subscriptionController.php 15 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369
  1. <?php
  2. declare(strict_types=1);
  3. /**
  4. * Controller to handle subscription actions.
  5. */
  6. class FreshRSS_subscription_Controller extends FreshRSS_ActionController {
  7. /**
  8. * This action is called before every other action in that class. It is
  9. * the common boilerplate for every action. It is triggered by the
  10. * underlying framework.
  11. */
  12. #[\Override]
  13. public function firstAction(): void {
  14. if (!FreshRSS_Auth::hasAccess()) {
  15. Minz_Error::error(403);
  16. }
  17. $catDAO = FreshRSS_Factory::createCategoryDao();
  18. $catDAO->checkDefault();
  19. $this->view->categories = $catDAO->listSortedCategories(false, true) ?: [];
  20. $signalError = false;
  21. foreach ($this->view->categories as $cat) {
  22. $feeds = $cat->feeds();
  23. foreach ($feeds as $feed) {
  24. if ($feed->inError()) {
  25. $signalError = true;
  26. }
  27. }
  28. if ($signalError) {
  29. break;
  30. }
  31. }
  32. $this->view->signalError = $signalError;
  33. }
  34. /**
  35. * This action handles the main subscription page
  36. *
  37. * It displays categories and associated feeds.
  38. */
  39. public function indexAction(): void {
  40. FreshRSS_View::appendScript(Minz_Url::display('/scripts/category.js?' . @filemtime(PUBLIC_PATH . '/scripts/category.js')));
  41. FreshRSS_View::appendScript(Minz_Url::display('/scripts/feed.js?' . @filemtime(PUBLIC_PATH . '/scripts/feed.js')));
  42. FreshRSS_View::prependTitle(_t('sub.title') . ' · ');
  43. $this->view->onlyFeedsWithError = Minz_Request::paramBoolean('error');
  44. $id = Minz_Request::paramInt('id');
  45. $this->view->displaySlider = false;
  46. if ($id !== 0) {
  47. $type = Minz_Request::paramString('type');
  48. $this->view->displaySlider = true;
  49. switch ($type) {
  50. case 'category':
  51. $categoryDAO = FreshRSS_Factory::createCategoryDao();
  52. $this->view->category = $categoryDAO->searchById($id);
  53. break;
  54. default:
  55. $feedDAO = FreshRSS_Factory::createFeedDao();
  56. $this->view->feed = $feedDAO->searchById($id) ?? FreshRSS_Feed::default();
  57. break;
  58. }
  59. }
  60. }
  61. /**
  62. * This action handles the feed configuration page.
  63. *
  64. * It displays the feed configuration page.
  65. * If this action is reached through a POST request, it stores all new
  66. * configuration values then sends a notification to the user.
  67. *
  68. * The options available on the page are:
  69. * - name
  70. * - description
  71. * - website URL
  72. * - feed URL
  73. * - category id (default: default category id)
  74. * - CSS path to article on website
  75. * - display in main stream (default: 0)
  76. * - HTTP authentication
  77. * - number of article to retain (default: -2)
  78. * - refresh frequency (default: 0)
  79. * Default values are empty strings unless specified.
  80. */
  81. public function feedAction(): void {
  82. if (Minz_Request::paramBoolean('ajax')) {
  83. $this->view->_layout(null);
  84. } else {
  85. FreshRSS_View::appendScript(Minz_Url::display('/scripts/feed.js?' . @filemtime(PUBLIC_PATH . '/scripts/feed.js')));
  86. }
  87. $feedDAO = FreshRSS_Factory::createFeedDao();
  88. $this->view->feeds = $feedDAO->listFeeds();
  89. $id = Minz_Request::paramInt('id');
  90. if ($id === 0 || !isset($this->view->feeds[$id])) {
  91. Minz_Error::error(404);
  92. return;
  93. }
  94. $feed = $this->view->feeds[$id];
  95. $this->view->feed = $feed;
  96. FreshRSS_View::prependTitle($feed->name() . ' · ' . _t('sub.title.feed_management') . ' · ');
  97. if (Minz_Request::isPost()) {
  98. $unicityCriteria = Minz_Request::paramString('unicityCriteria');
  99. if (in_array($unicityCriteria, ['id', '', null], strict: true)) {
  100. $unicityCriteria = null;
  101. }
  102. if ($unicityCriteria === null && $feed->attributeBoolean('hasBadGuids')) { // Legacy
  103. $unicityCriteria = 'link';
  104. }
  105. $feed->_attribute('hasBadGuids', null); // Remove legacy
  106. $feed->_attribute('unicityCriteria', $unicityCriteria);
  107. $feed->_attribute('unicityCriteriaForced', Minz_Request::paramBoolean('unicityCriteriaForced') ? true : null);
  108. $user = Minz_Request::paramString('http_user_feed' . $id);
  109. $pass = Minz_Request::paramString('http_pass_feed' . $id);
  110. $httpAuth = '';
  111. if ($user !== '' && $pass !== '') { //TODO: Sanitize
  112. $httpAuth = $user . ':' . $pass;
  113. }
  114. $feed->_ttl(Minz_Request::paramInt('ttl') ?: FreshRSS_Feed::TTL_DEFAULT);
  115. $feed->_mute(Minz_Request::paramBoolean('mute'));
  116. $feed->_attribute('read_upon_gone', Minz_Request::paramTernary('read_upon_gone'));
  117. $feed->_attribute('mark_updated_article_unread', Minz_Request::paramTernary('mark_updated_article_unread'));
  118. $feed->_attribute('read_upon_reception', Minz_Request::paramTernary('read_upon_reception'));
  119. $feed->_attribute('clear_cache', Minz_Request::paramTernary('clear_cache'));
  120. $keep_max_n_unread = Minz_Request::paramTernary('keep_max_n_unread') === true ? Minz_Request::paramInt('keep_max_n_unread') : null;
  121. $feed->_attribute('keep_max_n_unread', $keep_max_n_unread >= 0 ? $keep_max_n_unread : null);
  122. $read_when_same_title_in_feed = Minz_Request::paramString('read_when_same_title_in_feed');
  123. if ($read_when_same_title_in_feed === '') {
  124. $read_when_same_title_in_feed = null;
  125. } else {
  126. $read_when_same_title_in_feed = (int)$read_when_same_title_in_feed;
  127. if ($read_when_same_title_in_feed <= 0) {
  128. $read_when_same_title_in_feed = false;
  129. }
  130. }
  131. $feed->_attribute('read_when_same_title_in_feed', $read_when_same_title_in_feed);
  132. $cookie = Minz_Request::paramString('curl_params_cookie', plaintext: true);
  133. $cookie_file = Minz_Request::paramBoolean('curl_params_cookiefile');
  134. $max_redirs = Minz_Request::paramInt('curl_params_redirects');
  135. $useragent = Minz_Request::paramString('curl_params_useragent', plaintext: true);
  136. $proxy_address = Minz_Request::paramString('curl_params', plaintext: true);
  137. $proxy_type = Minz_Request::paramString('proxy_type', plaintext: true);
  138. $request_method = Minz_Request::paramString('curl_method', plaintext: true);
  139. $request_fields = Minz_Request::paramString('curl_fields', plaintext: true);
  140. $headers = Minz_Request::paramTextToArray('http_headers', plaintext: true);
  141. $opts = [];
  142. if ($proxy_type !== '') {
  143. $opts[CURLOPT_PROXY] = $proxy_address;
  144. $opts[CURLOPT_PROXYTYPE] = (int)$proxy_type;
  145. }
  146. if ($cookie !== '') {
  147. $opts[CURLOPT_COOKIE] = $cookie;
  148. }
  149. if ($cookie_file) {
  150. // Pass empty cookie file name to enable the libcurl cookie engine
  151. // without reading any existing cookie data.
  152. $opts[CURLOPT_COOKIEFILE] = '';
  153. }
  154. if ($max_redirs != 0) {
  155. $opts[CURLOPT_MAXREDIRS] = $max_redirs;
  156. $opts[CURLOPT_FOLLOWLOCATION] = 1;
  157. }
  158. if ($useragent !== '') {
  159. $opts[CURLOPT_USERAGENT] = $useragent;
  160. }
  161. if ($request_method === 'POST') {
  162. $opts[CURLOPT_POST] = true;
  163. if ($request_fields !== '') {
  164. $opts[CURLOPT_POSTFIELDS] = $request_fields;
  165. if (json_decode($request_fields, true) !== null) {
  166. $opts[CURLOPT_HTTPHEADER] = ['Content-Type: application/json'];
  167. }
  168. }
  169. }
  170. if (!empty($headers)) {
  171. $headers = array_filter(array_map('trim', $headers));
  172. $opts[CURLOPT_HTTPHEADER] = array_merge($headers, $opts[CURLOPT_HTTPHEADER] ?? []);
  173. }
  174. $feed->_attribute('curl_params', empty($opts) ? null : $opts);
  175. $feed->_attribute('content_action', Minz_Request::paramString('content_action', true) ?: 'replace');
  176. $feed->_attribute('ssl_verify', Minz_Request::paramTernary('ssl_verify'));
  177. $timeout = Minz_Request::paramInt('timeout');
  178. $feed->_attribute('timeout', $timeout > 0 ? $timeout : null);
  179. if (Minz_Request::paramBoolean('use_default_purge_options')) {
  180. $feed->_attribute('archiving', null);
  181. } else {
  182. if (Minz_Request::paramBoolean('enable_keep_max')) {
  183. $keepMax = Minz_Request::paramInt('keep_max') ?: FreshRSS_Feed::ARCHIVING_RETENTION_COUNT_LIMIT;
  184. } else {
  185. $keepMax = false;
  186. }
  187. if (Minz_Request::paramBoolean('enable_keep_period')) {
  188. $keepPeriod = FreshRSS_Feed::ARCHIVING_RETENTION_PERIOD;
  189. if (is_numeric(Minz_Request::paramString('keep_period_count')) && preg_match('/^PT?1[YMWDH]$/', Minz_Request::paramString('keep_period_unit'))) {
  190. $keepPeriod = str_replace('1', Minz_Request::paramString('keep_period_count'), Minz_Request::paramString('keep_period_unit'));
  191. }
  192. } else {
  193. $keepPeriod = false;
  194. }
  195. $feed->_attribute('archiving', [
  196. 'keep_period' => $keepPeriod,
  197. 'keep_max' => $keepMax,
  198. 'keep_min' => Minz_Request::paramInt('keep_min'),
  199. 'keep_favourites' => Minz_Request::paramBoolean('keep_favourites'),
  200. 'keep_labels' => Minz_Request::paramBoolean('keep_labels'),
  201. 'keep_unreads' => Minz_Request::paramBoolean('keep_unreads'),
  202. ]);
  203. }
  204. $feed->_filtersAction('read', Minz_Request::paramTextToArray('filteractions_read'));
  205. $feed->_kind(Minz_Request::paramInt('feed_kind') ?: FreshRSS_Feed::KIND_RSS);
  206. if ($feed->kind() === FreshRSS_Feed::KIND_HTML_XPATH || $feed->kind() === FreshRSS_Feed::KIND_XML_XPATH) {
  207. $xPathSettings = [];
  208. if (Minz_Request::paramString('xPathItem') != '')
  209. $xPathSettings['item'] = Minz_Request::paramString('xPathItem', true);
  210. if (Minz_Request::paramString('xPathItemTitle') != '')
  211. $xPathSettings['itemTitle'] = Minz_Request::paramString('xPathItemTitle', true);
  212. if (Minz_Request::paramString('xPathItemContent') != '')
  213. $xPathSettings['itemContent'] = Minz_Request::paramString('xPathItemContent', true);
  214. if (Minz_Request::paramString('xPathItemUri') != '')
  215. $xPathSettings['itemUri'] = Minz_Request::paramString('xPathItemUri', true);
  216. if (Minz_Request::paramString('xPathItemAuthor') != '')
  217. $xPathSettings['itemAuthor'] = Minz_Request::paramString('xPathItemAuthor', true);
  218. if (Minz_Request::paramString('xPathItemTimestamp') != '')
  219. $xPathSettings['itemTimestamp'] = Minz_Request::paramString('xPathItemTimestamp', true);
  220. if (Minz_Request::paramString('xPathItemTimeFormat') != '')
  221. $xPathSettings['itemTimeFormat'] = Minz_Request::paramString('xPathItemTimeFormat', true);
  222. if (Minz_Request::paramString('xPathItemThumbnail') != '')
  223. $xPathSettings['itemThumbnail'] = Minz_Request::paramString('xPathItemThumbnail', true);
  224. if (Minz_Request::paramString('xPathItemCategories') != '')
  225. $xPathSettings['itemCategories'] = Minz_Request::paramString('xPathItemCategories', true);
  226. if (Minz_Request::paramString('xPathItemUid') != '')
  227. $xPathSettings['itemUid'] = Minz_Request::paramString('xPathItemUid', true);
  228. if (!empty($xPathSettings))
  229. $feed->_attribute('xpath', $xPathSettings);
  230. } elseif ($feed->kind() === FreshRSS_Feed::KIND_JSON_DOTNOTATION || $feed->kind() === FreshRSS_Feed::KIND_HTML_XPATH_JSON_DOTNOTATION) {
  231. $jsonSettings = [];
  232. if (Minz_Request::paramString('jsonFeedTitle') !== '') {
  233. $jsonSettings['feedTitle'] = Minz_Request::paramString('jsonFeedTitle', true);
  234. }
  235. if (Minz_Request::paramString('jsonItem') !== '') {
  236. $jsonSettings['item'] = Minz_Request::paramString('jsonItem', true);
  237. }
  238. if (Minz_Request::paramString('jsonItemTitle') !== '') {
  239. $jsonSettings['itemTitle'] = Minz_Request::paramString('jsonItemTitle', true);
  240. }
  241. if (Minz_Request::paramString('jsonItemContent') !== '') {
  242. $jsonSettings['itemContent'] = Minz_Request::paramString('jsonItemContent', true);
  243. }
  244. if (Minz_Request::paramString('jsonItemUri') !== '') {
  245. $jsonSettings['itemUri'] = Minz_Request::paramString('jsonItemUri', true);
  246. }
  247. if (Minz_Request::paramString('jsonItemAuthor') !== '') {
  248. $jsonSettings['itemAuthor'] = Minz_Request::paramString('jsonItemAuthor', true);
  249. }
  250. if (Minz_Request::paramString('jsonItemTimestamp') !== '') {
  251. $jsonSettings['itemTimestamp'] = Minz_Request::paramString('jsonItemTimestamp', true);
  252. }
  253. if (Minz_Request::paramString('jsonItemTimeFormat') !== '') {
  254. $jsonSettings['itemTimeFormat'] = Minz_Request::paramString('jsonItemTimeFormat', true);
  255. }
  256. if (Minz_Request::paramString('jsonItemThumbnail') !== '') {
  257. $jsonSettings['itemThumbnail'] = Minz_Request::paramString('jsonItemThumbnail', true);
  258. }
  259. if (Minz_Request::paramString('jsonItemCategories') !== '') {
  260. $jsonSettings['itemCategories'] = Minz_Request::paramString('jsonItemCategories', true);
  261. }
  262. if (Minz_Request::paramString('jsonItemUid') !== '') {
  263. $jsonSettings['itemUid'] = Minz_Request::paramString('jsonItemUid', true);
  264. }
  265. if (!empty($jsonSettings)) {
  266. $feed->_attribute('json_dotnotation', $jsonSettings);
  267. }
  268. if (Minz_Request::paramString('xPathToJson', plaintext: true) !== '') {
  269. $feed->_attribute('xPathToJson', Minz_Request::paramString('xPathToJson', plaintext: true));
  270. }
  271. }
  272. $feed->_attribute('path_entries_filter', Minz_Request::paramString('path_entries_filter', true));
  273. $values = [
  274. 'name' => Minz_Request::paramString('name'),
  275. 'kind' => $feed->kind(),
  276. 'description' => sanitizeHTML(Minz_Request::paramString('description', true)),
  277. 'website' => checkUrl(Minz_Request::paramString('website')) ?: '',
  278. 'url' => checkUrl(Minz_Request::paramString('url')) ?: '',
  279. 'category' => Minz_Request::paramInt('category'),
  280. 'pathEntries' => Minz_Request::paramString('path_entries'),
  281. 'priority' => Minz_Request::paramTernary('priority') === null ? FreshRSS_Feed::PRIORITY_MAIN_STREAM : Minz_Request::paramInt('priority'),
  282. 'httpAuth' => $httpAuth,
  283. 'ttl' => $feed->ttl(true),
  284. 'attributes' => $feed->attributes(),
  285. ];
  286. invalidateHttpCache();
  287. $from = Minz_Request::paramString('from');
  288. switch ($from) {
  289. case 'stats':
  290. $url_redirect = ['c' => 'stats', 'a' => 'idle', 'params' => ['id' => $id, 'from' => 'stats']];
  291. break;
  292. case 'normal':
  293. case 'reader':
  294. $get = Minz_Request::paramString('get');
  295. if ($get !== '') {
  296. $url_redirect = ['c' => 'index', 'a' => $from, 'params' => ['get' => $get]];
  297. } else {
  298. $url_redirect = ['c' => 'index', 'a' => $from];
  299. }
  300. break;
  301. default:
  302. $url_redirect = ['c' => 'subscription', 'params' => ['id' => $id]];
  303. }
  304. if ($values['url'] != '' && $feedDAO->updateFeed($id, $values) !== false) {
  305. $feed->_categoryId($values['category']);
  306. // update url and website values for faviconPrepare
  307. $feed->_url($values['url'], false);
  308. $feed->_website($values['website'], false);
  309. $feed->faviconPrepare();
  310. Minz_Request::good(_t('feedback.sub.feed.updated'), $url_redirect);
  311. } else {
  312. if ($values['url'] == '') {
  313. Minz_Log::warning('Invalid feed URL!');
  314. }
  315. Minz_Request::bad(_t('feedback.sub.feed.error'), $url_redirect);
  316. }
  317. }
  318. }
  319. /**
  320. * This action displays the bookmarklet page.
  321. */
  322. public function bookmarkletAction(): void {
  323. FreshRSS_View::prependTitle(_t('sub.title.subscription_tools') . ' . ');
  324. }
  325. /**
  326. * This action displays the page to add a new feed
  327. */
  328. public function addAction(): void {
  329. FreshRSS_View::appendScript(Minz_Url::display('/scripts/feed.js?' . @filemtime(PUBLIC_PATH . '/scripts/feed.js')));
  330. FreshRSS_View::prependTitle(_t('sub.title.add') . ' . ');
  331. }
  332. }