]> git.wh0rd.org - tt-rss.git/blob - include/functions.php
Merge remote-tracking branch 'upstream/master'
[tt-rss.git] / include / functions.php
1 <?php
2 define('EXPECTED_CONFIG_VERSION', 26);
3 define('SCHEMA_VERSION', 106);
4
5 $fetch_last_error = false;
6 $pluginhost = false;
7
8 function __autoload($class) {
9 $class_file = str_replace("_", "/", strtolower(basename($class)));
10
11 $file = dirname(__FILE__)."/../classes/$class_file.php";
12
13 if (file_exists($file)) {
14 require $file;
15 }
16
17 }
18
19 mb_internal_encoding("UTF-8");
20 date_default_timezone_set('UTC');
21 if (defined('E_DEPRECATED')) {
22 error_reporting(E_ALL & ~E_NOTICE & ~E_DEPRECATED);
23 } else {
24 error_reporting(E_ALL & ~E_NOTICE);
25 }
26
27 require_once 'config.php';
28
29 if (DB_TYPE == "pgsql") {
30 define('SUBSTRING_FOR_DATE', 'SUBSTRING_FOR_DATE');
31 } else {
32 define('SUBSTRING_FOR_DATE', 'SUBSTRING');
33 }
34
35 define('THEME_VERSION_REQUIRED', 1.1);
36
37 /**
38 * Return available translations names.
39 *
40 * @access public
41 * @return array A array of available translations.
42 */
43 function get_translations() {
44 $tr = array(
45 "auto" => "Detect automatically",
46 "ca_CA" => "Català",
47 "en_US" => "English",
48 "es_ES" => "Español",
49 "de_DE" => "Deutsch",
50 "fr_FR" => "Français",
51 "hu_HU" => "Magyar (Hungarian)",
52 "it_IT" => "Italiano",
53 "ja_JP" => "日本語 (Japanese)",
54 "lv_LV" => "Latviešu",
55 "nb_NO" => "Norwegian bokmål",
56 "pl_PL" => "Polski",
57 "ru_RU" => "Русский",
58 "pt_BR" => "Portuguese/Brazil",
59 "zh_CN" => "Simplified Chinese");
60
61 return $tr;
62 }
63
64 require_once "lib/accept-to-gettext.php";
65 require_once "lib/gettext/gettext.inc";
66
67
68 function startup_gettext() {
69
70 # Get locale from Accept-Language header
71 $lang = al2gt(array_keys(get_translations()), "text/html");
72
73 if (defined('_TRANSLATION_OVERRIDE_DEFAULT')) {
74 $lang = _TRANSLATION_OVERRIDE_DEFAULT;
75 }
76
77 /* In login action of mobile version */
78 if ($_POST["language"] && defined('MOBILE_VERSION')) {
79 $lang = $_POST["language"];
80 } else if ($_SESSION["language"] && $_SESSION["language"] != "auto") {
81 $lang = $_SESSION["language"];
82 }
83
84 if ($lang) {
85 if (defined('LC_MESSAGES')) {
86 _setlocale(LC_MESSAGES, $lang);
87 } else if (defined('LC_ALL')) {
88 _setlocale(LC_ALL, $lang);
89 }
90
91 if (defined('MOBILE_VERSION')) {
92 _bindtextdomain("messages", "../locale");
93 } else {
94 _bindtextdomain("messages", "locale");
95 }
96
97 _textdomain("messages");
98 _bind_textdomain_codeset("messages", "UTF-8");
99 }
100 }
101
102 startup_gettext();
103
104 require_once 'db-prefs.php';
105 require_once 'version.php';
106 require_once 'ccache.php';
107 require_once 'labels.php';
108
109 define('SELF_USER_AGENT', 'Tiny Tiny RSS/' . VERSION . ' (http://tt-rss.org/)');
110 ini_set('user_agent', SELF_USER_AGENT);
111
112 require_once 'lib/pubsubhubbub/publisher.php';
113
114 $tz_offset = -1;
115 $utc_tz = new DateTimeZone('UTC');
116 $schema_version = false;
117
118 /**
119 * Print a timestamped debug message.
120 *
121 * @param string $msg The debug message.
122 * @return void
123 */
124 function _debug($msg) {
125 if (defined('QUIET') && QUIET) {
126 return;
127 }
128 $ts = strftime("%H:%M:%S", time());
129 if (function_exists('posix_getpid')) {
130 $ts = "$ts/" . posix_getpid();
131 }
132 print "[$ts] $msg\n";
133 } // function _debug
134
135 /**
136 * Purge a feed old posts.
137 *
138 * @param mixed $link A database connection.
139 * @param mixed $feed_id The id of the purged feed.
140 * @param mixed $purge_interval Olderness of purged posts.
141 * @param boolean $debug Set to True to enable the debug. False by default.
142 * @access public
143 * @return void
144 */
145 function purge_feed($link, $feed_id, $purge_interval, $debug = false) {
146
147 if (!$purge_interval) $purge_interval = feed_purge_interval($link, $feed_id);
148
149 $rows = -1;
150
151 $result = db_query($link,
152 "SELECT owner_uid FROM ttrss_feeds WHERE id = '$feed_id'");
153
154 $owner_uid = false;
155
156 if (db_num_rows($result) == 1) {
157 $owner_uid = db_fetch_result($result, 0, "owner_uid");
158 }
159
160 if ($purge_interval == -1 || !$purge_interval) {
161 if ($owner_uid) {
162 ccache_update($link, $feed_id, $owner_uid);
163 }
164 return;
165 }
166
167 if (!$owner_uid) return;
168
169 if (FORCE_ARTICLE_PURGE == 0) {
170 $purge_unread = get_pref($link, "PURGE_UNREAD_ARTICLES",
171 $owner_uid, false);
172 } else {
173 $purge_unread = true;
174 $purge_interval = FORCE_ARTICLE_PURGE;
175 }
176
177 if (!$purge_unread) $query_limit = " unread = false AND ";
178
179 if (DB_TYPE == "pgsql") {
180 $pg_version = get_pgsql_version($link);
181
182 if (preg_match("/^7\./", $pg_version) || preg_match("/^8\.0/", $pg_version)) {
183
184 $result = db_query($link, "DELETE FROM ttrss_user_entries WHERE
185 ttrss_entries.id = ref_id AND
186 marked = false AND
187 feed_id = '$feed_id' AND
188 $query_limit
189 ttrss_entries.date_updated < NOW() - INTERVAL '$purge_interval days'");
190
191 } else {
192
193 $result = db_query($link, "DELETE FROM ttrss_user_entries
194 USING ttrss_entries
195 WHERE ttrss_entries.id = ref_id AND
196 marked = false AND
197 feed_id = '$feed_id' AND
198 $query_limit
199 ttrss_entries.date_updated < NOW() - INTERVAL '$purge_interval days'");
200 }
201
202 $rows = pg_affected_rows($result);
203
204 } else {
205
206 /* $result = db_query($link, "DELETE FROM ttrss_user_entries WHERE
207 marked = false AND feed_id = '$feed_id' AND
208 (SELECT date_updated FROM ttrss_entries WHERE
209 id = ref_id) < DATE_SUB(NOW(), INTERVAL $purge_interval DAY)"); */
210
211 $result = db_query($link, "DELETE FROM ttrss_user_entries
212 USING ttrss_user_entries, ttrss_entries
213 WHERE ttrss_entries.id = ref_id AND
214 marked = false AND
215 feed_id = '$feed_id' AND
216 $query_limit
217 ttrss_entries.date_updated < DATE_SUB(NOW(), INTERVAL $purge_interval DAY)");
218
219 $rows = mysql_affected_rows($link);
220
221 }
222
223 ccache_update($link, $feed_id, $owner_uid);
224
225 if ($debug) {
226 _debug("Purged feed $feed_id ($purge_interval): deleted $rows articles");
227 }
228
229 return $rows;
230 } // function purge_feed
231
232 function feed_purge_interval($link, $feed_id) {
233
234 $result = db_query($link, "SELECT purge_interval, owner_uid FROM ttrss_feeds
235 WHERE id = '$feed_id'");
236
237 if (db_num_rows($result) == 1) {
238 $purge_interval = db_fetch_result($result, 0, "purge_interval");
239 $owner_uid = db_fetch_result($result, 0, "owner_uid");
240
241 if ($purge_interval == 0) $purge_interval = get_pref($link,
242 'PURGE_OLD_DAYS', $owner_uid);
243
244 return $purge_interval;
245
246 } else {
247 return -1;
248 }
249 }
250
251 function purge_orphans($link, $do_output = false) {
252
253 // purge orphaned posts in main content table
254 $result = db_query($link, "DELETE FROM ttrss_entries WHERE
255 (SELECT COUNT(int_id) FROM ttrss_user_entries WHERE ref_id = id) = 0");
256
257 if ($do_output) {
258 $rows = db_affected_rows($link, $result);
259 _debug("Purged $rows orphaned posts.");
260 }
261 }
262
263 function get_feed_update_interval($link, $feed_id) {
264 $result = db_query($link, "SELECT owner_uid, update_interval FROM
265 ttrss_feeds WHERE id = '$feed_id'");
266
267 if (db_num_rows($result) == 1) {
268 $update_interval = db_fetch_result($result, 0, "update_interval");
269 $owner_uid = db_fetch_result($result, 0, "owner_uid");
270
271 if ($update_interval != 0) {
272 return $update_interval;
273 } else {
274 return get_pref($link, 'DEFAULT_UPDATE_INTERVAL', $owner_uid, false);
275 }
276
277 } else {
278 return -1;
279 }
280 }
281
282 function fetch_file_contents($url, $type = false, $login = false, $pass = false, $post_query = false, $timeout = false) {
283 $login = urlencode($login);
284 $pass = urlencode($pass);
285
286 global $fetch_last_error;
287
288 if (function_exists('curl_init') && !ini_get("open_basedir")) {
289
290 if (ini_get("safe_mode")) {
291 $ch = curl_init(geturl($url));
292 } else {
293 $ch = curl_init($url);
294 }
295
296 curl_setopt($ch, CURLOPT_CONNECTTIMEOUT, $timeout ? $timeout : 15);
297 curl_setopt($ch, CURLOPT_TIMEOUT, $timeout ? $timeout : 45);
298 curl_setopt($ch, CURLOPT_FOLLOWLOCATION, !ini_get("safe_mode"));
299 curl_setopt($ch, CURLOPT_MAXREDIRS, 20);
300 curl_setopt($ch, CURLOPT_BINARYTRANSFER, true);
301 curl_setopt($ch, CURLOPT_RETURNTRANSFER, true);
302 curl_setopt($ch, CURLOPT_SSL_VERIFYPEER, false);
303 curl_setopt($ch, CURLOPT_HTTPAUTH, CURLAUTH_ANY);
304 curl_setopt($ch, CURLOPT_USERAGENT, SELF_USER_AGENT);
305 curl_setopt($ch, CURLOPT_ENCODING , "gzip");
306 curl_setopt($ch, CURLOPT_REFERER, $url);
307
308 if ($post_query) {
309 curl_setopt($ch, CURLOPT_POST, true);
310 curl_setopt($ch, CURLOPT_POSTFIELDS, $post_query);
311 }
312
313 if ($login && $pass)
314 curl_setopt($ch, CURLOPT_USERPWD, "$login:$pass");
315
316 $contents = @curl_exec($ch);
317
318 if (curl_errno($ch) === 23 || curl_errno($ch) === 61) {
319 curl_setopt($ch, CURLOPT_ENCODING, 'none');
320 $contents = @curl_exec($ch);
321 }
322
323 if ($contents === false) {
324 $fetch_last_error = curl_errno($ch) . " " . curl_error($ch);
325 curl_close($ch);
326 return false;
327 }
328
329 $http_code = curl_getinfo($ch, CURLINFO_HTTP_CODE);
330 $content_type = curl_getinfo($ch, CURLINFO_CONTENT_TYPE);
331
332 if ($http_code != 200 || $type && strpos($content_type, "$type") === false) {
333 if (curl_errno($ch) != 0) {
334 $fetch_last_error = curl_errno($ch) . " " . curl_error($ch);
335 } else {
336 $fetch_last_error = "HTTP Code: $http_code";
337 }
338 curl_close($ch);
339 return false;
340 }
341
342 curl_close($ch);
343
344 return $contents;
345 } else {
346 if ($login && $pass ){
347 $url_parts = array();
348
349 preg_match("/(^[^:]*):\/\/(.*)/", $url, $url_parts);
350
351 if ($url_parts[1] && $url_parts[2]) {
352 $url = $url_parts[1] . "://$login:$pass@" . $url_parts[2];
353 }
354 }
355
356 $data = @file_get_contents($url);
357
358 $gzdecoded = gzdecode($data);
359 if ($gzdecoded) $data = $gzdecoded;
360
361 if (!$data && function_exists('error_get_last')) {
362 $error = error_get_last();
363 $fetch_last_error = $error["message"];
364 }
365 return $data;
366 }
367
368 }
369
370 /**
371 * Try to determine the favicon URL for a feed.
372 * adapted from wordpress favicon plugin by Jeff Minard (http://thecodepro.com/)
373 * http://dev.wp-plugins.org/file/favatars/trunk/favatars.php
374 *
375 * @param string $url A feed or page URL
376 * @access public
377 * @return mixed The favicon URL, or false if none was found.
378 */
379 function get_favicon_url($url) {
380
381 $favicon_url = false;
382
383 if ($html = @fetch_file_contents($url)) {
384
385 libxml_use_internal_errors(true);
386
387 $doc = new DOMDocument();
388 $doc->loadHTML($html);
389 $xpath = new DOMXPath($doc);
390
391 $base = $xpath->query('/html/head/base');
392 foreach ($base as $b) {
393 $url = $b->getAttribute("href");
394 break;
395 }
396
397 $entries = $xpath->query('/html/head/link[@rel="shortcut icon" or @rel="icon"]');
398 if (count($entries) > 0) {
399 foreach ($entries as $entry) {
400 $favicon_url = rewrite_relative_url($url, $entry->getAttribute("href"));
401 break;
402 }
403 }
404 }
405
406 if (!$favicon_url)
407 $favicon_url = rewrite_relative_url($url, "/favicon.ico");
408
409 return $favicon_url;
410 } // function get_favicon_url
411
412 function check_feed_favicon($site_url, $feed, $link) {
413 # print "FAVICON [$site_url]: $favicon_url\n";
414
415 $icon_file = ICONS_DIR . "/$feed.ico";
416
417 if (!file_exists($icon_file)) {
418 $favicon_url = get_favicon_url($site_url);
419
420 if ($favicon_url) {
421 // Limiting to "image" type misses those served with text/plain
422 $contents = fetch_file_contents($favicon_url); // , "image");
423
424 if ($contents) {
425 // Crude image type matching.
426 // Patterns gleaned from the file(1) source code.
427 if (preg_match('/^\x00\x00\x01\x00/', $contents)) {
428 // 0 string \000\000\001\000 MS Windows icon resource
429 //error_log("check_feed_favicon: favicon_url=$favicon_url isa MS Windows icon resource");
430 }
431 elseif (preg_match('/^GIF8/', $contents)) {
432 // 0 string GIF8 GIF image data
433 //error_log("check_feed_favicon: favicon_url=$favicon_url isa GIF image");
434 }
435 elseif (preg_match('/^\x89PNG\x0d\x0a\x1a\x0a/', $contents)) {
436 // 0 string \x89PNG\x0d\x0a\x1a\x0a PNG image data
437 //error_log("check_feed_favicon: favicon_url=$favicon_url isa PNG image");
438 }
439 elseif (preg_match('/^\xff\xd8/', $contents)) {
440 // 0 beshort 0xffd8 JPEG image data
441 //error_log("check_feed_favicon: favicon_url=$favicon_url isa JPG image");
442 }
443 else {
444 //error_log("check_feed_favicon: favicon_url=$favicon_url isa UNKNOWN type");
445 $contents = "";
446 }
447 }
448
449 if ($contents) {
450 $fp = @fopen($icon_file, "w");
451
452 if ($fp) {
453 fwrite($fp, $contents);
454 fclose($fp);
455 chmod($icon_file, 0644);
456 }
457 }
458 }
459 }
460 }
461
462 function print_select($id, $default, $values, $attributes = "") {
463 print "<select name=\"$id\" id=\"$id\" $attributes>";
464 foreach ($values as $v) {
465 if ($v == $default)
466 $sel = "selected=\"1\"";
467 else
468 $sel = "";
469
470 $v = trim($v);
471
472 print "<option value=\"$v\" $sel>$v</option>";
473 }
474 print "</select>";
475 }
476
477 function print_select_hash($id, $default, $values, $attributes = "") {
478 print "<select name=\"$id\" id='$id' $attributes>";
479 foreach (array_keys($values) as $v) {
480 if ($v == $default)
481 $sel = 'selected="selected"';
482 else
483 $sel = "";
484
485 $v = trim($v);
486
487 print "<option $sel value=\"$v\">".$values[$v]."</option>";
488 }
489
490 print "</select>";
491 }
492
493 function print_radio($id, $default, $true_is, $values, $attributes = "") {
494 foreach ($values as $v) {
495
496 if ($v == $default)
497 $sel = "checked";
498 else
499 $sel = "";
500
501 if ($v == $true_is) {
502 $sel .= " value=\"1\"";
503 } else {
504 $sel .= " value=\"0\"";
505 }
506
507 print "<input class=\"noborder\" dojoType=\"dijit.form.RadioButton\"
508 type=\"radio\" $sel $attributes name=\"$id\">&nbsp;$v&nbsp;";
509
510 }
511 }
512
513 function initialize_user_prefs($link, $uid, $profile = false) {
514
515 $uid = db_escape_string($uid);
516
517 if (!$profile) {
518 $profile = "NULL";
519 $profile_qpart = "AND profile IS NULL";
520 } else {
521 $profile_qpart = "AND profile = '$profile'";
522 }
523
524 if (get_schema_version($link) < 63) $profile_qpart = "";
525
526 db_query($link, "BEGIN");
527
528 $result = db_query($link, "SELECT pref_name,def_value FROM ttrss_prefs");
529
530 $u_result = db_query($link, "SELECT pref_name
531 FROM ttrss_user_prefs WHERE owner_uid = '$uid' $profile_qpart");
532
533 $active_prefs = array();
534
535 while ($line = db_fetch_assoc($u_result)) {
536 array_push($active_prefs, $line["pref_name"]);
537 }
538
539 while ($line = db_fetch_assoc($result)) {
540 if (array_search($line["pref_name"], $active_prefs) === FALSE) {
541 // print "adding " . $line["pref_name"] . "<br>";
542
543 if (get_schema_version($link) < 63) {
544 db_query($link, "INSERT INTO ttrss_user_prefs
545 (owner_uid,pref_name,value) VALUES
546 ('$uid', '".$line["pref_name"]."','".$line["def_value"]."')");
547
548 } else {
549 db_query($link, "INSERT INTO ttrss_user_prefs
550 (owner_uid,pref_name,value, profile) VALUES
551 ('$uid', '".$line["pref_name"]."','".$line["def_value"]."', $profile)");
552 }
553
554 }
555 }
556
557 db_query($link, "COMMIT");
558
559 }
560
561 function get_ssl_certificate_id() {
562 if ($_SERVER["REDIRECT_SSL_CLIENT_M_SERIAL"]) {
563 return sha1($_SERVER["REDIRECT_SSL_CLIENT_M_SERIAL"] .
564 $_SERVER["REDIRECT_SSL_CLIENT_V_START"] .
565 $_SERVER["REDIRECT_SSL_CLIENT_V_END"] .
566 $_SERVER["REDIRECT_SSL_CLIENT_S_DN"]);
567 }
568 return "";
569 }
570
571 function authenticate_user($link, $login, $password, $check_only = false) {
572
573 if (!SINGLE_USER_MODE) {
574
575 $user_id = false;
576
577 global $pluginhost;
578 foreach ($pluginhost->get_hooks($pluginhost::HOOK_AUTH_USER) as $plugin) {
579
580 $user_id = (int) $plugin->authenticate($login, $password);
581
582 if ($user_id) {
583 $_SESSION["auth_module"] = strtolower(get_class($plugin));
584 break;
585 }
586 }
587
588 if ($user_id && !$check_only) {
589 $_SESSION["uid"] = $user_id;
590
591 $result = db_query($link, "SELECT login,access_level,pwd_hash FROM ttrss_users
592 WHERE id = '$user_id'");
593
594 $_SESSION["name"] = db_fetch_result($result, 0, "login");
595 $_SESSION["access_level"] = db_fetch_result($result, 0, "access_level");
596 $_SESSION["csrf_token"] = sha1(uniqid(rand(), true));
597
598 db_query($link, "UPDATE ttrss_users SET last_login = NOW() WHERE id = " .
599 $_SESSION["uid"]);
600
601 $_SESSION["ip_address"] = $_SERVER["REMOTE_ADDR"];
602 $_SESSION["pwd_hash"] = db_fetch_result($result, 0, "pwd_hash");
603
604 $_SESSION["last_version_check"] = time();
605
606 initialize_user_prefs($link, $_SESSION["uid"]);
607
608 return true;
609 }
610
611 return false;
612
613 } else {
614
615 $_SESSION["uid"] = 1;
616 $_SESSION["name"] = "admin";
617 $_SESSION["access_level"] = 10;
618
619 $_SESSION["hide_hello"] = true;
620 $_SESSION["hide_logout"] = true;
621
622 $_SESSION["auth_module"] = false;
623
624 if (!$_SESSION["csrf_token"]) {
625 $_SESSION["csrf_token"] = sha1(uniqid(rand(), true));
626 }
627
628 $_SESSION["ip_address"] = $_SERVER["REMOTE_ADDR"];
629
630 initialize_user_prefs($link, $_SESSION["uid"]);
631
632 return true;
633 }
634 }
635
636 function make_password($length = 8) {
637
638 $password = "";
639 $possible = "0123456789abcdfghjkmnpqrstvwxyzABCDFGHJKMNPQRSTVWXYZ";
640
641 $i = 0;
642
643 while ($i < $length) {
644 $char = substr($possible, mt_rand(0, strlen($possible)-1), 1);
645
646 if (!strstr($password, $char)) {
647 $password .= $char;
648 $i++;
649 }
650 }
651 return $password;
652 }
653
654 // this is called after user is created to initialize default feeds, labels
655 // or whatever else
656
657 // user preferences are checked on every login, not here
658
659 function initialize_user($link, $uid) {
660
661 db_query($link, "insert into ttrss_feeds (owner_uid,title,feed_url)
662 values ('$uid', 'Tiny Tiny RSS: New Releases',
663 'http://tt-rss.org/releases.rss')");
664
665 db_query($link, "insert into ttrss_feeds (owner_uid,title,feed_url)
666 values ('$uid', 'Tiny Tiny RSS: Forum',
667 'http://tt-rss.org/forum/rss.php')");
668 }
669
670 function logout_user() {
671 session_destroy();
672 if (isset($_COOKIE[session_name()])) {
673 setcookie(session_name(), '', time()-42000, '/');
674 }
675 }
676
677 function validate_csrf($csrf_token) {
678 return $csrf_token == $_SESSION['csrf_token'];
679 }
680
681 function validate_session($link) {
682 if (SINGLE_USER_MODE) return true;
683
684 $check_ip = $_SESSION['ip_address'];
685
686 switch (SESSION_CHECK_ADDRESS) {
687 case 0:
688 $check_ip = '';
689 break;
690 case 1:
691 $check_ip = substr($check_ip, 0, strrpos($check_ip, '.')+1);
692 break;
693 case 2:
694 $check_ip = substr($check_ip, 0, strrpos($check_ip, '.'));
695 $check_ip = substr($check_ip, 0, strrpos($check_ip, '.')+1);
696 break;
697 };
698
699 if ($check_ip && strpos($_SERVER['REMOTE_ADDR'], $check_ip) !== 0) {
700 $_SESSION["login_error_msg"] =
701 __("Session failed to validate (incorrect IP)");
702 return false;
703 }
704
705 if ($_SESSION["ref_schema_version"] != get_schema_version($link, true))
706 return false;
707
708 if ($_SESSION["uid"]) {
709
710 $result = db_query($link,
711 "SELECT pwd_hash FROM ttrss_users WHERE id = '".$_SESSION["uid"]."'");
712
713 $pwd_hash = db_fetch_result($result, 0, "pwd_hash");
714
715 if ($pwd_hash != $_SESSION["pwd_hash"]) {
716 return false;
717 }
718 }
719
720 /* if ($_SESSION["cookie_lifetime"] && $_SESSION["uid"]) {
721
722 //print_r($_SESSION);
723
724 if (time() > $_SESSION["cookie_lifetime"]) {
725 return false;
726 }
727 } */
728
729 return true;
730 }
731
732 function load_user_plugins($link, $owner_uid) {
733 if ($owner_uid) {
734 $plugins = get_pref($link, "_ENABLED_PLUGINS", $owner_uid);
735
736 global $pluginhost;
737 $pluginhost->load($plugins, $pluginhost::KIND_USER, $owner_uid);
738
739 if (get_schema_version($link) > 100) {
740 $pluginhost->load_data();
741 }
742 }
743 }
744
745 function login_sequence($link, $login_form = 0) {
746 $_SESSION["prefs_cache"] = false;
747
748 if (SINGLE_USER_MODE) {
749 authenticate_user($link, "admin", null);
750 cache_prefs($link);
751 load_user_plugins($link, $_SESSION["uid"]);
752 } else {
753 if (!$_SESSION["uid"] || !validate_session($link)) {
754
755 if (AUTH_AUTO_LOGIN && authenticate_user($link, null, null)) {
756 $_SESSION["ref_schema_version"] = get_schema_version($link, true);
757 } else {
758 authenticate_user($link, null, null, true);
759 }
760
761 if (!$_SESSION["uid"]) render_login_form($link, $login_form);
762
763 } else {
764 /* bump login timestamp */
765 db_query($link, "UPDATE ttrss_users SET last_login = NOW() WHERE id = " .
766 $_SESSION["uid"]);
767 }
768
769 if ($_SESSION["uid"] && $_SESSION["language"] && SESSION_COOKIE_LIFETIME > 0) {
770 setcookie("ttrss_lang", $_SESSION["language"],
771 time() + SESSION_COOKIE_LIFETIME);
772 }
773
774 if ($_SESSION["uid"]) {
775 cache_prefs($link);
776 load_user_plugins($link, $_SESSION["uid"]);
777 }
778 }
779 }
780
781 function truncate_string($str, $max_len, $suffix = '&hellip;') {
782 if (mb_strlen($str, "utf-8") > $max_len - 3) {
783 return mb_substr($str, 0, $max_len, "utf-8") . $suffix;
784 } else {
785 return $str;
786 }
787 }
788
789 function convert_timestamp($timestamp, $source_tz, $dest_tz) {
790
791 try {
792 $source_tz = new DateTimeZone($source_tz);
793 } catch (Exception $e) {
794 $source_tz = new DateTimeZone('UTC');
795 }
796
797 try {
798 $dest_tz = new DateTimeZone($dest_tz);
799 } catch (Exception $e) {
800 $dest_tz = new DateTimeZone('UTC');
801 }
802
803 $dt = new DateTime(date('Y-m-d H:i:s', $timestamp), $source_tz);
804 return $dt->format('U') + $dest_tz->getOffset($dt);
805 }
806
807 function make_local_datetime($link, $timestamp, $long, $owner_uid = false,
808 $no_smart_dt = false) {
809
810 if (!$owner_uid) $owner_uid = $_SESSION['uid'];
811 if (!$timestamp) $timestamp = '1970-01-01 0:00';
812
813 global $utc_tz;
814 global $tz_offset;
815
816 # We store date in UTC internally
817 $dt = new DateTime($timestamp, $utc_tz);
818
819 if ($tz_offset == -1) {
820
821 $user_tz_string = get_pref($link, 'USER_TIMEZONE', $owner_uid);
822
823 try {
824 $user_tz = new DateTimeZone($user_tz_string);
825 } catch (Exception $e) {
826 $user_tz = $utc_tz;
827 }
828
829 $tz_offset = $user_tz->getOffset($dt);
830 }
831
832 $user_timestamp = $dt->format('U') + $tz_offset;
833
834 if (!$no_smart_dt) {
835 return smart_date_time($link, $user_timestamp,
836 $tz_offset, $owner_uid);
837 } else {
838 if ($long)
839 $format = get_pref($link, 'LONG_DATE_FORMAT', $owner_uid);
840 else
841 $format = get_pref($link, 'SHORT_DATE_FORMAT', $owner_uid);
842
843 return date($format, $user_timestamp);
844 }
845 }
846
847 function smart_date_time($link, $timestamp, $tz_offset = 0, $owner_uid = false) {
848 if (!$owner_uid) $owner_uid = $_SESSION['uid'];
849
850 if (date("Y.m.d", $timestamp) == date("Y.m.d", time() + $tz_offset)) {
851 return date("G:i", $timestamp);
852 } else if (date("Y", $timestamp) == date("Y", time() + $tz_offset)) {
853 $format = get_pref($link, 'SHORT_DATE_FORMAT', $owner_uid);
854 return date($format, $timestamp);
855 } else {
856 $format = get_pref($link, 'LONG_DATE_FORMAT', $owner_uid);
857 return date($format, $timestamp);
858 }
859 }
860
861 function sql_bool_to_bool($s) {
862 if ($s == "t" || $s == "1" || strtolower($s) == "true") {
863 return true;
864 } else {
865 return false;
866 }
867 }
868
869 function bool_to_sql_bool($s) {
870 if ($s) {
871 return "true";
872 } else {
873 return "false";
874 }
875 }
876
877 // Session caching removed due to causing wrong redirects to upgrade
878 // script when get_schema_version() is called on an obsolete session
879 // created on a previous schema version.
880 function get_schema_version($link, $nocache = false) {
881 global $schema_version;
882
883 if (!$schema_version) {
884 $result = db_query($link, "SELECT schema_version FROM ttrss_version");
885 $version = db_fetch_result($result, 0, "schema_version");
886 $schema_version = $version;
887 return $version;
888 } else {
889 return $schema_version;
890 }
891 }
892
893 function sanity_check($link) {
894 require_once 'errors.php';
895
896 $error_code = 0;
897 $schema_version = get_schema_version($link, true);
898
899 if ($schema_version != SCHEMA_VERSION) {
900 $error_code = 5;
901 }
902
903 if (DB_TYPE == "mysql") {
904 $result = db_query($link, "SELECT true", false);
905 if (db_num_rows($result) != 1) {
906 $error_code = 10;
907 }
908 }
909
910 if (db_escape_string("testTEST") != "testTEST") {
911 $error_code = 12;
912 }
913
914 return array("code" => $error_code, "message" => $ERRORS[$error_code]);
915 }
916
917 function file_is_locked($filename) {
918 if (function_exists('flock')) {
919 $fp = @fopen(LOCK_DIRECTORY . "/$filename", "r");
920 if ($fp) {
921 if (flock($fp, LOCK_EX | LOCK_NB)) {
922 flock($fp, LOCK_UN);
923 fclose($fp);
924 return false;
925 }
926 fclose($fp);
927 return true;
928 } else {
929 return false;
930 }
931 }
932 return true; // consider the file always locked and skip the test
933 }
934
935 function make_lockfile($filename) {
936 $fp = fopen(LOCK_DIRECTORY . "/$filename", "w");
937
938 if ($fp && flock($fp, LOCK_EX | LOCK_NB)) {
939 if (function_exists('posix_getpid')) {
940 fwrite($fp, posix_getpid() . "\n");
941 }
942 return $fp;
943 } else {
944 return false;
945 }
946 }
947
948 function make_stampfile($filename) {
949 $fp = fopen(LOCK_DIRECTORY . "/$filename", "w");
950
951 if (flock($fp, LOCK_EX | LOCK_NB)) {
952 fwrite($fp, time() . "\n");
953 flock($fp, LOCK_UN);
954 fclose($fp);
955 return true;
956 } else {
957 return false;
958 }
959 }
960
961 function sql_random_function() {
962 if (DB_TYPE == "mysql") {
963 return "RAND()";
964 } else {
965 return "RANDOM()";
966 }
967 }
968
969 function catchup_feed($link, $feed, $cat_view, $owner_uid = false, $max_id = false) {
970
971 if (!$owner_uid) $owner_uid = $_SESSION['uid'];
972
973 //if (preg_match("/^-?[0-9][0-9]*$/", $feed) != false) {
974
975 $ref_check_qpart = ($max_id &&
976 !get_pref($link, 'REVERSE_HEADLINES')) ? "ref_id <= '$max_id'" : "true";
977
978 if (is_numeric($feed)) {
979 if ($cat_view) {
980
981 if ($feed >= 0) {
982
983 if ($feed > 0) {
984 $children = getChildCategories($link, $feed, $owner_uid);
985 array_push($children, $feed);
986
987 $children = join(",", $children);
988
989 $cat_qpart = "cat_id IN ($children)";
990 } else {
991 $cat_qpart = "cat_id IS NULL";
992 }
993
994 db_query($link, "UPDATE ttrss_user_entries
995 SET unread = false,last_read = NOW()
996 WHERE feed_id IN (SELECT id FROM ttrss_feeds WHERE $cat_qpart)
997 AND $ref_check_qpart AND unread = true
998 AND owner_uid = $owner_uid");
999
1000 } else if ($feed == -2) {
1001
1002 db_query($link, "UPDATE ttrss_user_entries
1003 SET unread = false,last_read = NOW() WHERE (SELECT COUNT(*)
1004 FROM ttrss_user_labels2 WHERE article_id = ref_id) > 0
1005 AND $ref_check_qpart
1006 AND unread = true AND owner_uid = $owner_uid");
1007 }
1008
1009 } else if ($feed > 0) {
1010
1011 db_query($link, "UPDATE ttrss_user_entries
1012 SET unread = false,last_read = NOW()
1013 WHERE feed_id = '$feed'
1014 AND $ref_check_qpart AND unread = true
1015 AND owner_uid = $owner_uid");
1016
1017 } else if ($feed < 0 && $feed > -10) { // special, like starred
1018
1019 if ($feed == -1) {
1020 db_query($link, "UPDATE ttrss_user_entries
1021 SET unread = false,last_read = NOW()
1022 WHERE marked = true
1023 AND $ref_check_qpart AND unread = true
1024 AND owner_uid = $owner_uid");
1025 }
1026
1027 if ($feed == -2) {
1028 db_query($link, "UPDATE ttrss_user_entries
1029 SET unread = false,last_read = NOW()
1030 WHERE published = true
1031 AND $ref_check_qpart AND unread = true
1032 AND owner_uid = $owner_uid");
1033 }
1034
1035 if ($feed == -3) {
1036
1037 $intl = get_pref($link, "FRESH_ARTICLE_MAX_AGE");
1038
1039 if (DB_TYPE == "pgsql") {
1040 $match_part = "updated > NOW() - INTERVAL '$intl hour' ";
1041 } else {
1042 $match_part = "updated > DATE_SUB(NOW(),
1043 INTERVAL $intl HOUR) ";
1044 }
1045
1046 $result = db_query($link, "SELECT id FROM ttrss_entries,
1047 ttrss_user_entries WHERE $match_part AND
1048 unread = true AND
1049 ttrss_user_entries.ref_id = ttrss_entries.id AND
1050 owner_uid = $owner_uid");
1051
1052 $affected_ids = array();
1053
1054 while ($line = db_fetch_assoc($result)) {
1055 array_push($affected_ids, $line["id"]);
1056 }
1057
1058 catchupArticlesById($link, $affected_ids, 0);
1059 }
1060
1061 if ($feed == -4) {
1062 db_query($link, "UPDATE ttrss_user_entries
1063 SET unread = false,last_read = NOW()
1064 WHERE $ref_check_qpart AND unread = true AND
1065 owner_uid = $owner_uid");
1066 }
1067
1068 } else if ($feed < -10) { // label
1069
1070 $label_id = -$feed - 11;
1071
1072 db_query($link, "UPDATE ttrss_user_entries, ttrss_user_labels2
1073 SET unread = false, last_read = NOW()
1074 WHERE label_id = '$label_id' AND unread = true
1075 AND $ref_check_qpart
1076 AND owner_uid = '$owner_uid' AND ref_id = article_id");
1077
1078 }
1079
1080 ccache_update($link, $feed, $owner_uid, $cat_view);
1081
1082 } else { // tag
1083 db_query($link, "BEGIN");
1084
1085 $tag_name = db_escape_string($feed);
1086
1087 $result = db_query($link, "SELECT post_int_id FROM ttrss_tags
1088 WHERE tag_name = '$tag_name' AND owner_uid = $owner_uid");
1089
1090 while ($line = db_fetch_assoc($result)) {
1091 db_query($link, "UPDATE ttrss_user_entries SET
1092 unread = false, last_read = NOW()
1093 WHERE $ref_check_qpart AND unread = true
1094 AND int_id = " . $line["post_int_id"]);
1095 }
1096 db_query($link, "COMMIT");
1097 }
1098 }
1099
1100 function getAllCounters($link) {
1101 $data = getGlobalCounters($link);
1102
1103 $data = array_merge($data, getVirtCounters($link));
1104 $data = array_merge($data, getLabelCounters($link));
1105 $data = array_merge($data, getFeedCounters($link, $active_feed));
1106 $data = array_merge($data, getCategoryCounters($link));
1107
1108 return $data;
1109 }
1110
1111 function getCategoryTitle($link, $cat_id) {
1112
1113 if ($cat_id == -1) {
1114 return __("Special");
1115 } else if ($cat_id == -2) {
1116 return __("Labels");
1117 } else {
1118
1119 $result = db_query($link, "SELECT title FROM ttrss_feed_categories WHERE
1120 id = '$cat_id'");
1121
1122 if (db_num_rows($result) == 1) {
1123 return db_fetch_result($result, 0, "title");
1124 } else {
1125 return __("Uncategorized");
1126 }
1127 }
1128 }
1129
1130
1131 function getCategoryCounters($link) {
1132 $ret_arr = array();
1133
1134 /* Labels category */
1135
1136 $cv = array("id" => -2, "kind" => "cat",
1137 "counter" => getCategoryUnread($link, -2));
1138
1139 array_push($ret_arr, $cv);
1140
1141 $result = db_query($link, "SELECT id AS cat_id, value AS unread,
1142 (SELECT COUNT(id) FROM ttrss_feed_categories AS c2
1143 WHERE c2.parent_cat = ttrss_feed_categories.id) AS num_children
1144 FROM ttrss_feed_categories, ttrss_cat_counters_cache
1145 WHERE ttrss_cat_counters_cache.feed_id = id AND
1146 ttrss_cat_counters_cache.owner_uid = ttrss_feed_categories.owner_uid AND
1147 ttrss_feed_categories.owner_uid = " . $_SESSION["uid"]);
1148
1149 while ($line = db_fetch_assoc($result)) {
1150 $line["cat_id"] = (int) $line["cat_id"];
1151
1152 if ($line["num_children"] > 0) {
1153 $child_counter = getCategoryChildrenUnread($link, $line["cat_id"], $_SESSION["uid"]);
1154 } else {
1155 $child_counter = 0;
1156 }
1157
1158 $cv = array("id" => $line["cat_id"], "kind" => "cat",
1159 "counter" => $line["unread"] + $child_counter);
1160
1161 array_push($ret_arr, $cv);
1162 }
1163
1164 /* Special case: NULL category doesn't actually exist in the DB */
1165
1166 $cv = array("id" => 0, "kind" => "cat",
1167 "counter" => (int) ccache_find($link, 0, $_SESSION["uid"], true));
1168
1169 array_push($ret_arr, $cv);
1170
1171 return $ret_arr;
1172 }
1173
1174 // only accepts real cats (>= 0)
1175 function getCategoryChildrenUnread($link, $cat, $owner_uid = false) {
1176 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1177
1178 $result = db_query($link, "SELECT id FROM ttrss_feed_categories WHERE parent_cat = '$cat'
1179 AND owner_uid = $owner_uid");
1180
1181 $unread = 0;
1182
1183 while ($line = db_fetch_assoc($result)) {
1184 $unread += getCategoryUnread($link, $line["id"], $owner_uid);
1185 $unread += getCategoryChildrenUnread($link, $line["id"], $owner_uid);
1186 }
1187
1188 return $unread;
1189 }
1190
1191 function getCategoryUnread($link, $cat, $owner_uid = false) {
1192
1193 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1194
1195 if ($cat >= 0) {
1196
1197 if ($cat != 0) {
1198 $cat_query = "cat_id = '$cat'";
1199 } else {
1200 $cat_query = "cat_id IS NULL";
1201 }
1202
1203 $result = db_query($link, "SELECT id FROM ttrss_feeds WHERE $cat_query
1204 AND owner_uid = " . $owner_uid);
1205
1206 $cat_feeds = array();
1207 while ($line = db_fetch_assoc($result)) {
1208 array_push($cat_feeds, "feed_id = " . $line["id"]);
1209 }
1210
1211 if (count($cat_feeds) == 0) return 0;
1212
1213 $match_part = implode(" OR ", $cat_feeds);
1214
1215 $result = db_query($link, "SELECT COUNT(int_id) AS unread
1216 FROM ttrss_user_entries
1217 WHERE unread = true AND ($match_part)
1218 AND owner_uid = " . $owner_uid);
1219
1220 $unread = 0;
1221
1222 # this needs to be rewritten
1223 while ($line = db_fetch_assoc($result)) {
1224 $unread += $line["unread"];
1225 }
1226
1227 return $unread;
1228 } else if ($cat == -1) {
1229 return getFeedUnread($link, -1) + getFeedUnread($link, -2) + getFeedUnread($link, -3) + getFeedUnread($link, 0);
1230 } else if ($cat == -2) {
1231
1232 $result = db_query($link, "
1233 SELECT COUNT(unread) AS unread FROM
1234 ttrss_user_entries, ttrss_user_labels2
1235 WHERE article_id = ref_id AND unread = true
1236 AND ttrss_user_entries.owner_uid = '$owner_uid'");
1237
1238 $unread = db_fetch_result($result, 0, "unread");
1239
1240 return $unread;
1241
1242 }
1243 }
1244
1245 function getFeedUnread($link, $feed, $is_cat = false) {
1246 return getFeedArticles($link, $feed, $is_cat, true, $_SESSION["uid"]);
1247 }
1248
1249 function getLabelUnread($link, $label_id, $owner_uid = false) {
1250 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1251
1252 $result = db_query($link, "SELECT COUNT(ref_id) AS unread FROM ttrss_user_entries, ttrss_user_labels2
1253 WHERE owner_uid = '$owner_uid' AND unread = true AND label_id = '$label_id' AND article_id = ref_id");
1254
1255 if (db_num_rows($result) != 0) {
1256 return db_fetch_result($result, 0, "unread");
1257 } else {
1258 return 0;
1259 }
1260 }
1261
1262 function getFeedArticles($link, $feed, $is_cat = false, $unread_only = false,
1263 $owner_uid = false) {
1264
1265 $n_feed = (int) $feed;
1266 $need_entries = false;
1267
1268 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
1269
1270 if ($unread_only) {
1271 $unread_qpart = "unread = true";
1272 } else {
1273 $unread_qpart = "true";
1274 }
1275
1276 if ($is_cat) {
1277 return getCategoryUnread($link, $n_feed, $owner_uid);
1278 } else if ($n_feed == -6) {
1279 return 0;
1280 } else if ($feed != "0" && $n_feed == 0) {
1281
1282 $feed = db_escape_string($feed);
1283
1284 $result = db_query($link, "SELECT SUM((SELECT COUNT(int_id)
1285 FROM ttrss_user_entries,ttrss_entries WHERE int_id = post_int_id
1286 AND ref_id = id AND $unread_qpart)) AS count FROM ttrss_tags
1287 WHERE owner_uid = $owner_uid AND tag_name = '$feed'");
1288 return db_fetch_result($result, 0, "count");
1289
1290 } else if ($n_feed == -1) {
1291 $match_part = "marked = true";
1292 } else if ($n_feed == -2) {
1293 $match_part = "published = true";
1294 } else if ($n_feed == -3) {
1295 $match_part = "unread = true AND score >= 0";
1296
1297 $intl = get_pref($link, "FRESH_ARTICLE_MAX_AGE", $owner_uid);
1298
1299 if (DB_TYPE == "pgsql") {
1300 $match_part .= " AND updated > NOW() - INTERVAL '$intl hour' ";
1301 } else {
1302 $match_part .= " AND updated > DATE_SUB(NOW(), INTERVAL $intl HOUR) ";
1303 }
1304
1305 $need_entries = true;
1306
1307 } else if ($n_feed == -4) {
1308 $match_part = "true";
1309 } else if ($n_feed >= 0) {
1310
1311 if ($n_feed != 0) {
1312 $match_part = "feed_id = '$n_feed'";
1313 } else {
1314 $match_part = "feed_id IS NULL";
1315 }
1316
1317 } else if ($feed < -10) {
1318
1319 $label_id = -$feed - 11;
1320
1321 return getLabelUnread($link, $label_id, $owner_uid);
1322
1323 }
1324
1325 if ($match_part) {
1326
1327 if ($need_entries) {
1328 $from_qpart = "ttrss_user_entries,ttrss_entries";
1329 $from_where = "ttrss_entries.id = ttrss_user_entries.ref_id AND";
1330 } else {
1331 $from_qpart = "ttrss_user_entries";
1332 }
1333
1334 $query = "SELECT count(int_id) AS unread
1335 FROM $from_qpart WHERE
1336 $unread_qpart AND $from_where ($match_part) AND ttrss_user_entries.owner_uid = $owner_uid";
1337
1338 //echo "[$feed/$query]\n";
1339
1340 $result = db_query($link, $query);
1341
1342 } else {
1343
1344 $result = db_query($link, "SELECT COUNT(post_int_id) AS unread
1345 FROM ttrss_tags,ttrss_user_entries,ttrss_entries
1346 WHERE tag_name = '$feed' AND post_int_id = int_id AND ref_id = ttrss_entries.id
1347 AND $unread_qpart AND ttrss_tags.owner_uid = " . $owner_uid);
1348 }
1349
1350 $unread = db_fetch_result($result, 0, "unread");
1351
1352 return $unread;
1353 }
1354
1355 function getGlobalUnread($link, $user_id = false) {
1356
1357 if (!$user_id) {
1358 $user_id = $_SESSION["uid"];
1359 }
1360
1361 $result = db_query($link, "SELECT SUM(value) AS c_id FROM ttrss_counters_cache
1362 WHERE owner_uid = '$user_id' AND feed_id > 0");
1363
1364 $c_id = db_fetch_result($result, 0, "c_id");
1365
1366 return $c_id;
1367 }
1368
1369 function getGlobalCounters($link, $global_unread = -1) {
1370 $ret_arr = array();
1371
1372 if ($global_unread == -1) {
1373 $global_unread = getGlobalUnread($link);
1374 }
1375
1376 $cv = array("id" => "global-unread",
1377 "counter" => (int) $global_unread);
1378
1379 array_push($ret_arr, $cv);
1380
1381 $result = db_query($link, "SELECT COUNT(id) AS fn FROM
1382 ttrss_feeds WHERE owner_uid = " . $_SESSION["uid"]);
1383
1384 $subscribed_feeds = db_fetch_result($result, 0, "fn");
1385
1386 $cv = array("id" => "subscribed-feeds",
1387 "counter" => (int) $subscribed_feeds);
1388
1389 array_push($ret_arr, $cv);
1390
1391 return $ret_arr;
1392 }
1393
1394 function getVirtCounters($link) {
1395
1396 $ret_arr = array();
1397
1398 for ($i = 0; $i >= -4; $i--) {
1399
1400 $count = getFeedUnread($link, $i);
1401
1402 $cv = array("id" => $i,
1403 "counter" => (int) $count);
1404
1405 // if (get_pref($link, 'EXTENDED_FEEDLIST'))
1406 // $cv["xmsg"] = getFeedArticles($link, $i)." ".__("total");
1407
1408 array_push($ret_arr, $cv);
1409 }
1410
1411 return $ret_arr;
1412 }
1413
1414 function getLabelCounters($link, $descriptions = false) {
1415
1416 $ret_arr = array();
1417
1418 $owner_uid = $_SESSION["uid"];
1419
1420 $result = db_query($link, "SELECT id,caption,COUNT(unread) AS unread
1421 FROM ttrss_labels2 LEFT JOIN ttrss_user_labels2 ON
1422 (ttrss_labels2.id = label_id)
1423 LEFT JOIN ttrss_user_entries ON (ref_id = article_id AND unread = true)
1424 WHERE ttrss_labels2.owner_uid = $owner_uid GROUP BY ttrss_labels2.id,
1425 ttrss_labels2.caption");
1426
1427 while ($line = db_fetch_assoc($result)) {
1428
1429 $id = -$line["id"] - 11;
1430
1431 $label_name = $line["caption"];
1432 $count = $line["unread"];
1433
1434 $cv = array("id" => $id,
1435 "counter" => (int) $count);
1436
1437 if ($descriptions)
1438 $cv["description"] = $label_name;
1439
1440 // if (get_pref($link, 'EXTENDED_FEEDLIST'))
1441 // $cv["xmsg"] = getFeedArticles($link, $id)." ".__("total");
1442
1443 array_push($ret_arr, $cv);
1444 }
1445
1446 return $ret_arr;
1447 }
1448
1449 function getFeedCounters($link, $active_feed = false) {
1450
1451 $ret_arr = array();
1452
1453 $query = "SELECT ttrss_feeds.id,
1454 ttrss_feeds.title,
1455 ".SUBSTRING_FOR_DATE."(ttrss_feeds.last_updated,1,19) AS last_updated,
1456 last_error, value AS count
1457 FROM ttrss_feeds, ttrss_counters_cache
1458 WHERE ttrss_feeds.owner_uid = ".$_SESSION["uid"]."
1459 AND ttrss_counters_cache.owner_uid = ttrss_feeds.owner_uid
1460 AND ttrss_counters_cache.feed_id = id";
1461
1462 $result = db_query($link, $query);
1463 $fctrs_modified = false;
1464
1465 while ($line = db_fetch_assoc($result)) {
1466
1467 $id = $line["id"];
1468 $count = $line["count"];
1469 $last_error = htmlspecialchars($line["last_error"]);
1470
1471 $last_updated = make_local_datetime($link, $line['last_updated'], false);
1472
1473 $has_img = feed_has_icon($id);
1474
1475 if (date('Y') - date('Y', strtotime($line['last_updated'])) > 2)
1476 $last_updated = '';
1477
1478 $cv = array("id" => $id,
1479 "updated" => $last_updated,
1480 "counter" => (int) $count,
1481 "has_img" => (int) $has_img);
1482
1483 if ($last_error)
1484 $cv["error"] = $last_error;
1485
1486 // if (get_pref($link, 'EXTENDED_FEEDLIST'))
1487 // $cv["xmsg"] = getFeedArticles($link, $id)." ".__("total");
1488
1489 if ($active_feed && $id == $active_feed)
1490 $cv["title"] = truncate_string($line["title"], 30);
1491
1492 array_push($ret_arr, $cv);
1493
1494 }
1495
1496 return $ret_arr;
1497 }
1498
1499 function get_pgsql_version($link) {
1500 $result = db_query($link, "SELECT version() AS version");
1501 $version = explode(" ", db_fetch_result($result, 0, "version"));
1502 return $version[1];
1503 }
1504
1505 /**
1506 * @return array (code => Status code, message => error message if available)
1507 *
1508 * 0 - OK, Feed already exists
1509 * 1 - OK, Feed added
1510 * 2 - Invalid URL
1511 * 3 - URL content is HTML, no feeds available
1512 * 4 - URL content is HTML which contains multiple feeds.
1513 * Here you should call extractfeedurls in rpc-backend
1514 * to get all possible feeds.
1515 * 5 - Couldn't download the URL content.
1516 */
1517 function subscribe_to_feed($link, $url, $cat_id = 0,
1518 $auth_login = '', $auth_pass = '', $need_auth = false) {
1519
1520 global $fetch_last_error;
1521
1522 require_once "include/rssfuncs.php";
1523
1524 $url = fix_url($url);
1525
1526 if (!$url || !validate_feed_url($url)) return array("code" => 2);
1527
1528 $contents = @fetch_file_contents($url, false, $auth_login, $auth_pass);
1529
1530 if (!$contents) {
1531 return array("code" => 5, "message" => $fetch_last_error);
1532 }
1533
1534 if (is_html($contents)) {
1535 $feedUrls = get_feeds_from_html($url, $contents);
1536
1537 if (count($feedUrls) == 0) {
1538 return array("code" => 3);
1539 } else if (count($feedUrls) > 1) {
1540 return array("code" => 4, "feeds" => $feedUrls);
1541 }
1542 //use feed url as new URL
1543 $url = key($feedUrls);
1544 }
1545
1546 if ($cat_id == "0" || !$cat_id) {
1547 $cat_qpart = "NULL";
1548 } else {
1549 $cat_qpart = "'$cat_id'";
1550 }
1551
1552 $result = db_query($link,
1553 "SELECT id FROM ttrss_feeds
1554 WHERE feed_url = '$url' AND owner_uid = ".$_SESSION["uid"]);
1555
1556 if (db_num_rows($result) == 0) {
1557 $result = db_query($link,
1558 "INSERT INTO ttrss_feeds
1559 (owner_uid,feed_url,title,cat_id, auth_login,auth_pass,update_method)
1560 VALUES ('".$_SESSION["uid"]."', '$url',
1561 '[Unknown]', $cat_qpart, '$auth_login', '$auth_pass', 0)");
1562
1563 $result = db_query($link,
1564 "SELECT id FROM ttrss_feeds WHERE feed_url = '$url'
1565 AND owner_uid = " . $_SESSION["uid"]);
1566
1567 $feed_id = db_fetch_result($result, 0, "id");
1568
1569 if ($feed_id) {
1570 update_rss_feed($link, $feed_id, true);
1571 }
1572
1573 return array("code" => 1);
1574 } else {
1575 return array("code" => 0);
1576 }
1577 }
1578
1579 function print_feed_select($link, $id, $default_id = "",
1580 $attributes = "", $include_all_feeds = true,
1581 $root_id = false, $nest_level = 0) {
1582
1583 if (!$root_id) {
1584 print "<select id=\"$id\" name=\"$id\" $attributes>";
1585 if ($include_all_feeds) {
1586 $is_selected = ("0" == $default_id) ? "selected=\"1\"" : "";
1587 print "<option $is_selected value=\"0\">".__('All feeds')."</option>";
1588 }
1589 }
1590
1591 if (get_pref($link, 'ENABLE_FEED_CATS')) {
1592
1593 if ($root_id)
1594 $parent_qpart = "parent_cat = '$root_id'";
1595 else
1596 $parent_qpart = "parent_cat IS NULL";
1597
1598 $result = db_query($link, "SELECT id,title,
1599 (SELECT COUNT(id) FROM ttrss_feed_categories AS c2 WHERE
1600 c2.parent_cat = ttrss_feed_categories.id) AS num_children
1601 FROM ttrss_feed_categories
1602 WHERE owner_uid = ".$_SESSION["uid"]." AND $parent_qpart ORDER BY title");
1603
1604 while ($line = db_fetch_assoc($result)) {
1605
1606 for ($i = 0; $i < $nest_level; $i++)
1607 $line["title"] = " - " . $line["title"];
1608
1609 $is_selected = ("CAT:".$line["id"] == $default_id) ? "selected=\"1\"" : "";
1610
1611 printf("<option $is_selected value='CAT:%d'>%s</option>",
1612 $line["id"], htmlspecialchars($line["title"]));
1613
1614 if ($line["num_children"] > 0)
1615 print_feed_select($link, $id, $default_id, $attributes,
1616 $include_all_feeds, $line["id"], $nest_level+1);
1617
1618 $feed_result = db_query($link, "SELECT id,title FROM ttrss_feeds
1619 WHERE cat_id = '".$line["id"]."' AND owner_uid = ".$_SESSION["uid"] . " ORDER BY title");
1620
1621 while ($fline = db_fetch_assoc($feed_result)) {
1622 $is_selected = ($fline["id"] == $default_id) ? "selected=\"1\"" : "";
1623
1624 $fline["title"] = " + " . $fline["title"];
1625
1626 for ($i = 0; $i < $nest_level; $i++)
1627 $fline["title"] = " - " . $fline["title"];
1628
1629 printf("<option $is_selected value='%d'>%s</option>",
1630 $fline["id"], htmlspecialchars($fline["title"]));
1631 }
1632 }
1633
1634 if (!$root_id) {
1635 $is_selected = ($default_id == "CAT:0") ? "selected=\"1\"" : "";
1636
1637 printf("<option $is_selected value='CAT:0'>%s</option>",
1638 __("Uncategorized"));
1639
1640 $feed_result = db_query($link, "SELECT id,title FROM ttrss_feeds
1641 WHERE cat_id IS NULL AND owner_uid = ".$_SESSION["uid"] . " ORDER BY title");
1642
1643 while ($fline = db_fetch_assoc($feed_result)) {
1644 $is_selected = ($fline["id"] == $default_id && !$default_is_cat) ? "selected=\"1\"" : "";
1645
1646 $fline["title"] = " + " . $fline["title"];
1647
1648 for ($i = 0; $i < $nest_level; $i++)
1649 $fline["title"] = " - " . $fline["title"];
1650
1651 printf("<option $is_selected value='%d'>%s</option>",
1652 $fline["id"], htmlspecialchars($fline["title"]));
1653 }
1654 }
1655
1656 } else {
1657 $result = db_query($link, "SELECT id,title FROM ttrss_feeds
1658 WHERE owner_uid = ".$_SESSION["uid"]." ORDER BY title");
1659
1660 while ($line = db_fetch_assoc($result)) {
1661
1662 $is_selected = ($line["id"] == $default_id) ? "selected=\"1\"" : "";
1663
1664 printf("<option $is_selected value='%d'>%s</option>",
1665 $line["id"], htmlspecialchars($line["title"]));
1666 }
1667 }
1668
1669 if (!$root_id) {
1670 print "</select>";
1671 }
1672 }
1673
1674 function print_feed_cat_select($link, $id, $default_id,
1675 $attributes, $include_all_cats = true, $root_id = false, $nest_level = 0) {
1676
1677 if (!$root_id) {
1678 print "<select id=\"$id\" name=\"$id\" default=\"$default_id\" onchange=\"catSelectOnChange(this)\" $attributes>";
1679 }
1680
1681 if ($root_id)
1682 $parent_qpart = "parent_cat = '$root_id'";
1683 else
1684 $parent_qpart = "parent_cat IS NULL";
1685
1686 $result = db_query($link, "SELECT id,title,
1687 (SELECT COUNT(id) FROM ttrss_feed_categories AS c2 WHERE
1688 c2.parent_cat = ttrss_feed_categories.id) AS num_children
1689 FROM ttrss_feed_categories
1690 WHERE owner_uid = ".$_SESSION["uid"]." AND $parent_qpart ORDER BY title");
1691
1692 while ($line = db_fetch_assoc($result)) {
1693 if ($line["id"] == $default_id) {
1694 $is_selected = "selected=\"1\"";
1695 } else {
1696 $is_selected = "";
1697 }
1698
1699 for ($i = 0; $i < $nest_level; $i++)
1700 $line["title"] = " - " . $line["title"];
1701
1702 if ($line["title"])
1703 printf("<option $is_selected value='%d'>%s</option>",
1704 $line["id"], htmlspecialchars($line["title"]));
1705
1706 if ($line["num_children"] > 0)
1707 print_feed_cat_select($link, $id, $default_id, $attributes,
1708 $include_all_cats, $line["id"], $nest_level+1);
1709 }
1710
1711 if (!$root_id) {
1712 if ($include_all_cats) {
1713 if (db_num_rows($result) > 0) {
1714 print "<option disabled=\"1\">--------</option>";
1715 }
1716
1717 if ($default_id == 0) {
1718 $is_selected = "selected=\"1\"";
1719 } else {
1720 $is_selected = "";
1721 }
1722
1723 print "<option $is_selected value=\"0\">".__('Uncategorized')."</option>";
1724 }
1725 print "</select>";
1726 }
1727 }
1728
1729 function checkbox_to_sql_bool($val) {
1730 return ($val == "on") ? "true" : "false";
1731 }
1732
1733 function getFeedCatTitle($link, $id) {
1734 if ($id == -1) {
1735 return __("Special");
1736 } else if ($id < -10) {
1737 return __("Labels");
1738 } else if ($id > 0) {
1739 $result = db_query($link, "SELECT ttrss_feed_categories.title
1740 FROM ttrss_feeds, ttrss_feed_categories WHERE ttrss_feeds.id = '$id' AND
1741 cat_id = ttrss_feed_categories.id");
1742 if (db_num_rows($result) == 1) {
1743 return db_fetch_result($result, 0, "title");
1744 } else {
1745 return __("Uncategorized");
1746 }
1747 } else {
1748 return "getFeedCatTitle($id) failed";
1749 }
1750
1751 }
1752
1753 function getFeedIcon($id) {
1754 switch ($id) {
1755 case 0:
1756 return "images/archive.png";
1757 break;
1758 case -1:
1759 return "images/mark_set.svg";
1760 break;
1761 case -2:
1762 return "images/pub_set.svg";
1763 break;
1764 case -3:
1765 return "images/fresh.png";
1766 break;
1767 case -4:
1768 return "images/tag.png";
1769 break;
1770 case -6:
1771 return "images/recently_read.png";
1772 break;
1773 default:
1774 if ($id < -10) {
1775 return "images/label.png";
1776 } else {
1777 if (file_exists(ICONS_DIR . "/$id.ico"))
1778 return ICONS_URL . "/$id.ico";
1779 }
1780 break;
1781 }
1782 }
1783
1784 function getFeedTitle($link, $id, $cat = false) {
1785 if ($cat) {
1786 return getCategoryTitle($link, $id);
1787 } else if ($id == -1) {
1788 return __("Starred articles");
1789 } else if ($id == -2) {
1790 return __("Published articles");
1791 } else if ($id == -3) {
1792 return __("Fresh articles");
1793 } else if ($id == -4) {
1794 return __("All articles");
1795 } else if ($id === 0 || $id === "0") {
1796 return __("Archived articles");
1797 } else if ($id == -6) {
1798 return __("Recently read");
1799 } else if ($id < -10) {
1800 $label_id = -$id - 11;
1801 $result = db_query($link, "SELECT caption FROM ttrss_labels2 WHERE id = '$label_id'");
1802 if (db_num_rows($result) == 1) {
1803 return db_fetch_result($result, 0, "caption");
1804 } else {
1805 return "Unknown label ($label_id)";
1806 }
1807
1808 } else if (is_numeric($id) && $id > 0) {
1809 $result = db_query($link, "SELECT title FROM ttrss_feeds WHERE id = '$id'");
1810 if (db_num_rows($result) == 1) {
1811 return db_fetch_result($result, 0, "title");
1812 } else {
1813 return "Unknown feed ($id)";
1814 }
1815 } else {
1816 return $id;
1817 }
1818 }
1819
1820 function make_init_params($link) {
1821 $params = array();
1822
1823 $params["sign_progress"] = "images/indicator_white.gif";
1824 $params["sign_progress_tiny"] = "images/indicator_tiny.gif";
1825 $params["sign_excl"] = "images/sign_excl.svg";
1826 $params["sign_info"] = "images/sign_info.svg";
1827
1828 foreach (array("ON_CATCHUP_SHOW_NEXT_FEED", "HIDE_READ_FEEDS",
1829 "ENABLE_FEED_CATS", "FEEDS_SORT_BY_UNREAD", "CONFIRM_FEED_CATCHUP",
1830 "CDM_AUTO_CATCHUP", "FRESH_ARTICLE_MAX_AGE", "DEFAULT_ARTICLE_LIMIT",
1831 "HIDE_READ_SHOWS_SPECIAL", "COMBINED_DISPLAY_MODE") as $param) {
1832
1833 $params[strtolower($param)] = (int) get_pref($link, $param);
1834 }
1835
1836 $params["icons_url"] = ICONS_URL;
1837 $params["cookie_lifetime"] = SESSION_COOKIE_LIFETIME;
1838 $params["default_view_mode"] = get_pref($link, "_DEFAULT_VIEW_MODE");
1839 $params["default_view_limit"] = (int) get_pref($link, "_DEFAULT_VIEW_LIMIT");
1840 $params["default_view_order_by"] = get_pref($link, "_DEFAULT_VIEW_ORDER_BY");
1841 $params["bw_limit"] = (int) $_SESSION["bw_limit"];
1842
1843 $result = db_query($link, "SELECT MAX(id) AS mid, COUNT(*) AS nf FROM
1844 ttrss_feeds WHERE owner_uid = " . $_SESSION["uid"]);
1845
1846 $max_feed_id = db_fetch_result($result, 0, "mid");
1847 $num_feeds = db_fetch_result($result, 0, "nf");
1848
1849 $params["max_feed_id"] = (int) $max_feed_id;
1850 $params["num_feeds"] = (int) $num_feeds;
1851
1852 $params["collapsed_feedlist"] = (int) get_pref($link, "_COLLAPSED_FEEDLIST");
1853 $params["hotkeys"] = get_hotkeys_map($link);
1854
1855 $params["csrf_token"] = $_SESSION["csrf_token"];
1856 $params["widescreen"] = (int) $_COOKIE["ttrss_widescreen"];
1857
1858 $params['simple_update'] = defined('SIMPLE_UPDATE_MODE') && SIMPLE_UPDATE_MODE;
1859
1860 return $params;
1861 }
1862
1863 function get_hotkeys_info($link) {
1864 $hotkeys = array(
1865 __("Navigation") => array(
1866 "next_feed" => __("Open next feed"),
1867 "prev_feed" => __("Open previous feed"),
1868 "next_article" => __("Open next article"),
1869 "prev_article" => __("Open previous article"),
1870 "next_article_noscroll" => __("Open next article (don't scroll long articles)"),
1871 "prev_article_noscroll" => __("Open previous article (don't scroll long articles)"),
1872 "search_dialog" => __("Show search dialog")),
1873 __("Article") => array(
1874 "toggle_mark" => __("Toggle starred"),
1875 "toggle_publ" => __("Toggle published"),
1876 "toggle_unread" => __("Toggle unread"),
1877 "edit_tags" => __("Edit tags"),
1878 "dismiss_selected" => __("Dismiss selected"),
1879 "dismiss_read" => __("Dismiss read"),
1880 "open_in_new_window" => __("Open in new window"),
1881 "catchup_below" => __("Mark below as read"),
1882 "catchup_above" => __("Mark above as read"),
1883 "article_scroll_down" => __("Scroll down"),
1884 "article_scroll_up" => __("Scroll up"),
1885 "select_article_cursor" => __("Select article under cursor"),
1886 "email_article" => __("Email article"),
1887 "close_article" => __("Close/collapse article"),
1888 "toggle_widescreen" => __("Toggle widescreen mode")),
1889 __("Article selection") => array(
1890 "select_all" => __("Select all articles"),
1891 "select_unread" => __("Select unread"),
1892 "select_marked" => __("Select starred"),
1893 "select_published" => __("Select published"),
1894 "select_invert" => __("Invert selection"),
1895 "select_none" => __("Deselect everything")),
1896 __("Feed") => array(
1897 "feed_refresh" => __("Refresh current feed"),
1898 "feed_unhide_read" => __("Un/hide read feeds"),
1899 "feed_subscribe" => __("Subscribe to feed"),
1900 "feed_edit" => __("Edit feed"),
1901 "feed_catchup" => __("Mark as read"),
1902 "feed_reverse" => __("Reverse headlines"),
1903 "feed_debug_update" => __("Debug feed update"),
1904 "catchup_all" => __("Mark all feeds as read"),
1905 "cat_toggle_collapse" => __("Un/collapse current category"),
1906 "toggle_combined_mode" => __("Toggle combined mode")),
1907 __("Go to") => array(
1908 "goto_all" => __("All articles"),
1909 "goto_fresh" => __("Fresh"),
1910 "goto_marked" => __("Starred"),
1911 "goto_published" => __("Published"),
1912 "goto_tagcloud" => __("Tag cloud"),
1913 "goto_prefs" => __("Preferences")),
1914 __("Other") => array(
1915 "create_label" => __("Create label"),
1916 "create_filter" => __("Create filter"),
1917 "collapse_sidebar" => __("Un/collapse sidebar"),
1918 "help_dialog" => __("Show help dialog"))
1919 );
1920
1921 return $hotkeys;
1922 }
1923
1924 function get_hotkeys_map($link) {
1925 $hotkeys = array(
1926 // "navigation" => array(
1927 "k" => "next_feed",
1928 "j" => "prev_feed",
1929 "n" => "next_article",
1930 "p" => "prev_article",
1931 "(38)|up" => "prev_article",
1932 "(40)|down" => "next_article",
1933 // "^(38)|Ctrl-up" => "prev_article_noscroll",
1934 // "^(40)|Ctrl-down" => "next_article_noscroll",
1935 "(191)|/" => "search_dialog",
1936 // "article" => array(
1937 "s" => "toggle_mark",
1938 "*s" => "toggle_publ",
1939 "u" => "toggle_unread",
1940 "*t" => "edit_tags",
1941 "*d" => "dismiss_selected",
1942 "*x" => "dismiss_read",
1943 "o" => "open_in_new_window",
1944 "c p" => "catchup_below",
1945 "c n" => "catchup_above",
1946 "*n" => "article_scroll_down",
1947 "*p" => "article_scroll_up",
1948 "*(38)|Shift+up" => "article_scroll_up",
1949 "*(40)|Shift+down" => "article_scroll_down",
1950 "a *w" => "toggle_widescreen",
1951 "e" => "email_article",
1952 "a q" => "close_article",
1953 // "article_selection" => array(
1954 "a a" => "select_all",
1955 "a u" => "select_unread",
1956 "a *u" => "select_marked",
1957 "a p" => "select_published",
1958 "a i" => "select_invert",
1959 "a n" => "select_none",
1960 // "feed" => array(
1961 "f r" => "feed_refresh",
1962 "f a" => "feed_unhide_read",
1963 "f s" => "feed_subscribe",
1964 "f e" => "feed_edit",
1965 "f q" => "feed_catchup",
1966 "f x" => "feed_reverse",
1967 "f *d" => "feed_debug_update",
1968 "f *c" => "toggle_combined_mode",
1969 "*q" => "catchup_all",
1970 "x" => "cat_toggle_collapse",
1971 // "goto" => array(
1972 "g a" => "goto_all",
1973 "g f" => "goto_fresh",
1974 "g s" => "goto_marked",
1975 "g p" => "goto_published",
1976 "g t" => "goto_tagcloud",
1977 "g *p" => "goto_prefs",
1978 // "other" => array(
1979 "(9)|Tab" => "select_article_cursor", // tab
1980 "c l" => "create_label",
1981 "c f" => "create_filter",
1982 "c s" => "collapse_sidebar",
1983 "^(191)|Ctrl+/" => "help_dialog",
1984 );
1985
1986 if (get_pref($link, 'COMBINED_DISPLAY_MODE')) {
1987 $hotkeys["^(38)|Ctrl-up"] = "prev_article_noscroll";
1988 $hotkeys["^(40)|Ctrl-down"] = "next_article_noscroll";
1989 }
1990
1991 global $pluginhost;
1992 foreach ($pluginhost->get_hooks($pluginhost::HOOK_HOTKEY_MAP) as $plugin) {
1993 $hotkeys = $plugin->hook_hotkey_map($hotkeys);
1994 }
1995
1996 $prefixes = array();
1997
1998 foreach (array_keys($hotkeys) as $hotkey) {
1999 $pair = explode(" ", $hotkey, 2);
2000
2001 if (count($pair) > 1 && !in_array($pair[0], $prefixes)) {
2002 array_push($prefixes, $pair[0]);
2003 }
2004 }
2005
2006 return array($prefixes, $hotkeys);
2007 }
2008
2009 function make_runtime_info($link) {
2010 $data = array();
2011
2012 $result = db_query($link, "SELECT MAX(id) AS mid, COUNT(*) AS nf FROM
2013 ttrss_feeds WHERE owner_uid = " . $_SESSION["uid"]);
2014
2015 $max_feed_id = db_fetch_result($result, 0, "mid");
2016 $num_feeds = db_fetch_result($result, 0, "nf");
2017
2018 $data["max_feed_id"] = (int) $max_feed_id;
2019 $data["num_feeds"] = (int) $num_feeds;
2020
2021 $data['last_article_id'] = getLastArticleId($link);
2022 $data['cdm_expanded'] = get_pref($link, 'CDM_EXPANDED');
2023
2024 if (file_exists(LOCK_DIRECTORY . "/update_daemon.lock")) {
2025
2026 $data['daemon_is_running'] = (int) file_is_locked("update_daemon.lock");
2027
2028 if (time() - $_SESSION["daemon_stamp_check"] > 30) {
2029
2030 $stamp = (int) @file_get_contents(LOCK_DIRECTORY . "/update_daemon.stamp");
2031
2032 if ($stamp) {
2033 $stamp_delta = time() - $stamp;
2034
2035 if ($stamp_delta > 1800) {
2036 $stamp_check = 0;
2037 } else {
2038 $stamp_check = 1;
2039 $_SESSION["daemon_stamp_check"] = time();
2040 }
2041
2042 $data['daemon_stamp_ok'] = $stamp_check;
2043
2044 $stamp_fmt = date("Y.m.d, G:i", $stamp);
2045
2046 $data['daemon_stamp'] = $stamp_fmt;
2047 }
2048 }
2049 }
2050
2051 if ($_SESSION["last_version_check"] + 86400 + rand(-1000, 1000) < time()) {
2052 $new_version_details = @check_for_update($link);
2053
2054 $data['new_version_available'] = (int) ($new_version_details != false);
2055
2056 $_SESSION["last_version_check"] = time();
2057 $_SESSION["version_data"] = $new_version_details;
2058 }
2059
2060 return $data;
2061 }
2062
2063 function search_to_sql($link, $search) {
2064
2065 $search_query_part = "";
2066
2067 $keywords = explode(" ", $search);
2068 $query_keywords = array();
2069
2070 foreach ($keywords as $k) {
2071 if (strpos($k, "-") === 0) {
2072 $k = substr($k, 1);
2073 $not = "NOT";
2074 } else {
2075 $not = "";
2076 }
2077
2078 $commandpair = explode(":", mb_strtolower($k), 2);
2079
2080 if ($commandpair[0] == "note" && $commandpair[1]) {
2081
2082 if ($commandpair[1] == "true")
2083 array_push($query_keywords, "($not (note IS NOT NULL AND note != ''))");
2084 else
2085 array_push($query_keywords, "($not (note IS NULL OR note = ''))");
2086
2087 } else if ($commandpair[0] == "star" && $commandpair[1]) {
2088
2089 if ($commandpair[1] == "true")
2090 array_push($query_keywords, "($not (marked = true))");
2091 else
2092 array_push($query_keywords, "($not (marked = false))");
2093
2094 } else if ($commandpair[0] == "pub" && $commandpair[1]) {
2095
2096 if ($commandpair[1] == "true")
2097 array_push($query_keywords, "($not (published = true))");
2098 else
2099 array_push($query_keywords, "($not (published = false))");
2100
2101 } else if (strpos($k, "@") === 0) {
2102
2103 $user_tz_string = get_pref($link, 'USER_TIMEZONE', $_SESSION['uid']);
2104 $orig_ts = strtotime(substr($k, 1));
2105 $k = date("Y-m-d", convert_timestamp($orig_ts, $user_tz_string, 'UTC'));
2106
2107 //$k = date("Y-m-d", strtotime(substr($k, 1)));
2108
2109 array_push($query_keywords, "(".SUBSTRING_FOR_DATE."(updated,1,LENGTH('$k')) $not = '$k')");
2110 } else {
2111 array_push($query_keywords, "(UPPER(ttrss_entries.title) $not LIKE UPPER('%$k%')
2112 OR UPPER(ttrss_entries.content) $not LIKE UPPER('%$k%'))");
2113 }
2114 }
2115
2116 $search_query_part = implode("AND", $query_keywords);
2117
2118 return $search_query_part;
2119 }
2120
2121 function getParentCategories($link, $cat, $owner_uid) {
2122 $rv = array();
2123
2124 $result = db_query($link, "SELECT parent_cat FROM ttrss_feed_categories
2125 WHERE id = '$cat' AND parent_cat IS NOT NULL AND owner_uid = $owner_uid");
2126
2127 while ($line = db_fetch_assoc($result)) {
2128 array_push($rv, $line["parent_cat"]);
2129 $rv = array_merge($rv, getParentCategories($link, $line["parent_cat"], $owner_uid));
2130 }
2131
2132 return $rv;
2133 }
2134
2135 function getChildCategories($link, $cat, $owner_uid) {
2136 $rv = array();
2137
2138 $result = db_query($link, "SELECT id FROM ttrss_feed_categories
2139 WHERE parent_cat = '$cat' AND owner_uid = $owner_uid");
2140
2141 while ($line = db_fetch_assoc($result)) {
2142 array_push($rv, $line["id"]);
2143 $rv = array_merge($rv, getChildCategories($link, $line["id"], $owner_uid));
2144 }
2145
2146 return $rv;
2147 }
2148
2149 function queryFeedHeadlines($link, $feed, $limit, $view_mode, $cat_view, $search, $search_mode, $override_order = false, $offset = 0, $owner_uid = 0, $filter = false, $since_id = 0, $include_children = false, $ignore_vfeed_group = false) {
2150
2151 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
2152
2153 $ext_tables_part = "";
2154
2155 if ($search) {
2156
2157 if (SPHINX_ENABLED) {
2158 $ids = join(",", @sphinx_search($search, 0, 500));
2159
2160 if ($ids)
2161 $search_query_part = "ref_id IN ($ids) AND ";
2162 else
2163 $search_query_part = "ref_id = -1 AND ";
2164
2165 } else {
2166 $search_query_part = search_to_sql($link, $search);
2167 $search_query_part .= " AND ";
2168 }
2169
2170 } else {
2171 $search_query_part = "";
2172 }
2173
2174 if ($filter) {
2175
2176 if (DB_TYPE == "pgsql") {
2177 $query_strategy_part .= " AND updated > NOW() - INTERVAL '14 days' ";
2178 } else {
2179 $query_strategy_part .= " AND updated > DATE_SUB(NOW(), INTERVAL 14 DAY) ";
2180 }
2181
2182 $override_order = "updated DESC";
2183
2184 $filter_query_part = filter_to_sql($link, $filter, $owner_uid);
2185
2186 // Try to check if SQL regexp implementation chokes on a valid regexp
2187 $result = db_query($link, "SELECT true AS true_val FROM ttrss_entries,
2188 ttrss_user_entries, ttrss_feeds, ttrss_feed_categories
2189 WHERE $filter_query_part LIMIT 1", false);
2190
2191 if ($result) {
2192 $test = db_fetch_result($result, 0, "true_val");
2193
2194 if (!$test) {
2195 $filter_query_part = "false AND";
2196 } else {
2197 $filter_query_part .= " AND";
2198 }
2199 } else {
2200 $filter_query_part = "false AND";
2201 }
2202
2203 } else {
2204 $filter_query_part = "";
2205 }
2206
2207 if ($since_id) {
2208 $since_id_part = "ttrss_entries.id > $since_id AND ";
2209 } else {
2210 $since_id_part = "";
2211 }
2212
2213 $view_query_part = "";
2214
2215 if ($view_mode == "adaptive" || $view_query_part == "noscores") {
2216 if ($search) {
2217 $view_query_part = " ";
2218 } else if ($feed != -1) {
2219 $unread = getFeedUnread($link, $feed, $cat_view);
2220
2221 if ($cat_view && $feed > 0 && $include_children)
2222 $unread += getCategoryChildrenUnread($link, $feed);
2223
2224 if ($unread > 0) {
2225 $view_query_part = " unread = true AND ";
2226 }
2227 }
2228 }
2229
2230 if ($view_mode == "marked") {
2231 $view_query_part = " marked = true AND ";
2232 }
2233
2234 if ($view_mode == "published") {
2235 $view_query_part = " published = true AND ";
2236 }
2237
2238 if ($view_mode == "unread") {
2239 $view_query_part = " unread = true AND ";
2240 }
2241
2242 if ($view_mode == "updated") {
2243 $view_query_part = " (last_read is null and unread = false) AND ";
2244 }
2245
2246 if ($limit > 0) {
2247 $limit_query_part = "LIMIT " . $limit;
2248 }
2249
2250 $allow_archived = false;
2251
2252 $vfeed_query_part = "";
2253
2254 // override query strategy and enable feed display when searching globally
2255 if ($search && $search_mode == "all_feeds") {
2256 $query_strategy_part = "true";
2257 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2258 /* tags */
2259 } else if (!is_numeric($feed)) {
2260 $query_strategy_part = "true";
2261 $vfeed_query_part = "(SELECT title FROM ttrss_feeds WHERE
2262 id = feed_id) as feed_title,";
2263 } else if ($search && $search_mode == "this_cat") {
2264 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2265
2266 if ($feed > 0) {
2267 if ($include_children) {
2268 $subcats = getChildCategories($link, $feed, $owner_uid);
2269 array_push($subcats, $feed);
2270 $cats_qpart = join(",", $subcats);
2271 } else {
2272 $cats_qpart = $feed;
2273 }
2274
2275 $query_strategy_part = "ttrss_feeds.cat_id IN ($cats_qpart)";
2276
2277 } else {
2278 $query_strategy_part = "ttrss_feeds.cat_id IS NULL";
2279 }
2280
2281 } else if ($feed > 0) {
2282
2283 if ($cat_view) {
2284
2285 if ($feed > 0) {
2286 if ($include_children) {
2287 # sub-cats
2288 $subcats = getChildCategories($link, $feed, $owner_uid);
2289
2290 array_push($subcats, $feed);
2291 $query_strategy_part = "cat_id IN (".
2292 implode(",", $subcats).")";
2293
2294 } else {
2295 $query_strategy_part = "cat_id = '$feed'";
2296 }
2297
2298 } else {
2299 $query_strategy_part = "cat_id IS NULL";
2300 }
2301
2302 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2303
2304 } else {
2305 $query_strategy_part = "feed_id = '$feed'";
2306 }
2307 } else if ($feed == 0 && !$cat_view) { // archive virtual feed
2308 $query_strategy_part = "feed_id IS NULL";
2309 $allow_archived = true;
2310 } else if ($feed == 0 && $cat_view) { // uncategorized
2311 $query_strategy_part = "cat_id IS NULL AND feed_id IS NOT NULL";
2312 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2313 } else if ($feed == -1) { // starred virtual feed
2314 $query_strategy_part = "marked = true";
2315 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2316 $allow_archived = true;
2317
2318 if (!$override_order) $override_order = "last_marked DESC, updated DESC";
2319
2320 } else if ($feed == -2) { // published virtual feed OR labels category
2321
2322 if (!$cat_view) {
2323 $query_strategy_part = "published = true";
2324 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2325 $allow_archived = true;
2326
2327 if (!$override_order) $override_order = "last_published DESC, updated DESC";
2328 } else {
2329 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2330
2331 $ext_tables_part = ",ttrss_labels2,ttrss_user_labels2";
2332
2333 $query_strategy_part = "ttrss_labels2.id = ttrss_user_labels2.label_id AND
2334 ttrss_user_labels2.article_id = ref_id";
2335
2336 }
2337 } else if ($feed == -6) { // recently read
2338 $query_strategy_part = "unread = false AND last_read IS NOT NULL";
2339 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2340 $allow_archived = true;
2341
2342 if (!$override_order) $override_order = "last_read DESC";
2343 } else if ($feed == -3) { // fresh virtual feed
2344 $query_strategy_part = "unread = true AND score >= 0";
2345
2346 $intl = get_pref($link, "FRESH_ARTICLE_MAX_AGE", $owner_uid);
2347
2348 if (DB_TYPE == "pgsql") {
2349 $query_strategy_part .= " AND updated > NOW() - INTERVAL '$intl hour' ";
2350 } else {
2351 $query_strategy_part .= " AND updated > DATE_SUB(NOW(), INTERVAL $intl HOUR) ";
2352 }
2353
2354 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2355 } else if ($feed == -4) { // all articles virtual feed
2356 $query_strategy_part = "true";
2357 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2358 } else if ($feed <= -10) { // labels
2359 $label_id = -$feed - 11;
2360
2361 $query_strategy_part = "label_id = '$label_id' AND
2362 ttrss_labels2.id = ttrss_user_labels2.label_id AND
2363 ttrss_user_labels2.article_id = ref_id";
2364
2365 $vfeed_query_part = "ttrss_feeds.title AS feed_title,";
2366 $ext_tables_part = ",ttrss_labels2,ttrss_user_labels2";
2367 $allow_archived = true;
2368
2369 } else {
2370 $query_strategy_part = "true";
2371 }
2372
2373 if (get_pref($link, "SORT_HEADLINES_BY_FEED_DATE", $owner_uid)) {
2374 $date_sort_field = "updated";
2375 } else {
2376 $date_sort_field = "date_entered";
2377 }
2378
2379 if (get_pref($link, 'REVERSE_HEADLINES', $owner_uid)) {
2380 $order_by = "$date_sort_field";
2381 } else {
2382 $order_by = "$date_sort_field DESC";
2383 }
2384
2385 if ($view_mode != "noscores") {
2386 $order_by = "score DESC, $order_by";
2387 }
2388
2389 if ($override_order) {
2390 $order_by = $override_order;
2391 }
2392
2393 $feed_title = "";
2394
2395 if ($search) {
2396 $feed_title = T_sprintf("Search results: %s", $search);
2397 } else {
2398 if ($cat_view) {
2399 $feed_title = getCategoryTitle($link, $feed);
2400 } else {
2401 if (is_numeric($feed) && $feed > 0) {
2402 $result = db_query($link, "SELECT title,site_url,last_error
2403 FROM ttrss_feeds WHERE id = '$feed' AND owner_uid = $owner_uid");
2404
2405 $feed_title = db_fetch_result($result, 0, "title");
2406 $feed_site_url = db_fetch_result($result, 0, "site_url");
2407 $last_error = db_fetch_result($result, 0, "last_error");
2408 } else {
2409 $feed_title = getFeedTitle($link, $feed);
2410 }
2411 }
2412 }
2413
2414 $content_query_part = "content as content_preview, cached_content, ";
2415
2416 if (is_numeric($feed)) {
2417
2418 if ($feed >= 0) {
2419 $feed_kind = "Feeds";
2420 } else {
2421 $feed_kind = "Labels";
2422 }
2423
2424 if ($limit_query_part) {
2425 $offset_query_part = "OFFSET $offset";
2426 }
2427
2428 // proper override_order applied above
2429 if ($vfeed_query_part && !$ignore_vfeed_group && get_pref($link, 'VFEED_GROUP_BY_FEED', $owner_uid)) {
2430 if (!$override_order) {
2431 $order_by = "ttrss_feeds.title, $order_by";
2432 } else {
2433 $order_by = "ttrss_feeds.title, $override_order";
2434 }
2435 }
2436
2437 if (!$allow_archived) {
2438 $from_qpart = "ttrss_entries,ttrss_user_entries,ttrss_feeds$ext_tables_part";
2439 $feed_check_qpart = "ttrss_user_entries.feed_id = ttrss_feeds.id AND";
2440
2441 } else {
2442 $from_qpart = "ttrss_entries$ext_tables_part,ttrss_user_entries
2443 LEFT JOIN ttrss_feeds ON (feed_id = ttrss_feeds.id)";
2444 }
2445
2446 $query = "SELECT DISTINCT
2447 date_entered,
2448 guid,
2449 ttrss_entries.id,ttrss_entries.title,
2450 updated,
2451 label_cache,
2452 tag_cache,
2453 always_display_enclosures,
2454 site_url,
2455 note,
2456 num_comments,
2457 comments,
2458 int_id,
2459 hide_images,
2460 unread,feed_id,marked,published,link,last_read,orig_feed_id,
2461 last_marked, last_published,
2462 ".SUBSTRING_FOR_DATE."(last_read,1,19) as last_read_noms,
2463 $vfeed_query_part
2464 $content_query_part
2465 ".SUBSTRING_FOR_DATE."(updated,1,19) as updated_noms,
2466 author,score
2467 FROM
2468 $from_qpart
2469 WHERE
2470 $feed_check_qpart
2471 ttrss_user_entries.ref_id = ttrss_entries.id AND
2472 ttrss_user_entries.owner_uid = '$owner_uid' AND
2473 $search_query_part
2474 $filter_query_part
2475 $view_query_part
2476 $since_id_part
2477 $query_strategy_part ORDER BY $order_by
2478 $limit_query_part $offset_query_part";
2479
2480 if ($_REQUEST["debug"]) print $query;
2481
2482 $result = db_query($link, $query);
2483
2484 } else {
2485 // browsing by tag
2486
2487 $select_qpart = "SELECT DISTINCT " .
2488 "date_entered," .
2489 "guid," .
2490 "note," .
2491 "ttrss_entries.id as id," .
2492 "title," .
2493 "updated," .
2494 "unread," .
2495 "feed_id," .
2496 "orig_feed_id," .
2497 "marked," .
2498 "num_comments, " .
2499 "comments, " .
2500 "tag_cache," .
2501 "label_cache," .
2502 "link," .
2503 "last_read," .
2504 "hide_images," .
2505 "last_marked, last_published, " .
2506 SUBSTRING_FOR_DATE . "(last_read,1,19) as last_read_noms," .
2507 $since_id_part .
2508 $vfeed_query_part .
2509 $content_query_part .
2510 SUBSTRING_FOR_DATE . "(updated,1,19) as updated_noms," .
2511 "score ";
2512
2513 $feed_kind = "Tags";
2514 $all_tags = explode(",", $feed);
2515 if ($search_mode == 'any') {
2516 $tag_sql = "tag_name in (" . implode(", ", array_map("db_quote", $all_tags)) . ")";
2517 $from_qpart = " FROM ttrss_entries,ttrss_user_entries,ttrss_tags ";
2518 $where_qpart = " WHERE " .
2519 "ref_id = ttrss_entries.id AND " .
2520 "ttrss_user_entries.owner_uid = $owner_uid AND " .
2521 "post_int_id = int_id AND $tag_sql AND " .
2522 $view_query_part .
2523 $search_query_part .
2524 $query_strategy_part . " ORDER BY $order_by " .
2525 $limit_query_part;
2526
2527 } else {
2528 $i = 1;
2529 $sub_selects = array();
2530 $sub_ands = array();
2531 foreach ($all_tags as $term) {
2532 array_push($sub_selects, "(SELECT post_int_id from ttrss_tags WHERE tag_name = " . db_quote($term) . " AND owner_uid = $owner_uid) as A$i");
2533 $i++;
2534 }
2535 if ($i > 2) {
2536 $x = 1;
2537 $y = 2;
2538 do {
2539 array_push($sub_ands, "A$x.post_int_id = A$y.post_int_id");
2540 $x++;
2541 $y++;
2542 } while ($y < $i);
2543 }
2544 array_push($sub_ands, "A1.post_int_id = ttrss_user_entries.int_id and ttrss_user_entries.owner_uid = $owner_uid");
2545 array_push($sub_ands, "ttrss_user_entries.ref_id = ttrss_entries.id");
2546 $from_qpart = " FROM " . implode(", ", $sub_selects) . ", ttrss_user_entries, ttrss_entries";
2547 $where_qpart = " WHERE " . implode(" AND ", $sub_ands);
2548 }
2549 // error_log("TAG SQL: " . $tag_sql);
2550 // $tag_sql = "tag_name = '$feed'"; DEFAULT way
2551
2552 // error_log("[". $select_qpart . "][" . $from_qpart . "][" .$where_qpart . "]");
2553 $result = db_query($link, $select_qpart . $from_qpart . $where_qpart);
2554 }
2555
2556 return array($result, $feed_title, $feed_site_url, $last_error);
2557
2558 }
2559
2560 function sanitize($link, $str, $force_remove_images = false, $owner = false, $site_url = false) {
2561 if (!$owner) $owner = $_SESSION["uid"];
2562
2563 $res = trim($str); if (!$res) return '';
2564
2565 if (strpos($res, "href=") === false)
2566 $res = rewrite_urls($res);
2567
2568 $charset_hack = '<head>
2569 <meta http-equiv="Content-Type" content="text/html; charset=utf-8"/>
2570 </head>';
2571
2572 $res = trim($res); if (!$res) return '';
2573
2574 libxml_use_internal_errors(true);
2575
2576 $doc = new DOMDocument();
2577 $doc->loadHTML($charset_hack . $res);
2578 $xpath = new DOMXPath($doc);
2579
2580 $entries = $xpath->query('(//a[@href]|//img[@src])');
2581
2582 foreach ($entries as $entry) {
2583
2584 if ($site_url) {
2585
2586 if ($entry->hasAttribute('href'))
2587 $entry->setAttribute('href',
2588 rewrite_relative_url($site_url, $entry->getAttribute('href')));
2589
2590 if ($entry->hasAttribute('src')) {
2591 $src = rewrite_relative_url($site_url, $entry->getAttribute('src'));
2592
2593 $cached_filename = CACHE_DIR . '/images/' . sha1($src) . '.png';
2594
2595 if (file_exists($cached_filename)) {
2596 $src = SELF_URL_PATH . '/image.php?hash=' . sha1($src);
2597 }
2598
2599 $entry->setAttribute('src', $src);
2600 }
2601
2602 if ($entry->nodeName == 'img') {
2603 if (($owner && get_pref($link, "STRIP_IMAGES", $owner)) ||
2604 $force_remove_images) {
2605
2606 $p = $doc->createElement('p');
2607
2608 $a = $doc->createElement('a');
2609 $a->setAttribute('href', $entry->getAttribute('src'));
2610
2611 $a->appendChild(new DOMText($entry->getAttribute('src')));
2612 $a->setAttribute('target', '_blank');
2613
2614 $p->appendChild($a);
2615
2616 $entry->parentNode->replaceChild($p, $entry);
2617 }
2618 }
2619 }
2620
2621 if (strtolower($entry->nodeName) == "a") {
2622 $entry->setAttribute("target", "_blank");
2623 }
2624 }
2625
2626 $entries = $xpath->query('//iframe');
2627 foreach ($entries as $entry) {
2628 $entry->setAttribute('sandbox', 'allow-scripts');
2629
2630 }
2631
2632 global $pluginhost;
2633
2634 if (isset($pluginhost)) {
2635 foreach ($pluginhost->get_hooks($pluginhost::HOOK_SANITIZE) as $plugin) {
2636 $doc = $plugin->hook_sanitize($doc, $site_url);
2637 }
2638 }
2639
2640 $doc->removeChild($doc->firstChild); //remove doctype
2641 $doc = strip_harmful_tags($doc);
2642 $res = $doc->saveHTML();
2643 return $res;
2644 }
2645
2646 function strip_harmful_tags($doc) {
2647 $entries = $doc->getElementsByTagName("*");
2648
2649 $allowed_elements = array('a', 'address', 'audio', 'article',
2650 'b', 'big', 'blockquote', 'body', 'br', 'cite',
2651 'code', 'dd', 'del', 'details', 'div', 'dl', 'font',
2652 'dt', 'em', 'footer', 'h1', 'h2', 'h3', 'h4', 'h5', 'h6',
2653 'header', 'html', 'i', 'img', 'ins', 'kbd',
2654 'li', 'nav', 'ol', 'p', 'pre', 'q', 's','small',
2655 'source', 'span', 'strike', 'strong', 'sub', 'summary',
2656 'sup', 'table', 'tbody', 'td', 'tfoot', 'th', 'thead',
2657 'tr', 'track', 'tt', 'u', 'ul', 'var', 'wbr', 'video' );
2658
2659 if ($_SESSION['hasSandbox']) array_push($allowed_elements, 'iframe');
2660
2661 $disallowed_attributes = array('id', 'style', 'class');
2662
2663 foreach ($entries as $entry) {
2664 if (!in_array($entry->nodeName, $allowed_elements)) {
2665 $entry->parentNode->removeChild($entry);
2666 }
2667
2668 if ($entry->hasAttributes()) {
2669 foreach (iterator_to_array($entry->attributes) as $attr) {
2670
2671 if (strpos($attr->nodeName, 'on') === 0) {
2672 $entry->removeAttributeNode($attr);
2673 }
2674
2675 if (in_array($attr->nodeName, $disallowed_attributes)) {
2676 $entry->removeAttributeNode($attr);
2677 }
2678 }
2679 }
2680 }
2681
2682 return $doc;
2683 }
2684
2685 function check_for_update($link) {
2686 if (CHECK_FOR_NEW_VERSION && $_SESSION['access_level'] >= 10) {
2687 $version_url = "http://tt-rss.org/version.php?ver=" . VERSION .
2688 "&iid=" . sha1(SELF_URL_PATH);
2689
2690 $version_data = @fetch_file_contents($version_url);
2691
2692 if ($version_data) {
2693 $version_data = json_decode($version_data, true);
2694 if ($version_data && $version_data['version']) {
2695
2696 if (version_compare(VERSION, $version_data['version']) == -1) {
2697 return $version_data;
2698 }
2699 }
2700 }
2701 }
2702 return false;
2703 }
2704
2705 function catchupArticlesById($link, $ids, $cmode, $owner_uid = false) {
2706
2707 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
2708 if (count($ids) == 0) return;
2709
2710 $tmp_ids = array();
2711
2712 foreach ($ids as $id) {
2713 array_push($tmp_ids, "ref_id = '$id'");
2714 }
2715
2716 $ids_qpart = join(" OR ", $tmp_ids);
2717
2718 if ($cmode == 0) {
2719 db_query($link, "UPDATE ttrss_user_entries SET
2720 unread = false,last_read = NOW()
2721 WHERE ($ids_qpart) AND owner_uid = $owner_uid");
2722 } else if ($cmode == 1) {
2723 db_query($link, "UPDATE ttrss_user_entries SET
2724 unread = true
2725 WHERE ($ids_qpart) AND owner_uid = $owner_uid");
2726 } else {
2727 db_query($link, "UPDATE ttrss_user_entries SET
2728 unread = NOT unread,last_read = NOW()
2729 WHERE ($ids_qpart) AND owner_uid = $owner_uid");
2730 }
2731
2732 /* update ccache */
2733
2734 $result = db_query($link, "SELECT DISTINCT feed_id FROM ttrss_user_entries
2735 WHERE ($ids_qpart) AND owner_uid = $owner_uid");
2736
2737 while ($line = db_fetch_assoc($result)) {
2738 ccache_update($link, $line["feed_id"], $owner_uid);
2739 }
2740 }
2741
2742 function get_article_tags($link, $id, $owner_uid = 0, $tag_cache = false) {
2743
2744 $a_id = db_escape_string($id);
2745
2746 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
2747
2748 $query = "SELECT DISTINCT tag_name,
2749 owner_uid as owner FROM
2750 ttrss_tags WHERE post_int_id = (SELECT int_id FROM ttrss_user_entries WHERE
2751 ref_id = '$a_id' AND owner_uid = '$owner_uid' LIMIT 1) ORDER BY tag_name";
2752
2753 $obj_id = md5("TAGS:$owner_uid:$id");
2754 $tags = array();
2755
2756 /* check cache first */
2757
2758 if ($tag_cache === false) {
2759 $result = db_query($link, "SELECT tag_cache FROM ttrss_user_entries
2760 WHERE ref_id = '$id' AND owner_uid = $owner_uid");
2761
2762 $tag_cache = db_fetch_result($result, 0, "tag_cache");
2763 }
2764
2765 if ($tag_cache) {
2766 $tags = explode(",", $tag_cache);
2767 } else {
2768
2769 /* do it the hard way */
2770
2771 $tmp_result = db_query($link, $query);
2772
2773 while ($tmp_line = db_fetch_assoc($tmp_result)) {
2774 array_push($tags, $tmp_line["tag_name"]);
2775 }
2776
2777 /* update the cache */
2778
2779 $tags_str = db_escape_string(join(",", $tags));
2780
2781 db_query($link, "UPDATE ttrss_user_entries
2782 SET tag_cache = '$tags_str' WHERE ref_id = '$id'
2783 AND owner_uid = $owner_uid");
2784 }
2785
2786 return $tags;
2787 }
2788
2789 function trim_array($array) {
2790 $tmp = $array;
2791 array_walk($tmp, 'trim');
2792 return $tmp;
2793 }
2794
2795 function tag_is_valid($tag) {
2796 if ($tag == '') return false;
2797 if (preg_match("/^[0-9]*$/", $tag)) return false;
2798 if (mb_strlen($tag) > 250) return false;
2799
2800 if (function_exists('iconv')) {
2801 $tag = iconv("utf-8", "utf-8", $tag);
2802 }
2803
2804 if (!$tag) return false;
2805
2806 return true;
2807 }
2808
2809 function render_login_form($link, $form_id = 0) {
2810 switch ($form_id) {
2811 case 0:
2812 require_once "login_form.php";
2813 break;
2814 case 1:
2815 require_once "mobile/login_form.php";
2816 break;
2817 }
2818 exit;
2819 }
2820
2821 // from http://developer.apple.com/internet/safari/faq.html
2822 function no_cache_incantation() {
2823 header("Expires: Mon, 22 Dec 1980 00:00:00 GMT"); // Happy birthday to me :)
2824 header("Last-Modified: " . gmdate("D, d M Y H:i:s") . " GMT"); // always modified
2825 header("Cache-Control: no-store, no-cache, must-revalidate, max-age=0"); // HTTP/1.1
2826 header("Cache-Control: post-check=0, pre-check=0", false);
2827 header("Pragma: no-cache"); // HTTP/1.0
2828 }
2829
2830 function format_warning($msg, $id = "") {
2831 global $link;
2832 return "<div class=\"warning\" id=\"$id\">
2833 <img src=\"images/sign_excl.svg\">$msg</div>";
2834 }
2835
2836 function format_notice($msg, $id = "") {
2837 global $link;
2838 return "<div class=\"notice\" id=\"$id\">
2839 <img src=\"images/sign_info.svg\">$msg</div>";
2840 }
2841
2842 function format_error($msg, $id = "") {
2843 global $link;
2844 return "<div class=\"error\" id=\"$id\">
2845 <img src=\"images/sign_excl.svg\">$msg</div>";
2846 }
2847
2848 function print_notice($msg) {
2849 return print format_notice($msg);
2850 }
2851
2852 function print_warning($msg) {
2853 return print format_warning($msg);
2854 }
2855
2856 function print_error($msg) {
2857 return print format_error($msg);
2858 }
2859
2860
2861 function T_sprintf() {
2862 $args = func_get_args();
2863 return vsprintf(__(array_shift($args)), $args);
2864 }
2865
2866 function format_inline_player($link, $url, $ctype) {
2867
2868 $entry = "";
2869
2870 $url = htmlspecialchars($url);
2871
2872 if (strpos($ctype, "audio/") === 0) {
2873
2874 if ($_SESSION["hasAudio"] && (strpos($ctype, "ogg") !== false ||
2875 strpos($_SERVER['HTTP_USER_AGENT'], "Chrome") !== false ||
2876 strpos($_SERVER['HTTP_USER_AGENT'], "Safari") !== false )) {
2877
2878 $id = 'AUDIO-' . uniqid();
2879
2880 $entry .= "<audio id=\"$id\"\" controls style='display : none'>
2881 <source type=\"$ctype\" src=\"$url\"></source>
2882 </audio>";
2883
2884 $entry .= "<span onclick=\"player(this)\"
2885 title=\"".__("Click to play")."\" status=\"0\"
2886 class=\"player\" audio-id=\"$id\">".__("Play")."</span>";
2887
2888 } else {
2889
2890 $entry .= "<object type=\"application/x-shockwave-flash\"
2891 data=\"lib/button/musicplayer.swf?song_url=$url\"
2892 width=\"17\" height=\"17\" style='float : left; margin-right : 5px;'>
2893 <param name=\"movie\"
2894 value=\"lib/button/musicplayer.swf?song_url=$url\" />
2895 </object>";
2896 }
2897
2898 if ($entry) $entry .= "&nbsp; <a target=\"_blank\"
2899 href=\"$url\">" . basename($url) . "</a>";
2900
2901 return $entry;
2902
2903 }
2904
2905 return "";
2906
2907 /* $filename = substr($url, strrpos($url, "/")+1);
2908
2909 $entry .= " <a target=\"_blank\" href=\"" . htmlspecialchars($url) . "\">" .
2910 $filename . " (" . $ctype . ")" . "</a>"; */
2911
2912 }
2913
2914 function format_article($link, $id, $mark_as_read = true, $zoom_mode = false, $owner_uid = false) {
2915 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
2916
2917 $rv = array();
2918
2919 $rv['id'] = $id;
2920
2921 /* we can figure out feed_id from article id anyway, why do we
2922 * pass feed_id here? let's ignore the argument :( */
2923
2924 $result = db_query($link, "SELECT feed_id FROM ttrss_user_entries
2925 WHERE ref_id = '$id'");
2926
2927 $feed_id = (int) db_fetch_result($result, 0, "feed_id");
2928
2929 $rv['feed_id'] = $feed_id;
2930
2931 //if (!$zoom_mode) { print "<article id='$id'><![CDATA["; };
2932
2933 if ($mark_as_read) {
2934 $result = db_query($link, "UPDATE ttrss_user_entries
2935 SET unread = false,last_read = NOW()
2936 WHERE ref_id = '$id' AND owner_uid = $owner_uid");
2937
2938 ccache_update($link, $feed_id, $owner_uid);
2939 }
2940
2941 $result = db_query($link, "SELECT id,title,link,content,feed_id,comments,int_id,
2942 ".SUBSTRING_FOR_DATE."(updated,1,16) as updated,
2943 (SELECT site_url FROM ttrss_feeds WHERE id = feed_id) as site_url,
2944 num_comments,
2945 tag_cache,
2946 author,
2947 orig_feed_id,
2948 note,
2949 cached_content
2950 FROM ttrss_entries,ttrss_user_entries
2951 WHERE id = '$id' AND ref_id = id AND owner_uid = $owner_uid");
2952
2953 if ($result) {
2954
2955 $line = db_fetch_assoc($result);
2956
2957 $tag_cache = $line["tag_cache"];
2958
2959 $line["tags"] = get_article_tags($link, $id, $owner_uid, $line["tag_cache"]);
2960 unset($line["tag_cache"]);
2961
2962 $line["content"] = sanitize($link, $line["content"], false, $owner_uid, $line["site_url"]);
2963
2964 global $pluginhost;
2965
2966 foreach ($pluginhost->get_hooks($pluginhost::HOOK_RENDER_ARTICLE) as $p) {
2967 $line = $p->hook_render_article($line);
2968 }
2969
2970 $num_comments = $line["num_comments"];
2971 $entry_comments = "";
2972
2973 if ($num_comments > 0) {
2974 if ($line["comments"]) {
2975 $comments_url = htmlspecialchars($line["comments"]);
2976 } else {
2977 $comments_url = htmlspecialchars($line["link"]);
2978 }
2979 $entry_comments = "<a target='_blank' href=\"$comments_url\">$num_comments comments</a>";
2980 } else {
2981 if ($line["comments"] && $line["link"] != $line["comments"]) {
2982 $entry_comments = "<a target='_blank' href=\"".htmlspecialchars($line["comments"])."\">comments</a>";
2983 }
2984 }
2985
2986 if ($zoom_mode) {
2987 header("Content-Type: text/html");
2988 $rv['content'] .= "<html><head>
2989 <meta http-equiv=\"Content-Type\" content=\"text/html; charset=utf-8\"/>
2990 <title>Tiny Tiny RSS - ".$line["title"]."</title>
2991 <link rel=\"stylesheet\" type=\"text/css\" href=\"tt-rss.css\">
2992 </head><body>";
2993 }
2994
2995 $title_escaped = htmlspecialchars($line['title']);
2996
2997 $rv['content'] .= "<div id=\"PTITLE-FULL-$id\" style=\"display : none\">" .
2998 strip_tags($line['title']) . "</div>";
2999
3000 $rv['content'] .= "<div class=\"postReply\" id=\"POST-$id\">";
3001
3002 $rv['content'] .= "<div class=\"postHeader\" id=\"POSTHDR-$id\">";
3003
3004 $entry_author = $line["author"];
3005
3006 if ($entry_author) {
3007 $entry_author = __(" - ") . $entry_author;
3008 }
3009
3010 $parsed_updated = make_local_datetime($link, $line["updated"], true,
3011 $owner_uid, true);
3012
3013 $rv['content'] .= "<div class=\"postDate\">$parsed_updated</div>";
3014
3015 if ($line["link"]) {
3016 $rv['content'] .= "<div class='postTitle'><a target='_blank'
3017 title=\"".htmlspecialchars($line['title'])."\"
3018 href=\"" .
3019 htmlspecialchars($line["link"]) . "\">" .
3020 $line["title"] .
3021 "<span class='author'>$entry_author</span></a></div>";
3022 } else {
3023 $rv['content'] .= "<div class='postTitle'>" . $line["title"] . "$entry_author</div>";
3024 }
3025
3026 $tags_str = format_tags_string($line["tags"], $id);
3027 $tags_str_full = join(", ", $line["tags"]);
3028
3029 if (!$tags_str_full) $tags_str_full = __("no tags");
3030
3031 if (!$entry_comments) $entry_comments = "&nbsp;"; # placeholder
3032
3033 $rv['content'] .= "<div class='postTags' style='float : right'>
3034 <img src='images/tag.png'
3035 class='tagsPic' alt='Tags' title='Tags'>&nbsp;";
3036
3037 if (!$zoom_mode) {
3038 $rv['content'] .= "<span id=\"ATSTR-$id\">$tags_str</span>
3039 <a title=\"".__('Edit tags for this article')."\"
3040 href=\"#\" onclick=\"editArticleTags($id, $feed_id)\">(+)</a>";
3041
3042 $rv['content'] .= "<div dojoType=\"dijit.Tooltip\"
3043 id=\"ATSTRTIP-$id\" connectId=\"ATSTR-$id\"
3044 position=\"below\">$tags_str_full</div>";
3045
3046 global $pluginhost;
3047
3048 foreach ($pluginhost->get_hooks($pluginhost::HOOK_ARTICLE_BUTTON) as $p) {
3049 $rv['content'] .= $p->hook_article_button($line);
3050 }
3051
3052
3053 } else {
3054 $tags_str = strip_tags($tags_str);
3055 $rv['content'] .= "<span id=\"ATSTR-$id\">$tags_str</span>";
3056 }
3057 $rv['content'] .= "</div>";
3058 $rv['content'] .= "<div clear='both'>$entry_comments</div>";
3059
3060 if ($line["orig_feed_id"]) {
3061
3062 $tmp_result = db_query($link, "SELECT * FROM ttrss_archived_feeds
3063 WHERE id = ".$line["orig_feed_id"]);
3064
3065 if (db_num_rows($tmp_result) != 0) {
3066
3067 $rv['content'] .= "<div clear='both'>";
3068 $rv['content'] .= __("Originally from:");
3069
3070 $rv['content'] .= "&nbsp;";
3071
3072 $tmp_line = db_fetch_assoc($tmp_result);
3073
3074 $rv['content'] .= "<a target='_blank'
3075 href=' " . htmlspecialchars($tmp_line['site_url']) . "'>" .
3076 $tmp_line['title'] . "</a>";
3077
3078 $rv['content'] .= "&nbsp;";
3079
3080 $rv['content'] .= "<a target='_blank' href='" . htmlspecialchars($tmp_line['feed_url']) . "'>";
3081 $rv['content'] .= "<img title='".__('Feed URL')."'class='tinyFeedIcon' src='images/pub_set.svg'></a>";
3082
3083 $rv['content'] .= "</div>";
3084 }
3085 }
3086
3087 $rv['content'] .= "</div>";
3088
3089 $rv['content'] .= "<div id=\"POSTNOTE-$id\">";
3090 if ($line['note']) {
3091 $rv['content'] .= format_article_note($id, $line['note'], !$zoom_mode);
3092 }
3093 $rv['content'] .= "</div>";
3094
3095 $rv['content'] .= "<div class=\"postContent\">";
3096
3097 // N-grams
3098
3099 if (DB_TYPE == "pgsql" and defined('_NGRAM_TITLE_RELATED_THRESHOLD')) {
3100
3101 $ngram_result = db_query($link, "SELECT id,title FROM
3102 ttrss_entries,ttrss_user_entries
3103 WHERE ref_id = id AND updated >= NOW() - INTERVAL '7 day'
3104 AND similarity(title, '$title_escaped') >= "._NGRAM_TITLE_RELATED_THRESHOLD."
3105 AND title != '$title_escaped'
3106 AND owner_uid = $owner_uid");
3107
3108 if (db_num_rows($ngram_result) > 0) {
3109 $rv['content'] .= "<div dojoType=\"dijit.form.DropDownButton\">".
3110 "<span>" . __('Related')."</span>";
3111 $rv['content'] .= "<div dojoType=\"dijit.Menu\" style=\"display: none;\">";
3112
3113 while ($nline = db_fetch_assoc($ngram_result)) {
3114 $rv['content'] .= "<div onclick=\"hlOpenInNewTab(null,".$nline['id'].")\"
3115 dojoType=\"dijit.MenuItem\">".$nline['title']."</div>";
3116
3117 }
3118 $rv['content'] .= "</div></div><br/";
3119 }
3120 }
3121
3122 $rv['content'] .= $line["content"];
3123
3124 $rv['content'] .= format_article_enclosures($link, $id,
3125 $always_display_enclosures, $line["content"]);
3126
3127 $rv['content'] .= "</div>";
3128
3129 $rv['content'] .= "</div>";
3130
3131 }
3132
3133 if ($zoom_mode) {
3134 $rv['content'] .= "
3135 <div style=\"text-align : center\">
3136 <button onclick=\"return window.close()\">".
3137 __("Close this window")."</button></div>";
3138 $rv['content'] .= "</body></html>";
3139 }
3140
3141 return $rv;
3142
3143 }
3144
3145 function print_checkpoint($n, $s) {
3146 $ts = microtime(true);
3147 echo sprintf("<!-- CP[$n] %.4f seconds -->", $ts - $s);
3148 return $ts;
3149 }
3150
3151 function sanitize_tag($tag) {
3152 $tag = trim($tag);
3153
3154 $tag = mb_strtolower($tag, 'utf-8');
3155
3156 $tag = preg_replace('/[\'\"\+\>\<]/', "", $tag);
3157
3158 // $tag = str_replace('"', "", $tag);
3159 // $tag = str_replace("+", " ", $tag);
3160 $tag = str_replace("technorati tag: ", "", $tag);
3161
3162 return $tag;
3163 }
3164
3165 function get_self_url_prefix() {
3166 if (strrpos(SELF_URL_PATH, "/") === strlen(SELF_URL_PATH)-1) {
3167 return substr(SELF_URL_PATH, 0, strlen(SELF_URL_PATH)-1);
3168 } else {
3169 return SELF_URL_PATH;
3170 }
3171 }
3172
3173 /**
3174 * Compute the Mozilla Firefox feed adding URL from server HOST and REQUEST_URI.
3175 *
3176 * @return string The Mozilla Firefox feed adding URL.
3177 */
3178 function add_feed_url() {
3179 //$url_path = ($_SERVER['HTTPS'] != "on" ? 'http://' : 'https://') . $_SERVER["HTTP_HOST"] . parse_url($_SERVER["REQUEST_URI"], PHP_URL_PATH);
3180
3181 $url_path = get_self_url_prefix() .
3182 "/public.php?op=subscribe&feed_url=%s";
3183 return $url_path;
3184 } // function add_feed_url
3185
3186 function encrypt_password($pass, $salt = '', $mode2 = false) {
3187 if ($salt && $mode2) {
3188 return "MODE2:" . hash('sha256', $salt . $pass);
3189 } else if ($salt) {
3190 return "SHA1X:" . sha1("$salt:$pass");
3191 } else {
3192 return "SHA1:" . sha1($pass);
3193 }
3194 } // function encrypt_password
3195
3196 function load_filters($link, $feed_id, $owner_uid, $action_id = false) {
3197 $filters = array();
3198
3199 $cat_id = (int)getFeedCategory($link, $feed_id);
3200
3201 $result = db_query($link, "SELECT * FROM ttrss_filters2 WHERE
3202 owner_uid = $owner_uid AND enabled = true");
3203
3204 $check_cats = join(",", array_merge(
3205 getParentCategories($link, $cat_id, $owner_uid),
3206 array($cat_id)));
3207
3208 while ($line = db_fetch_assoc($result)) {
3209 $filter_id = $line["id"];
3210
3211 $result2 = db_query($link, "SELECT
3212 r.reg_exp, r.feed_id, r.cat_id, r.cat_filter, t.name AS type_name
3213 FROM ttrss_filters2_rules AS r,
3214 ttrss_filter_types AS t
3215 WHERE
3216 (cat_id IS NULL OR cat_id IN ($check_cats)) AND
3217 (feed_id IS NULL OR feed_id = '$feed_id') AND
3218 filter_type = t.id AND filter_id = '$filter_id'");
3219
3220 $rules = array();
3221 $actions = array();
3222
3223 while ($rule_line = db_fetch_assoc($result2)) {
3224 # print_r($rule_line);
3225
3226 $rule = array();
3227 $rule["reg_exp"] = $rule_line["reg_exp"];
3228 $rule["type"] = $rule_line["type_name"];
3229
3230 array_push($rules, $rule);
3231 }
3232
3233 $result2 = db_query($link, "SELECT a.action_param,t.name AS type_name
3234 FROM ttrss_filters2_actions AS a,
3235 ttrss_filter_actions AS t
3236 WHERE
3237 action_id = t.id AND filter_id = '$filter_id'");
3238
3239 while ($action_line = db_fetch_assoc($result2)) {
3240 # print_r($action_line);
3241
3242 $action = array();
3243 $action["type"] = $action_line["type_name"];
3244 $action["param"] = $action_line["action_param"];
3245
3246 array_push($actions, $action);
3247 }
3248
3249
3250 $filter = array();
3251 $filter["match_any_rule"] = sql_bool_to_bool($line["match_any_rule"]);
3252 $filter["rules"] = $rules;
3253 $filter["actions"] = $actions;
3254
3255 if (count($rules) > 0 && count($actions) > 0) {
3256 array_push($filters, $filter);
3257 }
3258 }
3259
3260 return $filters;
3261 }
3262
3263 function get_score_pic($score) {
3264 if ($score > 100) {
3265 return "score_high.png";
3266 } else if ($score > 0) {
3267 return "score_half_high.png";
3268 } else if ($score < -100) {
3269 return "score_low.png";
3270 } else if ($score < 0) {
3271 return "score_half_low.png";
3272 } else {
3273 return "score_neutral.png";
3274 }
3275 }
3276
3277 function feed_has_icon($id) {
3278 return is_file(ICONS_DIR . "/$id.ico") && filesize(ICONS_DIR . "/$id.ico") > 0;
3279 }
3280
3281 function init_connection($link) {
3282 if ($link) {
3283
3284 if (DB_TYPE == "pgsql") {
3285 pg_query($link, "set client_encoding = 'UTF-8'");
3286 pg_set_client_encoding("UNICODE");
3287 pg_query($link, "set datestyle = 'ISO, european'");
3288 pg_query($link, "set TIME ZONE 0");
3289 } else {
3290 db_query($link, "SET time_zone = '+0:0'");
3291
3292 if (defined('MYSQL_CHARSET') && MYSQL_CHARSET) {
3293 db_query($link, "SET NAMES " . MYSQL_CHARSET);
3294 }
3295 }
3296
3297 global $pluginhost;
3298
3299 $pluginhost = new PluginHost($link);
3300 $pluginhost->load(PLUGINS, $pluginhost::KIND_ALL);
3301
3302 return true;
3303 } else {
3304 print "Unable to connect to database:" . db_last_error();
3305 return false;
3306 }
3307 }
3308
3309 function format_tags_string($tags, $id) {
3310
3311 $tags_str = "";
3312 $tags_nolinks_str = "";
3313
3314 $num_tags = 0;
3315
3316 $tag_limit = 6;
3317
3318 $formatted_tags = array();
3319
3320 foreach ($tags as $tag) {
3321 $num_tags++;
3322 $tag_escaped = str_replace("'", "\\'", $tag);
3323
3324 if (mb_strlen($tag) > 30) {
3325 $tag = truncate_string($tag, 30);
3326 }
3327
3328 $tag_str = "<a href=\"javascript:viewfeed('$tag_escaped')\">$tag</a>";
3329
3330 array_push($formatted_tags, $tag_str);
3331
3332 $tmp_tags_str = implode(", ", $formatted_tags);
3333
3334 if ($num_tags == $tag_limit || mb_strlen($tmp_tags_str) > 150) {
3335 break;
3336 }
3337 }
3338
3339 $tags_str = implode(", ", $formatted_tags);
3340
3341 if ($num_tags < count($tags)) {
3342 $tags_str .= ", &hellip;";
3343 }
3344
3345 if ($num_tags == 0) {
3346 $tags_str = __("no tags");
3347 }
3348
3349 return $tags_str;
3350
3351 }
3352
3353 function format_article_labels($labels, $id) {
3354
3355 $labels_str = "";
3356
3357 foreach ($labels as $l) {
3358 $labels_str .= sprintf("<span class='hlLabelRef'
3359 style='color : %s; background-color : %s'>%s</span>",
3360 $l[2], $l[3], $l[1]);
3361 }
3362
3363 return $labels_str;
3364
3365 }
3366
3367 function format_article_note($id, $note, $allow_edit = true) {
3368
3369 $str = "<div class='articleNote' onclick=\"editArticleNote($id)\">
3370 <div class='noteEdit' onclick=\"editArticleNote($id)\">".
3371 ($allow_edit ? __('(edit note)') : "")."</div>$note</div>";
3372
3373 return $str;
3374 }
3375
3376
3377 function get_feed_category($link, $feed_cat, $parent_cat_id = false) {
3378 if ($parent_cat_id) {
3379 $parent_qpart = "parent_cat = '$parent_cat_id'";
3380 $parent_insert = "'$parent_cat_id'";
3381 } else {
3382 $parent_qpart = "parent_cat IS NULL";
3383 $parent_insert = "NULL";
3384 }
3385
3386 $result = db_query($link,
3387 "SELECT id FROM ttrss_feed_categories
3388 WHERE $parent_qpart AND title = '$feed_cat' AND owner_uid = ".$_SESSION["uid"]);
3389
3390 if (db_num_rows($result) == 0) {
3391 return false;
3392 } else {
3393 return db_fetch_result($result, 0, "id");
3394 }
3395 }
3396
3397 function add_feed_category($link, $feed_cat, $parent_cat_id = false) {
3398
3399 if (!$feed_cat) return false;
3400
3401 db_query($link, "BEGIN");
3402
3403 if ($parent_cat_id) {
3404 $parent_qpart = "parent_cat = '$parent_cat_id'";
3405 $parent_insert = "'$parent_cat_id'";
3406 } else {
3407 $parent_qpart = "parent_cat IS NULL";
3408 $parent_insert = "NULL";
3409 }
3410
3411 $result = db_query($link,
3412 "SELECT id FROM ttrss_feed_categories
3413 WHERE $parent_qpart AND title = '$feed_cat' AND owner_uid = ".$_SESSION["uid"]);
3414
3415 if (db_num_rows($result) == 0) {
3416
3417 $result = db_query($link,
3418 "INSERT INTO ttrss_feed_categories (owner_uid,title,parent_cat)
3419 VALUES ('".$_SESSION["uid"]."', '$feed_cat', $parent_insert)");
3420
3421 db_query($link, "COMMIT");
3422
3423 return true;
3424 }
3425
3426 return false;
3427 }
3428
3429 function getArticleFeed($link, $id) {
3430 $result = db_query($link, "SELECT feed_id FROM ttrss_user_entries
3431 WHERE ref_id = '$id' AND owner_uid = " . $_SESSION["uid"]);
3432
3433 if (db_num_rows($result) != 0) {
3434 return db_fetch_result($result, 0, "feed_id");
3435 } else {
3436 return 0;
3437 }
3438 }
3439
3440 /**
3441 * Fixes incomplete URLs by prepending "http://".
3442 * Also replaces feed:// with http://, and
3443 * prepends a trailing slash if the url is a domain name only.
3444 *
3445 * @param string $url Possibly incomplete URL
3446 *
3447 * @return string Fixed URL.
3448 */
3449 function fix_url($url) {
3450 if (strpos($url, '://') === false) {
3451 $url = 'http://' . $url;
3452 } else if (substr($url, 0, 5) == 'feed:') {
3453 $url = 'http:' . substr($url, 5);
3454 }
3455
3456 //prepend slash if the URL has no slash in it
3457 // "http://www.example" -> "http://www.example/"
3458 if (strpos($url, '/', strpos($url, ':') + 3) === false) {
3459 $url .= '/';
3460 }
3461
3462 if ($url != "http:///")
3463 return $url;
3464 else
3465 return '';
3466 }
3467
3468 function validate_feed_url($url) {
3469 $parts = parse_url($url);
3470
3471 return ($parts['scheme'] == 'http' || $parts['scheme'] == 'feed' || $parts['scheme'] == 'https');
3472
3473 }
3474
3475 function get_article_enclosures($link, $id) {
3476
3477 $query = "SELECT * FROM ttrss_enclosures
3478 WHERE post_id = '$id' AND content_url != ''";
3479
3480 $rv = array();
3481
3482 $result = db_query($link, $query);
3483
3484 if (db_num_rows($result) > 0) {
3485 while ($line = db_fetch_assoc($result)) {
3486 array_push($rv, $line);
3487 }
3488 }
3489
3490 return $rv;
3491 }
3492
3493 function save_email_address($link, $email) {
3494 // FIXME: implement persistent storage of emails
3495
3496 if (!$_SESSION['stored_emails'])
3497 $_SESSION['stored_emails'] = array();
3498
3499 if (!in_array($email, $_SESSION['stored_emails']))
3500 array_push($_SESSION['stored_emails'], $email);
3501 }
3502
3503
3504 function get_feed_access_key($link, $feed_id, $is_cat, $owner_uid = false) {
3505
3506 if (!$owner_uid) $owner_uid = $_SESSION["uid"];
3507
3508 $sql_is_cat = bool_to_sql_bool($is_cat);
3509
3510 $result = db_query($link, "SELECT access_key FROM ttrss_access_keys
3511 WHERE feed_id = '$feed_id' AND is_cat = $sql_is_cat
3512 AND owner_uid = " . $owner_uid);
3513
3514 if (db_num_rows($result) == 1) {
3515 return db_fetch_result($result, 0, "access_key");
3516 } else {
3517 $key = db_escape_string(sha1(uniqid(rand(), true)));
3518
3519 $result = db_query($link, "INSERT INTO ttrss_access_keys
3520 (access_key, feed_id, is_cat, owner_uid)
3521 VALUES ('$key', '$feed_id', $sql_is_cat, '$owner_uid')");
3522
3523 return $key;
3524 }
3525 return false;
3526 }
3527
3528 function get_feeds_from_html($url, $content)
3529 {
3530 $url = fix_url($url);
3531 $baseUrl = substr($url, 0, strrpos($url, '/') + 1);
3532
3533 libxml_use_internal_errors(true);
3534
3535 $doc = new DOMDocument();
3536 $doc->loadHTML($content);
3537 $xpath = new DOMXPath($doc);
3538 $entries = $xpath->query('/html/head/link[@rel="alternate"]');
3539 $feedUrls = array();
3540 foreach ($entries as $entry) {
3541 if ($entry->hasAttribute('href')) {
3542 $title = $entry->getAttribute('title');
3543 if ($title == '') {
3544 $title = $entry->getAttribute('type');
3545 }
3546 $feedUrl = rewrite_relative_url(
3547 $baseUrl, $entry->getAttribute('href')
3548 );
3549 $feedUrls[$feedUrl] = $title;
3550 }
3551 }
3552 return $feedUrls;
3553 }
3554
3555 function is_html($content) {
3556 return preg_match("/<html|DOCTYPE html/i", substr($content, 0, 20)) !== 0;
3557 }
3558
3559 function url_is_html($url, $login = false, $pass = false) {
3560 return is_html(fetch_file_contents($url, false, $login, $pass));
3561 }
3562
3563 function print_label_select($link, $name, $value, $attributes = "") {
3564
3565 $result = db_query($link, "SELECT caption FROM ttrss_labels2
3566 WHERE owner_uid = '".$_SESSION["uid"]."' ORDER BY caption");
3567
3568 print "<select default=\"$value\" name=\"" . htmlspecialchars($name) .
3569 "\" $attributes onchange=\"labelSelectOnChange(this)\" >";
3570
3571 while ($line = db_fetch_assoc($result)) {
3572
3573 $issel = ($line["caption"] == $value) ? "selected=\"1\"" : "";
3574
3575 print "<option value=\"".htmlspecialchars($line["caption"])."\"
3576 $issel>" . htmlspecialchars($line["caption"]) . "</option>";
3577
3578 }
3579
3580 # print "<option value=\"ADD_LABEL\">" .__("Add label...") . "</option>";
3581
3582 print "</select>";
3583
3584
3585 }
3586
3587 function format_article_enclosures($link, $id, $always_display_enclosures,
3588 $article_content) {
3589
3590 $result = get_article_enclosures($link, $id);
3591 $rv = '';
3592
3593 if (count($result) > 0) {
3594
3595 $entries_html = array();
3596 $entries = array();
3597 $entries_inline = array();
3598
3599 foreach ($result as $line) {
3600
3601 $url = $line["content_url"];
3602 $ctype = $line["content_type"];
3603
3604 if (!$ctype) $ctype = __("unknown type");
3605
3606 $filename = substr($url, strrpos($url, "/")+1);
3607
3608 $player = format_inline_player($link, $url, $ctype);
3609
3610 if ($player) array_push($entries_inline, $player);
3611
3612 # $entry .= " <a target=\"_blank\" href=\"" . htmlspecialchars($url) . "\">" .
3613 # $filename . " (" . $ctype . ")" . "</a>";
3614
3615 $entry = "<div onclick=\"window.open('".htmlspecialchars($url)."')\"
3616 dojoType=\"dijit.MenuItem\">$filename ($ctype)</div>";
3617
3618 array_push($entries_html, $entry);
3619
3620 $entry = array();
3621
3622 $entry["type"] = $ctype;
3623 $entry["filename"] = $filename;
3624 $entry["url"] = $url;
3625
3626 array_push($entries, $entry);
3627 }
3628
3629 if ($_SESSION['uid'] && !get_pref($link, "STRIP_IMAGES")) {
3630 if ($always_display_enclosures ||
3631 !preg_match("/<img/i", $article_content)) {
3632
3633 foreach ($entries as $entry) {
3634
3635 if (preg_match("/image/", $entry["type"]) ||
3636 preg_match("/\.(jpg|png|gif|bmp)/i", $entry["filename"])) {
3637
3638 $rv .= "<p><img
3639 alt=\"".htmlspecialchars($entry["filename"])."\"
3640 src=\"" .htmlspecialchars($entry["url"]) . "\"/></p>";
3641
3642 }
3643 }
3644 }
3645 }
3646
3647 if (count($entries_inline) > 0) {
3648 $rv .= "<hr clear='both'/>";
3649 foreach ($entries_inline as $entry) { $rv .= $entry; };
3650 $rv .= "<hr clear='both'/>";
3651 }
3652
3653 $rv .= "<br/><div dojoType=\"dijit.form.DropDownButton\">".
3654 "<span>" . __('Attachments')."</span>";
3655 $rv .= "<div dojoType=\"dijit.Menu\" style=\"display: none;\">";
3656
3657 foreach ($entries_html as $entry) { $rv .= $entry; };
3658
3659 $rv .= "</div></div>";
3660 }
3661
3662 return $rv;
3663 }
3664
3665 function getLastArticleId($link) {
3666 $result = db_query($link, "SELECT MAX(ref_id) AS id FROM ttrss_user_entries
3667 WHERE owner_uid = " . $_SESSION["uid"]);
3668
3669 if (db_num_rows($result) == 1) {
3670 return db_fetch_result($result, 0, "id");
3671 } else {
3672 return -1;
3673 }
3674 }
3675
3676 function build_url($parts) {
3677 return $parts['scheme'] . "://" . $parts['host'] . $parts['path'];
3678 }
3679
3680 /**
3681 * Converts a (possibly) relative URL to a absolute one.
3682 *
3683 * @param string $url Base URL (i.e. from where the document is)
3684 * @param string $rel_url Possibly relative URL in the document
3685 *
3686 * @return string Absolute URL
3687 */
3688 function rewrite_relative_url($url, $rel_url) {
3689 if (strpos($rel_url, "magnet:") === 0) {
3690 return $rel_url;
3691 } else if (strpos($rel_url, "://") !== false) {
3692 return $rel_url;
3693 } else if (strpos($rel_url, "//") === 0) {
3694 # protocol-relative URL (rare but they exist)
3695 return $rel_url;
3696 } else if (strpos($rel_url, "/") === 0)
3697 {
3698 $parts = parse_url($url);
3699 $parts['path'] = $rel_url;
3700
3701 return build_url($parts);
3702
3703 } else {
3704 $parts = parse_url($url);
3705 if (!isset($parts['path'])) {
3706 $parts['path'] = '/';
3707 }
3708 $dir = $parts['path'];
3709 if (substr($dir, -1) !== '/') {
3710 $dir = dirname($parts['path']);
3711 $dir !== '/' && $dir .= '/';
3712 }
3713 $parts['path'] = $dir . $rel_url;
3714
3715 return build_url($parts);
3716 }
3717 }
3718
3719 function sphinx_search($query, $offset = 0, $limit = 30) {
3720 require_once 'lib/sphinxapi.php';
3721
3722 $sphinxClient = new SphinxClient();
3723
3724 $sphinxClient->SetServer('localhost', 9312);
3725 $sphinxClient->SetConnectTimeout(1);
3726
3727 $sphinxClient->SetFieldWeights(array('title' => 70, 'content' => 30,
3728 'feed_title' => 20));
3729
3730 $sphinxClient->SetMatchMode(SPH_MATCH_EXTENDED2);
3731 $sphinxClient->SetRankingMode(SPH_RANK_PROXIMITY_BM25);
3732 $sphinxClient->SetLimits($offset, $limit, 1000);
3733 $sphinxClient->SetArrayResult(false);
3734 $sphinxClient->SetFilter('owner_uid', array($_SESSION['uid']));
3735
3736 $result = $sphinxClient->Query($query, SPHINX_INDEX);
3737
3738 $ids = array();
3739
3740 if (is_array($result['matches'])) {
3741 foreach (array_keys($result['matches']) as $int_id) {
3742 $ref_id = $result['matches'][$int_id]['attrs']['ref_id'];
3743 array_push($ids, $ref_id);
3744 }
3745 }
3746
3747 return $ids;
3748 }
3749
3750 function cleanup_tags($link, $days = 14, $limit = 1000) {
3751
3752 if (DB_TYPE == "pgsql") {
3753 $interval_query = "date_updated < NOW() - INTERVAL '$days days'";
3754 } else if (DB_TYPE == "mysql") {
3755 $interval_query = "date_updated < DATE_SUB(NOW(), INTERVAL $days DAY)";
3756 }
3757
3758 $tags_deleted = 0;
3759
3760 while ($limit > 0) {
3761 $limit_part = 500;
3762
3763 $query = "SELECT ttrss_tags.id AS id
3764 FROM ttrss_tags, ttrss_user_entries, ttrss_entries
3765 WHERE post_int_id = int_id AND $interval_query AND
3766 ref_id = ttrss_entries.id AND tag_cache != '' LIMIT $limit_part";
3767
3768 $result = db_query($link, $query);
3769
3770 $ids = array();
3771
3772 while ($line = db_fetch_assoc($result)) {
3773 array_push($ids, $line['id']);
3774 }
3775
3776 if (count($ids) > 0) {
3777 $ids = join(",", $ids);
3778 print ".";
3779
3780 $tmp_result = db_query($link, "DELETE FROM ttrss_tags WHERE id IN ($ids)");
3781 $tags_deleted += db_affected_rows($link, $tmp_result);
3782 } else {
3783 break;
3784 }
3785
3786 $limit -= $limit_part;
3787 }
3788
3789 print "\n";
3790
3791 return $tags_deleted;
3792 }
3793
3794 function print_user_stylesheet($link) {
3795 $value = get_pref($link, 'USER_STYLESHEET');
3796
3797 if ($value) {
3798 print "<style type=\"text/css\">";
3799 print str_replace("<br/>", "\n", $value);
3800 print "</style>";
3801 }
3802
3803 }
3804
3805 function rewrite_urls($html) {
3806 libxml_use_internal_errors(true);
3807
3808 $charset_hack = '<head>
3809 <meta http-equiv="Content-Type" content="text/html; charset=utf-8"/>
3810 </head>';
3811
3812 $doc = new DOMDocument();
3813 $doc->loadHTML($charset_hack . $html);
3814 $xpath = new DOMXPath($doc);
3815
3816 $entries = $xpath->query('//*/text()');
3817
3818 foreach ($entries as $entry) {
3819 if (strstr($entry->wholeText, "://") !== false) {
3820 $text = preg_replace("/((?<!=.)((http|https|ftp)+):\/\/[^ ,!]+)/i",
3821 "<a target=\"_blank\" href=\"\\1\">\\1</a>", $entry->wholeText);
3822
3823 if ($text != $entry->wholeText) {
3824 $cdoc = new DOMDocument();
3825 $cdoc->loadHTML($charset_hack . $text);
3826
3827
3828 foreach ($cdoc->childNodes as $cnode) {
3829 $cnode = $doc->importNode($cnode, true);
3830
3831 if ($cnode) {
3832 $entry->parentNode->insertBefore($cnode);
3833 }
3834 }
3835
3836 $entry->parentNode->removeChild($entry);
3837
3838 }
3839 }
3840 }
3841
3842 $node = $doc->getElementsByTagName('body')->item(0);
3843
3844 // http://tt-rss.org/forum/viewtopic.php?f=1&t=970
3845 if ($node)
3846 return $doc->saveXML($node);
3847 else
3848 return $html;
3849 }
3850
3851 function filter_to_sql($link, $filter, $owner_uid) {
3852 $query = array();
3853
3854 if (DB_TYPE == "pgsql")
3855 $reg_qpart = "~";
3856 else
3857 $reg_qpart = "REGEXP";
3858
3859 foreach ($filter["rules"] AS $rule) {
3860 $regexp_valid = preg_match('/' . $rule['reg_exp'] . '/',
3861 $rule['reg_exp']) !== FALSE;
3862
3863 if ($regexp_valid) {
3864
3865 $rule['reg_exp'] = db_escape_string($rule['reg_exp']);
3866
3867 switch ($rule["type"]) {
3868 case "title":
3869 $qpart = "LOWER(ttrss_entries.title) $reg_qpart LOWER('".
3870 $rule['reg_exp'] . "')";
3871 break;
3872 case "content":
3873 $qpart = "LOWER(ttrss_entries.content) $reg_qpart LOWER('".
3874 $rule['reg_exp'] . "')";
3875 break;
3876 case "both":
3877 $qpart = "LOWER(ttrss_entries.title) $reg_qpart LOWER('".
3878 $rule['reg_exp'] . "') OR LOWER(" .
3879 "ttrss_entries.content) $reg_qpart LOWER('" . $rule['reg_exp'] . "')";
3880 break;
3881 case "tag":
3882 $qpart = "LOWER(ttrss_user_entries.tag_cache) $reg_qpart LOWER('".
3883 $rule['reg_exp'] . "')";
3884 break;
3885 case "link":
3886 $qpart = "LOWER(ttrss_entries.link) $reg_qpart LOWER('".
3887 $rule['reg_exp'] . "')";
3888 break;
3889 case "author":
3890 $qpart = "LOWER(ttrss_entries.author) $reg_qpart LOWER('".
3891 $rule['reg_exp'] . "')";
3892 break;
3893 }
3894
3895 if (isset($rule["feed_id"]) && $rule["feed_id"] > 0) {
3896 $qpart .= " AND feed_id = " . db_escape_string($rule["feed_id"]);
3897 }
3898
3899 if (isset($rule["cat_id"])) {
3900
3901 if ($rule["cat_id"] > 0) {
3902 $children = getChildCategories($link, $rule["cat_id"], $owner_uid);
3903 array_push($children, $rule["cat_id"]);
3904
3905 $children = join(",", $children);
3906
3907 $cat_qpart = "cat_id IN ($children)";
3908 } else {
3909 $cat_qpart = "cat_id IS NULL";
3910 }
3911
3912 $qpart .= " AND $cat_qpart";
3913 }
3914
3915 array_push($query, "($qpart)");
3916
3917 }
3918 }
3919
3920 if (count($query) > 0) {
3921 return "(" . join($filter["match_any_rule"] ? "OR" : "AND", $query) . ")";
3922 } else {
3923 return "(false)";
3924 }
3925 }
3926
3927 if (!function_exists('gzdecode')) {
3928 function gzdecode($string) { // no support for 2nd argument
3929 return file_get_contents('compress.zlib://data:who/cares;base64,'.
3930 base64_encode($string));
3931 }
3932 }
3933
3934 function get_random_bytes($length) {
3935 if (function_exists('openssl_random_pseudo_bytes')) {
3936 return openssl_random_pseudo_bytes($length);
3937 } else {
3938 $output = "";
3939
3940 for ($i = 0; $i < $length; $i++)
3941 $output .= chr(mt_rand(0, 255));
3942
3943 return $output;
3944 }
3945 }
3946
3947 function read_stdin() {
3948 $fp = fopen("php://stdin", "r");
3949
3950 if ($fp) {
3951 $line = trim(fgets($fp));
3952 fclose($fp);
3953 return $line;
3954 }
3955
3956 return null;
3957 }
3958
3959 function tmpdirname($path, $prefix) {
3960 // Use PHP's tmpfile function to create a temporary
3961 // directory name. Delete the file and keep the name.
3962 $tempname = tempnam($path,$prefix);
3963 if (!$tempname)
3964 return false;
3965
3966 if (!unlink($tempname))
3967 return false;
3968
3969 return $tempname;
3970 }
3971
3972 function getFeedCategory($link, $feed) {
3973 $result = db_query($link, "SELECT cat_id FROM ttrss_feeds
3974 WHERE id = '$feed'");
3975
3976 if (db_num_rows($result) > 0) {
3977 return db_fetch_result($result, 0, "cat_id");
3978 } else {
3979 return false;
3980 }
3981
3982 }
3983
3984 function implements_interface($class, $interface) {
3985 return in_array($interface, class_implements($class));
3986 }
3987
3988 function geturl($url){
3989
3990 (function_exists('curl_init')) ? '' : die('cURL Must be installed for geturl function to work. Ask your host to enable it or uncomment extension=php_curl.dll in php.ini');
3991
3992 $curl = curl_init();
3993 $header[0] = "Accept: text/xml,application/xml,application/xhtml+xml,";
3994 $header[0] .= "text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5";
3995 $header[] = "Cache-Control: max-age=0";
3996 $header[] = "Connection: keep-alive";
3997 $header[] = "Keep-Alive: 300";
3998 $header[] = "Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.7";
3999 $header[] = "Accept-Language: en-us,en;q=0.5";
4000 $header[] = "Pragma: ";
4001
4002 curl_setopt($curl, CURLOPT_URL, $url);
4003 curl_setopt($curl, CURLOPT_USERAGENT, 'Mozilla/5.0 (Windows NT 5.1; rv:5.0) Gecko/20100101 Firefox/5.0 Firefox/5.0');
4004 curl_setopt($curl, CURLOPT_HTTPHEADER, $header);
4005 curl_setopt($curl, CURLOPT_HEADER, true);
4006 curl_setopt($curl, CURLOPT_REFERER, $url);
4007 curl_setopt($curl, CURLOPT_ENCODING, 'gzip,deflate');
4008 curl_setopt($curl, CURLOPT_AUTOREFERER, true);
4009 curl_setopt($curl, CURLOPT_RETURNTRANSFER, true);
4010 //curl_setopt($curl, CURLOPT_FOLLOWLOCATION, true); //CURLOPT_FOLLOWLOCATION Disabled...
4011 curl_setopt($curl, CURLOPT_TIMEOUT, 60);
4012
4013 $html = curl_exec($curl);
4014
4015 $status = curl_getinfo($curl);
4016 curl_close($curl);
4017
4018 if($status['http_code']!=200){
4019 if($status['http_code'] == 301 || $status['http_code'] == 302) {
4020 list($header) = explode("\r\n\r\n", $html, 2);
4021 $matches = array();
4022 preg_match("/(Location:|URI:)[^(\n)]*/", $header, $matches);
4023 $url = trim(str_replace($matches[1],"",$matches[0]));
4024 $url_parsed = parse_url($url);
4025 return (isset($url_parsed))? geturl($url, $referer):'';
4026 }
4027 $oline='';
4028 foreach($status as $key=>$eline){$oline.='['.$key.']'.$eline.' ';}
4029 $line =$oline." \r\n ".$url."\r\n-----------------\r\n";
4030 # $handle = @fopen('./curl.error.log', 'a');
4031 # fwrite($handle, $line);
4032 return FALSE;
4033 }
4034 return $url;
4035 }
4036
4037 function get_minified_js($files) {
4038 require_once 'lib/jshrink/Minifier.php';
4039
4040 $rv = '';
4041
4042 foreach ($files as $js) {
4043 if (!isset($_GET['debug'])) {
4044 $cached_file = CACHE_DIR . "/js/$js.js";
4045
4046 if (file_exists($cached_file) &&
4047 is_readable($cached_file) &&
4048 filemtime($cached_file) >= filemtime("js/$js.js")) {
4049
4050 $rv .= file_get_contents($cached_file);
4051
4052 } else {
4053 $minified = JShrink\Minifier::minify(file_get_contents("js/$js.js"));
4054 file_put_contents($cached_file, $minified);
4055 $rv .= $minified;
4056 }
4057 } else {
4058 $rv .= file_get_contents("js/$js.js");
4059 }
4060 }
4061
4062 return $rv;
4063 }
4064
4065 function stylesheet_tag($filename) {
4066 $timestamp = filemtime($filename);
4067
4068 echo "<link rel=\"stylesheet\" type=\"text/css\" href=\"$filename?$timestamp\"/>\n";
4069 }
4070
4071 function javascript_tag($filename) {
4072 $query = "";
4073
4074 if (!(strpos($filename, "?") === FALSE)) {
4075 $query = substr($filename, strpos($filename, "?")+1);
4076 $filename = substr($filename, 0, strpos($filename, "?"));
4077 }
4078
4079 $timestamp = filemtime($filename);
4080
4081 if ($query) $timestamp .= "&$query";
4082
4083 echo "<script type=\"text/javascript\" charset=\"utf-8\" src=\"$filename?$timestamp\"></script>\n";
4084 }
4085
4086 ?>