg_color
3899                                         FROM ttrss_labels2, ttrss_user_labels2
3900                                 WHERE id = label_id
3901                                         AND article_id = '$id'
3902                                         AND owner_uid = ".$_SESSION["uid"] . "
3903                                 ORDER BY caption");
3904
3905                         while ($line = db_fetch_assoc($result)) {
3906                                 $rk = array($line["label_id"], $line["caption"], $line["fg_color"],
3907                                         $line["bg_color"]);
3908                                 array_push($rv, $rk);
3909                         }
3910                         if ($memcache) $memcache->add($obj_id, $rv, 0, 3600);
3911
3912                         if (count($rv) > 0)
3913                                 label_update_cache($link, $id, $rv);
3914                         else
3915                                 label_update_cache($link, $id, array("no-labels" => 1));
3916                 }
3917
3918                 return $rv;
3919         }
3920
3921
3922         function label_find_caption($link, $label, $owner_uid) {
3923                 $result = db_query($link,
3924                         "SELECT caption FROM ttrss_labels2 WHERE id = '$label'
3925                                 AND owner_uid = '$owner_uid' LIMIT 1");
3926
3927                 if (db_num_rows($result) == 1) {
3928                         return db_fetch_result($result, 0, "caption");
3929                 } else {
3930                         return "";
3931                 }
3932         }
3933
3934         function label_update_cache($link, $id, $labels = false, $force = false) {
3935
3936                 if ($force)
3937                         label_clear_cache($link, $id);
3938
3939                 if (!$labels)
3940                         $labels = get_article_labels($link, $id);
3941
3942                 $labels = db_escape_string(json_encode($labels));
3943
3944                 db_query($link, "UPDATE ttrss_user_entries SET
3945                         label_cache = '$labels' WHERE ref_id = '$id'");
3946
3947         }
3948
3949         function label_clear_cache($link, $id) {
3950
3951                 db_query($link, "UPDATE ttrss_user_entries SET
3952                         label_cache = '' WHERE ref_id = '$id'");
3953
3954         }
3955
3956         function label_remove_article($link, $id, $label, $owner_uid) {
3957
3958                 $label_id = label_find_id($link, $label, $owner_uid);
3959
3960                 if (!$label_id) return;
3961
3962                 $result = db_query($link,
3963                         "DELETE FROM ttrss_user_labels2
3964                         WHERE
3965                                 label_id = '$label_id' AND
3966                                 article_id = '$id'");
3967
3968                 label_clear_cache($link, $id);
3969         }
3970
3971         function label_add_article($link, $id, $label, $owner_uid) {
3972
3973                 global $memcache;
3974
3975                 if ($memcache) {
3976                         $obj_id = md5("LABELS:$id:$owner_uid");
3977                         $memcache->delete($obj_id);
3978                 }
3979
3980                 $label_id = label_find_id($link, $label, $owner_uid);
3981
3982                 if (!$label_id) return;
3983
3984                 $result = db_query($link,
3985                         "SELECT
3986                                 article_id FROM ttrss_labels2, ttrss_user_labels2
3987                         WHERE
3988                                 label_id = id AND
3989                                 label_id = '$label_id' AND
3990                                 article_id = '$id' AND owner_uid = '$owner_uid'
3991                         LIMIT 1");
3992
3993                 if (db_num_rows($result) == 0) {
3994                         db_query($link, "INSERT INTO ttrss_user_labels2
3995                                 (label_id, article_id) VALUES ('$label_id', '$id')");
3996                 }
3997
3998                 label_clear_cache($link, $id);
3999
4000         }
4001
4002         function label_remove($link, $id, $owner_uid) {
4003                 global $memcache;
4004
4005                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
4006
4007                 if ($memcache) {
4008                         $obj_id = md5("LABELS:$id:$owner_uid");
4009                         $memcache->delete($obj_id);
4010                 }
4011
4012                 db_query($link, "BEGIN");
4013
4014                 $result = db_query($link, "SELECT caption FROM ttrss_labels2
4015                         WHERE id = '$id'");
4016
4017                 $caption = db_fetch_result($result, 0, "caption");
4018
4019                 $result = db_query($link, "DELETE FROM ttrss_labels2 WHERE id = '$id'
4020                         AND owner_uid = " . $owner_uid);
4021
4022                 if (db_affected_rows($link, $result) != 0 && $caption) {
4023
4024                         /* Remove access key for the label */
4025
4026                         $ext_id = -11 - $id;
4027
4028                         db_query($link, "DELETE FROM ttrss_access_keys WHERE
4029                                 feed_id = '$ext_id' AND owner_uid = $owner_uid");
4030
4031                         /* Disable filters that reference label being removed */
4032
4033                         db_query($link, "UPDATE ttrss_filters SET
4034                                 enabled = false WHERE action_param = '$caption'
4035                                         AND action_id = 7
4036                                         AND owner_uid = " . $owner_uid);
4037
4038                         /* Remove cached data */
4039
4040                         db_query($link, "UPDATE ttrss_user_entries SET label_cache = ''
4041                                 WHERE label_cache LIKE '%$caption%' AND owner_uid = " . $owner_uid);
4042
4043                 }
4044
4045                 db_query($link, "COMMIT");
4046         }
4047
4048         function label_create($link, $caption, $fg_color = '', $bg_color = '', $owner_uid) {
4049
4050                 if (!$owner_uid) $owner_uid = $_SESSION['uid'];
4051
4052                 db_query($link, "BEGIN");
4053
4054                 $result = false;
4055
4056                 $result = db_query($link, "SELECT id FROM ttrss_labels2
4057                         WHERE caption = '$caption' AND owner_uid = $owner_uid");
4058
4059                 if (db_num_rows($result) == 0) {
4060                         $result = db_query($link,
4061                                 "INSERT INTO ttrss_labels2 (caption,owner_uid,fg_color,bg_color)
4062                                         VALUES ('$caption', '$owner_uid', '$fg_color', '$bg_color')");
4063
4064                         $result = db_affected_rows($link, $result) != 0;
4065                 }
4066
4067                 db_query($link, "COMMIT");
4068
4069                 return $result;
4070         }
4071
4072         function format_tags_string($tags, $id) {
4073
4074                 $tags_str = "";
4075                 $tags_nolinks_str = "";
4076
4077                 $num_tags = 0;
4078
4079                 $tag_limit = 6;
4080
4081                 $formatted_tags = array();
4082
4083                 foreach ($tags as $tag) {
4084                         $num_tags++;
4085                         $tag_escaped = str_replace("'", "\\'", $tag);
4086
4087                         if (mb_strlen($tag) > 30) {
4088                                 $tag = truncate_string($tag, 30);
4089                         }
4090
4091                         $tag_str = "<a href=\"javascript:viewfeed('$tag_escaped')\">$tag</a>";
4092
4093                         array_push($formatted_tags, $tag_str);
4094
4095                         $tmp_tags_str = implode(", ", $formatted_tags);
4096
4097                         if ($num_tags == $tag_limit || mb_strlen($tmp_tags_str) > 150) {
4098                                 break;
4099                         }
4100                 }
4101
4102                 $tags_str = implode(", ", $formatted_tags);
4103
4104                 if ($num_tags < count($tags)) {
4105                         $tags_str .= ", &hellip;";
4106                 }
4107
4108                 if ($num_tags == 0) {
4109                         $tags_str = __("no tags");
4110                 }
4111
4112                 return $tags_str;
4113
4114         }
4115
4116         function format_article_labels($labels, $id) {
4117
4118                 $labels_str = "";
4119
4120                 foreach ($labels as $l) {
4121                         $labels_str .= sprintf("<span class='hlLabelRef'
4122                                 style='color : %s; background-color : %s'>%s</span>",
4123                                         $l[2], $l[3], $l[1]);
4124                         }
4125
4126                 return $labels_str;
4127
4128         }
4129
4130         function format_article_note($id, $note) {
4131
4132                 $str = "<div class='articleNote'        onclick=\"editArticleNote($id)\">
4133                         <div class='noteEdit' onclick=\"editArticleNote($id)\">".
4134                         __('(edit note)')."</div>$note</div>";
4135
4136                 return $str;
4137         }
4138
4139         function toggle_collapse_cat($link, $cat_id, $mode) {
4140                 if ($cat_id > 0) {
4141                         $mode = bool_to_sql_bool($mode);
4142
4143                         db_query($link, "UPDATE ttrss_feed_categories SET
4144                                 collapsed = $mode WHERE id = '$cat_id' AND owner_uid = " .
4145                                 $_SESSION["uid"]);
4146                 } else {
4147                         $pref_name = '';
4148
4149                         switch ($cat_id) {
4150                         case -1:
4151                                 $pref_name = '_COLLAPSED_SPECIAL';
4152                                 break;
4153                         case -2:
4154                                 $pref_name = '_COLLAPSED_LABELS';
4155                                 break;
4156                         case 0:
4157                                 $pref_name = '_COLLAPSED_UNCAT';
4158                                 break;
4159                         }
4160
4161                         if ($pref_name) {
4162                                 if ($mode) {
4163                                         set_pref($link, $pref_name, 'true');
4164                                 } else {
4165                                         set_pref($link, $pref_name, 'false');
4166                                 }
4167                         }
4168                 }
4169         }
4170
4171         function remove_feed($link, $id, $owner_uid) {
4172
4173                 if ($id > 0) {
4174
4175                         /* save starred articles in Archived feed */
4176
4177                         db_query($link, "BEGIN");
4178
4179                         /* prepare feed if necessary */
4180
4181                         $result = db_query($link, "SELECT id FROM ttrss_archived_feeds
4182                                 WHERE id = '$id'");
4183
4184                         if (db_num_rows($result) == 0) {
4185                                 db_query($link, "INSERT INTO ttrss_archived_feeds
4186                                         (id, owner_uid, title, feed_url, site_url)
4187                                 SELECT id, owner_uid, title, feed_url, site_url from ttrss_feeds
4188                                 WHERE id = '$id'");
4189                         }
4190
4191                         db_query($link, "UPDATE ttrss_user_entries SET feed_id = NULL,
4192                                 orig_feed_id = '$id' WHERE feed_id = '$id' AND
4193                                         marked = true AND owner_uid = $owner_uid");
4194
4195                         /* Remove access key for the feed */
4196
4197                         db_query($link, "DELETE FROM ttrss_access_keys WHERE
4198                                 feed_id = '$id' AND owner_uid = $owner_uid");
4199
4200                         /* remove the feed */
4201
4202                         db_query($link, "DELETE FROM ttrss_feeds
4203                                         WHERE id = '$id' AND owner_uid = $owner_uid");
4204
4205                         db_query($link, "COMMIT");
4206
4207                         if (file_exists(ICONS_DIR . "/$id.ico")) {
4208                                 unlink(ICONS_DIR . "/$id.ico");
4209                         }
4210
4211                         ccache_remove($link, $id, $owner_uid);
4212
4213                 } else {
4214                         label_remove($link, -11-$id, $owner_uid);
4215                         ccache_remove($link, -11-$id, $owner_uid);
4216                 }
4217         }
4218
4219         function add_feed_category($link, $feed_cat) {
4220
4221                 if (!$feed_cat) return false;
4222
4223                 db_query($link, "BEGIN");
4224
4225                 $result = db_query($link,
4226                         "SELECT id FROM ttrss_feed_categories
4227                         WHERE title = '$feed_cat' AND owner_uid = ".$_SESSION["uid"]);
4228
4229                 if (db_num_rows($result) == 0) {
4230
4231                         $result = db_query($link,
4232                                 "INSERT INTO ttrss_feed_categories (owner_uid,title)
4233                                 VALUES ('".$_SESSION["uid"]."', '$feed_cat')");
4234
4235                         db_query($link, "COMMIT");
4236
4237                         return true;
4238                 }
4239
4240                 return false;
4241         }
4242
4243         function remove_feed_category($link, $id, $owner_uid) {
4244
4245                 db_query($link, "DELETE FROM ttrss_feed_categories
4246                         WHERE id = '$id' AND owner_uid = $owner_uid");
4247
4248                 ccache_remove($link, $id, $owner_uid, true);
4249         }
4250
4251         function archive_article($link, $id, $owner_uid) {
4252                 db_query($link, "BEGIN");
4253
4254                 $result = db_query($link, "SELECT feed_id FROM ttrss_user_entries
4255                         WHERE ref_id = '$id' AND owner_uid = $owner_uid");
4256
4257                 if (db_num_rows($result) != 0) {
4258
4259                         /* prepare the archived table */
4260
4261                         $feed_id = (int) db_fetch_result($result, 0, "feed_id");
4262
4263                         if ($feed_id) {
4264                                 $result = db_query($link, "SELECT id FROM ttrss_archived_feeds
4265                                         WHERE id = '$feed_id'");
4266
4267                                 if (db_num_rows($result) == 0) {
4268                                         db_query($link, "INSERT INTO ttrss_archived_feeds
4269                                                 (id, owner_uid, title, feed_url, site_url)
4270                                         SELECT id, owner_uid, title, feed_url, site_url from ttrss_feeds
4271                                         WHERE id = '$feed_id'");
4272                                 }
4273
4274                                 db_query($link, "UPDATE ttrss_user_entries
4275                                         SET orig_feed_id = feed_id, feed_id = NULL
4276                                         WHERE ref_id = '$id' AND owner_uid = " . $_SESSION["uid"]);
4277                         }
4278                 }
4279
4280                 db_query($link, "COMMIT");
4281         }
4282
4283         function getArticleFeed($link, $id) {
4284                 $result = db_query($link, "SELECT feed_id FROM ttrss_user_entries
4285                         WHERE ref_id = '$id' AND owner_uid = " . $_SESSION["uid"]);
4286
4287                 if (db_num_rows($result) != 0) {
4288                         return db_fetch_result($result, 0, "feed_id");
4289                 } else {
4290                         return 0;
4291                 }
4292         }
4293
4294         /**
4295          * Fixes incomplete URLs by prepending "http://".
4296          * Also replaces feed:// with http://, and
4297          * prepends a trailing slash if the url is a domain name only.
4298          *
4299          * @param string $url Possibly incomplete URL
4300          *
4301          * @return string Fixed URL.
4302          */
4303         function fix_url($url) {
4304                 if (strpos($url, '://') === false) {
4305                         $url = 'http://' . $url;
4306                 } else if (substr($url, 0, 5) == 'feed:') {
4307                         $url = 'http:' . substr($url, 5);
4308                 }
4309
4310                 //prepend slash if the URL has no slash in it
4311                 // "http://www.example" -> "http://www.example/"
4312                 if (strpos($url, '/', strpos($url, ':') + 3) === false) {
4313                         $url .= '/';
4314                 }
4315
4316                 if ($url != "http:///")
4317                         return $url;
4318                 else
4319                         return '';
4320         }
4321
4322         function validate_feed_url($url) {
4323                 $parts = parse_url($url);
4324
4325                 return ($parts['scheme'] == 'http' || $parts['scheme'] == 'feed' || $parts['scheme'] == 'https');
4326
4327         }
4328
4329         function get_article_enclosures($link, $id) {
4330
4331                 global $memcache;
4332
4333                 $query = "SELECT * FROM ttrss_enclosures
4334                         WHERE post_id = '$id' AND content_url != ''";
4335
4336                 $obj_id = md5("ENCLOSURES:$id");
4337
4338                 $rv = array();
4339
4340                 if ($memcache && $obj = $memcache->get($obj_id)) {
4341                         $rv = $obj;
4342                 } else {
4343                         $result = db_query($link, $query);
4344
4345                         if (db_num_rows($result) > 0) {
4346                                 while ($line = db_fetch_assoc($result)) {
4347                                         array_push($rv, $line);
4348                                 }
4349                                 if ($memcache) $memcache->add($obj_id, $rv, 0, 3600);
4350                         }
4351                 }
4352
4353                 return $rv;
4354         }
4355
4356         function api_get_feeds($link, $cat_id, $unread_only, $limit, $offset) {
4357
4358                         $feeds = array();
4359
4360                         /* Labels */
4361
4362                         if ($cat_id == -4 || $cat_id == -2) {
4363                                 $counters = getLabelCounters($link, true);
4364
4365                                 foreach (array_values($counters) as $cv) {
4366
4367                                         $unread = $cv["counter"];
4368
4369                                         if ($unread || !$unread_only) {
4370
4371                                                 $row = array(
4372                                                                 "id" => $cv["id"],
4373                                                                 "title" => $cv["description"],
4374                                                                 "unread" => $cv["counter"],
4375                                                                 "cat_id" => -2,
4376                                                         );
4377
4378                                                 array_push($feeds, $row);
4379                                         }
4380                                 }
4381                         }
4382
4383                         /* Virtual feeds */
4384
4385                         if ($cat_id == -4 || $cat_id == -1) {
4386                                 foreach (array(-1, -2, -3, -4, 0) as $i) {
4387                                         $unread = getFeedUnread($link, $i);
4388
4389                                         if ($unread || !$unread_only) {
4390                                                 $title = getFeedTitle($link, $i);
4391
4392                                                 $row = array(
4393                                                                 "id" => $i,
4394                                                                 "title" => $title,
4395                                                                 "unread" => $unread,
4396                                                                 "cat_id" => -1,
4397                                                         );
4398                                                 array_push($feeds, $row);
4399                                         }
4400
4401                                 }
4402                         }
4403
4404                         /* Real feeds */
4405
4406                         if ($limit) {
4407                                 $limit_qpart = "LIMIT $limit OFFSET $offset";
4408                         } else {
4409                                 $limit_qpart = "";
4410                         }
4411
4412                         if ($cat_id == -4 || $cat_id == -3) {
4413                                 $result = db_query($link, "SELECT
4414                                         id, feed_url, cat_id, title, ".
4415                                                 SUBSTRING_FOR_DATE."(last_updated,1,19) AS last_updated
4416                                                 FROM ttrss_feeds WHERE owner_uid = " . $_SESSION["uid"] .
4417                                                 " ORDER BY cat_id, title " . $limit_qpart);
4418                         } else {
4419
4420                                 if ($cat_id)
4421                                         $cat_qpart = "cat_id = '$cat_id'";
4422                                 else
4423                                         $cat_qpart = "cat_id IS NULL";
4424
4425                                 $result = db_query($link, "SELECT
4426                                         id, feed_url, cat_id, title, ".
4427                                                 SUBSTRING_FOR_DATE."(last_updated,1,19) AS last_updated
4428                                                 FROM ttrss_feeds WHERE
4429                                                 $cat_qpart AND owner_uid = " . $_SESSION["uid"] .
4430                                                 " ORDER BY cat_id, title " . $limit_qpart);
4431                         }
4432
4433                         while ($line = db_fetch_assoc($result)) {
4434
4435                                 $unread = getFeedUnread($link, $line["id"]);
4436
4437                                 $has_icon = feed_has_icon($line['id']);
4438
4439                                 if ($unread || !$unread_only) {
4440
4441                                         $row = array(
4442                                                         "feed_url" => $line["feed_url"],
4443                                                         "title" => $line["title"],
4444                                                         "id" => (int)$line["id"],
4445                                                         "unread" => (int)$unread,
4446                                                         "has_icon" => $has_icon,
4447                                                         "cat_id" => (int)$line["cat_id"],
4448                                                         "last_updated" => strtotime($line["last_updated"])
4449                                                 );
4450
4451                                         array_push($feeds, $row);
4452                                 }
4453                         }
4454
4455                 return $feeds;
4456         }
4457
4458         function api_get_headlines($link, $feed_id, $limit, $offset,
4459                                 $filter, $is_cat, $show_excerpt, $show_content, $view_mode, $order,
4460                                 $include_attachments, $since_id,
4461                                 $search = "", $search_mode = "", $match_on = "") {
4462
4463                         $qfh_ret = queryFeedHeadlines($link, $feed_id, $limit,
4464                                 $view_mode, $is_cat, $search, $search_mode, $match_on,
4465                                 $order, $offset, 0, false, $since_id);
4466
4467                         $result = $qfh_ret[0];
4468                         $feed_title = $qfh_ret[1];
4469
4470                         $headlines = array();
4471
4472                         while ($line = db_fetch_assoc($result)) {
4473                                 $is_updated = ($line["last_read"] == "" &&
4474                                         ($line["unread"] != "t" && $line["unread"] != "1"));
4475
4476                                 $tags = explode(",", $line["tag_cache"]);
4477                                 $labels = json_decode($line["label_cache"], true);
4478
4479                                 //if (!$tags) $tags = get_article_tags($link, $line["id"]);
4480                                 //if (!$labels) $labels = get_article_labels($link, $line["id"]);
4481
4482                                 $headline_row = array(
4483                                                 "id" => (int)$line["id"],
4484                                                 "unread" => sql_bool_to_bool($line["unread"]),
4485                                                 "marked" => sql_bool_to_bool($line["marked"]),
4486                                                 "published" => sql_bool_to_bool($line["published"]),
4487                                                 "updated" => strtotime($line["updated"]),
4488                                                 "is_updated" => $is_updated,
4489                                                 "title" => $line["title"],
4490                                                 "link" => $line["link"],
4491                                                 "feed_id" => $line["feed_id"],
4492                                                 "tags" => $tags,
4493                                         );
4494
4495                                         if ($include_attachments)
4496                                                 $headline_row['attachments'] = get_article_enclosures($link,
4497                                                         $line['id']);
4498
4499                                 if ($show_excerpt) {
4500                                         $excerpt = truncate_string(strip_tags($line["content_preview"]), 100);
4501                                         $headline_row["excerpt"] = $excerpt;
4502                                 }
4503
4504                                 if ($show_content) {
4505                                         $headline_row["content"] = $line["content_preview"];
4506                                 }
4507
4508                                 // unify label output to ease parsing
4509                                 if ($labels["no-labels"] == 1) $labels = array();
4510
4511                                 $headline_row["labels"] = $labels;
4512
4513                                 array_push($headlines, $headline_row);
4514                         }
4515
4516                         return $headlines;
4517         }
4518
4519         function generate_error_feed($link, $error) {
4520                 $reply = array();
4521
4522                 $reply['headlines']['id'] = -6;
4523                 $reply['headlines']['is_cat'] = false;
4524
4525                 $reply['headlines']['toolbar'] = '';
4526                 $reply['headlines']['content'] = "<div class='whiteBox'>". $error . "</div>";
4527
4528                 $reply['headlines-info'] = array("count" => 0,
4529                         "vgroup_last_feed" => '',
4530                         "unread" => 0,
4531                         "disable_cache" => true);
4532
4533                 return $reply;
4534         }
4535
4536
4537         function generate_dashboard_feed($link) {
4538                 $reply = array();
4539
4540                 $reply['headlines']['id'] = -5;
4541                 $reply['headlines']['is_cat'] = false;
4542
4543                 $reply['headlines']['toolbar'] = '';
4544                 $reply['headlines']['content'] = "<div class='whiteBox'>".__('No feed selected.');
4545
4546                 $reply['headlines']['content'] .= "<p class=\"small\"><span class=\"insensitive\">";
4547
4548                 $result = db_query($link, "SELECT ".SUBSTRING_FOR_DATE."(MAX(last_updated), 1, 19) AS last_updated FROM ttrss_feeds
4549                         WHERE owner_uid = " . $_SESSION['uid']);
4550
4551                 $last_updated = db_fetch_result($result, 0, "last_updated");
4552                 $last_updated = make_local_datetime($link, $last_updated, false);
4553
4554                 $reply['headlines']['content'] .= sprintf(__("Feeds last updated at %s"), $last_updated);
4555
4556                 $result = db_query($link, "SELECT COUNT(id) AS num_errors
4557                         FROM ttrss_feeds WHERE last_error != '' AND owner_uid = ".$_SESSION["uid"]);
4558
4559                 $num_errors = db_fetch_result($result, 0, "num_errors");
4560
4561                 if ($num_errors > 0) {
4562                         $reply['headlines']['content'] .= "<br/>";
4563                         $reply['headlines']['content'] .= "<a class=\"insensitive\" href=\"#\" onclick=\"showFeedsWithErrors()\">".
4564                                 __('Some feeds have update errors (click for details)')."</a>";
4565                 }
4566                 $reply['headlines']['content'] .= "</span></p>";
4567
4568                 $reply['headlines-info'] = array("count" => 0,
4569                         "vgroup_last_feed" => '',
4570                         "unread" => 0,
4571                         "disable_cache" => true);
4572
4573                 return $reply;
4574         }
4575
4576         function save_email_address($link, $email) {
4577                 // FIXME: implement persistent storage of emails
4578
4579                 if (!$_SESSION['stored_emails'])
4580                         $_SESSION['stored_emails'] = array();
4581
4582                 if (!in_array($email, $_SESSION['stored_emails']))
4583                         array_push($_SESSION['stored_emails'], $email);
4584         }
4585
4586         function update_feed_access_key($link, $feed_id, $is_cat, $owner_uid = false) {
4587                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
4588
4589                 $sql_is_cat = bool_to_sql_bool($is_cat);
4590
4591                 $result = db_query($link, "SELECT access_key FROM ttrss_access_keys
4592                         WHERE feed_id = '$feed_id'      AND is_cat = $sql_is_cat
4593                         AND owner_uid = " . $owner_uid);
4594
4595                 if (db_num_rows($result) == 1) {
4596                         $key = db_escape_string(sha1(uniqid(rand(), true)));
4597
4598                         db_query($link, "UPDATE ttrss_access_keys SET access_key = '$key'
4599                                 WHERE feed_id = '$feed_id' AND is_cat = $sql_is_cat
4600                                 AND owner_uid = " . $owner_uid);
4601
4602                         return $key;
4603
4604                 } else {
4605                         return get_feed_access_key($link, $feed_id, $is_cat, $owner_uid);
4606                 }
4607         }
4608
4609         function get_feed_access_key($link, $feed_id, $is_cat, $owner_uid = false) {
4610
4611                 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
4612
4613                 $sql_is_cat = bool_to_sql_bool($is_cat);
4614
4615                 $result = db_query($link, "SELECT access_key FROM ttrss_access_keys
4616                         WHERE feed_id = '$feed_id'      AND is_cat = $sql_is_cat
4617                         AND owner_uid = " . $owner_uid);
4618
4619                 if (db_num_rows($result) == 1) {
4620                         return db_fetch_result($result, 0, "access_key");
4621                 } else {
4622                         $key = db_escape_string(sha1(uniqid(rand(), true)));
4623
4624                         $result = db_query($link, "INSERT INTO ttrss_access_keys
4625                                 (access_key, feed_id, is_cat, owner_uid)
4626                                 VALUES ('$key', '$feed_id', $sql_is_cat, '$owner_uid')");
4627
4628                         return $key;
4629                 }
4630                 return false;
4631         }
4632
4633         /**
4634          * Extracts RSS/Atom feed URLs from the given HTML URL.
4635          *
4636          * @param string $url HTML page URL
4637          *
4638          * @return array Array of feeds. Key is the full URL, value the title
4639          */
4640         function get_feeds_from_html($url, $login = false, $pass = false)
4641         {
4642                 $url     = fix_url($url);
4643                 $baseUrl = substr($url, 0, strrpos($url, '/') + 1);
4644
4645                 libxml_use_internal_errors(true);
4646
4647                 $content = @fetch_file_contents($url, false, $login, $pass);
4648
4649                 $doc = new DOMDocument();
4650                 $doc->loadHTML($content);
4651                 $xpath = new DOMXPath($doc);
4652                 $entries = $xpath->query('/html/head/link[@rel="alternate"]');
4653                 $feedUrls = array();
4654                 foreach ($entries as $entry) {
4655                         if ($entry->hasAttribute('href')) {
4656                                 $title = $entry->getAttribute('title');
4657                                 if ($title == '') {
4658                                         $title = $entry->getAttribute('type');
4659                                 }
4660                                 $feedUrl = rewrite_relative_url(
4661                                         $baseUrl, $entry->getAttribute('href')
4662                                 );
4663                                 $feedUrls[$feedUrl] = $title;
4664                         }
4665                 }
4666                 return $feedUrls;
4667         }
4668
4669         /**
4670          * Checks if the content behind the given URL is a HTML file
4671          *
4672          * @param string $url URL to check
4673          *
4674          * @return boolean True if the URL contains HTML content
4675          */
4676         function url_is_html($url, $login = false, $pass = false) {
4677                 $content = substr(fetch_file_contents($url, false, $login, $pass), 0, 1000);
4678
4679                 if (stripos($content, '<html>') === false
4680                         && stripos($content, '<html ') === false
4681                 ) {
4682                         return false;
4683                 }
4684
4685                 return true;
4686         }
4687
4688         function print_label_select($link, $name, $value, $attributes = "") {
4689
4690                 $result = db_query($link, "SELECT caption FROM ttrss_labels2
4691                         WHERE owner_uid = '".$_SESSION["uid"]."' ORDER BY caption");
4692
4693                 print "<select default=\"$value\" name=\"" . htmlspecialchars($name) .
4694                         "\" $attributes onchange=\"labelSelectOnChange(this)\" >";
4695
4696                 while ($line = db_fetch_assoc($result)) {
4697
4698                         $issel = ($line["caption"] == $value) ? "selected=\"1\"" : "";
4699
4700                         print "<option value=\"".htmlspecialchars($line["caption"])."\"
4701                                 $issel>" . htmlspecialchars($line["caption"]) . "</option>";
4702
4703                 }
4704
4705 #               print "<option value=\"ADD_LABEL\">" .__("Add label...") . "</option>";
4706
4707                 print "</select>";
4708
4709
4710         }
4711
4712         function format_article_enclosures($link, $id, $always_display_enclosures,
4713                                         $article_content) {
4714
4715                 $result = get_article_enclosures($link, $id);
4716                 $rv = '';
4717
4718                 if (count($result) > 0) {
4719
4720                         $entries_html = array();
4721                         $entries = array();
4722
4723                         foreach ($result as $line) {
4724
4725                                 $url = $line["content_url"];
4726                                 $ctype = $line["content_type"];
4727
4728                                 if (!$ctype) $ctype = __("unknown type");
4729
4730 #                               $filename = substr($url, strrpos($url, "/")+1);
4731
4732                                 $entry = format_inline_player($link, $url, $ctype);
4733
4734 #                               $entry .= " <a target=\"_blank\" href=\"" . htmlspecialchars($url) . "\">" .
4735 #                                       $filename . " (" . $ctype . ")" . "</a>";
4736
4737                                 array_push($entries_html, $entry);
4738
4739                                 $entry = array();
4740
4741                                 $entry["type"] = $ctype;
4742                                 $entry["filename"] = $filename;
4743                                 $entry["url"] = $url;
4744
4745                                 array_push($entries, $entry);
4746                         }
4747
4748                         $rv .= "<div class=\"postEnclosures\">";
4749
4750                         if (!get_pref($link, "STRIP_IMAGES")) {
4751                                 if ($always_display_enclosures ||
4752                                                         !preg_match("/<img/i", $article_content)) {
4753
4754                                         foreach ($entries as $entry) {
4755
4756                                                 if (preg_match("/image/", $entry["type"]) ||
4757                                                                 preg_match("/\.(jpg|png|gif|bmp)/i", $entry["filename"])) {
4758
4759                                                                 $rv .= "<p><img
4760                                                                 alt=\"".htmlspecialchars($entry["filename"])."\"
4761                                                                 src=\"" .htmlspecialchars($entry["url"]) . "\"/></p>";
4762                                                 }
4763                                         }
4764                                 }
4765                         }
4766
4767                         if (count($entries) == 1) {
4768                                 $rv .= __("Attachment:") . " ";
4769                         } else {
4770                                 $rv .= __("Attachments:") . " ";
4771                         }
4772
4773                         $rv .= join(", ", $entries_html);
4774
4775                         $rv .= "</div>";
4776                 }
4777
4778                 return $rv;
4779         }
4780
4781         function getLastArticleId($link) {
4782                 $result = db_query($link, "SELECT MAX(ref_id) AS id FROM ttrss_user_entries
4783                         WHERE owner_uid = " . $_SESSION["uid"]);
4784
4785                 if (db_num_rows($result) == 1) {
4786                         return db_fetch_result($result, 0, "id");
4787                 } else {
4788                         return -1;
4789                 }
4790         }
4791
4792         function build_url($parts) {
4793                 return $parts['scheme'] . "://" . $parts['host'] . $parts['path'];
4794         }
4795
4796         /**
4797          * Converts a (possibly) relative URL to a absolute one.
4798          *
4799          * @param string $url     Base URL (i.e. from where the document is)
4800          * @param string $rel_url Possibly relative URL in the document
4801          *
4802          * @return string Absolute URL
4803          */
4804         function rewrite_relative_url($url, $rel_url) {
4805                 if (strpos($rel_url, "://") !== false) {
4806                         return $rel_url;
4807                 } else if (strpos($rel_url, "/") === 0)
4808                 {
4809                         $parts = parse_url($url);
4810                         $parts['path'] = $rel_url;
4811
4812                         return build_url($parts);
4813
4814                 } else {
4815                         $parts = parse_url($url);
4816                         if (!isset($parts['path'])) {
4817                                 $parts['path'] = '/';
4818                         }
4819                         $dir = $parts['path'];
4820                         if (substr($dir, -1) !== '/') {
4821                                 $dir = dirname($parts['path']);
4822                                 $dir !== '/' && $dir .= '/';
4823                         }
4824                         $parts['path'] = $dir . $rel_url;
4825
4826                         return build_url($parts);
4827                 }
4828         }
4829
4830         function sphinx_search($query, $offset = 0, $limit = 30) {
4831                 require_once 'lib/sphinxapi.php';
4832
4833                 $sphinxClient = new SphinxClient();
4834
4835                 $sphinxClient->SetServer('localhost', 9312);
4836                 $sphinxClient->SetConnectTimeout(1);
4837
4838                 $sphinxClient->SetFieldWeights(array('title' => 70, 'content' => 30,
4839                         'feed_title' => 20));
4840
4841                 $sphinxClient->SetMatchMode(SPH_MATCH_EXTENDED2);
4842                 $sphinxClient->SetRankingMode(SPH_RANK_PROXIMITY_BM25);
4843                 $sphinxClient->SetLimits($offset, $limit, 1000);
4844                 $sphinxClient->SetArrayResult(false);
4845                 $sphinxClient->SetFilter('owner_uid', array($_SESSION['uid']));
4846
4847                 $result = $sphinxClient->Query($query, SPHINX_INDEX);
4848
4849                 $ids = array();
4850
4851                 if (is_array($result['matches'])) {
4852                         foreach (array_keys($result['matches']) as $int_id) {
4853                                 $ref_id = $result['matches'][$int_id]['attrs']['ref_id'];
4854                                 array_push($ids, $ref_id);
4855                         }
4856                 }
4857
4858                 return $ids;
4859         }
4860
4861         function cleanup_tags($link, $days = 14, $limit = 1000) {
4862
4863                 if (DB_TYPE == "pgsql") {
4864                         $interval_query = "date_updated < NOW() - INTERVAL '$days days'";
4865                 } else if (DB_TYPE == "mysql") {
4866                         $interval_query = "date_updated < DATE_SUB(NOW(), INTERVAL $days DAY)";
4867                 }
4868
4869                 $tags_deleted = 0;
4870
4871                 while ($limit > 0) {
4872                         $limit_part = 500;
4873
4874                         $query = "SELECT ttrss_tags.id AS id
4875                                 FROM ttrss_tags, ttrss_user_entries, ttrss_entries
4876                                 WHERE post_int_id = int_id AND $interval_query AND
4877                                 ref_id = ttrss_entries.id AND tag_cache != '' LIMIT $limit_part";
4878
4879                         $result = db_query($link, $query);
4880
4881                         $ids = array();
4882
4883                         while ($line = db_fetch_assoc($result)) {
4884                                 array_push($ids, $line['id']);
4885                         }
4886
4887                         if (count($ids) > 0) {
4888                                 $ids = join(",", $ids);
4889                                 print ".";
4890
4891                                 $tmp_result = db_query($link, "DELETE FROM ttrss_tags WHERE id IN ($ids)");
4892                                 $tags_deleted += db_affected_rows($link, $tmp_result);
4893                         } else {
4894                                 break;
4895                         }
4896
4897                         $limit -= $limit_part;
4898                 }
4899
4900                 print "\n";
4901
4902                 return $tags_deleted;
4903         }
4904
4905         function print_user_stylesheet($link) {
4906                 $value = get_pref($link, 'USER_STYLESHEET');
4907
4908                 if ($value) {
4909                         print "<style type=\"text/css\">";
4910                         print str_replace("<br/>", "\n", $value);
4911                         print "</style>";
4912                 }
4913
4914         }
4915
4916 /*      function rewrite_urls($line) {
4917                 global $url_regex;
4918
4919                 $urls = null;
4920
4921                 $result = preg_replace("/((?<!=.)((http|https|ftp)+):\/\/[^ ,!]+)/i",
4922                         "<a target=\"_blank\" href=\"\\1\">\\1</a>", $line);
4923
4924                 return $result;
4925         } */
4926
4927         function rewrite_urls($html) {
4928                 libxml_use_internal_errors(true);
4929
4930                 $charset_hack = '<head>
4931                         <meta http-equiv="Content-Type" content="text/html; charset=utf-8"/>
4932                 </head>';
4933
4934                 $doc = new DOMDocument();
4935                 $doc->loadHTML($charset_hack . $html);
4936                 $xpath = new DOMXPath($doc);
4937
4938                 $entries = $xpath->query('//*/text()');
4939
4940                 foreach ($entries as $entry) {
4941                         if (strstr($entry->wholeText, "://") !== false) {
4942                                 $text = preg_replace("/((?<!=.)((http|https|ftp)+):\/\/[^ ,!]+)/i",
4943                                         "<a target=\"_blank\" href=\"\\1\">\\1</a>", $entry->wholeText);
4944
4945                                 if ($text != $entry->wholeText) {
4946                                         $cdoc = new DOMDocument();
4947                                         $cdoc->loadHTML($charset_hack . $text);
4948
4949
4950                                         foreach ($cdoc->childNodes as $cnode) {
4951                                                 $cnode = $doc->importNode($cnode, true);
4952
4953                                                 if ($cnode) {
4954                                                         $entry->parentNode->insertBefore($cnode);
4955                                                 }
4956                                         }
4957
4958                                         $entry->parentNode->removeChild($entry);
4959
4960                                 }
4961                         }
4962                 }
4963
4964                 $node = $doc->getElementsByTagName('body')->item(0);
4965
4966                 // http://tt-rss.org/forum/viewtopic.php?f=1&t=970
4967                 if ($node)
4968                         return $doc->saveXML($node, LIBXML_NOEMPTYTAG);
4969                 else
4970                         return $html;
4971         }
4972
4973         function filter_to_sql($filter) {
4974                 $query = "";
4975
4976                 $regexp_valid = preg_match('/' . $filter['reg_exp'] . '/',
4977                         $filter['reg_exp']) !== FALSE;
4978
4979                 if ($regexp_valid) {
4980
4981                         if (DB_TYPE == "pgsql")
4982                                 $reg_qpart = "~";
4983                         else
4984                                 $reg_qpart = "REGEXP";
4985
4986                         switch ($filter["type"]) {
4987                                 case "title":
4988                                         $query = "LOWER(ttrss_entries.title) $reg_qpart LOWER('".
4989                                                 $filter['reg_exp'] . "')";
4990                                         break;
4991                                 case "content":
4992                                         $query = "LOWER(ttrss_entries.content) $reg_qpart LOWER('".
4993                                                 $filter['reg_exp'] . "')";
4994                                         break;
4995                                 case "both":
4996                                         $query = "LOWER(ttrss_entries.title) $reg_qpart LOWER('".
4997                                                 $filter['reg_exp'] . "') OR LOWER(" .
4998                                                 "ttrss_entries.content) $reg_qpart LOWER('" . $filter['reg_exp'] . "')";
4999                                         break;
5000                                 case "tag":
5001                                         $query = "LOWER(ttrss_user_entries.tag_cache) $reg_qpart LOWER('".
5002                                                 $filter['reg_exp'] . "')";
5003                                         break;
5004                                 case "link":
5005                                         $query = "LOWER(ttrss_entries.link) $reg_qpart LOWER('".
5006                                                 $filter['reg_exp'] . "')";
5007                                         break;
5008                                 case "date":
5009
5010                                         if ($filter["filter_param"] == "before")
5011                                                 $cmp_qpart = "<";
5012                                         else
5013                                                 $cmp_qpart = ">=";
5014
5015                                         $timestamp = date("Y-m-d H:N:s", strtotime($filter["reg_exp"]));
5016                                         $query = "ttrss_entries.date_entered $cmp_qpart '$timestamp'";
5017                                         break;
5018                                 case "author":
5019                                         $query = "LOWER(ttrss_entries.author) $reg_qpart LOWER('".
5020                                                 $filter['reg_exp'] . "')";
5021                                         break;
5022                         }
5023
5024                         if ($filter["inverse"])
5025                                 $query = "NOT ($query)";
5026
5027                         if ($query) {
5028                                 if (DB_TYPE == "pgsql") {
5029                                         $query = " ($query) AND ttrss_entries.date_entered > NOW() - INTERVAL '14 days'";
5030                                 } else {
5031                                         $query = " ($query) AND ttrss_entries.date_entered > DATE_SUB(NOW(), INTERVAL 14 DAY)";
5032                                 }
5033                                 $query .= " AND ";
5034                         }
5035
5036                         return $query;
5037                 } else {
5038                         return false;
5039                 }
5040         }
5041
5042         // Status codes:
5043         // -1  - never connected
5044         // 0   - no data received
5045         // 1   - data received successfully
5046         // 2   - did not receive valid data
5047         // >10 - server error, code + 10 (e.g. 16 means server error 6)
5048
5049         function get_linked_feeds($link, $instance_id = false) {
5050                 if ($instance_id)
5051                         $instance_qpart = "id = '$instance_id' AND ";
5052                 else
5053                         $instance_qpart = "";
5054
5055                 if (DB_TYPE == "pgsql") {
5056                         $date_qpart = "last_connected < NOW() - INTERVAL '6 hours'";
5057                 } else {
5058                         $date_qpart = "last_connected < DATE_SUB(NOW(), INTERVAL 6 HOUR)";
5059                 }
5060
5061                 $result = db_query($link, "SELECT id, access_key, access_url FROM ttrss_linked_instances
5062                         WHERE $instance_qpart $date_qpart ORDER BY last_connected");
5063
5064                 while ($line = db_fetch_assoc($result)) {
5065                         $id = $line['id'];
5066
5067                         _debug("Updating: " . $line['access_url'] . " ($id)");
5068
5069                         $fetch_url = $line['access_url'] . '/public.php?op=fbexport';
5070                         $post_query = 'key=' . $line['access_key'];
5071
5072                         $feeds = fetch_file_contents($fetch_url, false, false, false, $post_query);
5073
5074                         // try doing it the old way
5075                         if (!$feeds) {
5076                                 $fetch_url = $line['access_url'] . '/backend.php?op=fbexport';
5077                                 $feeds = fetch_file_contents($fetch_url, false, false, false, $post_query);
5078                         }
5079
5080                         if ($feeds) {
5081                                 $feeds = json_decode($feeds, true);
5082
5083                                 if ($feeds) {
5084                                         if ($feeds['error']) {
5085                                                 $status = $feeds['error']['code'] + 10;
5086                                         } else {
5087                                                 $status = 1;
5088
5089                                                 if (count($feeds['feeds']) > 0) {
5090
5091                                                         db_query($link, "DELETE FROM ttrss_linked_feeds
5092                                                                 WHERE instance_id = '$id'");
5093
5094                                                         foreach ($feeds['feeds'] as $feed) {
5095                                                                 $feed_url = db_escape_string($feed['feed_url']);
5096                                                                 $title = db_escape_string($feed['title']);
5097                                                                 $subscribers = db_escape_string($feed['subscribers']);
5098                                                                 $site_url = db_escape_string($feed['site_url']);
5099
5100                                                                 db_query($link, "INSERT INTO ttrss_linked_feeds
5101                                                                         (feed_url, site_url, title, subscribers, instance_id, created, updated)
5102                                                                 VALUES
5103                                                                         ('$feed_url', '$site_url', '$title', '$subscribers', '$id', NOW(), NOW())");
5104                                                         }
5105                                                 } else {
5106                                                         // received 0 feeds, this might indicate that
5107                                                         // the instance on the other hand is rebuilding feedbrowser cache
5108                                                         // we will try again later
5109
5110                                                         // TODO: maybe perform expiration based on updated here?
5111                                                 }
5112
5113                                                 _debug("Processed " . count($feeds['feeds']) . " feeds.");
5114                                         }
5115                                 } else {
5116                                         $status = 2;
5117                                 }
5118
5119                         } else {
5120                                 $status = 0;
5121                         }
5122
5123                         _debug("Status: $status");
5124
5125                         db_query($link, "UPDATE ttrss_linked_instances SET
5126                                 last_status_out = '$status', last_connected = NOW() WHERE id = '$id'");
5127
5128                 }
5129         }
5130
5131         function make_feed_browser($link, $search, $limit, $mode = 1) {
5132
5133                 $owner_uid = $_SESSION["uid"];
5134                 $rv = '';
5135
5136                 if ($search) {
5137                         $search_qpart = "AND (UPPER(feed_url) LIKE UPPER('%$search%') OR
5138                                                 UPPER(title) LIKE UPPER('%$search%'))";
5139                 } else {
5140                         $search_qpart = "";
5141                 }
5142
5143                 if ($mode == 1) {
5144                         /* $result = db_query($link, "SELECT feed_url, subscribers FROM
5145                          ttrss_feedbrowser_cache WHERE (SELECT COUNT(id) = 0 FROM ttrss_feeds AS tf
5146                         WHERE tf.feed_url = ttrss_feedbrowser_cache.feed_url
5147                         AND owner_uid = '$owner_uid') $search_qpart
5148                         ORDER BY subscribers DESC LIMIT $limit"); */
5149
5150                         $result = db_query($link, "SELECT feed_url, site_url, title, SUM(subscribers) AS subscribers FROM
5151                                                 (SELECT feed_url, site_url, title, subscribers FROM ttrss_feedbrowser_cache UNION ALL
5152                                                         SELECT feed_url, site_url, title, subscribers FROM ttrss_linked_feeds) AS qqq
5153                                                 WHERE
5154                                                         (SELECT COUNT(id) = 0 FROM ttrss_feeds AS tf
5155                                                                 WHERE tf.feed_url = qqq.feed_url
5156                                                                         AND owner_uid = '$owner_uid') $search_qpart
5157                                                 GROUP BY feed_url, site_url, title ORDER BY subscribers DESC LIMIT $limit");
5158
5159                 } else if ($mode == 2) {
5160                         $result = db_query($link, "SELECT *,
5161                                                 (SELECT COUNT(*) FROM ttrss_user_entries WHERE
5162                                                         orig_feed_id = ttrss_archived_feeds.id) AS articles_archived
5163                                                 FROM
5164                                                         ttrss_archived_feeds
5165                                                 WHERE
5166                                                 (SELECT COUNT(*) FROM ttrss_feeds
5167                                                         WHERE ttrss_feeds.feed_url = ttrss_archived_feeds.feed_url AND
5168                                                                 owner_uid = '$owner_uid') = 0   AND
5169                                                 owner_uid = '$owner_uid' $search_qpart
5170                                                 ORDER BY id DESC LIMIT $limit");
5171                 }
5172
5173                 $feedctr = 0;
5174
5175                 while ($line = db_fetch_assoc($result)) {
5176
5177                         if ($mode == 1) {
5178
5179                                 $feed_url = htmlspecialchars($line["feed_url"]);
5180                                 $site_url = htmlspecialchars($line["site_url"]);
5181                                 $subscribers = $line["subscribers"];
5182
5183                                 $check_box = "<input onclick='toggleSelectListRow2(this)'
5184                                                         dojoType=\"dijit.form.CheckBox\"
5185                                                         type=\"checkbox\" \">";
5186
5187                                 $class = ($feedctr % 2) ? "even" : "odd";
5188
5189                                 $site_url = "<a target=\"_blank\"
5190                                                         href=\"$site_url\">
5191                                                         <span class=\"fb_feedTitle\">".
5192                                 htmlspecialchars($line["title"])."</span></a>";
5193
5194                                 $feed_url = "<a target=\"_blank\" class=\"fb_feedUrl\"
5195                                                         href=\"$feed_url\"><img src='images/feed-icon-12x12.png'
5196                                                         style='vertical-align : middle'></a>";
5197
5198                                 $rv .= "<li>$check_box $feed_url $site_url".
5199                                                         "&nbsp;<span class='subscribers'>($subscribers)</span></li>";
5200
5201                         } else if ($mode == 2) {
5202                                 $feed_url = htmlspecialchars($line["feed_url"]);
5203                                 $site_url = htmlspecialchars($line["site_url"]);
5204                                 $title = htmlspecialchars($line["title"]);
5205
5206                                 $check_box = "<input onclick='toggleSelectListRow2(this)' dojoType=\"dijit.form.CheckBox\"
5207                                                         type=\"checkbox\">";
5208
5209                                 $class = ($feedctr % 2) ? "even" : "odd";
5210
5211                                 if ($line['articles_archived'] > 0) {
5212                                         $archived = sprintf(__("%d archived articles"), $line['articles_archived']);
5213                                         $archived = "&nbsp;<span class='subscribers'>($archived)</span>";
5214                                 } else {
5215                                         $archived = '';
5216                                 }
5217
5218                                 $site_url = "<a target=\"_blank\"
5219                                                         href=\"$site_url\">
5220                                                         <span class=\"fb_feedTitle\">".
5221                                 htmlspecialchars($line["title"])."</span></a>";
5222
5223                                 $feed_url = "<a target=\"_blank\" class=\"fb_feedUrl\"
5224                                                         href=\"$feed_url\"><img src='images/feed-icon-12x12.png'
5225                                                         style='vertical-align : middle'></a>";
5226
5227
5228                                 $rv .= "<li id=\"FBROW-".$line["id"]."\">".
5229                                                         "$check_box $feed_url $site_url $archived</li>";
5230                         }
5231
5232                         ++$feedctr;
5233                 }
5234
5235                 if ($feedctr == 0) {
5236                         $rv .= "<li style=\"text-align : center\"><p>".__('No feeds found.')."</p></li>";
5237                 }
5238
5239                 return $rv;
5240         }
5241
5242         if (!function_exists('gzdecode')) {
5243                 function gzdecode($string) { // no support for 2nd argument
5244                         return file_get_contents('compress.zlib://data:who/cares;base64,'.
5245                                 base64_encode($string));
5246                 }
5247         }
5248
5249         function perform_data_import($link, $filename, $owner_uid) {
5250
5251                 $num_imported = 0;
5252                 $num_processed = 0;
5253                 $num_feeds_created = 0;
5254
5255                 $doc = @DOMDocument::load($filename);
5256
5257                 if (!$doc) {
5258                         $contents = file_get_contents($filename);
5259
5260                         if ($contents) {
5261                                 $data = @gzuncompress($contents);
5262                         }
5263
5264                         if (!$data) {
5265                                 $data = @gzdecode($contents);
5266                         }
5267
5268                         if ($data)
5269                                 $doc = DOMDocument::loadXML($data);
5270                 }
5271
5272                 if ($doc) {
5273
5274                         $xpath = new DOMXpath($doc);
5275
5276                         $container = $doc->firstChild;
5277
5278                         if ($container && $container->hasAttribute('schema-version')) {
5279                                 $schema_version = $container->getAttribute('schema-version');
5280
5281                                 if ($schema_version != SCHEMA_VERSION) {
5282                                         print "<p>" .__("Could not import: incorrect schema version.") . "</p>";
5283                                         return;
5284                                 }
5285
5286                         } else {
5287                                 print "<p>" . __("Could not import: unrecognized document format.") . "</p>";
5288                                 return;
5289                         }
5290
5291                         $articles = $xpath->query("//article");
5292
5293                         foreach ($articles as $article_node) {
5294                                 if ($article_node->childNodes) {
5295
5296                                         $ref_id = 0;
5297
5298                                         $article = array();
5299
5300                                         foreach ($article_node->childNodes as $child) {
5301                                                 if ($child->nodeName != 'label_cache')
5302                                                         $article[$child->nodeName] = db_escape_string($child->nodeValue);
5303                                                 else
5304                                                         $article[$child->nodeName] = $child->nodeValue;
5305                                         }
5306
5307                                         //print_r($article);
5308
5309                                         if ($article['guid']) {
5310
5311                                                 ++$num_processed;
5312
5313                                                 //db_query($link, "BEGIN");
5314
5315                                                 //print 'GUID:' . $article['guid'] . "\n";
5316
5317                                                 $result = db_query($link, "SELECT id FROM ttrss_entries
5318                                                         WHERE guid = '".$article['guid']."'");
5319
5320                                                 if (db_num_rows($result) == 0) {
5321
5322                                                         $result = db_query($link,
5323                                                                 "INSERT INTO ttrss_entries
5324                                                                         (title,
5325                                                                         guid,
5326                                                                         link,
5327                                                                         updated,
5328                                                                         content,
5329                                                                         content_hash,
5330                                                                         no_orig_date,
5331                                                                         date_updated,
5332                                                                         date_entered,
5333                                                                         comments,
5334                                                                         num_comments,
5335                                                                         author)
5336                                                                 VALUES
5337                                                                         ('".$article['title']."',
5338                                                                         '".$article['guid']."',
5339                                                                         '".$article['link']."',
5340                                                                         '".$article['updated']."',
5341                                                                         '".$article['content']."',
5342                                                                         '".sha1($article['content'])."',
5343                                                                         false,
5344                                                                         NOW(),
5345                                                                         NOW(),
5346                                                                         '',
5347                                                                         '0',
5348                                                                         '')");
5349
5350                                                         $result = db_query($link, "SELECT id FROM ttrss_entries
5351                                                                 WHERE guid = '".$article['guid']."'");
5352
5353                                                         if (db_num_rows($result) != 0) {
5354                                                                 $ref_id = db_fetch_result($result, 0, "id");
5355                                                         }
5356
5357                                                 } else {
5358                                                         $ref_id = db_fetch_result($result, 0, "id");
5359                                                 }
5360
5361                                                 //print "Got ref ID: $ref_id\n";
5362
5363                                                 if ($ref_id) {
5364
5365                                                         $feed_url = $article['feed_url'];
5366                                                         $feed_title = $article['feed_title'];
5367
5368                                                         $feed = 'NULL';
5369
5370                                                         if ($feed_url && $feed_title) {
5371                                                                 $result = db_query($link, "SELECT id FROM ttrss_feeds
5372                                                                         WHERE feed_url = '$feed_url' AND owner_uid = '$owner_uid'");
5373
5374                                                                 if (db_num_rows($result) != 0) {
5375                                                                         $feed = db_fetch_result($result, 0, "id");
5376                                                                 } else {
5377                                                                         // try autocreating feed in Uncategorized...
5378
5379                                                                         $result = db_query($link, "INSERT INTO ttrss_feeds (owner_uid,
5380                                                                                 feed_url, title) VALUES ($owner_uid, '$feed_url', '$feed_title')");
5381
5382                                                                         $result = db_query($link, "SELECT id FROM ttrss_feeds
5383                                                                                 WHERE feed_url = '$feed_url' AND owner_uid = '$owner_uid'");
5384
5385                                                                         if (db_num_rows($result) != 0) {
5386                                                                                 ++$num_feeds_created;
5387
5388                                                                                 $feed = db_fetch_result($result, 0, "id");
5389                                                                         }
5390                                                                 }
5391                                                         }
5392
5393                                                         if ($feed != 'NULL')
5394                                                                 $feed_qpart = "feed_id = $feed";
5395                                                         else
5396                                                                 $feed_qpart = "feed_id IS NULL";
5397
5398                                                         //print "$ref_id / $feed / " . $article['title'] . "\n";
5399
5400                                                         $result = db_query($link, "SELECT int_id FROM ttrss_user_entries
5401                                                                 WHERE ref_id = '$ref_id' AND owner_uid = '$owner_uid' AND $feed_qpart");
5402
5403                                                         if (db_num_rows($result) == 0) {
5404
5405                                                                 $marked = bool_to_sql_bool(sql_bool_to_bool($article['marked']));
5406                                                                 $published = bool_to_sql_bool(sql_bool_to_bool($article['published']));
5407                                                                 $score = (int) $article['score'];
5408
5409                                                                 $tag_cache = $article['tag_cache'];
5410                                                                 $label_cache = db_escape_string($article['label_cache']);
5411                                                                 $note = $article['note'];
5412
5413                                                                 //print "Importing " . $article['title'] . "<br/>";
5414
5415                                                                 ++$num_imported;
5416
5417                                                                 $result = db_query($link,
5418                                                                         "INSERT INTO ttrss_user_entries
5419                                                                         (ref_id, owner_uid, feed_id, unread, last_read, marked,
5420                                                                                 published, score, tag_cache, label_cache, uuid, note)
5421                                                                         VALUES ($ref_id, $owner_uid, $feed, false,
5422                                                                                 NULL, $marked, $published, $score, '$tag_cache',
5423                                                                                         '$label_cache', '', '$note')");
5424
5425                                                                 $label_cache = json_decode($label_cache, true);
5426
5427                                                                 if (is_array($label_cache) && $label_cache["no-labels"] != 1) {
5428                                                                         foreach ($label_cache as $label) {
5429
5430                                                                                 label_create($link, $label[1],
5431                                                                                         $label[2], $label[3], $owner_uid);
5432
5433                                                                                 label_add_article($link, $ref_id, $label[1], $owner_uid);
5434
5435                                                                         }
5436                                                                 }
5437
5438                                                                 //db_query($link, "COMMIT");
5439                                                         }
5440                                                 }
5441                                         }
5442                                 }
5443                         }
5444
5445                         print "<p>" .
5446                                 T_sprintf("Finished: %d articles processed, %d imported, %d feeds created.",
5447                                         $num_processed, $num_imported, $num_feeds_created) .
5448                                         "</p>";
5449
5450                 } else {
5451
5452                         print "<p>" . __("Could not load XML document.") . "</p>";
5453
5454                 }
5455         }
5456
5457         function get_random_bytes($length) {
5458                 if (function_exists('openssl_random_pseudo_bytes')) {
5459                         return openssl_random_pseudo_bytes($length);
5460                 } else {
5461                         $output = "";
5462
5463                         for ($i = 0; $i < $length; $i++)
5464                                 $output .= chr(mt_rand(0, 255));
5465
5466                         return $output;
5467                 }
5468         }
5469 ?>