api-functions.php 36 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485868788899091929394959697989910010110210310410510610710810911011111211311411511611711811912012112212312412512612712812913013113213313413513613713813914014114214314414514614714814915015115215315415515615715815916016116216316416516616716816917017117217317417517617717817918018118218318418518618718818919019119219319419519619719819920020120220320420520620720820921021121221321421521621721821922022122222322422522622722822923023123223323423523623723823924024124224324424524624724824925025125225325425525625725825926026126226326426526626726826927027127227327427527627727827928028128228328428528628728828929029129229329429529629729829930030130230330430530630730830931031131231331431531631731831932032132232332432532632732832933033133233333433533633733833934034134234334434534634734834935035135235335435535635735835936036136236336436536636736836937037137237337437537637737837938038138238338438538638738838939039139239339439539639739839940040140240340440540640740840941041141241341441541641741841942042142242342442542642742842943043143243343443543643743843944044144244344444544644744844945045145245345445545645745845946046146246346446546646746846947047147247347447547647747847948048148248348448548648748848949049149249349449549649749849950050150250350450550650750850951051151251351451551651751851952052152252352452552652752852953053153253353453553653753853954054154254354454554654754854955055155255355455555655755855956056156256356456556656756856957057157257357457557657757857958058158258358458558658758858959059159259359459559659759859960060160260360460560660760860961061161261361461561661761861962062162262362462562662762862963063163263363463563663763863964064164264364464564664764864965065165265365465565665765865966066166266366466566666766866967067167267367467567667767867968068168268368468568668768868969069169269369469569669769869970070170270370470570670770870971071171271371471571671771871972072172272372472572672772872973073173273373473573673773873974074174274374474574674774874975075175275375475575675775875976076176276376476576676776876977077177277377477577677777877978078178278378478578678778878979079179279379479579679779879980080180280380480580680780880981081181281381481581681781881982082182282382482582682782882983083183283383483583683783883984084184284384484584684784884985085185285385485585685785885986086186286386486586686786886987087187287387487587687787887988088188288388488588688788888989089189289389489589689789889990090190290390490590690790890991091191291391491591691791891992092192292392492592692792892993093193293393493593693793893994094194294394494594694794894995095195295395495595695795895996096196296396496596696796896997097197297397497597697797897998098198298398498598698798898999099199299399499599699799899910001001100210031004100510061007100810091010101110121013101410151016101710181019102010211022102310241025102610271028102910301031103210331034103510361037103810391040104110421043104410451046104710481049105010511052105310541055105610571058105910601061106210631064106510661067106810691070107110721073107410751076107710781079108010811082108310841085108610871088108910901091109210931094109510961097109810991100110111021103110411051106110711081109111011111112111311141115111611171118111911201121112211231124112511261127112811291130113111321133113411351136113711381139114011411142
  1. <?php /** @noinspection SqlResolve */
  2. /** @noinspection SqlResolve */
  3. /** @noinspection SqlResolve */
  4. /** @noinspection SqlResolve */
  5. /** @noinspection SyntaxError */
  6. function login($array)
  7. {
  8. // Grab username and Password from login form
  9. $username = $password = $oAuth = $oAuthType = '';
  10. foreach ($array['data'] as $items) {
  11. foreach ($items as $key => $value) {
  12. if ($key == 'name') {
  13. $newKey = $value;
  14. }
  15. if ($key == 'value') {
  16. $newValue = $value;
  17. }
  18. if (isset($newKey) && isset($newValue)) {
  19. $$newKey = $newValue;
  20. }
  21. }
  22. }
  23. $username = strtolower($username);
  24. $days = (isset($remember)) ? $GLOBALS['rememberMeDays'] : 1;
  25. $oAuth = (isset($oAuth)) ? $oAuth : false;
  26. try {
  27. $database = new Dibi\Connection([
  28. 'driver' => 'sqlite3',
  29. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  30. ]);
  31. $authSuccess = false;
  32. $function = 'plugin_auth_' . $GLOBALS['authBackend'];
  33. if (!$oAuth) {
  34. $result = $database->fetch('SELECT * FROM users WHERE username = ? COLLATE NOCASE OR email = ? COLLATE NOCASE', $username, $username);
  35. switch ($GLOBALS['authType']) {
  36. case 'external':
  37. if (function_exists($function)) {
  38. $authSuccess = $function($username, $password);
  39. }
  40. break;
  41. /** @noinspection PhpMissingBreakStatementInspection */
  42. case 'both':
  43. if (function_exists($function)) {
  44. $authSuccess = $function($username, $password);
  45. }
  46. // no break
  47. default: // Internal
  48. if (!$authSuccess) {
  49. // perform the internal authentication step
  50. if (password_verify($password, $result['password'])) {
  51. $authSuccess = true;
  52. }
  53. }
  54. }
  55. } else {
  56. // Has oAuth Token!
  57. switch ($oAuthType) {
  58. case 'plex':
  59. if ($GLOBALS['plexoAuth']) {
  60. $tokenInfo = checkPlexToken($oAuth);
  61. if ($tokenInfo) {
  62. $authSuccess = array(
  63. 'username' => $tokenInfo['user']['username'],
  64. 'email' => $tokenInfo['user']['email'],
  65. 'image' => $tokenInfo['user']['thumb'],
  66. 'token' => $tokenInfo['user']['authToken']
  67. );
  68. coookie('set', 'oAuth', 'true', $GLOBALS['rememberMeDays']);
  69. $authSuccess = ((!empty($GLOBALS['plexAdmin']) && strtolower($GLOBALS['plexAdmin']) == strtolower($tokenInfo['user']['username'])) || checkPlexUser($tokenInfo['user']['username'])) ? $authSuccess : false;
  70. }
  71. }
  72. break;
  73. default:
  74. return 'error';
  75. break;
  76. }
  77. $result = ($authSuccess) ? $database->fetch('SELECT * FROM users WHERE username = ? COLLATE NOCASE OR email = ? COLLATE NOCASE', $authSuccess['username'], $authSuccess['email']) : '';
  78. }
  79. if ($authSuccess) {
  80. // Make sure user exists in database
  81. $userExists = false;
  82. $passwordMatches = ($oAuth) ? true : false;
  83. $token = (is_array($authSuccess) && isset($authSuccess['token']) ? $authSuccess['token'] : '');
  84. if ($result['username']) {
  85. $userExists = true;
  86. $username = $result['username'];
  87. if ($passwordMatches == false) {
  88. $passwordMatches = (password_verify($password, $result['password'])) ? true : false;
  89. }
  90. }
  91. if ($userExists) {
  92. //does org password need to be updated
  93. if (!$passwordMatches) {
  94. $database->query('
  95. UPDATE users SET', [
  96. 'password' => password_hash($password, PASSWORD_BCRYPT)
  97. ], '
  98. WHERE id=?', $result['id']);
  99. writeLog('success', 'Login Function - User Password updated from backend', $username);
  100. }
  101. if ($token !== '') {
  102. if ($token !== $result['plex_token']) {
  103. $database->query('
  104. UPDATE users SET', [
  105. 'plex_token' => $token
  106. ], '
  107. WHERE id=?', $result['id']);
  108. writeLog('success', 'Login Function - User Plex Token updated from backend', $username);
  109. }
  110. }
  111. // 2FA might go here
  112. if ($result['auth_service'] !== 'internal' && strpos($result['auth_service'], '::') !== false) {
  113. $TFA = explode('::', $result['auth_service']);
  114. // Is code with login info?
  115. if ($tfaCode == '') {
  116. return '2FA';
  117. } else {
  118. if (!verify2FA($TFA[1], $tfaCode, $TFA[0])) {
  119. writeLoginLog($username, 'error');
  120. writeLog('error', 'Login Function - Wrong 2FA', $username);
  121. return '2FA-incorrect';
  122. }
  123. }
  124. }
  125. // End 2FA
  126. // authentication passed - 1) mark active and update token
  127. if (createToken($result['username'], $result['email'], $result['image'], $result['group'], $result['group_id'], $GLOBALS['organizrHash'], $days)) {
  128. writeLoginLog($username, 'success');
  129. writeLog('success', 'Login Function - A User has logged in', $username);
  130. ssoCheck($username, $password, $token); //need to work on this
  131. return true;
  132. } else {
  133. return 'error';
  134. }
  135. } else {
  136. // Create User
  137. //ssoCheck($username, $password, $token);
  138. return authRegister((is_array($authSuccess) && isset($authSuccess['username']) ? $authSuccess['username'] : $username), $password, defaultUserGroup(), (is_array($authSuccess) && isset($authSuccess['email']) ? $authSuccess['email'] : ''), $token);
  139. }
  140. } else {
  141. // authentication failed
  142. writeLoginLog($username, 'error');
  143. writeLog('error', 'Login Function - Wrong Password', $username);
  144. return 'mismatch';
  145. }
  146. } catch (Dibi\Exception $e) {
  147. return $e;
  148. }
  149. }
  150. function createDB($path, $filename)
  151. {
  152. try {
  153. if (!file_exists($path)) {
  154. mkdir($path, 0777, true);
  155. }
  156. $createDB = new Dibi\Connection([
  157. 'driver' => 'sqlite3',
  158. 'database' => $path . $filename,
  159. ]);
  160. // Create Users
  161. $createDB->query('CREATE TABLE `users` (
  162. `id` INTEGER PRIMARY KEY AUTOINCREMENT UNIQUE,
  163. `username` TEXT UNIQUE,
  164. `password` TEXT,
  165. `email` TEXT,
  166. `plex_token` TEXT,
  167. `group` TEXT,
  168. `group_id` INTEGER,
  169. `locked` INTEGER,
  170. `image` TEXT,
  171. `register_date` DATE,
  172. `auth_service` TEXT DEFAULT \'internal\'
  173. );');
  174. // Create Tokens
  175. $createDB->query('CREATE TABLE `chatroom` (
  176. `id` INTEGER PRIMARY KEY AUTOINCREMENT UNIQUE,
  177. `username` TEXT,
  178. `gravatar` TEXT,
  179. `uid` TEXT,
  180. `date` DATE,
  181. `ip` TEXT,
  182. `message` TEXT
  183. );');
  184. $createDB->query('CREATE TABLE `tokens` (
  185. `id` INTEGER PRIMARY KEY AUTOINCREMENT UNIQUE,
  186. `token` TEXT UNIQUE,
  187. `user_id` INTEGER,
  188. `browser` TEXT,
  189. `ip` TEXT,
  190. `created` DATE,
  191. `expires` DATE
  192. );');
  193. $createDB->query('CREATE TABLE `groups` (
  194. `id` INTEGER PRIMARY KEY AUTOINCREMENT UNIQUE,
  195. `group` TEXT UNIQUE,
  196. `group_id` INTEGER,
  197. `image` TEXT,
  198. `default` INTEGER
  199. );');
  200. $createDB->query('CREATE TABLE `categories` (
  201. `id` INTEGER PRIMARY KEY AUTOINCREMENT UNIQUE,
  202. `order` INTEGER,
  203. `category` TEXT UNIQUE,
  204. `category_id` INTEGER,
  205. `image` TEXT,
  206. `default` INTEGER
  207. );');
  208. // Create Tabs
  209. $createDB->query('CREATE TABLE `tabs` (
  210. `id` INTEGER PRIMARY KEY AUTOINCREMENT UNIQUE,
  211. `order` INTEGER,
  212. `category_id` INTEGER,
  213. `name` TEXT,
  214. `url` TEXT,
  215. `url_local` TEXT,
  216. `default` INTEGER,
  217. `enabled` INTEGER,
  218. `group_id` INTEGER,
  219. `image` TEXT,
  220. `type` INTEGER,
  221. `splash` INTEGER,
  222. `ping` INTEGER,
  223. `ping_url` TEXT,
  224. `timeout` INTEGER,
  225. `timeout_ms` INTEGER,
  226. `preload` INTEGER
  227. );');
  228. // Create Options
  229. $createDB->query('CREATE TABLE `options` (
  230. `id` INTEGER PRIMARY KEY AUTOINCREMENT UNIQUE,
  231. `name` TEXT UNIQUE,
  232. `value` TEXT
  233. );');
  234. // Create Invites
  235. $createDB->query('CREATE TABLE `invites` (
  236. `id` INTEGER PRIMARY KEY AUTOINCREMENT UNIQUE,
  237. `code` TEXT UNIQUE,
  238. `date` TIMESTAMP DEFAULT CURRENT_TIMESTAMP,
  239. `email` TEXT,
  240. `username` TEXT,
  241. `dateused` TIMESTAMP,
  242. `usedby` TEXT,
  243. `ip` TEXT,
  244. `valid` TEXT,
  245. `type` TEXT
  246. );');
  247. return true;
  248. } catch (Dibi\Exception $e) {
  249. return false;
  250. }
  251. }
  252. // Upgrade Database
  253. function updateDB($oldVerNum = false)
  254. {
  255. $tempLock = $GLOBALS['dbLocation'] . 'DBLOCK.txt';
  256. if (!file_exists($tempLock)) {
  257. touch($tempLock);
  258. // Create Temp DB First
  259. $migrationDB = 'tempMigration.db';
  260. $pathDigest = pathinfo($GLOBALS['dbLocation'] . $GLOBALS['dbName']);
  261. if (file_exists($GLOBALS['dbLocation'] . $migrationDB)) {
  262. unlink($GLOBALS['dbLocation'] . $migrationDB);
  263. }
  264. $backupDB = $pathDigest['dirname'] . '/' . $pathDigest['filename'] . '[' . date('Y-m-d_H-i-s') . ']' . ($oldVerNum ? '[' . $oldVerNum . ']' : '') . '.bak.db';
  265. copy($GLOBALS['dbLocation'] . $GLOBALS['dbName'], $backupDB);
  266. $success = createDB($GLOBALS['dbLocation'], $migrationDB);
  267. if ($success) {
  268. try {
  269. $connectOldDB = new Dibi\Connection([
  270. 'driver' => 'sqlite3',
  271. 'database' => $backupDB,
  272. ]);
  273. $connectNewDB = new Dibi\Connection([
  274. 'driver' => 'sqlite3',
  275. 'database' => $GLOBALS['dbLocation'] . $migrationDB,
  276. ]);
  277. $tables = $connectOldDB->fetchAll('SELECT name FROM sqlite_master WHERE type="table"');
  278. foreach ($tables as $table) {
  279. $data = $connectOldDB->fetchAll('SELECT * FROM ' . $table['name']);
  280. writeLog('success', 'Update Function - Grabbed Table data for Table: ' . $table['name'], 'Database');
  281. foreach ($data as $row) {
  282. $connectNewDB->query('INSERT into ' . $table['name'], $row);
  283. }
  284. writeLog('success', 'Update Function - Wrote Table data for Table: ' . $table['name'], 'Database');
  285. }
  286. writeLog('success', 'Update Function - All Table data converted - Starting Movement', 'Database');
  287. $connectOldDB->disconnect();
  288. $connectNewDB->disconnect();
  289. // Remove Current Database
  290. if (file_exists($GLOBALS['dbLocation'] . $migrationDB)) {
  291. $oldFileSize = filesize($GLOBALS['dbLocation'] . $GLOBALS['dbName']);
  292. $newFileSize = filesize($GLOBALS['dbLocation'] . $migrationDB);
  293. if ($newFileSize > 0) {
  294. writeLog('success', 'Update Function - Table Size of new DB ok..', 'Database');
  295. @unlink($GLOBALS['dbLocation'] . $GLOBALS['dbName']);
  296. copy($GLOBALS['dbLocation'] . $migrationDB, $GLOBALS['dbLocation'] . $GLOBALS['dbName']);
  297. @unlink($GLOBALS['dbLocation'] . $migrationDB);
  298. writeLog('success', 'Update Function - Migrated Old Info to new Database', 'Database');
  299. @unlink($tempLock);
  300. return true;
  301. }
  302. }
  303. @unlink($tempLock);
  304. return false;
  305. } catch (Dibi\Exception $e) {
  306. writeLog('error', 'Update Function - Error [' . $e . ']', 'Database');
  307. @unlink($tempLock);
  308. return false;
  309. }
  310. }
  311. @unlink($tempLock);
  312. return false;
  313. }
  314. return false;
  315. }
  316. function createFirstAdmin($path, $filename, $username, $password, $email)
  317. {
  318. try {
  319. $createDB = new Dibi\Connection([
  320. 'driver' => 'sqlite3',
  321. 'database' => $path . $filename,
  322. ]);
  323. $userInfo = [
  324. 'username' => $username,
  325. 'password' => password_hash($password, PASSWORD_BCRYPT),
  326. 'email' => $email,
  327. 'group' => 'Admin',
  328. 'group_id' => 0,
  329. 'image' => gravatar($email),
  330. 'register_date' => $GLOBALS['currentTime'],
  331. ];
  332. $groupInfo0 = [
  333. 'group' => 'Admin',
  334. 'group_id' => 0,
  335. 'default' => false,
  336. 'image' => 'plugins/images/groups/admin.png',
  337. ];
  338. $groupInfo1 = [
  339. 'group' => 'Co-Admin',
  340. 'group_id' => 1,
  341. 'default' => false,
  342. 'image' => 'plugins/images/groups/coadmin.png',
  343. ];
  344. $groupInfo2 = [
  345. 'group' => 'Super User',
  346. 'group_id' => 2,
  347. 'default' => false,
  348. 'image' => 'plugins/images/groups/superuser.png',
  349. ];
  350. $groupInfo3 = [
  351. 'group' => 'Power User',
  352. 'group_id' => 3,
  353. 'default' => false,
  354. 'image' => 'plugins/images/groups/poweruser.png',
  355. ];
  356. $groupInfo4 = [
  357. 'group' => 'User',
  358. 'group_id' => 4,
  359. 'default' => true,
  360. 'image' => 'plugins/images/groups/user.png',
  361. ];
  362. $groupInfoGuest = [
  363. 'group' => 'Guest',
  364. 'group_id' => 999,
  365. 'default' => false,
  366. 'image' => 'plugins/images/groups/guest.png',
  367. ];
  368. $settingsInfo = [
  369. 'order' => 1,
  370. 'category_id' => 0,
  371. 'name' => 'Settings',
  372. 'url' => 'api/?v1/settings/page',
  373. 'default' => false,
  374. 'enabled' => true,
  375. 'group_id' => 1,
  376. 'image' => 'fontawesome::cog',
  377. 'type' => 0
  378. ];
  379. $homepageInfo = [
  380. 'order' => 2,
  381. 'category_id' => 0,
  382. 'name' => 'Homepage',
  383. 'url' => 'api/?v1/homepage/page',
  384. 'default' => false,
  385. 'enabled' => false,
  386. 'group_id' => 4,
  387. 'image' => 'fontawesome::home',
  388. 'type' => 0
  389. ];
  390. $unsortedInfo = [
  391. 'order' => 1,
  392. 'category' => 'Unsorted',
  393. 'category_id' => 0,
  394. 'image' => 'plugins/images/categories/unsorted.png',
  395. 'default' => true
  396. ];
  397. $createDB->query('INSERT INTO [users]', $userInfo);
  398. $createDB->query('INSERT INTO [groups]', $groupInfo0);
  399. $createDB->query('INSERT INTO [groups]', $groupInfo1);
  400. $createDB->query('INSERT INTO [groups]', $groupInfo2);
  401. $createDB->query('INSERT INTO [groups]', $groupInfo3);
  402. $createDB->query('INSERT INTO [groups]', $groupInfo4);
  403. $createDB->query('INSERT INTO [groups]', $groupInfoGuest);
  404. $createDB->query('INSERT INTO [tabs]', $settingsInfo);
  405. $createDB->query('INSERT INTO [tabs]', $homepageInfo);
  406. $createDB->query('INSERT INTO [categories]', $unsortedInfo);
  407. return true;
  408. } catch (Dibi\Exception $e) {
  409. writeLog('error', 'Wizard Function - Error [' . $e . ']', 'Wizard');
  410. return false;
  411. }
  412. }
  413. function defaultUserGroup()
  414. {
  415. try {
  416. $connect = new Dibi\Connection([
  417. 'driver' => 'sqlite3',
  418. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  419. ]);
  420. $all = $connect->fetch('SELECT * FROM groups WHERE `default` = 1');
  421. return $all;
  422. } catch (Dibi\Exception $e) {
  423. return false;
  424. }
  425. }
  426. function defaultTabCategory()
  427. {
  428. try {
  429. $connect = new Dibi\Connection([
  430. 'driver' => 'sqlite3',
  431. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  432. ]);
  433. $all = $connect->fetch('SELECT * FROM categories WHERE `default` = 1');
  434. return $all;
  435. } catch (Dibi\Exception $e) {
  436. return false;
  437. }
  438. }
  439. function getGuest()
  440. {
  441. if (isset($GLOBALS['dbLocation'])) {
  442. try {
  443. $connect = new Dibi\Connection([
  444. 'driver' => 'sqlite3',
  445. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  446. ]);
  447. $all = $connect->fetch('SELECT * FROM groups WHERE `group_id` = 999');
  448. return $all;
  449. } catch (Dibi\Exception $e) {
  450. return false;
  451. }
  452. } else {
  453. return array(
  454. 'group' => 'Guest',
  455. 'group_id' => 999,
  456. 'image' => 'plugins/images/groups/guest.png'
  457. );
  458. }
  459. }
  460. function adminEditGroup($array)
  461. {
  462. switch ($array['data']['action']) {
  463. case 'changeDefaultGroup':
  464. try {
  465. $connect = new Dibi\Connection([
  466. 'driver' => 'sqlite3',
  467. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  468. ]);
  469. $connect->query('UPDATE groups SET `default` = 0');
  470. $connect->query('
  471. UPDATE groups SET', [
  472. 'default' => 1
  473. ], '
  474. WHERE id=?', $array['data']['id']);
  475. writeLog('success', 'Group Management Function - Changed Default Group from [' . $array['data']['oldGroupName'] . '] to [' . $array['data']['newGroupName'] . ']', $GLOBALS['organizrUser']['username']);
  476. return true;
  477. } catch (Dibi\Exception $e) {
  478. return false;
  479. }
  480. break;
  481. case 'deleteUserGroup':
  482. try {
  483. $connect = new Dibi\Connection([
  484. 'driver' => 'sqlite3',
  485. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  486. ]);
  487. $connect->query('DELETE FROM groups WHERE id = ?', $array['data']['id']);
  488. writeLog('success', 'Group Management Function - Deleted Group [' . $array['data']['groupName'] . ']', $GLOBALS['organizrUser']['username']);
  489. return true;
  490. } catch (Dibi\Exception $e) {
  491. return false;
  492. }
  493. break;
  494. case 'addUserGroup':
  495. try {
  496. $connect = new Dibi\Connection([
  497. 'driver' => 'sqlite3',
  498. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  499. ]);
  500. $newGroup = [
  501. 'group' => $array['data']['newGroupName'],
  502. 'group_id' => $array['data']['newGroupID'],
  503. 'default' => false,
  504. 'image' => $array['data']['newGroupImage'],
  505. ];
  506. $connect->query('INSERT INTO [groups]', $newGroup);
  507. writeLog('success', 'Group Management Function - Added Group [' . $array['data']['newGroupName'] . ']', $GLOBALS['organizrUser']['username']);
  508. return true;
  509. } catch (Dibi\Exception $e) {
  510. return false;
  511. }
  512. break;
  513. case 'editUserGroup':
  514. try {
  515. $connect = new Dibi\Connection([
  516. 'driver' => 'sqlite3',
  517. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  518. ]);
  519. $connect->query('
  520. UPDATE groups SET', [
  521. 'group' => $array['data']['groupName'],
  522. 'image' => $array['data']['groupImage'],
  523. ], '
  524. WHERE id=?', $array['data']['id']);
  525. writeLog('success', 'Group Management Function - Edited Group Info for [' . $array['data']['oldGroupName'] . ']', $GLOBALS['organizrUser']['username']);
  526. return true;
  527. } catch (Dibi\Exception $e) {
  528. return false;
  529. }
  530. break;
  531. default:
  532. return false;
  533. break;
  534. }
  535. }
  536. function adminEditUser($array)
  537. {
  538. switch ($array['data']['action']) {
  539. case 'changeGroup':
  540. try {
  541. $connect = new Dibi\Connection([
  542. 'driver' => 'sqlite3',
  543. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  544. ]);
  545. $connect->query('
  546. UPDATE users SET', [
  547. 'group' => $array['data']['newGroupName'],
  548. 'group_id' => $array['data']['newGroupID'],
  549. ], '
  550. WHERE id=?', $array['data']['id']);
  551. writeLog('success', 'User Management Function - User: ' . $array['data']['username'] . '\'s group was changed from [' . $array['data']['oldGroup'] . '] to [' . $array['data']['newGroupName'] . ']', $GLOBALS['organizrUser']['username']);
  552. return true;
  553. } catch (Dibi\Exception $e) {
  554. writeLog('error', 'User Management Function - Error - User: ' . $array['data']['username'] . '\'s group was changed from [' . $array['data']['oldGroup'] . '] to [' . $array['data']['newGroupName'] . ']', $GLOBALS['organizrUser']['username']);
  555. return false;
  556. }
  557. break;
  558. case 'editUser':
  559. try {
  560. $connect = new Dibi\Connection([
  561. 'driver' => 'sqlite3',
  562. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  563. ]);
  564. if (!usernameTakenExcept($array['data']['username'], $array['data']['email'], $array['data']['id'])) {
  565. $connect->query('
  566. UPDATE users SET', [
  567. 'username' => $array['data']['username'],
  568. 'email' => $array['data']['email'],
  569. 'image' => gravatar($array['data']['email']),
  570. ], '
  571. WHERE id=?', $array['data']['id']);
  572. if (!empty($array['data']['password'])) {
  573. $connect->query('
  574. UPDATE users SET', [
  575. 'password' => password_hash($array['data']['password'], PASSWORD_BCRYPT)
  576. ], '
  577. WHERE id=?', $array['data']['id']);
  578. }
  579. writeLog('success', 'User Management Function - User: ' . $array['data']['username'] . '\'s info was changed', $GLOBALS['organizrUser']['username']);
  580. return true;
  581. } else {
  582. return false;
  583. }
  584. } catch (Dibi\Exception $e) {
  585. writeLog('error', 'User Management Function - Error - User: ' . $array['data']['username'] . '\'s group was changed from [' . $array['data']['oldGroup'] . '] to [' . $array['data']['newGroupName'] . ']', $GLOBALS['organizrUser']['username']);
  586. return false;
  587. }
  588. break;
  589. case 'addNewUser':
  590. $defaults = defaultUserGroup();
  591. if (createUser($array['data']['username'], $array['data']['password'], $defaults, $array['data']['email'])) {
  592. writeLog('success', 'Create User Function - Account created for [' . $array['data']['username'] . ']', $GLOBALS['organizrUser']['username']);
  593. return true;
  594. } else {
  595. writeLog('error', 'Registration Function - An error occurred', $GLOBALS['organizrUser']['username']);
  596. return 'username taken';
  597. }
  598. break;
  599. case 'deleteUser':
  600. try {
  601. $connect = new Dibi\Connection([
  602. 'driver' => 'sqlite3',
  603. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  604. ]);
  605. $connect->query('DELETE FROM users WHERE id = ?', $array['data']['id']);
  606. writeLog('success', 'User Management Function - Deleted User [' . $array['data']['username'] . ']', $GLOBALS['organizrUser']['username']);
  607. return true;
  608. } catch (Dibi\Exception $e) {
  609. return false;
  610. }
  611. break;
  612. default:
  613. return false;
  614. break;
  615. }
  616. }
  617. function editTabs($array)
  618. {
  619. switch ($array['data']['action']) {
  620. case 'changeGroup':
  621. try {
  622. $connect = new Dibi\Connection([
  623. 'driver' => 'sqlite3',
  624. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  625. ]);
  626. $connect->query('
  627. UPDATE tabs SET', [
  628. 'group_id' => $array['data']['newGroupID'],
  629. ], '
  630. WHERE id=?', $array['data']['id']);
  631. writeLog('success', 'Tab Editor Function - Tab: ' . $array['data']['tab'] . '\'s group was changed to [' . $array['data']['newGroupName'] . ']', $GLOBALS['organizrUser']['username']);
  632. return true;
  633. } catch (Dibi\Exception $e) {
  634. return false;
  635. }
  636. break;
  637. case 'changeCategory':
  638. try {
  639. $connect = new Dibi\Connection([
  640. 'driver' => 'sqlite3',
  641. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  642. ]);
  643. $connect->query('
  644. UPDATE tabs SET', [
  645. 'category_id' => $array['data']['newCategoryID'],
  646. ], '
  647. WHERE id=?', $array['data']['id']);
  648. writeLog('success', 'Tab Editor Function - Tab: ' . $array['data']['tab'] . '\'s category was changed to [' . $array['data']['newCategoryName'] . ']', $GLOBALS['organizrUser']['username']);
  649. return true;
  650. } catch (Dibi\Exception $e) {
  651. return false;
  652. }
  653. break;
  654. case 'changeType':
  655. try {
  656. $connect = new Dibi\Connection([
  657. 'driver' => 'sqlite3',
  658. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  659. ]);
  660. $connect->query('
  661. UPDATE tabs SET', [
  662. 'type' => $array['data']['newTypeID'],
  663. ], '
  664. WHERE id=?', $array['data']['id']);
  665. writeLog('success', 'Tab Editor Function - Tab: ' . $array['data']['tab'] . '\'s type was changed to [' . $array['data']['newTypeName'] . ']', $GLOBALS['organizrUser']['username']);
  666. return true;
  667. } catch (Dibi\Exception $e) {
  668. return false;
  669. }
  670. break;
  671. case 'changeEnabled':
  672. try {
  673. $connect = new Dibi\Connection([
  674. 'driver' => 'sqlite3',
  675. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  676. ]);
  677. $connect->query('
  678. UPDATE tabs SET', [
  679. 'enabled' => $array['data']['tabEnabled'],
  680. ], '
  681. WHERE id=?', $array['data']['id']);
  682. writeLog('success', 'Tab Editor Function - Tab: ' . $array['data']['tab'] . '\'s enable status was changed to [' . $array['data']['tabEnabledWord'] . ']', $GLOBALS['organizrUser']['username']);
  683. return true;
  684. } catch (Dibi\Exception $e) {
  685. return false;
  686. }
  687. break;
  688. case 'changeSplash':
  689. try {
  690. $connect = new Dibi\Connection([
  691. 'driver' => 'sqlite3',
  692. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  693. ]);
  694. $connect->query('
  695. UPDATE tabs SET', [
  696. 'splash' => $array['data']['tabSplash'],
  697. ], '
  698. WHERE id=?', $array['data']['id']);
  699. writeLog('success', 'Tab Editor Function - Tab: ' . $array['data']['tab'] . '\'s splash status was changed to [' . $array['data']['tabSplashWord'] . ']', $GLOBALS['organizrUser']['username']);
  700. return true;
  701. } catch (Dibi\Exception $e) {
  702. return false;
  703. }
  704. break;
  705. case 'changePing':
  706. try {
  707. $connect = new Dibi\Connection([
  708. 'driver' => 'sqlite3',
  709. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  710. ]);
  711. $connect->query('
  712. UPDATE tabs SET', [
  713. 'ping' => $array['data']['tabPing'],
  714. ], '
  715. WHERE id=?', $array['data']['id']);
  716. writeLog('success', 'Tab Editor Function - Tab: ' . $array['data']['tab'] . '\'s ping status was changed to [' . $array['data']['tabPingWord'] . ']', $GLOBALS['organizrUser']['username']);
  717. return true;
  718. } catch (Dibi\Exception $e) {
  719. return false;
  720. }
  721. break;
  722. case 'changeDefault':
  723. try {
  724. $connect = new Dibi\Connection([
  725. 'driver' => 'sqlite3',
  726. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  727. ]);
  728. $connect->query('UPDATE tabs SET `default` = 0');
  729. $connect->query('
  730. UPDATE tabs SET', [
  731. 'default' => 1
  732. ], '
  733. WHERE id=?', $array['data']['id']);
  734. writeLog('success', 'Tab Editor Function - Changed Default Tab to [' . $array['data']['tab'] . ']', $GLOBALS['organizrUser']['username']);
  735. return true;
  736. } catch (Dibi\Exception $e) {
  737. return false;
  738. }
  739. break;
  740. case 'deleteTab':
  741. try {
  742. $connect = new Dibi\Connection([
  743. 'driver' => 'sqlite3',
  744. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  745. ]);
  746. $connect->query('DELETE FROM tabs WHERE id = ?', $array['data']['id']);
  747. writeLog('success', 'Tab Editor Function - Deleted Tab [' . $array['data']['tab'] . ']', $GLOBALS['organizrUser']['username']);
  748. return true;
  749. } catch (Dibi\Exception $e) {
  750. return false;
  751. }
  752. break;
  753. case 'editTab':
  754. try {
  755. $connect = new Dibi\Connection([
  756. 'driver' => 'sqlite3',
  757. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  758. ]);
  759. $connect->query('
  760. UPDATE tabs SET', [
  761. 'name' => $array['data']['tabName'],
  762. 'url' => $array['data']['tabURL'],
  763. 'url_local' => $array['data']['tabLocalURL'],
  764. 'ping_url' => $array['data']['pingURL'],
  765. 'image' => $array['data']['tabImage'],
  766. ], '
  767. WHERE id=?', $array['data']['id']);
  768. writeLog('success', 'Tab Editor Function - Edited Tab Info for [' . $array['data']['tabName'] . ']', $GLOBALS['organizrUser']['username']);
  769. return true;
  770. } catch (Dibi\Exception $e) {
  771. return false;
  772. }
  773. case 'changeOrder':
  774. try {
  775. $connect = new Dibi\Connection([
  776. 'driver' => 'sqlite3',
  777. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  778. ]);
  779. foreach ($array['data']['tabs']['tab'] as $key => $value) {
  780. if ($value['order'] != $value['originalOrder']) {
  781. $connect->query('
  782. UPDATE tabs SET', [
  783. 'order' => $value['order'],
  784. ], '
  785. WHERE id=?', $value['id']);
  786. writeLog('success', 'Tab Editor Function - ' . $value['name'] . ' Order Changed From ' . $value['order'] . ' to ' . $value['originalOrder'], $GLOBALS['organizrUser']['username']);
  787. }
  788. }
  789. writeLog('success', 'Tab Editor Function - Tab Order Changed', $GLOBALS['organizrUser']['username']);
  790. return true;
  791. } catch (Dibi\Exception $e) {
  792. return false;
  793. }
  794. break;
  795. case 'addNewTab':
  796. try {
  797. $default = defaultTabCategory()['category_id'];
  798. $connect = new Dibi\Connection([
  799. 'driver' => 'sqlite3',
  800. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  801. ]);
  802. $newTab = [
  803. 'order' => $array['data']['tabOrder'],
  804. 'category_id' => $default,
  805. 'name' => $array['data']['tabName'],
  806. 'url' => $array['data']['tabURL'],
  807. 'url_local' => $array['data']['tabLocalURL'],
  808. 'ping_url' => $array['data']['pingURL'],
  809. 'default' => $array['data']['tabDefault'],
  810. 'enabled' => 1,
  811. 'group_id' => $array['data']['tabGroupID'],
  812. 'image' => $array['data']['tabImage'],
  813. 'type' => $array['data']['tabType']
  814. ];
  815. $connect->query('INSERT INTO [tabs]', $newTab);
  816. writeLog('success', 'Tab Editor Function - Created Tab for: ' . $array['data']['tabName'], $GLOBALS['organizrUser']['username']);
  817. return true;
  818. } catch (Dibi\Exception $e) {
  819. return false;
  820. }
  821. break;
  822. default:
  823. return false;
  824. break;
  825. }
  826. }
  827. function editCategories($array)
  828. {
  829. switch ($array['data']['action']) {
  830. case 'changeDefault':
  831. try {
  832. $connect = new Dibi\Connection([
  833. 'driver' => 'sqlite3',
  834. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  835. ]);
  836. $connect->query('UPDATE categories SET `default` = 0');
  837. $connect->query('
  838. UPDATE categories SET', [
  839. 'default' => 1
  840. ], '
  841. WHERE id=?', $array['data']['id']);
  842. writeLog('success', 'Category Editor Function - Changed Default Category from [' . $array['data']['oldCategoryName'] . '] to [' . $array['data']['newCategoryName'] . ']', $GLOBALS['organizrUser']['username']);
  843. return true;
  844. } catch (Dibi\Exception $e) {
  845. return false;
  846. }
  847. break;
  848. case 'deleteCategory':
  849. try {
  850. $connect = new Dibi\Connection([
  851. 'driver' => 'sqlite3',
  852. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  853. ]);
  854. $connect->query('DELETE FROM categories WHERE id = ?', $array['data']['id']);
  855. writeLog('success', 'Category Editor Function - Deleted Category [' . $array['data']['category'] . ']', $GLOBALS['organizrUser']['username']);
  856. return true;
  857. } catch (Dibi\Exception $e) {
  858. return false;
  859. }
  860. break;
  861. case 'addNewCategory':
  862. try {
  863. $connect = new Dibi\Connection([
  864. 'driver' => 'sqlite3',
  865. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  866. ]);
  867. $newCategory = [
  868. 'category' => $array['data']['categoryName'],
  869. 'order' => $array['data']['categoryOrder'],
  870. 'category_id' => $array['data']['categoryID'],
  871. 'default' => false,
  872. 'image' => $array['data']['categoryImage'],
  873. ];
  874. $connect->query('INSERT INTO [categories]', $newCategory);
  875. writeLog('success', 'Category Editor Function - Added Category [' . $array['data']['categoryName'] . ']', $GLOBALS['organizrUser']['username']);
  876. return true;
  877. } catch (Dibi\Exception $e) {
  878. return $e;
  879. }
  880. break;
  881. case 'editCategory':
  882. try {
  883. $connect = new Dibi\Connection([
  884. 'driver' => 'sqlite3',
  885. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  886. ]);
  887. $connect->query('
  888. UPDATE categories SET', [
  889. 'category' => $array['data']['name'],
  890. 'image' => $array['data']['image'],
  891. ], '
  892. WHERE id=?', $array['data']['id']);
  893. writeLog('success', 'Category Editor Function - Edited Category Info for [' . $array['data']['name'] . ']', $GLOBALS['organizrUser']['username']);
  894. return true;
  895. } catch (Dibi\Exception $e) {
  896. return false;
  897. }
  898. break;
  899. case 'changeOrder':
  900. try {
  901. $connect = new Dibi\Connection([
  902. 'driver' => 'sqlite3',
  903. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  904. ]);
  905. foreach ($array['data']['categories']['category'] as $key => $value) {
  906. if ($value['order'] != $value['originalOrder']) {
  907. $connect->query('
  908. UPDATE categories SET', [
  909. 'order' => $value['order'],
  910. ], '
  911. WHERE id=?', $value['id']);
  912. writeLog('success', 'Category Editor Function - ' . $value['name'] . ' Order Changed From ' . $value['order'] . ' to ' . $value['originalOrder'], $GLOBALS['organizrUser']['username']);
  913. }
  914. }
  915. writeLog('success', 'Category Editor Function - Category Order Changed', $GLOBALS['organizrUser']['username']);
  916. return true;
  917. } catch (Dibi\Exception $e) {
  918. return false;
  919. }
  920. break;
  921. default:
  922. return false;
  923. break;
  924. }
  925. }
  926. function allUsers()
  927. {
  928. try {
  929. $connect = new Dibi\Connection([
  930. 'driver' => 'sqlite3',
  931. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  932. ]);
  933. $users = $connect->fetchAll('SELECT * FROM users');
  934. $groups = $connect->fetchAll('SELECT * FROM groups ORDER BY group_id ASC');
  935. foreach ($users as $k => $v) {
  936. // clear password from array
  937. unset($users[$k]['password']);
  938. }
  939. $all['users'] = $users;
  940. $all['groups'] = $groups;
  941. return $all;
  942. } catch (Dibi\Exception $e) {
  943. return false;
  944. }
  945. }
  946. function usernameTaken($username, $email)
  947. {
  948. try {
  949. $connect = new Dibi\Connection([
  950. 'driver' => 'sqlite3',
  951. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  952. ]);
  953. $all = $connect->fetch('SELECT * FROM users WHERE username = ? COLLATE NOCASE OR email = ? COLLATE NOCASE', $username, $email);
  954. return ($all) ? true : false;
  955. } catch (Dibi\Exception $e) {
  956. return false;
  957. }
  958. }
  959. function usernameTakenExcept($username, $email, $id)
  960. {
  961. try {
  962. $connect = new Dibi\Connection([
  963. 'driver' => 'sqlite3',
  964. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  965. ]);
  966. $all = $connect->fetch('SELECT * FROM users WHERE id IS NOT ? AND username = ? COLLATE NOCASE OR id IS NOT ? AND email = ? COLLATE NOCASE', $id, $username, $id, $email);
  967. return ($all) ? true : false;
  968. } catch (Dibi\Exception $e) {
  969. return false;
  970. }
  971. }
  972. function createUser($username, $password, $defaults, $email = null)
  973. {
  974. $email = ($email) ? $email : random_ascii_string(10) . '@placeholder.eml';
  975. try {
  976. if (!usernameTaken($username, $email)) {
  977. $createDB = new Dibi\Connection([
  978. 'driver' => 'sqlite3',
  979. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  980. ]);
  981. $userInfo = [
  982. 'username' => $username,
  983. 'password' => password_hash($password, PASSWORD_BCRYPT),
  984. 'email' => $email,
  985. 'group' => $defaults['group'],
  986. 'group_id' => $defaults['group_id'],
  987. 'image' => gravatar($email),
  988. 'register_date' => $GLOBALS['currentTime'],
  989. ];
  990. $createDB->query('INSERT INTO [users]', $userInfo);
  991. return true;
  992. } else {
  993. return false;
  994. }
  995. } catch (Dibi\Exception $e) {
  996. return false;
  997. }
  998. }
  999. function importUsers($array)
  1000. {
  1001. $imported = 0;
  1002. $defaults = defaultUserGroup();
  1003. foreach ($array as $user) {
  1004. $password = random_ascii_string(30);
  1005. if ($user['username'] !== '' && $user['email'] !== '' && $password !== '' && $defaults !== '') {
  1006. $newUser = createUser($user['username'], $password, $defaults, $user['email']);
  1007. if (!$newUser) {
  1008. writeLog('error', 'Import Function - Error', $user['username']);
  1009. } else {
  1010. $imported++;
  1011. }
  1012. }
  1013. }
  1014. return $imported;
  1015. }
  1016. function importUsersType($array)
  1017. {
  1018. $type = $array['data']['type'];
  1019. if ($type !== '') {
  1020. switch ($type) {
  1021. case 'plex':
  1022. return importUsers(allPlexUsers(true));
  1023. break;
  1024. default:
  1025. return false;
  1026. }
  1027. }
  1028. return false;
  1029. }
  1030. function allTabs()
  1031. {
  1032. if (file_exists('config' . DIRECTORY_SEPARATOR . 'config.php')) {
  1033. try {
  1034. $connect = new Dibi\Connection([
  1035. 'driver' => 'sqlite3',
  1036. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  1037. ]);
  1038. $all['tabs'] = $connect->fetchAll('SELECT * FROM tabs ORDER BY `order` ASC');
  1039. $all['categories'] = $connect->fetchAll('SELECT * FROM categories ORDER BY `order` ASC');
  1040. $all['groups'] = $connect->fetchAll('SELECT * FROM groups ORDER BY `group_id` ASC');
  1041. return $all;
  1042. } catch (Dibi\Exception $e) {
  1043. return false;
  1044. }
  1045. }
  1046. return false;
  1047. }
  1048. function allGroups()
  1049. {
  1050. if (file_exists('config' . DIRECTORY_SEPARATOR . 'config.php')) {
  1051. try {
  1052. $connect = new Dibi\Connection([
  1053. 'driver' => 'sqlite3',
  1054. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  1055. ]);
  1056. $all = $connect->fetchAll('SELECT * FROM groups ORDER BY `group_id` ASC');
  1057. return $all;
  1058. } catch (Dibi\Exception $e) {
  1059. return false;
  1060. }
  1061. }
  1062. return false;
  1063. }
  1064. function loadTabs()
  1065. {
  1066. if (file_exists('config' . DIRECTORY_SEPARATOR . 'config.php')) {
  1067. try {
  1068. $connect = new Dibi\Connection([
  1069. 'driver' => 'sqlite3',
  1070. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  1071. ]);
  1072. $sort = ($GLOBALS['unsortedTabs'] == 'top') ? 'DESC' : 'ASC';
  1073. $tabs = $connect->fetchAll('SELECT * FROM tabs WHERE `group_id` >= ? AND `enabled` = 1 ORDER BY `order` ' . $sort, $GLOBALS['organizrUser']['groupID']);
  1074. $categories = $connect->fetchAll('SELECT * FROM categories ORDER BY `order` ASC');
  1075. $all['tabs'] = $tabs;
  1076. foreach ($tabs as $k => $v) {
  1077. $v['access_url'] = (!empty($v['url_local']) && ($v['url_local'] !== null) && ($v['url_local'] !== 'null') && isLocal() && $v['type'] !== 0) ? $v['url_local'] : $v['url'];
  1078. }
  1079. $count = array_map(function ($element) {
  1080. return $element['category_id'];
  1081. }, $tabs);
  1082. $count = (array_count_values($count));
  1083. foreach ($categories as $k => $v) {
  1084. $v['count'] = isset($count[$v['category_id']]) ? $count[$v['category_id']] : 0;
  1085. }
  1086. $all['categories'] = $categories;
  1087. return $all;
  1088. } catch (Dibi\Exception $e) {
  1089. return false;
  1090. }
  1091. }
  1092. return false;
  1093. }
  1094. function getActiveTokens()
  1095. {
  1096. try {
  1097. $connect = new Dibi\Connection([
  1098. 'driver' => 'sqlite3',
  1099. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  1100. ]);
  1101. $all = $connect->fetchAll('SELECT * FROM `tokens` WHERE `user_id` = ? AND `expires` > ?', $GLOBALS['organizrUser']['userID'], $GLOBALS['currentTime']);
  1102. return $all;
  1103. } catch (Dibi\Exception $e) {
  1104. return false;
  1105. }
  1106. }
  1107. function revokeToken($array)
  1108. {
  1109. if ($array['data']['token']) {
  1110. try {
  1111. $connect = new Dibi\Connection([
  1112. 'driver' => 'sqlite3',
  1113. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  1114. ]);
  1115. $connect->query('DELETE FROM tokens WHERE user_id = ? AND token = ?', $GLOBALS['organizrUser']['userID'], $array['data']['token']);
  1116. return true;
  1117. } catch (Dibi\Exception $e) {
  1118. return false;
  1119. }
  1120. }
  1121. }