| Server IP : 156.238.232.47 / Your IP : 216.73.216.150 Web Server : nginx/1.25.3 System : Linux C202504152095410 3.10.0-1160.119.1.el7.x86_64 #1 SMP Tue Jun 4 14:43:51 UTC 2024 x86_64 User : www ( 1000) PHP Version : 8.3.25 Disable Function : passthru,exec,system,putenv,chroot,chgrp,chown,shell_exec,popen,proc_open,pcntl_exec,ini_alter,ini_restore,dl,openlog,syslog,readlink,symlink,popepassthru,pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,imap_open,apache_setenv MySQL : OFF | cURL : ON | WGET : ON | Perl : ON | Python : ON | Sudo : ON | Pkexec : ON Directory : /www/data/wwwroot/2026_06_02_05/source/function/ |
Upload File : |
<?php
/**
* [Discuz!] (C)2001-2099 Discuz! Team
* This is NOT a freeware, use is subject to license terms
* https://license.discuz.vip
*/
if(!defined('IN_DISCUZ')) {
exit('Access Denied');
}
function get_uploadcontent($attach, $type = 'portal', $dotype = '') {
$return = '';
$dotype = $dotype ? 'checked' : '';
if($attach['isimage']) {
$pic = pic_get($attach['attachment'], $type, $attach['thumb'], $attach['remote'], 0);
$small_pic = $attach['thumb'] ? getimgthumbname($pic) : '';
$check = $attach['pic'] == $type.'/'.$attach['attachment'] ? 'checked' : $dotype;
$aid = $check ? $attach['aid'] : '';
$return .= '<a href="javascript:;" class="opattach"><span class="opattach_ctrl">';
$return .= '<span onclick="insertImage(\''.$pic.'\');" class="cur1">'.lang('portalcp', 'insert_large_image').'</span>';
$return .= '<span class="pipe">|</span>';
if($small_pic) $return .= '<span onclick="insertImage(\''.$small_pic.'\', \''.$pic.'\');" class="cur1">'.lang('portalcp', 'small_image').'</span>';
$return .= '</span><img src="'.($small_pic ? $small_pic : $pic).'" onclick="insertImage(\''.$pic.'\');" class="cur1"></a>';
$return .= '<label for="setconver'.$attach['attachid'].'" class="cur1 xi2"><input type="radio" name="setconver" id="setconver'.$attach['attachid'].'" class="pr" value="1" onclick="setConver(\''.addslashes(serialize(['pic' => $type.'/'.$attach['attachment'], 'thumb' => $attach['thumb'], 'remote' => $attach['remote']])).'\') '.$check.'>'.lang('portalcp', 'set_to_conver').'</label>';
$return .= '<span class="pipe">|</span>';
if($type == 'portal') $return .= '<span class="cur1 xi2" onclick="deleteAttach(\''.$attach['attachid'].'\', \'portal.php?mod=attachment&id='.$attach['attachid'].'&aid='.$aid.'&op=delete&formhash='.FORMHASH.'\');">'.lang('portalcp', 'delete').'</span>';
} else {
$attach_url = $type == 'forum' ? 'forum.php?mod=attachment&aid='.aidencode($attach['attachid'], 1) : 'portal.php?mod=attachment&id='.$attach['attachid'];
$return .= '<table id="attach_list_'.$attach['attachid'].'" width="100%" class="xi2">';
$return .= '<td width="50" class="bbs"><a href="'.$attach_url.'" target="_blank">'.$attach['filename'].'</a></td>';
$return .= '<td align="right" class="bbs">';
$return .= '<a href="javascript:void(0);" onclick="insertFile(\''.$attach['filename'].'\', \''.$attach_url.'\');return false;">'.lang('portalcp', 'insert_file').'</a><br>';
if($type == 'portal') $return .= '<a href="javascript:void(0);" onclick="deleteAttach(\''.$attach['attachid'].'\', \'portal.php?mod=attachment&id='.$attach['attachid'].'&op=delete&formhash='.FORMHASH.'\');return false;">'.lang('portalcp', 'delete').'</a>';
$return .= '</td>';
$return .= '</table>';
}
return $return;
}
function get_upload_content($attachs, $dotype = '') {
$html = '';
$dotype = $dotype ? 'checked' : '';
$i = 0;
foreach($attachs as $key => $attach) {
$type = $attach['from'] == 'forum' ? 'forum' : 'portal';
$html .= '<td id="attach_list_'.$attach['attachid'].'">';
if($attach['isimage']) {
$pic = pic_get($attach['attachment'], $type, $attach['thumb'], $attach['remote'], 0);
$small_pic = $attach['thumb'] ? getimgthumbname($pic) : '';
$check = $attach['pic'] == $type.'/'.$attach['attachment'] ? 'checked' : $dotype;
$aid = $check ? $attach['aid'] : '';
$html .= '<a href="javascript:;" class="opattach">';
$html .= '<span class="opattach_ctrl">';
$html .= '<span onclick="insertImage(\''.$pic.'\');" class="cur1">'.lang('portalcp', 'insert_large_image').'</span><span class="pipe">|</span>';
if($small_pic) $html .= '<span onclick="insertImage(\''.$small_pic.'\', \''.$pic.'\');" class="cur1">'.lang('portalcp', 'small_image').'</span>';
$html .= '</span><img src="'.($small_pic ? $small_pic : $pic).'" onclick="insertImage(\''.$pic.'\');" class="cur1" /></a>';
$html .= '<label for="setconver'.$attach['attachid'].'" class="cur1 xi2"><input type="radio" name="setconver" id="setconver'.$attach['attachid'].'" class="pr" value="1" onclick=setConver(\''.addslashes(serialize(['pic' => $type.'/'.$attach['attachment'], 'thumb' => $attach['thumb'], 'remote' => $attach['remote']])).'\') '.$check.'>'.lang('portalcp', 'set_to_conver').'</label>';
if($type == 'portal') {
$html .= '<span class="pipe">|</span><span class="cur1 xi2" onclick="deleteAttach(\''.$attach['attachid'].'\', \'portal.php?mod=attachment&id='.$attach['attachid'].'&aid='.$aid.'&op=delete&formhash='.FORMHASH.'\');">'.lang('portalcp', 'delete').'</span>';
}
} else {
$html .= '<img src="'.STATICURL.'image/editor/editor_file_thumb.png" class="cur1" onclick="insertFile(\''.$attach['filename'].'\', \'portal.php?mod=attachment&id='.$attach['attachid'].'\');" tip="'.$attach['filename'].'" onmouseover="showTip(this);" /><br/>';
$html .= '<span onclick="deleteAttach(\''.$attach['attachid'].'\', \'portal.php?mod=attachment&id='.$attach['attachid'].'&op=delete&formhash='.FORMHASH.'\');" class="cur1 xi2">'.lang('portalcp', 'delete').'</span>';
}
$html .= '</td>';
$i++;
if($i % 4 == 0 && isset($attachs[$i])) {
$html .= '</tr><tr>';
}
}
if(!empty($html)) {
if(($imgpad = $i % 4) > 0) {
$html .= str_repeat('<td width="25%"></td>', 4 - $imgpad);
}
$html = '<table class="imgl"><tr>'.$html.'</tr></table>';
}
return $html;
}
function getallowcategory($uid) {
global $_G;
$permission = [];
if(empty($uid)) return $permission;
if(getstatus($_G['member']['allowadmincp'], 2) || getstatus($_G['member']['allowadmincp'], 3)) {
$uid = max(0, intval($uid));
foreach(table_portal_category_permission::t()->fetch_all_by_uid($uid) as $catid => $value) {
if($value['allowpublish'] || $value['allowmanage']) {
$permission[$catid] = $value;
}
}
}
return $permission;
}
function getpermissioncategory($category, $permission = []) {
$cats = [];
foreach($permission as $k => $v) {
$cur = $category[$v];
if($cur['level'] != 0) {
while($cur['level']) {
$cats[$cur['upid']]['permissionchildren'][$cur['catid']] = $cur['catid'];
$cur = $category[$cur['upid']];
}
} elseif(empty($cats[$v])) {
$cats[$v] = [];
}
}
return $cats;
}
function getallowdiytemplate($uid) {
if(empty($uid)) return false;
$permission = [];
$uid = max(0, intval($uid));
$permission = table_common_template_permission::t()->fetch_all_by_uid($uid);
return $permission;
}
function getdiytpldir($targettplname) {
global $_G;
$tpldir = $pre = '';
if(substr($targettplname, 0, 13) === ($pre = 'forum/discuz_')) {
} elseif(substr($targettplname, 0, 19) === ($pre = 'forum/forumdisplay_')) {
}
if($pre) {
$forum = table_forum_forum::t()->fetch(intval(str_replace($pre, '', $targettplname)));
if(!empty($forum['styleid'])) {
$_cname = 'style_'.$forum['styleid'];
loadcache($_cname);
$tpldir = empty($_G['cache'][$_cname]['tpldir']) ? '' : $_G['cache'][$_cname]['tpldir'];
}
}
return $tpldir ? $tpldir : ($_G['cache']['style_default']['tpldir'] ? $_G['cache']['style_default']['tpldir'] : './template/default');
}
function save_diy_data($tpldirectory, $primaltplname, $targettplname, $data, $database = false, $optype = '') {
global $_G;
if(empty($data) || !is_array($data)) return false;
checksecurity($data['spacecss']);
if(empty($tpldirectory)) {
$tpldirectory = getdiytpldir($targettplname);
}
$isextphp = false;
$file = $tpldirectory.'/'.$primaltplname.'.htm';
if(!tplfile::file_exists(DISCUZ_TEMPLATE($file))) {
$file = $tpldirectory.'/'.$primaltplname.'.php';
if(!tplfile::file_exists(DISCUZ_TEMPLATE($file))) {
$file = './template/default/'.$primaltplname.'.php';
} else {
$isextphp = true;
}
}
$file = DISCUZ_TEMPLATE($file);
if(!tplfile::file_exists($file)) return false;
$content = tplfile::file_get_contents($file);
if($isextphp) {
$content = tplfile::getphptemplate($content);
}
$content = preg_replace('/\<\!\-\-\[name\].+?\[\/name\]\-\-\>\s+/is', '', $content);
$content = preg_replace("/\<script src\=\"misc\.php\?mod\=diyhelp\&action\=get.+?\>\<\/script\>/", '', $content);
foreach($data['layoutdata'] as $key => $value) {
$key = trimdxtpllang($key);
$html = '';
$html .= '<div id="'.$key.'" class="area">';
$html .= getframehtml($value);
$html .= '</div>';
$content = preg_replace("/(\<\!\-\-\[diy\=$key\]\-\-\>).+?(\<\!\-\-\[\/diy\]\-\-\>)/is", "\\1".$html."\\2", $content);
}
$data['spacecss'] = str_replace('.content', '.dxb_bc', $data['spacecss']);
$data['spacecss'] = trimdxtpllang($data['spacecss']);
$content = preg_replace("/(\<style id\=\"diy_style\" type\=\"text\/css\"\>).*?(\<\/style\>)/is", "\\1".$data['spacecss']."\\2", $content);
if(!empty($data['style'])) {
$content = preg_replace("/(\<link id\=\"style_css\" rel\=\"stylesheet\" type\=\"text\/css\" href\=\").+?(\"\>)/is", "\\1".$data['style']."\\2", $content);
}
$flag = $optype == 'savecache';
if($flag) {
$targettplname = $targettplname.'_diy_preview';
} else {
@unlink('./data/diy/'.$tpldirectory.'/'.$targettplname.'_diy_preview.htm');
}
$tplfile = DISCUZ_DATA.'./diy/'.$tpldirectory.'/'.$targettplname.'.htm';
$tplpath = dirname($tplfile);
if(!is_dir($tplpath)) {
dmkdir($tplpath);
} else {
if(file_exists($tplfile) && !$flag) copy($tplfile, $tplfile.'.bak');
}
$r = file_put_contents($tplfile, $content);
if($r && $database && !$flag) {
$diytplname = getdiytplname($targettplname, $tpldirectory);
table_common_diy_data::t()->insert([
'targettplname' => $targettplname,
'tpldirectory' => $tpldirectory,
'primaltplname' => $primaltplname,
'diycontent' => serialize($data),
'name' => $diytplname,
'uid' => $_G['uid'],
'username' => $_G['username'],
'dateline' => TIMESTAMP,
], false, true);
}
return $r;
}
function getdiytplnames($tpls) {
$arr = $ret = [];
foreach((array)$tpls as $targettplname) {
$id = $pre = '';
if(substr($targettplname, 0, 12) === ($pre = 'portal/list_')) {
} elseif(substr($targettplname, 0, 12) === ($pre = 'portal/view_')) {
} elseif(substr($targettplname, 0, 13) === ($pre = 'forum/discuz_')) {
} elseif(substr($targettplname, 0, 17) === ($pre = 'forum/viewthread_')) {
} elseif(substr($targettplname, 0, 19) === ($pre = 'forum/forumdisplay_')) {
} elseif(substr($targettplname, 0, 28) === ($pre = 'portal/portal_topic_content_')) {
}
if($pre && ($id = dintval(str_replace($pre, '', $targettplname)))) {
$arr[$pre][$id] = $id;
}
}
foreach($arr as $pre => $ids) {
if($pre === 'portal/list_') {
foreach(table_portal_category::t()->fetch_all($ids) as $id => $value) {
$ret[$pre][$id] = $value['catname'];
}
} elseif($pre === 'portal/view_') {
$portal_view_name = lang('portalcp', 'portal_view_name');
foreach(table_portal_category::t()->fetch_all($ids) as $id => $value) {
$ret[$pre][$id] = $value['catname'].$portal_view_name;
}
} elseif($pre === 'forum/forumdisplay_' || $pre === 'forum/discuz_') {
foreach(table_forum_forum::t()->fetch_all($ids) as $id => $value) {
$ret[$pre][$id] = $value['name'];
}
} elseif($pre === 'forum/viewthread_') {
$forum_viewthread_name = lang('portalcp', 'forum_viewthread_name');
foreach(table_forum_forum::t()->fetch_all($ids) as $id => $value) {
$ret[$pre][$id] = $value['name'].$forum_viewthread_name;
}
} elseif($pre === 'portal/portal_topic_content_') {
foreach(table_portal_topic::t()->fetch_all($ids) as $id => $value) {
$ret[$pre][$id] = $value['title'];
}
}
}
return $ret;
}
function getdiytplname($targettplname, $tpldirectory) {
$diydata = table_common_diy_data::t()->fetch_diy($targettplname, $tpldirectory);
$diytplname = $diydata ? $diydata['name'] : '';
if(empty($diytplname) && ($data = getdiytplnames([$targettplname]))) {
$diytplname = array_shift($data);
$diytplname = array_shift($diytplname);
}
return $diytplname;
}
function getframehtml($data = []) {
global $_G;
$html = $style = '';
foreach((array)$data as $id => $content) {
$id = trimdxtpllang($id);
$flag = $name = '';
list($flag, $name) = explode('`', $id);
if($flag == 'frame') {
$fattr = $content['attr'];
$fattr['name'] = trimdxtpllang($fattr['name']);
$fattr['className'] = trimdxtpllang($fattr['className']);
$moveable = $fattr['moveable'] == 'true' ? ' move-span' : '';
$html .= '<div id="'.$fattr['name'].'" class="'.$fattr['className'].'">';
if(checkhastitle($fattr['titles'])) {
$style = gettitlestyle($fattr['titles']);
$cn = trimdxtpllang(implode(' ', $fattr['titles']['className']));
$html .= '<div class="'.$cn.'"'.$style.'>'.gettitlehtml($fattr['titles'], 'frame').'</div>';
}
foreach((array)$content as $colid => $coldata) {
list($colflag, $colname) = explode('`', $colid);
$colname = trimdxtpllang($colname);
$cn = trimdxtpllang($coldata['attr']['className']);
if($colflag == 'column') {
$html .= '<div id="'.$colname.'" class="'.$cn.'">';
$html .= '<div id="'.$colname.'_temp" class="move-span temp"></div>';
$html .= getframehtml($coldata);
$html .= '</div>';
}
}
$html .= '</div>';
} elseif($flag == 'tab') {
$fattr = $content['attr'];
$fattr['name'] = trimdxtpllang($fattr['name']);
$fattr['className'] = trimdxtpllang($fattr['className']);
$moveable = $fattr['moveable'] == 'true' ? ' move-span' : '';
$html .= '<div id="'.$fattr['name'].'" class="'.$fattr['className'].'">';
$switchtype = 'click';
foreach((array)$content as $colid => $coldata) {
list($colflag, $colname) = explode('`', $colid);
$colname = trimdxtpllang($colname);
$cn = trimdxtpllang($coldata['attr']['className']);
if($colflag == 'column') {
if(checkhastitle($fattr['titles'])) {
$style = gettitlestyle($fattr['titles']);
$title = gettitlehtml($fattr['titles'], 'tab');
}
$switchtype = is_array($fattr['titles']['switchType']) && !empty($fattr['titles']['switchType'][0]) ? $fattr['titles']['switchType'][0] : 'click';
$switchtype = in_array(strtolower($switchtype), ['click', 'mouseover']) ? $switchtype : 'click';
$html .= '<div id="'.$colname.'" class="'.$cn.'"'.$style.' switchtype="'.$switchtype.'">'.$title;
$html .= getframehtml($coldata);
$html .= '</div>';
}
}
$html .= '<div id="'.$fattr['name'].'_content" class="tb-c"></div>';
$html .= '<script type="text/javascript">initTab("'.$fattr['name'].'","'.$switchtype.'");</script>';
$html .= '</div>';
} elseif($flag == 'block') {
$battr = $content['attr'];
$bid = intval(str_replace('portal_block_', '', $battr['name']));
if(!empty($bid)) {
$html .= "<!--{block/{$bid}}-->";
$_G['curtplbid'][$bid] = $bid;
}
}
}
return $html;
}
function gettitlestyle($title) {
$style = '';
if(is_array($title['style']) && count($title['style'])) {
foreach($title['style'] as $k => $v) {
$style .= trimdxtpllang($k).':'.trimdxtpllang($v).';';
}
}
$style = $style ? ' style=\''.$style.'\'' : '';
return $style;
}
function checkhastitle($title) {
if(!is_array($title)) return false;
foreach($title as $k => $v) {
if(strval($k) == 'className') continue;
if(!empty($v['text'])) return true;
}
return false;
}
function gettitlehtml($title, $type) {
global $_G;
if(!is_array($title)) return '';
$html = $one = $style = $color = '';
foreach($title as $k => $v) {
if(in_array(strval($k), ['className', 'style'])) continue;
if(empty($v['src']) && empty($v['text'])) continue;
$v['className'] = trimdxtpllang($v['className']);
$v['font-size'] = intval($v['font-size']);
$v['margin'] = intval($v['margin']);
$v['float'] = trimdxtpllang($v['float']);
$v['color'] = trimdxtpllang($v['color']);
$v['src'] = trimdxtpllang($v['src']);
$v['href'] = trimdxtpllang($v['href']);
$v['text'] = dhtmlspecialchars(str_replace(['{', '$'], ['{ ', '$ '], $v['text']));
$one = "<span class=\"{$v['className']}\"";
$style = $color = '';
$style .= empty($v['font-size']) ? '' : "font-size:{$v['font-size']}px;";
$style .= empty($v['float']) ? '' : "float:{$v['float']};";
$margin_ = empty($v['float']) ? 'left' : $v['float'];
$style .= empty($v['margin']) ? '' : "margin-{$margin_}:{$v['margin']}px;";
$color = empty($v['color']) ? '' : "color:{$v['color']};";
$img = !empty($v['src']) ? '<img src="'.$v['src'].'" class="vm" alt="'.$v['text'].'"/>' : '';
if(empty($v['href'])) {
$style = empty($style) && empty($color) ? '' : ' style="'.$style.$color.'"';
$one .= $style.">$img{$v['text']}";
} else {
$style = empty($style) ? '' : ' style="'.$style.'"';
$colorstyle = empty($color) ? '' : ' style="'.$color.'"';
$one .= $style.'><a href="'.$v['href'].'" target="_blank"'.$colorstyle.'>'.$img.$v['text'].'</a>';
}
$one .= '</span>';
$siteurl = str_replace(['/', '.'], ['\/', '\.'], $_G['siteurl']);
$one = preg_replace('/\"'.$siteurl.'(.*?)\"/', '"$1"', $one);
$html = $k === 'first' ? $one.$html : $html.$one;
}
return $html;
}
function gettheme($type) {
$themes = [];
$themedirs = dreaddir(DISCUZ_ROOT."/static/$type");
foreach($themedirs as $key => $dirname) {
$now_dir = DISCUZ_ROOT."/static/$type/$dirname";
if(file_exists($now_dir.'/style.css') && file_exists($now_dir.'/preview.jpg')) {
$themes[] = [
'dir' => $type.'/'.$dirname,
'name' => getcssname($type.'/'.$dirname)
];
}
}
return $themes;
}
function getcssname($dirname) {
$css = @file_get_contents(DISCUZ_ROOT.'./static/'.$dirname.'/style.css');
if($css) {
preg_match('/\[name\](.+?)\[\/name\]/i', trim($css), $mathes);
if(!empty($mathes[1])) $name = dhtmlspecialchars($mathes[1]);
} else {
$name = 'No name';
}
return $name;
}
function checksecurity($str) {
$filter = [
'/\/\*[\n\r]*(.+?)[\n\r]*\*\//is',
'/[^a-z0-9\\\]+/i',
'/important/i',
];
if(preg_match("/[^a-z0-9:;'\(\)!\.#\-_\s\{\}\/\,\"\?\>\=\?\%]+/i", $str)) {
showmessage('css_contains_elements_of_insecurity');
}
$str = preg_replace($filter, '', $str);
if(preg_match('/(expression|import|javascript)/i', $str)) {
showmessage('css_contains_elements_of_insecurity');
}
return true;
}
function block_export($bids) {
$return = ['block' => [], 'style' => []];
if(empty($bids)) {
return;
}
$styleids = [];
foreach(table_common_block::t()->fetch_all($bids) as $value) {
$value['param'] = dunserialize($value['param']);
if(!empty($value['blockstyle'])) $value['blockstyle'] = dunserialize($value['blockstyle']);
$return['block'][$value['bid']] = $value;
if(!empty($value['styleid'])) $styleids[] = intval($value['styleid']);
}
if($styleids) {
$styleids = array_unique($styleids);
foreach(table_common_block_style::t()->fetch_all($styleids) as $value) {
$value['template'] = dunserialize($value['template']);
if(!empty($value['fields'])) $value['fields'] = dunserialize($value['fields']);
$return['style'][$value['styleid']] = $value;
}
}
return $return;
}
function block_import($data) {
global $_G;
if(!is_array($data['block'])) {
return;
}
$stylemapping = [];
if($data['style']) {
$hashes = $styles = [];
foreach($data['style'] as $value) {
$hashes[] = $value['hash'];
$styles[$value['hash']] = $value['styleid'];
}
if(!empty($hashes)) {
foreach(table_common_block_style::t()->fetch_all_by_hash($hashes) as $value) {
$id = $styles[$value['hash']];
$stylemapping[$id] = intval($value['styleid']);
unset($styles[$value['hash']]);
}
}
foreach($styles as $id) {
$style = $data['style'][$id];
$style['styleid'] = '';
if(is_array($style['template'])) {
$style['template'] = serialize($style['template']);
}
if(is_array($style['fields'])) {
$style['fields'] = serialize($style['fields']);
}
$newid = table_common_block_style::t()->insert($style, true);
$stylemapping[$id] = $newid;
}
}
$blockmapping = [];
foreach($data['block'] as $block) {
$oid = $block['bid'];
if(!empty($block['styleid'])) {
$block['styleid'] = intval($stylemapping[$block['styleid']]);
}
$block['bid'] = '';
$block['uid'] = $_G['uid'];
$block['username'] = $_G['username'];
$block['dateline'] = 0;
$block['notinherited'] = 0;
if(is_array($block['param'])) {
$block['param'] = serialize($block['param']);
}
if(is_array($block['blockstyle'])) {
$block['blockstyle'] = serialize($block['blockstyle']);
}
$newid = table_common_block::t()->insert($block, true);
$blockmapping[$oid] = $newid;
}
require_once libfile('function/block');
blockclass_cache();
return $blockmapping;
}
function getobjbyname($name, $data) {
if(!$name || !$data) return false;
foreach((array)$data as $id => $content) {
list($type, $curname) = explode('`', $id);
if($curname == $name) {
return ['type' => $type, 'content' => $content];
} elseif($type == 'frame' || $type == 'tab' || $type == 'column') {
$r = getobjbyname($name, $content);
if($r) return $r;
}
}
return false;
}
function getframeblock($data) {
global $_G;
if(!isset($_G['curtplbid'])) $_G['curtplbid'] = [];
if(!isset($_G['curtplframe'])) $_G['curtplframe'] = [];
foreach((array)$data as $id => $content) {
list($flag, $name) = explode('`', $id);
if($flag == 'frame' || $flag == 'tab') {
foreach((array)$content as $colid => $coldata) {
list($colflag, $colname) = explode('`', $colid);
if($colflag == 'column') {
getframeblock($coldata);
}
}
$_G['curtplframe'][$name] = ['type' => $flag, 'name' => $name];
} elseif($flag == 'block') {
$battr = $content['attr'];
$bid = intval(str_replace('portal_block_', '', $battr['name']));
if(!empty($bid)) {
$_G['curtplbid'][$bid] = $bid;
}
}
}
}
function getcssdata($css) {
global $_G;
if(empty($css)) return '';
$reglist = [];
foreach((array)$_G['curtplframe'] as $value) {
$reglist[] = '#'.$value['name'].'.*?\{.*?\}';
}
foreach((array)$_G['curtplbid'] as $value) {
$reglist[] = '#portal_block_'.$value.'.*?\{.*?\}';
}
$reg = implode('|', $reglist);
preg_match_all('/'.$reg.'/', $css, $csslist);
return implode('', $csslist[0]);
}
function import_diy($file) {
global $_G;
$css = '';
$html = [];
$arr = [];
$content = file_get_contents($file);
require_once libfile('class/xml');
if(empty($content)) return $arr;
if(fileext($file) == 'php') {
$content = preg_replace('/^\<\?php(.+?)\?\>\s+/i', '', $content);
}
$content = preg_replace('/\<\!\-\-\[name\](.+?)\[\/name\]\-\-\>\s+/i', '', $content);
$diycontent = xml2array($content);
$diycontent = is_array($diycontent) ? $diycontent : [];
if($diycontent) {
foreach($diycontent['layoutdata'] as $key => $value) {
if(!empty($value)) getframeblock($value);
}
$newframe = [];
foreach($_G['curtplframe'] as $value) {
$newframe[] = $value['type'].random(6);
}
$mapping = [];
if(!empty($diycontent['blockdata'])) {
$mapping = block_import($diycontent['blockdata']);
unset($diycontent['blockdata']);
}
$oldbids = $newbids = [];
if(!empty($mapping)) {
foreach($mapping as $obid => $nbid) {
$oldbids[] = '#portal_block_'.$obid.' ';
$newbids[] = '#portal_block_'.$nbid.' ';
$oldbids[] = '[portal_block_'.$obid.']';
$newbids[] = '[portal_block_'.$nbid.']';
$oldbids[] = '~portal_block_'.$obid.'"';
$newbids[] = '~portal_block_'.$nbid.'"';
}
}
require_once libfile('class/xml');
$xml = array2xml($diycontent['layoutdata'], true);
$xml = str_replace($oldbids, $newbids, $xml);
$xml = str_replace((array)array_keys($_G['curtplframe']), $newframe, $xml);
$diycontent['layoutdata'] = xml2array($xml);
$css = str_replace($oldbids, $newbids, $diycontent['spacecss']);
$css = str_replace((array)array_keys($_G['curtplframe']), $newframe, $css);
foreach($diycontent['layoutdata'] as $key => $value) {
$html[$key] = getframehtml($value);
}
}
if(!empty($html)) {
$xml = array2xml($html, true);
require_once libfile('function/block');
$mapping = is_array($mapping) ? $mapping : [$mapping];
block_get_batch(implode(',', $mapping));
foreach($mapping as $bid) {
$blocktag[] = '<!--{block/'.$bid.'}-->';
$blockcontent[] = block_fetch_content($bid);
}
$xml = str_replace($blocktag, $blockcontent, $xml);
$html = xml2array($xml);
$arr = ['html' => $html, 'css' => $css, 'mapping' => $mapping];
}
return $arr;
}
function checkprimaltpl($template) {
global $_G;
$tpldirectory = '';
if(str_contains($template, ':')) {
list($tpldirectory, $template) = explode(':', $template);
}
if(!$template || preg_match('/(\.)(exe|jsp|asp|aspx|cgi|fcgi|pl)(\.|$)/i', $template)) {
return 'diy_template_filename_invalid';
}
if(str_contains($template, '..') || str_contains($template, "\0")) {
return 'diy_template_filename_invalid';
}
$tpldirectoryarr = explode('/', trim($tpldirectory, './'));
if(str_contains($tpldirectory, '..') || str_contains($tpldirectory, "\0") || ($tpldirectoryarr[0] != 'template' && $tpldirectoryarr[0] != 'source')) {
return 'diy_tpldirectory_invalid';
}
$tpldirectory = !$tpldirectory ? DISCUZ_TEMPLATE($_G['cache']['style_default']['tpldir']) : DISCUZ_TEMPLATE($tpldirectory);
$primaltplname = $tpldirectory.'/'.$template.'.htm';
if(!file_exists($primaltplname)) {
$primaltplname = $tpldirectory.'/'.$template.'.php';
if(!file_exists($primaltplname)) {
$primaltplname = DISCUZ_TEMPLATE('./template/default/').$template.'.htm';
if(!file_exists($primaltplname)) {
$primaltplname = DISCUZ_TEMPLATE('./template/default/').$template.'.php';
}
}
}
$pathinfos = pathinfo($primaltplname);
if(strtolower($pathinfos['extension']) != 'php' && strtolower($pathinfos['extension']) != 'htm') {
return 'diy_template_extension_invalid';
}
if(!is_file($primaltplname)) {
$tplfile = table_common_template_file::t()->get_file(1, '/'.$template.'.htm');
if(!$tplfile) {
return 'diy_template_noexist';
}
}
return true;
}
function article_tagnames() {
global $_G;
if(!isset($_G['article_tagnames'])) {
$_G['article_tagnames'] = [];
for($i = 1; $i <= 8; $i++) {
if(isset($_G['setting']['article_tags'][$i])) {
$_G['article_tagnames'][$i] = $_G['setting']['article_tags'][$i];
} else {
$_G['article_tagnames'][$i] = lang('portalcp', 'article_tag').$i;
}
}
}
return $_G['article_tagnames'];
}
function category_showselect($type, $name = 'catid', $shownull = true, $current = '') {
global $_G;
if(!in_array($type, ['portal', 'blog', 'album'])) {
return '';
}
loadcache($type.'category');
$category = $_G['cache'][$type.'category'];
$select = defined('IN_MOBILE') ? "<select id=\"$name\" name=\"$name\" class=\"sort_sel\">" : "<select id=\"$name\" name=\"$name\" class=\"ps vm\">";
if($shownull) {
$select .= '<option value="">'.lang('portalcp', 'select_category').'</option>';
}
foreach($category as $value) {
if($value['level'] == 0) {
$selected = ($current && $current == $value['catid']) ? 'selected="selected"' : '';
$select .= "<option value=\"{$value['catid']}\"$selected>{$value['catname']}</option>";
if(!$value['children']) {
continue;
}
foreach($value['children'] as $catid) {
$selected = ($current && $current == $catid) ? 'selected="selected"' : '';
$select .= "<option value=\"{$category[$catid]['catid']}\"$selected>-- {$category[$catid]['catname']}</option>";
if($category[$catid]['children']) {
foreach($category[$catid]['children'] as $catid2) {
$selected = ($current && $current == $catid2) ? 'selected="selected"' : '';
$select .= "<option value=\"{$category[$catid2]['catid']}\"$selected>---- {$category[$catid2]['catname']}</option>";
}
}
}
}
}
$select .= '</select>';
return $select;
}
function category_get_childids($type, $catid, $depth = 3) {
global $_G;
if(!in_array($type, ['portal', 'blog', 'album'])) {
return [];
}
loadcache($type.'category');
$category = $_G['cache'][$type.'category'];
$catids = [];
if(isset($category[$catid]) && !empty($category[$catid]['children']) && $depth) {
$catids = $category[$catid]['children'];
foreach($category[$catid]['children'] as $id) {
$catids = array_merge($catids, category_get_childids($type, $id, $depth - 1));
}
}
return $catids;
}
function category_get_num($type, $catid) {
global $_G;
if(!in_array($type, ['portal', 'blog', 'album'])) {
return [];
}
loadcache($type.'category');
$category = $_G['cache'][$type.'category'];
$numkey = $type == 'portal' ? 'articles' : 'num';
if(!isset($_G[$type.'category_nums'])) {
$_G[$type.'category_nums'] = [];
$tables = ['portal' => 'portal_category', 'blog' => 'home_blog_category', 'album' => 'home_album_category'];
$query = C::t($tables[$type])->fetch_all_numkey($numkey);
foreach($query as $value) {
$_G[$type.'category_nums'][$value['catid']] = intval($value[$numkey]);
}
}
$nums = $_G[$type.'category_nums'];
$num = intval($nums[$catid]);
if($category[$catid]['children']) {
foreach($category[$catid]['children'] as $id) {
$num += category_get_num($type, $id);
}
}
return $num;
}
function updatetopic($topic = '') {
global $_G;
$topicid = empty($topic) ? '' : $topic['topicid'];
include_once libfile('function/home');
$_POST['title'] = getstr(trim($_POST['title']), 255);
$_POST['name'] = getstr(trim($_POST['name']), 255);
$_POST['domain'] = getstr(trim($_POST['domain']), 255);
if(empty($_POST['title'])) {
return 'topic_title_cannot_be_empty';
}
if(empty($_POST['name'])) {
$_POST['name'] = $_POST['title'];
}
if(!preg_match('/^[\w\_\.]+$/i', $_POST['name'])) {
return 'topic_created_failed';
}
if(!$topicid || $_POST['name'] != $topic['name']) {
if(($value = table_portal_topic::t()->fetch_by_name($_POST['name']))) {
return 'topic_name_duplicated';
}
}
if($topicid && !empty($topic['domain'])) {
require_once libfile('function/delete');
deletedomain($topicid, 'topic');
}
if(!empty($_POST['domain'])) {
require_once libfile('function/domain');
domaincheck($_POST['domain'], $_G['setting']['domain']['root']['topic'], 1);
}
$setarr = [
'title' => $_POST['title'],
'name' => $_POST['name'],
'domain' => $_POST['domain'],
'summary' => getstr($_POST['summary']),
'keyword' => getstr($_POST['keyword']),
'useheader' => !empty($_POST['useheader']) ? '1' : '0',
'usefooter' => !empty($_POST['usefooter']) ? '1' : '0',
'allowcomment' => !empty($_POST['allowcomment']) ? 1 : 0,
'closed' => !empty($_POST['closed']) ? 0 : 1,
];
if($_POST['deletecover'] && $topic['cover']) {
if($topic['picflag'] != '0') pic_delete(str_replace('portal/', '', $topic['cover']), 'portal', 0, $topic['picflag'] == '2' ? '1' : '0');
$setarr['cover'] = '';
} else {
if($_FILES['cover']['tmp_name']) {
if(!empty($topic['cover']) && $topic['picflag'] != '0') pic_delete(str_replace('portal/', '', $topic['cover']), 'portal', 0, $topic['picflag'] == '2' ? '1' : '0');
$pic = pic_upload($_FILES['cover'], 'portal');
if($pic) {
$setarr['cover'] = 'portal/'.$pic['pic'];
$setarr['picflag'] = $pic['remote'] ? '2' : '1';
}
} else {
if(!empty($_POST['cover']) && $_POST['cover'] != $topic['cover']) {
if(!empty($topic['cover']) && $topic['picflag'] != '0') pic_delete(str_replace('portal/', '', $topic['cover']), 'portal', 0, $topic['picflag'] == '2' ? '1' : '0');
$setarr['cover'] = $_POST['cover'];
$setarr['picflag'] = '0';
}
}
}
$primaltplname = '';
if(empty($topicid) || empty($topic['primaltplname']) || ($topic['primaltplname'] && $topic['primaltplname'] != $_POST['primaltplname'])) {
$primaltplname = $_POST['primaltplname'];
if(!isset($_POST['signs'][dsign($primaltplname)])) {
return 'diy_sign_invalid';
}
$checktpl = checkprimaltpl($primaltplname);
if($checktpl !== true) {
return $checktpl;
}
$setarr['primaltplname'] = $primaltplname;
}
if($topicid) {
table_portal_topic::t()->update($topicid, $setarr);
table_common_diy_data::t()->update_diy('portal/portal_topic_content_'.$topicid, getdiydirectory($topic['primaltplname']), ['name' => $setarr['title']]);
} else {
$setarr['uid'] = $_G['uid'];
$setarr['username'] = $_G['username'];
$setarr['dateline'] = $_G['timestamp'];
$setarr['closed'] = '1';
$topicid = addtopic($setarr);
if(!$topicid) {
return 'topic_created_failed';
}
}
if(!empty($_POST['domain'])) {
table_common_domain::t()->insert(['domain' => $_POST['domain'], 'domainroot' => $_G['setting']['domain']['root']['topic'], 'id' => $topicid, 'idtype' => 'topic']);
}
$tpldirectory = '';
if($primaltplname && (empty($topic['primaltplname']) || $topic['primaltplname'] != $primaltplname)) {
$targettplname = 'portal/portal_topic_content_'.$topicid;
if(str_contains($primaltplname, ':')) {
list($tpldirectory, $primaltplname) = explode(':', $primaltplname);
}
table_common_diy_data::t()->update_diy($targettplname, getdiydirectory($topic['primaltplname'] ?? ''), ['primaltplname' => $primaltplname, 'tpldirectory' => $tpldirectory]);
updatediytemplate($targettplname);
}
if($primaltplname && empty($topic['primaltplname'])) {
$tpldirectory = ($tpldirectory ? $tpldirectory : $_G['cache']['style_default']['tpldir']);
$content = file_get_contents(DISCUZ_TEMPLATE($tpldirectory).'/'.$primaltplname.'.htm');
$tplfile = DISCUZ_DATA.'./diy/'.$tpldirectory.'/portal/portal_topic_content_'.$topicid.'.htm';
$tplpath = dirname($tplfile);
if(!is_dir($tplpath)) {
dmkdir($tplpath);
}
file_put_contents($tplfile, $content);
}
include_once libfile('function/cache');
updatecache(['diytemplatename', 'setting']);
return $topicid;
}
function addtopic($topic) {
global $_G;
$topicid = '';
if($topic && is_array($topic)) {
$topicid = table_portal_topic::t()->insert($topic, true);
if(!empty($topicid)) {
$diydata = [
'targettplname' => 'portal/portal_topic_content_'.$topicid,
'name' => $topic['title'],
'uid' => $_G['uid'],
'username' => $_G['username'],
'dateline' => TIMESTAMP,
];
table_common_diy_data::t()->insert($diydata);
}
}
return $topicid;
}
function getblockperm($bid) {
global $_G;
$perm = ['allowmanage' => '0', 'allowrecommend' => '0', 'needverify' => '1'];
$bid = max(0, intval($bid));
if(!$bid) return $perm;
$allperm = ['allowmanage' => '1', 'allowrecommend' => '1', 'needverify' => '0'];
if(checkperm('allowdiy')) {
return $allperm;
} elseif(!getstatus($_G['member']['allowadmincp'], 4) && !getstatus($_G['member']['allowadmincp'], 5) && !getstatus($_G['member']['allowadmincp'], 6) && !checkperm('allowmanagetopic') && !checkperm('allowaddtopic')) {
return $perm;
}
require_once libfile('class/blockpermission');
$blockpermsission = &block_permission::instance();
$perm = $blockpermsission->get_perms_by_bid($bid, $_G['uid']);
$perm = $perm ? current($perm) : '';
if(empty($perm)) {
if(($block = table_common_block::t()->fetch($bid))) {
$block = array_merge($block, table_common_template_block::t()->fetch_by_bid($bid));
}
if(empty($block['targettplname']) && empty($block['blocktype'])) {
if(($_G['group']['allowmanagetopic'] || ($_G['group']['allowaddtopic'] && $block['uid'] == $_G['uid']))) {
$perm = $allperm;
}
} elseif(str_starts_with($block['targettplname'], 'portal/portal_topic_content_')) {
if(!empty($_G['group']['allowmanagetopic'])) {
$perm = $allperm;
} elseif($_G['group']['allowaddtopic']) {
$id = str_replace('portal/portal_topic_content_', '', $block['targettplname']);
$topic = table_portal_topic::t()->fetch(intval($id));
if($topic['uid'] == $_G['uid']) {
$perm = $allperm;
}
}
}
}
return $perm;
}
function check_articleperm($catid, $aid = 0, $article = [], $isverify = false, $return = false) {
global $_G;
if(empty($catid)) {
if(!$return) {
showmessage('article_category_empty');
} else {
return 'article_category_empty';
}
}
if($_G['group']['allowmanagearticle'] || (empty($aid) && $_G['group']['allowpostarticle'])) {
return true;
}
$permission = getallowcategory($_G['uid']);
if(isset($permission[$catid])) {
if($permission[$catid]['allowmanage'] || (empty($aid) && $permission[$catid]['allowpublish'])) {
return true;
}
}
if(!$isverify && $aid && !empty($article['uid']) && $article['uid'] == $_G['uid'] && ($article['status'] == 1 && $_G['group']['allowpostarticlemod'] || empty($_G['group']['allowpostarticlemod']))) {
return true;
}
if(!$return) {
showmessage('article_edit_nopermission');
} else {
return 'article_edit_nopermission';
}
}
function addportalarticlecomment($id, $message, $idtype = 'aid') {
global $_G;
$id = intval($id);
if(empty($id)) {
return 'comment_comment_noexist';
}
$message = getstr($message, $_G['group']['allowcommentarticle'], 0, 0, 1, 0);
if(strlen($message) < 2) return 'content_is_too_short';
$idtype = in_array($idtype, ['aid', 'topicid']) ? $idtype : 'aid';
$tablename = $idtype == 'aid' ? 'portal_article_title' : 'portal_topic';
$data = C::t($tablename)->fetch($id);
if(empty($data)) {
return 'comment_comment_noexist';
}
if($data['allowcomment'] != 1) {
return 'comment_comment_notallowed';
}
$message = censor($message, NULL, FALSE, FALSE);
if(censormod($message) || $_G['group']['allowcommentarticlemod']) {
$comment_status = 1;
} else {
$comment_status = 0;
}
$setarr = [
'uid' => $_G['uid'],
'username' => $_G['username'],
'id' => $id,
'idtype' => $idtype,
'postip' => $_G['clientip'],
'port' => $_G['remoteport'],
'dateline' => $_G['timestamp'],
'status' => $comment_status,
'message' => $message
];
$pcid = table_portal_comment::t()->insert($setarr, true);
if($comment_status == 1) {
updatemoderate($idtype.'_cid', $pcid);
$notifykey = $idtype == 'aid' ? 'verifyacommont' : 'verifytopiccommont';
manage_addnotify($notifykey);
}
$tablename = $idtype == 'aid' ? 'portal_article_count' : 'portal_topic';
C::t($tablename)->increase($id, ['commentnum' => 1]);
table_common_member_status::t()->update($_G['uid'], ['lastpost' => $_G['timestamp']], 'UNBUFFERED');
if($data['uid'] != $_G['uid']) {
updatecreditbyaction('portalcomment', 0, [], $idtype.$id);
}
return 'do_success';
}
function trimdxtpllang($s) {
return str_replace(['{', '$', '<', '>'], ['{ ', '$ ', '', ''], $s);
}
function addrelatedarticle($aid, $raids) {
table_portal_article_related::t()->delete_by_aid_raid($aid, $aid);
if($raids) {
$relatedarr = [];
$relatedarr = array_map('intval', $raids);
$relatedarr = array_unique($relatedarr);
$relatedarr = array_filter($relatedarr);
if($relatedarr) {
$list = table_portal_article_title::t()->fetch_all($relatedarr);
table_portal_article_related::t()->insert_batch($aid, $list);
}
}
return true;
}
function getprimaltplname($filename) {
global $_G, $lang;
$tpldirectory = '';
if(str_contains($filename, ':')) {
list($tpldirectory, $filename) = explode(':', $filename);
}
if(empty($tpldirectory)) {
$tpldirectory = ($_G['cache']['style_default']['tpldir'] ? $_G['cache']['style_default']['tpldir'] : './template/default');
}
if(tplfile::file_exists(DISCUZ_TEMPLATE($tpldirectory.'/'.$filename))) {
$file = DISCUZ_TEMPLATE($tpldirectory.'/'.$filename);
} elseif(tplfile::file_exists(DISCUZ_TEMPLATE($tpldirectory).'/'.substr($filename, 0, -4).'.php')) {
$file = DISCUZ_TEMPLATE($tpldirectory.'/'.substr($filename, 0, -4).'.php');
} else {
$file = DISCUZ_TEMPLATE('./template/default/'.$filename);
}
$content = '';
$name = $tpldirectory.'/'.$filename;
if(tplfile::file_exists($file)) {
$content = tplfile::file_get_contents($file);
if($content) {
preg_match('/\<\!\-\-\[name\](.+?)\[\/name\]\-\-\>/i', trim($content), $mathes);
if(!empty($mathes[1])) {
preg_match('/^\{lang (.+?)\}$/', $mathes[1], $langs);
if(!empty($langs[1])) {
$name = !$lang[$langs[1]] ? $langs[1] : $lang[$langs[1]];
} else {
$name = dhtmlspecialchars($mathes[1]);
}
}
}
}
return $name;
}
function getdiydirectory($value) {
$directory = '';
if($value && str_contains($value, ':')) {
list($directory) = explode(':', $value);
}
return $directory;
}
function isportalfile($dir, $f, $type = '') {
if($dir != '/portal' && $dir != '/touch/portal') {
return false;
}
$isList = str_starts_with($f, 'list_');
$isView = str_starts_with($f, 'view_');
$isTopic = str_starts_with($f, 'portal_topic_');
if($type == 'list') {
return $isList;
} elseif($type == 'view') {
return $isView;
} elseif($type == 'topic') {
return $isTopic;
} else {
return $isList || $isView || $isTopic;
}
}
function getportalfile($tplname, $default) {
global $_G;
if(!str_contains($tplname, ':')) {
return false;
}
$styleid = 1;
$path = '';
if(defined('IN_MOBILE')) {
$styleid = 2;
$path = 'touch/';
}
list($tpldir, $tplname) = explode(':', $tplname);
if(file_exists(DISCUZ_TEMPLATE($tpldir).'/'.$path.$tplname.'.htm') || file_exists(DISCUZ_TEMPLATE($tpldir).'/'.$path.$tplname.'.php')) {
return [$tplname, $tpldir];
}
$check = [];
$touchStyle = 'style_'.$_G['setting']['styleid'.$styleid];
loadcache($touchStyle);
if(!empty($_G['cache'][$touchStyle]) &&
($tpldir = $_G['cache'][$touchStyle]['directory'])) {
$check[DISCUZ_TEMPLATE($tpldir).'/'.$path.$tplname] = [$tplname, $tpldir];
}
$check[DISCUZ_TEMPLATE('default').'/'.$path.$tplname] = [$tplname, './template/default'];
foreach($check as $file => $value) {
if(file_exists($file.'.php') || file_exists($file.'.htm')) {
return $value;
}
}
return false;
}