xref: /dokuwiki/inc/common.php (revision 2aba9aed6bcd4e96ff6988f6d1ff730503a2c6d5)
1ed7b5f09Sandi<?php
2d4f83172SAndreas Gohr
315fae107Sandi/**
415fae107Sandi * Common DokuWiki functions
515fae107Sandi *
615fae107Sandi * @license    GPL 2 (http://www.gnu.org/licenses/gpl.html)
715fae107Sandi * @author     Andreas Gohr <andi@splitbrain.org>
815fae107Sandi */
9d4f83172SAndreas Gohr
1024870174SAndreas Gohruse dokuwiki\PassHash;
1124870174SAndreas Gohruse dokuwiki\Draft;
1224870174SAndreas Gohruse dokuwiki\Utf8\Clean;
1324870174SAndreas Gohruse dokuwiki\Utf8\PhpString;
1424870174SAndreas Gohruse dokuwiki\Utf8\Conversion;
150db5771eSMichael Großeuse dokuwiki\Cache\CacheRenderer;
160c3a5702SAndreas Gohruse dokuwiki\ChangeLog\PageChangeLog;
17b24e9c4aSSatoshi Saharause dokuwiki\File\PageFile;
18704a815fSMichael Großeuse dokuwiki\Subscriptions\PageSubscriptionSender;
1975d66495SMichael Großeuse dokuwiki\Subscriptions\SubscriberManager;
20e1d9dcc8SAndreas Gohruse dokuwiki\Extension\AuthPlugin;
21e1d9dcc8SAndreas Gohruse dokuwiki\Extension\Event;
22*2aba9aedSAndreas Gohruse dokuwiki\Ip;
230c3a5702SAndreas Gohr
248b19906eSAndreas Gohruse function PHP81_BC\strftime;
258b19906eSAndreas Gohr
26f3f0262cSandi/**
27d5197206Schris * Wrapper around htmlspecialchars()
28d5197206Schris *
298b19906eSAndreas Gohr * @param string $string the string being converted
308b19906eSAndreas Gohr * @return string converted string
31d5197206Schris * @author Andreas Gohr <andi@splitbrain.org>
32d5197206Schris * @see    htmlspecialchars()
33140cfbcdSGerrit Uitslag *
34d5197206Schris */
35d868eb89SAndreas Gohrfunction hsc($string)
36d868eb89SAndreas Gohr{
37f7711f2bSAndreas Gohr    return htmlspecialchars($string, ENT_QUOTES | ENT_SUBSTITUTE | ENT_HTML401, 'UTF-8');
38d5197206Schris}
39d5197206Schris
40d5197206Schris/**
4112dd3cbcSAndreas Gohr * A safer explode for fixed length lists
4212dd3cbcSAndreas Gohr *
4312dd3cbcSAndreas Gohr * This works just like explode(), but will always return the wanted number of elements.
4412dd3cbcSAndreas Gohr * If the $input string does not contain enough elements, the missing elements will be
4512dd3cbcSAndreas Gohr * filled up with the $default value. If the input string contains more elements, the last
4612dd3cbcSAndreas Gohr * one will NOT be split up and will still contain $separator
4712dd3cbcSAndreas Gohr *
4812dd3cbcSAndreas Gohr * @param string $separator The boundary string
4912dd3cbcSAndreas Gohr * @param string $string The input string
5012dd3cbcSAndreas Gohr * @param int $limit The number of expected elements
5112dd3cbcSAndreas Gohr * @param mixed $default The value to use when filling up missing elements
5212dd3cbcSAndreas Gohr * @return array
538b19906eSAndreas Gohr * @see explode
5412dd3cbcSAndreas Gohr */
5512dd3cbcSAndreas Gohrfunction sexplode($separator, $string, $limit, $default = null)
5612dd3cbcSAndreas Gohr{
5712dd3cbcSAndreas Gohr    return array_pad(explode($separator, $string, $limit), $limit, $default);
5812dd3cbcSAndreas Gohr}
5912dd3cbcSAndreas Gohr
6012dd3cbcSAndreas Gohr/**
615b571377SAndreas Gohr * Checks if the given input is blank
625b571377SAndreas Gohr *
635b571377SAndreas Gohr * This is similar to empty() but will return false for "0".
645b571377SAndreas Gohr *
6567234204SAndreas Gohr * Please note: when you pass uninitialized variables, they will implicitly be created
6667234204SAndreas Gohr * with a NULL value without warning.
6767234204SAndreas Gohr *
6867234204SAndreas Gohr * To avoid this it's recommended to guard the call with isset like this:
6967234204SAndreas Gohr *
7067234204SAndreas Gohr * (isset($foo) && !blank($foo))
7167234204SAndreas Gohr * (!isset($foo) || blank($foo))
7267234204SAndreas Gohr *
735b571377SAndreas Gohr * @param $in
745b571377SAndreas Gohr * @param bool $trim Consider a string of whitespace to be blank
755b571377SAndreas Gohr * @return bool
765b571377SAndreas Gohr */
77d868eb89SAndreas Gohrfunction blank(&$in, $trim = false)
78d868eb89SAndreas Gohr{
795b571377SAndreas Gohr    if (is_null($in)) return true;
8024870174SAndreas Gohr    if (is_array($in)) return $in === [];
815b571377SAndreas Gohr    if ($in === "\0") return true;
825b571377SAndreas Gohr    if ($trim && trim($in) === '') return true;
835b571377SAndreas Gohr    if (strlen($in) > 0) return false;
845b571377SAndreas Gohr    return empty($in);
855b571377SAndreas Gohr}
865b571377SAndreas Gohr
875b571377SAndreas Gohr/**
8802b0b681SAndreas Gohr * strips control characters (<32) from the given string
8902b0b681SAndreas Gohr *
9042ea7f44SGerrit Uitslag * @param string $string being stripped
91140cfbcdSGerrit Uitslag * @return string
928b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
938b19906eSAndreas Gohr *
9402b0b681SAndreas Gohr */
95d868eb89SAndreas Gohrfunction stripctl($string)
96d868eb89SAndreas Gohr{
9702b0b681SAndreas Gohr    return preg_replace('/[\x00-\x1F]+/s', '', $string);
98d5197206Schris}
99d5197206Schris
100d5197206Schris/**
101634d7150SAndreas Gohr * Return a secret token to be used for CSRF attack prevention
102634d7150SAndreas Gohr *
1038b19906eSAndreas Gohr * @return  string
104634d7150SAndreas Gohr * @link    http://en.wikipedia.org/wiki/Cross-site_request_forgery
105634d7150SAndreas Gohr * @link    http://christ1an.blogspot.com/2007/04/preventing-csrf-efficiently.html
10642ea7f44SGerrit Uitslag *
1078b19906eSAndreas Gohr * @author  Andreas Gohr <andi@splitbrain.org>
108634d7150SAndreas Gohr */
109d868eb89SAndreas Gohrfunction getSecurityToken()
110d868eb89SAndreas Gohr{
111585bf44eSChristopher Smith    /** @var Input $INPUT */
112585bf44eSChristopher Smith    global $INPUT;
1133680e2cdSAndreas Gohr
1143680e2cdSAndreas Gohr    $user = $INPUT->server->str('REMOTE_USER');
1153680e2cdSAndreas Gohr    $session = session_id();
1163680e2cdSAndreas Gohr
1173680e2cdSAndreas Gohr    // CSRF checks are only for logged in users - do not generate for anonymous
1183680e2cdSAndreas Gohr    if (trim($user) == '' || trim($session) == '') return '';
11924870174SAndreas Gohr    return PassHash::hmac('md5', $session . $user, auth_cookiesalt());
120634d7150SAndreas Gohr}
121634d7150SAndreas Gohr
122634d7150SAndreas Gohr/**
123634d7150SAndreas Gohr * Check the secret CSRF token
124140cfbcdSGerrit Uitslag *
125140cfbcdSGerrit Uitslag * @param null|string $token security token or null to read it from request variable
126140cfbcdSGerrit Uitslag * @return bool success if the token matched
127634d7150SAndreas Gohr */
128d868eb89SAndreas Gohrfunction checkSecurityToken($token = null)
129d868eb89SAndreas Gohr{
130585bf44eSChristopher Smith    /** @var Input $INPUT */
1317d01a0eaSTom N Harris    global $INPUT;
132585bf44eSChristopher Smith    if (!$INPUT->server->str('REMOTE_USER')) return true; // no logged in user, no need for a check
133df97eaacSAndreas Gohr
1347d01a0eaSTom N Harris    if (is_null($token)) $token = $INPUT->str('sectok');
135634d7150SAndreas Gohr    if (getSecurityToken() != $token) {
136634d7150SAndreas Gohr        msg('Security Token did not match. Possible CSRF attack.', -1);
137634d7150SAndreas Gohr        return false;
138634d7150SAndreas Gohr    }
139634d7150SAndreas Gohr    return true;
140634d7150SAndreas Gohr}
141634d7150SAndreas Gohr
142634d7150SAndreas Gohr/**
143634d7150SAndreas Gohr * Print a hidden form field with a secret CSRF token
144634d7150SAndreas Gohr *
145140cfbcdSGerrit Uitslag * @param bool $print if true print the field, otherwise html of the field is returned
14642ea7f44SGerrit Uitslag * @return string html of hidden form field
1478b19906eSAndreas Gohr * @author  Andreas Gohr <andi@splitbrain.org>
1488b19906eSAndreas Gohr *
149634d7150SAndreas Gohr */
150d868eb89SAndreas Gohrfunction formSecurityToken($print = true)
151d868eb89SAndreas Gohr{
1522404d0edSAnika Henke    $ret = '<div class="no"><input type="hidden" name="sectok" value="' . getSecurityToken() . '" /></div>' . "\n";
1533272d797SAndreas Gohr    if ($print) echo $ret;
154634d7150SAndreas Gohr    return $ret;
155634d7150SAndreas Gohr}
156634d7150SAndreas Gohr
157634d7150SAndreas Gohr/**
1581015a57dSChristopher Smith * Determine basic information for a request of $id
15915fae107Sandi *
160140cfbcdSGerrit Uitslag * @param string $id pageid
161140cfbcdSGerrit Uitslag * @param bool $htmlClient add info about whether is mobile browser
162140cfbcdSGerrit Uitslag * @return array with info for a request of $id
163140cfbcdSGerrit Uitslag *
1648b19906eSAndreas Gohr * @author Chris Smith <chris@jalakai.co.uk>
1658b19906eSAndreas Gohr *
1668b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
167f3f0262cSandi */
168d868eb89SAndreas Gohrfunction basicinfo($id, $htmlClient = true)
169d868eb89SAndreas Gohr{
170f3f0262cSandi    global $USERINFO;
171585bf44eSChristopher Smith    /* @var Input $INPUT */
172585bf44eSChristopher Smith    global $INPUT;
1736afe8dcaSchris
174c66972f2SAdrian Lang    // set info about manager/admin status.
17524870174SAndreas Gohr    $info = [];
176c66972f2SAdrian Lang    $info['isadmin'] = false;
177c66972f2SAdrian Lang    $info['ismanager'] = false;
178585bf44eSChristopher Smith    if ($INPUT->server->has('REMOTE_USER')) {
179f3f0262cSandi        $info['userinfo'] = $USERINFO;
1801015a57dSChristopher Smith        $info['perm'] = auth_quickaclcheck($id);
181585bf44eSChristopher Smith        $info['client'] = $INPUT->server->str('REMOTE_USER');
18217ee7f66SAndreas Gohr
183f8cc712eSAndreas Gohr        if ($info['perm'] == AUTH_ADMIN) {
184f8cc712eSAndreas Gohr            $info['isadmin'] = true;
185f8cc712eSAndreas Gohr            $info['ismanager'] = true;
186f8cc712eSAndreas Gohr        } elseif (auth_ismanager()) {
187f8cc712eSAndreas Gohr            $info['ismanager'] = true;
188f8cc712eSAndreas Gohr        }
189f8cc712eSAndreas Gohr
19017ee7f66SAndreas Gohr        // if some outside auth were used only REMOTE_USER is set
191a58fcbbcSAndreas Gohr        if (empty($info['userinfo']['name'])) {
192585bf44eSChristopher Smith            $info['userinfo']['name'] = $INPUT->server->str('REMOTE_USER');
19317ee7f66SAndreas Gohr        }
194f3f0262cSandi    } else {
1951015a57dSChristopher Smith        $info['perm'] = auth_aclcheck($id, '', null);
196ee4c4a1bSAndreas Gohr        $info['client'] = clientIP(true);
197f3f0262cSandi    }
198f3f0262cSandi
1991015a57dSChristopher Smith    $info['namespace'] = getNS($id);
2001015a57dSChristopher Smith
2011015a57dSChristopher Smith    // mobile detection
2021015a57dSChristopher Smith    if ($htmlClient) {
2031015a57dSChristopher Smith        $info['ismobile'] = clientismobile();
2041015a57dSChristopher Smith    }
2051015a57dSChristopher Smith
2061015a57dSChristopher Smith    return $info;
2071015a57dSChristopher Smith}
2081015a57dSChristopher Smith
2091015a57dSChristopher Smith/**
2101015a57dSChristopher Smith * Return info about the current document as associative
2111015a57dSChristopher Smith * array.
2121015a57dSChristopher Smith *
213140cfbcdSGerrit Uitslag * @return array with info about current document
2144dc42f7fSGerrit Uitslag * @throws Exception
2154dc42f7fSGerrit Uitslag *
2164dc42f7fSGerrit Uitslag * @author Andreas Gohr <andi@splitbrain.org>
2171015a57dSChristopher Smith */
218d868eb89SAndreas Gohrfunction pageinfo()
219d868eb89SAndreas Gohr{
2201015a57dSChristopher Smith    global $ID;
2211015a57dSChristopher Smith    global $REV;
2221015a57dSChristopher Smith    global $RANGE;
2231015a57dSChristopher Smith    global $lang;
2241015a57dSChristopher Smith
2251015a57dSChristopher Smith    $info = basicinfo($ID);
2261015a57dSChristopher Smith
2271015a57dSChristopher Smith    // include ID & REV not redundant, as some parts of DokuWiki may temporarily change $ID, e.g. p_wiki_xhtml
2281015a57dSChristopher Smith    // FIXME ... perhaps it would be better to ensure the temporary changes weren't necessary
2291015a57dSChristopher Smith    $info['id'] = $ID;
2301015a57dSChristopher Smith    $info['rev'] = $REV;
2311015a57dSChristopher Smith
23275d66495SMichael Große    $subManager = new SubscriberManager();
23375d66495SMichael Große    $info['subscribed'] = $subManager->userSubscription();
2347e87a794SChristopher Smith
235f3f0262cSandi    $info['locked'] = checklock($ID);
236317a04c4SSatoshi Sahara    $info['filepath'] = wikiFN($ID);
23779e79377SAndreas Gohr    $info['exists'] = file_exists($info['filepath']);
23801c9a118SAndreas Gohr    $info['currentrev'] = @filemtime($info['filepath']);
2395ec96136SSatoshi Sahara
2402ca9d91cSBen Coburn    if ($REV) {
2412ca9d91cSBen Coburn        //check if current revision was meant
24201c9a118SAndreas Gohr        if ($info['exists'] && ($info['currentrev'] == $REV)) {
2432ca9d91cSBen Coburn            $REV = '';
2447b3a6803SAndreas Gohr        } elseif ($RANGE) {
2457b3a6803SAndreas Gohr            //section editing does not work with old revisions!
2467b3a6803SAndreas Gohr            $REV = '';
2477b3a6803SAndreas Gohr            $RANGE = '';
2487b3a6803SAndreas Gohr            msg($lang['nosecedit'], 0);
2492ca9d91cSBen Coburn        } else {
2502ca9d91cSBen Coburn            //really use old revision
251317a04c4SSatoshi Sahara            $info['filepath'] = wikiFN($ID, $REV);
25279e79377SAndreas Gohr            $info['exists'] = file_exists($info['filepath']);
253f3f0262cSandi        }
254f3f0262cSandi    }
255c112d578Sandi    $info['rev'] = $REV;
256f3f0262cSandi    if ($info['exists']) {
257252acce3SSatoshi Sahara        $info['writable'] = (is_writable($info['filepath']) && $info['perm'] >= AUTH_EDIT);
258f3f0262cSandi    } else {
259f3f0262cSandi        $info['writable'] = ($info['perm'] >= AUTH_CREATE);
260f3f0262cSandi    }
26150e988b1SAndreas Gohr    $info['editable'] = ($info['writable'] && empty($info['locked']));
262f3f0262cSandi    $info['lastmod'] = @filemtime($info['filepath']);
263f3f0262cSandi
26471726d78SBen Coburn    //load page meta data
26571726d78SBen Coburn    $info['meta'] = p_get_metadata($ID);
26671726d78SBen Coburn
267652610a2Sandi    //who's the editor
268047bad06SGerrit Uitslag    $pagelog = new PageChangeLog($ID, 1024);
269652610a2Sandi    if ($REV) {
270f523c971SGerrit Uitslag        $revinfo = $pagelog->getRevisionInfo($REV);
27124870174SAndreas Gohr    } elseif (!empty($info['meta']['last_change']) && is_array($info['meta']['last_change'])) {
272aa27cf05SAndreas Gohr        $revinfo = $info['meta']['last_change'];
273aa27cf05SAndreas Gohr    } else {
274f523c971SGerrit Uitslag        $revinfo = $pagelog->getRevisionInfo($info['lastmod']);
275cd00a034SBen Coburn        // cache most recent changelog line in metadata if missing and still valid
276cd00a034SBen Coburn        if ($revinfo !== false) {
277cd00a034SBen Coburn            $info['meta']['last_change'] = $revinfo;
27824870174SAndreas Gohr            p_set_metadata($ID, ['last_change' => $revinfo]);
279cd00a034SBen Coburn        }
280cd00a034SBen Coburn    }
281cd00a034SBen Coburn    //and check for an external edit
282cd00a034SBen Coburn    if ($revinfo !== false && $revinfo['date'] != $info['lastmod']) {
283cd00a034SBen Coburn        // cached changelog line no longer valid
284cd00a034SBen Coburn        $revinfo = false;
285cd00a034SBen Coburn        $info['meta']['last_change'] = $revinfo;
28624870174SAndreas Gohr        p_set_metadata($ID, ['last_change' => $revinfo]);
287652610a2Sandi    }
288bb4866bdSchris
2890a444b5aSPhy    if ($revinfo !== false) {
290652610a2Sandi        $info['ip'] = $revinfo['ip'];
291652610a2Sandi        $info['user'] = $revinfo['user'];
292652610a2Sandi        $info['sum'] = $revinfo['sum'];
29371726d78SBen Coburn        // See also $INFO['meta']['last_change'] which is the most recent log line for page $ID.
294ebf1501fSBen Coburn        // Use $INFO['meta']['last_change']['type']===DOKU_CHANGE_TYPE_MINOR_EDIT in place of $info['minor'].
29559f257aeSchris
296252acce3SSatoshi Sahara        $info['editor'] = $revinfo['user'] ?: $revinfo['ip'];
2970a444b5aSPhy    } else {
2980a444b5aSPhy        $info['ip'] = null;
2990a444b5aSPhy        $info['user'] = null;
3000a444b5aSPhy        $info['sum'] = null;
3010a444b5aSPhy        $info['editor'] = null;
3020a444b5aSPhy    }
303652610a2Sandi
304ee4c4a1bSAndreas Gohr    // draft
30524870174SAndreas Gohr    $draft = new Draft($ID, $info['client']);
3060aabe6f8SMichael Große    if ($draft->isDraftAvailable()) {
3070aabe6f8SMichael Große        $info['draft'] = $draft->getDraftFilename();
308ee4c4a1bSAndreas Gohr    }
309ee4c4a1bSAndreas Gohr
3101015a57dSChristopher Smith    return $info;
3111015a57dSChristopher Smith}
3121015a57dSChristopher Smith
3131015a57dSChristopher Smith/**
3140c39d46cSMichael Große * Initialize and/or fill global $JSINFO with some basic info to be given to javascript
3150c39d46cSMichael Große */
316d868eb89SAndreas Gohrfunction jsinfo()
317d868eb89SAndreas Gohr{
3180c39d46cSMichael Große    global $JSINFO, $ID, $INFO, $ACT;
3190c39d46cSMichael Große
3200c39d46cSMichael Große    if (!is_array($JSINFO)) {
3210c39d46cSMichael Große        $JSINFO = [];
3220c39d46cSMichael Große    }
3230c39d46cSMichael Große    //export minimal info to JS, plugins can add more
3240c39d46cSMichael Große    $JSINFO['id'] = $ID;
32568491db9SPhy    $JSINFO['namespace'] = isset($INFO) ? (string)$INFO['namespace'] : '';
3260c39d46cSMichael Große    $JSINFO['ACT'] = act_clean($ACT);
3270c39d46cSMichael Große    $JSINFO['useHeadingNavigation'] = (int)useHeading('navigation');
3280c39d46cSMichael Große    $JSINFO['useHeadingContent'] = (int)useHeading('content');
3290c39d46cSMichael Große}
3300c39d46cSMichael Große
3310c39d46cSMichael Große/**
3321015a57dSChristopher Smith * Return information about the current media item as an associative array.
333140cfbcdSGerrit Uitslag *
334140cfbcdSGerrit Uitslag * @return array with info about current media item
3351015a57dSChristopher Smith */
336d868eb89SAndreas Gohrfunction mediainfo()
337d868eb89SAndreas Gohr{
3381015a57dSChristopher Smith    global $NS;
3391015a57dSChristopher Smith    global $IMG;
3401015a57dSChristopher Smith
3411015a57dSChristopher Smith    $info = basicinfo("$NS:*");
3421015a57dSChristopher Smith    $info['image'] = $IMG;
3431c548ebeSAndreas Gohr
344f3f0262cSandi    return $info;
345f3f0262cSandi}
346f3f0262cSandi
347f3f0262cSandi/**
3482684e50aSAndreas Gohr * Build an string of URL parameters
3492684e50aSAndreas Gohr *
350140cfbcdSGerrit Uitslag * @param array $params array with key-value pairs
351140cfbcdSGerrit Uitslag * @param string $sep series of pairs are separated by this character
352140cfbcdSGerrit Uitslag * @return string query string
3538b19906eSAndreas Gohr * @author Andreas Gohr
3548b19906eSAndreas Gohr *
3552684e50aSAndreas Gohr */
356d868eb89SAndreas Gohrfunction buildURLparams($params, $sep = '&amp;')
357d868eb89SAndreas Gohr{
3582684e50aSAndreas Gohr    $url = '';
3592684e50aSAndreas Gohr    $amp = false;
3602684e50aSAndreas Gohr    foreach ($params as $key => $val) {
361b174aeaeSchris        if ($amp) $url .= $sep;
3622684e50aSAndreas Gohr
36385e6871fSAdrian Lang        $url .= rawurlencode($key) . '=';
3643a50618cSgweissbach        $url .= rawurlencode((string)$val);
3652684e50aSAndreas Gohr        $amp = true;
3662684e50aSAndreas Gohr    }
3672684e50aSAndreas Gohr    return $url;
3682684e50aSAndreas Gohr}
3692684e50aSAndreas Gohr
3702684e50aSAndreas Gohr/**
3712684e50aSAndreas Gohr * Build an string of html tag attributes
3722684e50aSAndreas Gohr *
3737bff22c0SAndreas Gohr * Skips keys starting with '_', values get HTML encoded
3747bff22c0SAndreas Gohr *
375140cfbcdSGerrit Uitslag * @param array $params array with (attribute name-attribute value) pairs
376246d3337SMichael Große * @param bool $skipEmptyStrings skip empty string values?
377140cfbcdSGerrit Uitslag * @return string
3788b19906eSAndreas Gohr * @author Andreas Gohr
3798b19906eSAndreas Gohr *
3802684e50aSAndreas Gohr */
381d868eb89SAndreas Gohrfunction buildAttributes($params, $skipEmptyStrings = false)
382d868eb89SAndreas Gohr{
3832684e50aSAndreas Gohr    $url = '';
3849063ec14SAdrian Lang    $white = false;
3852684e50aSAndreas Gohr    foreach ($params as $key => $val) {
3862401f18dSSyntaxseed        if ($key[0] == '_') continue;
387246d3337SMichael Große        if ($val === '' && $skipEmptyStrings) continue;
3889063ec14SAdrian Lang        if ($white) $url .= ' ';
3897bff22c0SAndreas Gohr
3902684e50aSAndreas Gohr        $url .= $key . '="';
391f7711f2bSAndreas Gohr        $url .= hsc($val);
3922684e50aSAndreas Gohr        $url .= '"';
3939063ec14SAdrian Lang        $white = true;
3942684e50aSAndreas Gohr    }
3952684e50aSAndreas Gohr    return $url;
3962684e50aSAndreas Gohr}
3972684e50aSAndreas Gohr
3982684e50aSAndreas Gohr/**
39915fae107Sandi * This builds the breadcrumb trail and returns it as array
40015fae107Sandi *
4018b19906eSAndreas Gohr * @return string[] with the data: array(pageid=>name, ... )
40215fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
403140cfbcdSGerrit Uitslag *
404f3f0262cSandi */
405d868eb89SAndreas Gohrfunction breadcrumbs()
406d868eb89SAndreas Gohr{
4078746e727Sandi    // we prepare the breadcrumbs early for quick session closing
4088746e727Sandi    static $crumbs = null;
4098746e727Sandi    if ($crumbs != null) return $crumbs;
4108746e727Sandi
411f3f0262cSandi    global $ID;
412f3f0262cSandi    global $ACT;
413f3f0262cSandi    global $conf;
4140ea5ebb4SB_S666    global $INFO;
415f3f0262cSandi
416f3f0262cSandi    //first visit?
41724870174SAndreas Gohr    $crumbs = $_SESSION[DOKU_COOKIE]['bc'] ?? [];
4185603d3c1SHenry Pan    //we only save on show and existing visible readable wiki documents
419a77f5846Sjan    $file = wikiFN($ID);
4205603d3c1SHenry Pan    if ($ACT != 'show' || $INFO['perm'] < AUTH_READ || isHiddenPage($ID) || !file_exists($file)) {
421e71ce681SAndreas Gohr        $_SESSION[DOKU_COOKIE]['bc'] = $crumbs;
422f3f0262cSandi        return $crumbs;
423f3f0262cSandi    }
424a77f5846Sjan
425a77f5846Sjan    // page names
4261a84a0f3SAnika Henke    $name = noNSorNS($ID);
427fe9ec250SChris Smith    if (useHeading('navigation')) {
428a77f5846Sjan        // get page title
42967c15eceSMichael Hamann        $title = p_get_first_heading($ID, METADATA_RENDER_USING_SIMPLE_CACHE);
430a77f5846Sjan        if ($title) {
431a77f5846Sjan            $name = $title;
432a77f5846Sjan        }
433a77f5846Sjan    }
434a77f5846Sjan
435f3f0262cSandi    //remove ID from array
436a77f5846Sjan    if (isset($crumbs[$ID])) {
437a77f5846Sjan        unset($crumbs[$ID]);
438f3f0262cSandi    }
439f3f0262cSandi
440f3f0262cSandi    //add to array
441a77f5846Sjan    $crumbs[$ID] = $name;
442f3f0262cSandi    //reduce size
443f3f0262cSandi    while (count($crumbs) > $conf['breadcrumbs']) {
444f3f0262cSandi        array_shift($crumbs);
445f3f0262cSandi    }
446f3f0262cSandi    //save to session
447e71ce681SAndreas Gohr    $_SESSION[DOKU_COOKIE]['bc'] = $crumbs;
448f3f0262cSandi    return $crumbs;
449f3f0262cSandi}
450f3f0262cSandi
451f3f0262cSandi/**
45215fae107Sandi * Filter for page IDs
45315fae107Sandi *
454f3f0262cSandi * This is run on a ID before it is outputted somewhere
455f3f0262cSandi * currently used to replace the colon with something else
456907f24f7SAndreas Gohr * on Windows (non-IIS) systems and to have proper URL encoding
457907f24f7SAndreas Gohr *
458977aa967SAndreas Gohr * See discussions at https://github.com/dokuwiki/dokuwiki/pull/84 and
459977aa967SAndreas Gohr * https://github.com/dokuwiki/dokuwiki/pull/173 why we use a whitelist of
460907f24f7SAndreas Gohr * unaffected servers instead of blacklisting affected servers here.
46115fae107Sandi *
46249c713a3Sandi * Urlencoding is ommitted when the second parameter is false
46349c713a3Sandi *
464140cfbcdSGerrit Uitslag * @param string $id pageid being filtered
465140cfbcdSGerrit Uitslag * @param bool $ue apply urlencoding?
466140cfbcdSGerrit Uitslag * @return string
4678b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
4688b19906eSAndreas Gohr *
469f3f0262cSandi */
470d868eb89SAndreas Gohrfunction idfilter($id, $ue = true)
471d868eb89SAndreas Gohr{
472f3f0262cSandi    global $conf;
473585bf44eSChristopher Smith    /* @var Input $INPUT */
474585bf44eSChristopher Smith    global $INPUT;
475585bf44eSChristopher Smith
476bf8f8509SAndreas Gohr    $id = (string)$id;
477bf8f8509SAndreas Gohr
478f3f0262cSandi    if ($conf['useslash'] && $conf['userewrite']) {
479f3f0262cSandi        $id = strtr($id, ':', '/');
4807d34963bSAndreas Gohr    } elseif (
4816c16a3a9Sfiwswe        str_starts_with(strtoupper(PHP_OS), 'WIN') &&
48258bedc8aSborekb        $conf['userewrite'] &&
483585bf44eSChristopher Smith        strpos($INPUT->server->str('SERVER_SOFTWARE'), 'Microsoft-IIS') === false
4843272d797SAndreas Gohr    ) {
485f3f0262cSandi        $id = strtr($id, ':', ';');
486f3f0262cSandi    }
48749c713a3Sandi    if ($ue) {
488b6c6979fSAndreas Gohr        $id = rawurlencode($id);
489f3f0262cSandi        $id = str_replace('%3A', ':', $id); //keep as colon
490edd95259SGerrit Uitslag        $id = str_replace('%3B', ';', $id); //keep as semicolon
491f3f0262cSandi        $id = str_replace('%2F', '/', $id); //keep as slash
49249c713a3Sandi    }
493f3f0262cSandi    return $id;
494f3f0262cSandi}
495f3f0262cSandi
496f3f0262cSandi/**
497ed7b5f09Sandi * This builds a link to a wikipage
49815fae107Sandi *
4994bc480e5SAndreas Gohr * It handles URL rewriting and adds additional parameters
5006c7843b5Sandi *
5014bc480e5SAndreas Gohr * @param string $id page id, defaults to start page
5024bc480e5SAndreas Gohr * @param string|array $urlParameters URL parameters, associative array recommended
5034bc480e5SAndreas Gohr * @param bool $absolute request an absolute URL instead of relative
5044bc480e5SAndreas Gohr * @param string $separator parameter separator
5054bc480e5SAndreas Gohr * @return string
5068b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
5078b19906eSAndreas Gohr *
508f3f0262cSandi */
509d868eb89SAndreas Gohrfunction wl($id = '', $urlParameters = '', $absolute = false, $separator = '&amp;')
510d868eb89SAndreas Gohr{
511f3f0262cSandi    global $conf;
51216f15a81SDominik Eckelmann    if (is_array($urlParameters)) {
5134bde2196Slisps        if (isset($urlParameters['rev']) && !$urlParameters['rev']) unset($urlParameters['rev']);
51464159a61SAndreas Gohr        if (isset($urlParameters['at']) && $conf['date_at_format']) {
51564159a61SAndreas Gohr            $urlParameters['at'] = date($conf['date_at_format'], $urlParameters['at']);
51664159a61SAndreas Gohr        }
51716f15a81SDominik Eckelmann        $urlParameters = buildURLparams($urlParameters, $separator);
5186de3759aSAndreas Gohr    } else {
51916f15a81SDominik Eckelmann        $urlParameters = str_replace(',', $separator, $urlParameters);
5206de3759aSAndreas Gohr    }
52116f15a81SDominik Eckelmann    if ($id === '') {
52216f15a81SDominik Eckelmann        $id = $conf['start'];
52316f15a81SDominik Eckelmann    }
524f3f0262cSandi    $id = idfilter($id);
52516f15a81SDominik Eckelmann    if ($absolute) {
526ed7b5f09Sandi        $xlink = DOKU_URL;
527ed7b5f09Sandi    } else {
528ed7b5f09Sandi        $xlink = DOKU_BASE;
529ed7b5f09Sandi    }
530f3f0262cSandi
5316c7843b5Sandi    if ($conf['userewrite'] == 2) {
5326c7843b5Sandi        $xlink .= DOKU_SCRIPT . '/' . $id;
53316f15a81SDominik Eckelmann        if ($urlParameters) $xlink .= '?' . $urlParameters;
5346c7843b5Sandi    } elseif ($conf['userewrite']) {
535f3f0262cSandi        $xlink .= $id;
53616f15a81SDominik Eckelmann        if ($urlParameters) $xlink .= '?' . $urlParameters;
53740b5fb5bSPhy    } elseif ($id !== '') {
5386c7843b5Sandi        $xlink .= DOKU_SCRIPT . '?id=' . $id;
53916f15a81SDominik Eckelmann        if ($urlParameters) $xlink .= $separator . $urlParameters;
540bce3726dSAndreas Gohr    } else {
541bce3726dSAndreas Gohr        $xlink .= DOKU_SCRIPT;
54216f15a81SDominik Eckelmann        if ($urlParameters) $xlink .= '?' . $urlParameters;
543f3f0262cSandi    }
544f3f0262cSandi
545f3f0262cSandi    return $xlink;
546f3f0262cSandi}
547f3f0262cSandi
548f3f0262cSandi/**
549f5c2808fSBen Coburn * This builds a link to an alternate page format
550f5c2808fSBen Coburn *
551f5c2808fSBen Coburn * Handles URL rewriting if enabled. Follows the style of wl().
552f5c2808fSBen Coburn *
5534bc480e5SAndreas Gohr * @param string $id page id, defaults to start page
5544bc480e5SAndreas Gohr * @param string $format the export renderer to use
5554bc480e5SAndreas Gohr * @param string|array $urlParameters URL parameters, associative array recommended
5564bc480e5SAndreas Gohr * @param bool $abs request an absolute URL instead of relative
5574bc480e5SAndreas Gohr * @param string $sep parameter separator
5584bc480e5SAndreas Gohr * @return string
5598b19906eSAndreas Gohr * @author Ben Coburn <btcoburn@silicodon.net>
560f5c2808fSBen Coburn */
561d868eb89SAndreas Gohrfunction exportlink($id = '', $format = 'raw', $urlParameters = '', $abs = false, $sep = '&amp;')
562d868eb89SAndreas Gohr{
563f5c2808fSBen Coburn    global $conf;
5644bc480e5SAndreas Gohr    if (is_array($urlParameters)) {
5654bc480e5SAndreas Gohr        $urlParameters = buildURLparams($urlParameters, $sep);
566f5c2808fSBen Coburn    } else {
5674bc480e5SAndreas Gohr        $urlParameters = str_replace(',', $sep, $urlParameters);
568f5c2808fSBen Coburn    }
569f5c2808fSBen Coburn
570f5c2808fSBen Coburn    $format = rawurlencode($format);
571f5c2808fSBen Coburn    $id = idfilter($id);
572f5c2808fSBen Coburn    if ($abs) {
573f5c2808fSBen Coburn        $xlink = DOKU_URL;
574f5c2808fSBen Coburn    } else {
575f5c2808fSBen Coburn        $xlink = DOKU_BASE;
576f5c2808fSBen Coburn    }
577f5c2808fSBen Coburn
578f5c2808fSBen Coburn    if ($conf['userewrite'] == 2) {
579f5c2808fSBen Coburn        $xlink .= DOKU_SCRIPT . '/' . $id . '?do=export_' . $format;
5804bc480e5SAndreas Gohr        if ($urlParameters) $xlink .= $sep . $urlParameters;
581f5c2808fSBen Coburn    } elseif ($conf['userewrite'] == 1) {
582f5c2808fSBen Coburn        $xlink .= '_export/' . $format . '/' . $id;
5834bc480e5SAndreas Gohr        if ($urlParameters) $xlink .= '?' . $urlParameters;
584f5c2808fSBen Coburn    } else {
585f5c2808fSBen Coburn        $xlink .= DOKU_SCRIPT . '?do=export_' . $format . $sep . 'id=' . $id;
5864bc480e5SAndreas Gohr        if ($urlParameters) $xlink .= $sep . $urlParameters;
587f5c2808fSBen Coburn    }
588f5c2808fSBen Coburn
589f5c2808fSBen Coburn    return $xlink;
590f5c2808fSBen Coburn}
591f5c2808fSBen Coburn
592f5c2808fSBen Coburn/**
5936de3759aSAndreas Gohr * Build a link to a media file
5946de3759aSAndreas Gohr *
5956de3759aSAndreas Gohr * Will return a link to the detail page if $direct is false
5968c08db0aSAndreas Gohr *
5978c08db0aSAndreas Gohr * The $more parameter should always be given as array, the function then
5988c08db0aSAndreas Gohr * will strip default parameters to produce even cleaner URLs
5998c08db0aSAndreas Gohr *
6003272d797SAndreas Gohr * @param string $id the media file id or URL
6013272d797SAndreas Gohr * @param mixed $more string or array with additional parameters
6023272d797SAndreas Gohr * @param bool $direct link to detail page if false
6033272d797SAndreas Gohr * @param string $sep URL parameter separator
6043272d797SAndreas Gohr * @param bool $abs Create an absolute URL
6053272d797SAndreas Gohr * @return string
6066de3759aSAndreas Gohr */
607d868eb89SAndreas Gohrfunction ml($id = '', $more = '', $direct = true, $sep = '&amp;', $abs = false)
608d868eb89SAndreas Gohr{
6096de3759aSAndreas Gohr    global $conf;
610b9ee6a44SKlap-in    $isexternalimage = media_isexternal($id);
611826d2766SKlap-in    if (!$isexternalimage) {
612826d2766SKlap-in        $id = cleanID($id);
613826d2766SKlap-in    }
614826d2766SKlap-in
6156de3759aSAndreas Gohr    if (is_array($more)) {
6160f4e0092SChristopher Smith        // add token for resized images
61724870174SAndreas Gohr        $w = $more['w'] ?? null;
61824870174SAndreas Gohr        $h = $more['h'] ?? null;
61998fe1ac9SDamien Regad        if ($w || $h || $isexternalimage) {
620357c9a39SDamien Regad            $more['tok'] = media_get_token($id, $w, $h);
6210f4e0092SChristopher Smith        }
6228c08db0aSAndreas Gohr        // strip defaults for shorter URLs
6238c08db0aSAndreas Gohr        if (isset($more['cache']) && $more['cache'] == 'cache') unset($more['cache']);
624443e135dSChristopher Smith        if (empty($more['w'])) unset($more['w']);
625443e135dSChristopher Smith        if (empty($more['h'])) unset($more['h']);
6268c08db0aSAndreas Gohr        if (isset($more['id']) && $direct) unset($more['id']);
62778b874e6Slisps        if (isset($more['rev']) && !$more['rev']) unset($more['rev']);
628b174aeaeSchris        $more = buildURLparams($more, $sep);
6296de3759aSAndreas Gohr    } else {
63024870174SAndreas Gohr        $matches = [];
631cc036f74SKlap-in        if (preg_match_all('/\b(w|h)=(\d*)\b/', $more, $matches, PREG_SET_ORDER) || $isexternalimage) {
63224870174SAndreas Gohr            $resize = ['w' => 0, 'h' => 0];
6335e7db1e2SChristopher Smith            foreach ($matches as $match) {
6345e7db1e2SChristopher Smith                $resize[$match[1]] = $match[2];
6355e7db1e2SChristopher Smith            }
636cc036f74SKlap-in            $more .= $more === '' ? '' : $sep;
637cc036f74SKlap-in            $more .= 'tok=' . media_get_token($id, $resize['w'], $resize['h']);
6385e7db1e2SChristopher Smith        }
6398c08db0aSAndreas Gohr        $more = str_replace('cache=cache', '', $more); //skip default
6408c08db0aSAndreas Gohr        $more = str_replace(',,', ',', $more);
641b174aeaeSchris        $more = str_replace(',', $sep, $more);
6426de3759aSAndreas Gohr    }
6436de3759aSAndreas Gohr
64455b2b31bSAndreas Gohr    if ($abs) {
64555b2b31bSAndreas Gohr        $xlink = DOKU_URL;
64655b2b31bSAndreas Gohr    } else {
6476de3759aSAndreas Gohr        $xlink = DOKU_BASE;
64855b2b31bSAndreas Gohr    }
6496de3759aSAndreas Gohr
6506de3759aSAndreas Gohr    // external URLs are always direct without rewriting
651826d2766SKlap-in    if ($isexternalimage) {
6526de3759aSAndreas Gohr        $xlink .= 'lib/exe/fetch.php';
653cc036f74SKlap-in        $xlink .= '?' . $more;
654b174aeaeSchris        $xlink .= $sep . 'media=' . rawurlencode($id);
6556de3759aSAndreas Gohr        return $xlink;
6566de3759aSAndreas Gohr    }
6576de3759aSAndreas Gohr
6586de3759aSAndreas Gohr    $id = idfilter($id);
6596de3759aSAndreas Gohr
6606de3759aSAndreas Gohr    // decide on scriptname
6616de3759aSAndreas Gohr    if ($direct) {
6626de3759aSAndreas Gohr        if ($conf['userewrite'] == 1) {
6636de3759aSAndreas Gohr            $script = '_media';
6646de3759aSAndreas Gohr        } else {
6656de3759aSAndreas Gohr            $script = 'lib/exe/fetch.php';
6666de3759aSAndreas Gohr        }
66724870174SAndreas Gohr    } elseif ($conf['userewrite'] == 1) {
6686de3759aSAndreas Gohr        $script = '_detail';
6696de3759aSAndreas Gohr    } else {
6706de3759aSAndreas Gohr        $script = 'lib/exe/detail.php';
6716de3759aSAndreas Gohr    }
6726de3759aSAndreas Gohr
6736de3759aSAndreas Gohr    // build URL based on rewrite mode
6746de3759aSAndreas Gohr    if ($conf['userewrite']) {
6756de3759aSAndreas Gohr        $xlink .= $script . '/' . $id;
6766de3759aSAndreas Gohr        if ($more) $xlink .= '?' . $more;
67724870174SAndreas Gohr    } elseif ($more) {
678a99d3236SEsther Brunner        $xlink .= $script . '?' . $more;
679b174aeaeSchris        $xlink .= $sep . 'media=' . $id;
6806de3759aSAndreas Gohr    } else {
681a99d3236SEsther Brunner        $xlink .= $script . '?media=' . $id;
6826de3759aSAndreas Gohr    }
6836de3759aSAndreas Gohr
6846de3759aSAndreas Gohr    return $xlink;
6856de3759aSAndreas Gohr}
6866de3759aSAndreas Gohr
6876de3759aSAndreas Gohr/**
68825ca5b17SAndreas Gohr * Returns the URL to the DokuWiki base script
68915fae107Sandi *
69025ca5b17SAndreas Gohr * Consider using wl() instead, unless you absoutely need the doku.php endpoint
69125ca5b17SAndreas Gohr *
6928b19906eSAndreas Gohr * @return string
69315fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
694140cfbcdSGerrit Uitslag *
695f3f0262cSandi */
696d868eb89SAndreas Gohrfunction script()
697d868eb89SAndreas Gohr{
698ed7b5f09Sandi    return DOKU_BASE . DOKU_SCRIPT;
699f3f0262cSandi}
700f3f0262cSandi
701f3f0262cSandi/**
70215fae107Sandi * Spamcheck against wordlist
70315fae107Sandi *
704f3f0262cSandi * Checks the wikitext against a list of blocked expressions
705f3f0262cSandi * returns true if the text contains any bad words
70615fae107Sandi *
707e403cc58SMichael Klier * Triggers COMMON_WORDBLOCK_BLOCKED
708e403cc58SMichael Klier *
709e403cc58SMichael Klier *  Action Plugins can use this event to inspect the blocked data
710e403cc58SMichael Klier *  and gain information about the user who was blocked.
711e403cc58SMichael Klier *
712e403cc58SMichael Klier *  Event data:
713e403cc58SMichael Klier *    data['matches']  - array of matches
714e403cc58SMichael Klier *    data['userinfo'] - information about the blocked user
715e403cc58SMichael Klier *      [ip]           - ip address
716e403cc58SMichael Klier *      [user]         - username (if logged in)
717e403cc58SMichael Klier *      [mail]         - mail address (if logged in)
718e403cc58SMichael Klier *      [name]         - real name (if logged in)
719e403cc58SMichael Klier *
7208b19906eSAndreas Gohr * @param string $text - optional text to check, if not given the globals are used
7218b19906eSAndreas Gohr * @return bool         - true if a spam word was found
72215fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
7236dffa0e0SAndreas Gohr * @author Michael Klier <chi@chimeric.de>
724140cfbcdSGerrit Uitslag *
725f3f0262cSandi */
726d868eb89SAndreas Gohrfunction checkwordblock($text = '')
727d868eb89SAndreas Gohr{
728f3f0262cSandi    global $TEXT;
7296dffa0e0SAndreas Gohr    global $PRE;
7306dffa0e0SAndreas Gohr    global $SUF;
731e0086ca2SAndreas Gohr    global $SUM;
732f3f0262cSandi    global $conf;
733e403cc58SMichael Klier    global $INFO;
734585bf44eSChristopher Smith    /* @var Input $INPUT */
735585bf44eSChristopher Smith    global $INPUT;
736f3f0262cSandi
737f3f0262cSandi    if (!$conf['usewordblock']) return false;
738f3f0262cSandi
739e0086ca2SAndreas Gohr    if (!$text) $text = "$PRE $TEXT $SUF $SUM";
7406dffa0e0SAndreas Gohr
741041d1964SAndreas Gohr    // we prepare the text a tiny bit to prevent spammers circumventing URL checks
74264159a61SAndreas Gohr    // phpcs:disable Generic.Files.LineLength.TooLong
74364159a61SAndreas Gohr    $text = preg_replace(
74464159a61SAndreas Gohr        '!(\b)(www\.[\w.:?\-;,]+?\.[\w.:?\-;,]+?[\w/\#~:.?+=&%@\!\-.:?\-;,]+?)([.:?\-;,]*[^\w/\#~:.?+=&%@\!\-.:?\-;,])!i',
74564159a61SAndreas Gohr        '\1http://\2 \2\3',
74664159a61SAndreas Gohr        $text
74764159a61SAndreas Gohr    );
74864159a61SAndreas Gohr    // phpcs:enable
749041d1964SAndreas Gohr
750b9ac8716Schris    $wordblocks = getWordblocks();
751a51d08efSAndreas Gohr    // read file in chunks of 200 - this should work around the
7523e2965d7Sandi    // MAX_PATTERN_SIZE in modern PCRE
753a51d08efSAndreas Gohr    $chunksize = 200;
75464259528SAndreas Gohr
755b9ac8716Schris    while ($blocks = array_splice($wordblocks, 0, $chunksize)) {
75624870174SAndreas Gohr        $re = [];
75749eb6e38SAndreas Gohr        // build regexp from blocks
758f3f0262cSandi        foreach ($blocks as $block) {
759f3f0262cSandi            $block = preg_replace('/#.*$/', '', $block);
760f3f0262cSandi            $block = trim($block);
761f3f0262cSandi            if (empty($block)) continue;
762f3f0262cSandi            $re[] = $block;
763f3f0262cSandi        }
76424870174SAndreas Gohr        if (count($re) && preg_match('#(' . implode('|', $re) . ')#si', $text, $matches)) {
765e403cc58SMichael Klier            // prepare event data
76624870174SAndreas Gohr            $data = [];
767e403cc58SMichael Klier            $data['matches'] = $matches;
768585bf44eSChristopher Smith            $data['userinfo']['ip'] = $INPUT->server->str('REMOTE_ADDR');
769585bf44eSChristopher Smith            if ($INPUT->server->str('REMOTE_USER')) {
770585bf44eSChristopher Smith                $data['userinfo']['user'] = $INPUT->server->str('REMOTE_USER');
771e403cc58SMichael Klier                $data['userinfo']['name'] = $INFO['userinfo']['name'];
772e403cc58SMichael Klier                $data['userinfo']['mail'] = $INFO['userinfo']['mail'];
773e403cc58SMichael Klier            }
77424870174SAndreas Gohr            $callback = static fn() => true;
775cbb44eabSAndreas Gohr            return Event::createAndTrigger('COMMON_WORDBLOCK_BLOCKED', $data, $callback, true);
776b9ac8716Schris        }
777703f6fdeSandi    }
778f3f0262cSandi    return false;
779f3f0262cSandi}
780f3f0262cSandi
781f3f0262cSandi/**
782a7580321SZebra North * Return the IP of the client.
78315fae107Sandi *
784a7580321SZebra North * The IP is sourced from, in order of preference:
78515fae107Sandi *
786a7580321SZebra North *   - The X-Real-IP header if $conf[realip] is true.
787a7580321SZebra North *   - The X-Forwarded-For header if all the proxies are trusted by $conf[trustedproxy].
788a7580321SZebra North *   - The TCP/IP connection remote address.
789a7580321SZebra North *   - 0.0.0.0 if all else fails.
7906d8affe6SAndreas Gohr *
791a7580321SZebra North * The 'realip' config value should only be set to true if the X-Real-IP header
792a7580321SZebra North * is being added by the web server, otherwise it may be spoofed by the client.
7938b19906eSAndreas Gohr *
794a7580321SZebra North * The 'trustedproxy' setting must not allow any IP, otherwise the X-Forwarded-For
795a7580321SZebra North * may be spoofed by the client.
796a7580321SZebra North *
797a7580321SZebra North * @author Zebra North <mrzebra@mrzebra.co.uk>
798140cfbcdSGerrit Uitslag *
799608cdefcSZebra North * @param  bool $single If set only a single IP is returned.
800608cdefcSZebra North *
801a7580321SZebra North * @return string Returns an IP address if 'single' is true, or a comma-separated list
802a7580321SZebra North *                of IP addresses otherwise.
803f3f0262cSandi */
8046d8affe6SAndreas Gohrfunction clientIP($single = false) {
805a7580321SZebra North    // Return the first IP in single mode, or all the IPs.
806c7f6b7b7SZebra North    return $single ? Ip::clientIp() : join(',', Ip::clientIps());
807f3f0262cSandi}
808f3f0262cSandi
809f3f0262cSandi/**
8101c548ebeSAndreas Gohr * Check if the browser is on a mobile device
8111c548ebeSAndreas Gohr *
8121c548ebeSAndreas Gohr * Adapted from the example code at url below
8131c548ebeSAndreas Gohr *
8141c548ebeSAndreas Gohr * @link http://www.brainhandles.com/2007/10/15/detecting-mobile-browsers/#code
815140cfbcdSGerrit Uitslag *
81664159a61SAndreas Gohr * @deprecated 2018-04-27 you probably want media queries instead anyway
817140cfbcdSGerrit Uitslag * @return bool if true, client is mobile browser; otherwise false
8181c548ebeSAndreas Gohr */
819d868eb89SAndreas Gohrfunction clientismobile()
820d868eb89SAndreas Gohr{
821585bf44eSChristopher Smith    /* @var Input $INPUT */
822585bf44eSChristopher Smith    global $INPUT;
8231c548ebeSAndreas Gohr
824585bf44eSChristopher Smith    if ($INPUT->server->has('HTTP_X_WAP_PROFILE')) return true;
8251c548ebeSAndreas Gohr
826585bf44eSChristopher Smith    if (preg_match('/wap\.|\.wap/i', $INPUT->server->str('HTTP_ACCEPT'))) return true;
8271c548ebeSAndreas Gohr
828585bf44eSChristopher Smith    if (!$INPUT->server->has('HTTP_USER_AGENT')) return false;
8291c548ebeSAndreas Gohr
83024870174SAndreas Gohr    $uamatches = implode(
83164159a61SAndreas Gohr        '|',
83264159a61SAndreas Gohr        [
83364159a61SAndreas Gohr            'midp', 'j2me', 'avantg', 'docomo', 'novarra', 'palmos', 'palmsource', '240x320', 'opwv',
83464159a61SAndreas Gohr            'chtml', 'pda', 'windows ce', 'mmp\/', 'blackberry', 'mib\/', 'symbian', 'wireless', 'nokia',
83564159a61SAndreas Gohr            'hand', 'mobi', 'phone', 'cdm', 'up\.b', 'audio', 'SIE\-', 'SEC\-', 'samsung', 'HTC', 'mot\-',
83664159a61SAndreas Gohr            'mitsu', 'sagem', 'sony', 'alcatel', 'lg', 'erics', 'vx', 'NEC', 'philips', 'mmm', 'xx',
83764159a61SAndreas Gohr            'panasonic', 'sharp', 'wap', 'sch', 'rover', 'pocket', 'benq', 'java', 'pt', 'pg', 'vox',
83864159a61SAndreas Gohr            'amoi', 'bird', 'compal', 'kg', 'voda', 'sany', 'kdd', 'dbt', 'sendo', 'sgh', 'gradi', 'jb',
83964159a61SAndreas Gohr            '\d\d\di', 'moto'
84064159a61SAndreas Gohr        ]
84164159a61SAndreas Gohr    );
8421c548ebeSAndreas Gohr
843585bf44eSChristopher Smith    if (preg_match("/$uamatches/i", $INPUT->server->str('HTTP_USER_AGENT'))) return true;
8441c548ebeSAndreas Gohr
8451c548ebeSAndreas Gohr    return false;
8461c548ebeSAndreas Gohr}
8471c548ebeSAndreas Gohr
8481c548ebeSAndreas Gohr/**
8496efc45a2SDmitry Katsubo * check if a given link is interwiki link
8506efc45a2SDmitry Katsubo *
8516efc45a2SDmitry Katsubo * @param string $link the link, e.g. "wiki>page"
8526efc45a2SDmitry Katsubo * @return bool
8536efc45a2SDmitry Katsubo */
854d868eb89SAndreas Gohrfunction link_isinterwiki($link)
855d868eb89SAndreas Gohr{
8566efc45a2SDmitry Katsubo    if (preg_match('/^[a-zA-Z0-9\.]+>/u', $link)) return true;
8576efc45a2SDmitry Katsubo    return false;
8586efc45a2SDmitry Katsubo}
8596efc45a2SDmitry Katsubo
8606efc45a2SDmitry Katsubo/**
86163211f61SGlen Harris * Convert one or more comma separated IPs to hostnames
86263211f61SGlen Harris *
86322ef1e32SAndreas Gohr * If $conf['dnslookups'] is disabled it simply returns the input string
86422ef1e32SAndreas Gohr *
8653272d797SAndreas Gohr * @param string $ips comma separated list of IP addresses
8663272d797SAndreas Gohr * @return string a comma separated list of hostnames
8678b19906eSAndreas Gohr * @author Glen Harris <astfgl@iamnota.org>
8688b19906eSAndreas Gohr *
86963211f61SGlen Harris */
870d868eb89SAndreas Gohrfunction gethostsbyaddrs($ips)
871d868eb89SAndreas Gohr{
87222ef1e32SAndreas Gohr    global $conf;
87322ef1e32SAndreas Gohr    if (!$conf['dnslookups']) return $ips;
87422ef1e32SAndreas Gohr
87524870174SAndreas Gohr    $hosts = [];
87663211f61SGlen Harris    $ips = explode(',', $ips);
877551a720fSMichael Klier
878551a720fSMichael Klier    if (is_array($ips)) {
8793886270dSAndreas Gohr        foreach ($ips as $ip) {
880551a720fSMichael Klier            $hosts[] = gethostbyaddr(trim($ip));
88163211f61SGlen Harris        }
88224870174SAndreas Gohr        return implode(',', $hosts);
883551a720fSMichael Klier    } else {
884551a720fSMichael Klier        return gethostbyaddr(trim($ips));
885551a720fSMichael Klier    }
88663211f61SGlen Harris}
88763211f61SGlen Harris
88863211f61SGlen Harris/**
88915fae107Sandi * Checks if a given page is currently locked.
89015fae107Sandi *
891f3f0262cSandi * removes stale lockfiles
89215fae107Sandi *
893140cfbcdSGerrit Uitslag * @param string $id page id
894140cfbcdSGerrit Uitslag * @return bool page is locked?
8958b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
8968b19906eSAndreas Gohr *
897f3f0262cSandi */
898d868eb89SAndreas Gohrfunction checklock($id)
899d868eb89SAndreas Gohr{
900f3f0262cSandi    global $conf;
901585bf44eSChristopher Smith    /* @var Input $INPUT */
902585bf44eSChristopher Smith    global $INPUT;
903585bf44eSChristopher Smith
904c9b4bd1eSBen Coburn    $lock = wikiLockFN($id);
905f3f0262cSandi
906f3f0262cSandi    //no lockfile
90779e79377SAndreas Gohr    if (!file_exists($lock)) return false;
908f3f0262cSandi
909f3f0262cSandi    //lockfile expired
910f3f0262cSandi    if ((time() - filemtime($lock)) > $conf['locktime']) {
911d8186216SBen Coburn        @unlink($lock);
912f3f0262cSandi        return false;
913f3f0262cSandi    }
914f3f0262cSandi
915f3f0262cSandi    //my own lock
9165f21556dSDamien Regad    [$ip, $session] = sexplode("\n", io_readFile($lock), 2);
91724870174SAndreas Gohr    if ($ip == $INPUT->server->str('REMOTE_USER') || (session_id() && $session === session_id())) {
918f3f0262cSandi        return false;
919f3f0262cSandi    }
920f3f0262cSandi
921f3f0262cSandi    return $ip;
922f3f0262cSandi}
923f3f0262cSandi
924f3f0262cSandi/**
92515fae107Sandi * Lock a page for editing
92615fae107Sandi *
9278b19906eSAndreas Gohr * @param string $id page id to lock
92815fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
929140cfbcdSGerrit Uitslag *
930f3f0262cSandi */
931d868eb89SAndreas Gohrfunction lock($id)
932d868eb89SAndreas Gohr{
933544ed901SDaniel Calviño Sánchez    global $conf;
934585bf44eSChristopher Smith    /* @var Input $INPUT */
935585bf44eSChristopher Smith    global $INPUT;
936544ed901SDaniel Calviño Sánchez
937544ed901SDaniel Calviño Sánchez    if ($conf['locktime'] == 0) {
938544ed901SDaniel Calviño Sánchez        return;
939544ed901SDaniel Calviño Sánchez    }
940544ed901SDaniel Calviño Sánchez
941c9b4bd1eSBen Coburn    $lock = wikiLockFN($id);
942585bf44eSChristopher Smith    if ($INPUT->server->str('REMOTE_USER')) {
943585bf44eSChristopher Smith        io_saveFile($lock, $INPUT->server->str('REMOTE_USER'));
944f3f0262cSandi    } else {
94585fef7e2SAndreas Gohr        io_saveFile($lock, clientIP() . "\n" . session_id());
946f3f0262cSandi    }
947f3f0262cSandi}
948f3f0262cSandi
949f3f0262cSandi/**
95015fae107Sandi * Unlock a page if it was locked by the user
951f3f0262cSandi *
9523272d797SAndreas Gohr * @param string $id page id to unlock
95315fae107Sandi * @return bool true if a lock was removed
9548b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
9558b19906eSAndreas Gohr *
956f3f0262cSandi */
957d868eb89SAndreas Gohrfunction unlock($id)
958d868eb89SAndreas Gohr{
959585bf44eSChristopher Smith    /* @var Input $INPUT */
960585bf44eSChristopher Smith    global $INPUT;
961585bf44eSChristopher Smith
962c9b4bd1eSBen Coburn    $lock = wikiLockFN($id);
96379e79377SAndreas Gohr    if (file_exists($lock)) {
96424870174SAndreas Gohr        @[$ip, $session] = explode("\n", io_readFile($lock));
965c0dd3914SAdaKaleh        if ($ip == $INPUT->server->str('REMOTE_USER') || $session == session_id()) {
966f3f0262cSandi            @unlink($lock);
967f3f0262cSandi            return true;
968f3f0262cSandi        }
969f3f0262cSandi    }
970f3f0262cSandi    return false;
971f3f0262cSandi}
972f3f0262cSandi
973f3f0262cSandi/**
974f3f0262cSandi * convert line ending to unix format
975f3f0262cSandi *
9766db7468bSAndreas Gohr * also makes sure the given text is valid UTF-8
9776db7468bSAndreas Gohr *
9788b19906eSAndreas Gohr * @param string $text
9798b19906eSAndreas Gohr * @return string
98015fae107Sandi * @see    formText() for 2crlf conversion
98115fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
982140cfbcdSGerrit Uitslag *
983f3f0262cSandi */
984d868eb89SAndreas Gohrfunction cleanText($text)
985d868eb89SAndreas Gohr{
986f3f0262cSandi    $text = preg_replace("/(\015\012)|(\015)/", "\012", $text);
9876db7468bSAndreas Gohr
9886db7468bSAndreas Gohr    // if the text is not valid UTF-8 we simply assume latin1
9896db7468bSAndreas Gohr    // this won't break any worse than it breaks with the wrong encoding
9906db7468bSAndreas Gohr    // but might actually fix the problem in many cases
99153c68e5cSAndreas Gohr    if (!Clean::isUtf8($text)) $text = Conversion::fromLatin1($text);
9926db7468bSAndreas Gohr
993f3f0262cSandi    return $text;
994f3f0262cSandi}
995f3f0262cSandi
996f3f0262cSandi/**
997f3f0262cSandi * Prepares text for print in Webforms by encoding special chars.
998f3f0262cSandi * It also converts line endings to Windows format which is
999f3f0262cSandi * pseudo standard for webforms.
1000f3f0262cSandi *
10018b19906eSAndreas Gohr * @param string $text
10028b19906eSAndreas Gohr * @return string
100315fae107Sandi * @see    cleanText() for 2unix conversion
100415fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
1005140cfbcdSGerrit Uitslag *
1006f3f0262cSandi */
1007d868eb89SAndreas Gohrfunction formText($text)
1008d868eb89SAndreas Gohr{
1009a46a37efSAndreas Gohr    $text = str_replace("\012", "\015\012", $text ?? '');
1010f3f0262cSandi    return htmlspecialchars($text);
1011f3f0262cSandi}
1012f3f0262cSandi
1013f3f0262cSandi/**
101415fae107Sandi * Returns the specified local text in raw format
101515fae107Sandi *
1016140cfbcdSGerrit Uitslag * @param string $id page id
1017140cfbcdSGerrit Uitslag * @param string $ext extension of file being read, default 'txt'
1018140cfbcdSGerrit Uitslag * @return string
10198b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
10208b19906eSAndreas Gohr *
1021f3f0262cSandi */
1022d868eb89SAndreas Gohrfunction rawLocale($id, $ext = 'txt')
1023d868eb89SAndreas Gohr{
10242adaf2b8SAndreas Gohr    return io_readFile(localeFN($id, $ext));
1025f3f0262cSandi}
1026f3f0262cSandi
1027f3f0262cSandi/**
1028f3f0262cSandi * Returns the raw WikiText
102915fae107Sandi *
1030140cfbcdSGerrit Uitslag * @param string $id page id
1031e0c26282SGerrit Uitslag * @param string|int $rev timestamp when a revision of wikitext is desired
1032140cfbcdSGerrit Uitslag * @return string
10338b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
10348b19906eSAndreas Gohr *
1035f3f0262cSandi */
1036d868eb89SAndreas Gohrfunction rawWiki($id, $rev = '')
1037d868eb89SAndreas Gohr{
1038cc7d0c94SBen Coburn    return io_readWikiPage(wikiFN($id, $rev), $id, $rev);
1039f3f0262cSandi}
1040f3f0262cSandi
1041f3f0262cSandi/**
10427146cee2SAndreas Gohr * Returns the pagetemplate contents for the ID's namespace
10437146cee2SAndreas Gohr *
10447b84afa2SAndreas Gohr * @triggers COMMON_PAGETPL_LOAD
1045140cfbcdSGerrit Uitslag * @param string $id the id of the page to be created
1046140cfbcdSGerrit Uitslag * @return string parsed pagetemplate content
10478b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
10488b19906eSAndreas Gohr *
10497146cee2SAndreas Gohr */
1050d868eb89SAndreas Gohrfunction pageTemplate($id)
1051d868eb89SAndreas Gohr{
1052a15ce62dSEsther Brunner    global $conf;
1053e29549feSAndreas Gohr
1054fe17917eSAdrian Lang    if (is_array($id)) $id = $id[0];
1055e29549feSAndreas Gohr
10567b84afa2SAndreas Gohr    // prepare initial event data
105724870174SAndreas Gohr    $data = [
10587b84afa2SAndreas Gohr        'id' => $id, // the id of the page to be created
10597b84afa2SAndreas Gohr        'tpl' => '', // the text used as template
10607b84afa2SAndreas Gohr        'tplfile' => '', // the file above text was/should be loaded from
106124870174SAndreas Gohr        'doreplace' => true,
106224870174SAndreas Gohr    ];
10637b84afa2SAndreas Gohr
1064e1d9dcc8SAndreas Gohr    $evt = new Event('COMMON_PAGETPL_LOAD', $data);
10657b84afa2SAndreas Gohr    if ($evt->advise_before(true)) {
10667b84afa2SAndreas Gohr        // the before event might have loaded the content already
10677b84afa2SAndreas Gohr        if (empty($data['tpl'])) {
10687b84afa2SAndreas Gohr            // if the before event did not set a template file, try to find one
10697b84afa2SAndreas Gohr            if (empty($data['tplfile'])) {
1070fe17917eSAdrian Lang                $path = dirname(wikiFN($id));
107179e79377SAndreas Gohr                if (file_exists($path . '/_template.txt')) {
10727b84afa2SAndreas Gohr                    $data['tplfile'] = $path . '/_template.txt';
1073e29549feSAndreas Gohr                } else {
1074e29549feSAndreas Gohr                    // search upper namespaces for templates
1075e29549feSAndreas Gohr                    $len = strlen(rtrim($conf['datadir'], '/'));
1076e29549feSAndreas Gohr                    while (strlen($path) >= $len) {
107779e79377SAndreas Gohr                        if (file_exists($path . '/__template.txt')) {
10787b84afa2SAndreas Gohr                            $data['tplfile'] = $path . '/__template.txt';
1079e29549feSAndreas Gohr                            break;
1080e29549feSAndreas Gohr                        }
1081e29549feSAndreas Gohr                        $path = substr($path, 0, strrpos($path, '/'));
1082e29549feSAndreas Gohr                    }
1083e29549feSAndreas Gohr                }
10847b84afa2SAndreas Gohr            }
10857b84afa2SAndreas Gohr            // load the content
10863d7ac595SMichael Hamann            $data['tpl'] = io_readFile($data['tplfile']);
10877b84afa2SAndreas Gohr        }
1088a1bbd05bSMichael Hamann        if ($data['doreplace']) parsePageTemplate($data);
10897b84afa2SAndreas Gohr    }
10907b84afa2SAndreas Gohr    $evt->advise_after();
10917b84afa2SAndreas Gohr    unset($evt);
10927b84afa2SAndreas Gohr
1093fe17917eSAdrian Lang    return $data['tpl'];
10942b1223ecSAdrian Lang}
10952b1223ecSAdrian Lang
10962b1223ecSAdrian Lang/**
10972b1223ecSAdrian Lang * Performs common page template replacements
10987b84afa2SAndreas Gohr * This works on data from COMMON_PAGETPL_LOAD
10992b1223ecSAdrian Lang *
1100140cfbcdSGerrit Uitslag * @param array $data array with event data
1101140cfbcdSGerrit Uitslag * @return string
11028b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
11038b19906eSAndreas Gohr *
11042b1223ecSAdrian Lang */
1105d868eb89SAndreas Gohrfunction parsePageTemplate(&$data)
1106d868eb89SAndreas Gohr{
11073272d797SAndreas Gohr    /**
11083272d797SAndreas Gohr     * @var string $id the id of the page to be created
11093272d797SAndreas Gohr     * @var string $tpl the text used as template
11103272d797SAndreas Gohr     * @var string $tplfile the file above text was/should be loaded from
11113272d797SAndreas Gohr     * @var bool $doreplace should wildcard replacements be done on the text?
11123272d797SAndreas Gohr     */
1113fe17917eSAdrian Lang    extract($data);
1114fe17917eSAdrian Lang
1115b856f7dfSAdrian Lang    global $USERINFO;
1116bce53b1fSAdrian Lang    global $conf;
1117585bf44eSChristopher Smith    /* @var Input $INPUT */
1118585bf44eSChristopher Smith    global $INPUT;
1119e29549feSAndreas Gohr
1120e29549feSAndreas Gohr    // replace placeholders
112126ece5a7SAndreas Gohr    $file = noNS($id);
112237c1acbdSAdrian Lang    $page = strtr($file, $conf['sepchar'], ' ');
112326ece5a7SAndreas Gohr
11243272d797SAndreas Gohr    $tpl = str_replace(
112524870174SAndreas Gohr        [
112626ece5a7SAndreas Gohr            '@ID@',
112726ece5a7SAndreas Gohr            '@NS@',
11288a7bcf66SShota Miyazaki            '@CURNS@',
1129a3db0ab0SSimon Lees            '@!CURNS@',
1130a3db0ab0SSimon Lees            '@!!CURNS@',
1131a3db0ab0SSimon Lees            '@!CURNS!@',
113226ece5a7SAndreas Gohr            '@FILE@',
113326ece5a7SAndreas Gohr            '@!FILE@',
113426ece5a7SAndreas Gohr            '@!FILE!@',
113526ece5a7SAndreas Gohr            '@PAGE@',
113626ece5a7SAndreas Gohr            '@!PAGE@',
113726ece5a7SAndreas Gohr            '@!!PAGE@',
113826ece5a7SAndreas Gohr            '@!PAGE!@',
113926ece5a7SAndreas Gohr            '@USER@',
114026ece5a7SAndreas Gohr            '@NAME@',
114126ece5a7SAndreas Gohr            '@MAIL@',
114224870174SAndreas Gohr            '@DATE@'
114324870174SAndreas Gohr        ],
114424870174SAndreas Gohr        [
114526ece5a7SAndreas Gohr            $id,
114626ece5a7SAndreas Gohr            getNS($id),
11478a7bcf66SShota Miyazaki            curNS($id),
114824870174SAndreas Gohr            PhpString::ucfirst(curNS($id)),
114924870174SAndreas Gohr            PhpString::ucwords(curNS($id)),
115024870174SAndreas Gohr            PhpString::strtoupper(curNS($id)),
115126ece5a7SAndreas Gohr            $file,
115224870174SAndreas Gohr            PhpString::ucfirst($file),
115324870174SAndreas Gohr            PhpString::strtoupper($file),
115426ece5a7SAndreas Gohr            $page,
115524870174SAndreas Gohr            PhpString::ucfirst($page),
115624870174SAndreas Gohr            PhpString::ucwords($page),
115724870174SAndreas Gohr            PhpString::strtoupper($page),
1158585bf44eSChristopher Smith            $INPUT->server->str('REMOTE_USER'),
11593e9ae63dSPhy            $USERINFO ? $USERINFO['name'] : '',
11603e9ae63dSPhy            $USERINFO ? $USERINFO['mail'] : '',
116124870174SAndreas Gohr            $conf['dformat']
116224870174SAndreas Gohr        ],
116324870174SAndreas Gohr        $tpl
11643272d797SAndreas Gohr    );
116526ece5a7SAndreas Gohr
11667d644fc8SAndreas Gohr    // we need the callback to work around strftime's char limit
1167bad6fc0dSAndreas Gohr    $tpl = preg_replace_callback(
1168bad6fc0dSAndreas Gohr        '/%./',
116924870174SAndreas Gohr        static fn($m) => dformat(null, $m[0]),
1170bad6fc0dSAndreas Gohr        $tpl
1171bad6fc0dSAndreas Gohr    );
1172d535a2e9Sstretchyboy    $data['tpl'] = $tpl;
1173a15ce62dSEsther Brunner    return $tpl;
11747146cee2SAndreas Gohr}
11757146cee2SAndreas Gohr
11767146cee2SAndreas Gohr/**
117715fae107Sandi * Returns the raw Wiki Text in three slices.
117815fae107Sandi *
117915fae107Sandi * The range parameter needs to have the form "from-to"
118015cfe303Sandi * and gives the range of the section in bytes - no
118115cfe303Sandi * UTF-8 awareness is needed.
1182f3f0262cSandi * The returned order is prefix, section and suffix.
118315fae107Sandi *
1184140cfbcdSGerrit Uitslag * @param string $range in form "from-to"
1185140cfbcdSGerrit Uitslag * @param string $id page id
1186140cfbcdSGerrit Uitslag * @param string $rev optional, the revision timestamp
118742ea7f44SGerrit Uitslag * @return string[] with three slices
11888b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
11898b19906eSAndreas Gohr *
1190f3f0262cSandi */
1191d868eb89SAndreas Gohrfunction rawWikiSlices($range, $id, $rev = '')
1192d868eb89SAndreas Gohr{
1193cc7d0c94SBen Coburn    $text = io_readWikiPage(wikiFN($id, $rev), $id, $rev);
1194f3f0262cSandi
119580fcb268SAdrian Lang    // Parse range
119624870174SAndreas Gohr    [$from, $to] = sexplode('-', $range, 2);
119780fcb268SAdrian Lang    // Make range zero-based, use defaults if marker is missing
119824870174SAndreas Gohr    $from = $from ? $from - 1 : (0);
119924870174SAndreas Gohr    $to = $to ? $to - 1 : (strlen($text));
120080fcb268SAdrian Lang
120124870174SAndreas Gohr    $slices = [];
120280fcb268SAdrian Lang    $slices[0] = substr($text, 0, $from);
120380fcb268SAdrian Lang    $slices[1] = substr($text, $from, $to - $from);
120415cfe303Sandi    $slices[2] = substr($text, $to);
1205f3f0262cSandi    return $slices;
1206f3f0262cSandi}
1207f3f0262cSandi
1208f3f0262cSandi/**
120915fae107Sandi * Joins wiki text slices
121015fae107Sandi *
121180fcb268SAdrian Lang * function to join the text slices.
1212f3f0262cSandi * When the pretty parameter is set to true it adds additional empty
1213f3f0262cSandi * lines between sections if needed (used on saving).
121415fae107Sandi *
1215140cfbcdSGerrit Uitslag * @param string $pre prefix
1216140cfbcdSGerrit Uitslag * @param string $text text in the middle
1217140cfbcdSGerrit Uitslag * @param string $suf suffix
1218140cfbcdSGerrit Uitslag * @param bool $pretty add additional empty lines between sections
1219140cfbcdSGerrit Uitslag * @return string
12208b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
12218b19906eSAndreas Gohr *
1222f3f0262cSandi */
1223d868eb89SAndreas Gohrfunction con($pre, $text, $suf, $pretty = false)
1224d868eb89SAndreas Gohr{
1225f3f0262cSandi    if ($pretty) {
12267d34963bSAndreas Gohr        if (
12276c16a3a9Sfiwswe            $pre !== '' && !str_ends_with($pre, "\n") &&
12286c16a3a9Sfiwswe            !str_starts_with($text, "\n")
12293272d797SAndreas Gohr        ) {
123080fcb268SAdrian Lang            $pre .= "\n";
123180fcb268SAdrian Lang        }
12327d34963bSAndreas Gohr        if (
12336c16a3a9Sfiwswe            $suf !== '' && !str_ends_with($text, "\n") &&
12346c16a3a9Sfiwswe            !str_starts_with($suf, "\n")
12353272d797SAndreas Gohr        ) {
123680fcb268SAdrian Lang            $text .= "\n";
123780fcb268SAdrian Lang        }
1238f3f0262cSandi    }
1239f3f0262cSandi
1240f3f0262cSandi    return $pre . $text . $suf;
1241f3f0262cSandi}
1242f3f0262cSandi
1243f3f0262cSandi/**
1244b24d9195SAndreas Gohr * Checks if the current page version is newer than the last entry in the page's
1245b24d9195SAndreas Gohr * changelog. If so, we assume it has been an external edit and we create an
1246b24d9195SAndreas Gohr * attic copy and add a proper changelog line.
1247b24d9195SAndreas Gohr *
1248b24d9195SAndreas Gohr * This check is only executed when the page is about to be saved again from the
12498b19906eSAndreas Gohr * wiki, triggered in @param string $id the page ID
12508b19906eSAndreas Gohr * @see saveWikiText()
1251b24d9195SAndreas Gohr *
125269f9b481SSatoshi Sahara * @deprecated 2021-11-28
1253b24d9195SAndreas Gohr */
1254d868eb89SAndreas Gohrfunction detectExternalEdit($id)
1255d868eb89SAndreas Gohr{
125679a2d784SGerrit Uitslag    dbg_deprecated(PageFile::class . '::detectExternalEdit()');
1257b24e9c4aSSatoshi Sahara    (new PageFile($id))->detectExternalEdit();
1258b24d9195SAndreas Gohr}
1259b24d9195SAndreas Gohr
1260b24d9195SAndreas Gohr/**
1261a701424fSBen Coburn * Saves a wikitext by calling io_writeWikiPage.
1262a701424fSBen Coburn * Also directs changelog and attic updates.
126315fae107Sandi *
1264140cfbcdSGerrit Uitslag * @param string $id page id
1265140cfbcdSGerrit Uitslag * @param string $text wikitext being saved
1266140cfbcdSGerrit Uitslag * @param string $summary summary of text update
1267140cfbcdSGerrit Uitslag * @param bool $minor mark this saved version as minor update
12688b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
12698b19906eSAndreas Gohr * @author Ben Coburn <btcoburn@silicodon.net>
12708b19906eSAndreas Gohr *
1271f3f0262cSandi */
1272d868eb89SAndreas Gohrfunction saveWikiText($id, $text, $summary, $minor = false)
1273d868eb89SAndreas Gohr{
1274585bf44eSChristopher Smith
1275b24e9c4aSSatoshi Sahara    // get COMMON_WIKIPAGE_SAVE event data
1276b24e9c4aSSatoshi Sahara    $data = (new PageFile($id))->saveWikiText($text, $summary, $minor);
1277a577fbc2SAndreas Gohr    if (!$data) return; // save was cancelled (for no changes or by a plugin)
1278ac3ed4afSGerrit Uitslag
127926a0801fSAndreas Gohr    // send notify mails
128024870174SAndreas Gohr    ['oldRevision' => $rev, 'newRevision' => $new_rev, 'summary' => $summary] = $data;
12813b813d43SSatoshi Sahara    notify($id, 'admin', $rev, $summary, $minor, $new_rev);
12823b813d43SSatoshi Sahara    notify($id, 'subscribers', $rev, $summary, $minor, $new_rev);
1283f3f0262cSandi
12842eccbdaaSGina Haeussge    // if useheading is enabled, purge the cache of all linking pages
1285fe9ec250SChris Smith    if (useHeading('content')) {
128607ff0babSMichael Hamann        $pages = ft_backlinks($id, true);
12872eccbdaaSGina Haeussge        foreach ($pages as $page) {
12880db5771eSMichael Große            $cache = new CacheRenderer($page, wikiFN($page), 'xhtml');
12892eccbdaaSGina Haeussge            $cache->removeCache();
12902eccbdaaSGina Haeussge        }
12912eccbdaaSGina Haeussge    }
1292f3f0262cSandi}
1293f3f0262cSandi
1294f3f0262cSandi/**
1295d5824ab9SSatoshi Sahara * moves the current version to the attic and returns its revision date
129615fae107Sandi *
1297140cfbcdSGerrit Uitslag * @param string $id page id
1298140cfbcdSGerrit Uitslag * @return int|string revision timestamp
12998b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
13008b19906eSAndreas Gohr *
130169f9b481SSatoshi Sahara * @deprecated 2021-11-28
1302f3f0262cSandi */
1303d868eb89SAndreas Gohrfunction saveOldRevision($id)
1304d868eb89SAndreas Gohr{
130579a2d784SGerrit Uitslag    dbg_deprecated(PageFile::class . '::saveOldRevision()');
1306b24e9c4aSSatoshi Sahara    return (new PageFile($id))->saveOldRevision();
1307f3f0262cSandi}
1308f3f0262cSandi
1309f3f0262cSandi/**
1310fde10de4SAdrian Lang * Sends a notify mail on page change or registration
131126a0801fSAndreas Gohr *
131226a0801fSAndreas Gohr * @param string $id The changed page
1313fde10de4SAdrian Lang * @param string $who Who to notify (admin|subscribers|register)
13143272d797SAndreas Gohr * @param int|string $rev Old page revision
131526a0801fSAndreas Gohr * @param string $summary What changed
131690033e9dSAndreas Gohr * @param boolean $minor Is this a minor edit?
131742ea7f44SGerrit Uitslag * @param string[] $replace Additional string substitutions, @KEY@ to be replaced by value
131883734cddSPhy * @param int|string $current_rev New page revision
13193272d797SAndreas Gohr * @return bool
1320140cfbcdSGerrit Uitslag *
132115fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
1322f3f0262cSandi */
1323d868eb89SAndreas Gohrfunction notify($id, $who, $rev = '', $summary = '', $minor = false, $replace = [], $current_rev = false)
1324d868eb89SAndreas Gohr{
1325f3f0262cSandi    global $conf;
1326585bf44eSChristopher Smith    /* @var Input $INPUT */
1327585bf44eSChristopher Smith    global $INPUT;
1328b158d625SSteven Danz
13296df843eeSAndreas Gohr    // decide if there is something to do, eg. whom to mail
133026a0801fSAndreas Gohr    if ($who == 'admin') {
13313272d797SAndreas Gohr        if (empty($conf['notify'])) return false; //notify enabled?
13322ed38036SAndreas Gohr        $tpl = 'mailtext';
133326a0801fSAndreas Gohr        $to = $conf['notify'];
133426a0801fSAndreas Gohr    } elseif ($who == 'subscribers') {
133584c1127cSAndreas Gohr        if (!actionOK('subscribe')) return false; //subscribers enabled?
1336585bf44eSChristopher Smith        if ($conf['useacl'] && $INPUT->server->str('REMOTE_USER') && $minor) return false; //skip minors
133724870174SAndreas Gohr        $data = ['id' => $id, 'addresslist' => '', 'self' => false, 'replacements' => $replace];
1338cbb44eabSAndreas Gohr        Event::createAndTrigger(
1339dccd6b2bSAndreas Gohr            'COMMON_NOTIFY_ADDRESSLIST',
1340dccd6b2bSAndreas Gohr            $data,
134124870174SAndreas Gohr            [new SubscriberManager(), 'notifyAddresses']
13423272d797SAndreas Gohr        );
13432ed38036SAndreas Gohr        $to = $data['addresslist'];
13442ed38036SAndreas Gohr        if (empty($to)) return false;
13452ed38036SAndreas Gohr        $tpl = 'subscr_single';
134626a0801fSAndreas Gohr    } else {
13473272d797SAndreas Gohr        return false; //just to be safe
134826a0801fSAndreas Gohr    }
134926a0801fSAndreas Gohr
13506df843eeSAndreas Gohr    // prepare content
1351704a815fSMichael Große    $subscription = new PageSubscriptionSender();
135283734cddSPhy    return $subscription->sendPageDiff($to, $tpl, $id, $rev, $summary, $current_rev);
1353f3f0262cSandi}
13542ed38036SAndreas Gohr
135515fae107Sandi/**
135671f7bde7SAndreas Gohr * extracts the query from a search engine referrer
135715fae107Sandi *
13588b19906eSAndreas Gohr * @return array|string
135971f7bde7SAndreas Gohr * @author Todd Augsburger <todd@rollerorgans.com>
1360140cfbcdSGerrit Uitslag *
13618b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
1362f3f0262cSandi */
1363d868eb89SAndreas Gohrfunction getGoogleQuery()
1364d868eb89SAndreas Gohr{
1365585bf44eSChristopher Smith    /* @var Input $INPUT */
1366585bf44eSChristopher Smith    global $INPUT;
1367585bf44eSChristopher Smith
1368585bf44eSChristopher Smith    if (!$INPUT->server->has('HTTP_REFERER')) {
1369c66972f2SAdrian Lang        return '';
1370c66972f2SAdrian Lang    }
1371585bf44eSChristopher Smith    $url = parse_url($INPUT->server->str('HTTP_REFERER'));
1372f3f0262cSandi
1373079b3ac1SAndreas Gohr    // only handle common SEs
1374c7875401SJyoti S    if (!array_key_exists('host', $url)) return '';
1375079b3ac1SAndreas Gohr    if (!preg_match('/(google|bing|yahoo|ask|duckduckgo|babylon|aol|yandex)/', $url['host'])) return '';
1376e4d8a516SKazutaka Miyasaka
137724870174SAndreas Gohr    $query = [];
1378181adffeSJulian Jeggle    if (!array_key_exists('query', $url)) return '';
1379f3f0262cSandi    parse_str($url['query'], $query);
1380e4d8a516SKazutaka Miyasaka
1381c66972f2SAdrian Lang    $q = '';
1382079b3ac1SAndreas Gohr    if (isset($query['q'])) {
1383079b3ac1SAndreas Gohr        $q = $query['q'];
1384079b3ac1SAndreas Gohr    } elseif (isset($query['p'])) {
1385079b3ac1SAndreas Gohr        $q = $query['p'];
1386079b3ac1SAndreas Gohr    } elseif (isset($query['query'])) {
1387079b3ac1SAndreas Gohr        $q = $query['query'];
1388079b3ac1SAndreas Gohr    }
1389079b3ac1SAndreas Gohr    $q = trim($q);
1390f3f0262cSandi
1391079b3ac1SAndreas Gohr    if (!$q) return '';
1392c7dc833bSPhy    // ignore if query includes a full URL
1393c7dc833bSPhy    if (strpos($q, '//') !== false) return '';
13946531ab03SAndreas Gohr    $q = preg_split('/[\s\'"\\\\`()\]\[?:!\.{};,#+*<>\\/]+/', $q, -1, PREG_SPLIT_NO_EMPTY);
1395f93b3b50SAndreas Gohr    return $q;
1396f3f0262cSandi}
1397f3f0262cSandi
1398f3f0262cSandi/**
1399f3f0262cSandi * Return the human readable size of a file
1400f3f0262cSandi *
1401f3f0262cSandi * @param int $size A file size
1402f3f0262cSandi * @param int $dec A number of decimal places
140374160ca1SGerrit Uitslag * @return string human readable size
1404140cfbcdSGerrit Uitslag *
1405f3f0262cSandi * @author      Martin Benjamin <b.martin@cybernet.ch>
1406f3f0262cSandi * @author      Aidan Lister <aidan@php.net>
1407f3f0262cSandi * @version     1.0.0
1408f3f0262cSandi */
1409d868eb89SAndreas Gohrfunction filesize_h($size, $dec = 1)
1410d868eb89SAndreas Gohr{
141124870174SAndreas Gohr    $sizes = ['B', 'KB', 'MB', 'GB'];
1412f3f0262cSandi    $count = count($sizes);
1413f3f0262cSandi    $i = 0;
1414f3f0262cSandi
1415f3f0262cSandi    while ($size >= 1024 && ($i < $count - 1)) {
1416f3f0262cSandi        $size /= 1024;
1417f3f0262cSandi        $i++;
1418f3f0262cSandi    }
1419f3f0262cSandi
1420ef08383eSAndreas Gohr    return round($size, $dec) . "\xC2\xA0" . $sizes[$i]; //non-breaking space
1421f3f0262cSandi}
1422f3f0262cSandi
142315fae107Sandi/**
1424c57e365eSAndreas Gohr * Return the given timestamp as human readable, fuzzy age
1425c57e365eSAndreas Gohr *
1426140cfbcdSGerrit Uitslag * @param int $dt timestamp
1427140cfbcdSGerrit Uitslag * @return string
14288b19906eSAndreas Gohr * @author Andreas Gohr <gohr@cosmocode.de>
14298b19906eSAndreas Gohr *
1430c57e365eSAndreas Gohr */
1431d868eb89SAndreas Gohrfunction datetime_h($dt)
1432d868eb89SAndreas Gohr{
1433c57e365eSAndreas Gohr    global $lang;
1434c57e365eSAndreas Gohr
1435c57e365eSAndreas Gohr    $ago = time() - $dt;
1436c57e365eSAndreas Gohr    if ($ago > 24 * 60 * 60 * 30 * 12 * 2) {
1437c57e365eSAndreas Gohr        return sprintf($lang['years'], round($ago / (24 * 60 * 60 * 30 * 12)));
1438c57e365eSAndreas Gohr    }
1439c57e365eSAndreas Gohr    if ($ago > 24 * 60 * 60 * 30 * 2) {
1440c57e365eSAndreas Gohr        return sprintf($lang['months'], round($ago / (24 * 60 * 60 * 30)));
1441c57e365eSAndreas Gohr    }
1442c57e365eSAndreas Gohr    if ($ago > 24 * 60 * 60 * 7 * 2) {
1443c57e365eSAndreas Gohr        return sprintf($lang['weeks'], round($ago / (24 * 60 * 60 * 7)));
1444c57e365eSAndreas Gohr    }
1445c57e365eSAndreas Gohr    if ($ago > 24 * 60 * 60 * 2) {
1446c57e365eSAndreas Gohr        return sprintf($lang['days'], round($ago / (24 * 60 * 60)));
1447c57e365eSAndreas Gohr    }
1448c57e365eSAndreas Gohr    if ($ago > 60 * 60 * 2) {
1449c57e365eSAndreas Gohr        return sprintf($lang['hours'], round($ago / (60 * 60)));
1450c57e365eSAndreas Gohr    }
1451c57e365eSAndreas Gohr    if ($ago > 60 * 2) {
1452c57e365eSAndreas Gohr        return sprintf($lang['minutes'], round($ago / (60)));
1453c57e365eSAndreas Gohr    }
1454c57e365eSAndreas Gohr    return sprintf($lang['seconds'], $ago);
1455c57e365eSAndreas Gohr}
1456c57e365eSAndreas Gohr
1457c57e365eSAndreas Gohr/**
1458f2263577SAndreas Gohr * Wraps around strftime but provides support for fuzzy dates
1459f2263577SAndreas Gohr *
1460f2263577SAndreas Gohr * The format default to $conf['dformat']. It is passed to
1461f2263577SAndreas Gohr * strftime - %f can be used to get the value from datetime_h()
1462f2263577SAndreas Gohr *
1463140cfbcdSGerrit Uitslag * @param int|null $dt timestamp when given, null will take current timestamp
1464140cfbcdSGerrit Uitslag * @param string $format empty default to $conf['dformat'], or provide format as recognized by strftime()
1465140cfbcdSGerrit Uitslag * @return string
14668b19906eSAndreas Gohr * @author Andreas Gohr <gohr@cosmocode.de>
14678b19906eSAndreas Gohr *
14688b19906eSAndreas Gohr * @see datetime_h
1469f2263577SAndreas Gohr */
1470d868eb89SAndreas Gohrfunction dformat($dt = null, $format = '')
1471d868eb89SAndreas Gohr{
1472f2263577SAndreas Gohr    global $conf;
1473f2263577SAndreas Gohr
1474f2263577SAndreas Gohr    if (is_null($dt)) $dt = time();
1475f2263577SAndreas Gohr    $dt = (int)$dt;
1476f2263577SAndreas Gohr    if (!$format) $format = $conf['dformat'];
1477f2263577SAndreas Gohr
1478f2263577SAndreas Gohr    $format = str_replace('%f', datetime_h($dt), $format);
1479b3894732Ssplitbrain    return strftime($format, $dt);
1480f2263577SAndreas Gohr}
1481f2263577SAndreas Gohr
1482f2263577SAndreas Gohr/**
1483c4f79b71SMichael Hamann * Formats a timestamp as ISO 8601 date
1484c4f79b71SMichael Hamann *
14858b19906eSAndreas Gohr * @param int $int_date current date in UNIX timestamp
14868b19906eSAndreas Gohr * @return string
1487c4f79b71SMichael Hamann * @author <ungu at terong dot com>
148859752844SAnders Sandblad * @link http://php.net/manual/en/function.date.php#54072
1489140cfbcdSGerrit Uitslag *
1490c4f79b71SMichael Hamann */
1491d868eb89SAndreas Gohrfunction date_iso8601($int_date)
1492d868eb89SAndreas Gohr{
1493c4f79b71SMichael Hamann    $date_mod = date('Y-m-d\TH:i:s', $int_date);
1494c4f79b71SMichael Hamann    $pre_timezone = date('O', $int_date);
1495c4f79b71SMichael Hamann    $time_zone = substr($pre_timezone, 0, 3) . ":" . substr($pre_timezone, 3, 2);
1496c4f79b71SMichael Hamann    $date_mod .= $time_zone;
1497c4f79b71SMichael Hamann    return $date_mod;
1498c4f79b71SMichael Hamann}
1499c4f79b71SMichael Hamann
1500c4f79b71SMichael Hamann/**
150100a7b5adSEsther Brunner * return an obfuscated email address in line with $conf['mailguard'] setting
150200a7b5adSEsther Brunner *
15038b19906eSAndreas Gohr * @param string $email email address
15048b19906eSAndreas Gohr * @return string
150500a7b5adSEsther Brunner * @author Harry Fuecks <hfuecks@gmail.com>
150600a7b5adSEsther Brunner * @author Christopher Smith <chris@jalakai.co.uk>
1507140cfbcdSGerrit Uitslag *
150800a7b5adSEsther Brunner */
1509d868eb89SAndreas Gohrfunction obfuscate($email)
1510d868eb89SAndreas Gohr{
151100a7b5adSEsther Brunner    global $conf;
151200a7b5adSEsther Brunner
151300a7b5adSEsther Brunner    switch ($conf['mailguard']) {
151400a7b5adSEsther Brunner        case 'visible':
151524870174SAndreas Gohr            $obfuscate = ['@' => ' [at] ', '.' => ' [dot] ', '-' => ' [dash] '];
151600a7b5adSEsther Brunner            return strtr($email, $obfuscate);
151700a7b5adSEsther Brunner
151800a7b5adSEsther Brunner        case 'hex':
151924870174SAndreas Gohr            return Conversion::toHtml($email, true);
152000a7b5adSEsther Brunner
152100a7b5adSEsther Brunner        case 'none':
152200a7b5adSEsther Brunner        default:
152300a7b5adSEsther Brunner            return $email;
152400a7b5adSEsther Brunner    }
152500a7b5adSEsther Brunner}
152600a7b5adSEsther Brunner
152700a7b5adSEsther Brunner/**
152889541d4bSAndreas Gohr * Removes quoting backslashes
152989541d4bSAndreas Gohr *
1530140cfbcdSGerrit Uitslag * @param string $string
1531140cfbcdSGerrit Uitslag * @param string $char backslashed character
1532140cfbcdSGerrit Uitslag * @return string
15338b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
15348b19906eSAndreas Gohr *
153589541d4bSAndreas Gohr */
1536d868eb89SAndreas Gohrfunction unslash($string, $char = "'")
1537d868eb89SAndreas Gohr{
153889541d4bSAndreas Gohr    return str_replace('\\' . $char, $char, $string);
153989541d4bSAndreas Gohr}
154089541d4bSAndreas Gohr
154173038c47SAndreas Gohr/**
154273038c47SAndreas Gohr * Convert php.ini shorthands to byte
154373038c47SAndreas Gohr *
1544a81f3d99SAndreas Gohr * On 32 bit systems values >= 2GB will fail!
1545140cfbcdSGerrit Uitslag *
1546a81f3d99SAndreas Gohr * -1 (infinite size) will be reported as -1
1547a81f3d99SAndreas Gohr *
1548a81f3d99SAndreas Gohr * @link   https://www.php.net/manual/en/faq.using.php#faq.using.shorthandbytes
1549a81f3d99SAndreas Gohr * @param string $value PHP size shorthand
1550a81f3d99SAndreas Gohr * @return int
155173038c47SAndreas Gohr */
1552d868eb89SAndreas Gohrfunction php_to_byte($value)
1553d868eb89SAndreas Gohr{
1554f5c0c80bSAndreas Gohr    switch (strtoupper(substr($value, -1))) {
155573038c47SAndreas Gohr        case 'G':
155624870174SAndreas Gohr            $ret = (int)substr($value, 0, -1) * 1024 * 1024 * 1024;
155773038c47SAndreas Gohr            break;
155873038c47SAndreas Gohr        case 'M':
155924870174SAndreas Gohr            $ret = (int)substr($value, 0, -1) * 1024 * 1024;
1560a81f3d99SAndreas Gohr            break;
156173038c47SAndreas Gohr        case 'K':
156224870174SAndreas Gohr            $ret = (int)substr($value, 0, -1) * 1024;
156373038c47SAndreas Gohr            break;
15649eeeb775SAndreas Gohr        default:
156524870174SAndreas Gohr            $ret = (int)$value;
156649cbd23eSOtto Vainio            break;
156773038c47SAndreas Gohr    }
156873038c47SAndreas Gohr    return $ret;
156973038c47SAndreas Gohr}
157073038c47SAndreas Gohr
1571546d3a99SAndreas Gohr/**
1572546d3a99SAndreas Gohr * Wrapper around preg_quote adding the default delimiter
1573140cfbcdSGerrit Uitslag *
1574140cfbcdSGerrit Uitslag * @param string $string
1575140cfbcdSGerrit Uitslag * @return string
1576546d3a99SAndreas Gohr */
1577d868eb89SAndreas Gohrfunction preg_quote_cb($string)
1578d868eb89SAndreas Gohr{
1579546d3a99SAndreas Gohr    return preg_quote($string, '/');
1580546d3a99SAndreas Gohr}
158173038c47SAndreas Gohr
1582bd2f6c2fSAndreas Gohr/**
1583bd2f6c2fSAndreas Gohr * Shorten a given string by removing data from the middle
1584bd2f6c2fSAndreas Gohr *
1585c66972f2SAdrian Lang * You can give the string in two parts, the first part $keep
1586bd2f6c2fSAndreas Gohr * will never be shortened. The second part $short will be cut
1587bd2f6c2fSAndreas Gohr * in the middle to shorten but only if at least $min chars are
1588bd2f6c2fSAndreas Gohr * left to display it. Otherwise it will be left off.
1589bd2f6c2fSAndreas Gohr *
1590bd2f6c2fSAndreas Gohr * @param string $keep the part to keep
1591bd2f6c2fSAndreas Gohr * @param string $short the part to shorten
1592bd2f6c2fSAndreas Gohr * @param int $max maximum chars you want for the whole string
1593bd2f6c2fSAndreas Gohr * @param int $min minimum number of chars to have left for middle shortening
1594bd2f6c2fSAndreas Gohr * @param string $char the shortening character to use
15953272d797SAndreas Gohr * @return string
1596bd2f6c2fSAndreas Gohr */
1597d868eb89SAndreas Gohrfunction shorten($keep, $short, $max, $min = 9, $char = '…')
1598d868eb89SAndreas Gohr{
159924870174SAndreas Gohr    $max -= PhpString::strlen($keep);
1600bd2f6c2fSAndreas Gohr    if ($max < $min) return $keep;
160124870174SAndreas Gohr    $len = PhpString::strlen($short);
1602bd2f6c2fSAndreas Gohr    if ($len <= $max) return $keep . $short;
1603bd2f6c2fSAndreas Gohr    $half = floor($max / 2);
16046ce3e5f8SAndreas Gohr    return $keep .
160524870174SAndreas Gohr        PhpString::substr($short, 0, $half - 1) .
16066ce3e5f8SAndreas Gohr        $char .
160724870174SAndreas Gohr        PhpString::substr($short, $len - $half);
1608bd2f6c2fSAndreas Gohr}
1609bd2f6c2fSAndreas Gohr
1610dc58b6f4SAndy Webber/**
1611dc58b6f4SAndy Webber * Return the users real name or e-mail address for use
1612dc58b6f4SAndy Webber * in page footer and recent changes pages
1613dc58b6f4SAndy Webber *
1614b4b6c9a1SGerrit Uitslag * @param string|null $username or null when currently logged-in user should be used
161515f3bc49SGerrit Uitslag * @param bool $textonly true returns only plain text, true allows returning html
1616c0953023SGerrit Uitslag * @return string html or plain text(not escaped) of formatted user name
161715f3bc49SGerrit Uitslag *
1618dc58b6f4SAndy Webber * @author Andy Webber <dokuwiki AT andywebber DOT com>
1619dc58b6f4SAndy Webber */
1620d868eb89SAndreas Gohrfunction editorinfo($username, $textonly = false)
1621d868eb89SAndreas Gohr{
1622cd4635eeSGerrit Uitslag    return userlink($username, $textonly);
1623dc58b6f4SAndy Webber}
1624dc58b6f4SAndy Webber
162560a396c8SGerrit Uitslag/**
162660a396c8SGerrit Uitslag * Returns users realname w/o link
162760a396c8SGerrit Uitslag *
1628f168548cSGerrit Uitslag * @param string|null $username or null when currently logged-in user should be used
162915f3bc49SGerrit Uitslag * @param bool $textonly true returns only plain text, true allows returning html
1630c0953023SGerrit Uitslag * @return string html or plain text(not escaped) of formatted user name
163160a396c8SGerrit Uitslag *
163260a396c8SGerrit Uitslag * @triggers COMMON_USER_LINK
163360a396c8SGerrit Uitslag */
1634d868eb89SAndreas Gohrfunction userlink($username = null, $textonly = false)
1635d868eb89SAndreas Gohr{
163660a396c8SGerrit Uitslag    global $conf, $INFO;
1637e1d9dcc8SAndreas Gohr    /** @var AuthPlugin $auth */
163860a396c8SGerrit Uitslag    global $auth;
163930f6ec4bSGerrit Uitslag    /** @var Input $INPUT */
164030f6ec4bSGerrit Uitslag    global $INPUT;
164160a396c8SGerrit Uitslag
164260a396c8SGerrit Uitslag    // prepare initial event data
164324870174SAndreas Gohr    $data = [
164460a396c8SGerrit Uitslag        'username' => $username, // the unique user name
164560a396c8SGerrit Uitslag        'name' => '',
164624870174SAndreas Gohr        'link' => [
164724870174SAndreas Gohr            //setting 'link' to false disables linking
164860a396c8SGerrit Uitslag            'target' => '',
164960a396c8SGerrit Uitslag            'pre' => '',
165060a396c8SGerrit Uitslag            'suf' => '',
165160a396c8SGerrit Uitslag            'style' => '',
165260a396c8SGerrit Uitslag            'more' => '',
165360a396c8SGerrit Uitslag            'url' => '',
165460a396c8SGerrit Uitslag            'title' => '',
165524870174SAndreas Gohr            'class' => '',
165624870174SAndreas Gohr        ],
16574d5fc927SGerrit Uitslag        'userlink' => '', // formatted user name as will be returned
165824870174SAndreas Gohr        'textonly' => $textonly,
165924870174SAndreas Gohr    ];
166062c8004eSGerrit Uitslag    if ($username === null) {
166130f6ec4bSGerrit Uitslag        $data['username'] = $username = $INPUT->server->str('REMOTE_USER');
166215f3bc49SGerrit Uitslag        if ($textonly) {
166315f3bc49SGerrit Uitslag            $data['name'] = $INFO['userinfo']['name'] . ' (' . $INPUT->server->str('REMOTE_USER') . ')';
166415f3bc49SGerrit Uitslag        } else {
166564159a61SAndreas Gohr            $data['name'] = '<bdi>' . hsc($INFO['userinfo']['name']) . '</bdi> ' .
166664159a61SAndreas Gohr                '(<bdi>' . hsc($INPUT->server->str('REMOTE_USER')) . '</bdi>)';
166760a396c8SGerrit Uitslag        }
166815f3bc49SGerrit Uitslag    }
166960a396c8SGerrit Uitslag
1670e1d9dcc8SAndreas Gohr    $evt = new Event('COMMON_USER_LINK', $data);
167160a396c8SGerrit Uitslag    if ($evt->advise_before(true)) {
167260a396c8SGerrit Uitslag        if (empty($data['name'])) {
16736547cfc7SGerrit Uitslag            if ($auth instanceof AuthPlugin) {
16746547cfc7SGerrit Uitslag                $info = $auth->getUserData($username);
16756547cfc7SGerrit Uitslag            }
167665833968SGerrit Uitslag            if ($conf['showuseras'] != 'loginname' && isset($info) && $info) {
1677dc58b6f4SAndy Webber                switch ($conf['showuseras']) {
1678dc58b6f4SAndy Webber                    case 'username':
16797f081821SGerrit Uitslag                    case 'username_link':
168015f3bc49SGerrit Uitslag                        $data['name'] = $textonly ? $info['name'] : hsc($info['name']);
168160a396c8SGerrit Uitslag                        break;
1682dc58b6f4SAndy Webber                    case 'email':
1683dc58b6f4SAndy Webber                    case 'email_link':
168460a396c8SGerrit Uitslag                        $data['name'] = obfuscate($info['mail']);
168560a396c8SGerrit Uitslag                        break;
1686dc58b6f4SAndy Webber                }
168765833968SGerrit Uitslag            } else {
168865833968SGerrit Uitslag                $data['name'] = $textonly ? $data['username'] : hsc($data['username']);
168960a396c8SGerrit Uitslag            }
169060a396c8SGerrit Uitslag        }
16917f081821SGerrit Uitslag
16927f081821SGerrit Uitslag        /** @var Doku_Renderer_xhtml $xhtml_renderer */
16937f081821SGerrit Uitslag        static $xhtml_renderer = null;
16947f081821SGerrit Uitslag
169515f3bc49SGerrit Uitslag        if (!$data['textonly'] && empty($data['link']['url'])) {
169624870174SAndreas Gohr            if (in_array($conf['showuseras'], ['email_link', 'username_link'])) {
16976547cfc7SGerrit Uitslag                if (!isset($info) && $auth instanceof AuthPlugin) {
16986547cfc7SGerrit Uitslag                    $info = $auth->getUserData($username);
169960a396c8SGerrit Uitslag                }
170060a396c8SGerrit Uitslag                if (isset($info) && $info) {
17017f081821SGerrit Uitslag                    if ($conf['showuseras'] == 'email_link') {
170260a396c8SGerrit Uitslag                        $data['link']['url'] = 'mailto:' . obfuscate($info['mail']);
1703dc58b6f4SAndy Webber                    } else {
17047f081821SGerrit Uitslag                        if (is_null($xhtml_renderer)) {
17057f081821SGerrit Uitslag                            $xhtml_renderer = p_get_renderer('xhtml');
17067f081821SGerrit Uitslag                        }
17078407f251Ssplitbrain                        if ($xhtml_renderer->interwiki === []) {
17087f081821SGerrit Uitslag                            $xhtml_renderer->interwiki = getInterwiki();
17097f081821SGerrit Uitslag                        }
17107f081821SGerrit Uitslag                        $shortcut = 'user';
1711533772e1SGerrit Uitslag                        $exists = null;
17126496c33fSGerrit Uitslag                        $data['link']['url'] = $xhtml_renderer->_resolveInterWiki($shortcut, $username, $exists);
17132a2a43c4SGerrit Uitslag                        $data['link']['class'] .= ' interwiki iw_user';
17146496c33fSGerrit Uitslag                        if ($exists !== null) {
17156496c33fSGerrit Uitslag                            if ($exists) {
17166496c33fSGerrit Uitslag                                $data['link']['class'] .= ' wikilink1';
17176496c33fSGerrit Uitslag                            } else {
17186496c33fSGerrit Uitslag                                $data['link']['class'] .= ' wikilink2';
17196496c33fSGerrit Uitslag                                $data['link']['rel'] = 'nofollow';
17206496c33fSGerrit Uitslag                            }
17216496c33fSGerrit Uitslag                        }
1722dc58b6f4SAndy Webber                    }
1723dc58b6f4SAndy Webber                } else {
172415f3bc49SGerrit Uitslag                    $data['textonly'] = true;
1725dc58b6f4SAndy Webber                }
172660a396c8SGerrit Uitslag            } else {
172715f3bc49SGerrit Uitslag                $data['textonly'] = true;
172860a396c8SGerrit Uitslag            }
172960a396c8SGerrit Uitslag        }
173060a396c8SGerrit Uitslag
173115f3bc49SGerrit Uitslag        if ($data['textonly']) {
17324d5fc927SGerrit Uitslag            $data['userlink'] = $data['name'];
173360a396c8SGerrit Uitslag        } else {
173460a396c8SGerrit Uitslag            $data['link']['name'] = $data['name'];
173560a396c8SGerrit Uitslag            if (is_null($xhtml_renderer)) {
173660a396c8SGerrit Uitslag                $xhtml_renderer = p_get_renderer('xhtml');
173760a396c8SGerrit Uitslag            }
17384d5fc927SGerrit Uitslag            $data['userlink'] = $xhtml_renderer->_formatLink($data['link']);
173960a396c8SGerrit Uitslag        }
174060a396c8SGerrit Uitslag    }
174160a396c8SGerrit Uitslag    $evt->advise_after();
174260a396c8SGerrit Uitslag    unset($evt);
174360a396c8SGerrit Uitslag
17444d5fc927SGerrit Uitslag    return $data['userlink'];
1745066fee30SAndreas Gohr}
1746066fee30SAndreas Gohr
1747066fee30SAndreas Gohr/**
1748066fee30SAndreas Gohr * Returns the path to a image file for the currently chosen license.
1749066fee30SAndreas Gohr * When no image exists, returns an empty string
1750066fee30SAndreas Gohr *
1751066fee30SAndreas Gohr * @param string $type - type of image 'badge' or 'button'
17523272d797SAndreas Gohr * @return string
17538b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
17548b19906eSAndreas Gohr *
1755066fee30SAndreas Gohr */
1756d868eb89SAndreas Gohrfunction license_img($type)
1757d868eb89SAndreas Gohr{
1758066fee30SAndreas Gohr    global $license;
1759066fee30SAndreas Gohr    global $conf;
1760066fee30SAndreas Gohr    if (!$conf['license']) return '';
1761066fee30SAndreas Gohr    if (!is_array($license[$conf['license']])) return '';
176224870174SAndreas Gohr    $try = [];
1763066fee30SAndreas Gohr    $try[] = 'lib/images/license/' . $type . '/' . $conf['license'] . '.png';
1764066fee30SAndreas Gohr    $try[] = 'lib/images/license/' . $type . '/' . $conf['license'] . '.gif';
17656c16a3a9Sfiwswe    if (str_starts_with($conf['license'], 'cc-')) {
1766066fee30SAndreas Gohr        $try[] = 'lib/images/license/' . $type . '/cc.png';
1767066fee30SAndreas Gohr    }
1768066fee30SAndreas Gohr    foreach ($try as $src) {
176979e79377SAndreas Gohr        if (file_exists(DOKU_INC . $src)) return $src;
1770066fee30SAndreas Gohr    }
1771066fee30SAndreas Gohr    return '';
1772dc58b6f4SAndy Webber}
1773dc58b6f4SAndy Webber
177413c08e2fSMichael Klier/**
177513c08e2fSMichael Klier * Checks if the given amount of memory is available
177613c08e2fSMichael Klier *
177713c08e2fSMichael Klier * If the memory_get_usage() function is not available the
177813c08e2fSMichael Klier * function just assumes $bytes of already allocated memory
177913c08e2fSMichael Klier *
17803272d797SAndreas Gohr * @param int $mem Size of memory you want to allocate in bytes
1781140cfbcdSGerrit Uitslag * @param int $bytes already allocated memory (see above)
17823272d797SAndreas Gohr * @return bool
17838b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
17848b19906eSAndreas Gohr *
17858b19906eSAndreas Gohr * @author Filip Oscadal <webmaster@illusionsoftworks.cz>
178613c08e2fSMichael Klier */
1787d868eb89SAndreas Gohrfunction is_mem_available($mem, $bytes = 1_048_576)
1788d868eb89SAndreas Gohr{
178913c08e2fSMichael Klier    $limit = trim(ini_get('memory_limit'));
179013c08e2fSMichael Klier    if (empty($limit)) return true; // no limit set!
1791985d6187SElenchus    if ($limit == -1) return true; // unlimited
179213c08e2fSMichael Klier
179313c08e2fSMichael Klier    // parse limit to bytes
179413c08e2fSMichael Klier    $limit = php_to_byte($limit);
179513c08e2fSMichael Klier
179613c08e2fSMichael Klier    // get used memory if possible
179713c08e2fSMichael Klier    if (function_exists('memory_get_usage')) {
179813c08e2fSMichael Klier        $used = memory_get_usage();
179949eb6e38SAndreas Gohr    } else {
180049eb6e38SAndreas Gohr        $used = $bytes;
180113c08e2fSMichael Klier    }
180213c08e2fSMichael Klier
180313c08e2fSMichael Klier    if ($used + $mem > $limit) {
180413c08e2fSMichael Klier        return false;
180513c08e2fSMichael Klier    }
180613c08e2fSMichael Klier
180713c08e2fSMichael Klier    return true;
180813c08e2fSMichael Klier}
180913c08e2fSMichael Klier
1810af2408d5SAndreas Gohr/**
1811af2408d5SAndreas Gohr * Send a HTTP redirect to the browser
1812af2408d5SAndreas Gohr *
1813af2408d5SAndreas Gohr * Works arround Microsoft IIS cookie sending bug. Exits the script.
1814af2408d5SAndreas Gohr *
1815af2408d5SAndreas Gohr * @link   http://support.microsoft.com/kb/q176113/
1816af2408d5SAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
1817140cfbcdSGerrit Uitslag *
1818140cfbcdSGerrit Uitslag * @param string $url url being directed to
1819af2408d5SAndreas Gohr */
1820d868eb89SAndreas Gohrfunction send_redirect($url)
1821d868eb89SAndreas Gohr{
182298ca30d2SAndreas Gohr    $url = stripctl($url); // defend against HTTP Response Splitting
182398ca30d2SAndreas Gohr
1824585bf44eSChristopher Smith    /* @var Input $INPUT */
1825585bf44eSChristopher Smith    global $INPUT;
1826585bf44eSChristopher Smith
18270181f021SAndreas Gohr    //are there any undisplayed messages? keep them in session for display
18280181f021SAndreas Gohr    global $MSG;
18290181f021SAndreas Gohr    if (isset($MSG) && count($MSG) && !defined('NOSESSION')) {
18300181f021SAndreas Gohr        //reopen session, store data and close session again
18310181f021SAndreas Gohr        @session_start();
18320181f021SAndreas Gohr        $_SESSION[DOKU_COOKIE]['msg'] = $MSG;
18330181f021SAndreas Gohr    }
18340181f021SAndreas Gohr
1835d4869846SAndreas Gohr    // always close the session
1836d4869846SAndreas Gohr    session_write_close();
1837d4869846SAndreas Gohr
1838af2408d5SAndreas Gohr    // check if running on IIS < 6 with CGI-PHP
18397d34963bSAndreas Gohr    if (
18407d34963bSAndreas Gohr        $INPUT->server->has('SERVER_SOFTWARE') && $INPUT->server->has('GATEWAY_INTERFACE') &&
1841585bf44eSChristopher Smith        (strpos($INPUT->server->str('GATEWAY_INTERFACE'), 'CGI') !== false) &&
1842585bf44eSChristopher Smith        (preg_match('|^Microsoft-IIS/(\d)\.\d$|', trim($INPUT->server->str('SERVER_SOFTWARE')), $matches)) &&
18433272d797SAndreas Gohr        $matches[1] < 6
18443272d797SAndreas Gohr    ) {
1845af2408d5SAndreas Gohr        header('Refresh: 0;url=' . $url);
1846af2408d5SAndreas Gohr    } else {
1847af2408d5SAndreas Gohr        header('Location: ' . $url);
1848af2408d5SAndreas Gohr    }
184981781cb6SAndreas Gohr
1850572dc222SLarsDW223    // no exits during unit tests
185127c0c399SAndreas Gohr    if (defined('DOKU_UNITTEST')) {
185227c0c399SAndreas Gohr        // pass info about the redirect back to the test suite
185327c0c399SAndreas Gohr        $testRequest = TestRequest::getRunning();
185427c0c399SAndreas Gohr        if ($testRequest !== null) {
185527c0c399SAndreas Gohr            $testRequest->addData('send_redirect', $url);
185627c0c399SAndreas Gohr        }
1857572dc222SLarsDW223        return;
1858572dc222SLarsDW223    }
185927c0c399SAndreas Gohr
1860af2408d5SAndreas Gohr    exit;
1861af2408d5SAndreas Gohr}
1862af2408d5SAndreas Gohr
18635b75cd1fSAdrian Lang/**
18645b75cd1fSAdrian Lang * Validate a value using a set of valid values
18655b75cd1fSAdrian Lang *
18665b75cd1fSAdrian Lang * This function checks whether a specified value is set and in the array
18675b75cd1fSAdrian Lang * $valid_values. If not, the function returns a default value or, if no
18685b75cd1fSAdrian Lang * default is specified, throws an exception.
18695b75cd1fSAdrian Lang *
18705b75cd1fSAdrian Lang * @param string $param The name of the parameter
18715b75cd1fSAdrian Lang * @param array $valid_values A set of valid values; Optionally a default may
18725b75cd1fSAdrian Lang *                             be marked by the key “default”.
18735b75cd1fSAdrian Lang * @param array $array The array containing the value (typically $_POST
18745b75cd1fSAdrian Lang *                             or $_GET)
18755b75cd1fSAdrian Lang * @param string $exc The text of the raised exception
18765b75cd1fSAdrian Lang *
18773272d797SAndreas Gohr * @return mixed
18788b19906eSAndreas Gohr * @throws Exception
18795b75cd1fSAdrian Lang * @author Adrian Lang <lang@cosmocode.de>
18805b75cd1fSAdrian Lang */
1881d868eb89SAndreas Gohrfunction valid_input_set($param, $valid_values, $array, $exc = '')
1882d868eb89SAndreas Gohr{
18835b75cd1fSAdrian Lang    if (isset($array[$param]) && in_array($array[$param], $valid_values)) {
18845b75cd1fSAdrian Lang        return $array[$param];
18855b75cd1fSAdrian Lang    } elseif (isset($valid_values['default'])) {
18865b75cd1fSAdrian Lang        return $valid_values['default'];
18875b75cd1fSAdrian Lang    } else {
18885b75cd1fSAdrian Lang        throw new Exception($exc);
18895b75cd1fSAdrian Lang    }
18905b75cd1fSAdrian Lang}
18915b75cd1fSAdrian Lang
189263703ba5SAndreas Gohr/**
189363703ba5SAndreas Gohr * Read a preference from the DokuWiki cookie
1894646a531aSChristopher Smith * (remembering both keys & values are urlencoded)
1895140cfbcdSGerrit Uitslag *
1896140cfbcdSGerrit Uitslag * @param string $pref preference key
1897b4b6c9a1SGerrit Uitslag * @param mixed $default value returned when preference not found
1898140cfbcdSGerrit Uitslag * @return string preference value
189963703ba5SAndreas Gohr */
1900d868eb89SAndreas Gohrfunction get_doku_pref($pref, $default)
1901d868eb89SAndreas Gohr{
1902646a531aSChristopher Smith    $enc_pref = urlencode($pref);
190306c9ee33SMarius van Witzenburg    if (isset($_COOKIE['DOKU_PREFS']) && strpos($_COOKIE['DOKU_PREFS'], $enc_pref) !== false) {
1904554a8c9fSAdrian Lang        $parts = explode('#', $_COOKIE['DOKU_PREFS']);
190563703ba5SAndreas Gohr        $cnt = count($parts);
19061c3eca7dSPhy
19071c3eca7dSPhy        // due to #2721 there might be duplicate entries,
19081c3eca7dSPhy        // so we read from the end
19091c3eca7dSPhy        for ($i = $cnt - 2; $i >= 0; $i -= 2) {
191024870174SAndreas Gohr            if ($parts[$i] === $enc_pref) {
1911646a531aSChristopher Smith                return urldecode($parts[$i + 1]);
1912554a8c9fSAdrian Lang            }
1913554a8c9fSAdrian Lang        }
1914554a8c9fSAdrian Lang    }
1915554a8c9fSAdrian Lang    return $default;
1916554a8c9fSAdrian Lang}
1917554a8c9fSAdrian Lang
19183c94d07bSAnika Henke/**
19193c94d07bSAnika Henke * Add a preference to the DokuWiki cookie
192036ec377eSChristopher Smith * (remembering $_COOKIE['DOKU_PREFS'] is urlencoded)
19213a970889SAnika Henke * Remove it by setting $val to false
1922140cfbcdSGerrit Uitslag *
1923140cfbcdSGerrit Uitslag * @param string $pref preference key
1924140cfbcdSGerrit Uitslag * @param string $val preference value
19253c94d07bSAnika Henke */
1926d868eb89SAndreas Gohrfunction set_doku_pref($pref, $val)
1927d868eb89SAndreas Gohr{
19283c94d07bSAnika Henke    global $conf;
19293c94d07bSAnika Henke    $orig = get_doku_pref($pref, false);
19303c94d07bSAnika Henke    $cookieVal = '';
19313c94d07bSAnika Henke
19321c3eca7dSPhy    if ($orig !== false && ($orig !== $val)) {
19333c94d07bSAnika Henke        $parts = explode('#', $_COOKIE['DOKU_PREFS']);
19343c94d07bSAnika Henke        $cnt = count($parts);
193536ec377eSChristopher Smith        // urlencode $pref for the comparison
193636ec377eSChristopher Smith        $enc_pref = rawurlencode($pref);
19371c3eca7dSPhy        $seen = false;
19383c94d07bSAnika Henke        for ($i = 0; $i < $cnt; $i += 2) {
193924870174SAndreas Gohr            if ($parts[$i] === $enc_pref) {
19401c3eca7dSPhy                if (!$seen) {
19413a970889SAnika Henke                    if ($val !== false) {
1942bf8f8509SAndreas Gohr                        $parts[$i + 1] = rawurlencode($val ?? '');
19433a970889SAnika Henke                    } else {
19443a970889SAnika Henke                        unset($parts[$i]);
19453a970889SAnika Henke                        unset($parts[$i + 1]);
19463a970889SAnika Henke                    }
19471c3eca7dSPhy                    $seen = true;
19481c3eca7dSPhy                } else {
19491c3eca7dSPhy                    // no break because we want to remove duplicate entries
19501c3eca7dSPhy                    unset($parts[$i]);
19511c3eca7dSPhy                    unset($parts[$i + 1]);
19521c3eca7dSPhy                }
19533c94d07bSAnika Henke            }
19543c94d07bSAnika Henke        }
19553c94d07bSAnika Henke        $cookieVal = implode('#', $parts);
19561c3eca7dSPhy    } elseif ($orig === false && $val !== false) {
1957c10f256aSDamien Regad        $cookieVal = (isset($_COOKIE['DOKU_PREFS']) ? $_COOKIE['DOKU_PREFS'] . '#' : '') .
195864159a61SAndreas Gohr            rawurlencode($pref) . '#' . rawurlencode($val);
19593c94d07bSAnika Henke    }
19603c94d07bSAnika Henke
196175e4dd8aSGerrit Uitslag    $cookieDir = empty($conf['cookiedir']) ? DOKU_REL : $conf['cookiedir'];
19625833995aSPhy    if (defined('DOKU_UNITTEST')) {
19635833995aSPhy        $_COOKIE['DOKU_PREFS'] = $cookieVal;
19645833995aSPhy    } else {
1965bf8392ebSAndreas Gohr        setcookie('DOKU_PREFS', $cookieVal, [
1966bf8392ebSAndreas Gohr            'expires' => time() + 365 * 24 * 3600,
1967bf8392ebSAndreas Gohr            'path' => $cookieDir,
1968bf8392ebSAndreas Gohr            'secure' => ($conf['securecookie'] && is_ssl()),
1969bf8392ebSAndreas Gohr            'samesite' => 'Lax'
1970bf8392ebSAndreas Gohr        ]);
19713c94d07bSAnika Henke    }
19723c94d07bSAnika Henke}
19733c94d07bSAnika Henke
1974f8fb2d18SAndreas Gohr/**
1975f8fb2d18SAndreas Gohr * Strips source mapping declarations from given text #601
1976f8fb2d18SAndreas Gohr *
197742ea7f44SGerrit Uitslag * @param string &$text reference to the CSS or JavaScript code to clean
1978f8fb2d18SAndreas Gohr */
1979d868eb89SAndreas Gohrfunction stripsourcemaps(&$text)
1980d868eb89SAndreas Gohr{
1981f8fb2d18SAndreas Gohr    $text = preg_replace('/^(\/\/|\/\*)[@#]\s+sourceMappingURL=.*?(\*\/)?$/im', '\\1\\2', $text);
1982f8fb2d18SAndreas Gohr}
1983f8fb2d18SAndreas Gohr
19843c27983bSAndreas Gohr/**
198571de5572SAndreas Gohr * Returns the contents of a given SVG file for embedding
19863c27983bSAndreas Gohr *
19873c27983bSAndreas Gohr * Inlining SVGs saves on HTTP requests and more importantly allows for styling them through
19883c27983bSAndreas Gohr * CSS. However it should used with small SVGs only. The $maxsize setting ensures only small
19893c27983bSAndreas Gohr * files are embedded.
19903c27983bSAndreas Gohr *
199171de5572SAndreas Gohr * This strips unneeded headers, comments and newline. The result is not a vaild standalone SVG!
199271de5572SAndreas Gohr *
19933c27983bSAndreas Gohr * @param string $file full path to the SVG file
19943c27983bSAndreas Gohr * @param int $maxsize maximum allowed size for the SVG to be embedded
199571de5572SAndreas Gohr * @return string|false the SVG content, false if the file couldn't be loaded
19963c27983bSAndreas Gohr */
1997d868eb89SAndreas Gohrfunction inlineSVG($file, $maxsize = 2048)
1998d868eb89SAndreas Gohr{
19993c27983bSAndreas Gohr    $file = trim($file);
20003c27983bSAndreas Gohr    if ($file === '') return false;
20013c27983bSAndreas Gohr    if (!file_exists($file)) return false;
20023c27983bSAndreas Gohr    if (filesize($file) > $maxsize) return false;
20033c27983bSAndreas Gohr    if (!is_readable($file)) return false;
20043c27983bSAndreas Gohr    $content = file_get_contents($file);
20050849fa88SAndreas Gohr    $content = preg_replace('/<!--.*?(-->)/s', '', $content); // comments
20060849fa88SAndreas Gohr    $content = preg_replace('/<\?xml .*?\?>/i', '', $content); // xml header
20070849fa88SAndreas Gohr    $content = preg_replace('/<!DOCTYPE .*?>/i', '', $content); // doc type
20080849fa88SAndreas Gohr    $content = preg_replace('/>\s+</s', '><', $content); // newlines between tags
20093c27983bSAndreas Gohr    $content = trim($content);
20106c16a3a9Sfiwswe    if (!str_starts_with($content, '<svg ')) return false;
201171de5572SAndreas Gohr    return $content;
20123c27983bSAndreas Gohr}
20133c27983bSAndreas Gohr
2014e3776c06SMichael Hamann//Setup VIM: ex: et ts=2 :
2015