xref: /dokuwiki/inc/common.php (revision b38947327ed5bf452cd57adcced03742bffb6872)
1ed7b5f09Sandi<?php
2d4f83172SAndreas Gohr
315fae107Sandi/**
415fae107Sandi * Common DokuWiki functions
515fae107Sandi *
615fae107Sandi * @license    GPL 2 (http://www.gnu.org/licenses/gpl.html)
715fae107Sandi * @author     Andreas Gohr <andi@splitbrain.org>
815fae107Sandi */
9d4f83172SAndreas Gohr
10*b3894732Ssplitbrainuse function PHP81_BC\strftime;
11*b3894732Ssplitbrain
1224870174SAndreas Gohruse dokuwiki\PassHash;
1324870174SAndreas Gohruse dokuwiki\Draft;
1424870174SAndreas Gohruse dokuwiki\Utf8\Clean;
1524870174SAndreas Gohruse dokuwiki\Utf8\PhpString;
1624870174SAndreas Gohruse dokuwiki\Utf8\Conversion;
170db5771eSMichael Großeuse dokuwiki\Cache\CacheRenderer;
180c3a5702SAndreas Gohruse dokuwiki\ChangeLog\PageChangeLog;
19b24e9c4aSSatoshi Saharause dokuwiki\File\PageFile;
20704a815fSMichael Großeuse dokuwiki\Subscriptions\PageSubscriptionSender;
2175d66495SMichael Großeuse dokuwiki\Subscriptions\SubscriberManager;
22e1d9dcc8SAndreas Gohruse dokuwiki\Extension\AuthPlugin;
23e1d9dcc8SAndreas Gohruse dokuwiki\Extension\Event;
240c3a5702SAndreas Gohr
25f3f0262cSandi/**
26d5197206Schris * Wrapper around htmlspecialchars()
27d5197206Schris *
28d5197206Schris * @author Andreas Gohr <andi@splitbrain.org>
29d5197206Schris * @see    htmlspecialchars()
30140cfbcdSGerrit Uitslag *
31140cfbcdSGerrit Uitslag * @param string $string the string being converted
32140cfbcdSGerrit Uitslag * @return string converted string
33d5197206Schris */
34d868eb89SAndreas Gohrfunction hsc($string)
35d868eb89SAndreas Gohr{
36f7711f2bSAndreas Gohr    return htmlspecialchars($string, ENT_QUOTES | ENT_SUBSTITUTE | ENT_HTML401, 'UTF-8');
37d5197206Schris}
38d5197206Schris
39d5197206Schris/**
4012dd3cbcSAndreas Gohr * A safer explode for fixed length lists
4112dd3cbcSAndreas Gohr *
4212dd3cbcSAndreas Gohr * This works just like explode(), but will always return the wanted number of elements.
4312dd3cbcSAndreas Gohr * If the $input string does not contain enough elements, the missing elements will be
4412dd3cbcSAndreas Gohr * filled up with the $default value. If the input string contains more elements, the last
4512dd3cbcSAndreas Gohr * one will NOT be split up and will still contain $separator
4612dd3cbcSAndreas Gohr *
4712dd3cbcSAndreas Gohr * @param string $separator The boundary string
4812dd3cbcSAndreas Gohr * @param string $string The input string
4912dd3cbcSAndreas Gohr * @param int $limit The number of expected elements
5012dd3cbcSAndreas Gohr * @param mixed $default The value to use when filling up missing elements
5112dd3cbcSAndreas Gohr * @see explode
5212dd3cbcSAndreas Gohr * @return array
5312dd3cbcSAndreas Gohr */
5412dd3cbcSAndreas Gohrfunction sexplode($separator, $string, $limit, $default = null)
5512dd3cbcSAndreas Gohr{
5612dd3cbcSAndreas Gohr    return array_pad(explode($separator, $string, $limit), $limit, $default);
5712dd3cbcSAndreas Gohr}
5812dd3cbcSAndreas Gohr
5912dd3cbcSAndreas Gohr/**
605b571377SAndreas Gohr * Checks if the given input is blank
615b571377SAndreas Gohr *
625b571377SAndreas Gohr * This is similar to empty() but will return false for "0".
635b571377SAndreas Gohr *
6467234204SAndreas Gohr * Please note: when you pass uninitialized variables, they will implicitly be created
6567234204SAndreas Gohr * with a NULL value without warning.
6667234204SAndreas Gohr *
6767234204SAndreas Gohr * To avoid this it's recommended to guard the call with isset like this:
6867234204SAndreas Gohr *
6967234204SAndreas Gohr * (isset($foo) && !blank($foo))
7067234204SAndreas Gohr * (!isset($foo) || blank($foo))
7167234204SAndreas Gohr *
725b571377SAndreas Gohr * @param $in
735b571377SAndreas Gohr * @param bool $trim Consider a string of whitespace to be blank
745b571377SAndreas Gohr * @return bool
755b571377SAndreas Gohr */
76d868eb89SAndreas Gohrfunction blank(&$in, $trim = false)
77d868eb89SAndreas Gohr{
785b571377SAndreas Gohr    if (is_null($in)) return true;
7924870174SAndreas Gohr    if (is_array($in)) return $in === [];
805b571377SAndreas Gohr    if ($in === "\0") return true;
815b571377SAndreas Gohr    if ($trim && trim($in) === '') return true;
825b571377SAndreas Gohr    if (strlen($in) > 0) return false;
835b571377SAndreas Gohr    return empty($in);
845b571377SAndreas Gohr}
855b571377SAndreas Gohr
865b571377SAndreas Gohr/**
8702b0b681SAndreas Gohr * strips control characters (<32) from the given string
8802b0b681SAndreas Gohr *
8902b0b681SAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
90140cfbcdSGerrit Uitslag *
9142ea7f44SGerrit Uitslag * @param string $string being stripped
92140cfbcdSGerrit Uitslag * @return string
9302b0b681SAndreas Gohr */
94d868eb89SAndreas Gohrfunction stripctl($string)
95d868eb89SAndreas Gohr{
9602b0b681SAndreas Gohr    return preg_replace('/[\x00-\x1F]+/s', '', $string);
97d5197206Schris}
98d5197206Schris
99d5197206Schris/**
100634d7150SAndreas Gohr * Return a secret token to be used for CSRF attack prevention
101634d7150SAndreas Gohr *
102634d7150SAndreas Gohr * @author  Andreas Gohr <andi@splitbrain.org>
103634d7150SAndreas Gohr * @link    http://en.wikipedia.org/wiki/Cross-site_request_forgery
104634d7150SAndreas Gohr * @link    http://christ1an.blogspot.com/2007/04/preventing-csrf-efficiently.html
10542ea7f44SGerrit Uitslag *
106634d7150SAndreas Gohr * @return  string
107634d7150SAndreas Gohr */
108d868eb89SAndreas Gohrfunction getSecurityToken()
109d868eb89SAndreas Gohr{
110585bf44eSChristopher Smith    /** @var Input $INPUT */
111585bf44eSChristopher Smith    global $INPUT;
1123680e2cdSAndreas Gohr
1133680e2cdSAndreas Gohr    $user = $INPUT->server->str('REMOTE_USER');
1143680e2cdSAndreas Gohr    $session = session_id();
1153680e2cdSAndreas Gohr
1163680e2cdSAndreas Gohr    // CSRF checks are only for logged in users - do not generate for anonymous
1173680e2cdSAndreas Gohr    if (trim($user) == '' || trim($session) == '') return '';
11824870174SAndreas Gohr    return PassHash::hmac('md5', $session . $user, auth_cookiesalt());
119634d7150SAndreas Gohr}
120634d7150SAndreas Gohr
121634d7150SAndreas Gohr/**
122634d7150SAndreas Gohr * Check the secret CSRF token
123140cfbcdSGerrit Uitslag *
124140cfbcdSGerrit Uitslag * @param null|string $token security token or null to read it from request variable
125140cfbcdSGerrit Uitslag * @return bool success if the token matched
126634d7150SAndreas Gohr */
127d868eb89SAndreas Gohrfunction checkSecurityToken($token = null)
128d868eb89SAndreas Gohr{
129585bf44eSChristopher Smith    /** @var Input $INPUT */
1307d01a0eaSTom N Harris    global $INPUT;
131585bf44eSChristopher Smith    if (!$INPUT->server->str('REMOTE_USER')) return true; // no logged in user, no need for a check
132df97eaacSAndreas Gohr
1337d01a0eaSTom N Harris    if (is_null($token)) $token = $INPUT->str('sectok');
134634d7150SAndreas Gohr    if (getSecurityToken() != $token) {
135634d7150SAndreas Gohr        msg('Security Token did not match. Possible CSRF attack.', -1);
136634d7150SAndreas Gohr        return false;
137634d7150SAndreas Gohr    }
138634d7150SAndreas Gohr    return true;
139634d7150SAndreas Gohr}
140634d7150SAndreas Gohr
141634d7150SAndreas Gohr/**
142634d7150SAndreas Gohr * Print a hidden form field with a secret CSRF token
143634d7150SAndreas Gohr *
144634d7150SAndreas Gohr * @author  Andreas Gohr <andi@splitbrain.org>
145140cfbcdSGerrit Uitslag *
146140cfbcdSGerrit Uitslag * @param bool $print  if true print the field, otherwise html of the field is returned
14742ea7f44SGerrit Uitslag * @return string html of hidden form field
148634d7150SAndreas Gohr */
149d868eb89SAndreas Gohrfunction formSecurityToken($print = true)
150d868eb89SAndreas Gohr{
1512404d0edSAnika Henke    $ret = '<div class="no"><input type="hidden" name="sectok" value="' . getSecurityToken() . '" /></div>' . "\n";
1523272d797SAndreas Gohr    if ($print) echo $ret;
153634d7150SAndreas Gohr    return $ret;
154634d7150SAndreas Gohr}
155634d7150SAndreas Gohr
156634d7150SAndreas Gohr/**
1571015a57dSChristopher Smith * Determine basic information for a request of $id
15815fae107Sandi *
15915fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
1607e87a794SChristopher Smith * @author Chris Smith <chris@jalakai.co.uk>
161140cfbcdSGerrit Uitslag *
162140cfbcdSGerrit Uitslag * @param string $id         pageid
163140cfbcdSGerrit Uitslag * @param bool   $htmlClient add info about whether is mobile browser
164140cfbcdSGerrit Uitslag * @return array with info for a request of $id
165140cfbcdSGerrit Uitslag *
166f3f0262cSandi */
167d868eb89SAndreas Gohrfunction basicinfo($id, $htmlClient = true)
168d868eb89SAndreas Gohr{
169f3f0262cSandi    global $USERINFO;
170585bf44eSChristopher Smith    /* @var Input $INPUT */
171585bf44eSChristopher Smith    global $INPUT;
1726afe8dcaSchris
173c66972f2SAdrian Lang    // set info about manager/admin status.
17424870174SAndreas Gohr    $info = [];
175c66972f2SAdrian Lang    $info['isadmin']   = false;
176c66972f2SAdrian Lang    $info['ismanager'] = false;
177585bf44eSChristopher Smith    if ($INPUT->server->has('REMOTE_USER')) {
178f3f0262cSandi        $info['userinfo']   = $USERINFO;
1791015a57dSChristopher Smith        $info['perm']       = auth_quickaclcheck($id);
180585bf44eSChristopher Smith        $info['client']     = $INPUT->server->str('REMOTE_USER');
18117ee7f66SAndreas Gohr
182f8cc712eSAndreas Gohr        if ($info['perm'] == AUTH_ADMIN) {
183f8cc712eSAndreas Gohr            $info['isadmin']   = true;
184f8cc712eSAndreas Gohr            $info['ismanager'] = true;
185f8cc712eSAndreas Gohr        } elseif (auth_ismanager()) {
186f8cc712eSAndreas Gohr            $info['ismanager'] = true;
187f8cc712eSAndreas Gohr        }
188f8cc712eSAndreas Gohr
18917ee7f66SAndreas Gohr        // if some outside auth were used only REMOTE_USER is set
190a58fcbbcSAndreas Gohr        if (empty($info['userinfo']['name'])) {
191585bf44eSChristopher Smith            $info['userinfo']['name'] = $INPUT->server->str('REMOTE_USER');
19217ee7f66SAndreas Gohr        }
193f3f0262cSandi    } else {
1941015a57dSChristopher Smith        $info['perm']       = auth_aclcheck($id, '', null);
195ee4c4a1bSAndreas Gohr        $info['client']     = clientIP(true);
196f3f0262cSandi    }
197f3f0262cSandi
1981015a57dSChristopher Smith    $info['namespace'] = getNS($id);
1991015a57dSChristopher Smith
2001015a57dSChristopher Smith    // mobile detection
2011015a57dSChristopher Smith    if ($htmlClient) {
2021015a57dSChristopher Smith        $info['ismobile'] = clientismobile();
2031015a57dSChristopher Smith    }
2041015a57dSChristopher Smith
2051015a57dSChristopher Smith    return $info;
2061015a57dSChristopher Smith}
2071015a57dSChristopher Smith
2081015a57dSChristopher Smith/**
2091015a57dSChristopher Smith * Return info about the current document as associative
2101015a57dSChristopher Smith * array.
2111015a57dSChristopher Smith *
212140cfbcdSGerrit Uitslag * @return array with info about current document
2134dc42f7fSGerrit Uitslag * @throws Exception
2144dc42f7fSGerrit Uitslag *
2154dc42f7fSGerrit Uitslag * @author Andreas Gohr <andi@splitbrain.org>
2161015a57dSChristopher Smith */
217d868eb89SAndreas Gohrfunction pageinfo()
218d868eb89SAndreas Gohr{
2191015a57dSChristopher Smith    global $ID;
2201015a57dSChristopher Smith    global $REV;
2211015a57dSChristopher Smith    global $RANGE;
2221015a57dSChristopher Smith    global $lang;
2231015a57dSChristopher Smith
2241015a57dSChristopher Smith    $info = basicinfo($ID);
2251015a57dSChristopher Smith
2261015a57dSChristopher Smith    // include ID & REV not redundant, as some parts of DokuWiki may temporarily change $ID, e.g. p_wiki_xhtml
2271015a57dSChristopher Smith    // FIXME ... perhaps it would be better to ensure the temporary changes weren't necessary
2281015a57dSChristopher Smith    $info['id']  = $ID;
2291015a57dSChristopher Smith    $info['rev'] = $REV;
2301015a57dSChristopher Smith
23175d66495SMichael Große    $subManager = new SubscriberManager();
23275d66495SMichael Große    $info['subscribed'] = $subManager->userSubscription();
2337e87a794SChristopher Smith
234f3f0262cSandi    $info['locked']     = checklock($ID);
235317a04c4SSatoshi Sahara    $info['filepath']   = wikiFN($ID);
23679e79377SAndreas Gohr    $info['exists']     = file_exists($info['filepath']);
23701c9a118SAndreas Gohr    $info['currentrev'] = @filemtime($info['filepath']);
2385ec96136SSatoshi Sahara
2392ca9d91cSBen Coburn    if ($REV) {
2402ca9d91cSBen Coburn        //check if current revision was meant
24101c9a118SAndreas Gohr        if ($info['exists'] && ($info['currentrev'] == $REV)) {
2422ca9d91cSBen Coburn            $REV = '';
2437b3a6803SAndreas Gohr        } elseif ($RANGE) {
2447b3a6803SAndreas Gohr            //section editing does not work with old revisions!
2457b3a6803SAndreas Gohr            $REV   = '';
2467b3a6803SAndreas Gohr            $RANGE = '';
2477b3a6803SAndreas Gohr            msg($lang['nosecedit'], 0);
2482ca9d91cSBen Coburn        } else {
2492ca9d91cSBen Coburn            //really use old revision
250317a04c4SSatoshi Sahara            $info['filepath'] = wikiFN($ID, $REV);
25179e79377SAndreas Gohr            $info['exists']   = file_exists($info['filepath']);
252f3f0262cSandi        }
253f3f0262cSandi    }
254c112d578Sandi    $info['rev'] = $REV;
255f3f0262cSandi    if ($info['exists']) {
256252acce3SSatoshi Sahara        $info['writable'] = (is_writable($info['filepath']) && $info['perm'] >= AUTH_EDIT);
257f3f0262cSandi    } else {
258f3f0262cSandi        $info['writable'] = ($info['perm'] >= AUTH_CREATE);
259f3f0262cSandi    }
26050e988b1SAndreas Gohr    $info['editable'] = ($info['writable'] && empty($info['locked']));
261f3f0262cSandi    $info['lastmod']  = @filemtime($info['filepath']);
262f3f0262cSandi
26371726d78SBen Coburn    //load page meta data
26471726d78SBen Coburn    $info['meta'] = p_get_metadata($ID);
26571726d78SBen Coburn
266652610a2Sandi    //who's the editor
267047bad06SGerrit Uitslag    $pagelog = new PageChangeLog($ID, 1024);
268652610a2Sandi    if ($REV) {
269f523c971SGerrit Uitslag        $revinfo = $pagelog->getRevisionInfo($REV);
27024870174SAndreas Gohr    } elseif (!empty($info['meta']['last_change']) && is_array($info['meta']['last_change'])) {
271aa27cf05SAndreas Gohr        $revinfo = $info['meta']['last_change'];
272aa27cf05SAndreas Gohr    } else {
273f523c971SGerrit Uitslag        $revinfo = $pagelog->getRevisionInfo($info['lastmod']);
274cd00a034SBen Coburn        // cache most recent changelog line in metadata if missing and still valid
275cd00a034SBen Coburn        if ($revinfo !== false) {
276cd00a034SBen Coburn            $info['meta']['last_change'] = $revinfo;
27724870174SAndreas Gohr            p_set_metadata($ID, ['last_change' => $revinfo]);
278cd00a034SBen Coburn        }
279cd00a034SBen Coburn    }
280cd00a034SBen Coburn    //and check for an external edit
281cd00a034SBen Coburn    if ($revinfo !== false && $revinfo['date'] != $info['lastmod']) {
282cd00a034SBen Coburn        // cached changelog line no longer valid
283cd00a034SBen Coburn        $revinfo                     = false;
284cd00a034SBen Coburn        $info['meta']['last_change'] = $revinfo;
28524870174SAndreas Gohr        p_set_metadata($ID, ['last_change' => $revinfo]);
286652610a2Sandi    }
287bb4866bdSchris
2880a444b5aSPhy    if ($revinfo !== false) {
289652610a2Sandi        $info['ip']   = $revinfo['ip'];
290652610a2Sandi        $info['user'] = $revinfo['user'];
291652610a2Sandi        $info['sum']  = $revinfo['sum'];
29271726d78SBen Coburn        // See also $INFO['meta']['last_change'] which is the most recent log line for page $ID.
293ebf1501fSBen Coburn        // Use $INFO['meta']['last_change']['type']===DOKU_CHANGE_TYPE_MINOR_EDIT in place of $info['minor'].
29459f257aeSchris
295252acce3SSatoshi Sahara        $info['editor'] = $revinfo['user'] ?: $revinfo['ip'];
2960a444b5aSPhy    } else {
2970a444b5aSPhy        $info['ip']     = null;
2980a444b5aSPhy        $info['user']   = null;
2990a444b5aSPhy        $info['sum']    = null;
3000a444b5aSPhy        $info['editor'] = null;
3010a444b5aSPhy    }
302652610a2Sandi
303ee4c4a1bSAndreas Gohr    // draft
30424870174SAndreas Gohr    $draft = new Draft($ID, $info['client']);
3050aabe6f8SMichael Große    if ($draft->isDraftAvailable()) {
3060aabe6f8SMichael Große        $info['draft'] = $draft->getDraftFilename();
307ee4c4a1bSAndreas Gohr    }
308ee4c4a1bSAndreas Gohr
3091015a57dSChristopher Smith    return $info;
3101015a57dSChristopher Smith}
3111015a57dSChristopher Smith
3121015a57dSChristopher Smith/**
3130c39d46cSMichael Große * Initialize and/or fill global $JSINFO with some basic info to be given to javascript
3140c39d46cSMichael Große */
315d868eb89SAndreas Gohrfunction jsinfo()
316d868eb89SAndreas Gohr{
3170c39d46cSMichael Große    global $JSINFO, $ID, $INFO, $ACT;
3180c39d46cSMichael Große
3190c39d46cSMichael Große    if (!is_array($JSINFO)) {
3200c39d46cSMichael Große        $JSINFO = [];
3210c39d46cSMichael Große    }
3220c39d46cSMichael Große    //export minimal info to JS, plugins can add more
3230c39d46cSMichael Große    $JSINFO['id']                    = $ID;
32468491db9SPhy    $JSINFO['namespace']             = isset($INFO) ? (string) $INFO['namespace'] : '';
3250c39d46cSMichael Große    $JSINFO['ACT']                   = act_clean($ACT);
3260c39d46cSMichael Große    $JSINFO['useHeadingNavigation']  = (int) useHeading('navigation');
3270c39d46cSMichael Große    $JSINFO['useHeadingContent']     = (int) useHeading('content');
3280c39d46cSMichael Große}
3290c39d46cSMichael Große
3300c39d46cSMichael Große/**
3311015a57dSChristopher Smith * Return information about the current media item as an associative array.
332140cfbcdSGerrit Uitslag *
333140cfbcdSGerrit Uitslag * @return array with info about current media item
3341015a57dSChristopher Smith */
335d868eb89SAndreas Gohrfunction mediainfo()
336d868eb89SAndreas Gohr{
3371015a57dSChristopher Smith    global $NS;
3381015a57dSChristopher Smith    global $IMG;
3391015a57dSChristopher Smith
3401015a57dSChristopher Smith    $info = basicinfo("$NS:*");
3411015a57dSChristopher Smith    $info['image'] = $IMG;
3421c548ebeSAndreas Gohr
343f3f0262cSandi    return $info;
344f3f0262cSandi}
345f3f0262cSandi
346f3f0262cSandi/**
3472684e50aSAndreas Gohr * Build an string of URL parameters
3482684e50aSAndreas Gohr *
3492684e50aSAndreas Gohr * @author Andreas Gohr
350140cfbcdSGerrit Uitslag *
351140cfbcdSGerrit Uitslag * @param array  $params    array with key-value pairs
352140cfbcdSGerrit Uitslag * @param string $sep       series of pairs are separated by this character
353140cfbcdSGerrit Uitslag * @return string query string
3542684e50aSAndreas Gohr */
355d868eb89SAndreas Gohrfunction buildURLparams($params, $sep = '&amp;')
356d868eb89SAndreas Gohr{
3572684e50aSAndreas Gohr    $url = '';
3582684e50aSAndreas Gohr    $amp = false;
3592684e50aSAndreas Gohr    foreach ($params as $key => $val) {
360b174aeaeSchris        if ($amp) $url .= $sep;
3612684e50aSAndreas Gohr
36285e6871fSAdrian Lang        $url .= rawurlencode($key) . '=';
3633a50618cSgweissbach        $url .= rawurlencode((string) $val);
3642684e50aSAndreas Gohr        $amp = true;
3652684e50aSAndreas Gohr    }
3662684e50aSAndreas Gohr    return $url;
3672684e50aSAndreas Gohr}
3682684e50aSAndreas Gohr
3692684e50aSAndreas Gohr/**
3702684e50aSAndreas Gohr * Build an string of html tag attributes
3712684e50aSAndreas Gohr *
3727bff22c0SAndreas Gohr * Skips keys starting with '_', values get HTML encoded
3737bff22c0SAndreas Gohr *
3742684e50aSAndreas Gohr * @author Andreas Gohr
375140cfbcdSGerrit Uitslag *
376140cfbcdSGerrit Uitslag * @param array $params           array with (attribute name-attribute value) pairs
377246d3337SMichael Große * @param bool  $skipEmptyStrings skip empty string values?
378140cfbcdSGerrit Uitslag * @return string
3792684e50aSAndreas Gohr */
380d868eb89SAndreas Gohrfunction buildAttributes($params, $skipEmptyStrings = false)
381d868eb89SAndreas Gohr{
3822684e50aSAndreas Gohr    $url   = '';
3839063ec14SAdrian Lang    $white = false;
3842684e50aSAndreas Gohr    foreach ($params as $key => $val) {
3852401f18dSSyntaxseed        if ($key[0] == '_') continue;
386246d3337SMichael Große        if ($val === '' && $skipEmptyStrings) continue;
3879063ec14SAdrian Lang        if ($white) $url .= ' ';
3887bff22c0SAndreas Gohr
3892684e50aSAndreas Gohr        $url .= $key . '="';
390f7711f2bSAndreas Gohr        $url .= hsc($val);
3912684e50aSAndreas Gohr        $url .= '"';
3929063ec14SAdrian Lang        $white = true;
3932684e50aSAndreas Gohr    }
3942684e50aSAndreas Gohr    return $url;
3952684e50aSAndreas Gohr}
3962684e50aSAndreas Gohr
3972684e50aSAndreas Gohr/**
39815fae107Sandi * This builds the breadcrumb trail and returns it as array
39915fae107Sandi *
40015fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
401140cfbcdSGerrit Uitslag *
402e3710957SGerrit Uitslag * @return string[] with the data: array(pageid=>name, ... )
403f3f0262cSandi */
404d868eb89SAndreas Gohrfunction breadcrumbs()
405d868eb89SAndreas Gohr{
4068746e727Sandi    // we prepare the breadcrumbs early for quick session closing
4078746e727Sandi    static $crumbs = null;
4088746e727Sandi    if ($crumbs != null) return $crumbs;
4098746e727Sandi
410f3f0262cSandi    global $ID;
411f3f0262cSandi    global $ACT;
412f3f0262cSandi    global $conf;
4130ea5ebb4SB_S666    global $INFO;
414f3f0262cSandi
415f3f0262cSandi    //first visit?
41624870174SAndreas Gohr    $crumbs = $_SESSION[DOKU_COOKIE]['bc'] ?? [];
4175603d3c1SHenry Pan    //we only save on show and existing visible readable wiki documents
418a77f5846Sjan    $file = wikiFN($ID);
4195603d3c1SHenry Pan    if ($ACT != 'show' || $INFO['perm'] < AUTH_READ || isHiddenPage($ID) || !file_exists($file)) {
420e71ce681SAndreas Gohr        $_SESSION[DOKU_COOKIE]['bc'] = $crumbs;
421f3f0262cSandi        return $crumbs;
422f3f0262cSandi    }
423a77f5846Sjan
424a77f5846Sjan    // page names
4251a84a0f3SAnika Henke    $name = noNSorNS($ID);
426fe9ec250SChris Smith    if (useHeading('navigation')) {
427a77f5846Sjan        // get page title
42867c15eceSMichael Hamann        $title = p_get_first_heading($ID, METADATA_RENDER_USING_SIMPLE_CACHE);
429a77f5846Sjan        if ($title) {
430a77f5846Sjan            $name = $title;
431a77f5846Sjan        }
432a77f5846Sjan    }
433a77f5846Sjan
434f3f0262cSandi    //remove ID from array
435a77f5846Sjan    if (isset($crumbs[$ID])) {
436a77f5846Sjan        unset($crumbs[$ID]);
437f3f0262cSandi    }
438f3f0262cSandi
439f3f0262cSandi    //add to array
440a77f5846Sjan    $crumbs[$ID] = $name;
441f3f0262cSandi    //reduce size
442f3f0262cSandi    while (count($crumbs) > $conf['breadcrumbs']) {
443f3f0262cSandi        array_shift($crumbs);
444f3f0262cSandi    }
445f3f0262cSandi    //save to session
446e71ce681SAndreas Gohr    $_SESSION[DOKU_COOKIE]['bc'] = $crumbs;
447f3f0262cSandi    return $crumbs;
448f3f0262cSandi}
449f3f0262cSandi
450f3f0262cSandi/**
45115fae107Sandi * Filter for page IDs
45215fae107Sandi *
453f3f0262cSandi * This is run on a ID before it is outputted somewhere
454f3f0262cSandi * currently used to replace the colon with something else
455907f24f7SAndreas Gohr * on Windows (non-IIS) systems and to have proper URL encoding
456907f24f7SAndreas Gohr *
457977aa967SAndreas Gohr * See discussions at https://github.com/dokuwiki/dokuwiki/pull/84 and
458977aa967SAndreas Gohr * https://github.com/dokuwiki/dokuwiki/pull/173 why we use a whitelist of
459907f24f7SAndreas Gohr * unaffected servers instead of blacklisting affected servers here.
46015fae107Sandi *
46149c713a3Sandi * Urlencoding is ommitted when the second parameter is false
46249c713a3Sandi *
46315fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
464140cfbcdSGerrit Uitslag *
465140cfbcdSGerrit Uitslag * @param string $id pageid being filtered
466140cfbcdSGerrit Uitslag * @param bool   $ue apply urlencoding?
467140cfbcdSGerrit Uitslag * @return string
468f3f0262cSandi */
469d868eb89SAndreas Gohrfunction idfilter($id, $ue = true)
470d868eb89SAndreas Gohr{
471f3f0262cSandi    global $conf;
472585bf44eSChristopher Smith    /* @var Input $INPUT */
473585bf44eSChristopher Smith    global $INPUT;
474585bf44eSChristopher Smith
475bf8f8509SAndreas Gohr    $id = (string) $id;
476bf8f8509SAndreas Gohr
477f3f0262cSandi    if ($conf['useslash'] && $conf['userewrite']) {
478f3f0262cSandi        $id = strtr($id, ':', '/');
4797d34963bSAndreas Gohr    } elseif (
4806c16a3a9Sfiwswe        str_starts_with(strtoupper(PHP_OS), 'WIN') &&
48158bedc8aSborekb        $conf['userewrite'] &&
482585bf44eSChristopher Smith        strpos($INPUT->server->str('SERVER_SOFTWARE'), 'Microsoft-IIS') === false
4833272d797SAndreas Gohr    ) {
484f3f0262cSandi        $id = strtr($id, ':', ';');
485f3f0262cSandi    }
48649c713a3Sandi    if ($ue) {
487b6c6979fSAndreas Gohr        $id = rawurlencode($id);
488f3f0262cSandi        $id = str_replace('%3A', ':', $id); //keep as colon
489edd95259SGerrit Uitslag        $id = str_replace('%3B', ';', $id); //keep as semicolon
490f3f0262cSandi        $id = str_replace('%2F', '/', $id); //keep as slash
49149c713a3Sandi    }
492f3f0262cSandi    return $id;
493f3f0262cSandi}
494f3f0262cSandi
495f3f0262cSandi/**
496ed7b5f09Sandi * This builds a link to a wikipage
49715fae107Sandi *
4984bc480e5SAndreas Gohr * It handles URL rewriting and adds additional parameters
4996c7843b5Sandi *
50015fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
5014bc480e5SAndreas Gohr *
5024bc480e5SAndreas Gohr * @param string       $id             page id, defaults to start page
5034bc480e5SAndreas Gohr * @param string|array $urlParameters  URL parameters, associative array recommended
5044bc480e5SAndreas Gohr * @param bool         $absolute       request an absolute URL instead of relative
5054bc480e5SAndreas Gohr * @param string       $separator      parameter separator
5064bc480e5SAndreas Gohr * @return string
507f3f0262cSandi */
508d868eb89SAndreas Gohrfunction wl($id = '', $urlParameters = '', $absolute = false, $separator = '&amp;')
509d868eb89SAndreas Gohr{
510f3f0262cSandi    global $conf;
51116f15a81SDominik Eckelmann    if (is_array($urlParameters)) {
5124bde2196Slisps        if (isset($urlParameters['rev']) && !$urlParameters['rev']) unset($urlParameters['rev']);
51364159a61SAndreas Gohr        if (isset($urlParameters['at']) && $conf['date_at_format']) {
51464159a61SAndreas Gohr            $urlParameters['at'] = date($conf['date_at_format'], $urlParameters['at']);
51564159a61SAndreas Gohr        }
51616f15a81SDominik Eckelmann        $urlParameters = buildURLparams($urlParameters, $separator);
5176de3759aSAndreas Gohr    } else {
51816f15a81SDominik Eckelmann        $urlParameters = str_replace(',', $separator, $urlParameters);
5196de3759aSAndreas Gohr    }
52016f15a81SDominik Eckelmann    if ($id === '') {
52116f15a81SDominik Eckelmann        $id = $conf['start'];
52216f15a81SDominik Eckelmann    }
523f3f0262cSandi    $id = idfilter($id);
52416f15a81SDominik Eckelmann    if ($absolute) {
525ed7b5f09Sandi        $xlink = DOKU_URL;
526ed7b5f09Sandi    } else {
527ed7b5f09Sandi        $xlink = DOKU_BASE;
528ed7b5f09Sandi    }
529f3f0262cSandi
5306c7843b5Sandi    if ($conf['userewrite'] == 2) {
5316c7843b5Sandi        $xlink .= DOKU_SCRIPT . '/' . $id;
53216f15a81SDominik Eckelmann        if ($urlParameters) $xlink .= '?' . $urlParameters;
5336c7843b5Sandi    } elseif ($conf['userewrite']) {
534f3f0262cSandi        $xlink .= $id;
53516f15a81SDominik Eckelmann        if ($urlParameters) $xlink .= '?' . $urlParameters;
53640b5fb5bSPhy    } elseif ($id !== '') {
5376c7843b5Sandi        $xlink .= DOKU_SCRIPT . '?id=' . $id;
53816f15a81SDominik Eckelmann        if ($urlParameters) $xlink .= $separator . $urlParameters;
539bce3726dSAndreas Gohr    } else {
540bce3726dSAndreas Gohr        $xlink .= DOKU_SCRIPT;
54116f15a81SDominik Eckelmann        if ($urlParameters) $xlink .= '?' . $urlParameters;
542f3f0262cSandi    }
543f3f0262cSandi
544f3f0262cSandi    return $xlink;
545f3f0262cSandi}
546f3f0262cSandi
547f3f0262cSandi/**
548f5c2808fSBen Coburn * This builds a link to an alternate page format
549f5c2808fSBen Coburn *
550f5c2808fSBen Coburn * Handles URL rewriting if enabled. Follows the style of wl().
551f5c2808fSBen Coburn *
552f5c2808fSBen Coburn * @author Ben Coburn <btcoburn@silicodon.net>
5534bc480e5SAndreas Gohr * @param string       $id             page id, defaults to start page
5544bc480e5SAndreas Gohr * @param string       $format         the export renderer to use
5554bc480e5SAndreas Gohr * @param string|array $urlParameters  URL parameters, associative array recommended
5564bc480e5SAndreas Gohr * @param bool         $abs            request an absolute URL instead of relative
5574bc480e5SAndreas Gohr * @param string       $sep            parameter separator
5584bc480e5SAndreas Gohr * @return string
559f5c2808fSBen Coburn */
560d868eb89SAndreas Gohrfunction exportlink($id = '', $format = 'raw', $urlParameters = '', $abs = false, $sep = '&amp;')
561d868eb89SAndreas Gohr{
562f5c2808fSBen Coburn    global $conf;
5634bc480e5SAndreas Gohr    if (is_array($urlParameters)) {
5644bc480e5SAndreas Gohr        $urlParameters = buildURLparams($urlParameters, $sep);
565f5c2808fSBen Coburn    } else {
5664bc480e5SAndreas Gohr        $urlParameters = str_replace(',', $sep, $urlParameters);
567f5c2808fSBen Coburn    }
568f5c2808fSBen Coburn
569f5c2808fSBen Coburn    $format = rawurlencode($format);
570f5c2808fSBen Coburn    $id     = idfilter($id);
571f5c2808fSBen Coburn    if ($abs) {
572f5c2808fSBen Coburn        $xlink = DOKU_URL;
573f5c2808fSBen Coburn    } else {
574f5c2808fSBen Coburn        $xlink = DOKU_BASE;
575f5c2808fSBen Coburn    }
576f5c2808fSBen Coburn
577f5c2808fSBen Coburn    if ($conf['userewrite'] == 2) {
578f5c2808fSBen Coburn        $xlink .= DOKU_SCRIPT . '/' . $id . '?do=export_' . $format;
5794bc480e5SAndreas Gohr        if ($urlParameters) $xlink .= $sep . $urlParameters;
580f5c2808fSBen Coburn    } elseif ($conf['userewrite'] == 1) {
581f5c2808fSBen Coburn        $xlink .= '_export/' . $format . '/' . $id;
5824bc480e5SAndreas Gohr        if ($urlParameters) $xlink .= '?' . $urlParameters;
583f5c2808fSBen Coburn    } else {
584f5c2808fSBen Coburn        $xlink .= DOKU_SCRIPT . '?do=export_' . $format . $sep . 'id=' . $id;
5854bc480e5SAndreas Gohr        if ($urlParameters) $xlink .= $sep . $urlParameters;
586f5c2808fSBen Coburn    }
587f5c2808fSBen Coburn
588f5c2808fSBen Coburn    return $xlink;
589f5c2808fSBen Coburn}
590f5c2808fSBen Coburn
591f5c2808fSBen Coburn/**
5926de3759aSAndreas Gohr * Build a link to a media file
5936de3759aSAndreas Gohr *
5946de3759aSAndreas Gohr * Will return a link to the detail page if $direct is false
5958c08db0aSAndreas Gohr *
5968c08db0aSAndreas Gohr * The $more parameter should always be given as array, the function then
5978c08db0aSAndreas Gohr * will strip default parameters to produce even cleaner URLs
5988c08db0aSAndreas Gohr *
5993272d797SAndreas Gohr * @param string  $id     the media file id or URL
6003272d797SAndreas Gohr * @param mixed   $more   string or array with additional parameters
6013272d797SAndreas Gohr * @param bool    $direct link to detail page if false
6023272d797SAndreas Gohr * @param string  $sep    URL parameter separator
6033272d797SAndreas Gohr * @param bool    $abs    Create an absolute URL
6043272d797SAndreas Gohr * @return string
6056de3759aSAndreas Gohr */
606d868eb89SAndreas Gohrfunction ml($id = '', $more = '', $direct = true, $sep = '&amp;', $abs = false)
607d868eb89SAndreas Gohr{
6086de3759aSAndreas Gohr    global $conf;
609b9ee6a44SKlap-in    $isexternalimage = media_isexternal($id);
610826d2766SKlap-in    if (!$isexternalimage) {
611826d2766SKlap-in        $id = cleanID($id);
612826d2766SKlap-in    }
613826d2766SKlap-in
6146de3759aSAndreas Gohr    if (is_array($more)) {
6150f4e0092SChristopher Smith        // add token for resized images
61624870174SAndreas Gohr        $w = $more['w'] ?? null;
61724870174SAndreas Gohr        $h = $more['h'] ?? null;
61898fe1ac9SDamien Regad        if ($w || $h || $isexternalimage) {
619357c9a39SDamien Regad            $more['tok'] = media_get_token($id, $w, $h);
6200f4e0092SChristopher Smith        }
6218c08db0aSAndreas Gohr        // strip defaults for shorter URLs
6228c08db0aSAndreas Gohr        if (isset($more['cache']) && $more['cache'] == 'cache') unset($more['cache']);
623443e135dSChristopher Smith        if (empty($more['w'])) unset($more['w']);
624443e135dSChristopher Smith        if (empty($more['h'])) unset($more['h']);
6258c08db0aSAndreas Gohr        if (isset($more['id']) && $direct) unset($more['id']);
62678b874e6Slisps        if (isset($more['rev']) && !$more['rev']) unset($more['rev']);
627b174aeaeSchris        $more = buildURLparams($more, $sep);
6286de3759aSAndreas Gohr    } else {
62924870174SAndreas Gohr        $matches = [];
630cc036f74SKlap-in        if (preg_match_all('/\b(w|h)=(\d*)\b/', $more, $matches, PREG_SET_ORDER) || $isexternalimage) {
63124870174SAndreas Gohr            $resize = ['w' => 0, 'h' => 0];
6325e7db1e2SChristopher Smith            foreach ($matches as $match) {
6335e7db1e2SChristopher Smith                $resize[$match[1]] = $match[2];
6345e7db1e2SChristopher Smith            }
635cc036f74SKlap-in            $more .= $more === '' ? '' : $sep;
636cc036f74SKlap-in            $more .= 'tok=' . media_get_token($id, $resize['w'], $resize['h']);
6375e7db1e2SChristopher Smith        }
6388c08db0aSAndreas Gohr        $more = str_replace('cache=cache', '', $more); //skip default
6398c08db0aSAndreas Gohr        $more = str_replace(',,', ',', $more);
640b174aeaeSchris        $more = str_replace(',', $sep, $more);
6416de3759aSAndreas Gohr    }
6426de3759aSAndreas Gohr
64355b2b31bSAndreas Gohr    if ($abs) {
64455b2b31bSAndreas Gohr        $xlink = DOKU_URL;
64555b2b31bSAndreas Gohr    } else {
6466de3759aSAndreas Gohr        $xlink = DOKU_BASE;
64755b2b31bSAndreas Gohr    }
6486de3759aSAndreas Gohr
6496de3759aSAndreas Gohr    // external URLs are always direct without rewriting
650826d2766SKlap-in    if ($isexternalimage) {
6516de3759aSAndreas Gohr        $xlink .= 'lib/exe/fetch.php';
652cc036f74SKlap-in        $xlink .= '?' . $more;
653b174aeaeSchris        $xlink .= $sep . 'media=' . rawurlencode($id);
6546de3759aSAndreas Gohr        return $xlink;
6556de3759aSAndreas Gohr    }
6566de3759aSAndreas Gohr
6576de3759aSAndreas Gohr    $id = idfilter($id);
6586de3759aSAndreas Gohr
6596de3759aSAndreas Gohr    // decide on scriptname
6606de3759aSAndreas Gohr    if ($direct) {
6616de3759aSAndreas Gohr        if ($conf['userewrite'] == 1) {
6626de3759aSAndreas Gohr            $script = '_media';
6636de3759aSAndreas Gohr        } else {
6646de3759aSAndreas Gohr            $script = 'lib/exe/fetch.php';
6656de3759aSAndreas Gohr        }
66624870174SAndreas Gohr    } elseif ($conf['userewrite'] == 1) {
6676de3759aSAndreas Gohr        $script = '_detail';
6686de3759aSAndreas Gohr    } else {
6696de3759aSAndreas Gohr        $script = 'lib/exe/detail.php';
6706de3759aSAndreas Gohr    }
6716de3759aSAndreas Gohr
6726de3759aSAndreas Gohr    // build URL based on rewrite mode
6736de3759aSAndreas Gohr    if ($conf['userewrite']) {
6746de3759aSAndreas Gohr        $xlink .= $script . '/' . $id;
6756de3759aSAndreas Gohr        if ($more) $xlink .= '?' . $more;
67624870174SAndreas Gohr    } elseif ($more) {
677a99d3236SEsther Brunner        $xlink .= $script . '?' . $more;
678b174aeaeSchris        $xlink .= $sep . 'media=' . $id;
6796de3759aSAndreas Gohr    } else {
680a99d3236SEsther Brunner        $xlink .= $script . '?media=' . $id;
6816de3759aSAndreas Gohr    }
6826de3759aSAndreas Gohr
6836de3759aSAndreas Gohr    return $xlink;
6846de3759aSAndreas Gohr}
6856de3759aSAndreas Gohr
6866de3759aSAndreas Gohr/**
68725ca5b17SAndreas Gohr * Returns the URL to the DokuWiki base script
68815fae107Sandi *
68925ca5b17SAndreas Gohr * Consider using wl() instead, unless you absoutely need the doku.php endpoint
69025ca5b17SAndreas Gohr *
69115fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
692140cfbcdSGerrit Uitslag *
693140cfbcdSGerrit Uitslag * @return string
694f3f0262cSandi */
695d868eb89SAndreas Gohrfunction script()
696d868eb89SAndreas Gohr{
697ed7b5f09Sandi    return DOKU_BASE . DOKU_SCRIPT;
698f3f0262cSandi}
699f3f0262cSandi
700f3f0262cSandi/**
70115fae107Sandi * Spamcheck against wordlist
70215fae107Sandi *
703f3f0262cSandi * Checks the wikitext against a list of blocked expressions
704f3f0262cSandi * returns true if the text contains any bad words
70515fae107Sandi *
706e403cc58SMichael Klier * Triggers COMMON_WORDBLOCK_BLOCKED
707e403cc58SMichael Klier *
708e403cc58SMichael Klier *  Action Plugins can use this event to inspect the blocked data
709e403cc58SMichael Klier *  and gain information about the user who was blocked.
710e403cc58SMichael Klier *
711e403cc58SMichael Klier *  Event data:
712e403cc58SMichael Klier *    data['matches']  - array of matches
713e403cc58SMichael Klier *    data['userinfo'] - information about the blocked user
714e403cc58SMichael Klier *      [ip]           - ip address
715e403cc58SMichael Klier *      [user]         - username (if logged in)
716e403cc58SMichael Klier *      [mail]         - mail address (if logged in)
717e403cc58SMichael Klier *      [name]         - real name (if logged in)
718e403cc58SMichael Klier *
71915fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
7206dffa0e0SAndreas Gohr * @author Michael Klier <chi@chimeric.de>
721140cfbcdSGerrit Uitslag *
7226dffa0e0SAndreas Gohr * @param  string $text - optional text to check, if not given the globals are used
7236dffa0e0SAndreas Gohr * @return bool         - true if a spam word was found
724f3f0262cSandi */
725d868eb89SAndreas Gohrfunction checkwordblock($text = '')
726d868eb89SAndreas Gohr{
727f3f0262cSandi    global $TEXT;
7286dffa0e0SAndreas Gohr    global $PRE;
7296dffa0e0SAndreas Gohr    global $SUF;
730e0086ca2SAndreas Gohr    global $SUM;
731f3f0262cSandi    global $conf;
732e403cc58SMichael Klier    global $INFO;
733585bf44eSChristopher Smith    /* @var Input $INPUT */
734585bf44eSChristopher Smith    global $INPUT;
735f3f0262cSandi
736f3f0262cSandi    if (!$conf['usewordblock']) return false;
737f3f0262cSandi
738e0086ca2SAndreas Gohr    if (!$text) $text = "$PRE $TEXT $SUF $SUM";
7396dffa0e0SAndreas Gohr
740041d1964SAndreas Gohr    // we prepare the text a tiny bit to prevent spammers circumventing URL checks
74164159a61SAndreas Gohr    // phpcs:disable Generic.Files.LineLength.TooLong
74264159a61SAndreas Gohr    $text = preg_replace(
74364159a61SAndreas Gohr        '!(\b)(www\.[\w.:?\-;,]+?\.[\w.:?\-;,]+?[\w/\#~:.?+=&%@\!\-.:?\-;,]+?)([.:?\-;,]*[^\w/\#~:.?+=&%@\!\-.:?\-;,])!i',
74464159a61SAndreas Gohr        '\1http://\2 \2\3',
74564159a61SAndreas Gohr        $text
74664159a61SAndreas Gohr    );
74764159a61SAndreas Gohr    // phpcs:enable
748041d1964SAndreas Gohr
749b9ac8716Schris    $wordblocks = getWordblocks();
750a51d08efSAndreas Gohr    // read file in chunks of 200 - this should work around the
7513e2965d7Sandi    // MAX_PATTERN_SIZE in modern PCRE
752a51d08efSAndreas Gohr    $chunksize = 200;
75364259528SAndreas Gohr
754b9ac8716Schris    while ($blocks = array_splice($wordblocks, 0, $chunksize)) {
75524870174SAndreas Gohr        $re = [];
75649eb6e38SAndreas Gohr        // build regexp from blocks
757f3f0262cSandi        foreach ($blocks as $block) {
758f3f0262cSandi            $block = preg_replace('/#.*$/', '', $block);
759f3f0262cSandi            $block = trim($block);
760f3f0262cSandi            if (empty($block)) continue;
761f3f0262cSandi            $re[] = $block;
762f3f0262cSandi        }
76324870174SAndreas Gohr        if (count($re) && preg_match('#(' . implode('|', $re) . ')#si', $text, $matches)) {
764e403cc58SMichael Klier            // prepare event data
76524870174SAndreas Gohr            $data = [];
766e403cc58SMichael Klier            $data['matches']        = $matches;
767585bf44eSChristopher Smith            $data['userinfo']['ip'] = $INPUT->server->str('REMOTE_ADDR');
768585bf44eSChristopher Smith            if ($INPUT->server->str('REMOTE_USER')) {
769585bf44eSChristopher Smith                $data['userinfo']['user'] = $INPUT->server->str('REMOTE_USER');
770e403cc58SMichael Klier                $data['userinfo']['name'] = $INFO['userinfo']['name'];
771e403cc58SMichael Klier                $data['userinfo']['mail'] = $INFO['userinfo']['mail'];
772e403cc58SMichael Klier            }
77324870174SAndreas Gohr            $callback = static fn() => true;
774cbb44eabSAndreas Gohr            return Event::createAndTrigger('COMMON_WORDBLOCK_BLOCKED', $data, $callback, true);
775b9ac8716Schris        }
776703f6fdeSandi    }
777f3f0262cSandi    return false;
778f3f0262cSandi}
779f3f0262cSandi
780f3f0262cSandi/**
78115fae107Sandi * Return the IP of the client
78215fae107Sandi *
7836d8affe6SAndreas Gohr * Honours X-Forwarded-For and X-Real-IP Proxy Headers
78415fae107Sandi *
7856d8affe6SAndreas Gohr * It returns a comma separated list of IPs if the above mentioned
7866d8affe6SAndreas Gohr * headers are set. If the single parameter is set, it tries to return
7876d8affe6SAndreas Gohr * a routable public address, prefering the ones suplied in the X
7886d8affe6SAndreas Gohr * headers
7896d8affe6SAndreas Gohr *
79015fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
791140cfbcdSGerrit Uitslag *
7923272d797SAndreas Gohr * @param  boolean $single If set only a single IP is returned
7933272d797SAndreas Gohr * @return string
794f3f0262cSandi */
795d868eb89SAndreas Gohrfunction clientIP($single = false)
796d868eb89SAndreas Gohr{
797585bf44eSChristopher Smith    /* @var Input $INPUT */
798925105e8SPhy    global $INPUT, $conf;
799585bf44eSChristopher Smith
80024870174SAndreas Gohr    $ip   = [];
801585bf44eSChristopher Smith    $ip[] = $INPUT->server->str('REMOTE_ADDR');
802585bf44eSChristopher Smith    if ($INPUT->server->str('HTTP_X_FORWARDED_FOR')) {
803585bf44eSChristopher Smith        $ip = array_merge($ip, explode(',', str_replace(' ', '', $INPUT->server->str('HTTP_X_FORWARDED_FOR'))));
804585bf44eSChristopher Smith    }
805585bf44eSChristopher Smith    if ($INPUT->server->str('HTTP_X_REAL_IP')) {
806585bf44eSChristopher Smith        $ip = array_merge($ip, explode(',', str_replace(' ', '', $INPUT->server->str('HTTP_X_REAL_IP'))));
807585bf44eSChristopher Smith    }
8086d8affe6SAndreas Gohr
8096d8affe6SAndreas Gohr    // remove any non-IP stuff
8106d8affe6SAndreas Gohr    $cnt   = count($ip);
8116d8affe6SAndreas Gohr    for ($i = 0; $i < $cnt; $i++) {
8120a5f08e5SAdaKaleh        if (filter_var($ip[$i], FILTER_VALIDATE_IP) === false) {
8130a5f08e5SAdaKaleh            unset($ip[$i]);
8144ff28443Schris        }
815f3f0262cSandi    }
8166d8affe6SAndreas Gohr    $ip = array_values(array_unique($ip));
81724870174SAndreas Gohr    if ($ip === [] || !$ip[0]) $ip[0] = '0.0.0.0'; // for some strange reason we don't have a IP
8186d8affe6SAndreas Gohr
81924870174SAndreas Gohr    if (!$single) return implode(',', $ip);
8206d8affe6SAndreas Gohr
821925105e8SPhy    // skip trusted local addresses
8226d8affe6SAndreas Gohr    foreach ($ip as $i) {
823925105e8SPhy        if (!empty($conf['trustedproxy']) && preg_match('/' . $conf['trustedproxy'] . '/', $i)) {
8246d8affe6SAndreas Gohr            continue;
8256d8affe6SAndreas Gohr        } else {
8266d8affe6SAndreas Gohr            return $i;
8276d8affe6SAndreas Gohr        }
8286d8affe6SAndreas Gohr    }
829925105e8SPhy
830925105e8SPhy    // still here? just use the last address
831925105e8SPhy    // this case all ips in the list are trusted
832925105e8SPhy    return $ip[count($ip) - 1];
833f3f0262cSandi}
834f3f0262cSandi
835f3f0262cSandi/**
8361c548ebeSAndreas Gohr * Check if the browser is on a mobile device
8371c548ebeSAndreas Gohr *
8381c548ebeSAndreas Gohr * Adapted from the example code at url below
8391c548ebeSAndreas Gohr *
8401c548ebeSAndreas Gohr * @link http://www.brainhandles.com/2007/10/15/detecting-mobile-browsers/#code
841140cfbcdSGerrit Uitslag *
84264159a61SAndreas Gohr * @deprecated 2018-04-27 you probably want media queries instead anyway
843140cfbcdSGerrit Uitslag * @return bool if true, client is mobile browser; otherwise false
8441c548ebeSAndreas Gohr */
845d868eb89SAndreas Gohrfunction clientismobile()
846d868eb89SAndreas Gohr{
847585bf44eSChristopher Smith    /* @var Input $INPUT */
848585bf44eSChristopher Smith    global $INPUT;
8491c548ebeSAndreas Gohr
850585bf44eSChristopher Smith    if ($INPUT->server->has('HTTP_X_WAP_PROFILE')) return true;
8511c548ebeSAndreas Gohr
852585bf44eSChristopher Smith    if (preg_match('/wap\.|\.wap/i', $INPUT->server->str('HTTP_ACCEPT'))) return true;
8531c548ebeSAndreas Gohr
854585bf44eSChristopher Smith    if (!$INPUT->server->has('HTTP_USER_AGENT')) return false;
8551c548ebeSAndreas Gohr
85624870174SAndreas Gohr    $uamatches = implode(
85764159a61SAndreas Gohr        '|',
85864159a61SAndreas Gohr        [
85964159a61SAndreas Gohr            'midp', 'j2me', 'avantg', 'docomo', 'novarra', 'palmos', 'palmsource', '240x320', 'opwv',
86064159a61SAndreas Gohr            'chtml', 'pda', 'windows ce', 'mmp\/', 'blackberry', 'mib\/', 'symbian', 'wireless', 'nokia',
86164159a61SAndreas Gohr            'hand', 'mobi', 'phone', 'cdm', 'up\.b', 'audio', 'SIE\-', 'SEC\-', 'samsung', 'HTC', 'mot\-',
86264159a61SAndreas Gohr            'mitsu', 'sagem', 'sony', 'alcatel', 'lg', 'erics', 'vx', 'NEC', 'philips', 'mmm', 'xx',
86364159a61SAndreas Gohr            'panasonic', 'sharp', 'wap', 'sch', 'rover', 'pocket', 'benq', 'java', 'pt', 'pg', 'vox',
86464159a61SAndreas Gohr            'amoi', 'bird', 'compal', 'kg', 'voda', 'sany', 'kdd', 'dbt', 'sendo', 'sgh', 'gradi', 'jb',
86564159a61SAndreas Gohr            '\d\d\di', 'moto'
86664159a61SAndreas Gohr        ]
86764159a61SAndreas Gohr    );
8681c548ebeSAndreas Gohr
869585bf44eSChristopher Smith    if (preg_match("/$uamatches/i", $INPUT->server->str('HTTP_USER_AGENT'))) return true;
8701c548ebeSAndreas Gohr
8711c548ebeSAndreas Gohr    return false;
8721c548ebeSAndreas Gohr}
8731c548ebeSAndreas Gohr
8741c548ebeSAndreas Gohr/**
8756efc45a2SDmitry Katsubo * check if a given link is interwiki link
8766efc45a2SDmitry Katsubo *
8776efc45a2SDmitry Katsubo * @param string $link the link, e.g. "wiki>page"
8786efc45a2SDmitry Katsubo * @return bool
8796efc45a2SDmitry Katsubo */
880d868eb89SAndreas Gohrfunction link_isinterwiki($link)
881d868eb89SAndreas Gohr{
8826efc45a2SDmitry Katsubo    if (preg_match('/^[a-zA-Z0-9\.]+>/u', $link)) return true;
8836efc45a2SDmitry Katsubo    return false;
8846efc45a2SDmitry Katsubo}
8856efc45a2SDmitry Katsubo
8866efc45a2SDmitry Katsubo/**
88763211f61SGlen Harris * Convert one or more comma separated IPs to hostnames
88863211f61SGlen Harris *
88922ef1e32SAndreas Gohr * If $conf['dnslookups'] is disabled it simply returns the input string
89022ef1e32SAndreas Gohr *
89163211f61SGlen Harris * @author Glen Harris <astfgl@iamnota.org>
892140cfbcdSGerrit Uitslag *
8933272d797SAndreas Gohr * @param  string $ips comma separated list of IP addresses
8943272d797SAndreas Gohr * @return string a comma separated list of hostnames
89563211f61SGlen Harris */
896d868eb89SAndreas Gohrfunction gethostsbyaddrs($ips)
897d868eb89SAndreas Gohr{
89822ef1e32SAndreas Gohr    global $conf;
89922ef1e32SAndreas Gohr    if (!$conf['dnslookups']) return $ips;
90022ef1e32SAndreas Gohr
90124870174SAndreas Gohr    $hosts = [];
90263211f61SGlen Harris    $ips   = explode(',', $ips);
903551a720fSMichael Klier
904551a720fSMichael Klier    if (is_array($ips)) {
9053886270dSAndreas Gohr        foreach ($ips as $ip) {
906551a720fSMichael Klier            $hosts[] = gethostbyaddr(trim($ip));
90763211f61SGlen Harris        }
90824870174SAndreas Gohr        return implode(',', $hosts);
909551a720fSMichael Klier    } else {
910551a720fSMichael Klier        return gethostbyaddr(trim($ips));
911551a720fSMichael Klier    }
91263211f61SGlen Harris}
91363211f61SGlen Harris
91463211f61SGlen Harris/**
91515fae107Sandi * Checks if a given page is currently locked.
91615fae107Sandi *
917f3f0262cSandi * removes stale lockfiles
91815fae107Sandi *
91915fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
920140cfbcdSGerrit Uitslag *
921140cfbcdSGerrit Uitslag * @param string $id page id
922140cfbcdSGerrit Uitslag * @return bool page is locked?
923f3f0262cSandi */
924d868eb89SAndreas Gohrfunction checklock($id)
925d868eb89SAndreas Gohr{
926f3f0262cSandi    global $conf;
927585bf44eSChristopher Smith    /* @var Input $INPUT */
928585bf44eSChristopher Smith    global $INPUT;
929585bf44eSChristopher Smith
930c9b4bd1eSBen Coburn    $lock = wikiLockFN($id);
931f3f0262cSandi
932f3f0262cSandi    //no lockfile
93379e79377SAndreas Gohr    if (!file_exists($lock)) return false;
934f3f0262cSandi
935f3f0262cSandi    //lockfile expired
936f3f0262cSandi    if ((time() - filemtime($lock)) > $conf['locktime']) {
937d8186216SBen Coburn        @unlink($lock);
938f3f0262cSandi        return false;
939f3f0262cSandi    }
940f3f0262cSandi
941f3f0262cSandi    //my own lock
9425f21556dSDamien Regad    [$ip, $session] = sexplode("\n", io_readFile($lock), 2);
94324870174SAndreas Gohr    if ($ip == $INPUT->server->str('REMOTE_USER') || (session_id() && $session === session_id())) {
944f3f0262cSandi        return false;
945f3f0262cSandi    }
946f3f0262cSandi
947f3f0262cSandi    return $ip;
948f3f0262cSandi}
949f3f0262cSandi
950f3f0262cSandi/**
95115fae107Sandi * Lock a page for editing
95215fae107Sandi *
95315fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
954140cfbcdSGerrit Uitslag *
955140cfbcdSGerrit Uitslag * @param string $id page id to lock
956f3f0262cSandi */
957d868eb89SAndreas Gohrfunction lock($id)
958d868eb89SAndreas Gohr{
959544ed901SDaniel Calviño Sánchez    global $conf;
960585bf44eSChristopher Smith    /* @var Input $INPUT */
961585bf44eSChristopher Smith    global $INPUT;
962544ed901SDaniel Calviño Sánchez
963544ed901SDaniel Calviño Sánchez    if ($conf['locktime'] == 0) {
964544ed901SDaniel Calviño Sánchez        return;
965544ed901SDaniel Calviño Sánchez    }
966544ed901SDaniel Calviño Sánchez
967c9b4bd1eSBen Coburn    $lock = wikiLockFN($id);
968585bf44eSChristopher Smith    if ($INPUT->server->str('REMOTE_USER')) {
969585bf44eSChristopher Smith        io_saveFile($lock, $INPUT->server->str('REMOTE_USER'));
970f3f0262cSandi    } else {
97185fef7e2SAndreas Gohr        io_saveFile($lock, clientIP() . "\n" . session_id());
972f3f0262cSandi    }
973f3f0262cSandi}
974f3f0262cSandi
975f3f0262cSandi/**
97615fae107Sandi * Unlock a page if it was locked by the user
977f3f0262cSandi *
97815fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
979140cfbcdSGerrit Uitslag *
9803272d797SAndreas Gohr * @param string $id page id to unlock
98115fae107Sandi * @return bool true if a lock was removed
982f3f0262cSandi */
983d868eb89SAndreas Gohrfunction unlock($id)
984d868eb89SAndreas Gohr{
985585bf44eSChristopher Smith    /* @var Input $INPUT */
986585bf44eSChristopher Smith    global $INPUT;
987585bf44eSChristopher Smith
988c9b4bd1eSBen Coburn    $lock = wikiLockFN($id);
98979e79377SAndreas Gohr    if (file_exists($lock)) {
99024870174SAndreas Gohr        @[$ip, $session] = explode("\n", io_readFile($lock));
991c0dd3914SAdaKaleh        if ($ip == $INPUT->server->str('REMOTE_USER') || $session == session_id()) {
992f3f0262cSandi            @unlink($lock);
993f3f0262cSandi            return true;
994f3f0262cSandi        }
995f3f0262cSandi    }
996f3f0262cSandi    return false;
997f3f0262cSandi}
998f3f0262cSandi
999f3f0262cSandi/**
1000f3f0262cSandi * convert line ending to unix format
1001f3f0262cSandi *
10026db7468bSAndreas Gohr * also makes sure the given text is valid UTF-8
10036db7468bSAndreas Gohr *
100415fae107Sandi * @see    formText() for 2crlf conversion
100515fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
1006140cfbcdSGerrit Uitslag *
1007140cfbcdSGerrit Uitslag * @param string $text
1008140cfbcdSGerrit Uitslag * @return string
1009f3f0262cSandi */
1010d868eb89SAndreas Gohrfunction cleanText($text)
1011d868eb89SAndreas Gohr{
1012f3f0262cSandi    $text = preg_replace("/(\015\012)|(\015)/", "\012", $text);
10136db7468bSAndreas Gohr
10146db7468bSAndreas Gohr    // if the text is not valid UTF-8 we simply assume latin1
10156db7468bSAndreas Gohr    // this won't break any worse than it breaks with the wrong encoding
10166db7468bSAndreas Gohr    // but might actually fix the problem in many cases
101724870174SAndreas Gohr    if (!Clean::isUtf8($text)) $text = utf8_encode($text);
10186db7468bSAndreas Gohr
1019f3f0262cSandi    return $text;
1020f3f0262cSandi}
1021f3f0262cSandi
1022f3f0262cSandi/**
1023f3f0262cSandi * Prepares text for print in Webforms by encoding special chars.
1024f3f0262cSandi * It also converts line endings to Windows format which is
1025f3f0262cSandi * pseudo standard for webforms.
1026f3f0262cSandi *
102715fae107Sandi * @see    cleanText() for 2unix conversion
102815fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
1029140cfbcdSGerrit Uitslag *
1030140cfbcdSGerrit Uitslag * @param string $text
1031140cfbcdSGerrit Uitslag * @return string
1032f3f0262cSandi */
1033d868eb89SAndreas Gohrfunction formText($text)
1034d868eb89SAndreas Gohr{
1035a46a37efSAndreas Gohr    $text = str_replace("\012", "\015\012", $text ?? '');
1036f3f0262cSandi    return htmlspecialchars($text);
1037f3f0262cSandi}
1038f3f0262cSandi
1039f3f0262cSandi/**
104015fae107Sandi * Returns the specified local text in raw format
104115fae107Sandi *
104215fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
1043140cfbcdSGerrit Uitslag *
1044140cfbcdSGerrit Uitslag * @param string $id   page id
1045140cfbcdSGerrit Uitslag * @param string $ext  extension of file being read, default 'txt'
1046140cfbcdSGerrit Uitslag * @return string
1047f3f0262cSandi */
1048d868eb89SAndreas Gohrfunction rawLocale($id, $ext = 'txt')
1049d868eb89SAndreas Gohr{
10502adaf2b8SAndreas Gohr    return io_readFile(localeFN($id, $ext));
1051f3f0262cSandi}
1052f3f0262cSandi
1053f3f0262cSandi/**
1054f3f0262cSandi * Returns the raw WikiText
105515fae107Sandi *
105615fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
1057140cfbcdSGerrit Uitslag *
1058140cfbcdSGerrit Uitslag * @param string $id   page id
1059e0c26282SGerrit Uitslag * @param string|int $rev  timestamp when a revision of wikitext is desired
1060140cfbcdSGerrit Uitslag * @return string
1061f3f0262cSandi */
1062d868eb89SAndreas Gohrfunction rawWiki($id, $rev = '')
1063d868eb89SAndreas Gohr{
1064cc7d0c94SBen Coburn    return io_readWikiPage(wikiFN($id, $rev), $id, $rev);
1065f3f0262cSandi}
1066f3f0262cSandi
1067f3f0262cSandi/**
10687146cee2SAndreas Gohr * Returns the pagetemplate contents for the ID's namespace
10697146cee2SAndreas Gohr *
10707b84afa2SAndreas Gohr * @triggers COMMON_PAGETPL_LOAD
10717146cee2SAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
1072140cfbcdSGerrit Uitslag *
1073140cfbcdSGerrit Uitslag * @param string $id the id of the page to be created
1074140cfbcdSGerrit Uitslag * @return string parsed pagetemplate content
10757146cee2SAndreas Gohr */
1076d868eb89SAndreas Gohrfunction pageTemplate($id)
1077d868eb89SAndreas Gohr{
1078a15ce62dSEsther Brunner    global $conf;
1079e29549feSAndreas Gohr
1080fe17917eSAdrian Lang    if (is_array($id)) $id = $id[0];
1081e29549feSAndreas Gohr
10827b84afa2SAndreas Gohr    // prepare initial event data
108324870174SAndreas Gohr    $data = [
10847b84afa2SAndreas Gohr        'id'        => $id, // the id of the page to be created
10857b84afa2SAndreas Gohr        'tpl'       => '', // the text used as template
10867b84afa2SAndreas Gohr        'tplfile'   => '', // the file above text was/should be loaded from
108724870174SAndreas Gohr        'doreplace' => true,
108824870174SAndreas Gohr    ];
10897b84afa2SAndreas Gohr
1090e1d9dcc8SAndreas Gohr    $evt = new Event('COMMON_PAGETPL_LOAD', $data);
10917b84afa2SAndreas Gohr    if ($evt->advise_before(true)) {
10927b84afa2SAndreas Gohr        // the before event might have loaded the content already
10937b84afa2SAndreas Gohr        if (empty($data['tpl'])) {
10947b84afa2SAndreas Gohr            // if the before event did not set a template file, try to find one
10957b84afa2SAndreas Gohr            if (empty($data['tplfile'])) {
1096fe17917eSAdrian Lang                $path = dirname(wikiFN($id));
109779e79377SAndreas Gohr                if (file_exists($path . '/_template.txt')) {
10987b84afa2SAndreas Gohr                    $data['tplfile'] = $path . '/_template.txt';
1099e29549feSAndreas Gohr                } else {
1100e29549feSAndreas Gohr                    // search upper namespaces for templates
1101e29549feSAndreas Gohr                    $len = strlen(rtrim($conf['datadir'], '/'));
1102e29549feSAndreas Gohr                    while (strlen($path) >= $len) {
110379e79377SAndreas Gohr                        if (file_exists($path . '/__template.txt')) {
11047b84afa2SAndreas Gohr                            $data['tplfile'] = $path . '/__template.txt';
1105e29549feSAndreas Gohr                            break;
1106e29549feSAndreas Gohr                        }
1107e29549feSAndreas Gohr                        $path = substr($path, 0, strrpos($path, '/'));
1108e29549feSAndreas Gohr                    }
1109e29549feSAndreas Gohr                }
11107b84afa2SAndreas Gohr            }
11117b84afa2SAndreas Gohr            // load the content
11123d7ac595SMichael Hamann            $data['tpl'] = io_readFile($data['tplfile']);
11137b84afa2SAndreas Gohr        }
1114a1bbd05bSMichael Hamann        if ($data['doreplace']) parsePageTemplate($data);
11157b84afa2SAndreas Gohr    }
11167b84afa2SAndreas Gohr    $evt->advise_after();
11177b84afa2SAndreas Gohr    unset($evt);
11187b84afa2SAndreas Gohr
1119fe17917eSAdrian Lang    return $data['tpl'];
11202b1223ecSAdrian Lang}
11212b1223ecSAdrian Lang
11222b1223ecSAdrian Lang/**
11232b1223ecSAdrian Lang * Performs common page template replacements
11247b84afa2SAndreas Gohr * This works on data from COMMON_PAGETPL_LOAD
11252b1223ecSAdrian Lang *
11262b1223ecSAdrian Lang * @author Andreas Gohr <andi@splitbrain.org>
1127140cfbcdSGerrit Uitslag *
1128140cfbcdSGerrit Uitslag * @param array $data array with event data
1129140cfbcdSGerrit Uitslag * @return string
11302b1223ecSAdrian Lang */
1131d868eb89SAndreas Gohrfunction parsePageTemplate(&$data)
1132d868eb89SAndreas Gohr{
11333272d797SAndreas Gohr    /**
11343272d797SAndreas Gohr     * @var string $id        the id of the page to be created
11353272d797SAndreas Gohr     * @var string $tpl       the text used as template
11363272d797SAndreas Gohr     * @var string $tplfile   the file above text was/should be loaded from
11373272d797SAndreas Gohr     * @var bool   $doreplace should wildcard replacements be done on the text?
11383272d797SAndreas Gohr     */
1139fe17917eSAdrian Lang    extract($data);
1140fe17917eSAdrian Lang
1141b856f7dfSAdrian Lang    global $USERINFO;
1142bce53b1fSAdrian Lang    global $conf;
1143585bf44eSChristopher Smith    /* @var Input $INPUT */
1144585bf44eSChristopher Smith    global $INPUT;
1145e29549feSAndreas Gohr
1146e29549feSAndreas Gohr    // replace placeholders
114726ece5a7SAndreas Gohr    $file = noNS($id);
114837c1acbdSAdrian Lang    $page = strtr($file, $conf['sepchar'], ' ');
114926ece5a7SAndreas Gohr
11503272d797SAndreas Gohr    $tpl = str_replace(
115124870174SAndreas Gohr        [
115226ece5a7SAndreas Gohr            '@ID@',
115326ece5a7SAndreas Gohr            '@NS@',
11548a7bcf66SShota Miyazaki            '@CURNS@',
1155a3db0ab0SSimon Lees            '@!CURNS@',
1156a3db0ab0SSimon Lees            '@!!CURNS@',
1157a3db0ab0SSimon Lees            '@!CURNS!@',
115826ece5a7SAndreas Gohr            '@FILE@',
115926ece5a7SAndreas Gohr            '@!FILE@',
116026ece5a7SAndreas Gohr            '@!FILE!@',
116126ece5a7SAndreas Gohr            '@PAGE@',
116226ece5a7SAndreas Gohr            '@!PAGE@',
116326ece5a7SAndreas Gohr            '@!!PAGE@',
116426ece5a7SAndreas Gohr            '@!PAGE!@',
116526ece5a7SAndreas Gohr            '@USER@',
116626ece5a7SAndreas Gohr            '@NAME@',
116726ece5a7SAndreas Gohr            '@MAIL@',
116824870174SAndreas Gohr            '@DATE@'
116924870174SAndreas Gohr        ],
117024870174SAndreas Gohr        [
117126ece5a7SAndreas Gohr            $id,
117226ece5a7SAndreas Gohr            getNS($id),
11738a7bcf66SShota Miyazaki            curNS($id),
117424870174SAndreas Gohr            PhpString::ucfirst(curNS($id)),
117524870174SAndreas Gohr            PhpString::ucwords(curNS($id)),
117624870174SAndreas Gohr            PhpString::strtoupper(curNS($id)),
117726ece5a7SAndreas Gohr            $file,
117824870174SAndreas Gohr            PhpString::ucfirst($file),
117924870174SAndreas Gohr            PhpString::strtoupper($file),
118026ece5a7SAndreas Gohr            $page,
118124870174SAndreas Gohr            PhpString::ucfirst($page),
118224870174SAndreas Gohr            PhpString::ucwords($page),
118324870174SAndreas Gohr            PhpString::strtoupper($page),
1184585bf44eSChristopher Smith            $INPUT->server->str('REMOTE_USER'),
11853e9ae63dSPhy            $USERINFO ? $USERINFO['name'] : '',
11863e9ae63dSPhy            $USERINFO ? $USERINFO['mail'] : '',
118724870174SAndreas Gohr            $conf['dformat']
118824870174SAndreas Gohr        ],
118924870174SAndreas Gohr        $tpl
11903272d797SAndreas Gohr    );
119126ece5a7SAndreas Gohr
11927d644fc8SAndreas Gohr    // we need the callback to work around strftime's char limit
1193bad6fc0dSAndreas Gohr    $tpl = preg_replace_callback(
1194bad6fc0dSAndreas Gohr        '/%./',
119524870174SAndreas Gohr        static fn($m) => dformat(null, $m[0]),
1196bad6fc0dSAndreas Gohr        $tpl
1197bad6fc0dSAndreas Gohr    );
1198d535a2e9Sstretchyboy    $data['tpl'] = $tpl;
1199a15ce62dSEsther Brunner    return $tpl;
12007146cee2SAndreas Gohr}
12017146cee2SAndreas Gohr
12027146cee2SAndreas Gohr/**
120315fae107Sandi * Returns the raw Wiki Text in three slices.
120415fae107Sandi *
120515fae107Sandi * The range parameter needs to have the form "from-to"
120615cfe303Sandi * and gives the range of the section in bytes - no
120715cfe303Sandi * UTF-8 awareness is needed.
1208f3f0262cSandi * The returned order is prefix, section and suffix.
120915fae107Sandi *
121015fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
1211140cfbcdSGerrit Uitslag *
1212140cfbcdSGerrit Uitslag * @param string $range in form "from-to"
1213140cfbcdSGerrit Uitslag * @param string $id    page id
1214140cfbcdSGerrit Uitslag * @param string $rev   optional, the revision timestamp
121542ea7f44SGerrit Uitslag * @return string[] with three slices
1216f3f0262cSandi */
1217d868eb89SAndreas Gohrfunction rawWikiSlices($range, $id, $rev = '')
1218d868eb89SAndreas Gohr{
1219cc7d0c94SBen Coburn    $text = io_readWikiPage(wikiFN($id, $rev), $id, $rev);
1220f3f0262cSandi
122180fcb268SAdrian Lang    // Parse range
122224870174SAndreas Gohr    [$from, $to] = sexplode('-', $range, 2);
122380fcb268SAdrian Lang    // Make range zero-based, use defaults if marker is missing
122424870174SAndreas Gohr    $from = $from ? $from - 1 : (0);
122524870174SAndreas Gohr    $to   = $to ? $to - 1 : (strlen($text));
122680fcb268SAdrian Lang
122724870174SAndreas Gohr    $slices = [];
122880fcb268SAdrian Lang    $slices[0] = substr($text, 0, $from);
122980fcb268SAdrian Lang    $slices[1] = substr($text, $from, $to - $from);
123015cfe303Sandi    $slices[2] = substr($text, $to);
1231f3f0262cSandi    return $slices;
1232f3f0262cSandi}
1233f3f0262cSandi
1234f3f0262cSandi/**
123515fae107Sandi * Joins wiki text slices
123615fae107Sandi *
123780fcb268SAdrian Lang * function to join the text slices.
1238f3f0262cSandi * When the pretty parameter is set to true it adds additional empty
1239f3f0262cSandi * lines between sections if needed (used on saving).
124015fae107Sandi *
124115fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
1242140cfbcdSGerrit Uitslag *
1243140cfbcdSGerrit Uitslag * @param string $pre   prefix
1244140cfbcdSGerrit Uitslag * @param string $text  text in the middle
1245140cfbcdSGerrit Uitslag * @param string $suf   suffix
1246140cfbcdSGerrit Uitslag * @param bool $pretty add additional empty lines between sections
1247140cfbcdSGerrit Uitslag * @return string
1248f3f0262cSandi */
1249d868eb89SAndreas Gohrfunction con($pre, $text, $suf, $pretty = false)
1250d868eb89SAndreas Gohr{
1251f3f0262cSandi    if ($pretty) {
12527d34963bSAndreas Gohr        if (
12536c16a3a9Sfiwswe            $pre !== '' && !str_ends_with($pre, "\n") &&
12546c16a3a9Sfiwswe            !str_starts_with($text, "\n")
12553272d797SAndreas Gohr        ) {
125680fcb268SAdrian Lang            $pre .= "\n";
125780fcb268SAdrian Lang        }
12587d34963bSAndreas Gohr        if (
12596c16a3a9Sfiwswe            $suf !== '' && !str_ends_with($text, "\n") &&
12606c16a3a9Sfiwswe            !str_starts_with($suf, "\n")
12613272d797SAndreas Gohr        ) {
126280fcb268SAdrian Lang            $text .= "\n";
126380fcb268SAdrian Lang        }
1264f3f0262cSandi    }
1265f3f0262cSandi
1266f3f0262cSandi    return $pre . $text . $suf;
1267f3f0262cSandi}
1268f3f0262cSandi
1269f3f0262cSandi/**
1270b24d9195SAndreas Gohr * Checks if the current page version is newer than the last entry in the page's
1271b24d9195SAndreas Gohr * changelog. If so, we assume it has been an external edit and we create an
1272b24d9195SAndreas Gohr * attic copy and add a proper changelog line.
1273b24d9195SAndreas Gohr *
1274b24d9195SAndreas Gohr * This check is only executed when the page is about to be saved again from the
1275b24d9195SAndreas Gohr * wiki, triggered in @see saveWikiText()
1276b24d9195SAndreas Gohr *
1277b24d9195SAndreas Gohr * @param string $id the page ID
127869f9b481SSatoshi Sahara * @deprecated 2021-11-28
1279b24d9195SAndreas Gohr */
1280d868eb89SAndreas Gohrfunction detectExternalEdit($id)
1281d868eb89SAndreas Gohr{
128279a2d784SGerrit Uitslag    dbg_deprecated(PageFile::class . '::detectExternalEdit()');
1283b24e9c4aSSatoshi Sahara    (new PageFile($id))->detectExternalEdit();
1284b24d9195SAndreas Gohr}
1285b24d9195SAndreas Gohr
1286b24d9195SAndreas Gohr/**
1287a701424fSBen Coburn * Saves a wikitext by calling io_writeWikiPage.
1288a701424fSBen Coburn * Also directs changelog and attic updates.
128915fae107Sandi *
129015fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
129171726d78SBen Coburn * @author Ben Coburn <btcoburn@silicodon.net>
1292140cfbcdSGerrit Uitslag *
1293140cfbcdSGerrit Uitslag * @param string $id       page id
1294140cfbcdSGerrit Uitslag * @param string $text     wikitext being saved
1295140cfbcdSGerrit Uitslag * @param string $summary  summary of text update
1296140cfbcdSGerrit Uitslag * @param bool   $minor    mark this saved version as minor update
1297f3f0262cSandi */
1298d868eb89SAndreas Gohrfunction saveWikiText($id, $text, $summary, $minor = false)
1299d868eb89SAndreas Gohr{
1300585bf44eSChristopher Smith
1301b24e9c4aSSatoshi Sahara    // get COMMON_WIKIPAGE_SAVE event data
1302b24e9c4aSSatoshi Sahara    $data = (new PageFile($id))->saveWikiText($text, $summary, $minor);
1303a577fbc2SAndreas Gohr    if (!$data) return; // save was cancelled (for no changes or by a plugin)
1304ac3ed4afSGerrit Uitslag
130526a0801fSAndreas Gohr    // send notify mails
130624870174SAndreas Gohr    ['oldRevision' => $rev, 'newRevision' => $new_rev, 'summary' => $summary] = $data;
13073b813d43SSatoshi Sahara    notify($id, 'admin', $rev, $summary, $minor, $new_rev);
13083b813d43SSatoshi Sahara    notify($id, 'subscribers', $rev, $summary, $minor, $new_rev);
1309f3f0262cSandi
13102eccbdaaSGina Haeussge    // if useheading is enabled, purge the cache of all linking pages
1311fe9ec250SChris Smith    if (useHeading('content')) {
131207ff0babSMichael Hamann        $pages = ft_backlinks($id, true);
13132eccbdaaSGina Haeussge        foreach ($pages as $page) {
13140db5771eSMichael Große            $cache = new CacheRenderer($page, wikiFN($page), 'xhtml');
13152eccbdaaSGina Haeussge            $cache->removeCache();
13162eccbdaaSGina Haeussge        }
13172eccbdaaSGina Haeussge    }
1318f3f0262cSandi}
1319f3f0262cSandi
1320f3f0262cSandi/**
1321d5824ab9SSatoshi Sahara * moves the current version to the attic and returns its revision date
132215fae107Sandi *
132315fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
1324140cfbcdSGerrit Uitslag *
1325140cfbcdSGerrit Uitslag * @param string $id page id
1326140cfbcdSGerrit Uitslag * @return int|string revision timestamp
132769f9b481SSatoshi Sahara * @deprecated 2021-11-28
1328f3f0262cSandi */
1329d868eb89SAndreas Gohrfunction saveOldRevision($id)
1330d868eb89SAndreas Gohr{
133179a2d784SGerrit Uitslag    dbg_deprecated(PageFile::class . '::saveOldRevision()');
1332b24e9c4aSSatoshi Sahara    return (new PageFile($id))->saveOldRevision();
1333f3f0262cSandi}
1334f3f0262cSandi
1335f3f0262cSandi/**
1336fde10de4SAdrian Lang * Sends a notify mail on page change or registration
133726a0801fSAndreas Gohr *
133826a0801fSAndreas Gohr * @param string     $id       The changed page
1339fde10de4SAdrian Lang * @param string     $who      Who to notify (admin|subscribers|register)
13403272d797SAndreas Gohr * @param int|string $rev      Old page revision
134126a0801fSAndreas Gohr * @param string     $summary  What changed
134290033e9dSAndreas Gohr * @param boolean    $minor    Is this a minor edit?
134342ea7f44SGerrit Uitslag * @param string[]   $replace  Additional string substitutions, @KEY@ to be replaced by value
134483734cddSPhy * @param int|string $current_rev  New page revision
13453272d797SAndreas Gohr * @return bool
1346140cfbcdSGerrit Uitslag *
134715fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
1348f3f0262cSandi */
1349d868eb89SAndreas Gohrfunction notify($id, $who, $rev = '', $summary = '', $minor = false, $replace = [], $current_rev = false)
1350d868eb89SAndreas Gohr{
1351f3f0262cSandi    global $conf;
1352585bf44eSChristopher Smith    /* @var Input $INPUT */
1353585bf44eSChristopher Smith    global $INPUT;
1354b158d625SSteven Danz
13556df843eeSAndreas Gohr    // decide if there is something to do, eg. whom to mail
135626a0801fSAndreas Gohr    if ($who == 'admin') {
13573272d797SAndreas Gohr        if (empty($conf['notify'])) return false; //notify enabled?
13582ed38036SAndreas Gohr        $tpl = 'mailtext';
135926a0801fSAndreas Gohr        $to  = $conf['notify'];
136026a0801fSAndreas Gohr    } elseif ($who == 'subscribers') {
136184c1127cSAndreas Gohr        if (!actionOK('subscribe')) return false; //subscribers enabled?
1362585bf44eSChristopher Smith        if ($conf['useacl'] && $INPUT->server->str('REMOTE_USER') && $minor) return false; //skip minors
136324870174SAndreas Gohr        $data = ['id' => $id, 'addresslist' => '', 'self' => false, 'replacements' => $replace];
1364cbb44eabSAndreas Gohr        Event::createAndTrigger(
1365dccd6b2bSAndreas Gohr            'COMMON_NOTIFY_ADDRESSLIST',
1366dccd6b2bSAndreas Gohr            $data,
136724870174SAndreas Gohr            [new SubscriberManager(), 'notifyAddresses']
13683272d797SAndreas Gohr        );
13692ed38036SAndreas Gohr        $to = $data['addresslist'];
13702ed38036SAndreas Gohr        if (empty($to)) return false;
13712ed38036SAndreas Gohr        $tpl = 'subscr_single';
137226a0801fSAndreas Gohr    } else {
13733272d797SAndreas Gohr        return false; //just to be safe
137426a0801fSAndreas Gohr    }
137526a0801fSAndreas Gohr
13766df843eeSAndreas Gohr    // prepare content
1377704a815fSMichael Große    $subscription = new PageSubscriptionSender();
137883734cddSPhy    return $subscription->sendPageDiff($to, $tpl, $id, $rev, $summary, $current_rev);
1379f3f0262cSandi}
13802ed38036SAndreas Gohr
138115fae107Sandi/**
138271f7bde7SAndreas Gohr * extracts the query from a search engine referrer
138315fae107Sandi *
138415fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
138571f7bde7SAndreas Gohr * @author Todd Augsburger <todd@rollerorgans.com>
1386140cfbcdSGerrit Uitslag *
1387140cfbcdSGerrit Uitslag * @return array|string
1388f3f0262cSandi */
1389d868eb89SAndreas Gohrfunction getGoogleQuery()
1390d868eb89SAndreas Gohr{
1391585bf44eSChristopher Smith    /* @var Input $INPUT */
1392585bf44eSChristopher Smith    global $INPUT;
1393585bf44eSChristopher Smith
1394585bf44eSChristopher Smith    if (!$INPUT->server->has('HTTP_REFERER')) {
1395c66972f2SAdrian Lang        return '';
1396c66972f2SAdrian Lang    }
1397585bf44eSChristopher Smith    $url = parse_url($INPUT->server->str('HTTP_REFERER'));
1398f3f0262cSandi
1399079b3ac1SAndreas Gohr    // only handle common SEs
1400c7875401SJyoti S    if (!array_key_exists('host', $url)) return '';
1401079b3ac1SAndreas Gohr    if (!preg_match('/(google|bing|yahoo|ask|duckduckgo|babylon|aol|yandex)/', $url['host'])) return '';
1402e4d8a516SKazutaka Miyasaka
140324870174SAndreas Gohr    $query = [];
1404181adffeSJulian Jeggle    if (!array_key_exists('query', $url)) return '';
1405f3f0262cSandi    parse_str($url['query'], $query);
1406e4d8a516SKazutaka Miyasaka
1407c66972f2SAdrian Lang    $q = '';
1408079b3ac1SAndreas Gohr    if (isset($query['q'])) {
1409079b3ac1SAndreas Gohr        $q = $query['q'];
1410079b3ac1SAndreas Gohr    } elseif (isset($query['p'])) {
1411079b3ac1SAndreas Gohr        $q = $query['p'];
1412079b3ac1SAndreas Gohr    } elseif (isset($query['query'])) {
1413079b3ac1SAndreas Gohr        $q = $query['query'];
1414079b3ac1SAndreas Gohr    }
1415079b3ac1SAndreas Gohr    $q = trim($q);
1416f3f0262cSandi
1417079b3ac1SAndreas Gohr    if (!$q) return '';
1418c7dc833bSPhy    // ignore if query includes a full URL
1419c7dc833bSPhy    if (strpos($q, '//') !== false) return '';
14206531ab03SAndreas Gohr    $q = preg_split('/[\s\'"\\\\`()\]\[?:!\.{};,#+*<>\\/]+/', $q, -1, PREG_SPLIT_NO_EMPTY);
1421f93b3b50SAndreas Gohr    return $q;
1422f3f0262cSandi}
1423f3f0262cSandi
1424f3f0262cSandi/**
1425f3f0262cSandi * Return the human readable size of a file
1426f3f0262cSandi *
1427f3f0262cSandi * @param int $size A file size
1428f3f0262cSandi * @param int $dec A number of decimal places
142974160ca1SGerrit Uitslag * @return string human readable size
1430140cfbcdSGerrit Uitslag *
1431f3f0262cSandi * @author      Martin Benjamin <b.martin@cybernet.ch>
1432f3f0262cSandi * @author      Aidan Lister <aidan@php.net>
1433f3f0262cSandi * @version     1.0.0
1434f3f0262cSandi */
1435d868eb89SAndreas Gohrfunction filesize_h($size, $dec = 1)
1436d868eb89SAndreas Gohr{
143724870174SAndreas Gohr    $sizes = ['B', 'KB', 'MB', 'GB'];
1438f3f0262cSandi    $count = count($sizes);
1439f3f0262cSandi    $i     = 0;
1440f3f0262cSandi
1441f3f0262cSandi    while ($size >= 1024 && ($i < $count - 1)) {
1442f3f0262cSandi        $size /= 1024;
1443f3f0262cSandi        $i++;
1444f3f0262cSandi    }
1445f3f0262cSandi
1446ef08383eSAndreas Gohr    return round($size, $dec) . "\xC2\xA0" . $sizes[$i]; //non-breaking space
1447f3f0262cSandi}
1448f3f0262cSandi
144915fae107Sandi/**
1450c57e365eSAndreas Gohr * Return the given timestamp as human readable, fuzzy age
1451c57e365eSAndreas Gohr *
1452c57e365eSAndreas Gohr * @author Andreas Gohr <gohr@cosmocode.de>
1453140cfbcdSGerrit Uitslag *
1454140cfbcdSGerrit Uitslag * @param int $dt timestamp
1455140cfbcdSGerrit Uitslag * @return string
1456c57e365eSAndreas Gohr */
1457d868eb89SAndreas Gohrfunction datetime_h($dt)
1458d868eb89SAndreas Gohr{
1459c57e365eSAndreas Gohr    global $lang;
1460c57e365eSAndreas Gohr
1461c57e365eSAndreas Gohr    $ago = time() - $dt;
1462c57e365eSAndreas Gohr    if ($ago > 24 * 60 * 60 * 30 * 12 * 2) {
1463c57e365eSAndreas Gohr        return sprintf($lang['years'], round($ago / (24 * 60 * 60 * 30 * 12)));
1464c57e365eSAndreas Gohr    }
1465c57e365eSAndreas Gohr    if ($ago > 24 * 60 * 60 * 30 * 2) {
1466c57e365eSAndreas Gohr        return sprintf($lang['months'], round($ago / (24 * 60 * 60 * 30)));
1467c57e365eSAndreas Gohr    }
1468c57e365eSAndreas Gohr    if ($ago > 24 * 60 * 60 * 7 * 2) {
1469c57e365eSAndreas Gohr        return sprintf($lang['weeks'], round($ago / (24 * 60 * 60 * 7)));
1470c57e365eSAndreas Gohr    }
1471c57e365eSAndreas Gohr    if ($ago > 24 * 60 * 60 * 2) {
1472c57e365eSAndreas Gohr        return sprintf($lang['days'], round($ago / (24 * 60 * 60)));
1473c57e365eSAndreas Gohr    }
1474c57e365eSAndreas Gohr    if ($ago > 60 * 60 * 2) {
1475c57e365eSAndreas Gohr        return sprintf($lang['hours'], round($ago / (60 * 60)));
1476c57e365eSAndreas Gohr    }
1477c57e365eSAndreas Gohr    if ($ago > 60 * 2) {
1478c57e365eSAndreas Gohr        return sprintf($lang['minutes'], round($ago / (60)));
1479c57e365eSAndreas Gohr    }
1480c57e365eSAndreas Gohr    return sprintf($lang['seconds'], $ago);
1481c57e365eSAndreas Gohr}
1482c57e365eSAndreas Gohr
1483c57e365eSAndreas Gohr/**
1484f2263577SAndreas Gohr * Wraps around strftime but provides support for fuzzy dates
1485f2263577SAndreas Gohr *
1486f2263577SAndreas Gohr * The format default to $conf['dformat']. It is passed to
1487f2263577SAndreas Gohr * strftime - %f can be used to get the value from datetime_h()
1488f2263577SAndreas Gohr *
1489f2263577SAndreas Gohr * @see datetime_h
1490f2263577SAndreas Gohr * @author Andreas Gohr <gohr@cosmocode.de>
1491140cfbcdSGerrit Uitslag *
1492140cfbcdSGerrit Uitslag * @param int|null $dt      timestamp when given, null will take current timestamp
1493140cfbcdSGerrit Uitslag * @param string   $format  empty default to $conf['dformat'], or provide format as recognized by strftime()
1494140cfbcdSGerrit Uitslag * @return string
1495f2263577SAndreas Gohr */
1496d868eb89SAndreas Gohrfunction dformat($dt = null, $format = '')
1497d868eb89SAndreas Gohr{
1498f2263577SAndreas Gohr    global $conf;
1499f2263577SAndreas Gohr
1500f2263577SAndreas Gohr    if (is_null($dt)) $dt = time();
1501f2263577SAndreas Gohr    $dt = (int) $dt;
1502f2263577SAndreas Gohr    if (!$format) $format = $conf['dformat'];
1503f2263577SAndreas Gohr
1504f2263577SAndreas Gohr    $format = str_replace('%f', datetime_h($dt), $format);
1505*b3894732Ssplitbrain    return strftime($format, $dt);
1506f2263577SAndreas Gohr}
1507f2263577SAndreas Gohr
1508f2263577SAndreas Gohr/**
1509c4f79b71SMichael Hamann * Formats a timestamp as ISO 8601 date
1510c4f79b71SMichael Hamann *
1511c4f79b71SMichael Hamann * @author <ungu at terong dot com>
151259752844SAnders Sandblad * @link http://php.net/manual/en/function.date.php#54072
1513140cfbcdSGerrit Uitslag *
15147e8500eeSGerrit Uitslag * @param int $int_date current date in UNIX timestamp
15153272d797SAndreas Gohr * @return string
1516c4f79b71SMichael Hamann */
1517d868eb89SAndreas Gohrfunction date_iso8601($int_date)
1518d868eb89SAndreas Gohr{
1519c4f79b71SMichael Hamann    $date_mod     = date('Y-m-d\TH:i:s', $int_date);
1520c4f79b71SMichael Hamann    $pre_timezone = date('O', $int_date);
1521c4f79b71SMichael Hamann    $time_zone    = substr($pre_timezone, 0, 3) . ":" . substr($pre_timezone, 3, 2);
1522c4f79b71SMichael Hamann    $date_mod .= $time_zone;
1523c4f79b71SMichael Hamann    return $date_mod;
1524c4f79b71SMichael Hamann}
1525c4f79b71SMichael Hamann
1526c4f79b71SMichael Hamann/**
152700a7b5adSEsther Brunner * return an obfuscated email address in line with $conf['mailguard'] setting
152800a7b5adSEsther Brunner *
152900a7b5adSEsther Brunner * @author Harry Fuecks <hfuecks@gmail.com>
153000a7b5adSEsther Brunner * @author Christopher Smith <chris@jalakai.co.uk>
1531140cfbcdSGerrit Uitslag *
1532140cfbcdSGerrit Uitslag * @param string $email email address
1533140cfbcdSGerrit Uitslag * @return string
153400a7b5adSEsther Brunner */
1535d868eb89SAndreas Gohrfunction obfuscate($email)
1536d868eb89SAndreas Gohr{
153700a7b5adSEsther Brunner    global $conf;
153800a7b5adSEsther Brunner
153900a7b5adSEsther Brunner    switch ($conf['mailguard']) {
154000a7b5adSEsther Brunner        case 'visible':
154124870174SAndreas Gohr            $obfuscate = ['@' => ' [at] ', '.' => ' [dot] ', '-' => ' [dash] '];
154200a7b5adSEsther Brunner            return strtr($email, $obfuscate);
154300a7b5adSEsther Brunner
154400a7b5adSEsther Brunner        case 'hex':
154524870174SAndreas Gohr            return Conversion::toHtml($email, true);
154600a7b5adSEsther Brunner
154700a7b5adSEsther Brunner        case 'none':
154800a7b5adSEsther Brunner        default:
154900a7b5adSEsther Brunner            return $email;
155000a7b5adSEsther Brunner    }
155100a7b5adSEsther Brunner}
155200a7b5adSEsther Brunner
155300a7b5adSEsther Brunner/**
155489541d4bSAndreas Gohr * Removes quoting backslashes
155589541d4bSAndreas Gohr *
155689541d4bSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
1557140cfbcdSGerrit Uitslag *
1558140cfbcdSGerrit Uitslag * @param string $string
1559140cfbcdSGerrit Uitslag * @param string $char backslashed character
1560140cfbcdSGerrit Uitslag * @return string
156189541d4bSAndreas Gohr */
1562d868eb89SAndreas Gohrfunction unslash($string, $char = "'")
1563d868eb89SAndreas Gohr{
156489541d4bSAndreas Gohr    return str_replace('\\' . $char, $char, $string);
156589541d4bSAndreas Gohr}
156689541d4bSAndreas Gohr
156773038c47SAndreas Gohr/**
156873038c47SAndreas Gohr * Convert php.ini shorthands to byte
156973038c47SAndreas Gohr *
1570a81f3d99SAndreas Gohr * On 32 bit systems values >= 2GB will fail!
1571140cfbcdSGerrit Uitslag *
1572a81f3d99SAndreas Gohr * -1 (infinite size) will be reported as -1
1573a81f3d99SAndreas Gohr *
1574a81f3d99SAndreas Gohr * @link   https://www.php.net/manual/en/faq.using.php#faq.using.shorthandbytes
1575a81f3d99SAndreas Gohr * @param string $value PHP size shorthand
1576a81f3d99SAndreas Gohr * @return int
157773038c47SAndreas Gohr */
1578d868eb89SAndreas Gohrfunction php_to_byte($value)
1579d868eb89SAndreas Gohr{
1580f5c0c80bSAndreas Gohr    switch (strtoupper(substr($value, -1))) {
158173038c47SAndreas Gohr        case 'G':
158224870174SAndreas Gohr            $ret = (int) substr($value, 0, -1) * 1024 * 1024 * 1024;
158373038c47SAndreas Gohr            break;
158473038c47SAndreas Gohr        case 'M':
158524870174SAndreas Gohr            $ret = (int) substr($value, 0, -1) * 1024 * 1024;
1586a81f3d99SAndreas Gohr            break;
158773038c47SAndreas Gohr        case 'K':
158824870174SAndreas Gohr            $ret = (int) substr($value, 0, -1) * 1024;
158973038c47SAndreas Gohr            break;
15909eeeb775SAndreas Gohr        default:
159124870174SAndreas Gohr            $ret = (int) $value;
159249cbd23eSOtto Vainio            break;
159373038c47SAndreas Gohr    }
159473038c47SAndreas Gohr    return $ret;
159573038c47SAndreas Gohr}
159673038c47SAndreas Gohr
1597546d3a99SAndreas Gohr/**
1598546d3a99SAndreas Gohr * Wrapper around preg_quote adding the default delimiter
1599140cfbcdSGerrit Uitslag *
1600140cfbcdSGerrit Uitslag * @param string $string
1601140cfbcdSGerrit Uitslag * @return string
1602546d3a99SAndreas Gohr */
1603d868eb89SAndreas Gohrfunction preg_quote_cb($string)
1604d868eb89SAndreas Gohr{
1605546d3a99SAndreas Gohr    return preg_quote($string, '/');
1606546d3a99SAndreas Gohr}
160773038c47SAndreas Gohr
1608bd2f6c2fSAndreas Gohr/**
1609bd2f6c2fSAndreas Gohr * Shorten a given string by removing data from the middle
1610bd2f6c2fSAndreas Gohr *
1611c66972f2SAdrian Lang * You can give the string in two parts, the first part $keep
1612bd2f6c2fSAndreas Gohr * will never be shortened. The second part $short will be cut
1613bd2f6c2fSAndreas Gohr * in the middle to shorten but only if at least $min chars are
1614bd2f6c2fSAndreas Gohr * left to display it. Otherwise it will be left off.
1615bd2f6c2fSAndreas Gohr *
1616bd2f6c2fSAndreas Gohr * @param string $keep   the part to keep
1617bd2f6c2fSAndreas Gohr * @param string $short  the part to shorten
1618bd2f6c2fSAndreas Gohr * @param int    $max    maximum chars you want for the whole string
1619bd2f6c2fSAndreas Gohr * @param int    $min    minimum number of chars to have left for middle shortening
1620bd2f6c2fSAndreas Gohr * @param string $char   the shortening character to use
16213272d797SAndreas Gohr * @return string
1622bd2f6c2fSAndreas Gohr */
1623d868eb89SAndreas Gohrfunction shorten($keep, $short, $max, $min = 9, $char = '…')
1624d868eb89SAndreas Gohr{
162524870174SAndreas Gohr    $max -= PhpString::strlen($keep);
1626bd2f6c2fSAndreas Gohr    if ($max < $min) return $keep;
162724870174SAndreas Gohr    $len = PhpString::strlen($short);
1628bd2f6c2fSAndreas Gohr    if ($len <= $max) return $keep . $short;
1629bd2f6c2fSAndreas Gohr    $half = floor($max / 2);
16306ce3e5f8SAndreas Gohr    return $keep .
163124870174SAndreas Gohr        PhpString::substr($short, 0, $half - 1) .
16326ce3e5f8SAndreas Gohr        $char .
163324870174SAndreas Gohr        PhpString::substr($short, $len - $half);
1634bd2f6c2fSAndreas Gohr}
1635bd2f6c2fSAndreas Gohr
1636dc58b6f4SAndy Webber/**
1637dc58b6f4SAndy Webber * Return the users real name or e-mail address for use
1638dc58b6f4SAndy Webber * in page footer and recent changes pages
1639dc58b6f4SAndy Webber *
1640b4b6c9a1SGerrit Uitslag * @param string|null $username or null when currently logged-in user should be used
164115f3bc49SGerrit Uitslag * @param bool $textonly true returns only plain text, true allows returning html
1642c0953023SGerrit Uitslag * @return string html or plain text(not escaped) of formatted user name
164315f3bc49SGerrit Uitslag *
1644dc58b6f4SAndy Webber * @author Andy Webber <dokuwiki AT andywebber DOT com>
1645dc58b6f4SAndy Webber */
1646d868eb89SAndreas Gohrfunction editorinfo($username, $textonly = false)
1647d868eb89SAndreas Gohr{
1648cd4635eeSGerrit Uitslag    return userlink($username, $textonly);
1649dc58b6f4SAndy Webber}
1650dc58b6f4SAndy Webber
165160a396c8SGerrit Uitslag/**
165260a396c8SGerrit Uitslag * Returns users realname w/o link
165360a396c8SGerrit Uitslag *
1654f168548cSGerrit Uitslag * @param string|null $username or null when currently logged-in user should be used
165515f3bc49SGerrit Uitslag * @param bool $textonly true returns only plain text, true allows returning html
1656c0953023SGerrit Uitslag * @return string html or plain text(not escaped) of formatted user name
165760a396c8SGerrit Uitslag *
165860a396c8SGerrit Uitslag * @triggers COMMON_USER_LINK
165960a396c8SGerrit Uitslag */
1660d868eb89SAndreas Gohrfunction userlink($username = null, $textonly = false)
1661d868eb89SAndreas Gohr{
166260a396c8SGerrit Uitslag    global $conf, $INFO;
1663e1d9dcc8SAndreas Gohr    /** @var AuthPlugin $auth */
166460a396c8SGerrit Uitslag    global $auth;
166530f6ec4bSGerrit Uitslag    /** @var Input $INPUT */
166630f6ec4bSGerrit Uitslag    global $INPUT;
166760a396c8SGerrit Uitslag
166860a396c8SGerrit Uitslag    // prepare initial event data
166924870174SAndreas Gohr    $data = [
167060a396c8SGerrit Uitslag        'username' => $username, // the unique user name
167160a396c8SGerrit Uitslag        'name' => '',
167224870174SAndreas Gohr        'link' => [
167324870174SAndreas Gohr            //setting 'link' to false disables linking
167460a396c8SGerrit Uitslag            'target' => '',
167560a396c8SGerrit Uitslag            'pre' => '',
167660a396c8SGerrit Uitslag            'suf' => '',
167760a396c8SGerrit Uitslag            'style' => '',
167860a396c8SGerrit Uitslag            'more' => '',
167960a396c8SGerrit Uitslag            'url' => '',
168060a396c8SGerrit Uitslag            'title' => '',
168124870174SAndreas Gohr            'class' => '',
168224870174SAndreas Gohr        ],
16834d5fc927SGerrit Uitslag        'userlink' => '', // formatted user name as will be returned
168424870174SAndreas Gohr        'textonly' => $textonly,
168524870174SAndreas Gohr    ];
168662c8004eSGerrit Uitslag    if ($username === null) {
168730f6ec4bSGerrit Uitslag        $data['username'] = $username = $INPUT->server->str('REMOTE_USER');
168815f3bc49SGerrit Uitslag        if ($textonly) {
168915f3bc49SGerrit Uitslag            $data['name'] = $INFO['userinfo']['name'] . ' (' . $INPUT->server->str('REMOTE_USER') . ')';
169015f3bc49SGerrit Uitslag        } else {
169164159a61SAndreas Gohr            $data['name'] = '<bdi>' . hsc($INFO['userinfo']['name']) . '</bdi> ' .
169264159a61SAndreas Gohr                '(<bdi>' . hsc($INPUT->server->str('REMOTE_USER')) . '</bdi>)';
169360a396c8SGerrit Uitslag        }
169415f3bc49SGerrit Uitslag    }
169560a396c8SGerrit Uitslag
1696e1d9dcc8SAndreas Gohr    $evt = new Event('COMMON_USER_LINK', $data);
169760a396c8SGerrit Uitslag    if ($evt->advise_before(true)) {
169860a396c8SGerrit Uitslag        if (empty($data['name'])) {
16996547cfc7SGerrit Uitslag            if ($auth instanceof AuthPlugin) {
17006547cfc7SGerrit Uitslag                $info = $auth->getUserData($username);
17016547cfc7SGerrit Uitslag            }
170265833968SGerrit Uitslag            if ($conf['showuseras'] != 'loginname' && isset($info) && $info) {
1703dc58b6f4SAndy Webber                switch ($conf['showuseras']) {
1704dc58b6f4SAndy Webber                    case 'username':
17057f081821SGerrit Uitslag                    case 'username_link':
170615f3bc49SGerrit Uitslag                        $data['name'] = $textonly ? $info['name'] : hsc($info['name']);
170760a396c8SGerrit Uitslag                        break;
1708dc58b6f4SAndy Webber                    case 'email':
1709dc58b6f4SAndy Webber                    case 'email_link':
171060a396c8SGerrit Uitslag                        $data['name'] = obfuscate($info['mail']);
171160a396c8SGerrit Uitslag                        break;
1712dc58b6f4SAndy Webber                }
171365833968SGerrit Uitslag            } else {
171465833968SGerrit Uitslag                $data['name'] = $textonly ? $data['username'] : hsc($data['username']);
171560a396c8SGerrit Uitslag            }
171660a396c8SGerrit Uitslag        }
17177f081821SGerrit Uitslag
17187f081821SGerrit Uitslag        /** @var Doku_Renderer_xhtml $xhtml_renderer */
17197f081821SGerrit Uitslag        static $xhtml_renderer = null;
17207f081821SGerrit Uitslag
172115f3bc49SGerrit Uitslag        if (!$data['textonly'] && empty($data['link']['url'])) {
172224870174SAndreas Gohr            if (in_array($conf['showuseras'], ['email_link', 'username_link'])) {
17236547cfc7SGerrit Uitslag                if (!isset($info) && $auth instanceof AuthPlugin) {
17246547cfc7SGerrit Uitslag                    $info = $auth->getUserData($username);
172560a396c8SGerrit Uitslag                }
172660a396c8SGerrit Uitslag                if (isset($info) && $info) {
17277f081821SGerrit Uitslag                    if ($conf['showuseras'] == 'email_link') {
172860a396c8SGerrit Uitslag                        $data['link']['url'] = 'mailto:' . obfuscate($info['mail']);
1729dc58b6f4SAndy Webber                    } else {
17307f081821SGerrit Uitslag                        if (is_null($xhtml_renderer)) {
17317f081821SGerrit Uitslag                            $xhtml_renderer = p_get_renderer('xhtml');
17327f081821SGerrit Uitslag                        }
17337f081821SGerrit Uitslag                        if (empty($xhtml_renderer->interwiki)) {
17347f081821SGerrit Uitslag                            $xhtml_renderer->interwiki = getInterwiki();
17357f081821SGerrit Uitslag                        }
17367f081821SGerrit Uitslag                        $shortcut = 'user';
1737533772e1SGerrit Uitslag                        $exists = null;
17386496c33fSGerrit Uitslag                        $data['link']['url'] = $xhtml_renderer->_resolveInterWiki($shortcut, $username, $exists);
17392a2a43c4SGerrit Uitslag                        $data['link']['class'] .= ' interwiki iw_user';
17406496c33fSGerrit Uitslag                        if ($exists !== null) {
17416496c33fSGerrit Uitslag                            if ($exists) {
17426496c33fSGerrit Uitslag                                $data['link']['class'] .= ' wikilink1';
17436496c33fSGerrit Uitslag                            } else {
17446496c33fSGerrit Uitslag                                $data['link']['class'] .= ' wikilink2';
17456496c33fSGerrit Uitslag                                $data['link']['rel'] = 'nofollow';
17466496c33fSGerrit Uitslag                            }
17476496c33fSGerrit Uitslag                        }
1748dc58b6f4SAndy Webber                    }
1749dc58b6f4SAndy Webber                } else {
175015f3bc49SGerrit Uitslag                    $data['textonly'] = true;
1751dc58b6f4SAndy Webber                }
175260a396c8SGerrit Uitslag            } else {
175315f3bc49SGerrit Uitslag                $data['textonly'] = true;
175460a396c8SGerrit Uitslag            }
175560a396c8SGerrit Uitslag        }
175660a396c8SGerrit Uitslag
175715f3bc49SGerrit Uitslag        if ($data['textonly']) {
17584d5fc927SGerrit Uitslag            $data['userlink'] = $data['name'];
175960a396c8SGerrit Uitslag        } else {
176060a396c8SGerrit Uitslag            $data['link']['name'] = $data['name'];
176160a396c8SGerrit Uitslag            if (is_null($xhtml_renderer)) {
176260a396c8SGerrit Uitslag                $xhtml_renderer = p_get_renderer('xhtml');
176360a396c8SGerrit Uitslag            }
17644d5fc927SGerrit Uitslag            $data['userlink'] = $xhtml_renderer->_formatLink($data['link']);
176560a396c8SGerrit Uitslag        }
176660a396c8SGerrit Uitslag    }
176760a396c8SGerrit Uitslag    $evt->advise_after();
176860a396c8SGerrit Uitslag    unset($evt);
176960a396c8SGerrit Uitslag
17704d5fc927SGerrit Uitslag    return $data['userlink'];
1771066fee30SAndreas Gohr}
1772066fee30SAndreas Gohr
1773066fee30SAndreas Gohr/**
1774066fee30SAndreas Gohr * Returns the path to a image file for the currently chosen license.
1775066fee30SAndreas Gohr * When no image exists, returns an empty string
1776066fee30SAndreas Gohr *
1777066fee30SAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
1778140cfbcdSGerrit Uitslag *
1779066fee30SAndreas Gohr * @param  string $type - type of image 'badge' or 'button'
17803272d797SAndreas Gohr * @return string
1781066fee30SAndreas Gohr */
1782d868eb89SAndreas Gohrfunction license_img($type)
1783d868eb89SAndreas Gohr{
1784066fee30SAndreas Gohr    global $license;
1785066fee30SAndreas Gohr    global $conf;
1786066fee30SAndreas Gohr    if (!$conf['license']) return '';
1787066fee30SAndreas Gohr    if (!is_array($license[$conf['license']])) return '';
178824870174SAndreas Gohr    $try   = [];
1789066fee30SAndreas Gohr    $try[] = 'lib/images/license/' . $type . '/' . $conf['license'] . '.png';
1790066fee30SAndreas Gohr    $try[] = 'lib/images/license/' . $type . '/' . $conf['license'] . '.gif';
17916c16a3a9Sfiwswe    if (str_starts_with($conf['license'], 'cc-')) {
1792066fee30SAndreas Gohr        $try[] = 'lib/images/license/' . $type . '/cc.png';
1793066fee30SAndreas Gohr    }
1794066fee30SAndreas Gohr    foreach ($try as $src) {
179579e79377SAndreas Gohr        if (file_exists(DOKU_INC . $src)) return $src;
1796066fee30SAndreas Gohr    }
1797066fee30SAndreas Gohr    return '';
1798dc58b6f4SAndy Webber}
1799dc58b6f4SAndy Webber
180013c08e2fSMichael Klier/**
180113c08e2fSMichael Klier * Checks if the given amount of memory is available
180213c08e2fSMichael Klier *
180313c08e2fSMichael Klier * If the memory_get_usage() function is not available the
180413c08e2fSMichael Klier * function just assumes $bytes of already allocated memory
180513c08e2fSMichael Klier *
180613c08e2fSMichael Klier * @author Filip Oscadal <webmaster@illusionsoftworks.cz>
180713c08e2fSMichael Klier * @author Andreas Gohr <andi@splitbrain.org>
18083272d797SAndreas Gohr *
18093272d797SAndreas Gohr * @param int  $mem    Size of memory you want to allocate in bytes
1810140cfbcdSGerrit Uitslag * @param int  $bytes  already allocated memory (see above)
18113272d797SAndreas Gohr * @return bool
181213c08e2fSMichael Klier */
1813d868eb89SAndreas Gohrfunction is_mem_available($mem, $bytes = 1_048_576)
1814d868eb89SAndreas Gohr{
181513c08e2fSMichael Klier    $limit = trim(ini_get('memory_limit'));
181613c08e2fSMichael Klier    if (empty($limit)) return true; // no limit set!
1817985d6187SElenchus    if ($limit == -1) return true; // unlimited
181813c08e2fSMichael Klier
181913c08e2fSMichael Klier    // parse limit to bytes
182013c08e2fSMichael Klier    $limit = php_to_byte($limit);
182113c08e2fSMichael Klier
182213c08e2fSMichael Klier    // get used memory if possible
182313c08e2fSMichael Klier    if (function_exists('memory_get_usage')) {
182413c08e2fSMichael Klier        $used = memory_get_usage();
182549eb6e38SAndreas Gohr    } else {
182649eb6e38SAndreas Gohr        $used = $bytes;
182713c08e2fSMichael Klier    }
182813c08e2fSMichael Klier
182913c08e2fSMichael Klier    if ($used + $mem > $limit) {
183013c08e2fSMichael Klier        return false;
183113c08e2fSMichael Klier    }
183213c08e2fSMichael Klier
183313c08e2fSMichael Klier    return true;
183413c08e2fSMichael Klier}
183513c08e2fSMichael Klier
1836af2408d5SAndreas Gohr/**
1837af2408d5SAndreas Gohr * Send a HTTP redirect to the browser
1838af2408d5SAndreas Gohr *
1839af2408d5SAndreas Gohr * Works arround Microsoft IIS cookie sending bug. Exits the script.
1840af2408d5SAndreas Gohr *
1841af2408d5SAndreas Gohr * @link   http://support.microsoft.com/kb/q176113/
1842af2408d5SAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
1843140cfbcdSGerrit Uitslag *
1844140cfbcdSGerrit Uitslag * @param string $url url being directed to
1845af2408d5SAndreas Gohr */
1846d868eb89SAndreas Gohrfunction send_redirect($url)
1847d868eb89SAndreas Gohr{
184898ca30d2SAndreas Gohr    $url = stripctl($url); // defend against HTTP Response Splitting
184998ca30d2SAndreas Gohr
1850585bf44eSChristopher Smith    /* @var Input $INPUT */
1851585bf44eSChristopher Smith    global $INPUT;
1852585bf44eSChristopher Smith
18530181f021SAndreas Gohr    //are there any undisplayed messages? keep them in session for display
18540181f021SAndreas Gohr    global $MSG;
18550181f021SAndreas Gohr    if (isset($MSG) && count($MSG) && !defined('NOSESSION')) {
18560181f021SAndreas Gohr        //reopen session, store data and close session again
18570181f021SAndreas Gohr        @session_start();
18580181f021SAndreas Gohr        $_SESSION[DOKU_COOKIE]['msg'] = $MSG;
18590181f021SAndreas Gohr    }
18600181f021SAndreas Gohr
1861d4869846SAndreas Gohr    // always close the session
1862d4869846SAndreas Gohr    session_write_close();
1863d4869846SAndreas Gohr
1864af2408d5SAndreas Gohr    // check if running on IIS < 6 with CGI-PHP
18657d34963bSAndreas Gohr    if (
18667d34963bSAndreas Gohr        $INPUT->server->has('SERVER_SOFTWARE') && $INPUT->server->has('GATEWAY_INTERFACE') &&
1867585bf44eSChristopher Smith        (strpos($INPUT->server->str('GATEWAY_INTERFACE'), 'CGI') !== false) &&
1868585bf44eSChristopher Smith        (preg_match('|^Microsoft-IIS/(\d)\.\d$|', trim($INPUT->server->str('SERVER_SOFTWARE')), $matches)) &&
18693272d797SAndreas Gohr        $matches[1] < 6
18703272d797SAndreas Gohr    ) {
1871af2408d5SAndreas Gohr        header('Refresh: 0;url=' . $url);
1872af2408d5SAndreas Gohr    } else {
1873af2408d5SAndreas Gohr        header('Location: ' . $url);
1874af2408d5SAndreas Gohr    }
187581781cb6SAndreas Gohr
1876572dc222SLarsDW223    // no exits during unit tests
187727c0c399SAndreas Gohr    if (defined('DOKU_UNITTEST')) {
187827c0c399SAndreas Gohr        // pass info about the redirect back to the test suite
187927c0c399SAndreas Gohr        $testRequest = TestRequest::getRunning();
188027c0c399SAndreas Gohr        if ($testRequest !== null) {
188127c0c399SAndreas Gohr            $testRequest->addData('send_redirect', $url);
188227c0c399SAndreas Gohr        }
1883572dc222SLarsDW223        return;
1884572dc222SLarsDW223    }
188527c0c399SAndreas Gohr
1886af2408d5SAndreas Gohr    exit;
1887af2408d5SAndreas Gohr}
1888af2408d5SAndreas Gohr
18895b75cd1fSAdrian Lang/**
18905b75cd1fSAdrian Lang * Validate a value using a set of valid values
18915b75cd1fSAdrian Lang *
18925b75cd1fSAdrian Lang * This function checks whether a specified value is set and in the array
18935b75cd1fSAdrian Lang * $valid_values. If not, the function returns a default value or, if no
18945b75cd1fSAdrian Lang * default is specified, throws an exception.
18955b75cd1fSAdrian Lang *
18965b75cd1fSAdrian Lang * @param string $param        The name of the parameter
18975b75cd1fSAdrian Lang * @param array  $valid_values A set of valid values; Optionally a default may
18985b75cd1fSAdrian Lang *                             be marked by the key “default”.
18995b75cd1fSAdrian Lang * @param array  $array        The array containing the value (typically $_POST
19005b75cd1fSAdrian Lang *                             or $_GET)
19015b75cd1fSAdrian Lang * @param string $exc          The text of the raised exception
19025b75cd1fSAdrian Lang *
19033272d797SAndreas Gohr * @throws Exception
19043272d797SAndreas Gohr * @return mixed
19055b75cd1fSAdrian Lang * @author Adrian Lang <lang@cosmocode.de>
19065b75cd1fSAdrian Lang */
1907d868eb89SAndreas Gohrfunction valid_input_set($param, $valid_values, $array, $exc = '')
1908d868eb89SAndreas Gohr{
19095b75cd1fSAdrian Lang    if (isset($array[$param]) && in_array($array[$param], $valid_values)) {
19105b75cd1fSAdrian Lang        return $array[$param];
19115b75cd1fSAdrian Lang    } elseif (isset($valid_values['default'])) {
19125b75cd1fSAdrian Lang        return $valid_values['default'];
19135b75cd1fSAdrian Lang    } else {
19145b75cd1fSAdrian Lang        throw new Exception($exc);
19155b75cd1fSAdrian Lang    }
19165b75cd1fSAdrian Lang}
19175b75cd1fSAdrian Lang
191863703ba5SAndreas Gohr/**
191963703ba5SAndreas Gohr * Read a preference from the DokuWiki cookie
1920646a531aSChristopher Smith * (remembering both keys & values are urlencoded)
1921140cfbcdSGerrit Uitslag *
1922140cfbcdSGerrit Uitslag * @param string $pref     preference key
1923b4b6c9a1SGerrit Uitslag * @param mixed  $default  value returned when preference not found
1924140cfbcdSGerrit Uitslag * @return string preference value
192563703ba5SAndreas Gohr */
1926d868eb89SAndreas Gohrfunction get_doku_pref($pref, $default)
1927d868eb89SAndreas Gohr{
1928646a531aSChristopher Smith    $enc_pref = urlencode($pref);
192906c9ee33SMarius van Witzenburg    if (isset($_COOKIE['DOKU_PREFS']) && strpos($_COOKIE['DOKU_PREFS'], $enc_pref) !== false) {
1930554a8c9fSAdrian Lang        $parts = explode('#', $_COOKIE['DOKU_PREFS']);
193163703ba5SAndreas Gohr        $cnt   = count($parts);
19321c3eca7dSPhy
19331c3eca7dSPhy        // due to #2721 there might be duplicate entries,
19341c3eca7dSPhy        // so we read from the end
19351c3eca7dSPhy        for ($i = $cnt - 2; $i >= 0; $i -= 2) {
193624870174SAndreas Gohr            if ($parts[$i] === $enc_pref) {
1937646a531aSChristopher Smith                return urldecode($parts[$i + 1]);
1938554a8c9fSAdrian Lang            }
1939554a8c9fSAdrian Lang        }
1940554a8c9fSAdrian Lang    }
1941554a8c9fSAdrian Lang    return $default;
1942554a8c9fSAdrian Lang}
1943554a8c9fSAdrian Lang
19443c94d07bSAnika Henke/**
19453c94d07bSAnika Henke * Add a preference to the DokuWiki cookie
194636ec377eSChristopher Smith * (remembering $_COOKIE['DOKU_PREFS'] is urlencoded)
19473a970889SAnika Henke * Remove it by setting $val to false
1948140cfbcdSGerrit Uitslag *
1949140cfbcdSGerrit Uitslag * @param string $pref  preference key
1950140cfbcdSGerrit Uitslag * @param string $val   preference value
19513c94d07bSAnika Henke */
1952d868eb89SAndreas Gohrfunction set_doku_pref($pref, $val)
1953d868eb89SAndreas Gohr{
19543c94d07bSAnika Henke    global $conf;
19553c94d07bSAnika Henke    $orig = get_doku_pref($pref, false);
19563c94d07bSAnika Henke    $cookieVal = '';
19573c94d07bSAnika Henke
19581c3eca7dSPhy    if ($orig !== false && ($orig !== $val)) {
19593c94d07bSAnika Henke        $parts = explode('#', $_COOKIE['DOKU_PREFS']);
19603c94d07bSAnika Henke        $cnt   = count($parts);
196136ec377eSChristopher Smith        // urlencode $pref for the comparison
196236ec377eSChristopher Smith        $enc_pref = rawurlencode($pref);
19631c3eca7dSPhy        $seen = false;
19643c94d07bSAnika Henke        for ($i = 0; $i < $cnt; $i += 2) {
196524870174SAndreas Gohr            if ($parts[$i] === $enc_pref) {
19661c3eca7dSPhy                if (!$seen) {
19673a970889SAnika Henke                    if ($val !== false) {
1968bf8f8509SAndreas Gohr                        $parts[$i + 1] = rawurlencode($val ?? '');
19693a970889SAnika Henke                    } else {
19703a970889SAnika Henke                        unset($parts[$i]);
19713a970889SAnika Henke                        unset($parts[$i + 1]);
19723a970889SAnika Henke                    }
19731c3eca7dSPhy                    $seen = true;
19741c3eca7dSPhy                } else {
19751c3eca7dSPhy                    // no break because we want to remove duplicate entries
19761c3eca7dSPhy                    unset($parts[$i]);
19771c3eca7dSPhy                    unset($parts[$i + 1]);
19781c3eca7dSPhy                }
19793c94d07bSAnika Henke            }
19803c94d07bSAnika Henke        }
19813c94d07bSAnika Henke        $cookieVal = implode('#', $parts);
19821c3eca7dSPhy    } elseif ($orig === false && $val !== false) {
1983c10f256aSDamien Regad        $cookieVal = (isset($_COOKIE['DOKU_PREFS']) ? $_COOKIE['DOKU_PREFS'] . '#' : '') .
198464159a61SAndreas Gohr            rawurlencode($pref) . '#' . rawurlencode($val);
19853c94d07bSAnika Henke    }
19863c94d07bSAnika Henke
198775e4dd8aSGerrit Uitslag    $cookieDir = empty($conf['cookiedir']) ? DOKU_REL : $conf['cookiedir'];
19885833995aSPhy    if (defined('DOKU_UNITTEST')) {
19895833995aSPhy        $_COOKIE['DOKU_PREFS'] = $cookieVal;
19905833995aSPhy    } else {
1991bf8392ebSAndreas Gohr        setcookie('DOKU_PREFS', $cookieVal, [
1992bf8392ebSAndreas Gohr            'expires' => time() + 365 * 24 * 3600,
1993bf8392ebSAndreas Gohr            'path' => $cookieDir,
1994bf8392ebSAndreas Gohr            'secure' => ($conf['securecookie'] && is_ssl()),
1995bf8392ebSAndreas Gohr            'samesite' => 'Lax'
1996bf8392ebSAndreas Gohr        ]);
19973c94d07bSAnika Henke    }
19983c94d07bSAnika Henke}
19993c94d07bSAnika Henke
2000f8fb2d18SAndreas Gohr/**
2001f8fb2d18SAndreas Gohr * Strips source mapping declarations from given text #601
2002f8fb2d18SAndreas Gohr *
200342ea7f44SGerrit Uitslag * @param string &$text reference to the CSS or JavaScript code to clean
2004f8fb2d18SAndreas Gohr */
2005d868eb89SAndreas Gohrfunction stripsourcemaps(&$text)
2006d868eb89SAndreas Gohr{
2007f8fb2d18SAndreas Gohr    $text = preg_replace('/^(\/\/|\/\*)[@#]\s+sourceMappingURL=.*?(\*\/)?$/im', '\\1\\2', $text);
2008f8fb2d18SAndreas Gohr}
2009f8fb2d18SAndreas Gohr
20103c27983bSAndreas Gohr/**
201171de5572SAndreas Gohr * Returns the contents of a given SVG file for embedding
20123c27983bSAndreas Gohr *
20133c27983bSAndreas Gohr * Inlining SVGs saves on HTTP requests and more importantly allows for styling them through
20143c27983bSAndreas Gohr * CSS. However it should used with small SVGs only. The $maxsize setting ensures only small
20153c27983bSAndreas Gohr * files are embedded.
20163c27983bSAndreas Gohr *
201771de5572SAndreas Gohr * This strips unneeded headers, comments and newline. The result is not a vaild standalone SVG!
201871de5572SAndreas Gohr *
20193c27983bSAndreas Gohr * @param string $file full path to the SVG file
20203c27983bSAndreas Gohr * @param int $maxsize maximum allowed size for the SVG to be embedded
202171de5572SAndreas Gohr * @return string|false the SVG content, false if the file couldn't be loaded
20223c27983bSAndreas Gohr */
2023d868eb89SAndreas Gohrfunction inlineSVG($file, $maxsize = 2048)
2024d868eb89SAndreas Gohr{
20253c27983bSAndreas Gohr    $file = trim($file);
20263c27983bSAndreas Gohr    if ($file === '') return false;
20273c27983bSAndreas Gohr    if (!file_exists($file)) return false;
20283c27983bSAndreas Gohr    if (filesize($file) > $maxsize) return false;
20293c27983bSAndreas Gohr    if (!is_readable($file)) return false;
20303c27983bSAndreas Gohr    $content = file_get_contents($file);
20310849fa88SAndreas Gohr    $content = preg_replace('/<!--.*?(-->)/s', '', $content); // comments
20320849fa88SAndreas Gohr    $content = preg_replace('/<\?xml .*?\?>/i', '', $content); // xml header
20330849fa88SAndreas Gohr    $content = preg_replace('/<!DOCTYPE .*?>/i', '', $content); // doc type
20340849fa88SAndreas Gohr    $content = preg_replace('/>\s+</s', '><', $content); // newlines between tags
20353c27983bSAndreas Gohr    $content = trim($content);
20366c16a3a9Sfiwswe    if (!str_starts_with($content, '<svg ')) return false;
203771de5572SAndreas Gohr    return $content;
20383c27983bSAndreas Gohr}
20393c27983bSAndreas Gohr
2040e3776c06SMichael Hamann//Setup VIM: ex: et ts=2 :
2041