xref: /dokuwiki/inc/common.php (revision 33cb4e0125bb3ea66842b52c5d02739268775800)
1ed7b5f09Sandi<?php
2d4f83172SAndreas Gohr
315fae107Sandi/**
415fae107Sandi * Common DokuWiki functions
515fae107Sandi *
615fae107Sandi * @license    GPL 2 (http://www.gnu.org/licenses/gpl.html)
715fae107Sandi * @author     Andreas Gohr <andi@splitbrain.org>
815fae107Sandi */
9d4f83172SAndreas Gohr
1024870174SAndreas Gohruse dokuwiki\PassHash;
1124870174SAndreas Gohruse dokuwiki\Draft;
1224870174SAndreas Gohruse dokuwiki\Utf8\Clean;
1324870174SAndreas Gohruse dokuwiki\Utf8\PhpString;
1424870174SAndreas Gohruse dokuwiki\Utf8\Conversion;
150db5771eSMichael Großeuse dokuwiki\Cache\CacheRenderer;
160c3a5702SAndreas Gohruse dokuwiki\ChangeLog\PageChangeLog;
17b24e9c4aSSatoshi Saharause dokuwiki\File\PageFile;
18704a815fSMichael Großeuse dokuwiki\Subscriptions\PageSubscriptionSender;
1975d66495SMichael Großeuse dokuwiki\Subscriptions\SubscriberManager;
20e1d9dcc8SAndreas Gohruse dokuwiki\Extension\AuthPlugin;
21e1d9dcc8SAndreas Gohruse dokuwiki\Extension\Event;
222aba9aedSAndreas Gohruse dokuwiki\Ip;
230c3a5702SAndreas Gohr
248b19906eSAndreas Gohruse function PHP81_BC\strftime;
258b19906eSAndreas Gohr
26f3f0262cSandi/**
27d5197206Schris * Wrapper around htmlspecialchars()
28d5197206Schris *
298b19906eSAndreas Gohr * @param string $string the string being converted
308b19906eSAndreas Gohr * @return string converted string
31d5197206Schris * @author Andreas Gohr <andi@splitbrain.org>
32d5197206Schris * @see    htmlspecialchars()
33140cfbcdSGerrit Uitslag *
34d5197206Schris */
35d868eb89SAndreas Gohrfunction hsc($string)
36d868eb89SAndreas Gohr{
37f7711f2bSAndreas Gohr    return htmlspecialchars($string, ENT_QUOTES | ENT_SUBSTITUTE | ENT_HTML401, 'UTF-8');
38d5197206Schris}
39d5197206Schris
40d5197206Schris/**
4112dd3cbcSAndreas Gohr * A safer explode for fixed length lists
4212dd3cbcSAndreas Gohr *
4312dd3cbcSAndreas Gohr * This works just like explode(), but will always return the wanted number of elements.
4412dd3cbcSAndreas Gohr * If the $input string does not contain enough elements, the missing elements will be
4512dd3cbcSAndreas Gohr * filled up with the $default value. If the input string contains more elements, the last
4612dd3cbcSAndreas Gohr * one will NOT be split up and will still contain $separator
4712dd3cbcSAndreas Gohr *
4812dd3cbcSAndreas Gohr * @param string $separator The boundary string
4912dd3cbcSAndreas Gohr * @param string $string The input string
5012dd3cbcSAndreas Gohr * @param int $limit The number of expected elements
5112dd3cbcSAndreas Gohr * @param mixed $default The value to use when filling up missing elements
5212dd3cbcSAndreas Gohr * @return array
538b19906eSAndreas Gohr * @see explode
5412dd3cbcSAndreas Gohr */
5512dd3cbcSAndreas Gohrfunction sexplode($separator, $string, $limit, $default = null)
5612dd3cbcSAndreas Gohr{
5712dd3cbcSAndreas Gohr    return array_pad(explode($separator, $string, $limit), $limit, $default);
5812dd3cbcSAndreas Gohr}
5912dd3cbcSAndreas Gohr
6012dd3cbcSAndreas Gohr/**
615b571377SAndreas Gohr * Checks if the given input is blank
625b571377SAndreas Gohr *
635b571377SAndreas Gohr * This is similar to empty() but will return false for "0".
645b571377SAndreas Gohr *
6567234204SAndreas Gohr * Please note: when you pass uninitialized variables, they will implicitly be created
6667234204SAndreas Gohr * with a NULL value without warning.
6767234204SAndreas Gohr *
6867234204SAndreas Gohr * To avoid this it's recommended to guard the call with isset like this:
6967234204SAndreas Gohr *
7067234204SAndreas Gohr * (isset($foo) && !blank($foo))
7167234204SAndreas Gohr * (!isset($foo) || blank($foo))
7267234204SAndreas Gohr *
735b571377SAndreas Gohr * @param $in
745b571377SAndreas Gohr * @param bool $trim Consider a string of whitespace to be blank
755b571377SAndreas Gohr * @return bool
765b571377SAndreas Gohr */
77d868eb89SAndreas Gohrfunction blank(&$in, $trim = false)
78d868eb89SAndreas Gohr{
795b571377SAndreas Gohr    if (is_null($in)) return true;
8024870174SAndreas Gohr    if (is_array($in)) return $in === [];
815b571377SAndreas Gohr    if ($in === "\0") return true;
825b571377SAndreas Gohr    if ($trim && trim($in) === '') return true;
835b571377SAndreas Gohr    if (strlen($in) > 0) return false;
845b571377SAndreas Gohr    return empty($in);
855b571377SAndreas Gohr}
865b571377SAndreas Gohr
875b571377SAndreas Gohr/**
8802b0b681SAndreas Gohr * strips control characters (<32) from the given string
8902b0b681SAndreas Gohr *
9042ea7f44SGerrit Uitslag * @param string $string being stripped
91140cfbcdSGerrit Uitslag * @return string
928b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
938b19906eSAndreas Gohr *
9402b0b681SAndreas Gohr */
95d868eb89SAndreas Gohrfunction stripctl($string)
96d868eb89SAndreas Gohr{
9702b0b681SAndreas Gohr    return preg_replace('/[\x00-\x1F]+/s', '', $string);
98d5197206Schris}
99d5197206Schris
100d5197206Schris/**
101634d7150SAndreas Gohr * Return a secret token to be used for CSRF attack prevention
102634d7150SAndreas Gohr *
1038b19906eSAndreas Gohr * @return  string
104634d7150SAndreas Gohr * @link    http://en.wikipedia.org/wiki/Cross-site_request_forgery
105634d7150SAndreas Gohr * @link    http://christ1an.blogspot.com/2007/04/preventing-csrf-efficiently.html
10642ea7f44SGerrit Uitslag *
1078b19906eSAndreas Gohr * @author  Andreas Gohr <andi@splitbrain.org>
108634d7150SAndreas Gohr */
109d868eb89SAndreas Gohrfunction getSecurityToken()
110d868eb89SAndreas Gohr{
111585bf44eSChristopher Smith    /** @var Input $INPUT */
112585bf44eSChristopher Smith    global $INPUT;
1133680e2cdSAndreas Gohr
1143680e2cdSAndreas Gohr    $user = $INPUT->server->str('REMOTE_USER');
1153680e2cdSAndreas Gohr    $session = session_id();
1163680e2cdSAndreas Gohr
1173680e2cdSAndreas Gohr    // CSRF checks are only for logged in users - do not generate for anonymous
1183680e2cdSAndreas Gohr    if (trim($user) == '' || trim($session) == '') return '';
11924870174SAndreas Gohr    return PassHash::hmac('md5', $session . $user, auth_cookiesalt());
120634d7150SAndreas Gohr}
121634d7150SAndreas Gohr
122634d7150SAndreas Gohr/**
123634d7150SAndreas Gohr * Check the secret CSRF token
124140cfbcdSGerrit Uitslag *
125140cfbcdSGerrit Uitslag * @param null|string $token security token or null to read it from request variable
126140cfbcdSGerrit Uitslag * @return bool success if the token matched
127634d7150SAndreas Gohr */
128d868eb89SAndreas Gohrfunction checkSecurityToken($token = null)
129d868eb89SAndreas Gohr{
130585bf44eSChristopher Smith    /** @var Input $INPUT */
1317d01a0eaSTom N Harris    global $INPUT;
132585bf44eSChristopher Smith    if (!$INPUT->server->str('REMOTE_USER')) return true; // no logged in user, no need for a check
133df97eaacSAndreas Gohr
1347d01a0eaSTom N Harris    if (is_null($token)) $token = $INPUT->str('sectok');
135634d7150SAndreas Gohr    if (getSecurityToken() != $token) {
136634d7150SAndreas Gohr        msg('Security Token did not match. Possible CSRF attack.', -1);
137634d7150SAndreas Gohr        return false;
138634d7150SAndreas Gohr    }
139634d7150SAndreas Gohr    return true;
140634d7150SAndreas Gohr}
141634d7150SAndreas Gohr
142634d7150SAndreas Gohr/**
143634d7150SAndreas Gohr * Print a hidden form field with a secret CSRF token
144634d7150SAndreas Gohr *
145140cfbcdSGerrit Uitslag * @param bool $print if true print the field, otherwise html of the field is returned
14642ea7f44SGerrit Uitslag * @return string html of hidden form field
1478b19906eSAndreas Gohr * @author  Andreas Gohr <andi@splitbrain.org>
1488b19906eSAndreas Gohr *
149634d7150SAndreas Gohr */
150d868eb89SAndreas Gohrfunction formSecurityToken($print = true)
151d868eb89SAndreas Gohr{
1522404d0edSAnika Henke    $ret = '<div class="no"><input type="hidden" name="sectok" value="' . getSecurityToken() . '" /></div>' . "\n";
1533272d797SAndreas Gohr    if ($print) echo $ret;
154634d7150SAndreas Gohr    return $ret;
155634d7150SAndreas Gohr}
156634d7150SAndreas Gohr
157634d7150SAndreas Gohr/**
1581015a57dSChristopher Smith * Determine basic information for a request of $id
15915fae107Sandi *
160140cfbcdSGerrit Uitslag * @param string $id pageid
161140cfbcdSGerrit Uitslag * @param bool $htmlClient add info about whether is mobile browser
162140cfbcdSGerrit Uitslag * @return array with info for a request of $id
163140cfbcdSGerrit Uitslag *
1648b19906eSAndreas Gohr * @author Chris Smith <chris@jalakai.co.uk>
1658b19906eSAndreas Gohr *
1668b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
167f3f0262cSandi */
168d868eb89SAndreas Gohrfunction basicinfo($id, $htmlClient = true)
169d868eb89SAndreas Gohr{
170f3f0262cSandi    global $USERINFO;
171585bf44eSChristopher Smith    /* @var Input $INPUT */
172585bf44eSChristopher Smith    global $INPUT;
1736afe8dcaSchris
174c66972f2SAdrian Lang    // set info about manager/admin status.
17524870174SAndreas Gohr    $info = [];
176c66972f2SAdrian Lang    $info['isadmin'] = false;
177c66972f2SAdrian Lang    $info['ismanager'] = false;
178585bf44eSChristopher Smith    if ($INPUT->server->has('REMOTE_USER')) {
179f3f0262cSandi        $info['userinfo'] = $USERINFO;
1801015a57dSChristopher Smith        $info['perm'] = auth_quickaclcheck($id);
181585bf44eSChristopher Smith        $info['client'] = $INPUT->server->str('REMOTE_USER');
18217ee7f66SAndreas Gohr
183f8cc712eSAndreas Gohr        if ($info['perm'] == AUTH_ADMIN) {
184f8cc712eSAndreas Gohr            $info['isadmin'] = true;
185f8cc712eSAndreas Gohr            $info['ismanager'] = true;
186f8cc712eSAndreas Gohr        } elseif (auth_ismanager()) {
187f8cc712eSAndreas Gohr            $info['ismanager'] = true;
188f8cc712eSAndreas Gohr        }
189f8cc712eSAndreas Gohr
19017ee7f66SAndreas Gohr        // if some outside auth were used only REMOTE_USER is set
191a58fcbbcSAndreas Gohr        if (empty($info['userinfo']['name'])) {
192585bf44eSChristopher Smith            $info['userinfo']['name'] = $INPUT->server->str('REMOTE_USER');
19317ee7f66SAndreas Gohr        }
194f3f0262cSandi    } else {
1951015a57dSChristopher Smith        $info['perm'] = auth_aclcheck($id, '', null);
196ee4c4a1bSAndreas Gohr        $info['client'] = clientIP(true);
197f3f0262cSandi    }
198f3f0262cSandi
1991015a57dSChristopher Smith    $info['namespace'] = getNS($id);
2001015a57dSChristopher Smith
2011015a57dSChristopher Smith    // mobile detection
2021015a57dSChristopher Smith    if ($htmlClient) {
2031015a57dSChristopher Smith        $info['ismobile'] = clientismobile();
2041015a57dSChristopher Smith    }
2051015a57dSChristopher Smith
2061015a57dSChristopher Smith    return $info;
2071015a57dSChristopher Smith}
2081015a57dSChristopher Smith
2091015a57dSChristopher Smith/**
2101015a57dSChristopher Smith * Return info about the current document as associative
2111015a57dSChristopher Smith * array.
2121015a57dSChristopher Smith *
213140cfbcdSGerrit Uitslag * @return array with info about current document
2144dc42f7fSGerrit Uitslag * @throws Exception
2154dc42f7fSGerrit Uitslag *
2164dc42f7fSGerrit Uitslag * @author Andreas Gohr <andi@splitbrain.org>
2171015a57dSChristopher Smith */
218d868eb89SAndreas Gohrfunction pageinfo()
219d868eb89SAndreas Gohr{
2201015a57dSChristopher Smith    global $ID;
2211015a57dSChristopher Smith    global $REV;
2221015a57dSChristopher Smith    global $RANGE;
2231015a57dSChristopher Smith    global $lang;
2241015a57dSChristopher Smith
2251015a57dSChristopher Smith    $info = basicinfo($ID);
2261015a57dSChristopher Smith
2271015a57dSChristopher Smith    // include ID & REV not redundant, as some parts of DokuWiki may temporarily change $ID, e.g. p_wiki_xhtml
2281015a57dSChristopher Smith    // FIXME ... perhaps it would be better to ensure the temporary changes weren't necessary
2291015a57dSChristopher Smith    $info['id'] = $ID;
2301015a57dSChristopher Smith    $info['rev'] = $REV;
2311015a57dSChristopher Smith
23275d66495SMichael Große    $subManager = new SubscriberManager();
23375d66495SMichael Große    $info['subscribed'] = $subManager->userSubscription();
2347e87a794SChristopher Smith
235f3f0262cSandi    $info['locked'] = checklock($ID);
236317a04c4SSatoshi Sahara    $info['filepath'] = wikiFN($ID);
23779e79377SAndreas Gohr    $info['exists'] = file_exists($info['filepath']);
23801c9a118SAndreas Gohr    $info['currentrev'] = @filemtime($info['filepath']);
2395ec96136SSatoshi Sahara
2402ca9d91cSBen Coburn    if ($REV) {
2412ca9d91cSBen Coburn        //check if current revision was meant
24201c9a118SAndreas Gohr        if ($info['exists'] && ($info['currentrev'] == $REV)) {
2432ca9d91cSBen Coburn            $REV = '';
2447b3a6803SAndreas Gohr        } elseif ($RANGE) {
2457b3a6803SAndreas Gohr            //section editing does not work with old revisions!
2467b3a6803SAndreas Gohr            $REV = '';
2477b3a6803SAndreas Gohr            $RANGE = '';
2487b3a6803SAndreas Gohr            msg($lang['nosecedit'], 0);
2492ca9d91cSBen Coburn        } else {
2502ca9d91cSBen Coburn            //really use old revision
251317a04c4SSatoshi Sahara            $info['filepath'] = wikiFN($ID, $REV);
25279e79377SAndreas Gohr            $info['exists'] = file_exists($info['filepath']);
253f3f0262cSandi        }
254f3f0262cSandi    }
255c112d578Sandi    $info['rev'] = $REV;
256f3f0262cSandi    if ($info['exists']) {
257252acce3SSatoshi Sahara        $info['writable'] = (is_writable($info['filepath']) && $info['perm'] >= AUTH_EDIT);
258f3f0262cSandi    } else {
259f3f0262cSandi        $info['writable'] = ($info['perm'] >= AUTH_CREATE);
260f3f0262cSandi    }
26150e988b1SAndreas Gohr    $info['editable'] = ($info['writable'] && empty($info['locked']));
262f3f0262cSandi    $info['lastmod'] = @filemtime($info['filepath']);
263f3f0262cSandi
26471726d78SBen Coburn    //load page meta data
26571726d78SBen Coburn    $info['meta'] = p_get_metadata($ID);
26671726d78SBen Coburn
267652610a2Sandi    //who's the editor
268047bad06SGerrit Uitslag    $pagelog = new PageChangeLog($ID, 1024);
269652610a2Sandi    if ($REV) {
270f523c971SGerrit Uitslag        $revinfo = $pagelog->getRevisionInfo($REV);
27124870174SAndreas Gohr    } elseif (!empty($info['meta']['last_change']) && is_array($info['meta']['last_change'])) {
272aa27cf05SAndreas Gohr        $revinfo = $info['meta']['last_change'];
273aa27cf05SAndreas Gohr    } else {
274f523c971SGerrit Uitslag        $revinfo = $pagelog->getRevisionInfo($info['lastmod']);
275cd00a034SBen Coburn        // cache most recent changelog line in metadata if missing and still valid
276cd00a034SBen Coburn        if ($revinfo !== false) {
277cd00a034SBen Coburn            $info['meta']['last_change'] = $revinfo;
27824870174SAndreas Gohr            p_set_metadata($ID, ['last_change' => $revinfo]);
279cd00a034SBen Coburn        }
280cd00a034SBen Coburn    }
281cd00a034SBen Coburn    //and check for an external edit
282cd00a034SBen Coburn    if ($revinfo !== false && $revinfo['date'] != $info['lastmod']) {
283cd00a034SBen Coburn        // cached changelog line no longer valid
284cd00a034SBen Coburn        $revinfo = false;
285cd00a034SBen Coburn        $info['meta']['last_change'] = $revinfo;
28624870174SAndreas Gohr        p_set_metadata($ID, ['last_change' => $revinfo]);
287652610a2Sandi    }
288bb4866bdSchris
2890a444b5aSPhy    if ($revinfo !== false) {
290652610a2Sandi        $info['ip'] = $revinfo['ip'];
291652610a2Sandi        $info['user'] = $revinfo['user'];
292652610a2Sandi        $info['sum'] = $revinfo['sum'];
29371726d78SBen Coburn        // See also $INFO['meta']['last_change'] which is the most recent log line for page $ID.
294ebf1501fSBen Coburn        // Use $INFO['meta']['last_change']['type']===DOKU_CHANGE_TYPE_MINOR_EDIT in place of $info['minor'].
29559f257aeSchris
296252acce3SSatoshi Sahara        $info['editor'] = $revinfo['user'] ?: $revinfo['ip'];
2970a444b5aSPhy    } else {
2980a444b5aSPhy        $info['ip'] = null;
2990a444b5aSPhy        $info['user'] = null;
3000a444b5aSPhy        $info['sum'] = null;
3010a444b5aSPhy        $info['editor'] = null;
3020a444b5aSPhy    }
303652610a2Sandi
304ee4c4a1bSAndreas Gohr    // draft
30524870174SAndreas Gohr    $draft = new Draft($ID, $info['client']);
3060aabe6f8SMichael Große    if ($draft->isDraftAvailable()) {
3070aabe6f8SMichael Große        $info['draft'] = $draft->getDraftFilename();
308ee4c4a1bSAndreas Gohr    }
309ee4c4a1bSAndreas Gohr
3101015a57dSChristopher Smith    return $info;
3111015a57dSChristopher Smith}
3121015a57dSChristopher Smith
3131015a57dSChristopher Smith/**
3140c39d46cSMichael Große * Initialize and/or fill global $JSINFO with some basic info to be given to javascript
3150c39d46cSMichael Große */
316d868eb89SAndreas Gohrfunction jsinfo()
317d868eb89SAndreas Gohr{
3180c39d46cSMichael Große    global $JSINFO, $ID, $INFO, $ACT;
3190c39d46cSMichael Große
3200c39d46cSMichael Große    if (!is_array($JSINFO)) {
3210c39d46cSMichael Große        $JSINFO = [];
3220c39d46cSMichael Große    }
3230c39d46cSMichael Große    //export minimal info to JS, plugins can add more
3240c39d46cSMichael Große    $JSINFO['id'] = $ID;
32568491db9SPhy    $JSINFO['namespace'] = isset($INFO) ? (string)$INFO['namespace'] : '';
3260c39d46cSMichael Große    $JSINFO['ACT'] = act_clean($ACT);
3270c39d46cSMichael Große    $JSINFO['useHeadingNavigation'] = (int)useHeading('navigation');
3280c39d46cSMichael Große    $JSINFO['useHeadingContent'] = (int)useHeading('content');
3290c39d46cSMichael Große}
3300c39d46cSMichael Große
3310c39d46cSMichael Große/**
3321015a57dSChristopher Smith * Return information about the current media item as an associative array.
333140cfbcdSGerrit Uitslag *
334140cfbcdSGerrit Uitslag * @return array with info about current media item
3351015a57dSChristopher Smith */
336d868eb89SAndreas Gohrfunction mediainfo()
337d868eb89SAndreas Gohr{
3381015a57dSChristopher Smith    global $NS;
3391015a57dSChristopher Smith    global $IMG;
3401015a57dSChristopher Smith
3411015a57dSChristopher Smith    $info = basicinfo("$NS:*");
3421015a57dSChristopher Smith    $info['image'] = $IMG;
3431c548ebeSAndreas Gohr
344f3f0262cSandi    return $info;
345f3f0262cSandi}
346f3f0262cSandi
347f3f0262cSandi/**
3482684e50aSAndreas Gohr * Build an string of URL parameters
3492684e50aSAndreas Gohr *
3506cc6a0d2SAndreas Gohr * @see http_build_query()
3516cc6a0d2SAndreas Gohr * @param array|object $params the data to encode
352140cfbcdSGerrit Uitslag * @param string $sep series of pairs are separated by this character
353140cfbcdSGerrit Uitslag * @return string query string
3548b19906eSAndreas Gohr *
3552684e50aSAndreas Gohr */
356d868eb89SAndreas Gohrfunction buildURLparams($params, $sep = '&amp;')
357d868eb89SAndreas Gohr{
3586cc6a0d2SAndreas Gohr    return http_build_query($params, '', $sep, PHP_QUERY_RFC3986);
3592684e50aSAndreas Gohr}
3602684e50aSAndreas Gohr
3612684e50aSAndreas Gohr/**
3622684e50aSAndreas Gohr * Build an string of html tag attributes
3632684e50aSAndreas Gohr *
3647bff22c0SAndreas Gohr * Skips keys starting with '_', values get HTML encoded
3657bff22c0SAndreas Gohr *
366140cfbcdSGerrit Uitslag * @param array $params array with (attribute name-attribute value) pairs
367246d3337SMichael Große * @param bool $skipEmptyStrings skip empty string values?
368140cfbcdSGerrit Uitslag * @return string
3698b19906eSAndreas Gohr * @author Andreas Gohr
3708b19906eSAndreas Gohr *
3712684e50aSAndreas Gohr */
372d868eb89SAndreas Gohrfunction buildAttributes($params, $skipEmptyStrings = false)
373d868eb89SAndreas Gohr{
3742684e50aSAndreas Gohr    $url = '';
3759063ec14SAdrian Lang    $white = false;
3762684e50aSAndreas Gohr    foreach ($params as $key => $val) {
3772401f18dSSyntaxseed        if ($key[0] == '_') continue;
378246d3337SMichael Große        if ($val === '' && $skipEmptyStrings) continue;
3799063ec14SAdrian Lang        if ($white) $url .= ' ';
3807bff22c0SAndreas Gohr
3812684e50aSAndreas Gohr        $url .= $key . '="';
382f7711f2bSAndreas Gohr        $url .= hsc($val);
3832684e50aSAndreas Gohr        $url .= '"';
3849063ec14SAdrian Lang        $white = true;
3852684e50aSAndreas Gohr    }
3862684e50aSAndreas Gohr    return $url;
3872684e50aSAndreas Gohr}
3882684e50aSAndreas Gohr
3892684e50aSAndreas Gohr/**
39015fae107Sandi * This builds the breadcrumb trail and returns it as array
39115fae107Sandi *
3928b19906eSAndreas Gohr * @return string[] with the data: array(pageid=>name, ... )
39315fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
394140cfbcdSGerrit Uitslag *
395f3f0262cSandi */
396d868eb89SAndreas Gohrfunction breadcrumbs()
397d868eb89SAndreas Gohr{
3988746e727Sandi    // we prepare the breadcrumbs early for quick session closing
3998746e727Sandi    static $crumbs = null;
4008746e727Sandi    if ($crumbs != null) return $crumbs;
4018746e727Sandi
402f3f0262cSandi    global $ID;
403f3f0262cSandi    global $ACT;
404f3f0262cSandi    global $conf;
4050ea5ebb4SB_S666    global $INFO;
406f3f0262cSandi
407f3f0262cSandi    //first visit?
40824870174SAndreas Gohr    $crumbs = $_SESSION[DOKU_COOKIE]['bc'] ?? [];
4095603d3c1SHenry Pan    //we only save on show and existing visible readable wiki documents
410a77f5846Sjan    $file = wikiFN($ID);
4115603d3c1SHenry Pan    if ($ACT != 'show' || $INFO['perm'] < AUTH_READ || isHiddenPage($ID) || !file_exists($file)) {
412e71ce681SAndreas Gohr        $_SESSION[DOKU_COOKIE]['bc'] = $crumbs;
413f3f0262cSandi        return $crumbs;
414f3f0262cSandi    }
415a77f5846Sjan
416a77f5846Sjan    // page names
4171a84a0f3SAnika Henke    $name = noNSorNS($ID);
418fe9ec250SChris Smith    if (useHeading('navigation')) {
419a77f5846Sjan        // get page title
42067c15eceSMichael Hamann        $title = p_get_first_heading($ID, METADATA_RENDER_USING_SIMPLE_CACHE);
421a77f5846Sjan        if ($title) {
422a77f5846Sjan            $name = $title;
423a77f5846Sjan        }
424a77f5846Sjan    }
425a77f5846Sjan
426f3f0262cSandi    //remove ID from array
427a77f5846Sjan    if (isset($crumbs[$ID])) {
428a77f5846Sjan        unset($crumbs[$ID]);
429f3f0262cSandi    }
430f3f0262cSandi
431f3f0262cSandi    //add to array
432a77f5846Sjan    $crumbs[$ID] = $name;
433f3f0262cSandi    //reduce size
434f3f0262cSandi    while (count($crumbs) > $conf['breadcrumbs']) {
435f3f0262cSandi        array_shift($crumbs);
436f3f0262cSandi    }
437f3f0262cSandi    //save to session
438e71ce681SAndreas Gohr    $_SESSION[DOKU_COOKIE]['bc'] = $crumbs;
439f3f0262cSandi    return $crumbs;
440f3f0262cSandi}
441f3f0262cSandi
442f3f0262cSandi/**
44315fae107Sandi * Filter for page IDs
44415fae107Sandi *
445f3f0262cSandi * This is run on a ID before it is outputted somewhere
446f3f0262cSandi * currently used to replace the colon with something else
447907f24f7SAndreas Gohr * on Windows (non-IIS) systems and to have proper URL encoding
448907f24f7SAndreas Gohr *
449977aa967SAndreas Gohr * See discussions at https://github.com/dokuwiki/dokuwiki/pull/84 and
450977aa967SAndreas Gohr * https://github.com/dokuwiki/dokuwiki/pull/173 why we use a whitelist of
451907f24f7SAndreas Gohr * unaffected servers instead of blacklisting affected servers here.
45215fae107Sandi *
45349c713a3Sandi * Urlencoding is ommitted when the second parameter is false
45449c713a3Sandi *
455140cfbcdSGerrit Uitslag * @param string $id pageid being filtered
456140cfbcdSGerrit Uitslag * @param bool $ue apply urlencoding?
457140cfbcdSGerrit Uitslag * @return string
4588b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
4598b19906eSAndreas Gohr *
460f3f0262cSandi */
461d868eb89SAndreas Gohrfunction idfilter($id, $ue = true)
462d868eb89SAndreas Gohr{
463f3f0262cSandi    global $conf;
464585bf44eSChristopher Smith    /* @var Input $INPUT */
465585bf44eSChristopher Smith    global $INPUT;
466585bf44eSChristopher Smith
467bf8f8509SAndreas Gohr    $id = (string)$id;
468bf8f8509SAndreas Gohr
469f3f0262cSandi    if ($conf['useslash'] && $conf['userewrite']) {
470f3f0262cSandi        $id = strtr($id, ':', '/');
4717d34963bSAndreas Gohr    } elseif (
4726c16a3a9Sfiwswe        str_starts_with(strtoupper(PHP_OS), 'WIN') &&
47358bedc8aSborekb        $conf['userewrite'] &&
474585bf44eSChristopher Smith        strpos($INPUT->server->str('SERVER_SOFTWARE'), 'Microsoft-IIS') === false
4753272d797SAndreas Gohr    ) {
476f3f0262cSandi        $id = strtr($id, ':', ';');
477f3f0262cSandi    }
47849c713a3Sandi    if ($ue) {
479b6c6979fSAndreas Gohr        $id = rawurlencode($id);
480f3f0262cSandi        $id = str_replace('%3A', ':', $id); //keep as colon
481edd95259SGerrit Uitslag        $id = str_replace('%3B', ';', $id); //keep as semicolon
482f3f0262cSandi        $id = str_replace('%2F', '/', $id); //keep as slash
48349c713a3Sandi    }
484f3f0262cSandi    return $id;
485f3f0262cSandi}
486f3f0262cSandi
487f3f0262cSandi/**
488ed7b5f09Sandi * This builds a link to a wikipage
48915fae107Sandi *
4904bc480e5SAndreas Gohr * It handles URL rewriting and adds additional parameters
4916c7843b5Sandi *
4924bc480e5SAndreas Gohr * @param string $id page id, defaults to start page
4934bc480e5SAndreas Gohr * @param string|array $urlParameters URL parameters, associative array recommended
4944bc480e5SAndreas Gohr * @param bool $absolute request an absolute URL instead of relative
4954bc480e5SAndreas Gohr * @param string $separator parameter separator
4964bc480e5SAndreas Gohr * @return string
4978b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
4988b19906eSAndreas Gohr *
499f3f0262cSandi */
500d868eb89SAndreas Gohrfunction wl($id = '', $urlParameters = '', $absolute = false, $separator = '&amp;')
501d868eb89SAndreas Gohr{
502f3f0262cSandi    global $conf;
50316f15a81SDominik Eckelmann    if (is_array($urlParameters)) {
5044bde2196Slisps        if (isset($urlParameters['rev']) && !$urlParameters['rev']) unset($urlParameters['rev']);
50564159a61SAndreas Gohr        if (isset($urlParameters['at']) && $conf['date_at_format']) {
50664159a61SAndreas Gohr            $urlParameters['at'] = date($conf['date_at_format'], $urlParameters['at']);
50764159a61SAndreas Gohr        }
50816f15a81SDominik Eckelmann        $urlParameters = buildURLparams($urlParameters, $separator);
5096de3759aSAndreas Gohr    } else {
51016f15a81SDominik Eckelmann        $urlParameters = str_replace(',', $separator, $urlParameters);
5116de3759aSAndreas Gohr    }
51216f15a81SDominik Eckelmann    if ($id === '') {
51316f15a81SDominik Eckelmann        $id = $conf['start'];
51416f15a81SDominik Eckelmann    }
515f3f0262cSandi    $id = idfilter($id);
51616f15a81SDominik Eckelmann    if ($absolute) {
517ed7b5f09Sandi        $xlink = DOKU_URL;
518ed7b5f09Sandi    } else {
519ed7b5f09Sandi        $xlink = DOKU_BASE;
520ed7b5f09Sandi    }
521f3f0262cSandi
5226c7843b5Sandi    if ($conf['userewrite'] == 2) {
5236c7843b5Sandi        $xlink .= DOKU_SCRIPT . '/' . $id;
52416f15a81SDominik Eckelmann        if ($urlParameters) $xlink .= '?' . $urlParameters;
5256c7843b5Sandi    } elseif ($conf['userewrite']) {
526f3f0262cSandi        $xlink .= $id;
52716f15a81SDominik Eckelmann        if ($urlParameters) $xlink .= '?' . $urlParameters;
52840b5fb5bSPhy    } elseif ($id !== '') {
5296c7843b5Sandi        $xlink .= DOKU_SCRIPT . '?id=' . $id;
53016f15a81SDominik Eckelmann        if ($urlParameters) $xlink .= $separator . $urlParameters;
531bce3726dSAndreas Gohr    } else {
532bce3726dSAndreas Gohr        $xlink .= DOKU_SCRIPT;
53316f15a81SDominik Eckelmann        if ($urlParameters) $xlink .= '?' . $urlParameters;
534f3f0262cSandi    }
535f3f0262cSandi
536f3f0262cSandi    return $xlink;
537f3f0262cSandi}
538f3f0262cSandi
539f3f0262cSandi/**
540f5c2808fSBen Coburn * This builds a link to an alternate page format
541f5c2808fSBen Coburn *
542f5c2808fSBen Coburn * Handles URL rewriting if enabled. Follows the style of wl().
543f5c2808fSBen Coburn *
5444bc480e5SAndreas Gohr * @param string $id page id, defaults to start page
5454bc480e5SAndreas Gohr * @param string $format the export renderer to use
5464bc480e5SAndreas Gohr * @param string|array $urlParameters URL parameters, associative array recommended
5474bc480e5SAndreas Gohr * @param bool $abs request an absolute URL instead of relative
5484bc480e5SAndreas Gohr * @param string $sep parameter separator
5494bc480e5SAndreas Gohr * @return string
5508b19906eSAndreas Gohr * @author Ben Coburn <btcoburn@silicodon.net>
551f5c2808fSBen Coburn */
552d868eb89SAndreas Gohrfunction exportlink($id = '', $format = 'raw', $urlParameters = '', $abs = false, $sep = '&amp;')
553d868eb89SAndreas Gohr{
554f5c2808fSBen Coburn    global $conf;
5554bc480e5SAndreas Gohr    if (is_array($urlParameters)) {
5564bc480e5SAndreas Gohr        $urlParameters = buildURLparams($urlParameters, $sep);
557f5c2808fSBen Coburn    } else {
5584bc480e5SAndreas Gohr        $urlParameters = str_replace(',', $sep, $urlParameters);
559f5c2808fSBen Coburn    }
560f5c2808fSBen Coburn
561f5c2808fSBen Coburn    $format = rawurlencode($format);
562f5c2808fSBen Coburn    $id = idfilter($id);
563f5c2808fSBen Coburn    if ($abs) {
564f5c2808fSBen Coburn        $xlink = DOKU_URL;
565f5c2808fSBen Coburn    } else {
566f5c2808fSBen Coburn        $xlink = DOKU_BASE;
567f5c2808fSBen Coburn    }
568f5c2808fSBen Coburn
569f5c2808fSBen Coburn    if ($conf['userewrite'] == 2) {
570f5c2808fSBen Coburn        $xlink .= DOKU_SCRIPT . '/' . $id . '?do=export_' . $format;
5714bc480e5SAndreas Gohr        if ($urlParameters) $xlink .= $sep . $urlParameters;
572f5c2808fSBen Coburn    } elseif ($conf['userewrite'] == 1) {
573f5c2808fSBen Coburn        $xlink .= '_export/' . $format . '/' . $id;
5744bc480e5SAndreas Gohr        if ($urlParameters) $xlink .= '?' . $urlParameters;
575f5c2808fSBen Coburn    } else {
576f5c2808fSBen Coburn        $xlink .= DOKU_SCRIPT . '?do=export_' . $format . $sep . 'id=' . $id;
5774bc480e5SAndreas Gohr        if ($urlParameters) $xlink .= $sep . $urlParameters;
578f5c2808fSBen Coburn    }
579f5c2808fSBen Coburn
580f5c2808fSBen Coburn    return $xlink;
581f5c2808fSBen Coburn}
582f5c2808fSBen Coburn
583f5c2808fSBen Coburn/**
5846de3759aSAndreas Gohr * Build a link to a media file
5856de3759aSAndreas Gohr *
5866de3759aSAndreas Gohr * Will return a link to the detail page if $direct is false
5878c08db0aSAndreas Gohr *
5888c08db0aSAndreas Gohr * The $more parameter should always be given as array, the function then
5898c08db0aSAndreas Gohr * will strip default parameters to produce even cleaner URLs
5908c08db0aSAndreas Gohr *
5913272d797SAndreas Gohr * @param string $id the media file id or URL
5923272d797SAndreas Gohr * @param mixed $more string or array with additional parameters
5933272d797SAndreas Gohr * @param bool $direct link to detail page if false
5943272d797SAndreas Gohr * @param string $sep URL parameter separator
5953272d797SAndreas Gohr * @param bool $abs Create an absolute URL
5963272d797SAndreas Gohr * @return string
5976de3759aSAndreas Gohr */
598d868eb89SAndreas Gohrfunction ml($id = '', $more = '', $direct = true, $sep = '&amp;', $abs = false)
599d868eb89SAndreas Gohr{
6006de3759aSAndreas Gohr    global $conf;
601b9ee6a44SKlap-in    $isexternalimage = media_isexternal($id);
602826d2766SKlap-in    if (!$isexternalimage) {
603826d2766SKlap-in        $id = cleanID($id);
604826d2766SKlap-in    }
605826d2766SKlap-in
6066de3759aSAndreas Gohr    if (is_array($more)) {
6070f4e0092SChristopher Smith        // add token for resized images
60824870174SAndreas Gohr        $w = $more['w'] ?? null;
60924870174SAndreas Gohr        $h = $more['h'] ?? null;
61098fe1ac9SDamien Regad        if ($w || $h || $isexternalimage) {
611357c9a39SDamien Regad            $more['tok'] = media_get_token($id, $w, $h);
6120f4e0092SChristopher Smith        }
6138c08db0aSAndreas Gohr        // strip defaults for shorter URLs
6148c08db0aSAndreas Gohr        if (isset($more['cache']) && $more['cache'] == 'cache') unset($more['cache']);
615443e135dSChristopher Smith        if (empty($more['w'])) unset($more['w']);
616443e135dSChristopher Smith        if (empty($more['h'])) unset($more['h']);
6178c08db0aSAndreas Gohr        if (isset($more['id']) && $direct) unset($more['id']);
61878b874e6Slisps        if (isset($more['rev']) && !$more['rev']) unset($more['rev']);
619b174aeaeSchris        $more = buildURLparams($more, $sep);
6206de3759aSAndreas Gohr    } else {
62124870174SAndreas Gohr        $matches = [];
622cc036f74SKlap-in        if (preg_match_all('/\b(w|h)=(\d*)\b/', $more, $matches, PREG_SET_ORDER) || $isexternalimage) {
62324870174SAndreas Gohr            $resize = ['w' => 0, 'h' => 0];
6245e7db1e2SChristopher Smith            foreach ($matches as $match) {
6255e7db1e2SChristopher Smith                $resize[$match[1]] = $match[2];
6265e7db1e2SChristopher Smith            }
627cc036f74SKlap-in            $more .= $more === '' ? '' : $sep;
628cc036f74SKlap-in            $more .= 'tok=' . media_get_token($id, $resize['w'], $resize['h']);
6295e7db1e2SChristopher Smith        }
6308c08db0aSAndreas Gohr        $more = str_replace('cache=cache', '', $more); //skip default
6318c08db0aSAndreas Gohr        $more = str_replace(',,', ',', $more);
632b174aeaeSchris        $more = str_replace(',', $sep, $more);
6336de3759aSAndreas Gohr    }
6346de3759aSAndreas Gohr
63555b2b31bSAndreas Gohr    if ($abs) {
63655b2b31bSAndreas Gohr        $xlink = DOKU_URL;
63755b2b31bSAndreas Gohr    } else {
6386de3759aSAndreas Gohr        $xlink = DOKU_BASE;
63955b2b31bSAndreas Gohr    }
6406de3759aSAndreas Gohr
6416de3759aSAndreas Gohr    // external URLs are always direct without rewriting
642826d2766SKlap-in    if ($isexternalimage) {
6436de3759aSAndreas Gohr        $xlink .= 'lib/exe/fetch.php';
644cc036f74SKlap-in        $xlink .= '?' . $more;
645b174aeaeSchris        $xlink .= $sep . 'media=' . rawurlencode($id);
6466de3759aSAndreas Gohr        return $xlink;
6476de3759aSAndreas Gohr    }
6486de3759aSAndreas Gohr
6496de3759aSAndreas Gohr    $id = idfilter($id);
6506de3759aSAndreas Gohr
6516de3759aSAndreas Gohr    // decide on scriptname
6526de3759aSAndreas Gohr    if ($direct) {
6536de3759aSAndreas Gohr        if ($conf['userewrite'] == 1) {
6546de3759aSAndreas Gohr            $script = '_media';
6556de3759aSAndreas Gohr        } else {
6566de3759aSAndreas Gohr            $script = 'lib/exe/fetch.php';
6576de3759aSAndreas Gohr        }
65824870174SAndreas Gohr    } elseif ($conf['userewrite'] == 1) {
6596de3759aSAndreas Gohr        $script = '_detail';
6606de3759aSAndreas Gohr    } else {
6616de3759aSAndreas Gohr        $script = 'lib/exe/detail.php';
6626de3759aSAndreas Gohr    }
6636de3759aSAndreas Gohr
6646de3759aSAndreas Gohr    // build URL based on rewrite mode
6656de3759aSAndreas Gohr    if ($conf['userewrite']) {
6666de3759aSAndreas Gohr        $xlink .= $script . '/' . $id;
6676de3759aSAndreas Gohr        if ($more) $xlink .= '?' . $more;
66824870174SAndreas Gohr    } elseif ($more) {
669a99d3236SEsther Brunner        $xlink .= $script . '?' . $more;
670b174aeaeSchris        $xlink .= $sep . 'media=' . $id;
6716de3759aSAndreas Gohr    } else {
672a99d3236SEsther Brunner        $xlink .= $script . '?media=' . $id;
6736de3759aSAndreas Gohr    }
6746de3759aSAndreas Gohr
6756de3759aSAndreas Gohr    return $xlink;
6766de3759aSAndreas Gohr}
6776de3759aSAndreas Gohr
6786de3759aSAndreas Gohr/**
67925ca5b17SAndreas Gohr * Returns the URL to the DokuWiki base script
68015fae107Sandi *
68125ca5b17SAndreas Gohr * Consider using wl() instead, unless you absoutely need the doku.php endpoint
68225ca5b17SAndreas Gohr *
6838b19906eSAndreas Gohr * @return string
68415fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
685140cfbcdSGerrit Uitslag *
686f3f0262cSandi */
687d868eb89SAndreas Gohrfunction script()
688d868eb89SAndreas Gohr{
689ed7b5f09Sandi    return DOKU_BASE . DOKU_SCRIPT;
690f3f0262cSandi}
691f3f0262cSandi
692f3f0262cSandi/**
69315fae107Sandi * Spamcheck against wordlist
69415fae107Sandi *
695f3f0262cSandi * Checks the wikitext against a list of blocked expressions
696f3f0262cSandi * returns true if the text contains any bad words
69715fae107Sandi *
698e403cc58SMichael Klier * Triggers COMMON_WORDBLOCK_BLOCKED
699e403cc58SMichael Klier *
700e403cc58SMichael Klier *  Action Plugins can use this event to inspect the blocked data
701e403cc58SMichael Klier *  and gain information about the user who was blocked.
702e403cc58SMichael Klier *
703e403cc58SMichael Klier *  Event data:
704e403cc58SMichael Klier *    data['matches']  - array of matches
705e403cc58SMichael Klier *    data['userinfo'] - information about the blocked user
706e403cc58SMichael Klier *      [ip]           - ip address
707e403cc58SMichael Klier *      [user]         - username (if logged in)
708e403cc58SMichael Klier *      [mail]         - mail address (if logged in)
709e403cc58SMichael Klier *      [name]         - real name (if logged in)
710e403cc58SMichael Klier *
7118b19906eSAndreas Gohr * @param string $text - optional text to check, if not given the globals are used
7128b19906eSAndreas Gohr * @return bool         - true if a spam word was found
71315fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
7146dffa0e0SAndreas Gohr * @author Michael Klier <chi@chimeric.de>
715140cfbcdSGerrit Uitslag *
716f3f0262cSandi */
717d868eb89SAndreas Gohrfunction checkwordblock($text = '')
718d868eb89SAndreas Gohr{
719f3f0262cSandi    global $TEXT;
7206dffa0e0SAndreas Gohr    global $PRE;
7216dffa0e0SAndreas Gohr    global $SUF;
722e0086ca2SAndreas Gohr    global $SUM;
723f3f0262cSandi    global $conf;
724e403cc58SMichael Klier    global $INFO;
725585bf44eSChristopher Smith    /* @var Input $INPUT */
726585bf44eSChristopher Smith    global $INPUT;
727f3f0262cSandi
728f3f0262cSandi    if (!$conf['usewordblock']) return false;
729f3f0262cSandi
730e0086ca2SAndreas Gohr    if (!$text) $text = "$PRE $TEXT $SUF $SUM";
7316dffa0e0SAndreas Gohr
732041d1964SAndreas Gohr    // we prepare the text a tiny bit to prevent spammers circumventing URL checks
73364159a61SAndreas Gohr    // phpcs:disable Generic.Files.LineLength.TooLong
73464159a61SAndreas Gohr    $text = preg_replace(
73564159a61SAndreas Gohr        '!(\b)(www\.[\w.:?\-;,]+?\.[\w.:?\-;,]+?[\w/\#~:.?+=&%@\!\-.:?\-;,]+?)([.:?\-;,]*[^\w/\#~:.?+=&%@\!\-.:?\-;,])!i',
73664159a61SAndreas Gohr        '\1http://\2 \2\3',
73764159a61SAndreas Gohr        $text
73864159a61SAndreas Gohr    );
73964159a61SAndreas Gohr    // phpcs:enable
740041d1964SAndreas Gohr
741b9ac8716Schris    $wordblocks = getWordblocks();
742a51d08efSAndreas Gohr    // read file in chunks of 200 - this should work around the
7433e2965d7Sandi    // MAX_PATTERN_SIZE in modern PCRE
744a51d08efSAndreas Gohr    $chunksize = 200;
74564259528SAndreas Gohr
746b9ac8716Schris    while ($blocks = array_splice($wordblocks, 0, $chunksize)) {
74724870174SAndreas Gohr        $re = [];
74849eb6e38SAndreas Gohr        // build regexp from blocks
749f3f0262cSandi        foreach ($blocks as $block) {
750f3f0262cSandi            $block = preg_replace('/#.*$/', '', $block);
751f3f0262cSandi            $block = trim($block);
752f3f0262cSandi            if (empty($block)) continue;
753f3f0262cSandi            $re[] = $block;
754f3f0262cSandi        }
75524870174SAndreas Gohr        if (count($re) && preg_match('#(' . implode('|', $re) . ')#si', $text, $matches)) {
756e403cc58SMichael Klier            // prepare event data
75724870174SAndreas Gohr            $data = [];
758e403cc58SMichael Klier            $data['matches'] = $matches;
759585bf44eSChristopher Smith            $data['userinfo']['ip'] = $INPUT->server->str('REMOTE_ADDR');
760585bf44eSChristopher Smith            if ($INPUT->server->str('REMOTE_USER')) {
761585bf44eSChristopher Smith                $data['userinfo']['user'] = $INPUT->server->str('REMOTE_USER');
762e403cc58SMichael Klier                $data['userinfo']['name'] = $INFO['userinfo']['name'];
763e403cc58SMichael Klier                $data['userinfo']['mail'] = $INFO['userinfo']['mail'];
764e403cc58SMichael Klier            }
76524870174SAndreas Gohr            $callback = static fn() => true;
766cbb44eabSAndreas Gohr            return Event::createAndTrigger('COMMON_WORDBLOCK_BLOCKED', $data, $callback, true);
767b9ac8716Schris        }
768703f6fdeSandi    }
769f3f0262cSandi    return false;
770f3f0262cSandi}
771f3f0262cSandi
772f3f0262cSandi/**
773a7580321SZebra North * Return the IP of the client.
77415fae107Sandi *
775a7580321SZebra North * The IP is sourced from, in order of preference:
77615fae107Sandi *
777a7580321SZebra North *   - The X-Real-IP header if $conf[realip] is true.
778d5dd5d1bSAndreas Gohr *   - The X-Forwarded-For header if all the proxies are trusted by $conf[trustedproxies].
779a7580321SZebra North *   - The TCP/IP connection remote address.
780a7580321SZebra North *   - 0.0.0.0 if all else fails.
7816d8affe6SAndreas Gohr *
782a7580321SZebra North * The 'realip' config value should only be set to true if the X-Real-IP header
783a7580321SZebra North * is being added by the web server, otherwise it may be spoofed by the client.
7848b19906eSAndreas Gohr *
785d5dd5d1bSAndreas Gohr * The 'trustedproxies' setting must not allow any IP, otherwise the X-Forwarded-For
786a7580321SZebra North * may be spoofed by the client.
787a7580321SZebra North *
788608cdefcSZebra North * @param bool $single If set only a single IP is returned.
789608cdefcSZebra North *
790a7580321SZebra North * @return string Returns an IP address if 'single' is true, or a comma-separated list
791a7580321SZebra North *                of IP addresses otherwise.
7922f828abfSAndreas Gohr * @author Zebra North <mrzebra@mrzebra.co.uk>
7932f828abfSAndreas Gohr *
794f3f0262cSandi */
7952f828abfSAndreas Gohrfunction clientIP($single = false)
7962f828abfSAndreas Gohr{
797a7580321SZebra North    // Return the first IP in single mode, or all the IPs.
79898b599a6Ssplitbrain    return $single ? Ip::clientIp() : implode(',', Ip::clientIps());
799f3f0262cSandi}
800f3f0262cSandi
801f3f0262cSandi/**
8021c548ebeSAndreas Gohr * Check if the browser is on a mobile device
8031c548ebeSAndreas Gohr *
8041c548ebeSAndreas Gohr * Adapted from the example code at url below
8051c548ebeSAndreas Gohr *
8061c548ebeSAndreas Gohr * @link http://www.brainhandles.com/2007/10/15/detecting-mobile-browsers/#code
807140cfbcdSGerrit Uitslag *
80864159a61SAndreas Gohr * @deprecated 2018-04-27 you probably want media queries instead anyway
809140cfbcdSGerrit Uitslag * @return bool if true, client is mobile browser; otherwise false
8101c548ebeSAndreas Gohr */
811d868eb89SAndreas Gohrfunction clientismobile()
812d868eb89SAndreas Gohr{
813585bf44eSChristopher Smith    /* @var Input $INPUT */
814585bf44eSChristopher Smith    global $INPUT;
8151c548ebeSAndreas Gohr
816585bf44eSChristopher Smith    if ($INPUT->server->has('HTTP_X_WAP_PROFILE')) return true;
8171c548ebeSAndreas Gohr
818585bf44eSChristopher Smith    if (preg_match('/wap\.|\.wap/i', $INPUT->server->str('HTTP_ACCEPT'))) return true;
8191c548ebeSAndreas Gohr
820585bf44eSChristopher Smith    if (!$INPUT->server->has('HTTP_USER_AGENT')) return false;
8211c548ebeSAndreas Gohr
82224870174SAndreas Gohr    $uamatches = implode(
82364159a61SAndreas Gohr        '|',
82464159a61SAndreas Gohr        [
82564159a61SAndreas Gohr            'midp', 'j2me', 'avantg', 'docomo', 'novarra', 'palmos', 'palmsource', '240x320', 'opwv',
82664159a61SAndreas Gohr            'chtml', 'pda', 'windows ce', 'mmp\/', 'blackberry', 'mib\/', 'symbian', 'wireless', 'nokia',
82764159a61SAndreas Gohr            'hand', 'mobi', 'phone', 'cdm', 'up\.b', 'audio', 'SIE\-', 'SEC\-', 'samsung', 'HTC', 'mot\-',
82864159a61SAndreas Gohr            'mitsu', 'sagem', 'sony', 'alcatel', 'lg', 'erics', 'vx', 'NEC', 'philips', 'mmm', 'xx',
82964159a61SAndreas Gohr            'panasonic', 'sharp', 'wap', 'sch', 'rover', 'pocket', 'benq', 'java', 'pt', 'pg', 'vox',
83064159a61SAndreas Gohr            'amoi', 'bird', 'compal', 'kg', 'voda', 'sany', 'kdd', 'dbt', 'sendo', 'sgh', 'gradi', 'jb',
83164159a61SAndreas Gohr            '\d\d\di', 'moto'
83264159a61SAndreas Gohr        ]
83364159a61SAndreas Gohr    );
8341c548ebeSAndreas Gohr
835585bf44eSChristopher Smith    if (preg_match("/$uamatches/i", $INPUT->server->str('HTTP_USER_AGENT'))) return true;
8361c548ebeSAndreas Gohr
8371c548ebeSAndreas Gohr    return false;
8381c548ebeSAndreas Gohr}
8391c548ebeSAndreas Gohr
8401c548ebeSAndreas Gohr/**
8416efc45a2SDmitry Katsubo * check if a given link is interwiki link
8426efc45a2SDmitry Katsubo *
8436efc45a2SDmitry Katsubo * @param string $link the link, e.g. "wiki>page"
8446efc45a2SDmitry Katsubo * @return bool
8456efc45a2SDmitry Katsubo */
846d868eb89SAndreas Gohrfunction link_isinterwiki($link)
847d868eb89SAndreas Gohr{
8486efc45a2SDmitry Katsubo    if (preg_match('/^[a-zA-Z0-9\.]+>/u', $link)) return true;
8496efc45a2SDmitry Katsubo    return false;
8506efc45a2SDmitry Katsubo}
8516efc45a2SDmitry Katsubo
8526efc45a2SDmitry Katsubo/**
85363211f61SGlen Harris * Convert one or more comma separated IPs to hostnames
85463211f61SGlen Harris *
85522ef1e32SAndreas Gohr * If $conf['dnslookups'] is disabled it simply returns the input string
85622ef1e32SAndreas Gohr *
8573272d797SAndreas Gohr * @param string $ips comma separated list of IP addresses
8583272d797SAndreas Gohr * @return string a comma separated list of hostnames
8598b19906eSAndreas Gohr * @author Glen Harris <astfgl@iamnota.org>
8608b19906eSAndreas Gohr *
86163211f61SGlen Harris */
862d868eb89SAndreas Gohrfunction gethostsbyaddrs($ips)
863d868eb89SAndreas Gohr{
86422ef1e32SAndreas Gohr    global $conf;
86522ef1e32SAndreas Gohr    if (!$conf['dnslookups']) return $ips;
86622ef1e32SAndreas Gohr
86724870174SAndreas Gohr    $hosts = [];
86863211f61SGlen Harris    $ips = explode(',', $ips);
869551a720fSMichael Klier
870551a720fSMichael Klier    if (is_array($ips)) {
8713886270dSAndreas Gohr        foreach ($ips as $ip) {
872551a720fSMichael Klier            $hosts[] = gethostbyaddr(trim($ip));
87363211f61SGlen Harris        }
87424870174SAndreas Gohr        return implode(',', $hosts);
875551a720fSMichael Klier    } else {
876551a720fSMichael Klier        return gethostbyaddr(trim($ips));
877551a720fSMichael Klier    }
87863211f61SGlen Harris}
87963211f61SGlen Harris
88063211f61SGlen Harris/**
88115fae107Sandi * Checks if a given page is currently locked.
88215fae107Sandi *
883f3f0262cSandi * removes stale lockfiles
88415fae107Sandi *
885140cfbcdSGerrit Uitslag * @param string $id page id
886140cfbcdSGerrit Uitslag * @return bool page is locked?
8878b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
8888b19906eSAndreas Gohr *
889f3f0262cSandi */
890d868eb89SAndreas Gohrfunction checklock($id)
891d868eb89SAndreas Gohr{
892f3f0262cSandi    global $conf;
893585bf44eSChristopher Smith    /* @var Input $INPUT */
894585bf44eSChristopher Smith    global $INPUT;
895585bf44eSChristopher Smith
896c9b4bd1eSBen Coburn    $lock = wikiLockFN($id);
897f3f0262cSandi
898f3f0262cSandi    //no lockfile
89979e79377SAndreas Gohr    if (!file_exists($lock)) return false;
900f3f0262cSandi
901f3f0262cSandi    //lockfile expired
902f3f0262cSandi    if ((time() - filemtime($lock)) > $conf['locktime']) {
903d8186216SBen Coburn        @unlink($lock);
904f3f0262cSandi        return false;
905f3f0262cSandi    }
906f3f0262cSandi
907f3f0262cSandi    //my own lock
9085f21556dSDamien Regad    [$ip, $session] = sexplode("\n", io_readFile($lock), 2);
90924870174SAndreas Gohr    if ($ip == $INPUT->server->str('REMOTE_USER') || (session_id() && $session === session_id())) {
910f3f0262cSandi        return false;
911f3f0262cSandi    }
912f3f0262cSandi
913f3f0262cSandi    return $ip;
914f3f0262cSandi}
915f3f0262cSandi
916f3f0262cSandi/**
91715fae107Sandi * Lock a page for editing
91815fae107Sandi *
9198b19906eSAndreas Gohr * @param string $id page id to lock
92015fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
921140cfbcdSGerrit Uitslag *
922f3f0262cSandi */
923d868eb89SAndreas Gohrfunction lock($id)
924d868eb89SAndreas Gohr{
925544ed901SDaniel Calviño Sánchez    global $conf;
926585bf44eSChristopher Smith    /* @var Input $INPUT */
927585bf44eSChristopher Smith    global $INPUT;
928544ed901SDaniel Calviño Sánchez
929544ed901SDaniel Calviño Sánchez    if ($conf['locktime'] == 0) {
930544ed901SDaniel Calviño Sánchez        return;
931544ed901SDaniel Calviño Sánchez    }
932544ed901SDaniel Calviño Sánchez
933c9b4bd1eSBen Coburn    $lock = wikiLockFN($id);
934585bf44eSChristopher Smith    if ($INPUT->server->str('REMOTE_USER')) {
935585bf44eSChristopher Smith        io_saveFile($lock, $INPUT->server->str('REMOTE_USER'));
936f3f0262cSandi    } else {
93785fef7e2SAndreas Gohr        io_saveFile($lock, clientIP() . "\n" . session_id());
938f3f0262cSandi    }
939f3f0262cSandi}
940f3f0262cSandi
941f3f0262cSandi/**
94215fae107Sandi * Unlock a page if it was locked by the user
943f3f0262cSandi *
9443272d797SAndreas Gohr * @param string $id page id to unlock
94515fae107Sandi * @return bool true if a lock was removed
9468b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
9478b19906eSAndreas Gohr *
948f3f0262cSandi */
949d868eb89SAndreas Gohrfunction unlock($id)
950d868eb89SAndreas Gohr{
951585bf44eSChristopher Smith    /* @var Input $INPUT */
952585bf44eSChristopher Smith    global $INPUT;
953585bf44eSChristopher Smith
954c9b4bd1eSBen Coburn    $lock = wikiLockFN($id);
95579e79377SAndreas Gohr    if (file_exists($lock)) {
95624870174SAndreas Gohr        @[$ip, $session] = explode("\n", io_readFile($lock));
957c0dd3914SAdaKaleh        if ($ip == $INPUT->server->str('REMOTE_USER') || $session == session_id()) {
958f3f0262cSandi            @unlink($lock);
959f3f0262cSandi            return true;
960f3f0262cSandi        }
961f3f0262cSandi    }
962f3f0262cSandi    return false;
963f3f0262cSandi}
964f3f0262cSandi
965f3f0262cSandi/**
966f3f0262cSandi * convert line ending to unix format
967f3f0262cSandi *
9686db7468bSAndreas Gohr * also makes sure the given text is valid UTF-8
9696db7468bSAndreas Gohr *
9708b19906eSAndreas Gohr * @param string $text
9718b19906eSAndreas Gohr * @return string
97215fae107Sandi * @see    formText() for 2crlf conversion
97315fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
974140cfbcdSGerrit Uitslag *
975f3f0262cSandi */
976d868eb89SAndreas Gohrfunction cleanText($text)
977d868eb89SAndreas Gohr{
978f3f0262cSandi    $text = preg_replace("/(\015\012)|(\015)/", "\012", $text);
9796db7468bSAndreas Gohr
9806db7468bSAndreas Gohr    // if the text is not valid UTF-8 we simply assume latin1
9816db7468bSAndreas Gohr    // this won't break any worse than it breaks with the wrong encoding
9826db7468bSAndreas Gohr    // but might actually fix the problem in many cases
98353c68e5cSAndreas Gohr    if (!Clean::isUtf8($text)) $text = Conversion::fromLatin1($text);
9846db7468bSAndreas Gohr
985f3f0262cSandi    return $text;
986f3f0262cSandi}
987f3f0262cSandi
988f3f0262cSandi/**
989f3f0262cSandi * Prepares text for print in Webforms by encoding special chars.
990f3f0262cSandi * It also converts line endings to Windows format which is
991f3f0262cSandi * pseudo standard for webforms.
992f3f0262cSandi *
9938b19906eSAndreas Gohr * @param string $text
9948b19906eSAndreas Gohr * @return string
99515fae107Sandi * @see    cleanText() for 2unix conversion
99615fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
997140cfbcdSGerrit Uitslag *
998f3f0262cSandi */
999d868eb89SAndreas Gohrfunction formText($text)
1000d868eb89SAndreas Gohr{
1001a46a37efSAndreas Gohr    $text = str_replace("\012", "\015\012", $text ?? '');
1002f3f0262cSandi    return htmlspecialchars($text);
1003f3f0262cSandi}
1004f3f0262cSandi
1005f3f0262cSandi/**
100615fae107Sandi * Returns the specified local text in raw format
100715fae107Sandi *
1008140cfbcdSGerrit Uitslag * @param string $id page id
1009140cfbcdSGerrit Uitslag * @param string $ext extension of file being read, default 'txt'
1010140cfbcdSGerrit Uitslag * @return string
10118b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
10128b19906eSAndreas Gohr *
1013f3f0262cSandi */
1014d868eb89SAndreas Gohrfunction rawLocale($id, $ext = 'txt')
1015d868eb89SAndreas Gohr{
10162adaf2b8SAndreas Gohr    return io_readFile(localeFN($id, $ext));
1017f3f0262cSandi}
1018f3f0262cSandi
1019f3f0262cSandi/**
1020f3f0262cSandi * Returns the raw WikiText
102115fae107Sandi *
1022140cfbcdSGerrit Uitslag * @param string $id page id
1023e0c26282SGerrit Uitslag * @param string|int $rev timestamp when a revision of wikitext is desired
1024140cfbcdSGerrit Uitslag * @return string
10258b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
10268b19906eSAndreas Gohr *
1027f3f0262cSandi */
1028d868eb89SAndreas Gohrfunction rawWiki($id, $rev = '')
1029d868eb89SAndreas Gohr{
1030cc7d0c94SBen Coburn    return io_readWikiPage(wikiFN($id, $rev), $id, $rev);
1031f3f0262cSandi}
1032f3f0262cSandi
1033f3f0262cSandi/**
10347146cee2SAndreas Gohr * Returns the pagetemplate contents for the ID's namespace
10357146cee2SAndreas Gohr *
10367b84afa2SAndreas Gohr * @triggers COMMON_PAGETPL_LOAD
1037140cfbcdSGerrit Uitslag * @param string $id the id of the page to be created
1038140cfbcdSGerrit Uitslag * @return string parsed pagetemplate content
10398b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
10408b19906eSAndreas Gohr *
10417146cee2SAndreas Gohr */
1042d868eb89SAndreas Gohrfunction pageTemplate($id)
1043d868eb89SAndreas Gohr{
1044a15ce62dSEsther Brunner    global $conf;
1045e29549feSAndreas Gohr
1046fe17917eSAdrian Lang    if (is_array($id)) $id = $id[0];
1047e29549feSAndreas Gohr
10487b84afa2SAndreas Gohr    // prepare initial event data
104924870174SAndreas Gohr    $data = [
10507b84afa2SAndreas Gohr        'id' => $id, // the id of the page to be created
10517b84afa2SAndreas Gohr        'tpl' => '', // the text used as template
10527b84afa2SAndreas Gohr        'tplfile' => '', // the file above text was/should be loaded from
105324870174SAndreas Gohr        'doreplace' => true,
105424870174SAndreas Gohr    ];
10557b84afa2SAndreas Gohr
1056e1d9dcc8SAndreas Gohr    $evt = new Event('COMMON_PAGETPL_LOAD', $data);
10577b84afa2SAndreas Gohr    if ($evt->advise_before(true)) {
10587b84afa2SAndreas Gohr        // the before event might have loaded the content already
10597b84afa2SAndreas Gohr        if (empty($data['tpl'])) {
10607b84afa2SAndreas Gohr            // if the before event did not set a template file, try to find one
10617b84afa2SAndreas Gohr            if (empty($data['tplfile'])) {
1062fe17917eSAdrian Lang                $path = dirname(wikiFN($id));
106379e79377SAndreas Gohr                if (file_exists($path . '/_template.txt')) {
10647b84afa2SAndreas Gohr                    $data['tplfile'] = $path . '/_template.txt';
1065e29549feSAndreas Gohr                } else {
1066e29549feSAndreas Gohr                    // search upper namespaces for templates
1067e29549feSAndreas Gohr                    $len = strlen(rtrim($conf['datadir'], '/'));
1068e29549feSAndreas Gohr                    while (strlen($path) >= $len) {
106979e79377SAndreas Gohr                        if (file_exists($path . '/__template.txt')) {
10707b84afa2SAndreas Gohr                            $data['tplfile'] = $path . '/__template.txt';
1071e29549feSAndreas Gohr                            break;
1072e29549feSAndreas Gohr                        }
1073e29549feSAndreas Gohr                        $path = substr($path, 0, strrpos($path, '/'));
1074e29549feSAndreas Gohr                    }
1075e29549feSAndreas Gohr                }
10767b84afa2SAndreas Gohr            }
10777b84afa2SAndreas Gohr            // load the content
10783d7ac595SMichael Hamann            $data['tpl'] = io_readFile($data['tplfile']);
10797b84afa2SAndreas Gohr        }
1080a1bbd05bSMichael Hamann        if ($data['doreplace']) parsePageTemplate($data);
10817b84afa2SAndreas Gohr    }
10827b84afa2SAndreas Gohr    $evt->advise_after();
10837b84afa2SAndreas Gohr    unset($evt);
10847b84afa2SAndreas Gohr
1085fe17917eSAdrian Lang    return $data['tpl'];
10862b1223ecSAdrian Lang}
10872b1223ecSAdrian Lang
10882b1223ecSAdrian Lang/**
10892b1223ecSAdrian Lang * Performs common page template replacements
10907b84afa2SAndreas Gohr * This works on data from COMMON_PAGETPL_LOAD
10912b1223ecSAdrian Lang *
1092140cfbcdSGerrit Uitslag * @param array $data array with event data
1093140cfbcdSGerrit Uitslag * @return string
10948b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
10958b19906eSAndreas Gohr *
10962b1223ecSAdrian Lang */
1097d868eb89SAndreas Gohrfunction parsePageTemplate(&$data)
1098d868eb89SAndreas Gohr{
10993272d797SAndreas Gohr    /**
11003272d797SAndreas Gohr     * @var string $id the id of the page to be created
11013272d797SAndreas Gohr     * @var string $tpl the text used as template
11023272d797SAndreas Gohr     * @var string $tplfile the file above text was/should be loaded from
11033272d797SAndreas Gohr     * @var bool $doreplace should wildcard replacements be done on the text?
11043272d797SAndreas Gohr     */
1105fe17917eSAdrian Lang    extract($data);
1106fe17917eSAdrian Lang
1107b856f7dfSAdrian Lang    global $USERINFO;
1108bce53b1fSAdrian Lang    global $conf;
1109585bf44eSChristopher Smith    /* @var Input $INPUT */
1110585bf44eSChristopher Smith    global $INPUT;
1111e29549feSAndreas Gohr
1112e29549feSAndreas Gohr    // replace placeholders
111326ece5a7SAndreas Gohr    $file = noNS($id);
111437c1acbdSAdrian Lang    $page = strtr($file, $conf['sepchar'], ' ');
111526ece5a7SAndreas Gohr
11163272d797SAndreas Gohr    $tpl = str_replace(
111724870174SAndreas Gohr        [
111826ece5a7SAndreas Gohr            '@ID@',
111926ece5a7SAndreas Gohr            '@NS@',
11208a7bcf66SShota Miyazaki            '@CURNS@',
1121a3db0ab0SSimon Lees            '@!CURNS@',
1122a3db0ab0SSimon Lees            '@!!CURNS@',
1123a3db0ab0SSimon Lees            '@!CURNS!@',
112426ece5a7SAndreas Gohr            '@FILE@',
112526ece5a7SAndreas Gohr            '@!FILE@',
112626ece5a7SAndreas Gohr            '@!FILE!@',
112726ece5a7SAndreas Gohr            '@PAGE@',
112826ece5a7SAndreas Gohr            '@!PAGE@',
112926ece5a7SAndreas Gohr            '@!!PAGE@',
113026ece5a7SAndreas Gohr            '@!PAGE!@',
113126ece5a7SAndreas Gohr            '@USER@',
113226ece5a7SAndreas Gohr            '@NAME@',
113326ece5a7SAndreas Gohr            '@MAIL@',
113424870174SAndreas Gohr            '@DATE@'
113524870174SAndreas Gohr        ],
113624870174SAndreas Gohr        [
113726ece5a7SAndreas Gohr            $id,
113826ece5a7SAndreas Gohr            getNS($id),
11398a7bcf66SShota Miyazaki            curNS($id),
114024870174SAndreas Gohr            PhpString::ucfirst(curNS($id)),
114124870174SAndreas Gohr            PhpString::ucwords(curNS($id)),
114224870174SAndreas Gohr            PhpString::strtoupper(curNS($id)),
114326ece5a7SAndreas Gohr            $file,
114424870174SAndreas Gohr            PhpString::ucfirst($file),
114524870174SAndreas Gohr            PhpString::strtoupper($file),
114626ece5a7SAndreas Gohr            $page,
114724870174SAndreas Gohr            PhpString::ucfirst($page),
114824870174SAndreas Gohr            PhpString::ucwords($page),
114924870174SAndreas Gohr            PhpString::strtoupper($page),
1150585bf44eSChristopher Smith            $INPUT->server->str('REMOTE_USER'),
11513e9ae63dSPhy            $USERINFO ? $USERINFO['name'] : '',
11523e9ae63dSPhy            $USERINFO ? $USERINFO['mail'] : '',
115324870174SAndreas Gohr            $conf['dformat']
115424870174SAndreas Gohr        ],
115524870174SAndreas Gohr        $tpl
11563272d797SAndreas Gohr    );
115726ece5a7SAndreas Gohr
11587d644fc8SAndreas Gohr    // we need the callback to work around strftime's char limit
1159bad6fc0dSAndreas Gohr    $tpl = preg_replace_callback(
1160bad6fc0dSAndreas Gohr        '/%./',
116124870174SAndreas Gohr        static fn($m) => dformat(null, $m[0]),
1162bad6fc0dSAndreas Gohr        $tpl
1163bad6fc0dSAndreas Gohr    );
1164d535a2e9Sstretchyboy    $data['tpl'] = $tpl;
1165a15ce62dSEsther Brunner    return $tpl;
11667146cee2SAndreas Gohr}
11677146cee2SAndreas Gohr
11687146cee2SAndreas Gohr/**
116915fae107Sandi * Returns the raw Wiki Text in three slices.
117015fae107Sandi *
117115fae107Sandi * The range parameter needs to have the form "from-to"
117215cfe303Sandi * and gives the range of the section in bytes - no
117315cfe303Sandi * UTF-8 awareness is needed.
1174f3f0262cSandi * The returned order is prefix, section and suffix.
117515fae107Sandi *
1176140cfbcdSGerrit Uitslag * @param string $range in form "from-to"
1177140cfbcdSGerrit Uitslag * @param string $id page id
1178140cfbcdSGerrit Uitslag * @param string $rev optional, the revision timestamp
117942ea7f44SGerrit Uitslag * @return string[] with three slices
11808b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
11818b19906eSAndreas Gohr *
1182f3f0262cSandi */
1183d868eb89SAndreas Gohrfunction rawWikiSlices($range, $id, $rev = '')
1184d868eb89SAndreas Gohr{
1185cc7d0c94SBen Coburn    $text = io_readWikiPage(wikiFN($id, $rev), $id, $rev);
1186f3f0262cSandi
118780fcb268SAdrian Lang    // Parse range
118824870174SAndreas Gohr    [$from, $to] = sexplode('-', $range, 2);
118980fcb268SAdrian Lang    // Make range zero-based, use defaults if marker is missing
119024870174SAndreas Gohr    $from = $from ? $from - 1 : (0);
119124870174SAndreas Gohr    $to = $to ? $to - 1 : (strlen($text));
119280fcb268SAdrian Lang
119324870174SAndreas Gohr    $slices = [];
119480fcb268SAdrian Lang    $slices[0] = substr($text, 0, $from);
119580fcb268SAdrian Lang    $slices[1] = substr($text, $from, $to - $from);
119615cfe303Sandi    $slices[2] = substr($text, $to);
1197f3f0262cSandi    return $slices;
1198f3f0262cSandi}
1199f3f0262cSandi
1200f3f0262cSandi/**
120115fae107Sandi * Joins wiki text slices
120215fae107Sandi *
120380fcb268SAdrian Lang * function to join the text slices.
1204f3f0262cSandi * When the pretty parameter is set to true it adds additional empty
1205f3f0262cSandi * lines between sections if needed (used on saving).
120615fae107Sandi *
1207140cfbcdSGerrit Uitslag * @param string $pre prefix
1208140cfbcdSGerrit Uitslag * @param string $text text in the middle
1209140cfbcdSGerrit Uitslag * @param string $suf suffix
1210140cfbcdSGerrit Uitslag * @param bool $pretty add additional empty lines between sections
1211140cfbcdSGerrit Uitslag * @return string
12128b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
12138b19906eSAndreas Gohr *
1214f3f0262cSandi */
1215d868eb89SAndreas Gohrfunction con($pre, $text, $suf, $pretty = false)
1216d868eb89SAndreas Gohr{
1217f3f0262cSandi    if ($pretty) {
12187d34963bSAndreas Gohr        if (
12196c16a3a9Sfiwswe            $pre !== '' && !str_ends_with($pre, "\n") &&
12206c16a3a9Sfiwswe            !str_starts_with($text, "\n")
12213272d797SAndreas Gohr        ) {
122280fcb268SAdrian Lang            $pre .= "\n";
122380fcb268SAdrian Lang        }
12247d34963bSAndreas Gohr        if (
12256c16a3a9Sfiwswe            $suf !== '' && !str_ends_with($text, "\n") &&
12266c16a3a9Sfiwswe            !str_starts_with($suf, "\n")
12273272d797SAndreas Gohr        ) {
122880fcb268SAdrian Lang            $text .= "\n";
122980fcb268SAdrian Lang        }
1230f3f0262cSandi    }
1231f3f0262cSandi
1232f3f0262cSandi    return $pre . $text . $suf;
1233f3f0262cSandi}
1234f3f0262cSandi
1235f3f0262cSandi/**
1236b24d9195SAndreas Gohr * Checks if the current page version is newer than the last entry in the page's
1237b24d9195SAndreas Gohr * changelog. If so, we assume it has been an external edit and we create an
1238b24d9195SAndreas Gohr * attic copy and add a proper changelog line.
1239b24d9195SAndreas Gohr *
1240b24d9195SAndreas Gohr * This check is only executed when the page is about to be saved again from the
12418b19906eSAndreas Gohr * wiki, triggered in @param string $id the page ID
12428b19906eSAndreas Gohr * @see saveWikiText()
1243b24d9195SAndreas Gohr *
124469f9b481SSatoshi Sahara * @deprecated 2021-11-28
1245b24d9195SAndreas Gohr */
1246d868eb89SAndreas Gohrfunction detectExternalEdit($id)
1247d868eb89SAndreas Gohr{
124879a2d784SGerrit Uitslag    dbg_deprecated(PageFile::class . '::detectExternalEdit()');
1249b24e9c4aSSatoshi Sahara    (new PageFile($id))->detectExternalEdit();
1250b24d9195SAndreas Gohr}
1251b24d9195SAndreas Gohr
1252b24d9195SAndreas Gohr/**
1253a701424fSBen Coburn * Saves a wikitext by calling io_writeWikiPage.
1254a701424fSBen Coburn * Also directs changelog and attic updates.
125515fae107Sandi *
1256140cfbcdSGerrit Uitslag * @param string $id page id
1257140cfbcdSGerrit Uitslag * @param string $text wikitext being saved
1258140cfbcdSGerrit Uitslag * @param string $summary summary of text update
1259140cfbcdSGerrit Uitslag * @param bool $minor mark this saved version as minor update
12608b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
12618b19906eSAndreas Gohr * @author Ben Coburn <btcoburn@silicodon.net>
12628b19906eSAndreas Gohr *
1263f3f0262cSandi */
1264d868eb89SAndreas Gohrfunction saveWikiText($id, $text, $summary, $minor = false)
1265d868eb89SAndreas Gohr{
1266585bf44eSChristopher Smith
1267b24e9c4aSSatoshi Sahara    // get COMMON_WIKIPAGE_SAVE event data
1268b24e9c4aSSatoshi Sahara    $data = (new PageFile($id))->saveWikiText($text, $summary, $minor);
1269a577fbc2SAndreas Gohr    if (!$data) return; // save was cancelled (for no changes or by a plugin)
1270ac3ed4afSGerrit Uitslag
127126a0801fSAndreas Gohr    // send notify mails
127224870174SAndreas Gohr    ['oldRevision' => $rev, 'newRevision' => $new_rev, 'summary' => $summary] = $data;
12733b813d43SSatoshi Sahara    notify($id, 'admin', $rev, $summary, $minor, $new_rev);
12743b813d43SSatoshi Sahara    notify($id, 'subscribers', $rev, $summary, $minor, $new_rev);
1275f3f0262cSandi
12762eccbdaaSGina Haeussge    // if useheading is enabled, purge the cache of all linking pages
1277fe9ec250SChris Smith    if (useHeading('content')) {
127807ff0babSMichael Hamann        $pages = ft_backlinks($id, true);
12792eccbdaaSGina Haeussge        foreach ($pages as $page) {
12800db5771eSMichael Große            $cache = new CacheRenderer($page, wikiFN($page), 'xhtml');
12812eccbdaaSGina Haeussge            $cache->removeCache();
12822eccbdaaSGina Haeussge        }
12832eccbdaaSGina Haeussge    }
1284f3f0262cSandi}
1285f3f0262cSandi
1286f3f0262cSandi/**
1287d5824ab9SSatoshi Sahara * moves the current version to the attic and returns its revision date
128815fae107Sandi *
1289140cfbcdSGerrit Uitslag * @param string $id page id
1290140cfbcdSGerrit Uitslag * @return int|string revision timestamp
12918b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
12928b19906eSAndreas Gohr *
129369f9b481SSatoshi Sahara * @deprecated 2021-11-28
1294f3f0262cSandi */
1295d868eb89SAndreas Gohrfunction saveOldRevision($id)
1296d868eb89SAndreas Gohr{
129779a2d784SGerrit Uitslag    dbg_deprecated(PageFile::class . '::saveOldRevision()');
1298b24e9c4aSSatoshi Sahara    return (new PageFile($id))->saveOldRevision();
1299f3f0262cSandi}
1300f3f0262cSandi
1301f3f0262cSandi/**
1302fde10de4SAdrian Lang * Sends a notify mail on page change or registration
130326a0801fSAndreas Gohr *
130426a0801fSAndreas Gohr * @param string $id The changed page
1305fde10de4SAdrian Lang * @param string $who Who to notify (admin|subscribers|register)
13063272d797SAndreas Gohr * @param int|string $rev Old page revision
130726a0801fSAndreas Gohr * @param string $summary What changed
130890033e9dSAndreas Gohr * @param boolean $minor Is this a minor edit?
130942ea7f44SGerrit Uitslag * @param string[] $replace Additional string substitutions, @KEY@ to be replaced by value
131083734cddSPhy * @param int|string $current_rev New page revision
13113272d797SAndreas Gohr * @return bool
1312140cfbcdSGerrit Uitslag *
131315fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
1314f3f0262cSandi */
1315d868eb89SAndreas Gohrfunction notify($id, $who, $rev = '', $summary = '', $minor = false, $replace = [], $current_rev = false)
1316d868eb89SAndreas Gohr{
1317f3f0262cSandi    global $conf;
1318585bf44eSChristopher Smith    /* @var Input $INPUT */
1319585bf44eSChristopher Smith    global $INPUT;
1320b158d625SSteven Danz
13216df843eeSAndreas Gohr    // decide if there is something to do, eg. whom to mail
132226a0801fSAndreas Gohr    if ($who == 'admin') {
13233272d797SAndreas Gohr        if (empty($conf['notify'])) return false; //notify enabled?
13242ed38036SAndreas Gohr        $tpl = 'mailtext';
132526a0801fSAndreas Gohr        $to = $conf['notify'];
132626a0801fSAndreas Gohr    } elseif ($who == 'subscribers') {
132784c1127cSAndreas Gohr        if (!actionOK('subscribe')) return false; //subscribers enabled?
1328585bf44eSChristopher Smith        if ($conf['useacl'] && $INPUT->server->str('REMOTE_USER') && $minor) return false; //skip minors
132924870174SAndreas Gohr        $data = ['id' => $id, 'addresslist' => '', 'self' => false, 'replacements' => $replace];
1330cbb44eabSAndreas Gohr        Event::createAndTrigger(
1331dccd6b2bSAndreas Gohr            'COMMON_NOTIFY_ADDRESSLIST',
1332dccd6b2bSAndreas Gohr            $data,
133324870174SAndreas Gohr            [new SubscriberManager(), 'notifyAddresses']
13343272d797SAndreas Gohr        );
13352ed38036SAndreas Gohr        $to = $data['addresslist'];
13362ed38036SAndreas Gohr        if (empty($to)) return false;
13372ed38036SAndreas Gohr        $tpl = 'subscr_single';
133826a0801fSAndreas Gohr    } else {
13393272d797SAndreas Gohr        return false; //just to be safe
134026a0801fSAndreas Gohr    }
134126a0801fSAndreas Gohr
13426df843eeSAndreas Gohr    // prepare content
1343704a815fSMichael Große    $subscription = new PageSubscriptionSender();
134483734cddSPhy    return $subscription->sendPageDiff($to, $tpl, $id, $rev, $summary, $current_rev);
1345f3f0262cSandi}
13462ed38036SAndreas Gohr
134715fae107Sandi/**
134871f7bde7SAndreas Gohr * extracts the query from a search engine referrer
134915fae107Sandi *
13508b19906eSAndreas Gohr * @return array|string
135171f7bde7SAndreas Gohr * @author Todd Augsburger <todd@rollerorgans.com>
1352140cfbcdSGerrit Uitslag *
13538b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
1354f3f0262cSandi */
1355d868eb89SAndreas Gohrfunction getGoogleQuery()
1356d868eb89SAndreas Gohr{
1357585bf44eSChristopher Smith    /* @var Input $INPUT */
1358585bf44eSChristopher Smith    global $INPUT;
1359585bf44eSChristopher Smith
1360585bf44eSChristopher Smith    if (!$INPUT->server->has('HTTP_REFERER')) {
1361c66972f2SAdrian Lang        return '';
1362c66972f2SAdrian Lang    }
1363585bf44eSChristopher Smith    $url = parse_url($INPUT->server->str('HTTP_REFERER'));
1364f3f0262cSandi
1365079b3ac1SAndreas Gohr    // only handle common SEs
1366c7875401SJyoti S    if (!array_key_exists('host', $url)) return '';
1367079b3ac1SAndreas Gohr    if (!preg_match('/(google|bing|yahoo|ask|duckduckgo|babylon|aol|yandex)/', $url['host'])) return '';
1368e4d8a516SKazutaka Miyasaka
136924870174SAndreas Gohr    $query = [];
1370181adffeSJulian Jeggle    if (!array_key_exists('query', $url)) return '';
1371f3f0262cSandi    parse_str($url['query'], $query);
1372e4d8a516SKazutaka Miyasaka
1373c66972f2SAdrian Lang    $q = '';
1374079b3ac1SAndreas Gohr    if (isset($query['q'])) {
1375079b3ac1SAndreas Gohr        $q = $query['q'];
1376079b3ac1SAndreas Gohr    } elseif (isset($query['p'])) {
1377079b3ac1SAndreas Gohr        $q = $query['p'];
1378079b3ac1SAndreas Gohr    } elseif (isset($query['query'])) {
1379079b3ac1SAndreas Gohr        $q = $query['query'];
1380079b3ac1SAndreas Gohr    }
1381079b3ac1SAndreas Gohr    $q = trim($q);
1382f3f0262cSandi
1383079b3ac1SAndreas Gohr    if (!$q) return '';
1384c7dc833bSPhy    // ignore if query includes a full URL
1385c7dc833bSPhy    if (strpos($q, '//') !== false) return '';
13866531ab03SAndreas Gohr    $q = preg_split('/[\s\'"\\\\`()\]\[?:!\.{};,#+*<>\\/]+/', $q, -1, PREG_SPLIT_NO_EMPTY);
1387f93b3b50SAndreas Gohr    return $q;
1388f3f0262cSandi}
1389f3f0262cSandi
1390f3f0262cSandi/**
1391f3f0262cSandi * Return the human readable size of a file
1392f3f0262cSandi *
1393f3f0262cSandi * @param int $size A file size
1394f3f0262cSandi * @param int $dec A number of decimal places
139574160ca1SGerrit Uitslag * @return string human readable size
1396140cfbcdSGerrit Uitslag *
1397f3f0262cSandi * @author      Martin Benjamin <b.martin@cybernet.ch>
1398f3f0262cSandi * @author      Aidan Lister <aidan@php.net>
1399f3f0262cSandi * @version     1.0.0
1400f3f0262cSandi */
1401d868eb89SAndreas Gohrfunction filesize_h($size, $dec = 1)
1402d868eb89SAndreas Gohr{
140324870174SAndreas Gohr    $sizes = ['B', 'KB', 'MB', 'GB'];
1404f3f0262cSandi    $count = count($sizes);
1405f3f0262cSandi    $i = 0;
1406f3f0262cSandi
1407f3f0262cSandi    while ($size >= 1024 && ($i < $count - 1)) {
1408f3f0262cSandi        $size /= 1024;
1409f3f0262cSandi        $i++;
1410f3f0262cSandi    }
1411f3f0262cSandi
1412ef08383eSAndreas Gohr    return round($size, $dec) . "\xC2\xA0" . $sizes[$i]; //non-breaking space
1413f3f0262cSandi}
1414f3f0262cSandi
141515fae107Sandi/**
1416c57e365eSAndreas Gohr * Return the given timestamp as human readable, fuzzy age
1417c57e365eSAndreas Gohr *
1418140cfbcdSGerrit Uitslag * @param int $dt timestamp
1419140cfbcdSGerrit Uitslag * @return string
14208b19906eSAndreas Gohr * @author Andreas Gohr <gohr@cosmocode.de>
14218b19906eSAndreas Gohr *
1422c57e365eSAndreas Gohr */
1423d868eb89SAndreas Gohrfunction datetime_h($dt)
1424d868eb89SAndreas Gohr{
1425c57e365eSAndreas Gohr    global $lang;
1426c57e365eSAndreas Gohr
1427c57e365eSAndreas Gohr    $ago = time() - $dt;
1428c57e365eSAndreas Gohr    if ($ago > 24 * 60 * 60 * 30 * 12 * 2) {
1429c57e365eSAndreas Gohr        return sprintf($lang['years'], round($ago / (24 * 60 * 60 * 30 * 12)));
1430c57e365eSAndreas Gohr    }
1431c57e365eSAndreas Gohr    if ($ago > 24 * 60 * 60 * 30 * 2) {
1432c57e365eSAndreas Gohr        return sprintf($lang['months'], round($ago / (24 * 60 * 60 * 30)));
1433c57e365eSAndreas Gohr    }
1434c57e365eSAndreas Gohr    if ($ago > 24 * 60 * 60 * 7 * 2) {
1435c57e365eSAndreas Gohr        return sprintf($lang['weeks'], round($ago / (24 * 60 * 60 * 7)));
1436c57e365eSAndreas Gohr    }
1437c57e365eSAndreas Gohr    if ($ago > 24 * 60 * 60 * 2) {
1438c57e365eSAndreas Gohr        return sprintf($lang['days'], round($ago / (24 * 60 * 60)));
1439c57e365eSAndreas Gohr    }
1440c57e365eSAndreas Gohr    if ($ago > 60 * 60 * 2) {
1441c57e365eSAndreas Gohr        return sprintf($lang['hours'], round($ago / (60 * 60)));
1442c57e365eSAndreas Gohr    }
1443c57e365eSAndreas Gohr    if ($ago > 60 * 2) {
1444c57e365eSAndreas Gohr        return sprintf($lang['minutes'], round($ago / (60)));
1445c57e365eSAndreas Gohr    }
1446c57e365eSAndreas Gohr    return sprintf($lang['seconds'], $ago);
1447c57e365eSAndreas Gohr}
1448c57e365eSAndreas Gohr
1449c57e365eSAndreas Gohr/**
1450f2263577SAndreas Gohr * Wraps around strftime but provides support for fuzzy dates
1451f2263577SAndreas Gohr *
1452f2263577SAndreas Gohr * The format default to $conf['dformat']. It is passed to
1453f2263577SAndreas Gohr * strftime - %f can be used to get the value from datetime_h()
1454f2263577SAndreas Gohr *
1455140cfbcdSGerrit Uitslag * @param int|null $dt timestamp when given, null will take current timestamp
1456140cfbcdSGerrit Uitslag * @param string $format empty default to $conf['dformat'], or provide format as recognized by strftime()
1457140cfbcdSGerrit Uitslag * @return string
14588b19906eSAndreas Gohr * @author Andreas Gohr <gohr@cosmocode.de>
14598b19906eSAndreas Gohr *
14608b19906eSAndreas Gohr * @see datetime_h
1461f2263577SAndreas Gohr */
1462d868eb89SAndreas Gohrfunction dformat($dt = null, $format = '')
1463d868eb89SAndreas Gohr{
1464f2263577SAndreas Gohr    global $conf;
1465f2263577SAndreas Gohr
1466f2263577SAndreas Gohr    if (is_null($dt)) $dt = time();
1467f2263577SAndreas Gohr    $dt = (int)$dt;
1468f2263577SAndreas Gohr    if (!$format) $format = $conf['dformat'];
1469f2263577SAndreas Gohr
1470f2263577SAndreas Gohr    $format = str_replace('%f', datetime_h($dt), $format);
1471b3894732Ssplitbrain    return strftime($format, $dt);
1472f2263577SAndreas Gohr}
1473f2263577SAndreas Gohr
1474f2263577SAndreas Gohr/**
1475c4f79b71SMichael Hamann * Formats a timestamp as ISO 8601 date
1476c4f79b71SMichael Hamann *
14778b19906eSAndreas Gohr * @param int $int_date current date in UNIX timestamp
14788b19906eSAndreas Gohr * @return string
1479c4f79b71SMichael Hamann * @author <ungu at terong dot com>
148059752844SAnders Sandblad * @link http://php.net/manual/en/function.date.php#54072
1481140cfbcdSGerrit Uitslag *
1482c4f79b71SMichael Hamann */
1483d868eb89SAndreas Gohrfunction date_iso8601($int_date)
1484d868eb89SAndreas Gohr{
1485c4f79b71SMichael Hamann    $date_mod = date('Y-m-d\TH:i:s', $int_date);
1486c4f79b71SMichael Hamann    $pre_timezone = date('O', $int_date);
1487c4f79b71SMichael Hamann    $time_zone = substr($pre_timezone, 0, 3) . ":" . substr($pre_timezone, 3, 2);
1488c4f79b71SMichael Hamann    $date_mod .= $time_zone;
1489c4f79b71SMichael Hamann    return $date_mod;
1490c4f79b71SMichael Hamann}
1491c4f79b71SMichael Hamann
1492c4f79b71SMichael Hamann/**
149300a7b5adSEsther Brunner * return an obfuscated email address in line with $conf['mailguard'] setting
149400a7b5adSEsther Brunner *
14958b19906eSAndreas Gohr * @param string $email email address
14968b19906eSAndreas Gohr * @return string
149700a7b5adSEsther Brunner * @author Harry Fuecks <hfuecks@gmail.com>
149800a7b5adSEsther Brunner * @author Christopher Smith <chris@jalakai.co.uk>
1499140cfbcdSGerrit Uitslag *
150000a7b5adSEsther Brunner */
1501d868eb89SAndreas Gohrfunction obfuscate($email)
1502d868eb89SAndreas Gohr{
150300a7b5adSEsther Brunner    global $conf;
150400a7b5adSEsther Brunner
150500a7b5adSEsther Brunner    switch ($conf['mailguard']) {
150600a7b5adSEsther Brunner        case 'visible':
150724870174SAndreas Gohr            $obfuscate = ['@' => ' [at] ', '.' => ' [dot] ', '-' => ' [dash] '];
150800a7b5adSEsther Brunner            return strtr($email, $obfuscate);
150900a7b5adSEsther Brunner
151000a7b5adSEsther Brunner        case 'hex':
151124870174SAndreas Gohr            return Conversion::toHtml($email, true);
151200a7b5adSEsther Brunner
151300a7b5adSEsther Brunner        case 'none':
151400a7b5adSEsther Brunner        default:
151500a7b5adSEsther Brunner            return $email;
151600a7b5adSEsther Brunner    }
151700a7b5adSEsther Brunner}
151800a7b5adSEsther Brunner
151900a7b5adSEsther Brunner/**
152089541d4bSAndreas Gohr * Removes quoting backslashes
152189541d4bSAndreas Gohr *
1522140cfbcdSGerrit Uitslag * @param string $string
1523140cfbcdSGerrit Uitslag * @param string $char backslashed character
1524140cfbcdSGerrit Uitslag * @return string
15258b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
15268b19906eSAndreas Gohr *
152789541d4bSAndreas Gohr */
1528d868eb89SAndreas Gohrfunction unslash($string, $char = "'")
1529d868eb89SAndreas Gohr{
153089541d4bSAndreas Gohr    return str_replace('\\' . $char, $char, $string);
153189541d4bSAndreas Gohr}
153289541d4bSAndreas Gohr
153373038c47SAndreas Gohr/**
153473038c47SAndreas Gohr * Convert php.ini shorthands to byte
153573038c47SAndreas Gohr *
1536a81f3d99SAndreas Gohr * On 32 bit systems values >= 2GB will fail!
1537140cfbcdSGerrit Uitslag *
1538a81f3d99SAndreas Gohr * -1 (infinite size) will be reported as -1
1539a81f3d99SAndreas Gohr *
1540a81f3d99SAndreas Gohr * @link   https://www.php.net/manual/en/faq.using.php#faq.using.shorthandbytes
1541a81f3d99SAndreas Gohr * @param string $value PHP size shorthand
1542a81f3d99SAndreas Gohr * @return int
154373038c47SAndreas Gohr */
1544d868eb89SAndreas Gohrfunction php_to_byte($value)
1545d868eb89SAndreas Gohr{
1546f5c0c80bSAndreas Gohr    switch (strtoupper(substr($value, -1))) {
154773038c47SAndreas Gohr        case 'G':
154824870174SAndreas Gohr            $ret = (int)substr($value, 0, -1) * 1024 * 1024 * 1024;
154973038c47SAndreas Gohr            break;
155073038c47SAndreas Gohr        case 'M':
155124870174SAndreas Gohr            $ret = (int)substr($value, 0, -1) * 1024 * 1024;
1552a81f3d99SAndreas Gohr            break;
155373038c47SAndreas Gohr        case 'K':
155424870174SAndreas Gohr            $ret = (int)substr($value, 0, -1) * 1024;
155573038c47SAndreas Gohr            break;
15569eeeb775SAndreas Gohr        default:
155724870174SAndreas Gohr            $ret = (int)$value;
155849cbd23eSOtto Vainio            break;
155973038c47SAndreas Gohr    }
156073038c47SAndreas Gohr    return $ret;
156173038c47SAndreas Gohr}
156273038c47SAndreas Gohr
1563546d3a99SAndreas Gohr/**
1564546d3a99SAndreas Gohr * Wrapper around preg_quote adding the default delimiter
1565140cfbcdSGerrit Uitslag *
1566140cfbcdSGerrit Uitslag * @param string $string
1567140cfbcdSGerrit Uitslag * @return string
1568546d3a99SAndreas Gohr */
1569d868eb89SAndreas Gohrfunction preg_quote_cb($string)
1570d868eb89SAndreas Gohr{
1571546d3a99SAndreas Gohr    return preg_quote($string, '/');
1572546d3a99SAndreas Gohr}
157373038c47SAndreas Gohr
1574bd2f6c2fSAndreas Gohr/**
1575bd2f6c2fSAndreas Gohr * Shorten a given string by removing data from the middle
1576bd2f6c2fSAndreas Gohr *
1577c66972f2SAdrian Lang * You can give the string in two parts, the first part $keep
1578bd2f6c2fSAndreas Gohr * will never be shortened. The second part $short will be cut
1579bd2f6c2fSAndreas Gohr * in the middle to shorten but only if at least $min chars are
1580bd2f6c2fSAndreas Gohr * left to display it. Otherwise it will be left off.
1581bd2f6c2fSAndreas Gohr *
1582bd2f6c2fSAndreas Gohr * @param string $keep the part to keep
1583bd2f6c2fSAndreas Gohr * @param string $short the part to shorten
1584bd2f6c2fSAndreas Gohr * @param int $max maximum chars you want for the whole string
1585bd2f6c2fSAndreas Gohr * @param int $min minimum number of chars to have left for middle shortening
1586bd2f6c2fSAndreas Gohr * @param string $char the shortening character to use
15873272d797SAndreas Gohr * @return string
1588bd2f6c2fSAndreas Gohr */
1589d868eb89SAndreas Gohrfunction shorten($keep, $short, $max, $min = 9, $char = '…')
1590d868eb89SAndreas Gohr{
159124870174SAndreas Gohr    $max -= PhpString::strlen($keep);
1592bd2f6c2fSAndreas Gohr    if ($max < $min) return $keep;
159324870174SAndreas Gohr    $len = PhpString::strlen($short);
1594bd2f6c2fSAndreas Gohr    if ($len <= $max) return $keep . $short;
1595bd2f6c2fSAndreas Gohr    $half = floor($max / 2);
15966ce3e5f8SAndreas Gohr    return $keep .
159724870174SAndreas Gohr        PhpString::substr($short, 0, $half - 1) .
15986ce3e5f8SAndreas Gohr        $char .
159924870174SAndreas Gohr        PhpString::substr($short, $len - $half);
1600bd2f6c2fSAndreas Gohr}
1601bd2f6c2fSAndreas Gohr
1602dc58b6f4SAndy Webber/**
1603dc58b6f4SAndy Webber * Return the users real name or e-mail address for use
1604dc58b6f4SAndy Webber * in page footer and recent changes pages
1605dc58b6f4SAndy Webber *
1606b4b6c9a1SGerrit Uitslag * @param string|null $username or null when currently logged-in user should be used
160715f3bc49SGerrit Uitslag * @param bool $textonly true returns only plain text, true allows returning html
1608c0953023SGerrit Uitslag * @return string html or plain text(not escaped) of formatted user name
160915f3bc49SGerrit Uitslag *
1610dc58b6f4SAndy Webber * @author Andy Webber <dokuwiki AT andywebber DOT com>
1611dc58b6f4SAndy Webber */
1612d868eb89SAndreas Gohrfunction editorinfo($username, $textonly = false)
1613d868eb89SAndreas Gohr{
1614cd4635eeSGerrit Uitslag    return userlink($username, $textonly);
1615dc58b6f4SAndy Webber}
1616dc58b6f4SAndy Webber
161760a396c8SGerrit Uitslag/**
161860a396c8SGerrit Uitslag * Returns users realname w/o link
161960a396c8SGerrit Uitslag *
1620f168548cSGerrit Uitslag * @param string|null $username or null when currently logged-in user should be used
162115f3bc49SGerrit Uitslag * @param bool $textonly true returns only plain text, true allows returning html
1622c0953023SGerrit Uitslag * @return string html or plain text(not escaped) of formatted user name
162360a396c8SGerrit Uitslag *
162460a396c8SGerrit Uitslag * @triggers COMMON_USER_LINK
162560a396c8SGerrit Uitslag */
1626d868eb89SAndreas Gohrfunction userlink($username = null, $textonly = false)
1627d868eb89SAndreas Gohr{
162860a396c8SGerrit Uitslag    global $conf, $INFO;
1629e1d9dcc8SAndreas Gohr    /** @var AuthPlugin $auth */
163060a396c8SGerrit Uitslag    global $auth;
163130f6ec4bSGerrit Uitslag    /** @var Input $INPUT */
163230f6ec4bSGerrit Uitslag    global $INPUT;
163360a396c8SGerrit Uitslag
163460a396c8SGerrit Uitslag    // prepare initial event data
163524870174SAndreas Gohr    $data = [
163660a396c8SGerrit Uitslag        'username' => $username, // the unique user name
163760a396c8SGerrit Uitslag        'name' => '',
163824870174SAndreas Gohr        'link' => [
163924870174SAndreas Gohr            //setting 'link' to false disables linking
164060a396c8SGerrit Uitslag            'target' => '',
164160a396c8SGerrit Uitslag            'pre' => '',
164260a396c8SGerrit Uitslag            'suf' => '',
164360a396c8SGerrit Uitslag            'style' => '',
164460a396c8SGerrit Uitslag            'more' => '',
164560a396c8SGerrit Uitslag            'url' => '',
164660a396c8SGerrit Uitslag            'title' => '',
164724870174SAndreas Gohr            'class' => '',
164824870174SAndreas Gohr        ],
16494d5fc927SGerrit Uitslag        'userlink' => '', // formatted user name as will be returned
165024870174SAndreas Gohr        'textonly' => $textonly,
165124870174SAndreas Gohr    ];
165262c8004eSGerrit Uitslag    if ($username === null) {
165330f6ec4bSGerrit Uitslag        $data['username'] = $username = $INPUT->server->str('REMOTE_USER');
165415f3bc49SGerrit Uitslag        if ($textonly) {
165515f3bc49SGerrit Uitslag            $data['name'] = $INFO['userinfo']['name'] . ' (' . $INPUT->server->str('REMOTE_USER') . ')';
165615f3bc49SGerrit Uitslag        } else {
165764159a61SAndreas Gohr            $data['name'] = '<bdi>' . hsc($INFO['userinfo']['name']) . '</bdi> ' .
165864159a61SAndreas Gohr                '(<bdi>' . hsc($INPUT->server->str('REMOTE_USER')) . '</bdi>)';
165960a396c8SGerrit Uitslag        }
166015f3bc49SGerrit Uitslag    }
166160a396c8SGerrit Uitslag
1662e1d9dcc8SAndreas Gohr    $evt = new Event('COMMON_USER_LINK', $data);
166360a396c8SGerrit Uitslag    if ($evt->advise_before(true)) {
166460a396c8SGerrit Uitslag        if (empty($data['name'])) {
16656547cfc7SGerrit Uitslag            if ($auth instanceof AuthPlugin) {
16666547cfc7SGerrit Uitslag                $info = $auth->getUserData($username);
16676547cfc7SGerrit Uitslag            }
166865833968SGerrit Uitslag            if ($conf['showuseras'] != 'loginname' && isset($info) && $info) {
1669dc58b6f4SAndy Webber                switch ($conf['showuseras']) {
1670dc58b6f4SAndy Webber                    case 'username':
16717f081821SGerrit Uitslag                    case 'username_link':
167215f3bc49SGerrit Uitslag                        $data['name'] = $textonly ? $info['name'] : hsc($info['name']);
167360a396c8SGerrit Uitslag                        break;
1674dc58b6f4SAndy Webber                    case 'email':
1675dc58b6f4SAndy Webber                    case 'email_link':
167660a396c8SGerrit Uitslag                        $data['name'] = obfuscate($info['mail']);
167760a396c8SGerrit Uitslag                        break;
1678dc58b6f4SAndy Webber                }
167965833968SGerrit Uitslag            } else {
168065833968SGerrit Uitslag                $data['name'] = $textonly ? $data['username'] : hsc($data['username']);
168160a396c8SGerrit Uitslag            }
168260a396c8SGerrit Uitslag        }
16837f081821SGerrit Uitslag
16847f081821SGerrit Uitslag        /** @var Doku_Renderer_xhtml $xhtml_renderer */
16857f081821SGerrit Uitslag        static $xhtml_renderer = null;
16867f081821SGerrit Uitslag
168715f3bc49SGerrit Uitslag        if (!$data['textonly'] && empty($data['link']['url'])) {
168824870174SAndreas Gohr            if (in_array($conf['showuseras'], ['email_link', 'username_link'])) {
16896547cfc7SGerrit Uitslag                if (!isset($info) && $auth instanceof AuthPlugin) {
16906547cfc7SGerrit Uitslag                    $info = $auth->getUserData($username);
169160a396c8SGerrit Uitslag                }
169260a396c8SGerrit Uitslag                if (isset($info) && $info) {
16937f081821SGerrit Uitslag                    if ($conf['showuseras'] == 'email_link') {
169460a396c8SGerrit Uitslag                        $data['link']['url'] = 'mailto:' . obfuscate($info['mail']);
1695dc58b6f4SAndy Webber                    } else {
16967f081821SGerrit Uitslag                        if (is_null($xhtml_renderer)) {
16977f081821SGerrit Uitslag                            $xhtml_renderer = p_get_renderer('xhtml');
16987f081821SGerrit Uitslag                        }
16998407f251Ssplitbrain                        if ($xhtml_renderer->interwiki === []) {
17007f081821SGerrit Uitslag                            $xhtml_renderer->interwiki = getInterwiki();
17017f081821SGerrit Uitslag                        }
17027f081821SGerrit Uitslag                        $shortcut = 'user';
1703533772e1SGerrit Uitslag                        $exists = null;
17046496c33fSGerrit Uitslag                        $data['link']['url'] = $xhtml_renderer->_resolveInterWiki($shortcut, $username, $exists);
17052a2a43c4SGerrit Uitslag                        $data['link']['class'] .= ' interwiki iw_user';
17066496c33fSGerrit Uitslag                        if ($exists !== null) {
17076496c33fSGerrit Uitslag                            if ($exists) {
17086496c33fSGerrit Uitslag                                $data['link']['class'] .= ' wikilink1';
17096496c33fSGerrit Uitslag                            } else {
17106496c33fSGerrit Uitslag                                $data['link']['class'] .= ' wikilink2';
17116496c33fSGerrit Uitslag                                $data['link']['rel'] = 'nofollow';
17126496c33fSGerrit Uitslag                            }
17136496c33fSGerrit Uitslag                        }
1714dc58b6f4SAndy Webber                    }
1715dc58b6f4SAndy Webber                } else {
171615f3bc49SGerrit Uitslag                    $data['textonly'] = true;
1717dc58b6f4SAndy Webber                }
171860a396c8SGerrit Uitslag            } else {
171915f3bc49SGerrit Uitslag                $data['textonly'] = true;
172060a396c8SGerrit Uitslag            }
172160a396c8SGerrit Uitslag        }
172260a396c8SGerrit Uitslag
172315f3bc49SGerrit Uitslag        if ($data['textonly']) {
17244d5fc927SGerrit Uitslag            $data['userlink'] = $data['name'];
172560a396c8SGerrit Uitslag        } else {
172660a396c8SGerrit Uitslag            $data['link']['name'] = $data['name'];
172760a396c8SGerrit Uitslag            if (is_null($xhtml_renderer)) {
172860a396c8SGerrit Uitslag                $xhtml_renderer = p_get_renderer('xhtml');
172960a396c8SGerrit Uitslag            }
17304d5fc927SGerrit Uitslag            $data['userlink'] = $xhtml_renderer->_formatLink($data['link']);
173160a396c8SGerrit Uitslag        }
173260a396c8SGerrit Uitslag    }
173360a396c8SGerrit Uitslag    $evt->advise_after();
173460a396c8SGerrit Uitslag    unset($evt);
173560a396c8SGerrit Uitslag
17364d5fc927SGerrit Uitslag    return $data['userlink'];
1737066fee30SAndreas Gohr}
1738066fee30SAndreas Gohr
1739066fee30SAndreas Gohr/**
1740066fee30SAndreas Gohr * Returns the path to a image file for the currently chosen license.
1741066fee30SAndreas Gohr * When no image exists, returns an empty string
1742066fee30SAndreas Gohr *
1743066fee30SAndreas Gohr * @param string $type - type of image 'badge' or 'button'
17443272d797SAndreas Gohr * @return string
17458b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
17468b19906eSAndreas Gohr *
1747066fee30SAndreas Gohr */
1748d868eb89SAndreas Gohrfunction license_img($type)
1749d868eb89SAndreas Gohr{
1750066fee30SAndreas Gohr    global $license;
1751066fee30SAndreas Gohr    global $conf;
1752066fee30SAndreas Gohr    if (!$conf['license']) return '';
1753066fee30SAndreas Gohr    if (!is_array($license[$conf['license']])) return '';
175424870174SAndreas Gohr    $try = [];
1755066fee30SAndreas Gohr    $try[] = 'lib/images/license/' . $type . '/' . $conf['license'] . '.png';
1756066fee30SAndreas Gohr    $try[] = 'lib/images/license/' . $type . '/' . $conf['license'] . '.gif';
17576c16a3a9Sfiwswe    if (str_starts_with($conf['license'], 'cc-')) {
1758066fee30SAndreas Gohr        $try[] = 'lib/images/license/' . $type . '/cc.png';
1759066fee30SAndreas Gohr    }
1760066fee30SAndreas Gohr    foreach ($try as $src) {
176179e79377SAndreas Gohr        if (file_exists(DOKU_INC . $src)) return $src;
1762066fee30SAndreas Gohr    }
1763066fee30SAndreas Gohr    return '';
1764dc58b6f4SAndy Webber}
1765dc58b6f4SAndy Webber
176613c08e2fSMichael Klier/**
176713c08e2fSMichael Klier * Checks if the given amount of memory is available
176813c08e2fSMichael Klier *
176913c08e2fSMichael Klier * If the memory_get_usage() function is not available the
177013c08e2fSMichael Klier * function just assumes $bytes of already allocated memory
177113c08e2fSMichael Klier *
17723272d797SAndreas Gohr * @param int $mem Size of memory you want to allocate in bytes
1773140cfbcdSGerrit Uitslag * @param int $bytes already allocated memory (see above)
17743272d797SAndreas Gohr * @return bool
17758b19906eSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
17768b19906eSAndreas Gohr *
17778b19906eSAndreas Gohr * @author Filip Oscadal <webmaster@illusionsoftworks.cz>
177813c08e2fSMichael Klier */
1779d868eb89SAndreas Gohrfunction is_mem_available($mem, $bytes = 1_048_576)
1780d868eb89SAndreas Gohr{
178113c08e2fSMichael Klier    $limit = trim(ini_get('memory_limit'));
178213c08e2fSMichael Klier    if (empty($limit)) return true; // no limit set!
1783985d6187SElenchus    if ($limit == -1) return true; // unlimited
178413c08e2fSMichael Klier
178513c08e2fSMichael Klier    // parse limit to bytes
178613c08e2fSMichael Klier    $limit = php_to_byte($limit);
178713c08e2fSMichael Klier
178813c08e2fSMichael Klier    // get used memory if possible
178913c08e2fSMichael Klier    if (function_exists('memory_get_usage')) {
179013c08e2fSMichael Klier        $used = memory_get_usage();
179149eb6e38SAndreas Gohr    } else {
179249eb6e38SAndreas Gohr        $used = $bytes;
179313c08e2fSMichael Klier    }
179413c08e2fSMichael Klier
179513c08e2fSMichael Klier    if ($used + $mem > $limit) {
179613c08e2fSMichael Klier        return false;
179713c08e2fSMichael Klier    }
179813c08e2fSMichael Klier
179913c08e2fSMichael Klier    return true;
180013c08e2fSMichael Klier}
180113c08e2fSMichael Klier
1802af2408d5SAndreas Gohr/**
1803af2408d5SAndreas Gohr * Send a HTTP redirect to the browser
1804af2408d5SAndreas Gohr *
1805af2408d5SAndreas Gohr * Works arround Microsoft IIS cookie sending bug. Exits the script.
1806af2408d5SAndreas Gohr *
1807af2408d5SAndreas Gohr * @link   http://support.microsoft.com/kb/q176113/
1808af2408d5SAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
1809140cfbcdSGerrit Uitslag *
1810140cfbcdSGerrit Uitslag * @param string $url url being directed to
1811af2408d5SAndreas Gohr */
1812d868eb89SAndreas Gohrfunction send_redirect($url)
1813d868eb89SAndreas Gohr{
181498ca30d2SAndreas Gohr    $url = stripctl($url); // defend against HTTP Response Splitting
181598ca30d2SAndreas Gohr
1816585bf44eSChristopher Smith    /* @var Input $INPUT */
1817585bf44eSChristopher Smith    global $INPUT;
1818585bf44eSChristopher Smith
18190181f021SAndreas Gohr    //are there any undisplayed messages? keep them in session for display
18200181f021SAndreas Gohr    global $MSG;
18210181f021SAndreas Gohr    if (isset($MSG) && count($MSG) && !defined('NOSESSION')) {
18220181f021SAndreas Gohr        //reopen session, store data and close session again
18230181f021SAndreas Gohr        @session_start();
18240181f021SAndreas Gohr        $_SESSION[DOKU_COOKIE]['msg'] = $MSG;
18250181f021SAndreas Gohr    }
18260181f021SAndreas Gohr
1827d4869846SAndreas Gohr    // always close the session
1828d4869846SAndreas Gohr    session_write_close();
1829d4869846SAndreas Gohr
1830af2408d5SAndreas Gohr    // check if running on IIS < 6 with CGI-PHP
18317d34963bSAndreas Gohr    if (
18327d34963bSAndreas Gohr        $INPUT->server->has('SERVER_SOFTWARE') && $INPUT->server->has('GATEWAY_INTERFACE') &&
1833585bf44eSChristopher Smith        (strpos($INPUT->server->str('GATEWAY_INTERFACE'), 'CGI') !== false) &&
1834585bf44eSChristopher Smith        (preg_match('|^Microsoft-IIS/(\d)\.\d$|', trim($INPUT->server->str('SERVER_SOFTWARE')), $matches)) &&
18353272d797SAndreas Gohr        $matches[1] < 6
18363272d797SAndreas Gohr    ) {
1837af2408d5SAndreas Gohr        header('Refresh: 0;url=' . $url);
1838af2408d5SAndreas Gohr    } else {
1839af2408d5SAndreas Gohr        header('Location: ' . $url);
1840af2408d5SAndreas Gohr    }
184181781cb6SAndreas Gohr
1842572dc222SLarsDW223    // no exits during unit tests
184327c0c399SAndreas Gohr    if (defined('DOKU_UNITTEST')) {
184427c0c399SAndreas Gohr        // pass info about the redirect back to the test suite
184527c0c399SAndreas Gohr        $testRequest = TestRequest::getRunning();
184627c0c399SAndreas Gohr        if ($testRequest !== null) {
184727c0c399SAndreas Gohr            $testRequest->addData('send_redirect', $url);
184827c0c399SAndreas Gohr        }
1849572dc222SLarsDW223        return;
1850572dc222SLarsDW223    }
185127c0c399SAndreas Gohr
1852af2408d5SAndreas Gohr    exit;
1853af2408d5SAndreas Gohr}
1854af2408d5SAndreas Gohr
18555b75cd1fSAdrian Lang/**
18565b75cd1fSAdrian Lang * Validate a value using a set of valid values
18575b75cd1fSAdrian Lang *
18585b75cd1fSAdrian Lang * This function checks whether a specified value is set and in the array
18595b75cd1fSAdrian Lang * $valid_values. If not, the function returns a default value or, if no
18605b75cd1fSAdrian Lang * default is specified, throws an exception.
18615b75cd1fSAdrian Lang *
18625b75cd1fSAdrian Lang * @param string $param The name of the parameter
18635b75cd1fSAdrian Lang * @param array $valid_values A set of valid values; Optionally a default may
18645b75cd1fSAdrian Lang *                             be marked by the key “default”.
18655b75cd1fSAdrian Lang * @param array $array The array containing the value (typically $_POST
18665b75cd1fSAdrian Lang *                             or $_GET)
18675b75cd1fSAdrian Lang * @param string $exc The text of the raised exception
18685b75cd1fSAdrian Lang *
18693272d797SAndreas Gohr * @return mixed
18708b19906eSAndreas Gohr * @throws Exception
18715b75cd1fSAdrian Lang * @author Adrian Lang <lang@cosmocode.de>
18725b75cd1fSAdrian Lang */
1873d868eb89SAndreas Gohrfunction valid_input_set($param, $valid_values, $array, $exc = '')
1874d868eb89SAndreas Gohr{
18755b75cd1fSAdrian Lang    if (isset($array[$param]) && in_array($array[$param], $valid_values)) {
18765b75cd1fSAdrian Lang        return $array[$param];
18775b75cd1fSAdrian Lang    } elseif (isset($valid_values['default'])) {
18785b75cd1fSAdrian Lang        return $valid_values['default'];
18795b75cd1fSAdrian Lang    } else {
18805b75cd1fSAdrian Lang        throw new Exception($exc);
18815b75cd1fSAdrian Lang    }
18825b75cd1fSAdrian Lang}
18835b75cd1fSAdrian Lang
188463703ba5SAndreas Gohr/**
188563703ba5SAndreas Gohr * Read a preference from the DokuWiki cookie
1886646a531aSChristopher Smith * (remembering both keys & values are urlencoded)
1887140cfbcdSGerrit Uitslag *
1888140cfbcdSGerrit Uitslag * @param string $pref preference key
1889b4b6c9a1SGerrit Uitslag * @param mixed $default value returned when preference not found
1890140cfbcdSGerrit Uitslag * @return string preference value
189163703ba5SAndreas Gohr */
1892d868eb89SAndreas Gohrfunction get_doku_pref($pref, $default)
1893d868eb89SAndreas Gohr{
1894646a531aSChristopher Smith    $enc_pref = urlencode($pref);
189506c9ee33SMarius van Witzenburg    if (isset($_COOKIE['DOKU_PREFS']) && strpos($_COOKIE['DOKU_PREFS'], $enc_pref) !== false) {
1896554a8c9fSAdrian Lang        $parts = explode('#', $_COOKIE['DOKU_PREFS']);
189763703ba5SAndreas Gohr        $cnt = count($parts);
18981c3eca7dSPhy
18991c3eca7dSPhy        // due to #2721 there might be duplicate entries,
19001c3eca7dSPhy        // so we read from the end
19011c3eca7dSPhy        for ($i = $cnt - 2; $i >= 0; $i -= 2) {
190224870174SAndreas Gohr            if ($parts[$i] === $enc_pref) {
1903646a531aSChristopher Smith                return urldecode($parts[$i + 1]);
1904554a8c9fSAdrian Lang            }
1905554a8c9fSAdrian Lang        }
1906554a8c9fSAdrian Lang    }
1907554a8c9fSAdrian Lang    return $default;
1908554a8c9fSAdrian Lang}
1909554a8c9fSAdrian Lang
19103c94d07bSAnika Henke/**
19113c94d07bSAnika Henke * Add a preference to the DokuWiki cookie
191236ec377eSChristopher Smith * (remembering $_COOKIE['DOKU_PREFS'] is urlencoded)
19133a970889SAnika Henke * Remove it by setting $val to false
1914140cfbcdSGerrit Uitslag *
1915140cfbcdSGerrit Uitslag * @param string $pref preference key
1916140cfbcdSGerrit Uitslag * @param string $val preference value
19173c94d07bSAnika Henke */
1918d868eb89SAndreas Gohrfunction set_doku_pref($pref, $val)
1919d868eb89SAndreas Gohr{
19203c94d07bSAnika Henke    global $conf;
19213c94d07bSAnika Henke    $orig = get_doku_pref($pref, false);
19223c94d07bSAnika Henke    $cookieVal = '';
19233c94d07bSAnika Henke
19241c3eca7dSPhy    if ($orig !== false && ($orig !== $val)) {
19253c94d07bSAnika Henke        $parts = explode('#', $_COOKIE['DOKU_PREFS']);
19263c94d07bSAnika Henke        $cnt = count($parts);
192736ec377eSChristopher Smith        // urlencode $pref for the comparison
192836ec377eSChristopher Smith        $enc_pref = rawurlencode($pref);
19291c3eca7dSPhy        $seen = false;
19303c94d07bSAnika Henke        for ($i = 0; $i < $cnt; $i += 2) {
193124870174SAndreas Gohr            if ($parts[$i] === $enc_pref) {
19321c3eca7dSPhy                if (!$seen) {
19333a970889SAnika Henke                    if ($val !== false) {
1934bf8f8509SAndreas Gohr                        $parts[$i + 1] = rawurlencode($val ?? '');
19353a970889SAnika Henke                    } else {
19363a970889SAnika Henke                        unset($parts[$i]);
19373a970889SAnika Henke                        unset($parts[$i + 1]);
19383a970889SAnika Henke                    }
19391c3eca7dSPhy                    $seen = true;
19401c3eca7dSPhy                } else {
19411c3eca7dSPhy                    // no break because we want to remove duplicate entries
19421c3eca7dSPhy                    unset($parts[$i]);
19431c3eca7dSPhy                    unset($parts[$i + 1]);
19441c3eca7dSPhy                }
19453c94d07bSAnika Henke            }
19463c94d07bSAnika Henke        }
19473c94d07bSAnika Henke        $cookieVal = implode('#', $parts);
19481c3eca7dSPhy    } elseif ($orig === false && $val !== false) {
1949c10f256aSDamien Regad        $cookieVal = (isset($_COOKIE['DOKU_PREFS']) ? $_COOKIE['DOKU_PREFS'] . '#' : '') .
195064159a61SAndreas Gohr            rawurlencode($pref) . '#' . rawurlencode($val);
19513c94d07bSAnika Henke    }
19523c94d07bSAnika Henke
195375e4dd8aSGerrit Uitslag    $cookieDir = empty($conf['cookiedir']) ? DOKU_REL : $conf['cookiedir'];
19545833995aSPhy    if (defined('DOKU_UNITTEST')) {
19555833995aSPhy        $_COOKIE['DOKU_PREFS'] = $cookieVal;
19565833995aSPhy    } else {
1957bf8392ebSAndreas Gohr        setcookie('DOKU_PREFS', $cookieVal, [
1958bf8392ebSAndreas Gohr            'expires' => time() + 365 * 24 * 3600,
1959bf8392ebSAndreas Gohr            'path' => $cookieDir,
1960*33cb4e01SAndreas Gohr            'secure' => ($conf['securecookie'] && Ip::isSsl()),
1961bf8392ebSAndreas Gohr            'samesite' => 'Lax'
1962bf8392ebSAndreas Gohr        ]);
19633c94d07bSAnika Henke    }
19643c94d07bSAnika Henke}
19653c94d07bSAnika Henke
1966f8fb2d18SAndreas Gohr/**
1967f8fb2d18SAndreas Gohr * Strips source mapping declarations from given text #601
1968f8fb2d18SAndreas Gohr *
196942ea7f44SGerrit Uitslag * @param string &$text reference to the CSS or JavaScript code to clean
1970f8fb2d18SAndreas Gohr */
1971d868eb89SAndreas Gohrfunction stripsourcemaps(&$text)
1972d868eb89SAndreas Gohr{
1973f8fb2d18SAndreas Gohr    $text = preg_replace('/^(\/\/|\/\*)[@#]\s+sourceMappingURL=.*?(\*\/)?$/im', '\\1\\2', $text);
1974f8fb2d18SAndreas Gohr}
1975f8fb2d18SAndreas Gohr
19763c27983bSAndreas Gohr/**
197771de5572SAndreas Gohr * Returns the contents of a given SVG file for embedding
19783c27983bSAndreas Gohr *
19793c27983bSAndreas Gohr * Inlining SVGs saves on HTTP requests and more importantly allows for styling them through
19803c27983bSAndreas Gohr * CSS. However it should used with small SVGs only. The $maxsize setting ensures only small
19813c27983bSAndreas Gohr * files are embedded.
19823c27983bSAndreas Gohr *
198371de5572SAndreas Gohr * This strips unneeded headers, comments and newline. The result is not a vaild standalone SVG!
198471de5572SAndreas Gohr *
19853c27983bSAndreas Gohr * @param string $file full path to the SVG file
19863c27983bSAndreas Gohr * @param int $maxsize maximum allowed size for the SVG to be embedded
198771de5572SAndreas Gohr * @return string|false the SVG content, false if the file couldn't be loaded
19883c27983bSAndreas Gohr */
1989d868eb89SAndreas Gohrfunction inlineSVG($file, $maxsize = 2048)
1990d868eb89SAndreas Gohr{
19913c27983bSAndreas Gohr    $file = trim($file);
19923c27983bSAndreas Gohr    if ($file === '') return false;
19933c27983bSAndreas Gohr    if (!file_exists($file)) return false;
19943c27983bSAndreas Gohr    if (filesize($file) > $maxsize) return false;
19953c27983bSAndreas Gohr    if (!is_readable($file)) return false;
19963c27983bSAndreas Gohr    $content = file_get_contents($file);
19970849fa88SAndreas Gohr    $content = preg_replace('/<!--.*?(-->)/s', '', $content); // comments
19980849fa88SAndreas Gohr    $content = preg_replace('/<\?xml .*?\?>/i', '', $content); // xml header
19990849fa88SAndreas Gohr    $content = preg_replace('/<!DOCTYPE .*?>/i', '', $content); // doc type
20000849fa88SAndreas Gohr    $content = preg_replace('/>\s+</s', '><', $content); // newlines between tags
20013c27983bSAndreas Gohr    $content = trim($content);
20026c16a3a9Sfiwswe    if (!str_starts_with($content, '<svg ')) return false;
200371de5572SAndreas Gohr    return $content;
20043c27983bSAndreas Gohr}
20053c27983bSAndreas Gohr
2006e3776c06SMichael Hamann//Setup VIM: ex: et ts=2 :
2007