xref: /dokuwiki/inc/common.php (revision d4f83172d9533c4d84f450fe22ef630816b21d75)
1ed7b5f09Sandi<?php
2*d4f83172SAndreas Gohr
315fae107Sandi/**
415fae107Sandi * Common DokuWiki functions
515fae107Sandi *
615fae107Sandi * @license    GPL 2 (http://www.gnu.org/licenses/gpl.html)
715fae107Sandi * @author     Andreas Gohr <andi@splitbrain.org>
815fae107Sandi */
9*d4f83172SAndreas Gohr
1024870174SAndreas Gohruse dokuwiki\PassHash;
1124870174SAndreas Gohruse dokuwiki\Draft;
1224870174SAndreas Gohruse dokuwiki\Utf8\Clean;
1324870174SAndreas Gohruse dokuwiki\Utf8\PhpString;
1424870174SAndreas Gohruse dokuwiki\Utf8\Conversion;
150db5771eSMichael Großeuse dokuwiki\Cache\CacheInstructions;
160db5771eSMichael Großeuse dokuwiki\Cache\CacheRenderer;
170c3a5702SAndreas Gohruse dokuwiki\ChangeLog\PageChangeLog;
18b24e9c4aSSatoshi Saharause dokuwiki\File\PageFile;
1966f4cdd4SSatoshi Saharause dokuwiki\Logger;
20704a815fSMichael Großeuse dokuwiki\Subscriptions\PageSubscriptionSender;
2175d66495SMichael Großeuse dokuwiki\Subscriptions\SubscriberManager;
22e1d9dcc8SAndreas Gohruse dokuwiki\Extension\AuthPlugin;
23e1d9dcc8SAndreas Gohruse dokuwiki\Extension\Event;
240c3a5702SAndreas Gohr
25f3f0262cSandi/**
26d5197206Schris * Wrapper around htmlspecialchars()
27d5197206Schris *
28d5197206Schris * @author Andreas Gohr <andi@splitbrain.org>
29d5197206Schris * @see    htmlspecialchars()
30140cfbcdSGerrit Uitslag *
31140cfbcdSGerrit Uitslag * @param string $string the string being converted
32140cfbcdSGerrit Uitslag * @return string converted string
33d5197206Schris */
34d868eb89SAndreas Gohrfunction hsc($string)
35d868eb89SAndreas Gohr{
36f7711f2bSAndreas Gohr    return htmlspecialchars($string, ENT_QUOTES | ENT_SUBSTITUTE | ENT_HTML401, 'UTF-8');
37d5197206Schris}
38d5197206Schris
39d5197206Schris/**
4012dd3cbcSAndreas Gohr * A safer explode for fixed length lists
4112dd3cbcSAndreas Gohr *
4212dd3cbcSAndreas Gohr * This works just like explode(), but will always return the wanted number of elements.
4312dd3cbcSAndreas Gohr * If the $input string does not contain enough elements, the missing elements will be
4412dd3cbcSAndreas Gohr * filled up with the $default value. If the input string contains more elements, the last
4512dd3cbcSAndreas Gohr * one will NOT be split up and will still contain $separator
4612dd3cbcSAndreas Gohr *
4712dd3cbcSAndreas Gohr * @param string $separator The boundary string
4812dd3cbcSAndreas Gohr * @param string $string The input string
4912dd3cbcSAndreas Gohr * @param int $limit The number of expected elements
5012dd3cbcSAndreas Gohr * @param mixed $default The value to use when filling up missing elements
5112dd3cbcSAndreas Gohr * @see explode
5212dd3cbcSAndreas Gohr * @return array
5312dd3cbcSAndreas Gohr */
5412dd3cbcSAndreas Gohrfunction sexplode($separator, $string, $limit, $default = null)
5512dd3cbcSAndreas Gohr{
5612dd3cbcSAndreas Gohr    return array_pad(explode($separator, $string, $limit), $limit, $default);
5712dd3cbcSAndreas Gohr}
5812dd3cbcSAndreas Gohr
5912dd3cbcSAndreas Gohr/**
605b571377SAndreas Gohr * Checks if the given input is blank
615b571377SAndreas Gohr *
625b571377SAndreas Gohr * This is similar to empty() but will return false for "0".
635b571377SAndreas Gohr *
6467234204SAndreas Gohr * Please note: when you pass uninitialized variables, they will implicitly be created
6567234204SAndreas Gohr * with a NULL value without warning.
6667234204SAndreas Gohr *
6767234204SAndreas Gohr * To avoid this it's recommended to guard the call with isset like this:
6867234204SAndreas Gohr *
6967234204SAndreas Gohr * (isset($foo) && !blank($foo))
7067234204SAndreas Gohr * (!isset($foo) || blank($foo))
7167234204SAndreas Gohr *
725b571377SAndreas Gohr * @param $in
735b571377SAndreas Gohr * @param bool $trim Consider a string of whitespace to be blank
745b571377SAndreas Gohr * @return bool
755b571377SAndreas Gohr */
76d868eb89SAndreas Gohrfunction blank(&$in, $trim = false)
77d868eb89SAndreas Gohr{
785b571377SAndreas Gohr    if (is_null($in)) return true;
7924870174SAndreas Gohr    if (is_array($in)) return $in === [];
805b571377SAndreas Gohr    if ($in === "\0") return true;
815b571377SAndreas Gohr    if ($trim && trim($in) === '') return true;
825b571377SAndreas Gohr    if (strlen($in) > 0) return false;
835b571377SAndreas Gohr    return empty($in);
845b571377SAndreas Gohr}
855b571377SAndreas Gohr
865b571377SAndreas Gohr/**
8702b0b681SAndreas Gohr * strips control characters (<32) from the given string
8802b0b681SAndreas Gohr *
8902b0b681SAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
90140cfbcdSGerrit Uitslag *
9142ea7f44SGerrit Uitslag * @param string $string being stripped
92140cfbcdSGerrit Uitslag * @return string
9302b0b681SAndreas Gohr */
94d868eb89SAndreas Gohrfunction stripctl($string)
95d868eb89SAndreas Gohr{
9602b0b681SAndreas Gohr    return preg_replace('/[\x00-\x1F]+/s', '', $string);
97d5197206Schris}
98d5197206Schris
99d5197206Schris/**
100634d7150SAndreas Gohr * Return a secret token to be used for CSRF attack prevention
101634d7150SAndreas Gohr *
102634d7150SAndreas Gohr * @author  Andreas Gohr <andi@splitbrain.org>
103634d7150SAndreas Gohr * @link    http://en.wikipedia.org/wiki/Cross-site_request_forgery
104634d7150SAndreas Gohr * @link    http://christ1an.blogspot.com/2007/04/preventing-csrf-efficiently.html
10542ea7f44SGerrit Uitslag *
106634d7150SAndreas Gohr * @return  string
107634d7150SAndreas Gohr */
108d868eb89SAndreas Gohrfunction getSecurityToken()
109d868eb89SAndreas Gohr{
110585bf44eSChristopher Smith    /** @var Input $INPUT */
111585bf44eSChristopher Smith    global $INPUT;
1123680e2cdSAndreas Gohr
1133680e2cdSAndreas Gohr    $user = $INPUT->server->str('REMOTE_USER');
1143680e2cdSAndreas Gohr    $session = session_id();
1153680e2cdSAndreas Gohr
1163680e2cdSAndreas Gohr    // CSRF checks are only for logged in users - do not generate for anonymous
1173680e2cdSAndreas Gohr    if (trim($user) == '' || trim($session) == '') return '';
11824870174SAndreas Gohr    return PassHash::hmac('md5', $session . $user, auth_cookiesalt());
119634d7150SAndreas Gohr}
120634d7150SAndreas Gohr
121634d7150SAndreas Gohr/**
122634d7150SAndreas Gohr * Check the secret CSRF token
123140cfbcdSGerrit Uitslag *
124140cfbcdSGerrit Uitslag * @param null|string $token security token or null to read it from request variable
125140cfbcdSGerrit Uitslag * @return bool success if the token matched
126634d7150SAndreas Gohr */
127d868eb89SAndreas Gohrfunction checkSecurityToken($token = null)
128d868eb89SAndreas Gohr{
129585bf44eSChristopher Smith    /** @var Input $INPUT */
1307d01a0eaSTom N Harris    global $INPUT;
131585bf44eSChristopher Smith    if (!$INPUT->server->str('REMOTE_USER')) return true; // no logged in user, no need for a check
132df97eaacSAndreas Gohr
1337d01a0eaSTom N Harris    if (is_null($token)) $token = $INPUT->str('sectok');
134634d7150SAndreas Gohr    if (getSecurityToken() != $token) {
135634d7150SAndreas Gohr        msg('Security Token did not match. Possible CSRF attack.', -1);
136634d7150SAndreas Gohr        return false;
137634d7150SAndreas Gohr    }
138634d7150SAndreas Gohr    return true;
139634d7150SAndreas Gohr}
140634d7150SAndreas Gohr
141634d7150SAndreas Gohr/**
142634d7150SAndreas Gohr * Print a hidden form field with a secret CSRF token
143634d7150SAndreas Gohr *
144634d7150SAndreas Gohr * @author  Andreas Gohr <andi@splitbrain.org>
145140cfbcdSGerrit Uitslag *
146140cfbcdSGerrit Uitslag * @param bool $print  if true print the field, otherwise html of the field is returned
14742ea7f44SGerrit Uitslag * @return string html of hidden form field
148634d7150SAndreas Gohr */
149d868eb89SAndreas Gohrfunction formSecurityToken($print = true)
150d868eb89SAndreas Gohr{
1512404d0edSAnika Henke    $ret = '<div class="no"><input type="hidden" name="sectok" value="' . getSecurityToken() . '" /></div>' . "\n";
1523272d797SAndreas Gohr    if ($print) echo $ret;
153634d7150SAndreas Gohr    return $ret;
154634d7150SAndreas Gohr}
155634d7150SAndreas Gohr
156634d7150SAndreas Gohr/**
1571015a57dSChristopher Smith * Determine basic information for a request of $id
15815fae107Sandi *
15915fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
1607e87a794SChristopher Smith * @author Chris Smith <chris@jalakai.co.uk>
161140cfbcdSGerrit Uitslag *
162140cfbcdSGerrit Uitslag * @param string $id         pageid
163140cfbcdSGerrit Uitslag * @param bool   $htmlClient add info about whether is mobile browser
164140cfbcdSGerrit Uitslag * @return array with info for a request of $id
165140cfbcdSGerrit Uitslag *
166f3f0262cSandi */
167d868eb89SAndreas Gohrfunction basicinfo($id, $htmlClient = true)
168d868eb89SAndreas Gohr{
169f3f0262cSandi    global $USERINFO;
170585bf44eSChristopher Smith    /* @var Input $INPUT */
171585bf44eSChristopher Smith    global $INPUT;
1726afe8dcaSchris
173c66972f2SAdrian Lang    // set info about manager/admin status.
17424870174SAndreas Gohr    $info = [];
175c66972f2SAdrian Lang    $info['isadmin']   = false;
176c66972f2SAdrian Lang    $info['ismanager'] = false;
177585bf44eSChristopher Smith    if ($INPUT->server->has('REMOTE_USER')) {
178f3f0262cSandi        $info['userinfo']   = $USERINFO;
1791015a57dSChristopher Smith        $info['perm']       = auth_quickaclcheck($id);
180585bf44eSChristopher Smith        $info['client']     = $INPUT->server->str('REMOTE_USER');
18117ee7f66SAndreas Gohr
182f8cc712eSAndreas Gohr        if ($info['perm'] == AUTH_ADMIN) {
183f8cc712eSAndreas Gohr            $info['isadmin']   = true;
184f8cc712eSAndreas Gohr            $info['ismanager'] = true;
185f8cc712eSAndreas Gohr        } elseif (auth_ismanager()) {
186f8cc712eSAndreas Gohr            $info['ismanager'] = true;
187f8cc712eSAndreas Gohr        }
188f8cc712eSAndreas Gohr
18917ee7f66SAndreas Gohr        // if some outside auth were used only REMOTE_USER is set
190a58fcbbcSAndreas Gohr        if (empty($info['userinfo']['name'])) {
191585bf44eSChristopher Smith            $info['userinfo']['name'] = $INPUT->server->str('REMOTE_USER');
19217ee7f66SAndreas Gohr        }
193f3f0262cSandi    } else {
1941015a57dSChristopher Smith        $info['perm']       = auth_aclcheck($id, '', null);
195ee4c4a1bSAndreas Gohr        $info['client']     = clientIP(true);
196f3f0262cSandi    }
197f3f0262cSandi
1981015a57dSChristopher Smith    $info['namespace'] = getNS($id);
1991015a57dSChristopher Smith
2001015a57dSChristopher Smith    // mobile detection
2011015a57dSChristopher Smith    if ($htmlClient) {
2021015a57dSChristopher Smith        $info['ismobile'] = clientismobile();
2031015a57dSChristopher Smith    }
2041015a57dSChristopher Smith
2051015a57dSChristopher Smith    return $info;
2061015a57dSChristopher Smith}
2071015a57dSChristopher Smith
2081015a57dSChristopher Smith/**
2091015a57dSChristopher Smith * Return info about the current document as associative
2101015a57dSChristopher Smith * array.
2111015a57dSChristopher Smith *
2121015a57dSChristopher Smith * @author Andreas Gohr <andi@splitbrain.org>
213140cfbcdSGerrit Uitslag *
214140cfbcdSGerrit Uitslag * @return array with info about current document
2151015a57dSChristopher Smith */
216d868eb89SAndreas Gohrfunction pageinfo()
217d868eb89SAndreas Gohr{
2181015a57dSChristopher Smith    global $ID;
2191015a57dSChristopher Smith    global $REV;
2201015a57dSChristopher Smith    global $RANGE;
2211015a57dSChristopher Smith    global $lang;
222585bf44eSChristopher Smith    /* @var Input $INPUT */
223585bf44eSChristopher Smith    global $INPUT;
2241015a57dSChristopher Smith
2251015a57dSChristopher Smith    $info = basicinfo($ID);
2261015a57dSChristopher Smith
2271015a57dSChristopher Smith    // include ID & REV not redundant, as some parts of DokuWiki may temporarily change $ID, e.g. p_wiki_xhtml
2281015a57dSChristopher Smith    // FIXME ... perhaps it would be better to ensure the temporary changes weren't necessary
2291015a57dSChristopher Smith    $info['id']  = $ID;
2301015a57dSChristopher Smith    $info['rev'] = $REV;
2311015a57dSChristopher Smith
23275d66495SMichael Große    $subManager = new SubscriberManager();
23375d66495SMichael Große    $info['subscribed'] = $subManager->userSubscription();
2347e87a794SChristopher Smith
235f3f0262cSandi    $info['locked']     = checklock($ID);
236317a04c4SSatoshi Sahara    $info['filepath']   = wikiFN($ID);
23779e79377SAndreas Gohr    $info['exists']     = file_exists($info['filepath']);
23801c9a118SAndreas Gohr    $info['currentrev'] = @filemtime($info['filepath']);
2395ec96136SSatoshi Sahara
2402ca9d91cSBen Coburn    if ($REV) {
2412ca9d91cSBen Coburn        //check if current revision was meant
24201c9a118SAndreas Gohr        if ($info['exists'] && ($info['currentrev'] == $REV)) {
2432ca9d91cSBen Coburn            $REV = '';
2447b3a6803SAndreas Gohr        } elseif ($RANGE) {
2457b3a6803SAndreas Gohr            //section editing does not work with old revisions!
2467b3a6803SAndreas Gohr            $REV   = '';
2477b3a6803SAndreas Gohr            $RANGE = '';
2487b3a6803SAndreas Gohr            msg($lang['nosecedit'], 0);
2492ca9d91cSBen Coburn        } else {
2502ca9d91cSBen Coburn            //really use old revision
251317a04c4SSatoshi Sahara            $info['filepath'] = wikiFN($ID, $REV);
25279e79377SAndreas Gohr            $info['exists']   = file_exists($info['filepath']);
253f3f0262cSandi        }
254f3f0262cSandi    }
255c112d578Sandi    $info['rev'] = $REV;
256f3f0262cSandi    if ($info['exists']) {
257252acce3SSatoshi Sahara        $info['writable'] = (is_writable($info['filepath']) && $info['perm'] >= AUTH_EDIT);
258f3f0262cSandi    } else {
259f3f0262cSandi        $info['writable'] = ($info['perm'] >= AUTH_CREATE);
260f3f0262cSandi    }
26150e988b1SAndreas Gohr    $info['editable'] = ($info['writable'] && empty($info['locked']));
262f3f0262cSandi    $info['lastmod']  = @filemtime($info['filepath']);
263f3f0262cSandi
26471726d78SBen Coburn    //load page meta data
26571726d78SBen Coburn    $info['meta'] = p_get_metadata($ID);
26671726d78SBen Coburn
267652610a2Sandi    //who's the editor
268047bad06SGerrit Uitslag    $pagelog = new PageChangeLog($ID, 1024);
269652610a2Sandi    if ($REV) {
270f523c971SGerrit Uitslag        $revinfo = $pagelog->getRevisionInfo($REV);
27124870174SAndreas Gohr    } elseif (!empty($info['meta']['last_change']) && is_array($info['meta']['last_change'])) {
272aa27cf05SAndreas Gohr        $revinfo = $info['meta']['last_change'];
273aa27cf05SAndreas Gohr    } else {
274f523c971SGerrit Uitslag        $revinfo = $pagelog->getRevisionInfo($info['lastmod']);
275cd00a034SBen Coburn        // cache most recent changelog line in metadata if missing and still valid
276cd00a034SBen Coburn        if ($revinfo !== false) {
277cd00a034SBen Coburn            $info['meta']['last_change'] = $revinfo;
27824870174SAndreas Gohr            p_set_metadata($ID, ['last_change' => $revinfo]);
279cd00a034SBen Coburn        }
280cd00a034SBen Coburn    }
281cd00a034SBen Coburn    //and check for an external edit
282cd00a034SBen Coburn    if ($revinfo !== false && $revinfo['date'] != $info['lastmod']) {
283cd00a034SBen Coburn        // cached changelog line no longer valid
284cd00a034SBen Coburn        $revinfo                     = false;
285cd00a034SBen Coburn        $info['meta']['last_change'] = $revinfo;
28624870174SAndreas Gohr        p_set_metadata($ID, ['last_change' => $revinfo]);
287652610a2Sandi    }
288bb4866bdSchris
2890a444b5aSPhy    if ($revinfo !== false) {
290652610a2Sandi        $info['ip']   = $revinfo['ip'];
291652610a2Sandi        $info['user'] = $revinfo['user'];
292652610a2Sandi        $info['sum']  = $revinfo['sum'];
29371726d78SBen Coburn        // See also $INFO['meta']['last_change'] which is the most recent log line for page $ID.
294ebf1501fSBen Coburn        // Use $INFO['meta']['last_change']['type']===DOKU_CHANGE_TYPE_MINOR_EDIT in place of $info['minor'].
29559f257aeSchris
296252acce3SSatoshi Sahara        $info['editor'] = $revinfo['user'] ?: $revinfo['ip'];
2970a444b5aSPhy    } else {
2980a444b5aSPhy        $info['ip']     = null;
2990a444b5aSPhy        $info['user']   = null;
3000a444b5aSPhy        $info['sum']    = null;
3010a444b5aSPhy        $info['editor'] = null;
3020a444b5aSPhy    }
303652610a2Sandi
304ee4c4a1bSAndreas Gohr    // draft
30524870174SAndreas Gohr    $draft = new Draft($ID, $info['client']);
3060aabe6f8SMichael Große    if ($draft->isDraftAvailable()) {
3070aabe6f8SMichael Große        $info['draft'] = $draft->getDraftFilename();
308ee4c4a1bSAndreas Gohr    }
309ee4c4a1bSAndreas Gohr
3101015a57dSChristopher Smith    return $info;
3111015a57dSChristopher Smith}
3121015a57dSChristopher Smith
3131015a57dSChristopher Smith/**
3140c39d46cSMichael Große * Initialize and/or fill global $JSINFO with some basic info to be given to javascript
3150c39d46cSMichael Große */
316d868eb89SAndreas Gohrfunction jsinfo()
317d868eb89SAndreas Gohr{
3180c39d46cSMichael Große    global $JSINFO, $ID, $INFO, $ACT;
3190c39d46cSMichael Große
3200c39d46cSMichael Große    if (!is_array($JSINFO)) {
3210c39d46cSMichael Große        $JSINFO = [];
3220c39d46cSMichael Große    }
3230c39d46cSMichael Große    //export minimal info to JS, plugins can add more
3240c39d46cSMichael Große    $JSINFO['id']                    = $ID;
32568491db9SPhy    $JSINFO['namespace']             = isset($INFO) ? (string) $INFO['namespace'] : '';
3260c39d46cSMichael Große    $JSINFO['ACT']                   = act_clean($ACT);
3270c39d46cSMichael Große    $JSINFO['useHeadingNavigation']  = (int) useHeading('navigation');
3280c39d46cSMichael Große    $JSINFO['useHeadingContent']     = (int) useHeading('content');
3290c39d46cSMichael Große}
3300c39d46cSMichael Große
3310c39d46cSMichael Große/**
3321015a57dSChristopher Smith * Return information about the current media item as an associative array.
333140cfbcdSGerrit Uitslag *
334140cfbcdSGerrit Uitslag * @return array with info about current media item
3351015a57dSChristopher Smith */
336d868eb89SAndreas Gohrfunction mediainfo()
337d868eb89SAndreas Gohr{
3381015a57dSChristopher Smith    global $NS;
3391015a57dSChristopher Smith    global $IMG;
3401015a57dSChristopher Smith
3411015a57dSChristopher Smith    $info = basicinfo("$NS:*");
3421015a57dSChristopher Smith    $info['image'] = $IMG;
3431c548ebeSAndreas Gohr
344f3f0262cSandi    return $info;
345f3f0262cSandi}
346f3f0262cSandi
347f3f0262cSandi/**
3482684e50aSAndreas Gohr * Build an string of URL parameters
3492684e50aSAndreas Gohr *
3502684e50aSAndreas Gohr * @author Andreas Gohr
351140cfbcdSGerrit Uitslag *
352140cfbcdSGerrit Uitslag * @param array  $params    array with key-value pairs
353140cfbcdSGerrit Uitslag * @param string $sep       series of pairs are separated by this character
354140cfbcdSGerrit Uitslag * @return string query string
3552684e50aSAndreas Gohr */
356d868eb89SAndreas Gohrfunction buildURLparams($params, $sep = '&amp;')
357d868eb89SAndreas Gohr{
3582684e50aSAndreas Gohr    $url = '';
3592684e50aSAndreas Gohr    $amp = false;
3602684e50aSAndreas Gohr    foreach ($params as $key => $val) {
361b174aeaeSchris        if ($amp) $url .= $sep;
3622684e50aSAndreas Gohr
36385e6871fSAdrian Lang        $url .= rawurlencode($key) . '=';
3643a50618cSgweissbach        $url .= rawurlencode((string) $val);
3652684e50aSAndreas Gohr        $amp = true;
3662684e50aSAndreas Gohr    }
3672684e50aSAndreas Gohr    return $url;
3682684e50aSAndreas Gohr}
3692684e50aSAndreas Gohr
3702684e50aSAndreas Gohr/**
3712684e50aSAndreas Gohr * Build an string of html tag attributes
3722684e50aSAndreas Gohr *
3737bff22c0SAndreas Gohr * Skips keys starting with '_', values get HTML encoded
3747bff22c0SAndreas Gohr *
3752684e50aSAndreas Gohr * @author Andreas Gohr
376140cfbcdSGerrit Uitslag *
377140cfbcdSGerrit Uitslag * @param array $params           array with (attribute name-attribute value) pairs
378246d3337SMichael Große * @param bool  $skipEmptyStrings skip empty string values?
379140cfbcdSGerrit Uitslag * @return string
3802684e50aSAndreas Gohr */
381d868eb89SAndreas Gohrfunction buildAttributes($params, $skipEmptyStrings = false)
382d868eb89SAndreas Gohr{
3832684e50aSAndreas Gohr    $url   = '';
3849063ec14SAdrian Lang    $white = false;
3852684e50aSAndreas Gohr    foreach ($params as $key => $val) {
3862401f18dSSyntaxseed        if ($key[0] == '_') continue;
387246d3337SMichael Große        if ($val === '' && $skipEmptyStrings) continue;
3889063ec14SAdrian Lang        if ($white) $url .= ' ';
3897bff22c0SAndreas Gohr
3902684e50aSAndreas Gohr        $url .= $key . '="';
391f7711f2bSAndreas Gohr        $url .= hsc($val);
3922684e50aSAndreas Gohr        $url .= '"';
3939063ec14SAdrian Lang        $white = true;
3942684e50aSAndreas Gohr    }
3952684e50aSAndreas Gohr    return $url;
3962684e50aSAndreas Gohr}
3972684e50aSAndreas Gohr
3982684e50aSAndreas Gohr/**
39915fae107Sandi * This builds the breadcrumb trail and returns it as array
40015fae107Sandi *
40115fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
402140cfbcdSGerrit Uitslag *
403e3710957SGerrit Uitslag * @return string[] with the data: array(pageid=>name, ... )
404f3f0262cSandi */
405d868eb89SAndreas Gohrfunction breadcrumbs()
406d868eb89SAndreas Gohr{
4078746e727Sandi    // we prepare the breadcrumbs early for quick session closing
4088746e727Sandi    static $crumbs = null;
4098746e727Sandi    if ($crumbs != null) return $crumbs;
4108746e727Sandi
411f3f0262cSandi    global $ID;
412f3f0262cSandi    global $ACT;
413f3f0262cSandi    global $conf;
4140ea5ebb4SB_S666    global $INFO;
415f3f0262cSandi
416f3f0262cSandi    //first visit?
41724870174SAndreas Gohr    $crumbs = $_SESSION[DOKU_COOKIE]['bc'] ?? [];
4185603d3c1SHenry Pan    //we only save on show and existing visible readable wiki documents
419a77f5846Sjan    $file = wikiFN($ID);
4205603d3c1SHenry Pan    if ($ACT != 'show' || $INFO['perm'] < AUTH_READ || isHiddenPage($ID) || !file_exists($file)) {
421e71ce681SAndreas Gohr        $_SESSION[DOKU_COOKIE]['bc'] = $crumbs;
422f3f0262cSandi        return $crumbs;
423f3f0262cSandi    }
424a77f5846Sjan
425a77f5846Sjan    // page names
4261a84a0f3SAnika Henke    $name = noNSorNS($ID);
427fe9ec250SChris Smith    if (useHeading('navigation')) {
428a77f5846Sjan        // get page title
42967c15eceSMichael Hamann        $title = p_get_first_heading($ID, METADATA_RENDER_USING_SIMPLE_CACHE);
430a77f5846Sjan        if ($title) {
431a77f5846Sjan            $name = $title;
432a77f5846Sjan        }
433a77f5846Sjan    }
434a77f5846Sjan
435f3f0262cSandi    //remove ID from array
436a77f5846Sjan    if (isset($crumbs[$ID])) {
437a77f5846Sjan        unset($crumbs[$ID]);
438f3f0262cSandi    }
439f3f0262cSandi
440f3f0262cSandi    //add to array
441a77f5846Sjan    $crumbs[$ID] = $name;
442f3f0262cSandi    //reduce size
443f3f0262cSandi    while (count($crumbs) > $conf['breadcrumbs']) {
444f3f0262cSandi        array_shift($crumbs);
445f3f0262cSandi    }
446f3f0262cSandi    //save to session
447e71ce681SAndreas Gohr    $_SESSION[DOKU_COOKIE]['bc'] = $crumbs;
448f3f0262cSandi    return $crumbs;
449f3f0262cSandi}
450f3f0262cSandi
451f3f0262cSandi/**
45215fae107Sandi * Filter for page IDs
45315fae107Sandi *
454f3f0262cSandi * This is run on a ID before it is outputted somewhere
455f3f0262cSandi * currently used to replace the colon with something else
456907f24f7SAndreas Gohr * on Windows (non-IIS) systems and to have proper URL encoding
457907f24f7SAndreas Gohr *
458977aa967SAndreas Gohr * See discussions at https://github.com/dokuwiki/dokuwiki/pull/84 and
459977aa967SAndreas Gohr * https://github.com/dokuwiki/dokuwiki/pull/173 why we use a whitelist of
460907f24f7SAndreas Gohr * unaffected servers instead of blacklisting affected servers here.
46115fae107Sandi *
46249c713a3Sandi * Urlencoding is ommitted when the second parameter is false
46349c713a3Sandi *
46415fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
465140cfbcdSGerrit Uitslag *
466140cfbcdSGerrit Uitslag * @param string $id pageid being filtered
467140cfbcdSGerrit Uitslag * @param bool   $ue apply urlencoding?
468140cfbcdSGerrit Uitslag * @return string
469f3f0262cSandi */
470d868eb89SAndreas Gohrfunction idfilter($id, $ue = true)
471d868eb89SAndreas Gohr{
472f3f0262cSandi    global $conf;
473585bf44eSChristopher Smith    /* @var Input $INPUT */
474585bf44eSChristopher Smith    global $INPUT;
475585bf44eSChristopher Smith
476bf8f8509SAndreas Gohr    $id = (string) $id;
477bf8f8509SAndreas Gohr
478f3f0262cSandi    if ($conf['useslash'] && $conf['userewrite']) {
479f3f0262cSandi        $id = strtr($id, ':', '/');
4807d34963bSAndreas Gohr    } elseif (
4817d34963bSAndreas Gohr        strtoupper(substr(PHP_OS, 0, 3)) === 'WIN' &&
48258bedc8aSborekb        $conf['userewrite'] &&
483585bf44eSChristopher Smith        strpos($INPUT->server->str('SERVER_SOFTWARE'), 'Microsoft-IIS') === false
4843272d797SAndreas Gohr    ) {
485f3f0262cSandi        $id = strtr($id, ':', ';');
486f3f0262cSandi    }
48749c713a3Sandi    if ($ue) {
488b6c6979fSAndreas Gohr        $id = rawurlencode($id);
489f3f0262cSandi        $id = str_replace('%3A', ':', $id); //keep as colon
490edd95259SGerrit Uitslag        $id = str_replace('%3B', ';', $id); //keep as semicolon
491f3f0262cSandi        $id = str_replace('%2F', '/', $id); //keep as slash
49249c713a3Sandi    }
493f3f0262cSandi    return $id;
494f3f0262cSandi}
495f3f0262cSandi
496f3f0262cSandi/**
497ed7b5f09Sandi * This builds a link to a wikipage
49815fae107Sandi *
4994bc480e5SAndreas Gohr * It handles URL rewriting and adds additional parameters
5006c7843b5Sandi *
50115fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
5024bc480e5SAndreas Gohr *
5034bc480e5SAndreas Gohr * @param string       $id             page id, defaults to start page
5044bc480e5SAndreas Gohr * @param string|array $urlParameters  URL parameters, associative array recommended
5054bc480e5SAndreas Gohr * @param bool         $absolute       request an absolute URL instead of relative
5064bc480e5SAndreas Gohr * @param string       $separator      parameter separator
5074bc480e5SAndreas Gohr * @return string
508f3f0262cSandi */
509d868eb89SAndreas Gohrfunction wl($id = '', $urlParameters = '', $absolute = false, $separator = '&amp;')
510d868eb89SAndreas Gohr{
511f3f0262cSandi    global $conf;
51216f15a81SDominik Eckelmann    if (is_array($urlParameters)) {
5134bde2196Slisps        if (isset($urlParameters['rev']) && !$urlParameters['rev']) unset($urlParameters['rev']);
51464159a61SAndreas Gohr        if (isset($urlParameters['at']) && $conf['date_at_format']) {
51564159a61SAndreas Gohr            $urlParameters['at'] = date($conf['date_at_format'], $urlParameters['at']);
51664159a61SAndreas Gohr        }
51716f15a81SDominik Eckelmann        $urlParameters = buildURLparams($urlParameters, $separator);
5186de3759aSAndreas Gohr    } else {
51916f15a81SDominik Eckelmann        $urlParameters = str_replace(',', $separator, $urlParameters);
5206de3759aSAndreas Gohr    }
52116f15a81SDominik Eckelmann    if ($id === '') {
52216f15a81SDominik Eckelmann        $id = $conf['start'];
52316f15a81SDominik Eckelmann    }
524f3f0262cSandi    $id = idfilter($id);
52516f15a81SDominik Eckelmann    if ($absolute) {
526ed7b5f09Sandi        $xlink = DOKU_URL;
527ed7b5f09Sandi    } else {
528ed7b5f09Sandi        $xlink = DOKU_BASE;
529ed7b5f09Sandi    }
530f3f0262cSandi
5316c7843b5Sandi    if ($conf['userewrite'] == 2) {
5326c7843b5Sandi        $xlink .= DOKU_SCRIPT . '/' . $id;
53316f15a81SDominik Eckelmann        if ($urlParameters) $xlink .= '?' . $urlParameters;
5346c7843b5Sandi    } elseif ($conf['userewrite']) {
535f3f0262cSandi        $xlink .= $id;
53616f15a81SDominik Eckelmann        if ($urlParameters) $xlink .= '?' . $urlParameters;
53740b5fb5bSPhy    } elseif ($id !== '') {
5386c7843b5Sandi        $xlink .= DOKU_SCRIPT . '?id=' . $id;
53916f15a81SDominik Eckelmann        if ($urlParameters) $xlink .= $separator . $urlParameters;
540bce3726dSAndreas Gohr    } else {
541bce3726dSAndreas Gohr        $xlink .= DOKU_SCRIPT;
54216f15a81SDominik Eckelmann        if ($urlParameters) $xlink .= '?' . $urlParameters;
543f3f0262cSandi    }
544f3f0262cSandi
545f3f0262cSandi    return $xlink;
546f3f0262cSandi}
547f3f0262cSandi
548f3f0262cSandi/**
549f5c2808fSBen Coburn * This builds a link to an alternate page format
550f5c2808fSBen Coburn *
551f5c2808fSBen Coburn * Handles URL rewriting if enabled. Follows the style of wl().
552f5c2808fSBen Coburn *
553f5c2808fSBen Coburn * @author Ben Coburn <btcoburn@silicodon.net>
5544bc480e5SAndreas Gohr * @param string       $id             page id, defaults to start page
5554bc480e5SAndreas Gohr * @param string       $format         the export renderer to use
5564bc480e5SAndreas Gohr * @param string|array $urlParameters  URL parameters, associative array recommended
5574bc480e5SAndreas Gohr * @param bool         $abs            request an absolute URL instead of relative
5584bc480e5SAndreas Gohr * @param string       $sep            parameter separator
5594bc480e5SAndreas Gohr * @return string
560f5c2808fSBen Coburn */
561d868eb89SAndreas Gohrfunction exportlink($id = '', $format = 'raw', $urlParameters = '', $abs = false, $sep = '&amp;')
562d868eb89SAndreas Gohr{
563f5c2808fSBen Coburn    global $conf;
5644bc480e5SAndreas Gohr    if (is_array($urlParameters)) {
5654bc480e5SAndreas Gohr        $urlParameters = buildURLparams($urlParameters, $sep);
566f5c2808fSBen Coburn    } else {
5674bc480e5SAndreas Gohr        $urlParameters = str_replace(',', $sep, $urlParameters);
568f5c2808fSBen Coburn    }
569f5c2808fSBen Coburn
570f5c2808fSBen Coburn    $format = rawurlencode($format);
571f5c2808fSBen Coburn    $id     = idfilter($id);
572f5c2808fSBen Coburn    if ($abs) {
573f5c2808fSBen Coburn        $xlink = DOKU_URL;
574f5c2808fSBen Coburn    } else {
575f5c2808fSBen Coburn        $xlink = DOKU_BASE;
576f5c2808fSBen Coburn    }
577f5c2808fSBen Coburn
578f5c2808fSBen Coburn    if ($conf['userewrite'] == 2) {
579f5c2808fSBen Coburn        $xlink .= DOKU_SCRIPT . '/' . $id . '?do=export_' . $format;
5804bc480e5SAndreas Gohr        if ($urlParameters) $xlink .= $sep . $urlParameters;
581f5c2808fSBen Coburn    } elseif ($conf['userewrite'] == 1) {
582f5c2808fSBen Coburn        $xlink .= '_export/' . $format . '/' . $id;
5834bc480e5SAndreas Gohr        if ($urlParameters) $xlink .= '?' . $urlParameters;
584f5c2808fSBen Coburn    } else {
585f5c2808fSBen Coburn        $xlink .= DOKU_SCRIPT . '?do=export_' . $format . $sep . 'id=' . $id;
5864bc480e5SAndreas Gohr        if ($urlParameters) $xlink .= $sep . $urlParameters;
587f5c2808fSBen Coburn    }
588f5c2808fSBen Coburn
589f5c2808fSBen Coburn    return $xlink;
590f5c2808fSBen Coburn}
591f5c2808fSBen Coburn
592f5c2808fSBen Coburn/**
5936de3759aSAndreas Gohr * Build a link to a media file
5946de3759aSAndreas Gohr *
5956de3759aSAndreas Gohr * Will return a link to the detail page if $direct is false
5968c08db0aSAndreas Gohr *
5978c08db0aSAndreas Gohr * The $more parameter should always be given as array, the function then
5988c08db0aSAndreas Gohr * will strip default parameters to produce even cleaner URLs
5998c08db0aSAndreas Gohr *
6003272d797SAndreas Gohr * @param string  $id     the media file id or URL
6013272d797SAndreas Gohr * @param mixed   $more   string or array with additional parameters
6023272d797SAndreas Gohr * @param bool    $direct link to detail page if false
6033272d797SAndreas Gohr * @param string  $sep    URL parameter separator
6043272d797SAndreas Gohr * @param bool    $abs    Create an absolute URL
6053272d797SAndreas Gohr * @return string
6066de3759aSAndreas Gohr */
607d868eb89SAndreas Gohrfunction ml($id = '', $more = '', $direct = true, $sep = '&amp;', $abs = false)
608d868eb89SAndreas Gohr{
6096de3759aSAndreas Gohr    global $conf;
610b9ee6a44SKlap-in    $isexternalimage = media_isexternal($id);
611826d2766SKlap-in    if (!$isexternalimage) {
612826d2766SKlap-in        $id = cleanID($id);
613826d2766SKlap-in    }
614826d2766SKlap-in
6156de3759aSAndreas Gohr    if (is_array($more)) {
6160f4e0092SChristopher Smith        // add token for resized images
61724870174SAndreas Gohr        $w = $more['w'] ?? null;
61824870174SAndreas Gohr        $h = $more['h'] ?? null;
61998fe1ac9SDamien Regad        if ($w || $h || $isexternalimage) {
620357c9a39SDamien Regad            $more['tok'] = media_get_token($id, $w, $h);
6210f4e0092SChristopher Smith        }
6228c08db0aSAndreas Gohr        // strip defaults for shorter URLs
6238c08db0aSAndreas Gohr        if (isset($more['cache']) && $more['cache'] == 'cache') unset($more['cache']);
624443e135dSChristopher Smith        if (empty($more['w'])) unset($more['w']);
625443e135dSChristopher Smith        if (empty($more['h'])) unset($more['h']);
6268c08db0aSAndreas Gohr        if (isset($more['id']) && $direct) unset($more['id']);
62778b874e6Slisps        if (isset($more['rev']) && !$more['rev']) unset($more['rev']);
628b174aeaeSchris        $more = buildURLparams($more, $sep);
6296de3759aSAndreas Gohr    } else {
63024870174SAndreas Gohr        $matches = [];
631cc036f74SKlap-in        if (preg_match_all('/\b(w|h)=(\d*)\b/', $more, $matches, PREG_SET_ORDER) || $isexternalimage) {
63224870174SAndreas Gohr            $resize = ['w' => 0, 'h' => 0];
6335e7db1e2SChristopher Smith            foreach ($matches as $match) {
6345e7db1e2SChristopher Smith                $resize[$match[1]] = $match[2];
6355e7db1e2SChristopher Smith            }
636cc036f74SKlap-in            $more .= $more === '' ? '' : $sep;
637cc036f74SKlap-in            $more .= 'tok=' . media_get_token($id, $resize['w'], $resize['h']);
6385e7db1e2SChristopher Smith        }
6398c08db0aSAndreas Gohr        $more = str_replace('cache=cache', '', $more); //skip default
6408c08db0aSAndreas Gohr        $more = str_replace(',,', ',', $more);
641b174aeaeSchris        $more = str_replace(',', $sep, $more);
6426de3759aSAndreas Gohr    }
6436de3759aSAndreas Gohr
64455b2b31bSAndreas Gohr    if ($abs) {
64555b2b31bSAndreas Gohr        $xlink = DOKU_URL;
64655b2b31bSAndreas Gohr    } else {
6476de3759aSAndreas Gohr        $xlink = DOKU_BASE;
64855b2b31bSAndreas Gohr    }
6496de3759aSAndreas Gohr
6506de3759aSAndreas Gohr    // external URLs are always direct without rewriting
651826d2766SKlap-in    if ($isexternalimage) {
6526de3759aSAndreas Gohr        $xlink .= 'lib/exe/fetch.php';
653cc036f74SKlap-in        $xlink .= '?' . $more;
654b174aeaeSchris        $xlink .= $sep . 'media=' . rawurlencode($id);
6556de3759aSAndreas Gohr        return $xlink;
6566de3759aSAndreas Gohr    }
6576de3759aSAndreas Gohr
6586de3759aSAndreas Gohr    $id = idfilter($id);
6596de3759aSAndreas Gohr
6606de3759aSAndreas Gohr    // decide on scriptname
6616de3759aSAndreas Gohr    if ($direct) {
6626de3759aSAndreas Gohr        if ($conf['userewrite'] == 1) {
6636de3759aSAndreas Gohr            $script = '_media';
6646de3759aSAndreas Gohr        } else {
6656de3759aSAndreas Gohr            $script = 'lib/exe/fetch.php';
6666de3759aSAndreas Gohr        }
66724870174SAndreas Gohr    } elseif ($conf['userewrite'] == 1) {
6686de3759aSAndreas Gohr        $script = '_detail';
6696de3759aSAndreas Gohr    } else {
6706de3759aSAndreas Gohr        $script = 'lib/exe/detail.php';
6716de3759aSAndreas Gohr    }
6726de3759aSAndreas Gohr
6736de3759aSAndreas Gohr    // build URL based on rewrite mode
6746de3759aSAndreas Gohr    if ($conf['userewrite']) {
6756de3759aSAndreas Gohr        $xlink .= $script . '/' . $id;
6766de3759aSAndreas Gohr        if ($more) $xlink .= '?' . $more;
67724870174SAndreas Gohr    } elseif ($more) {
678a99d3236SEsther Brunner        $xlink .= $script . '?' . $more;
679b174aeaeSchris        $xlink .= $sep . 'media=' . $id;
6806de3759aSAndreas Gohr    } else {
681a99d3236SEsther Brunner        $xlink .= $script . '?media=' . $id;
6826de3759aSAndreas Gohr    }
6836de3759aSAndreas Gohr
6846de3759aSAndreas Gohr    return $xlink;
6856de3759aSAndreas Gohr}
6866de3759aSAndreas Gohr
6876de3759aSAndreas Gohr/**
68825ca5b17SAndreas Gohr * Returns the URL to the DokuWiki base script
68915fae107Sandi *
69025ca5b17SAndreas Gohr * Consider using wl() instead, unless you absoutely need the doku.php endpoint
69125ca5b17SAndreas Gohr *
69215fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
693140cfbcdSGerrit Uitslag *
694140cfbcdSGerrit Uitslag * @return string
695f3f0262cSandi */
696d868eb89SAndreas Gohrfunction script()
697d868eb89SAndreas Gohr{
698ed7b5f09Sandi    return DOKU_BASE . DOKU_SCRIPT;
699f3f0262cSandi}
700f3f0262cSandi
701f3f0262cSandi/**
70215fae107Sandi * Spamcheck against wordlist
70315fae107Sandi *
704f3f0262cSandi * Checks the wikitext against a list of blocked expressions
705f3f0262cSandi * returns true if the text contains any bad words
70615fae107Sandi *
707e403cc58SMichael Klier * Triggers COMMON_WORDBLOCK_BLOCKED
708e403cc58SMichael Klier *
709e403cc58SMichael Klier *  Action Plugins can use this event to inspect the blocked data
710e403cc58SMichael Klier *  and gain information about the user who was blocked.
711e403cc58SMichael Klier *
712e403cc58SMichael Klier *  Event data:
713e403cc58SMichael Klier *    data['matches']  - array of matches
714e403cc58SMichael Klier *    data['userinfo'] - information about the blocked user
715e403cc58SMichael Klier *      [ip]           - ip address
716e403cc58SMichael Klier *      [user]         - username (if logged in)
717e403cc58SMichael Klier *      [mail]         - mail address (if logged in)
718e403cc58SMichael Klier *      [name]         - real name (if logged in)
719e403cc58SMichael Klier *
72015fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
7216dffa0e0SAndreas Gohr * @author Michael Klier <chi@chimeric.de>
722140cfbcdSGerrit Uitslag *
7236dffa0e0SAndreas Gohr * @param  string $text - optional text to check, if not given the globals are used
7246dffa0e0SAndreas Gohr * @return bool         - true if a spam word was found
725f3f0262cSandi */
726d868eb89SAndreas Gohrfunction checkwordblock($text = '')
727d868eb89SAndreas Gohr{
728f3f0262cSandi    global $TEXT;
7296dffa0e0SAndreas Gohr    global $PRE;
7306dffa0e0SAndreas Gohr    global $SUF;
731e0086ca2SAndreas Gohr    global $SUM;
732f3f0262cSandi    global $conf;
733e403cc58SMichael Klier    global $INFO;
734585bf44eSChristopher Smith    /* @var Input $INPUT */
735585bf44eSChristopher Smith    global $INPUT;
736f3f0262cSandi
737f3f0262cSandi    if (!$conf['usewordblock']) return false;
738f3f0262cSandi
739e0086ca2SAndreas Gohr    if (!$text) $text = "$PRE $TEXT $SUF $SUM";
7406dffa0e0SAndreas Gohr
741041d1964SAndreas Gohr    // we prepare the text a tiny bit to prevent spammers circumventing URL checks
74264159a61SAndreas Gohr    // phpcs:disable Generic.Files.LineLength.TooLong
74364159a61SAndreas Gohr    $text = preg_replace(
74464159a61SAndreas Gohr        '!(\b)(www\.[\w.:?\-;,]+?\.[\w.:?\-;,]+?[\w/\#~:.?+=&%@\!\-.:?\-;,]+?)([.:?\-;,]*[^\w/\#~:.?+=&%@\!\-.:?\-;,])!i',
74564159a61SAndreas Gohr        '\1http://\2 \2\3',
74664159a61SAndreas Gohr        $text
74764159a61SAndreas Gohr    );
74864159a61SAndreas Gohr    // phpcs:enable
749041d1964SAndreas Gohr
750b9ac8716Schris    $wordblocks = getWordblocks();
751a51d08efSAndreas Gohr    // read file in chunks of 200 - this should work around the
7523e2965d7Sandi    // MAX_PATTERN_SIZE in modern PCRE
753a51d08efSAndreas Gohr    $chunksize = 200;
75464259528SAndreas Gohr
755b9ac8716Schris    while ($blocks = array_splice($wordblocks, 0, $chunksize)) {
75624870174SAndreas Gohr        $re = [];
75749eb6e38SAndreas Gohr        // build regexp from blocks
758f3f0262cSandi        foreach ($blocks as $block) {
759f3f0262cSandi            $block = preg_replace('/#.*$/', '', $block);
760f3f0262cSandi            $block = trim($block);
761f3f0262cSandi            if (empty($block)) continue;
762f3f0262cSandi            $re[] = $block;
763f3f0262cSandi        }
76424870174SAndreas Gohr        if (count($re) && preg_match('#(' . implode('|', $re) . ')#si', $text, $matches)) {
765e403cc58SMichael Klier            // prepare event data
76624870174SAndreas Gohr            $data = [];
767e403cc58SMichael Klier            $data['matches']        = $matches;
768585bf44eSChristopher Smith            $data['userinfo']['ip'] = $INPUT->server->str('REMOTE_ADDR');
769585bf44eSChristopher Smith            if ($INPUT->server->str('REMOTE_USER')) {
770585bf44eSChristopher Smith                $data['userinfo']['user'] = $INPUT->server->str('REMOTE_USER');
771e403cc58SMichael Klier                $data['userinfo']['name'] = $INFO['userinfo']['name'];
772e403cc58SMichael Klier                $data['userinfo']['mail'] = $INFO['userinfo']['mail'];
773e403cc58SMichael Klier            }
77424870174SAndreas Gohr            $callback = static fn() => true;
775cbb44eabSAndreas Gohr            return Event::createAndTrigger('COMMON_WORDBLOCK_BLOCKED', $data, $callback, true);
776b9ac8716Schris        }
777703f6fdeSandi    }
778f3f0262cSandi    return false;
779f3f0262cSandi}
780f3f0262cSandi
781f3f0262cSandi/**
78215fae107Sandi * Return the IP of the client
78315fae107Sandi *
7846d8affe6SAndreas Gohr * Honours X-Forwarded-For and X-Real-IP Proxy Headers
78515fae107Sandi *
7866d8affe6SAndreas Gohr * It returns a comma separated list of IPs if the above mentioned
7876d8affe6SAndreas Gohr * headers are set. If the single parameter is set, it tries to return
7886d8affe6SAndreas Gohr * a routable public address, prefering the ones suplied in the X
7896d8affe6SAndreas Gohr * headers
7906d8affe6SAndreas Gohr *
79115fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
792140cfbcdSGerrit Uitslag *
7933272d797SAndreas Gohr * @param  boolean $single If set only a single IP is returned
7943272d797SAndreas Gohr * @return string
795f3f0262cSandi */
796d868eb89SAndreas Gohrfunction clientIP($single = false)
797d868eb89SAndreas Gohr{
798585bf44eSChristopher Smith    /* @var Input $INPUT */
799925105e8SPhy    global $INPUT, $conf;
800585bf44eSChristopher Smith
80124870174SAndreas Gohr    $ip   = [];
802585bf44eSChristopher Smith    $ip[] = $INPUT->server->str('REMOTE_ADDR');
803585bf44eSChristopher Smith    if ($INPUT->server->str('HTTP_X_FORWARDED_FOR')) {
804585bf44eSChristopher Smith        $ip = array_merge($ip, explode(',', str_replace(' ', '', $INPUT->server->str('HTTP_X_FORWARDED_FOR'))));
805585bf44eSChristopher Smith    }
806585bf44eSChristopher Smith    if ($INPUT->server->str('HTTP_X_REAL_IP')) {
807585bf44eSChristopher Smith        $ip = array_merge($ip, explode(',', str_replace(' ', '', $INPUT->server->str('HTTP_X_REAL_IP'))));
808585bf44eSChristopher Smith    }
8096d8affe6SAndreas Gohr
8106d8affe6SAndreas Gohr    // remove any non-IP stuff
8116d8affe6SAndreas Gohr    $cnt   = count($ip);
8126d8affe6SAndreas Gohr    for ($i = 0; $i < $cnt; $i++) {
8130a5f08e5SAdaKaleh        if (filter_var($ip[$i], FILTER_VALIDATE_IP) === false) {
8140a5f08e5SAdaKaleh            unset($ip[$i]);
8154ff28443Schris        }
816f3f0262cSandi    }
8176d8affe6SAndreas Gohr    $ip = array_values(array_unique($ip));
81824870174SAndreas Gohr    if ($ip === [] || !$ip[0]) $ip[0] = '0.0.0.0'; // for some strange reason we don't have a IP
8196d8affe6SAndreas Gohr
82024870174SAndreas Gohr    if (!$single) return implode(',', $ip);
8216d8affe6SAndreas Gohr
822925105e8SPhy    // skip trusted local addresses
8236d8affe6SAndreas Gohr    foreach ($ip as $i) {
824925105e8SPhy        if (!empty($conf['trustedproxy']) && preg_match('/' . $conf['trustedproxy'] . '/', $i)) {
8256d8affe6SAndreas Gohr            continue;
8266d8affe6SAndreas Gohr        } else {
8276d8affe6SAndreas Gohr            return $i;
8286d8affe6SAndreas Gohr        }
8296d8affe6SAndreas Gohr    }
830925105e8SPhy
831925105e8SPhy    // still here? just use the last address
832925105e8SPhy    // this case all ips in the list are trusted
833925105e8SPhy    return $ip[count($ip) - 1];
834f3f0262cSandi}
835f3f0262cSandi
836f3f0262cSandi/**
8371c548ebeSAndreas Gohr * Check if the browser is on a mobile device
8381c548ebeSAndreas Gohr *
8391c548ebeSAndreas Gohr * Adapted from the example code at url below
8401c548ebeSAndreas Gohr *
8411c548ebeSAndreas Gohr * @link http://www.brainhandles.com/2007/10/15/detecting-mobile-browsers/#code
842140cfbcdSGerrit Uitslag *
84364159a61SAndreas Gohr * @deprecated 2018-04-27 you probably want media queries instead anyway
844140cfbcdSGerrit Uitslag * @return bool if true, client is mobile browser; otherwise false
8451c548ebeSAndreas Gohr */
846d868eb89SAndreas Gohrfunction clientismobile()
847d868eb89SAndreas Gohr{
848585bf44eSChristopher Smith    /* @var Input $INPUT */
849585bf44eSChristopher Smith    global $INPUT;
8501c548ebeSAndreas Gohr
851585bf44eSChristopher Smith    if ($INPUT->server->has('HTTP_X_WAP_PROFILE')) return true;
8521c548ebeSAndreas Gohr
853585bf44eSChristopher Smith    if (preg_match('/wap\.|\.wap/i', $INPUT->server->str('HTTP_ACCEPT'))) return true;
8541c548ebeSAndreas Gohr
855585bf44eSChristopher Smith    if (!$INPUT->server->has('HTTP_USER_AGENT')) return false;
8561c548ebeSAndreas Gohr
85724870174SAndreas Gohr    $uamatches = implode(
85864159a61SAndreas Gohr        '|',
85964159a61SAndreas Gohr        [
86064159a61SAndreas Gohr            'midp', 'j2me', 'avantg', 'docomo', 'novarra', 'palmos', 'palmsource', '240x320', 'opwv',
86164159a61SAndreas Gohr            'chtml', 'pda', 'windows ce', 'mmp\/', 'blackberry', 'mib\/', 'symbian', 'wireless', 'nokia',
86264159a61SAndreas Gohr            'hand', 'mobi', 'phone', 'cdm', 'up\.b', 'audio', 'SIE\-', 'SEC\-', 'samsung', 'HTC', 'mot\-',
86364159a61SAndreas Gohr            'mitsu', 'sagem', 'sony', 'alcatel', 'lg', 'erics', 'vx', 'NEC', 'philips', 'mmm', 'xx',
86464159a61SAndreas Gohr            'panasonic', 'sharp', 'wap', 'sch', 'rover', 'pocket', 'benq', 'java', 'pt', 'pg', 'vox',
86564159a61SAndreas Gohr            'amoi', 'bird', 'compal', 'kg', 'voda', 'sany', 'kdd', 'dbt', 'sendo', 'sgh', 'gradi', 'jb',
86664159a61SAndreas Gohr            '\d\d\di', 'moto'
86764159a61SAndreas Gohr        ]
86864159a61SAndreas Gohr    );
8691c548ebeSAndreas Gohr
870585bf44eSChristopher Smith    if (preg_match("/$uamatches/i", $INPUT->server->str('HTTP_USER_AGENT'))) return true;
8711c548ebeSAndreas Gohr
8721c548ebeSAndreas Gohr    return false;
8731c548ebeSAndreas Gohr}
8741c548ebeSAndreas Gohr
8751c548ebeSAndreas Gohr/**
8766efc45a2SDmitry Katsubo * check if a given link is interwiki link
8776efc45a2SDmitry Katsubo *
8786efc45a2SDmitry Katsubo * @param string $link the link, e.g. "wiki>page"
8796efc45a2SDmitry Katsubo * @return bool
8806efc45a2SDmitry Katsubo */
881d868eb89SAndreas Gohrfunction link_isinterwiki($link)
882d868eb89SAndreas Gohr{
8836efc45a2SDmitry Katsubo    if (preg_match('/^[a-zA-Z0-9\.]+>/u', $link)) return true;
8846efc45a2SDmitry Katsubo    return false;
8856efc45a2SDmitry Katsubo}
8866efc45a2SDmitry Katsubo
8876efc45a2SDmitry Katsubo/**
88863211f61SGlen Harris * Convert one or more comma separated IPs to hostnames
88963211f61SGlen Harris *
89022ef1e32SAndreas Gohr * If $conf['dnslookups'] is disabled it simply returns the input string
89122ef1e32SAndreas Gohr *
89263211f61SGlen Harris * @author Glen Harris <astfgl@iamnota.org>
893140cfbcdSGerrit Uitslag *
8943272d797SAndreas Gohr * @param  string $ips comma separated list of IP addresses
8953272d797SAndreas Gohr * @return string a comma separated list of hostnames
89663211f61SGlen Harris */
897d868eb89SAndreas Gohrfunction gethostsbyaddrs($ips)
898d868eb89SAndreas Gohr{
89922ef1e32SAndreas Gohr    global $conf;
90022ef1e32SAndreas Gohr    if (!$conf['dnslookups']) return $ips;
90122ef1e32SAndreas Gohr
90224870174SAndreas Gohr    $hosts = [];
90363211f61SGlen Harris    $ips   = explode(',', $ips);
904551a720fSMichael Klier
905551a720fSMichael Klier    if (is_array($ips)) {
9063886270dSAndreas Gohr        foreach ($ips as $ip) {
907551a720fSMichael Klier            $hosts[] = gethostbyaddr(trim($ip));
90863211f61SGlen Harris        }
90924870174SAndreas Gohr        return implode(',', $hosts);
910551a720fSMichael Klier    } else {
911551a720fSMichael Klier        return gethostbyaddr(trim($ips));
912551a720fSMichael Klier    }
91363211f61SGlen Harris}
91463211f61SGlen Harris
91563211f61SGlen Harris/**
91615fae107Sandi * Checks if a given page is currently locked.
91715fae107Sandi *
918f3f0262cSandi * removes stale lockfiles
91915fae107Sandi *
92015fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
921140cfbcdSGerrit Uitslag *
922140cfbcdSGerrit Uitslag * @param string $id page id
923140cfbcdSGerrit Uitslag * @return bool page is locked?
924f3f0262cSandi */
925d868eb89SAndreas Gohrfunction checklock($id)
926d868eb89SAndreas Gohr{
927f3f0262cSandi    global $conf;
928585bf44eSChristopher Smith    /* @var Input $INPUT */
929585bf44eSChristopher Smith    global $INPUT;
930585bf44eSChristopher Smith
931c9b4bd1eSBen Coburn    $lock = wikiLockFN($id);
932f3f0262cSandi
933f3f0262cSandi    //no lockfile
93479e79377SAndreas Gohr    if (!file_exists($lock)) return false;
935f3f0262cSandi
936f3f0262cSandi    //lockfile expired
937f3f0262cSandi    if ((time() - filemtime($lock)) > $conf['locktime']) {
938d8186216SBen Coburn        @unlink($lock);
939f3f0262cSandi        return false;
940f3f0262cSandi    }
941f3f0262cSandi
942f3f0262cSandi    //my own lock
94324870174SAndreas Gohr    @[$ip, $session] = explode("\n", io_readFile($lock));
94424870174SAndreas Gohr    if ($ip == $INPUT->server->str('REMOTE_USER') || (session_id() && $session === session_id())) {
945f3f0262cSandi        return false;
946f3f0262cSandi    }
947f3f0262cSandi
948f3f0262cSandi    return $ip;
949f3f0262cSandi}
950f3f0262cSandi
951f3f0262cSandi/**
95215fae107Sandi * Lock a page for editing
95315fae107Sandi *
95415fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
955140cfbcdSGerrit Uitslag *
956140cfbcdSGerrit Uitslag * @param string $id page id to lock
957f3f0262cSandi */
958d868eb89SAndreas Gohrfunction lock($id)
959d868eb89SAndreas Gohr{
960544ed901SDaniel Calviño Sánchez    global $conf;
961585bf44eSChristopher Smith    /* @var Input $INPUT */
962585bf44eSChristopher Smith    global $INPUT;
963544ed901SDaniel Calviño Sánchez
964544ed901SDaniel Calviño Sánchez    if ($conf['locktime'] == 0) {
965544ed901SDaniel Calviño Sánchez        return;
966544ed901SDaniel Calviño Sánchez    }
967544ed901SDaniel Calviño Sánchez
968c9b4bd1eSBen Coburn    $lock = wikiLockFN($id);
969585bf44eSChristopher Smith    if ($INPUT->server->str('REMOTE_USER')) {
970585bf44eSChristopher Smith        io_saveFile($lock, $INPUT->server->str('REMOTE_USER'));
971f3f0262cSandi    } else {
97285fef7e2SAndreas Gohr        io_saveFile($lock, clientIP() . "\n" . session_id());
973f3f0262cSandi    }
974f3f0262cSandi}
975f3f0262cSandi
976f3f0262cSandi/**
97715fae107Sandi * Unlock a page if it was locked by the user
978f3f0262cSandi *
97915fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
980140cfbcdSGerrit Uitslag *
9813272d797SAndreas Gohr * @param string $id page id to unlock
98215fae107Sandi * @return bool true if a lock was removed
983f3f0262cSandi */
984d868eb89SAndreas Gohrfunction unlock($id)
985d868eb89SAndreas Gohr{
986585bf44eSChristopher Smith    /* @var Input $INPUT */
987585bf44eSChristopher Smith    global $INPUT;
988585bf44eSChristopher Smith
989c9b4bd1eSBen Coburn    $lock = wikiLockFN($id);
99079e79377SAndreas Gohr    if (file_exists($lock)) {
99124870174SAndreas Gohr        @[$ip, $session] = explode("\n", io_readFile($lock));
992c0dd3914SAdaKaleh        if ($ip == $INPUT->server->str('REMOTE_USER') || $session == session_id()) {
993f3f0262cSandi            @unlink($lock);
994f3f0262cSandi            return true;
995f3f0262cSandi        }
996f3f0262cSandi    }
997f3f0262cSandi    return false;
998f3f0262cSandi}
999f3f0262cSandi
1000f3f0262cSandi/**
1001f3f0262cSandi * convert line ending to unix format
1002f3f0262cSandi *
10036db7468bSAndreas Gohr * also makes sure the given text is valid UTF-8
10046db7468bSAndreas Gohr *
100515fae107Sandi * @see    formText() for 2crlf conversion
100615fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
1007140cfbcdSGerrit Uitslag *
1008140cfbcdSGerrit Uitslag * @param string $text
1009140cfbcdSGerrit Uitslag * @return string
1010f3f0262cSandi */
1011d868eb89SAndreas Gohrfunction cleanText($text)
1012d868eb89SAndreas Gohr{
1013f3f0262cSandi    $text = preg_replace("/(\015\012)|(\015)/", "\012", $text);
10146db7468bSAndreas Gohr
10156db7468bSAndreas Gohr    // if the text is not valid UTF-8 we simply assume latin1
10166db7468bSAndreas Gohr    // this won't break any worse than it breaks with the wrong encoding
10176db7468bSAndreas Gohr    // but might actually fix the problem in many cases
101824870174SAndreas Gohr    if (!Clean::isUtf8($text)) $text = utf8_encode($text);
10196db7468bSAndreas Gohr
1020f3f0262cSandi    return $text;
1021f3f0262cSandi}
1022f3f0262cSandi
1023f3f0262cSandi/**
1024f3f0262cSandi * Prepares text for print in Webforms by encoding special chars.
1025f3f0262cSandi * It also converts line endings to Windows format which is
1026f3f0262cSandi * pseudo standard for webforms.
1027f3f0262cSandi *
102815fae107Sandi * @see    cleanText() for 2unix conversion
102915fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
1030140cfbcdSGerrit Uitslag *
1031140cfbcdSGerrit Uitslag * @param string $text
1032140cfbcdSGerrit Uitslag * @return string
1033f3f0262cSandi */
1034d868eb89SAndreas Gohrfunction formText($text)
1035d868eb89SAndreas Gohr{
1036a46a37efSAndreas Gohr    $text = str_replace("\012", "\015\012", $text ?? '');
1037f3f0262cSandi    return htmlspecialchars($text);
1038f3f0262cSandi}
1039f3f0262cSandi
1040f3f0262cSandi/**
104115fae107Sandi * Returns the specified local text in raw format
104215fae107Sandi *
104315fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
1044140cfbcdSGerrit Uitslag *
1045140cfbcdSGerrit Uitslag * @param string $id   page id
1046140cfbcdSGerrit Uitslag * @param string $ext  extension of file being read, default 'txt'
1047140cfbcdSGerrit Uitslag * @return string
1048f3f0262cSandi */
1049d868eb89SAndreas Gohrfunction rawLocale($id, $ext = 'txt')
1050d868eb89SAndreas Gohr{
10512adaf2b8SAndreas Gohr    return io_readFile(localeFN($id, $ext));
1052f3f0262cSandi}
1053f3f0262cSandi
1054f3f0262cSandi/**
1055f3f0262cSandi * Returns the raw WikiText
105615fae107Sandi *
105715fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
1058140cfbcdSGerrit Uitslag *
1059140cfbcdSGerrit Uitslag * @param string $id   page id
1060e0c26282SGerrit Uitslag * @param string|int $rev  timestamp when a revision of wikitext is desired
1061140cfbcdSGerrit Uitslag * @return string
1062f3f0262cSandi */
1063d868eb89SAndreas Gohrfunction rawWiki($id, $rev = '')
1064d868eb89SAndreas Gohr{
1065cc7d0c94SBen Coburn    return io_readWikiPage(wikiFN($id, $rev), $id, $rev);
1066f3f0262cSandi}
1067f3f0262cSandi
1068f3f0262cSandi/**
10697146cee2SAndreas Gohr * Returns the pagetemplate contents for the ID's namespace
10707146cee2SAndreas Gohr *
10717b84afa2SAndreas Gohr * @triggers COMMON_PAGETPL_LOAD
10727146cee2SAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
1073140cfbcdSGerrit Uitslag *
1074140cfbcdSGerrit Uitslag * @param string $id the id of the page to be created
1075140cfbcdSGerrit Uitslag * @return string parsed pagetemplate content
10767146cee2SAndreas Gohr */
1077d868eb89SAndreas Gohrfunction pageTemplate($id)
1078d868eb89SAndreas Gohr{
1079a15ce62dSEsther Brunner    global $conf;
1080e29549feSAndreas Gohr
1081fe17917eSAdrian Lang    if (is_array($id)) $id = $id[0];
1082e29549feSAndreas Gohr
10837b84afa2SAndreas Gohr    // prepare initial event data
108424870174SAndreas Gohr    $data = [
10857b84afa2SAndreas Gohr        'id'        => $id, // the id of the page to be created
10867b84afa2SAndreas Gohr        'tpl'       => '', // the text used as template
10877b84afa2SAndreas Gohr        'tplfile'   => '', // the file above text was/should be loaded from
108824870174SAndreas Gohr        'doreplace' => true,
108924870174SAndreas Gohr    ];
10907b84afa2SAndreas Gohr
1091e1d9dcc8SAndreas Gohr    $evt = new Event('COMMON_PAGETPL_LOAD', $data);
10927b84afa2SAndreas Gohr    if ($evt->advise_before(true)) {
10937b84afa2SAndreas Gohr        // the before event might have loaded the content already
10947b84afa2SAndreas Gohr        if (empty($data['tpl'])) {
10957b84afa2SAndreas Gohr            // if the before event did not set a template file, try to find one
10967b84afa2SAndreas Gohr            if (empty($data['tplfile'])) {
1097fe17917eSAdrian Lang                $path = dirname(wikiFN($id));
109879e79377SAndreas Gohr                if (file_exists($path . '/_template.txt')) {
10997b84afa2SAndreas Gohr                    $data['tplfile'] = $path . '/_template.txt';
1100e29549feSAndreas Gohr                } else {
1101e29549feSAndreas Gohr                    // search upper namespaces for templates
1102e29549feSAndreas Gohr                    $len = strlen(rtrim($conf['datadir'], '/'));
1103e29549feSAndreas Gohr                    while (strlen($path) >= $len) {
110479e79377SAndreas Gohr                        if (file_exists($path . '/__template.txt')) {
11057b84afa2SAndreas Gohr                            $data['tplfile'] = $path . '/__template.txt';
1106e29549feSAndreas Gohr                            break;
1107e29549feSAndreas Gohr                        }
1108e29549feSAndreas Gohr                        $path = substr($path, 0, strrpos($path, '/'));
1109e29549feSAndreas Gohr                    }
1110e29549feSAndreas Gohr                }
11117b84afa2SAndreas Gohr            }
11127b84afa2SAndreas Gohr            // load the content
11133d7ac595SMichael Hamann            $data['tpl'] = io_readFile($data['tplfile']);
11147b84afa2SAndreas Gohr        }
1115a1bbd05bSMichael Hamann        if ($data['doreplace']) parsePageTemplate($data);
11167b84afa2SAndreas Gohr    }
11177b84afa2SAndreas Gohr    $evt->advise_after();
11187b84afa2SAndreas Gohr    unset($evt);
11197b84afa2SAndreas Gohr
1120fe17917eSAdrian Lang    return $data['tpl'];
11212b1223ecSAdrian Lang}
11222b1223ecSAdrian Lang
11232b1223ecSAdrian Lang/**
11242b1223ecSAdrian Lang * Performs common page template replacements
11257b84afa2SAndreas Gohr * This works on data from COMMON_PAGETPL_LOAD
11262b1223ecSAdrian Lang *
11272b1223ecSAdrian Lang * @author Andreas Gohr <andi@splitbrain.org>
1128140cfbcdSGerrit Uitslag *
1129140cfbcdSGerrit Uitslag * @param array $data array with event data
1130140cfbcdSGerrit Uitslag * @return string
11312b1223ecSAdrian Lang */
1132d868eb89SAndreas Gohrfunction parsePageTemplate(&$data)
1133d868eb89SAndreas Gohr{
11343272d797SAndreas Gohr    /**
11353272d797SAndreas Gohr     * @var string $id        the id of the page to be created
11363272d797SAndreas Gohr     * @var string $tpl       the text used as template
11373272d797SAndreas Gohr     * @var string $tplfile   the file above text was/should be loaded from
11383272d797SAndreas Gohr     * @var bool   $doreplace should wildcard replacements be done on the text?
11393272d797SAndreas Gohr     */
1140fe17917eSAdrian Lang    extract($data);
1141fe17917eSAdrian Lang
1142b856f7dfSAdrian Lang    global $USERINFO;
1143bce53b1fSAdrian Lang    global $conf;
1144585bf44eSChristopher Smith    /* @var Input $INPUT */
1145585bf44eSChristopher Smith    global $INPUT;
1146e29549feSAndreas Gohr
1147e29549feSAndreas Gohr    // replace placeholders
114826ece5a7SAndreas Gohr    $file = noNS($id);
114937c1acbdSAdrian Lang    $page = strtr($file, $conf['sepchar'], ' ');
115026ece5a7SAndreas Gohr
11513272d797SAndreas Gohr    $tpl = str_replace(
115224870174SAndreas Gohr        [
115326ece5a7SAndreas Gohr            '@ID@',
115426ece5a7SAndreas Gohr            '@NS@',
11558a7bcf66SShota Miyazaki            '@CURNS@',
1156a3db0ab0SSimon Lees            '@!CURNS@',
1157a3db0ab0SSimon Lees            '@!!CURNS@',
1158a3db0ab0SSimon Lees            '@!CURNS!@',
115926ece5a7SAndreas Gohr            '@FILE@',
116026ece5a7SAndreas Gohr            '@!FILE@',
116126ece5a7SAndreas Gohr            '@!FILE!@',
116226ece5a7SAndreas Gohr            '@PAGE@',
116326ece5a7SAndreas Gohr            '@!PAGE@',
116426ece5a7SAndreas Gohr            '@!!PAGE@',
116526ece5a7SAndreas Gohr            '@!PAGE!@',
116626ece5a7SAndreas Gohr            '@USER@',
116726ece5a7SAndreas Gohr            '@NAME@',
116826ece5a7SAndreas Gohr            '@MAIL@',
116924870174SAndreas Gohr            '@DATE@'
117024870174SAndreas Gohr        ],
117124870174SAndreas Gohr        [
117226ece5a7SAndreas Gohr            $id,
117326ece5a7SAndreas Gohr            getNS($id),
11748a7bcf66SShota Miyazaki            curNS($id),
117524870174SAndreas Gohr            PhpString::ucfirst(curNS($id)),
117624870174SAndreas Gohr            PhpString::ucwords(curNS($id)),
117724870174SAndreas Gohr            PhpString::strtoupper(curNS($id)),
117826ece5a7SAndreas Gohr            $file,
117924870174SAndreas Gohr            PhpString::ucfirst($file),
118024870174SAndreas Gohr            PhpString::strtoupper($file),
118126ece5a7SAndreas Gohr            $page,
118224870174SAndreas Gohr            PhpString::ucfirst($page),
118324870174SAndreas Gohr            PhpString::ucwords($page),
118424870174SAndreas Gohr            PhpString::strtoupper($page),
1185585bf44eSChristopher Smith            $INPUT->server->str('REMOTE_USER'),
11863e9ae63dSPhy            $USERINFO ? $USERINFO['name'] : '',
11873e9ae63dSPhy            $USERINFO ? $USERINFO['mail'] : '',
118824870174SAndreas Gohr            $conf['dformat']
118924870174SAndreas Gohr        ],
119024870174SAndreas Gohr        $tpl
11913272d797SAndreas Gohr    );
119226ece5a7SAndreas Gohr
11937d644fc8SAndreas Gohr    // we need the callback to work around strftime's char limit
1194bad6fc0dSAndreas Gohr    $tpl = preg_replace_callback(
1195bad6fc0dSAndreas Gohr        '/%./',
119624870174SAndreas Gohr        static fn($m) => dformat(null, $m[0]),
1197bad6fc0dSAndreas Gohr        $tpl
1198bad6fc0dSAndreas Gohr    );
1199d535a2e9Sstretchyboy    $data['tpl'] = $tpl;
1200a15ce62dSEsther Brunner    return $tpl;
12017146cee2SAndreas Gohr}
12027146cee2SAndreas Gohr
12037146cee2SAndreas Gohr/**
120415fae107Sandi * Returns the raw Wiki Text in three slices.
120515fae107Sandi *
120615fae107Sandi * The range parameter needs to have the form "from-to"
120715cfe303Sandi * and gives the range of the section in bytes - no
120815cfe303Sandi * UTF-8 awareness is needed.
1209f3f0262cSandi * The returned order is prefix, section and suffix.
121015fae107Sandi *
121115fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
1212140cfbcdSGerrit Uitslag *
1213140cfbcdSGerrit Uitslag * @param string $range in form "from-to"
1214140cfbcdSGerrit Uitslag * @param string $id    page id
1215140cfbcdSGerrit Uitslag * @param string $rev   optional, the revision timestamp
121642ea7f44SGerrit Uitslag * @return string[] with three slices
1217f3f0262cSandi */
1218d868eb89SAndreas Gohrfunction rawWikiSlices($range, $id, $rev = '')
1219d868eb89SAndreas Gohr{
1220cc7d0c94SBen Coburn    $text = io_readWikiPage(wikiFN($id, $rev), $id, $rev);
1221f3f0262cSandi
122280fcb268SAdrian Lang    // Parse range
122324870174SAndreas Gohr    [$from, $to] = sexplode('-', $range, 2);
122480fcb268SAdrian Lang    // Make range zero-based, use defaults if marker is missing
122524870174SAndreas Gohr    $from = $from ? $from - 1 : (0);
122624870174SAndreas Gohr    $to   = $to ? $to - 1 : (strlen($text));
122780fcb268SAdrian Lang
122824870174SAndreas Gohr    $slices = [];
122980fcb268SAdrian Lang    $slices[0] = substr($text, 0, $from);
123080fcb268SAdrian Lang    $slices[1] = substr($text, $from, $to - $from);
123115cfe303Sandi    $slices[2] = substr($text, $to);
1232f3f0262cSandi    return $slices;
1233f3f0262cSandi}
1234f3f0262cSandi
1235f3f0262cSandi/**
123615fae107Sandi * Joins wiki text slices
123715fae107Sandi *
123880fcb268SAdrian Lang * function to join the text slices.
1239f3f0262cSandi * When the pretty parameter is set to true it adds additional empty
1240f3f0262cSandi * lines between sections if needed (used on saving).
124115fae107Sandi *
124215fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
1243140cfbcdSGerrit Uitslag *
1244140cfbcdSGerrit Uitslag * @param string $pre   prefix
1245140cfbcdSGerrit Uitslag * @param string $text  text in the middle
1246140cfbcdSGerrit Uitslag * @param string $suf   suffix
1247140cfbcdSGerrit Uitslag * @param bool $pretty add additional empty lines between sections
1248140cfbcdSGerrit Uitslag * @return string
1249f3f0262cSandi */
1250d868eb89SAndreas Gohrfunction con($pre, $text, $suf, $pretty = false)
1251d868eb89SAndreas Gohr{
1252f3f0262cSandi    if ($pretty) {
12537d34963bSAndreas Gohr        if (
12547d34963bSAndreas Gohr            $pre !== '' && substr($pre, -1) !== "\n" &&
12553272d797SAndreas Gohr            substr($text, 0, 1) !== "\n"
12563272d797SAndreas Gohr        ) {
125780fcb268SAdrian Lang            $pre .= "\n";
125880fcb268SAdrian Lang        }
12597d34963bSAndreas Gohr        if (
12607d34963bSAndreas Gohr            $suf !== '' && substr($text, -1) !== "\n" &&
12613272d797SAndreas Gohr            substr($suf, 0, 1) !== "\n"
12623272d797SAndreas Gohr        ) {
126380fcb268SAdrian Lang            $text .= "\n";
126480fcb268SAdrian Lang        }
1265f3f0262cSandi    }
1266f3f0262cSandi
1267f3f0262cSandi    return $pre . $text . $suf;
1268f3f0262cSandi}
1269f3f0262cSandi
1270f3f0262cSandi/**
1271b24d9195SAndreas Gohr * Checks if the current page version is newer than the last entry in the page's
1272b24d9195SAndreas Gohr * changelog. If so, we assume it has been an external edit and we create an
1273b24d9195SAndreas Gohr * attic copy and add a proper changelog line.
1274b24d9195SAndreas Gohr *
1275b24d9195SAndreas Gohr * This check is only executed when the page is about to be saved again from the
1276b24d9195SAndreas Gohr * wiki, triggered in @see saveWikiText()
1277b24d9195SAndreas Gohr *
1278b24d9195SAndreas Gohr * @param string $id the page ID
127969f9b481SSatoshi Sahara * @deprecated 2021-11-28
1280b24d9195SAndreas Gohr */
1281d868eb89SAndreas Gohrfunction detectExternalEdit($id)
1282d868eb89SAndreas Gohr{
128379a2d784SGerrit Uitslag    dbg_deprecated(PageFile::class . '::detectExternalEdit()');
1284b24e9c4aSSatoshi Sahara    (new PageFile($id))->detectExternalEdit();
1285b24d9195SAndreas Gohr}
1286b24d9195SAndreas Gohr
1287b24d9195SAndreas Gohr/**
1288a701424fSBen Coburn * Saves a wikitext by calling io_writeWikiPage.
1289a701424fSBen Coburn * Also directs changelog and attic updates.
129015fae107Sandi *
129115fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
129271726d78SBen Coburn * @author Ben Coburn <btcoburn@silicodon.net>
1293140cfbcdSGerrit Uitslag *
1294140cfbcdSGerrit Uitslag * @param string $id       page id
1295140cfbcdSGerrit Uitslag * @param string $text     wikitext being saved
1296140cfbcdSGerrit Uitslag * @param string $summary  summary of text update
1297140cfbcdSGerrit Uitslag * @param bool   $minor    mark this saved version as minor update
1298f3f0262cSandi */
1299d868eb89SAndreas Gohrfunction saveWikiText($id, $text, $summary, $minor = false)
1300d868eb89SAndreas Gohr{
1301585bf44eSChristopher Smith
1302b24e9c4aSSatoshi Sahara    // get COMMON_WIKIPAGE_SAVE event data
1303b24e9c4aSSatoshi Sahara    $data = (new PageFile($id))->saveWikiText($text, $summary, $minor);
1304a577fbc2SAndreas Gohr    if (!$data) return; // save was cancelled (for no changes or by a plugin)
1305ac3ed4afSGerrit Uitslag
130626a0801fSAndreas Gohr    // send notify mails
130724870174SAndreas Gohr    ['oldRevision' => $rev, 'newRevision' => $new_rev, 'summary' => $summary] = $data;
13083b813d43SSatoshi Sahara    notify($id, 'admin', $rev, $summary, $minor, $new_rev);
13093b813d43SSatoshi Sahara    notify($id, 'subscribers', $rev, $summary, $minor, $new_rev);
1310f3f0262cSandi
13112eccbdaaSGina Haeussge    // if useheading is enabled, purge the cache of all linking pages
1312fe9ec250SChris Smith    if (useHeading('content')) {
131307ff0babSMichael Hamann        $pages = ft_backlinks($id, true);
13142eccbdaaSGina Haeussge        foreach ($pages as $page) {
13150db5771eSMichael Große            $cache = new CacheRenderer($page, wikiFN($page), 'xhtml');
13162eccbdaaSGina Haeussge            $cache->removeCache();
13172eccbdaaSGina Haeussge        }
13182eccbdaaSGina Haeussge    }
1319f3f0262cSandi}
1320f3f0262cSandi
1321f3f0262cSandi/**
1322d5824ab9SSatoshi Sahara * moves the current version to the attic and returns its revision date
132315fae107Sandi *
132415fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
1325140cfbcdSGerrit Uitslag *
1326140cfbcdSGerrit Uitslag * @param string $id page id
1327140cfbcdSGerrit Uitslag * @return int|string revision timestamp
132869f9b481SSatoshi Sahara * @deprecated 2021-11-28
1329f3f0262cSandi */
1330d868eb89SAndreas Gohrfunction saveOldRevision($id)
1331d868eb89SAndreas Gohr{
133279a2d784SGerrit Uitslag    dbg_deprecated(PageFile::class . '::saveOldRevision()');
1333b24e9c4aSSatoshi Sahara    return (new PageFile($id))->saveOldRevision();
1334f3f0262cSandi}
1335f3f0262cSandi
1336f3f0262cSandi/**
1337fde10de4SAdrian Lang * Sends a notify mail on page change or registration
133826a0801fSAndreas Gohr *
133926a0801fSAndreas Gohr * @param string     $id       The changed page
1340fde10de4SAdrian Lang * @param string     $who      Who to notify (admin|subscribers|register)
13413272d797SAndreas Gohr * @param int|string $rev      Old page revision
134226a0801fSAndreas Gohr * @param string     $summary  What changed
134390033e9dSAndreas Gohr * @param boolean    $minor    Is this a minor edit?
134442ea7f44SGerrit Uitslag * @param string[]   $replace  Additional string substitutions, @KEY@ to be replaced by value
134583734cddSPhy * @param int|string $current_rev  New page revision
13463272d797SAndreas Gohr * @return bool
1347140cfbcdSGerrit Uitslag *
134815fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
1349f3f0262cSandi */
1350d868eb89SAndreas Gohrfunction notify($id, $who, $rev = '', $summary = '', $minor = false, $replace = [], $current_rev = false)
1351d868eb89SAndreas Gohr{
1352f3f0262cSandi    global $conf;
1353585bf44eSChristopher Smith    /* @var Input $INPUT */
1354585bf44eSChristopher Smith    global $INPUT;
1355b158d625SSteven Danz
13566df843eeSAndreas Gohr    // decide if there is something to do, eg. whom to mail
135726a0801fSAndreas Gohr    if ($who == 'admin') {
13583272d797SAndreas Gohr        if (empty($conf['notify'])) return false; //notify enabled?
13592ed38036SAndreas Gohr        $tpl = 'mailtext';
136026a0801fSAndreas Gohr        $to  = $conf['notify'];
136126a0801fSAndreas Gohr    } elseif ($who == 'subscribers') {
136284c1127cSAndreas Gohr        if (!actionOK('subscribe')) return false; //subscribers enabled?
1363585bf44eSChristopher Smith        if ($conf['useacl'] && $INPUT->server->str('REMOTE_USER') && $minor) return false; //skip minors
136424870174SAndreas Gohr        $data = ['id' => $id, 'addresslist' => '', 'self' => false, 'replacements' => $replace];
1365cbb44eabSAndreas Gohr        Event::createAndTrigger(
1366dccd6b2bSAndreas Gohr            'COMMON_NOTIFY_ADDRESSLIST',
1367dccd6b2bSAndreas Gohr            $data,
136824870174SAndreas Gohr            [new SubscriberManager(), 'notifyAddresses']
13693272d797SAndreas Gohr        );
13702ed38036SAndreas Gohr        $to = $data['addresslist'];
13712ed38036SAndreas Gohr        if (empty($to)) return false;
13722ed38036SAndreas Gohr        $tpl = 'subscr_single';
137326a0801fSAndreas Gohr    } else {
13743272d797SAndreas Gohr        return false; //just to be safe
137526a0801fSAndreas Gohr    }
137626a0801fSAndreas Gohr
13776df843eeSAndreas Gohr    // prepare content
1378704a815fSMichael Große    $subscription = new PageSubscriptionSender();
137983734cddSPhy    return $subscription->sendPageDiff($to, $tpl, $id, $rev, $summary, $current_rev);
1380f3f0262cSandi}
13812ed38036SAndreas Gohr
138215fae107Sandi/**
138371f7bde7SAndreas Gohr * extracts the query from a search engine referrer
138415fae107Sandi *
138515fae107Sandi * @author Andreas Gohr <andi@splitbrain.org>
138671f7bde7SAndreas Gohr * @author Todd Augsburger <todd@rollerorgans.com>
1387140cfbcdSGerrit Uitslag *
1388140cfbcdSGerrit Uitslag * @return array|string
1389f3f0262cSandi */
1390d868eb89SAndreas Gohrfunction getGoogleQuery()
1391d868eb89SAndreas Gohr{
1392585bf44eSChristopher Smith    /* @var Input $INPUT */
1393585bf44eSChristopher Smith    global $INPUT;
1394585bf44eSChristopher Smith
1395585bf44eSChristopher Smith    if (!$INPUT->server->has('HTTP_REFERER')) {
1396c66972f2SAdrian Lang        return '';
1397c66972f2SAdrian Lang    }
1398585bf44eSChristopher Smith    $url = parse_url($INPUT->server->str('HTTP_REFERER'));
1399f3f0262cSandi
1400079b3ac1SAndreas Gohr    // only handle common SEs
1401c7875401SJyoti S    if (!array_key_exists('host', $url)) return '';
1402079b3ac1SAndreas Gohr    if (!preg_match('/(google|bing|yahoo|ask|duckduckgo|babylon|aol|yandex)/', $url['host'])) return '';
1403e4d8a516SKazutaka Miyasaka
140424870174SAndreas Gohr    $query = [];
1405181adffeSJulian Jeggle    if (!array_key_exists('query', $url)) return '';
1406f3f0262cSandi    parse_str($url['query'], $query);
1407e4d8a516SKazutaka Miyasaka
1408c66972f2SAdrian Lang    $q = '';
1409079b3ac1SAndreas Gohr    if (isset($query['q'])) {
1410079b3ac1SAndreas Gohr        $q = $query['q'];
1411079b3ac1SAndreas Gohr    } elseif (isset($query['p'])) {
1412079b3ac1SAndreas Gohr        $q = $query['p'];
1413079b3ac1SAndreas Gohr    } elseif (isset($query['query'])) {
1414079b3ac1SAndreas Gohr        $q = $query['query'];
1415079b3ac1SAndreas Gohr    }
1416079b3ac1SAndreas Gohr    $q = trim($q);
1417f3f0262cSandi
1418079b3ac1SAndreas Gohr    if (!$q) return '';
1419c7dc833bSPhy    // ignore if query includes a full URL
1420c7dc833bSPhy    if (strpos($q, '//') !== false) return '';
14216531ab03SAndreas Gohr    $q = preg_split('/[\s\'"\\\\`()\]\[?:!\.{};,#+*<>\\/]+/', $q, -1, PREG_SPLIT_NO_EMPTY);
1422f93b3b50SAndreas Gohr    return $q;
1423f3f0262cSandi}
1424f3f0262cSandi
1425f3f0262cSandi/**
1426f3f0262cSandi * Return the human readable size of a file
1427f3f0262cSandi *
1428f3f0262cSandi * @param int $size A file size
1429f3f0262cSandi * @param int $dec A number of decimal places
143074160ca1SGerrit Uitslag * @return string human readable size
1431140cfbcdSGerrit Uitslag *
1432f3f0262cSandi * @author      Martin Benjamin <b.martin@cybernet.ch>
1433f3f0262cSandi * @author      Aidan Lister <aidan@php.net>
1434f3f0262cSandi * @version     1.0.0
1435f3f0262cSandi */
1436d868eb89SAndreas Gohrfunction filesize_h($size, $dec = 1)
1437d868eb89SAndreas Gohr{
143824870174SAndreas Gohr    $sizes = ['B', 'KB', 'MB', 'GB'];
1439f3f0262cSandi    $count = count($sizes);
1440f3f0262cSandi    $i     = 0;
1441f3f0262cSandi
1442f3f0262cSandi    while ($size >= 1024 && ($i < $count - 1)) {
1443f3f0262cSandi        $size /= 1024;
1444f3f0262cSandi        $i++;
1445f3f0262cSandi    }
1446f3f0262cSandi
1447ef08383eSAndreas Gohr    return round($size, $dec) . "\xC2\xA0" . $sizes[$i]; //non-breaking space
1448f3f0262cSandi}
1449f3f0262cSandi
145015fae107Sandi/**
1451c57e365eSAndreas Gohr * Return the given timestamp as human readable, fuzzy age
1452c57e365eSAndreas Gohr *
1453c57e365eSAndreas Gohr * @author Andreas Gohr <gohr@cosmocode.de>
1454140cfbcdSGerrit Uitslag *
1455140cfbcdSGerrit Uitslag * @param int $dt timestamp
1456140cfbcdSGerrit Uitslag * @return string
1457c57e365eSAndreas Gohr */
1458d868eb89SAndreas Gohrfunction datetime_h($dt)
1459d868eb89SAndreas Gohr{
1460c57e365eSAndreas Gohr    global $lang;
1461c57e365eSAndreas Gohr
1462c57e365eSAndreas Gohr    $ago = time() - $dt;
1463c57e365eSAndreas Gohr    if ($ago > 24 * 60 * 60 * 30 * 12 * 2) {
1464c57e365eSAndreas Gohr        return sprintf($lang['years'], round($ago / (24 * 60 * 60 * 30 * 12)));
1465c57e365eSAndreas Gohr    }
1466c57e365eSAndreas Gohr    if ($ago > 24 * 60 * 60 * 30 * 2) {
1467c57e365eSAndreas Gohr        return sprintf($lang['months'], round($ago / (24 * 60 * 60 * 30)));
1468c57e365eSAndreas Gohr    }
1469c57e365eSAndreas Gohr    if ($ago > 24 * 60 * 60 * 7 * 2) {
1470c57e365eSAndreas Gohr        return sprintf($lang['weeks'], round($ago / (24 * 60 * 60 * 7)));
1471c57e365eSAndreas Gohr    }
1472c57e365eSAndreas Gohr    if ($ago > 24 * 60 * 60 * 2) {
1473c57e365eSAndreas Gohr        return sprintf($lang['days'], round($ago / (24 * 60 * 60)));
1474c57e365eSAndreas Gohr    }
1475c57e365eSAndreas Gohr    if ($ago > 60 * 60 * 2) {
1476c57e365eSAndreas Gohr        return sprintf($lang['hours'], round($ago / (60 * 60)));
1477c57e365eSAndreas Gohr    }
1478c57e365eSAndreas Gohr    if ($ago > 60 * 2) {
1479c57e365eSAndreas Gohr        return sprintf($lang['minutes'], round($ago / (60)));
1480c57e365eSAndreas Gohr    }
1481c57e365eSAndreas Gohr    return sprintf($lang['seconds'], $ago);
1482c57e365eSAndreas Gohr}
1483c57e365eSAndreas Gohr
1484c57e365eSAndreas Gohr/**
1485f2263577SAndreas Gohr * Wraps around strftime but provides support for fuzzy dates
1486f2263577SAndreas Gohr *
1487f2263577SAndreas Gohr * The format default to $conf['dformat']. It is passed to
1488f2263577SAndreas Gohr * strftime - %f can be used to get the value from datetime_h()
1489f2263577SAndreas Gohr *
1490f2263577SAndreas Gohr * @see datetime_h
1491f2263577SAndreas Gohr * @author Andreas Gohr <gohr@cosmocode.de>
1492140cfbcdSGerrit Uitslag *
1493140cfbcdSGerrit Uitslag * @param int|null $dt      timestamp when given, null will take current timestamp
1494140cfbcdSGerrit Uitslag * @param string   $format  empty default to $conf['dformat'], or provide format as recognized by strftime()
1495140cfbcdSGerrit Uitslag * @return string
1496f2263577SAndreas Gohr */
1497d868eb89SAndreas Gohrfunction dformat($dt = null, $format = '')
1498d868eb89SAndreas Gohr{
1499f2263577SAndreas Gohr    global $conf;
1500f2263577SAndreas Gohr
1501f2263577SAndreas Gohr    if (is_null($dt)) $dt = time();
1502f2263577SAndreas Gohr    $dt = (int) $dt;
1503f2263577SAndreas Gohr    if (!$format) $format = $conf['dformat'];
1504f2263577SAndreas Gohr
1505f2263577SAndreas Gohr    $format = str_replace('%f', datetime_h($dt), $format);
1506f2263577SAndreas Gohr    return strftime($format, $dt);
1507f2263577SAndreas Gohr}
1508f2263577SAndreas Gohr
1509f2263577SAndreas Gohr/**
1510c4f79b71SMichael Hamann * Formats a timestamp as ISO 8601 date
1511c4f79b71SMichael Hamann *
1512c4f79b71SMichael Hamann * @author <ungu at terong dot com>
151359752844SAnders Sandblad * @link http://php.net/manual/en/function.date.php#54072
1514140cfbcdSGerrit Uitslag *
15157e8500eeSGerrit Uitslag * @param int $int_date current date in UNIX timestamp
15163272d797SAndreas Gohr * @return string
1517c4f79b71SMichael Hamann */
1518d868eb89SAndreas Gohrfunction date_iso8601($int_date)
1519d868eb89SAndreas Gohr{
1520c4f79b71SMichael Hamann    $date_mod     = date('Y-m-d\TH:i:s', $int_date);
1521c4f79b71SMichael Hamann    $pre_timezone = date('O', $int_date);
1522c4f79b71SMichael Hamann    $time_zone    = substr($pre_timezone, 0, 3) . ":" . substr($pre_timezone, 3, 2);
1523c4f79b71SMichael Hamann    $date_mod .= $time_zone;
1524c4f79b71SMichael Hamann    return $date_mod;
1525c4f79b71SMichael Hamann}
1526c4f79b71SMichael Hamann
1527c4f79b71SMichael Hamann/**
152800a7b5adSEsther Brunner * return an obfuscated email address in line with $conf['mailguard'] setting
152900a7b5adSEsther Brunner *
153000a7b5adSEsther Brunner * @author Harry Fuecks <hfuecks@gmail.com>
153100a7b5adSEsther Brunner * @author Christopher Smith <chris@jalakai.co.uk>
1532140cfbcdSGerrit Uitslag *
1533140cfbcdSGerrit Uitslag * @param string $email email address
1534140cfbcdSGerrit Uitslag * @return string
153500a7b5adSEsther Brunner */
1536d868eb89SAndreas Gohrfunction obfuscate($email)
1537d868eb89SAndreas Gohr{
153800a7b5adSEsther Brunner    global $conf;
153900a7b5adSEsther Brunner
154000a7b5adSEsther Brunner    switch ($conf['mailguard']) {
154100a7b5adSEsther Brunner        case 'visible':
154224870174SAndreas Gohr            $obfuscate = ['@' => ' [at] ', '.' => ' [dot] ', '-' => ' [dash] '];
154300a7b5adSEsther Brunner            return strtr($email, $obfuscate);
154400a7b5adSEsther Brunner
154500a7b5adSEsther Brunner        case 'hex':
154624870174SAndreas Gohr            return Conversion::toHtml($email, true);
154700a7b5adSEsther Brunner
154800a7b5adSEsther Brunner        case 'none':
154900a7b5adSEsther Brunner        default:
155000a7b5adSEsther Brunner            return $email;
155100a7b5adSEsther Brunner    }
155200a7b5adSEsther Brunner}
155300a7b5adSEsther Brunner
155400a7b5adSEsther Brunner/**
155589541d4bSAndreas Gohr * Removes quoting backslashes
155689541d4bSAndreas Gohr *
155789541d4bSAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
1558140cfbcdSGerrit Uitslag *
1559140cfbcdSGerrit Uitslag * @param string $string
1560140cfbcdSGerrit Uitslag * @param string $char backslashed character
1561140cfbcdSGerrit Uitslag * @return string
156289541d4bSAndreas Gohr */
1563d868eb89SAndreas Gohrfunction unslash($string, $char = "'")
1564d868eb89SAndreas Gohr{
156589541d4bSAndreas Gohr    return str_replace('\\' . $char, $char, $string);
156689541d4bSAndreas Gohr}
156789541d4bSAndreas Gohr
156873038c47SAndreas Gohr/**
156973038c47SAndreas Gohr * Convert php.ini shorthands to byte
157073038c47SAndreas Gohr *
1571a81f3d99SAndreas Gohr * On 32 bit systems values >= 2GB will fail!
1572140cfbcdSGerrit Uitslag *
1573a81f3d99SAndreas Gohr * -1 (infinite size) will be reported as -1
1574a81f3d99SAndreas Gohr *
1575a81f3d99SAndreas Gohr * @link   https://www.php.net/manual/en/faq.using.php#faq.using.shorthandbytes
1576a81f3d99SAndreas Gohr * @param string $value PHP size shorthand
1577a81f3d99SAndreas Gohr * @return int
157873038c47SAndreas Gohr */
1579d868eb89SAndreas Gohrfunction php_to_byte($value)
1580d868eb89SAndreas Gohr{
1581f5c0c80bSAndreas Gohr    switch (strtoupper(substr($value, -1))) {
158273038c47SAndreas Gohr        case 'G':
158324870174SAndreas Gohr            $ret = (int) substr($value, 0, -1) * 1024 * 1024 * 1024;
158473038c47SAndreas Gohr            break;
158573038c47SAndreas Gohr        case 'M':
158624870174SAndreas Gohr            $ret = (int) substr($value, 0, -1) * 1024 * 1024;
1587a81f3d99SAndreas Gohr            break;
158873038c47SAndreas Gohr        case 'K':
158924870174SAndreas Gohr            $ret = (int) substr($value, 0, -1) * 1024;
159073038c47SAndreas Gohr            break;
15919eeeb775SAndreas Gohr        default:
159224870174SAndreas Gohr            $ret = (int) $value;
159349cbd23eSOtto Vainio            break;
159473038c47SAndreas Gohr    }
159573038c47SAndreas Gohr    return $ret;
159673038c47SAndreas Gohr}
159773038c47SAndreas Gohr
1598546d3a99SAndreas Gohr/**
1599546d3a99SAndreas Gohr * Wrapper around preg_quote adding the default delimiter
1600140cfbcdSGerrit Uitslag *
1601140cfbcdSGerrit Uitslag * @param string $string
1602140cfbcdSGerrit Uitslag * @return string
1603546d3a99SAndreas Gohr */
1604d868eb89SAndreas Gohrfunction preg_quote_cb($string)
1605d868eb89SAndreas Gohr{
1606546d3a99SAndreas Gohr    return preg_quote($string, '/');
1607546d3a99SAndreas Gohr}
160873038c47SAndreas Gohr
1609bd2f6c2fSAndreas Gohr/**
1610bd2f6c2fSAndreas Gohr * Shorten a given string by removing data from the middle
1611bd2f6c2fSAndreas Gohr *
1612c66972f2SAdrian Lang * You can give the string in two parts, the first part $keep
1613bd2f6c2fSAndreas Gohr * will never be shortened. The second part $short will be cut
1614bd2f6c2fSAndreas Gohr * in the middle to shorten but only if at least $min chars are
1615bd2f6c2fSAndreas Gohr * left to display it. Otherwise it will be left off.
1616bd2f6c2fSAndreas Gohr *
1617bd2f6c2fSAndreas Gohr * @param string $keep   the part to keep
1618bd2f6c2fSAndreas Gohr * @param string $short  the part to shorten
1619bd2f6c2fSAndreas Gohr * @param int    $max    maximum chars you want for the whole string
1620bd2f6c2fSAndreas Gohr * @param int    $min    minimum number of chars to have left for middle shortening
1621bd2f6c2fSAndreas Gohr * @param string $char   the shortening character to use
16223272d797SAndreas Gohr * @return string
1623bd2f6c2fSAndreas Gohr */
1624d868eb89SAndreas Gohrfunction shorten($keep, $short, $max, $min = 9, $char = '…')
1625d868eb89SAndreas Gohr{
162624870174SAndreas Gohr    $max -= PhpString::strlen($keep);
1627bd2f6c2fSAndreas Gohr    if ($max < $min) return $keep;
162824870174SAndreas Gohr    $len = PhpString::strlen($short);
1629bd2f6c2fSAndreas Gohr    if ($len <= $max) return $keep . $short;
1630bd2f6c2fSAndreas Gohr    $half = floor($max / 2);
16316ce3e5f8SAndreas Gohr    return $keep .
163224870174SAndreas Gohr        PhpString::substr($short, 0, $half - 1) .
16336ce3e5f8SAndreas Gohr        $char .
163424870174SAndreas Gohr        PhpString::substr($short, $len - $half);
1635bd2f6c2fSAndreas Gohr}
1636bd2f6c2fSAndreas Gohr
1637dc58b6f4SAndy Webber/**
1638dc58b6f4SAndy Webber * Return the users real name or e-mail address for use
1639dc58b6f4SAndy Webber * in page footer and recent changes pages
1640dc58b6f4SAndy Webber *
1641b4b6c9a1SGerrit Uitslag * @param string|null $username or null when currently logged-in user should be used
164215f3bc49SGerrit Uitslag * @param bool $textonly true returns only plain text, true allows returning html
1643c0953023SGerrit Uitslag * @return string html or plain text(not escaped) of formatted user name
164415f3bc49SGerrit Uitslag *
1645dc58b6f4SAndy Webber * @author Andy Webber <dokuwiki AT andywebber DOT com>
1646dc58b6f4SAndy Webber */
1647d868eb89SAndreas Gohrfunction editorinfo($username, $textonly = false)
1648d868eb89SAndreas Gohr{
1649cd4635eeSGerrit Uitslag    return userlink($username, $textonly);
1650dc58b6f4SAndy Webber}
1651dc58b6f4SAndy Webber
165260a396c8SGerrit Uitslag/**
165360a396c8SGerrit Uitslag * Returns users realname w/o link
165460a396c8SGerrit Uitslag *
1655f168548cSGerrit Uitslag * @param string|null $username or null when currently logged-in user should be used
165615f3bc49SGerrit Uitslag * @param bool $textonly true returns only plain text, true allows returning html
1657c0953023SGerrit Uitslag * @return string html or plain text(not escaped) of formatted user name
165860a396c8SGerrit Uitslag *
165960a396c8SGerrit Uitslag * @triggers COMMON_USER_LINK
166060a396c8SGerrit Uitslag */
1661d868eb89SAndreas Gohrfunction userlink($username = null, $textonly = false)
1662d868eb89SAndreas Gohr{
166360a396c8SGerrit Uitslag    global $conf, $INFO;
1664e1d9dcc8SAndreas Gohr    /** @var AuthPlugin $auth */
166560a396c8SGerrit Uitslag    global $auth;
166630f6ec4bSGerrit Uitslag    /** @var Input $INPUT */
166730f6ec4bSGerrit Uitslag    global $INPUT;
166860a396c8SGerrit Uitslag
166960a396c8SGerrit Uitslag    // prepare initial event data
167024870174SAndreas Gohr    $data = [
167160a396c8SGerrit Uitslag        'username' => $username, // the unique user name
167260a396c8SGerrit Uitslag        'name' => '',
167324870174SAndreas Gohr        'link' => [
167424870174SAndreas Gohr            //setting 'link' to false disables linking
167560a396c8SGerrit Uitslag            'target' => '',
167660a396c8SGerrit Uitslag            'pre' => '',
167760a396c8SGerrit Uitslag            'suf' => '',
167860a396c8SGerrit Uitslag            'style' => '',
167960a396c8SGerrit Uitslag            'more' => '',
168060a396c8SGerrit Uitslag            'url' => '',
168160a396c8SGerrit Uitslag            'title' => '',
168224870174SAndreas Gohr            'class' => '',
168324870174SAndreas Gohr        ],
16844d5fc927SGerrit Uitslag        'userlink' => '', // formatted user name as will be returned
168524870174SAndreas Gohr        'textonly' => $textonly,
168624870174SAndreas Gohr    ];
168762c8004eSGerrit Uitslag    if ($username === null) {
168830f6ec4bSGerrit Uitslag        $data['username'] = $username = $INPUT->server->str('REMOTE_USER');
168915f3bc49SGerrit Uitslag        if ($textonly) {
169015f3bc49SGerrit Uitslag            $data['name'] = $INFO['userinfo']['name'] . ' (' . $INPUT->server->str('REMOTE_USER') . ')';
169115f3bc49SGerrit Uitslag        } else {
169264159a61SAndreas Gohr            $data['name'] = '<bdi>' . hsc($INFO['userinfo']['name']) . '</bdi> ' .
169364159a61SAndreas Gohr                '(<bdi>' . hsc($INPUT->server->str('REMOTE_USER')) . '</bdi>)';
169460a396c8SGerrit Uitslag        }
169515f3bc49SGerrit Uitslag    }
169660a396c8SGerrit Uitslag
1697e1d9dcc8SAndreas Gohr    $evt = new Event('COMMON_USER_LINK', $data);
169860a396c8SGerrit Uitslag    if ($evt->advise_before(true)) {
169960a396c8SGerrit Uitslag        if (empty($data['name'])) {
170060a396c8SGerrit Uitslag            if ($auth) $info = $auth->getUserData($username);
170165833968SGerrit Uitslag            if ($conf['showuseras'] != 'loginname' && isset($info) && $info) {
1702dc58b6f4SAndy Webber                switch ($conf['showuseras']) {
1703dc58b6f4SAndy Webber                    case 'username':
17047f081821SGerrit Uitslag                    case 'username_link':
170515f3bc49SGerrit Uitslag                        $data['name'] = $textonly ? $info['name'] : hsc($info['name']);
170660a396c8SGerrit Uitslag                        break;
1707dc58b6f4SAndy Webber                    case 'email':
1708dc58b6f4SAndy Webber                    case 'email_link':
170960a396c8SGerrit Uitslag                        $data['name'] = obfuscate($info['mail']);
171060a396c8SGerrit Uitslag                        break;
1711dc58b6f4SAndy Webber                }
171265833968SGerrit Uitslag            } else {
171365833968SGerrit Uitslag                $data['name'] = $textonly ? $data['username'] : hsc($data['username']);
171460a396c8SGerrit Uitslag            }
171560a396c8SGerrit Uitslag        }
17167f081821SGerrit Uitslag
17177f081821SGerrit Uitslag        /** @var Doku_Renderer_xhtml $xhtml_renderer */
17187f081821SGerrit Uitslag        static $xhtml_renderer = null;
17197f081821SGerrit Uitslag
172015f3bc49SGerrit Uitslag        if (!$data['textonly'] && empty($data['link']['url'])) {
172124870174SAndreas Gohr            if (in_array($conf['showuseras'], ['email_link', 'username_link'])) {
172260a396c8SGerrit Uitslag                if (!isset($info)) {
172360a396c8SGerrit Uitslag                    if ($auth) $info = $auth->getUserData($username);
172460a396c8SGerrit Uitslag                }
172560a396c8SGerrit Uitslag                if (isset($info) && $info) {
17267f081821SGerrit Uitslag                    if ($conf['showuseras'] == 'email_link') {
172760a396c8SGerrit Uitslag                        $data['link']['url'] = 'mailto:' . obfuscate($info['mail']);
1728dc58b6f4SAndy Webber                    } else {
17297f081821SGerrit Uitslag                        if (is_null($xhtml_renderer)) {
17307f081821SGerrit Uitslag                            $xhtml_renderer = p_get_renderer('xhtml');
17317f081821SGerrit Uitslag                        }
17327f081821SGerrit Uitslag                        if (empty($xhtml_renderer->interwiki)) {
17337f081821SGerrit Uitslag                            $xhtml_renderer->interwiki = getInterwiki();
17347f081821SGerrit Uitslag                        }
17357f081821SGerrit Uitslag                        $shortcut = 'user';
1736533772e1SGerrit Uitslag                        $exists = null;
17376496c33fSGerrit Uitslag                        $data['link']['url'] = $xhtml_renderer->_resolveInterWiki($shortcut, $username, $exists);
17382a2a43c4SGerrit Uitslag                        $data['link']['class'] .= ' interwiki iw_user';
17396496c33fSGerrit Uitslag                        if ($exists !== null) {
17406496c33fSGerrit Uitslag                            if ($exists) {
17416496c33fSGerrit Uitslag                                $data['link']['class'] .= ' wikilink1';
17426496c33fSGerrit Uitslag                            } else {
17436496c33fSGerrit Uitslag                                $data['link']['class'] .= ' wikilink2';
17446496c33fSGerrit Uitslag                                $data['link']['rel'] = 'nofollow';
17456496c33fSGerrit Uitslag                            }
17466496c33fSGerrit Uitslag                        }
1747dc58b6f4SAndy Webber                    }
1748dc58b6f4SAndy Webber                } else {
174915f3bc49SGerrit Uitslag                    $data['textonly'] = true;
1750dc58b6f4SAndy Webber                }
175160a396c8SGerrit Uitslag            } else {
175215f3bc49SGerrit Uitslag                $data['textonly'] = true;
175360a396c8SGerrit Uitslag            }
175460a396c8SGerrit Uitslag        }
175560a396c8SGerrit Uitslag
175615f3bc49SGerrit Uitslag        if ($data['textonly']) {
17574d5fc927SGerrit Uitslag            $data['userlink'] = $data['name'];
175860a396c8SGerrit Uitslag        } else {
175960a396c8SGerrit Uitslag            $data['link']['name'] = $data['name'];
176060a396c8SGerrit Uitslag            if (is_null($xhtml_renderer)) {
176160a396c8SGerrit Uitslag                $xhtml_renderer = p_get_renderer('xhtml');
176260a396c8SGerrit Uitslag            }
17634d5fc927SGerrit Uitslag            $data['userlink'] = $xhtml_renderer->_formatLink($data['link']);
176460a396c8SGerrit Uitslag        }
176560a396c8SGerrit Uitslag    }
176660a396c8SGerrit Uitslag    $evt->advise_after();
176760a396c8SGerrit Uitslag    unset($evt);
176860a396c8SGerrit Uitslag
17694d5fc927SGerrit Uitslag    return $data['userlink'];
1770066fee30SAndreas Gohr}
1771066fee30SAndreas Gohr
1772066fee30SAndreas Gohr/**
1773066fee30SAndreas Gohr * Returns the path to a image file for the currently chosen license.
1774066fee30SAndreas Gohr * When no image exists, returns an empty string
1775066fee30SAndreas Gohr *
1776066fee30SAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
1777140cfbcdSGerrit Uitslag *
1778066fee30SAndreas Gohr * @param  string $type - type of image 'badge' or 'button'
17793272d797SAndreas Gohr * @return string
1780066fee30SAndreas Gohr */
1781d868eb89SAndreas Gohrfunction license_img($type)
1782d868eb89SAndreas Gohr{
1783066fee30SAndreas Gohr    global $license;
1784066fee30SAndreas Gohr    global $conf;
1785066fee30SAndreas Gohr    if (!$conf['license']) return '';
1786066fee30SAndreas Gohr    if (!is_array($license[$conf['license']])) return '';
178724870174SAndreas Gohr    $try   = [];
1788066fee30SAndreas Gohr    $try[] = 'lib/images/license/' . $type . '/' . $conf['license'] . '.png';
1789066fee30SAndreas Gohr    $try[] = 'lib/images/license/' . $type . '/' . $conf['license'] . '.gif';
1790066fee30SAndreas Gohr    if (substr($conf['license'], 0, 3) == 'cc-') {
1791066fee30SAndreas Gohr        $try[] = 'lib/images/license/' . $type . '/cc.png';
1792066fee30SAndreas Gohr    }
1793066fee30SAndreas Gohr    foreach ($try as $src) {
179479e79377SAndreas Gohr        if (file_exists(DOKU_INC . $src)) return $src;
1795066fee30SAndreas Gohr    }
1796066fee30SAndreas Gohr    return '';
1797dc58b6f4SAndy Webber}
1798dc58b6f4SAndy Webber
179913c08e2fSMichael Klier/**
180013c08e2fSMichael Klier * Checks if the given amount of memory is available
180113c08e2fSMichael Klier *
180213c08e2fSMichael Klier * If the memory_get_usage() function is not available the
180313c08e2fSMichael Klier * function just assumes $bytes of already allocated memory
180413c08e2fSMichael Klier *
180513c08e2fSMichael Klier * @author Filip Oscadal <webmaster@illusionsoftworks.cz>
180613c08e2fSMichael Klier * @author Andreas Gohr <andi@splitbrain.org>
18073272d797SAndreas Gohr *
18083272d797SAndreas Gohr * @param int  $mem    Size of memory you want to allocate in bytes
1809140cfbcdSGerrit Uitslag * @param int  $bytes  already allocated memory (see above)
18103272d797SAndreas Gohr * @return bool
181113c08e2fSMichael Klier */
1812d868eb89SAndreas Gohrfunction is_mem_available($mem, $bytes = 1_048_576)
1813d868eb89SAndreas Gohr{
181413c08e2fSMichael Klier    $limit = trim(ini_get('memory_limit'));
181513c08e2fSMichael Klier    if (empty($limit)) return true; // no limit set!
1816985d6187SElenchus    if ($limit == -1) return true; // unlimited
181713c08e2fSMichael Klier
181813c08e2fSMichael Klier    // parse limit to bytes
181913c08e2fSMichael Klier    $limit = php_to_byte($limit);
182013c08e2fSMichael Klier
182113c08e2fSMichael Klier    // get used memory if possible
182213c08e2fSMichael Klier    if (function_exists('memory_get_usage')) {
182313c08e2fSMichael Klier        $used = memory_get_usage();
182449eb6e38SAndreas Gohr    } else {
182549eb6e38SAndreas Gohr        $used = $bytes;
182613c08e2fSMichael Klier    }
182713c08e2fSMichael Klier
182813c08e2fSMichael Klier    if ($used + $mem > $limit) {
182913c08e2fSMichael Klier        return false;
183013c08e2fSMichael Klier    }
183113c08e2fSMichael Klier
183213c08e2fSMichael Klier    return true;
183313c08e2fSMichael Klier}
183413c08e2fSMichael Klier
1835af2408d5SAndreas Gohr/**
1836af2408d5SAndreas Gohr * Send a HTTP redirect to the browser
1837af2408d5SAndreas Gohr *
1838af2408d5SAndreas Gohr * Works arround Microsoft IIS cookie sending bug. Exits the script.
1839af2408d5SAndreas Gohr *
1840af2408d5SAndreas Gohr * @link   http://support.microsoft.com/kb/q176113/
1841af2408d5SAndreas Gohr * @author Andreas Gohr <andi@splitbrain.org>
1842140cfbcdSGerrit Uitslag *
1843140cfbcdSGerrit Uitslag * @param string $url url being directed to
1844af2408d5SAndreas Gohr */
1845d868eb89SAndreas Gohrfunction send_redirect($url)
1846d868eb89SAndreas Gohr{
184798ca30d2SAndreas Gohr    $url = stripctl($url); // defend against HTTP Response Splitting
184898ca30d2SAndreas Gohr
1849585bf44eSChristopher Smith    /* @var Input $INPUT */
1850585bf44eSChristopher Smith    global $INPUT;
1851585bf44eSChristopher Smith
18520181f021SAndreas Gohr    //are there any undisplayed messages? keep them in session for display
18530181f021SAndreas Gohr    global $MSG;
18540181f021SAndreas Gohr    if (isset($MSG) && count($MSG) && !defined('NOSESSION')) {
18550181f021SAndreas Gohr        //reopen session, store data and close session again
18560181f021SAndreas Gohr        @session_start();
18570181f021SAndreas Gohr        $_SESSION[DOKU_COOKIE]['msg'] = $MSG;
18580181f021SAndreas Gohr    }
18590181f021SAndreas Gohr
1860d4869846SAndreas Gohr    // always close the session
1861d4869846SAndreas Gohr    session_write_close();
1862d4869846SAndreas Gohr
1863af2408d5SAndreas Gohr    // check if running on IIS < 6 with CGI-PHP
18647d34963bSAndreas Gohr    if (
18657d34963bSAndreas Gohr        $INPUT->server->has('SERVER_SOFTWARE') && $INPUT->server->has('GATEWAY_INTERFACE') &&
1866585bf44eSChristopher Smith        (strpos($INPUT->server->str('GATEWAY_INTERFACE'), 'CGI') !== false) &&
1867585bf44eSChristopher Smith        (preg_match('|^Microsoft-IIS/(\d)\.\d$|', trim($INPUT->server->str('SERVER_SOFTWARE')), $matches)) &&
18683272d797SAndreas Gohr        $matches[1] < 6
18693272d797SAndreas Gohr    ) {
1870af2408d5SAndreas Gohr        header('Refresh: 0;url=' . $url);
1871af2408d5SAndreas Gohr    } else {
1872af2408d5SAndreas Gohr        header('Location: ' . $url);
1873af2408d5SAndreas Gohr    }
187481781cb6SAndreas Gohr
1875572dc222SLarsDW223    // no exits during unit tests
187627c0c399SAndreas Gohr    if (defined('DOKU_UNITTEST')) {
187727c0c399SAndreas Gohr        // pass info about the redirect back to the test suite
187827c0c399SAndreas Gohr        $testRequest = TestRequest::getRunning();
187927c0c399SAndreas Gohr        if ($testRequest !== null) {
188027c0c399SAndreas Gohr            $testRequest->addData('send_redirect', $url);
188127c0c399SAndreas Gohr        }
1882572dc222SLarsDW223        return;
1883572dc222SLarsDW223    }
188427c0c399SAndreas Gohr
1885af2408d5SAndreas Gohr    exit;
1886af2408d5SAndreas Gohr}
1887af2408d5SAndreas Gohr
18885b75cd1fSAdrian Lang/**
18895b75cd1fSAdrian Lang * Validate a value using a set of valid values
18905b75cd1fSAdrian Lang *
18915b75cd1fSAdrian Lang * This function checks whether a specified value is set and in the array
18925b75cd1fSAdrian Lang * $valid_values. If not, the function returns a default value or, if no
18935b75cd1fSAdrian Lang * default is specified, throws an exception.
18945b75cd1fSAdrian Lang *
18955b75cd1fSAdrian Lang * @param string $param        The name of the parameter
18965b75cd1fSAdrian Lang * @param array  $valid_values A set of valid values; Optionally a default may
18975b75cd1fSAdrian Lang *                             be marked by the key “default”.
18985b75cd1fSAdrian Lang * @param array  $array        The array containing the value (typically $_POST
18995b75cd1fSAdrian Lang *                             or $_GET)
19005b75cd1fSAdrian Lang * @param string $exc          The text of the raised exception
19015b75cd1fSAdrian Lang *
19023272d797SAndreas Gohr * @throws Exception
19033272d797SAndreas Gohr * @return mixed
19045b75cd1fSAdrian Lang * @author Adrian Lang <lang@cosmocode.de>
19055b75cd1fSAdrian Lang */
1906d868eb89SAndreas Gohrfunction valid_input_set($param, $valid_values, $array, $exc = '')
1907d868eb89SAndreas Gohr{
19085b75cd1fSAdrian Lang    if (isset($array[$param]) && in_array($array[$param], $valid_values)) {
19095b75cd1fSAdrian Lang        return $array[$param];
19105b75cd1fSAdrian Lang    } elseif (isset($valid_values['default'])) {
19115b75cd1fSAdrian Lang        return $valid_values['default'];
19125b75cd1fSAdrian Lang    } else {
19135b75cd1fSAdrian Lang        throw new Exception($exc);
19145b75cd1fSAdrian Lang    }
19155b75cd1fSAdrian Lang}
19165b75cd1fSAdrian Lang
191763703ba5SAndreas Gohr/**
191863703ba5SAndreas Gohr * Read a preference from the DokuWiki cookie
1919646a531aSChristopher Smith * (remembering both keys & values are urlencoded)
1920140cfbcdSGerrit Uitslag *
1921140cfbcdSGerrit Uitslag * @param string $pref     preference key
1922b4b6c9a1SGerrit Uitslag * @param mixed  $default  value returned when preference not found
1923140cfbcdSGerrit Uitslag * @return string preference value
192463703ba5SAndreas Gohr */
1925d868eb89SAndreas Gohrfunction get_doku_pref($pref, $default)
1926d868eb89SAndreas Gohr{
1927646a531aSChristopher Smith    $enc_pref = urlencode($pref);
192806c9ee33SMarius van Witzenburg    if (isset($_COOKIE['DOKU_PREFS']) && strpos($_COOKIE['DOKU_PREFS'], $enc_pref) !== false) {
1929554a8c9fSAdrian Lang        $parts = explode('#', $_COOKIE['DOKU_PREFS']);
193063703ba5SAndreas Gohr        $cnt   = count($parts);
19311c3eca7dSPhy
19321c3eca7dSPhy        // due to #2721 there might be duplicate entries,
19331c3eca7dSPhy        // so we read from the end
19341c3eca7dSPhy        for ($i = $cnt - 2; $i >= 0; $i -= 2) {
193524870174SAndreas Gohr            if ($parts[$i] === $enc_pref) {
1936646a531aSChristopher Smith                return urldecode($parts[$i + 1]);
1937554a8c9fSAdrian Lang            }
1938554a8c9fSAdrian Lang        }
1939554a8c9fSAdrian Lang    }
1940554a8c9fSAdrian Lang    return $default;
1941554a8c9fSAdrian Lang}
1942554a8c9fSAdrian Lang
19433c94d07bSAnika Henke/**
19443c94d07bSAnika Henke * Add a preference to the DokuWiki cookie
194536ec377eSChristopher Smith * (remembering $_COOKIE['DOKU_PREFS'] is urlencoded)
19463a970889SAnika Henke * Remove it by setting $val to false
1947140cfbcdSGerrit Uitslag *
1948140cfbcdSGerrit Uitslag * @param string $pref  preference key
1949140cfbcdSGerrit Uitslag * @param string $val   preference value
19503c94d07bSAnika Henke */
1951d868eb89SAndreas Gohrfunction set_doku_pref($pref, $val)
1952d868eb89SAndreas Gohr{
19533c94d07bSAnika Henke    global $conf;
19543c94d07bSAnika Henke    $orig = get_doku_pref($pref, false);
19553c94d07bSAnika Henke    $cookieVal = '';
19563c94d07bSAnika Henke
19571c3eca7dSPhy    if ($orig !== false && ($orig !== $val)) {
19583c94d07bSAnika Henke        $parts = explode('#', $_COOKIE['DOKU_PREFS']);
19593c94d07bSAnika Henke        $cnt   = count($parts);
196036ec377eSChristopher Smith        // urlencode $pref for the comparison
196136ec377eSChristopher Smith        $enc_pref = rawurlencode($pref);
19621c3eca7dSPhy        $seen = false;
19633c94d07bSAnika Henke        for ($i = 0; $i < $cnt; $i += 2) {
196424870174SAndreas Gohr            if ($parts[$i] === $enc_pref) {
19651c3eca7dSPhy                if (!$seen) {
19663a970889SAnika Henke                    if ($val !== false) {
1967bf8f8509SAndreas Gohr                        $parts[$i + 1] = rawurlencode($val ?? '');
19683a970889SAnika Henke                    } else {
19693a970889SAnika Henke                        unset($parts[$i]);
19703a970889SAnika Henke                        unset($parts[$i + 1]);
19713a970889SAnika Henke                    }
19721c3eca7dSPhy                    $seen = true;
19731c3eca7dSPhy                } else {
19741c3eca7dSPhy                    // no break because we want to remove duplicate entries
19751c3eca7dSPhy                    unset($parts[$i]);
19761c3eca7dSPhy                    unset($parts[$i + 1]);
19771c3eca7dSPhy                }
19783c94d07bSAnika Henke            }
19793c94d07bSAnika Henke        }
19803c94d07bSAnika Henke        $cookieVal = implode('#', $parts);
19811c3eca7dSPhy    } elseif ($orig === false && $val !== false) {
1982c10f256aSDamien Regad        $cookieVal = (isset($_COOKIE['DOKU_PREFS']) ? $_COOKIE['DOKU_PREFS'] . '#' : '') .
198364159a61SAndreas Gohr            rawurlencode($pref) . '#' . rawurlencode($val);
19843c94d07bSAnika Henke    }
19853c94d07bSAnika Henke
198675e4dd8aSGerrit Uitslag    $cookieDir = empty($conf['cookiedir']) ? DOKU_REL : $conf['cookiedir'];
19875833995aSPhy    if (defined('DOKU_UNITTEST')) {
19885833995aSPhy        $_COOKIE['DOKU_PREFS'] = $cookieVal;
19895833995aSPhy    } else {
1990bf8392ebSAndreas Gohr        setcookie('DOKU_PREFS', $cookieVal, [
1991bf8392ebSAndreas Gohr            'expires' => time() + 365 * 24 * 3600,
1992bf8392ebSAndreas Gohr            'path' => $cookieDir,
1993bf8392ebSAndreas Gohr            'secure' => ($conf['securecookie'] && is_ssl()),
1994bf8392ebSAndreas Gohr            'samesite' => 'Lax'
1995bf8392ebSAndreas Gohr        ]);
19963c94d07bSAnika Henke    }
19973c94d07bSAnika Henke}
19983c94d07bSAnika Henke
1999f8fb2d18SAndreas Gohr/**
2000f8fb2d18SAndreas Gohr * Strips source mapping declarations from given text #601
2001f8fb2d18SAndreas Gohr *
200242ea7f44SGerrit Uitslag * @param string &$text reference to the CSS or JavaScript code to clean
2003f8fb2d18SAndreas Gohr */
2004d868eb89SAndreas Gohrfunction stripsourcemaps(&$text)
2005d868eb89SAndreas Gohr{
2006f8fb2d18SAndreas Gohr    $text = preg_replace('/^(\/\/|\/\*)[@#]\s+sourceMappingURL=.*?(\*\/)?$/im', '\\1\\2', $text);
2007f8fb2d18SAndreas Gohr}
2008f8fb2d18SAndreas Gohr
20093c27983bSAndreas Gohr/**
201071de5572SAndreas Gohr * Returns the contents of a given SVG file for embedding
20113c27983bSAndreas Gohr *
20123c27983bSAndreas Gohr * Inlining SVGs saves on HTTP requests and more importantly allows for styling them through
20133c27983bSAndreas Gohr * CSS. However it should used with small SVGs only. The $maxsize setting ensures only small
20143c27983bSAndreas Gohr * files are embedded.
20153c27983bSAndreas Gohr *
201671de5572SAndreas Gohr * This strips unneeded headers, comments and newline. The result is not a vaild standalone SVG!
201771de5572SAndreas Gohr *
20183c27983bSAndreas Gohr * @param string $file full path to the SVG file
20193c27983bSAndreas Gohr * @param int $maxsize maximum allowed size for the SVG to be embedded
202071de5572SAndreas Gohr * @return string|false the SVG content, false if the file couldn't be loaded
20213c27983bSAndreas Gohr */
2022d868eb89SAndreas Gohrfunction inlineSVG($file, $maxsize = 2048)
2023d868eb89SAndreas Gohr{
20243c27983bSAndreas Gohr    $file = trim($file);
20253c27983bSAndreas Gohr    if ($file === '') return false;
20263c27983bSAndreas Gohr    if (!file_exists($file)) return false;
20273c27983bSAndreas Gohr    if (filesize($file) > $maxsize) return false;
20283c27983bSAndreas Gohr    if (!is_readable($file)) return false;
20293c27983bSAndreas Gohr    $content = file_get_contents($file);
20300849fa88SAndreas Gohr    $content = preg_replace('/<!--.*?(-->)/s', '', $content); // comments
20310849fa88SAndreas Gohr    $content = preg_replace('/<\?xml .*?\?>/i', '', $content); // xml header
20320849fa88SAndreas Gohr    $content = preg_replace('/<!DOCTYPE .*?>/i', '', $content); // doc type
20330849fa88SAndreas Gohr    $content = preg_replace('/>\s+</s', '><', $content); // newlines between tags
20343c27983bSAndreas Gohr    $content = trim($content);
20353c27983bSAndreas Gohr    if (substr($content, 0, 5) !== '<svg ') return false;
203671de5572SAndreas Gohr    return $content;
20373c27983bSAndreas Gohr}
20383c27983bSAndreas Gohr
2039e3776c06SMichael Hamann//Setup VIM: ex: et ts=2 :
2040