subscriptionController.php 14 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353
  1. <?php
  2. declare(strict_types=1);
  3. /**
  4. * Controller to handle subscription actions.
  5. */
  6. class FreshRSS_subscription_Controller extends FreshRSS_ActionController {
  7. /**
  8. * This action is called before every other action in that class. It is
  9. * the common boilerplate for every action. It is triggered by the
  10. * underlying framework.
  11. */
  12. #[\Override]
  13. public function firstAction(): void {
  14. if (!FreshRSS_Auth::hasAccess()) {
  15. Minz_Error::error(403);
  16. }
  17. $catDAO = FreshRSS_Factory::createCategoryDao();
  18. $catDAO->checkDefault();
  19. $this->view->categories = $catDAO->listSortedCategories(false, true) ?: [];
  20. $signalError = false;
  21. foreach ($this->view->categories as $cat) {
  22. $feeds = $cat->feeds();
  23. foreach ($feeds as $feed) {
  24. if ($feed->inError()) {
  25. $signalError = true;
  26. }
  27. }
  28. if ($signalError) {
  29. break;
  30. }
  31. }
  32. $this->view->signalError = $signalError;
  33. }
  34. /**
  35. * This action handles the main subscription page
  36. *
  37. * It displays categories and associated feeds.
  38. */
  39. public function indexAction(): void {
  40. FreshRSS_View::appendScript(Minz_Url::display('/scripts/category.js?' . @filemtime(PUBLIC_PATH . '/scripts/category.js')));
  41. FreshRSS_View::appendScript(Minz_Url::display('/scripts/feed.js?' . @filemtime(PUBLIC_PATH . '/scripts/feed.js')));
  42. FreshRSS_View::prependTitle(_t('sub.title') . ' · ');
  43. $this->view->onlyFeedsWithError = Minz_Request::paramBoolean('error');
  44. $id = Minz_Request::paramInt('id');
  45. $this->view->displaySlider = false;
  46. if ($id !== 0) {
  47. $type = Minz_Request::paramString('type');
  48. $this->view->displaySlider = true;
  49. switch ($type) {
  50. case 'category':
  51. $categoryDAO = FreshRSS_Factory::createCategoryDao();
  52. $this->view->category = $categoryDAO->searchById($id);
  53. break;
  54. default:
  55. $feedDAO = FreshRSS_Factory::createFeedDao();
  56. $this->view->feed = $feedDAO->searchById($id) ?? FreshRSS_Feed::default();
  57. break;
  58. }
  59. }
  60. }
  61. /**
  62. * This action handles the feed configuration page.
  63. *
  64. * It displays the feed configuration page.
  65. * If this action is reached through a POST request, it stores all new
  66. * configuration values then sends a notification to the user.
  67. *
  68. * The options available on the page are:
  69. * - name
  70. * - description
  71. * - website URL
  72. * - feed URL
  73. * - category id (default: default category id)
  74. * - CSS path to article on website
  75. * - display in main stream (default: 0)
  76. * - HTTP authentication
  77. * - number of article to retain (default: -2)
  78. * - refresh frequency (default: 0)
  79. * Default values are empty strings unless specified.
  80. */
  81. public function feedAction(): void {
  82. if (Minz_Request::paramBoolean('ajax')) {
  83. $this->view->_layout(null);
  84. } else {
  85. FreshRSS_View::appendScript(Minz_Url::display('/scripts/feed.js?' . @filemtime(PUBLIC_PATH . '/scripts/feed.js')));
  86. }
  87. $feedDAO = FreshRSS_Factory::createFeedDao();
  88. $this->view->feeds = $feedDAO->listFeeds();
  89. $id = Minz_Request::paramInt('id');
  90. if ($id === 0 || !isset($this->view->feeds[$id])) {
  91. Minz_Error::error(404);
  92. return;
  93. }
  94. $feed = $this->view->feeds[$id];
  95. $this->view->feed = $feed;
  96. FreshRSS_View::prependTitle($feed->name() . ' · ' . _t('sub.title.feed_management') . ' · ');
  97. if (Minz_Request::isPost()) {
  98. $user = Minz_Request::paramString('http_user_feed' . $id);
  99. $pass = Minz_Request::paramString('http_pass_feed' . $id);
  100. $httpAuth = '';
  101. if ($user !== '' && $pass !== '') { //TODO: Sanitize
  102. $httpAuth = $user . ':' . $pass;
  103. }
  104. $feed->_ttl(Minz_Request::paramInt('ttl') ?: FreshRSS_Feed::TTL_DEFAULT);
  105. $feed->_mute(Minz_Request::paramBoolean('mute'));
  106. $feed->_attribute('read_upon_gone', Minz_Request::paramTernary('read_upon_gone'));
  107. $feed->_attribute('mark_updated_article_unread', Minz_Request::paramTernary('mark_updated_article_unread'));
  108. $feed->_attribute('read_upon_reception', Minz_Request::paramTernary('read_upon_reception'));
  109. $feed->_attribute('clear_cache', Minz_Request::paramTernary('clear_cache'));
  110. $keep_max_n_unread = Minz_Request::paramTernary('keep_max_n_unread') === true ? Minz_Request::paramInt('keep_max_n_unread') : null;
  111. $feed->_attribute('keep_max_n_unread', $keep_max_n_unread >= 0 ? $keep_max_n_unread : null);
  112. $read_when_same_title_in_feed = Minz_Request::paramString('read_when_same_title_in_feed');
  113. if ($read_when_same_title_in_feed === '') {
  114. $read_when_same_title_in_feed = null;
  115. } else {
  116. $read_when_same_title_in_feed = (int)$read_when_same_title_in_feed;
  117. if ($read_when_same_title_in_feed <= 0) {
  118. $read_when_same_title_in_feed = false;
  119. }
  120. }
  121. $feed->_attribute('read_when_same_title_in_feed', $read_when_same_title_in_feed);
  122. $cookie = Minz_Request::paramString('curl_params_cookie');
  123. $cookie_file = Minz_Request::paramBoolean('curl_params_cookiefile');
  124. $max_redirs = Minz_Request::paramInt('curl_params_redirects');
  125. $useragent = Minz_Request::paramString('curl_params_useragent');
  126. $proxy_address = Minz_Request::paramString('curl_params');
  127. $proxy_type = Minz_Request::paramString('proxy_type');
  128. $request_method = Minz_Request::paramString('curl_method');
  129. $request_fields = Minz_Request::paramString('curl_fields', true);
  130. $headers = Minz_Request::paramTextToArray('http_headers');
  131. $opts = [];
  132. if ($proxy_type !== '') {
  133. $opts[CURLOPT_PROXY] = $proxy_address;
  134. $opts[CURLOPT_PROXYTYPE] = (int)$proxy_type;
  135. }
  136. if ($cookie !== '') {
  137. $opts[CURLOPT_COOKIE] = $cookie;
  138. }
  139. if ($cookie_file) {
  140. // Pass empty cookie file name to enable the libcurl cookie engine
  141. // without reading any existing cookie data.
  142. $opts[CURLOPT_COOKIEFILE] = '';
  143. }
  144. if ($max_redirs != 0) {
  145. $opts[CURLOPT_MAXREDIRS] = $max_redirs;
  146. $opts[CURLOPT_FOLLOWLOCATION] = 1;
  147. }
  148. if ($useragent !== '') {
  149. $opts[CURLOPT_USERAGENT] = $useragent;
  150. }
  151. if ($request_method === 'POST') {
  152. $opts[CURLOPT_POST] = true;
  153. if ($request_fields !== '') {
  154. $opts[CURLOPT_POSTFIELDS] = $request_fields;
  155. if (json_decode($request_fields, true) !== null) {
  156. $opts[CURLOPT_HTTPHEADER] = ['Content-Type: application/json'];
  157. }
  158. }
  159. }
  160. if(!empty($headers)) {
  161. $opts[CURLOPT_HTTPHEADER] = array_merge($headers, $opts[CURLOPT_HTTPHEADER] ?? []);
  162. }
  163. $feed->_attribute('curl_params', empty($opts) ? null : $opts);
  164. $feed->_attribute('content_action', Minz_Request::paramString('content_action', true) ?: 'replace');
  165. $feed->_attribute('ssl_verify', Minz_Request::paramTernary('ssl_verify'));
  166. $timeout = Minz_Request::paramInt('timeout');
  167. $feed->_attribute('timeout', $timeout > 0 ? $timeout : null);
  168. if (Minz_Request::paramBoolean('use_default_purge_options')) {
  169. $feed->_attribute('archiving', null);
  170. } else {
  171. if (Minz_Request::paramBoolean('enable_keep_max')) {
  172. $keepMax = Minz_Request::paramInt('keep_max') ?: FreshRSS_Feed::ARCHIVING_RETENTION_COUNT_LIMIT;
  173. } else {
  174. $keepMax = false;
  175. }
  176. if (Minz_Request::paramBoolean('enable_keep_period')) {
  177. $keepPeriod = FreshRSS_Feed::ARCHIVING_RETENTION_PERIOD;
  178. if (is_numeric(Minz_Request::paramString('keep_period_count')) && preg_match('/^PT?1[YMWDH]$/', Minz_Request::paramString('keep_period_unit'))) {
  179. $keepPeriod = str_replace('1', Minz_Request::paramString('keep_period_count'), Minz_Request::paramString('keep_period_unit'));
  180. }
  181. } else {
  182. $keepPeriod = false;
  183. }
  184. $feed->_attribute('archiving', [
  185. 'keep_period' => $keepPeriod,
  186. 'keep_max' => $keepMax,
  187. 'keep_min' => Minz_Request::paramInt('keep_min'),
  188. 'keep_favourites' => Minz_Request::paramBoolean('keep_favourites'),
  189. 'keep_labels' => Minz_Request::paramBoolean('keep_labels'),
  190. 'keep_unreads' => Minz_Request::paramBoolean('keep_unreads'),
  191. ]);
  192. }
  193. $feed->_filtersAction('read', Minz_Request::paramTextToArray('filteractions_read'));
  194. $feed->_kind(Minz_Request::paramInt('feed_kind') ?: FreshRSS_Feed::KIND_RSS);
  195. if ($feed->kind() === FreshRSS_Feed::KIND_HTML_XPATH || $feed->kind() === FreshRSS_Feed::KIND_XML_XPATH) {
  196. $xPathSettings = [];
  197. if (Minz_Request::paramString('xPathItem') != '')
  198. $xPathSettings['item'] = Minz_Request::paramString('xPathItem', true);
  199. if (Minz_Request::paramString('xPathItemTitle') != '')
  200. $xPathSettings['itemTitle'] = Minz_Request::paramString('xPathItemTitle', true);
  201. if (Minz_Request::paramString('xPathItemContent') != '')
  202. $xPathSettings['itemContent'] = Minz_Request::paramString('xPathItemContent', true);
  203. if (Minz_Request::paramString('xPathItemUri') != '')
  204. $xPathSettings['itemUri'] = Minz_Request::paramString('xPathItemUri', true);
  205. if (Minz_Request::paramString('xPathItemAuthor') != '')
  206. $xPathSettings['itemAuthor'] = Minz_Request::paramString('xPathItemAuthor', true);
  207. if (Minz_Request::paramString('xPathItemTimestamp') != '')
  208. $xPathSettings['itemTimestamp'] = Minz_Request::paramString('xPathItemTimestamp', true);
  209. if (Minz_Request::paramString('xPathItemTimeFormat') != '')
  210. $xPathSettings['itemTimeFormat'] = Minz_Request::paramString('xPathItemTimeFormat', true);
  211. if (Minz_Request::paramString('xPathItemThumbnail') != '')
  212. $xPathSettings['itemThumbnail'] = Minz_Request::paramString('xPathItemThumbnail', true);
  213. if (Minz_Request::paramString('xPathItemCategories') != '')
  214. $xPathSettings['itemCategories'] = Minz_Request::paramString('xPathItemCategories', true);
  215. if (Minz_Request::paramString('xPathItemUid') != '')
  216. $xPathSettings['itemUid'] = Minz_Request::paramString('xPathItemUid', true);
  217. if (!empty($xPathSettings))
  218. $feed->_attribute('xpath', $xPathSettings);
  219. } elseif ($feed->kind() === FreshRSS_Feed::KIND_JSON_DOTNOTATION) {
  220. $jsonSettings = [];
  221. if (Minz_Request::paramString('jsonFeedTitle') !== '') {
  222. $jsonSettings['feedTitle'] = Minz_Request::paramString('jsonFeedTitle', true);
  223. }
  224. if (Minz_Request::paramString('jsonItem') !== '') {
  225. $jsonSettings['item'] = Minz_Request::paramString('jsonItem', true);
  226. }
  227. if (Minz_Request::paramString('jsonItemTitle') !== '') {
  228. $jsonSettings['itemTitle'] = Minz_Request::paramString('jsonItemTitle', true);
  229. }
  230. if (Minz_Request::paramString('jsonItemContent') !== '') {
  231. $jsonSettings['itemContent'] = Minz_Request::paramString('jsonItemContent', true);
  232. }
  233. if (Minz_Request::paramString('jsonItemUri') !== '') {
  234. $jsonSettings['itemUri'] = Minz_Request::paramString('jsonItemUri', true);
  235. }
  236. if (Minz_Request::paramString('jsonItemAuthor') !== '') {
  237. $jsonSettings['itemAuthor'] = Minz_Request::paramString('jsonItemAuthor', true);
  238. }
  239. if (Minz_Request::paramString('jsonItemTimestamp') !== '') {
  240. $jsonSettings['itemTimestamp'] = Minz_Request::paramString('jsonItemTimestamp', true);
  241. }
  242. if (Minz_Request::paramString('jsonItemTimeFormat') !== '') {
  243. $jsonSettings['itemTimeFormat'] = Minz_Request::paramString('jsonItemTimeFormat', true);
  244. }
  245. if (Minz_Request::paramString('jsonItemThumbnail') !== '') {
  246. $jsonSettings['itemThumbnail'] = Minz_Request::paramString('jsonItemThumbnail', true);
  247. }
  248. if (Minz_Request::paramString('jsonItemCategories') !== '') {
  249. $jsonSettings['itemCategories'] = Minz_Request::paramString('jsonItemCategories', true);
  250. }
  251. if (Minz_Request::paramString('jsonItemUid') !== '') {
  252. $jsonSettings['itemUid'] = Minz_Request::paramString('jsonItemUid', true);
  253. }
  254. if (!empty($jsonSettings)) {
  255. $feed->_attribute('json_dotnotation', $jsonSettings);
  256. }
  257. }
  258. $feed->_attribute('path_entries_filter', Minz_Request::paramString('path_entries_filter', true));
  259. $values = [
  260. 'name' => Minz_Request::paramString('name'),
  261. 'kind' => $feed->kind(),
  262. 'description' => sanitizeHTML(Minz_Request::paramString('description', true)),
  263. 'website' => checkUrl(Minz_Request::paramString('website')) ?: '',
  264. 'url' => checkUrl(Minz_Request::paramString('url')) ?: '',
  265. 'category' => Minz_Request::paramInt('category'),
  266. 'pathEntries' => Minz_Request::paramString('path_entries'),
  267. 'priority' => Minz_Request::paramTernary('priority') === null ? FreshRSS_Feed::PRIORITY_MAIN_STREAM : Minz_Request::paramInt('priority'),
  268. 'httpAuth' => $httpAuth,
  269. 'ttl' => $feed->ttl(true),
  270. 'attributes' => $feed->attributes(),
  271. ];
  272. invalidateHttpCache();
  273. $from = Minz_Request::paramString('from');
  274. switch ($from) {
  275. case 'stats':
  276. $url_redirect = ['c' => 'stats', 'a' => 'idle', 'params' => ['id' => $id, 'from' => 'stats']];
  277. break;
  278. case 'normal':
  279. case 'reader':
  280. $get = Minz_Request::paramString('get');
  281. if ($get !== '') {
  282. $url_redirect = ['c' => 'index', 'a' => $from, 'params' => ['get' => $get]];
  283. } else {
  284. $url_redirect = ['c' => 'index', 'a' => $from];
  285. }
  286. break;
  287. default:
  288. $url_redirect = ['c' => 'subscription', 'params' => ['id' => $id]];
  289. }
  290. if ($values['url'] != '' && $feedDAO->updateFeed($id, $values) !== false) {
  291. $feed->_categoryId($values['category']);
  292. // update url and website values for faviconPrepare
  293. $feed->_url($values['url'], false);
  294. $feed->_website($values['website'], false);
  295. $feed->faviconPrepare();
  296. Minz_Request::good(_t('feedback.sub.feed.updated'), $url_redirect);
  297. } else {
  298. if ($values['url'] == '') {
  299. Minz_Log::warning('Invalid feed URL!');
  300. }
  301. Minz_Request::bad(_t('feedback.sub.feed.error'), $url_redirect);
  302. }
  303. }
  304. }
  305. /**
  306. * This action displays the bookmarklet page.
  307. */
  308. public function bookmarkletAction(): void {
  309. FreshRSS_View::prependTitle(_t('sub.title.subscription_tools') . ' . ');
  310. }
  311. /**
  312. * This action displays the page to add a new feed
  313. */
  314. public function addAction(): void {
  315. FreshRSS_View::appendScript(Minz_Url::display('/scripts/feed.js?' . @filemtime(PUBLIC_PATH . '/scripts/feed.js')));
  316. FreshRSS_View::prependTitle(_t('sub.title.add') . ' . ');
  317. }
  318. }