api-functions.php 38 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968969970971972973974975976977978979980981982983984985986987988989990991992993994995996997998999100010011002100310041005100610071008100910101011101210131014101510161017101810191020102110221023102410251026102710281029103010311032103310341035103610371038103910401041104210431044104510461047104810491050105110521053105410551056105710581059106010611062106310641065106610671068106910701071107210731074107510761077107810791080108110821083108410851086108710881089109010911092109310941095109610971098109911001101110211031104110511061107110811091110111111121113111411151116111711181119112011211122112311241125112611271128112911301131113211331134113511361137113811391140114111421143114411451146114711481149115011511152115311541155115611571158115911601161116211631164116511661167116811691170117111721173117411751176117711781179118011811182118311841185
  1. <?php /** @noinspection SqlResolve */
  2. /** @noinspection SqlResolve */
  3. /** @noinspection SqlResolve */
  4. /** @noinspection SqlResolve */
  5. /** @noinspection SyntaxError */
  6. function login($array)
  7. {
  8. // Grab username and Password from login form
  9. $username = $password = $oAuth = $oAuthType = '';
  10. foreach ($array['data'] as $items) {
  11. foreach ($items as $key => $value) {
  12. if ($key == 'name') {
  13. $newKey = $value;
  14. }
  15. if ($key == 'value') {
  16. $newValue = $value;
  17. }
  18. if (isset($newKey) && isset($newValue)) {
  19. $$newKey = $newValue;
  20. }
  21. }
  22. }
  23. $username = (strpos($GLOBALS['authBackend'], 'emby') !== false) ? $username : strtolower($username);
  24. $days = (isset($remember)) ? $GLOBALS['rememberMeDays'] : 1;
  25. $oAuth = (isset($oAuth)) ? $oAuth : false;
  26. try {
  27. $database = new Dibi\Connection([
  28. 'driver' => 'sqlite3',
  29. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  30. ]);
  31. $authSuccess = false;
  32. $function = 'plugin_auth_' . $GLOBALS['authBackend'];
  33. if (!$oAuth) {
  34. $result = $database->fetch('SELECT * FROM users WHERE username = ? COLLATE NOCASE OR email = ? COLLATE NOCASE', $username, $username);
  35. switch ($GLOBALS['authType']) {
  36. case 'external':
  37. if (function_exists($function)) {
  38. $authSuccess = $function($username, $password);
  39. }
  40. break;
  41. /** @noinspection PhpMissingBreakStatementInspection */
  42. case 'both':
  43. if (function_exists($function)) {
  44. $authSuccess = $function($username, $password);
  45. }
  46. // no break
  47. default: // Internal
  48. if (!$authSuccess) {
  49. // perform the internal authentication step
  50. if (password_verify($password, $result['password'])) {
  51. $authSuccess = true;
  52. }
  53. }
  54. }
  55. } else {
  56. // Has oAuth Token!
  57. switch ($oAuthType) {
  58. case 'plex':
  59. if ($GLOBALS['plexoAuth']) {
  60. $tokenInfo = checkPlexToken($oAuth);
  61. if ($tokenInfo) {
  62. $authSuccess = array(
  63. 'username' => $tokenInfo['user']['username'],
  64. 'email' => $tokenInfo['user']['email'],
  65. 'image' => $tokenInfo['user']['thumb'],
  66. 'token' => $tokenInfo['user']['authToken']
  67. );
  68. coookie('set', 'oAuth', 'true', $GLOBALS['rememberMeDays']);
  69. $authSuccess = ((!empty($GLOBALS['plexAdmin']) && strtolower($GLOBALS['plexAdmin']) == strtolower($tokenInfo['user']['username'])) || (!empty($GLOBALS['plexAdmin']) && strtolower($GLOBALS['plexAdmin']) == strtolower($tokenInfo['user']['email'])) || checkPlexUser($tokenInfo['user']['username'])) ? $authSuccess : false;
  70. }
  71. }
  72. break;
  73. default:
  74. return 'error';
  75. break;
  76. }
  77. $result = ($authSuccess) ? $database->fetch('SELECT * FROM users WHERE username = ? COLLATE NOCASE OR email = ? COLLATE NOCASE', $authSuccess['username'], $authSuccess['email']) : '';
  78. }
  79. if ($authSuccess) {
  80. // Make sure user exists in database
  81. $userExists = false;
  82. $passwordMatches = ($oAuth) ? true : false;
  83. $token = (is_array($authSuccess) && isset($authSuccess['token']) ? $authSuccess['token'] : '');
  84. if ($result['username']) {
  85. $userExists = true;
  86. $username = $result['username'];
  87. if ($passwordMatches == false) {
  88. $passwordMatches = (password_verify($password, $result['password'])) ? true : false;
  89. }
  90. }
  91. if ($userExists) {
  92. //does org password need to be updated
  93. if (!$passwordMatches) {
  94. $database->query('
  95. UPDATE users SET', [
  96. 'password' => password_hash($password, PASSWORD_BCRYPT)
  97. ], '
  98. WHERE id=?', $result['id']);
  99. writeLog('success', 'Login Function - User Password updated from backend', $username);
  100. }
  101. if ($token !== '') {
  102. if ($token !== $result['plex_token']) {
  103. $database->query('
  104. UPDATE users SET', [
  105. 'plex_token' => $token
  106. ], '
  107. WHERE id=?', $result['id']);
  108. writeLog('success', 'Login Function - User Plex Token updated from backend', $username);
  109. }
  110. }
  111. // 2FA might go here
  112. if ($result['auth_service'] !== 'internal' && strpos($result['auth_service'], '::') !== false) {
  113. $TFA = explode('::', $result['auth_service']);
  114. // Is code with login info?
  115. if ($tfaCode == '') {
  116. return '2FA';
  117. } else {
  118. if (!verify2FA($TFA[1], $tfaCode, $TFA[0])) {
  119. writeLoginLog($username, 'error');
  120. writeLog('error', 'Login Function - Wrong 2FA', $username);
  121. return '2FA-incorrect';
  122. }
  123. }
  124. }
  125. // End 2FA
  126. // authentication passed - 1) mark active and update token
  127. if (createToken($result['username'], $result['email'], $result['image'], $result['group'], $result['group_id'], $GLOBALS['organizrHash'], $days)) {
  128. writeLoginLog($username, 'success');
  129. writeLog('success', 'Login Function - A User has logged in', $username);
  130. $ssoUser = (empty($result['email'])) ? $result['username'] : (strpos($result['email'], 'placeholder') !== false) ? $result['username'] : $result['email'];
  131. ssoCheck($ssoUser, $password, $token); //need to work on this
  132. return true;
  133. } else {
  134. return 'Token Creation Error';
  135. }
  136. } else {
  137. // Create User
  138. //ssoCheck($username, $password, $token);
  139. return authRegister((is_array($authSuccess) && isset($authSuccess['username']) ? $authSuccess['username'] : $username), $password, defaultUserGroup(), (is_array($authSuccess) && isset($authSuccess['email']) ? $authSuccess['email'] : ''), $token);
  140. }
  141. } else {
  142. // authentication failed
  143. writeLoginLog($username, 'error');
  144. writeLog('error', 'Login Function - Wrong Password', $username);
  145. return 'mismatch';
  146. }
  147. } catch (Dibi\Exception $e) {
  148. return $e;
  149. }
  150. }
  151. function createDB($path, $filename)
  152. {
  153. try {
  154. if (!file_exists($path)) {
  155. mkdir($path, 0777, true);
  156. }
  157. $createDB = new Dibi\Connection([
  158. 'driver' => 'sqlite3',
  159. 'database' => $path . $filename,
  160. ]);
  161. // Create Users
  162. $createDB->query('CREATE TABLE `users` (
  163. `id` INTEGER PRIMARY KEY AUTOINCREMENT UNIQUE,
  164. `username` TEXT UNIQUE,
  165. `password` TEXT,
  166. `email` TEXT,
  167. `plex_token` TEXT,
  168. `group` TEXT,
  169. `group_id` INTEGER,
  170. `locked` INTEGER,
  171. `image` TEXT,
  172. `register_date` DATE,
  173. `auth_service` TEXT DEFAULT \'internal\'
  174. );');
  175. // Create Tokens
  176. $createDB->query('CREATE TABLE `chatroom` (
  177. `id` INTEGER PRIMARY KEY AUTOINCREMENT UNIQUE,
  178. `username` TEXT,
  179. `gravatar` TEXT,
  180. `uid` TEXT,
  181. `date` DATE,
  182. `ip` TEXT,
  183. `message` TEXT
  184. );');
  185. $createDB->query('CREATE TABLE `tokens` (
  186. `id` INTEGER PRIMARY KEY AUTOINCREMENT UNIQUE,
  187. `token` TEXT UNIQUE,
  188. `user_id` INTEGER,
  189. `browser` TEXT,
  190. `ip` TEXT,
  191. `created` DATE,
  192. `expires` DATE
  193. );');
  194. $createDB->query('CREATE TABLE `groups` (
  195. `id` INTEGER PRIMARY KEY AUTOINCREMENT UNIQUE,
  196. `group` TEXT UNIQUE,
  197. `group_id` INTEGER,
  198. `image` TEXT,
  199. `default` INTEGER
  200. );');
  201. $createDB->query('CREATE TABLE `categories` (
  202. `id` INTEGER PRIMARY KEY AUTOINCREMENT UNIQUE,
  203. `order` INTEGER,
  204. `category` TEXT UNIQUE,
  205. `category_id` INTEGER,
  206. `image` TEXT,
  207. `default` INTEGER
  208. );');
  209. // Create Tabs
  210. $createDB->query('CREATE TABLE `tabs` (
  211. `id` INTEGER PRIMARY KEY AUTOINCREMENT UNIQUE,
  212. `order` INTEGER,
  213. `category_id` INTEGER,
  214. `name` TEXT,
  215. `url` TEXT,
  216. `url_local` TEXT,
  217. `default` INTEGER,
  218. `enabled` INTEGER,
  219. `group_id` INTEGER,
  220. `image` TEXT,
  221. `type` INTEGER,
  222. `splash` INTEGER,
  223. `ping` INTEGER,
  224. `ping_url` TEXT,
  225. `timeout` INTEGER,
  226. `timeout_ms` INTEGER,
  227. `preload` INTEGER
  228. );');
  229. // Create Options
  230. $createDB->query('CREATE TABLE `options` (
  231. `id` INTEGER PRIMARY KEY AUTOINCREMENT UNIQUE,
  232. `name` TEXT UNIQUE,
  233. `value` TEXT
  234. );');
  235. // Create Invites
  236. $createDB->query('CREATE TABLE `invites` (
  237. `id` INTEGER PRIMARY KEY AUTOINCREMENT UNIQUE,
  238. `code` TEXT UNIQUE,
  239. `date` TIMESTAMP DEFAULT CURRENT_TIMESTAMP,
  240. `email` TEXT,
  241. `username` TEXT,
  242. `dateused` TIMESTAMP,
  243. `usedby` TEXT,
  244. `ip` TEXT,
  245. `valid` TEXT,
  246. `type` TEXT
  247. );');
  248. return true;
  249. } catch (Dibi\Exception $e) {
  250. return false;
  251. }
  252. }
  253. // Upgrade Database
  254. function updateDB($oldVerNum = false)
  255. {
  256. $tempLock = $GLOBALS['dbLocation'] . 'DBLOCK.txt';
  257. if (!file_exists($tempLock)) {
  258. touch($tempLock);
  259. // Create Temp DB First
  260. $migrationDB = 'tempMigration.db';
  261. $pathDigest = pathinfo($GLOBALS['dbLocation'] . $GLOBALS['dbName']);
  262. if (file_exists($GLOBALS['dbLocation'] . $migrationDB)) {
  263. unlink($GLOBALS['dbLocation'] . $migrationDB);
  264. }
  265. $backupDB = $pathDigest['dirname'] . '/' . $pathDigest['filename'] . '[' . date('Y-m-d_H-i-s') . ']' . ($oldVerNum ? '[' . $oldVerNum . ']' : '') . '.bak.db';
  266. copy($GLOBALS['dbLocation'] . $GLOBALS['dbName'], $backupDB);
  267. $success = createDB($GLOBALS['dbLocation'], $migrationDB);
  268. if ($success) {
  269. try {
  270. $connectOldDB = new Dibi\Connection([
  271. 'driver' => 'sqlite3',
  272. 'database' => $backupDB,
  273. ]);
  274. $connectNewDB = new Dibi\Connection([
  275. 'driver' => 'sqlite3',
  276. 'database' => $GLOBALS['dbLocation'] . $migrationDB,
  277. ]);
  278. $tables = $connectOldDB->fetchAll('SELECT name FROM sqlite_master WHERE type="table"');
  279. foreach ($tables as $table) {
  280. $data = $connectOldDB->fetchAll('SELECT * FROM ' . $table['name']);
  281. writeLog('success', 'Update Function - Grabbed Table data for Table: ' . $table['name'], 'Database');
  282. foreach ($data as $row) {
  283. $connectNewDB->query('INSERT into ' . $table['name'], $row);
  284. }
  285. writeLog('success', 'Update Function - Wrote Table data for Table: ' . $table['name'], 'Database');
  286. }
  287. writeLog('success', 'Update Function - All Table data converted - Starting Movement', 'Database');
  288. $connectOldDB->disconnect();
  289. $connectNewDB->disconnect();
  290. // Remove Current Database
  291. if (file_exists($GLOBALS['dbLocation'] . $migrationDB)) {
  292. $oldFileSize = filesize($GLOBALS['dbLocation'] . $GLOBALS['dbName']);
  293. $newFileSize = filesize($GLOBALS['dbLocation'] . $migrationDB);
  294. if ($newFileSize > 0) {
  295. writeLog('success', 'Update Function - Table Size of new DB ok..', 'Database');
  296. @unlink($GLOBALS['dbLocation'] . $GLOBALS['dbName']);
  297. copy($GLOBALS['dbLocation'] . $migrationDB, $GLOBALS['dbLocation'] . $GLOBALS['dbName']);
  298. @unlink($GLOBALS['dbLocation'] . $migrationDB);
  299. writeLog('success', 'Update Function - Migrated Old Info to new Database', 'Database');
  300. @unlink($tempLock);
  301. return true;
  302. }
  303. }
  304. @unlink($tempLock);
  305. return false;
  306. } catch (Dibi\Exception $e) {
  307. writeLog('error', 'Update Function - Error [' . $e . ']', 'Database');
  308. @unlink($tempLock);
  309. return false;
  310. }
  311. }
  312. @unlink($tempLock);
  313. return false;
  314. }
  315. return false;
  316. }
  317. function createFirstAdmin($path, $filename, $username, $password, $email)
  318. {
  319. try {
  320. $createDB = new Dibi\Connection([
  321. 'driver' => 'sqlite3',
  322. 'database' => $path . $filename,
  323. ]);
  324. $userInfo = [
  325. 'username' => $username,
  326. 'password' => password_hash($password, PASSWORD_BCRYPT),
  327. 'email' => $email,
  328. 'group' => 'Admin',
  329. 'group_id' => 0,
  330. 'image' => gravatar($email),
  331. 'register_date' => $GLOBALS['currentTime'],
  332. ];
  333. $groupInfo0 = [
  334. 'group' => 'Admin',
  335. 'group_id' => 0,
  336. 'default' => false,
  337. 'image' => 'plugins/images/groups/admin.png',
  338. ];
  339. $groupInfo1 = [
  340. 'group' => 'Co-Admin',
  341. 'group_id' => 1,
  342. 'default' => false,
  343. 'image' => 'plugins/images/groups/coadmin.png',
  344. ];
  345. $groupInfo2 = [
  346. 'group' => 'Super User',
  347. 'group_id' => 2,
  348. 'default' => false,
  349. 'image' => 'plugins/images/groups/superuser.png',
  350. ];
  351. $groupInfo3 = [
  352. 'group' => 'Power User',
  353. 'group_id' => 3,
  354. 'default' => false,
  355. 'image' => 'plugins/images/groups/poweruser.png',
  356. ];
  357. $groupInfo4 = [
  358. 'group' => 'User',
  359. 'group_id' => 4,
  360. 'default' => true,
  361. 'image' => 'plugins/images/groups/user.png',
  362. ];
  363. $groupInfoGuest = [
  364. 'group' => 'Guest',
  365. 'group_id' => 999,
  366. 'default' => false,
  367. 'image' => 'plugins/images/groups/guest.png',
  368. ];
  369. $settingsInfo = [
  370. 'order' => 1,
  371. 'category_id' => 0,
  372. 'name' => 'Settings',
  373. 'url' => 'api/?v1/settings/page',
  374. 'default' => false,
  375. 'enabled' => true,
  376. 'group_id' => 1,
  377. 'image' => 'fontawesome::cog',
  378. 'type' => 0
  379. ];
  380. $homepageInfo = [
  381. 'order' => 2,
  382. 'category_id' => 0,
  383. 'name' => 'Homepage',
  384. 'url' => 'api/?v1/homepage/page',
  385. 'default' => false,
  386. 'enabled' => false,
  387. 'group_id' => 4,
  388. 'image' => 'fontawesome::home',
  389. 'type' => 0
  390. ];
  391. $unsortedInfo = [
  392. 'order' => 1,
  393. 'category' => 'Unsorted',
  394. 'category_id' => 0,
  395. 'image' => 'plugins/images/categories/unsorted.png',
  396. 'default' => true
  397. ];
  398. $createDB->query('INSERT INTO [users]', $userInfo);
  399. $createDB->query('INSERT INTO [groups]', $groupInfo0);
  400. $createDB->query('INSERT INTO [groups]', $groupInfo1);
  401. $createDB->query('INSERT INTO [groups]', $groupInfo2);
  402. $createDB->query('INSERT INTO [groups]', $groupInfo3);
  403. $createDB->query('INSERT INTO [groups]', $groupInfo4);
  404. $createDB->query('INSERT INTO [groups]', $groupInfoGuest);
  405. $createDB->query('INSERT INTO [tabs]', $settingsInfo);
  406. $createDB->query('INSERT INTO [tabs]', $homepageInfo);
  407. $createDB->query('INSERT INTO [categories]', $unsortedInfo);
  408. return true;
  409. } catch (Dibi\Exception $e) {
  410. writeLog('error', 'Wizard Function - Error [' . $e . ']', 'Wizard');
  411. return false;
  412. }
  413. }
  414. function defaultUserGroup()
  415. {
  416. try {
  417. $connect = new Dibi\Connection([
  418. 'driver' => 'sqlite3',
  419. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  420. ]);
  421. $all = $connect->fetch('SELECT * FROM groups WHERE `default` = 1');
  422. return $all;
  423. } catch (Dibi\Exception $e) {
  424. return false;
  425. }
  426. }
  427. function defaultTabCategory()
  428. {
  429. try {
  430. $connect = new Dibi\Connection([
  431. 'driver' => 'sqlite3',
  432. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  433. ]);
  434. $all = $connect->fetch('SELECT * FROM categories WHERE `default` = 1');
  435. return $all;
  436. } catch (Dibi\Exception $e) {
  437. return false;
  438. }
  439. }
  440. function getGuest()
  441. {
  442. if (isset($GLOBALS['dbLocation'])) {
  443. try {
  444. $connect = new Dibi\Connection([
  445. 'driver' => 'sqlite3',
  446. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  447. ]);
  448. $all = $connect->fetch('SELECT * FROM groups WHERE `group_id` = 999');
  449. return $all;
  450. } catch (Dibi\Exception $e) {
  451. return false;
  452. }
  453. } else {
  454. return array(
  455. 'group' => 'Guest',
  456. 'group_id' => 999,
  457. 'image' => 'plugins/images/groups/guest.png'
  458. );
  459. }
  460. }
  461. function adminEditGroup($array)
  462. {
  463. switch ($array['data']['action']) {
  464. case 'changeDefaultGroup':
  465. try {
  466. $connect = new Dibi\Connection([
  467. 'driver' => 'sqlite3',
  468. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  469. ]);
  470. $connect->query('UPDATE groups SET `default` = 0');
  471. $connect->query('
  472. UPDATE groups SET', [
  473. 'default' => 1
  474. ], '
  475. WHERE id=?', $array['data']['id']);
  476. writeLog('success', 'Group Management Function - Changed Default Group from [' . $array['data']['oldGroupName'] . '] to [' . $array['data']['newGroupName'] . ']', $GLOBALS['organizrUser']['username']);
  477. return true;
  478. } catch (Dibi\Exception $e) {
  479. return false;
  480. }
  481. break;
  482. case 'deleteUserGroup':
  483. try {
  484. $connect = new Dibi\Connection([
  485. 'driver' => 'sqlite3',
  486. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  487. ]);
  488. $connect->query('DELETE FROM groups WHERE id = ?', $array['data']['id']);
  489. writeLog('success', 'Group Management Function - Deleted Group [' . $array['data']['groupName'] . ']', $GLOBALS['organizrUser']['username']);
  490. return true;
  491. } catch (Dibi\Exception $e) {
  492. return false;
  493. }
  494. break;
  495. case 'addUserGroup':
  496. try {
  497. $connect = new Dibi\Connection([
  498. 'driver' => 'sqlite3',
  499. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  500. ]);
  501. $newGroup = [
  502. 'group' => $array['data']['newGroupName'],
  503. 'group_id' => $array['data']['newGroupID'],
  504. 'default' => false,
  505. 'image' => $array['data']['newGroupImage'],
  506. ];
  507. $connect->query('INSERT INTO [groups]', $newGroup);
  508. writeLog('success', 'Group Management Function - Added Group [' . $array['data']['newGroupName'] . ']', $GLOBALS['organizrUser']['username']);
  509. return true;
  510. } catch (Dibi\Exception $e) {
  511. return false;
  512. }
  513. break;
  514. case 'editUserGroup':
  515. try {
  516. $connect = new Dibi\Connection([
  517. 'driver' => 'sqlite3',
  518. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  519. ]);
  520. $connect->query('
  521. UPDATE groups SET', [
  522. 'group' => $array['data']['groupName'],
  523. 'image' => $array['data']['groupImage'],
  524. ], '
  525. WHERE id=?', $array['data']['id']);
  526. writeLog('success', 'Group Management Function - Edited Group Info for [' . $array['data']['oldGroupName'] . ']', $GLOBALS['organizrUser']['username']);
  527. return true;
  528. } catch (Dibi\Exception $e) {
  529. return false;
  530. }
  531. break;
  532. default:
  533. return false;
  534. break;
  535. }
  536. }
  537. function adminEditUser($array)
  538. {
  539. switch ($array['data']['action']) {
  540. case 'changeGroup':
  541. if ($array['data']['newGroupID'] == 0) {
  542. return false;
  543. }
  544. try {
  545. $connect = new Dibi\Connection([
  546. 'driver' => 'sqlite3',
  547. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  548. ]);
  549. $connect->query('
  550. UPDATE users SET', [
  551. 'group' => $array['data']['newGroupName'],
  552. 'group_id' => $array['data']['newGroupID'],
  553. ], '
  554. WHERE id=?', $array['data']['id']);
  555. writeLog('success', 'User Management Function - User: ' . $array['data']['username'] . '\'s group was changed from [' . $array['data']['oldGroup'] . '] to [' . $array['data']['newGroupName'] . ']', $GLOBALS['organizrUser']['username']);
  556. return true;
  557. } catch (Dibi\Exception $e) {
  558. writeLog('error', 'User Management Function - Error - User: ' . $array['data']['username'] . '\'s group was changed from [' . $array['data']['oldGroup'] . '] to [' . $array['data']['newGroupName'] . ']', $GLOBALS['organizrUser']['username']);
  559. return false;
  560. }
  561. break;
  562. case 'editUser':
  563. try {
  564. $connect = new Dibi\Connection([
  565. 'driver' => 'sqlite3',
  566. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  567. ]);
  568. if (!usernameTakenExcept($array['data']['username'], $array['data']['email'], $array['data']['id'])) {
  569. $connect->query('
  570. UPDATE users SET', [
  571. 'username' => $array['data']['username'],
  572. 'email' => $array['data']['email'],
  573. 'image' => gravatar($array['data']['email']),
  574. ], '
  575. WHERE id=?', $array['data']['id']);
  576. if (!empty($array['data']['password'])) {
  577. $connect->query('
  578. UPDATE users SET', [
  579. 'password' => password_hash($array['data']['password'], PASSWORD_BCRYPT)
  580. ], '
  581. WHERE id=?', $array['data']['id']);
  582. }
  583. writeLog('success', 'User Management Function - User: ' . $array['data']['username'] . '\'s info was changed', $GLOBALS['organizrUser']['username']);
  584. return true;
  585. } else {
  586. return false;
  587. }
  588. } catch (Dibi\Exception $e) {
  589. writeLog('error', 'User Management Function - Error - User: ' . $array['data']['username'] . '\'s group was changed from [' . $array['data']['oldGroup'] . '] to [' . $array['data']['newGroupName'] . ']', $GLOBALS['organizrUser']['username']);
  590. return false;
  591. }
  592. break;
  593. case 'addNewUser':
  594. $defaults = defaultUserGroup();
  595. if (createUser($array['data']['username'], $array['data']['password'], $defaults, $array['data']['email'])) {
  596. writeLog('success', 'Create User Function - Account created for [' . $array['data']['username'] . ']', $GLOBALS['organizrUser']['username']);
  597. return true;
  598. } else {
  599. writeLog('error', 'Registration Function - An error occurred', $GLOBALS['organizrUser']['username']);
  600. return 'username taken';
  601. }
  602. break;
  603. case 'deleteUser':
  604. try {
  605. $connect = new Dibi\Connection([
  606. 'driver' => 'sqlite3',
  607. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  608. ]);
  609. $connect->query('DELETE FROM users WHERE id = ?', $array['data']['id']);
  610. writeLog('success', 'User Management Function - Deleted User [' . $array['data']['username'] . ']', $GLOBALS['organizrUser']['username']);
  611. return true;
  612. } catch (Dibi\Exception $e) {
  613. return false;
  614. }
  615. break;
  616. default:
  617. return false;
  618. break;
  619. }
  620. }
  621. function editTabs($array)
  622. {
  623. switch ($array['data']['action']) {
  624. case 'changeGroup':
  625. try {
  626. $connect = new Dibi\Connection([
  627. 'driver' => 'sqlite3',
  628. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  629. ]);
  630. $connect->query('
  631. UPDATE tabs SET', [
  632. 'group_id' => $array['data']['newGroupID'],
  633. ], '
  634. WHERE id=?', $array['data']['id']);
  635. writeLog('success', 'Tab Editor Function - Tab: ' . $array['data']['tab'] . '\'s group was changed to [' . $array['data']['newGroupName'] . ']', $GLOBALS['organizrUser']['username']);
  636. return true;
  637. } catch (Dibi\Exception $e) {
  638. return false;
  639. }
  640. break;
  641. case 'changeCategory':
  642. try {
  643. $connect = new Dibi\Connection([
  644. 'driver' => 'sqlite3',
  645. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  646. ]);
  647. $connect->query('
  648. UPDATE tabs SET', [
  649. 'category_id' => $array['data']['newCategoryID'],
  650. ], '
  651. WHERE id=?', $array['data']['id']);
  652. writeLog('success', 'Tab Editor Function - Tab: ' . $array['data']['tab'] . '\'s category was changed to [' . $array['data']['newCategoryName'] . ']', $GLOBALS['organizrUser']['username']);
  653. return true;
  654. } catch (Dibi\Exception $e) {
  655. return false;
  656. }
  657. break;
  658. case 'changeType':
  659. try {
  660. $connect = new Dibi\Connection([
  661. 'driver' => 'sqlite3',
  662. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  663. ]);
  664. $connect->query('
  665. UPDATE tabs SET', [
  666. 'type' => $array['data']['newTypeID'],
  667. ], '
  668. WHERE id=?', $array['data']['id']);
  669. writeLog('success', 'Tab Editor Function - Tab: ' . $array['data']['tab'] . '\'s type was changed to [' . $array['data']['newTypeName'] . ']', $GLOBALS['organizrUser']['username']);
  670. return true;
  671. } catch (Dibi\Exception $e) {
  672. return false;
  673. }
  674. break;
  675. case 'changeEnabled':
  676. try {
  677. $connect = new Dibi\Connection([
  678. 'driver' => 'sqlite3',
  679. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  680. ]);
  681. $connect->query('
  682. UPDATE tabs SET', [
  683. 'enabled' => $array['data']['tabEnabled'],
  684. ], '
  685. WHERE id=?', $array['data']['id']);
  686. writeLog('success', 'Tab Editor Function - Tab: ' . $array['data']['tab'] . '\'s enable status was changed to [' . $array['data']['tabEnabledWord'] . ']', $GLOBALS['organizrUser']['username']);
  687. return true;
  688. } catch (Dibi\Exception $e) {
  689. return false;
  690. }
  691. break;
  692. case 'changeSplash':
  693. try {
  694. $connect = new Dibi\Connection([
  695. 'driver' => 'sqlite3',
  696. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  697. ]);
  698. $connect->query('
  699. UPDATE tabs SET', [
  700. 'splash' => $array['data']['tabSplash'],
  701. ], '
  702. WHERE id=?', $array['data']['id']);
  703. writeLog('success', 'Tab Editor Function - Tab: ' . $array['data']['tab'] . '\'s splash status was changed to [' . $array['data']['tabSplashWord'] . ']', $GLOBALS['organizrUser']['username']);
  704. return true;
  705. } catch (Dibi\Exception $e) {
  706. return false;
  707. }
  708. break;
  709. case 'changePing':
  710. try {
  711. $connect = new Dibi\Connection([
  712. 'driver' => 'sqlite3',
  713. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  714. ]);
  715. $connect->query('
  716. UPDATE tabs SET', [
  717. 'ping' => $array['data']['tabPing'],
  718. ], '
  719. WHERE id=?', $array['data']['id']);
  720. writeLog('success', 'Tab Editor Function - Tab: ' . $array['data']['tab'] . '\'s ping status was changed to [' . $array['data']['tabPingWord'] . ']', $GLOBALS['organizrUser']['username']);
  721. return true;
  722. } catch (Dibi\Exception $e) {
  723. return false;
  724. }
  725. break;
  726. case 'changePreload':
  727. try {
  728. $connect = new Dibi\Connection([
  729. 'driver' => 'sqlite3',
  730. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  731. ]);
  732. $connect->query('
  733. UPDATE tabs SET', [
  734. 'preload' => $array['data']['tabPreload'],
  735. ], '
  736. WHERE id=?', $array['data']['id']);
  737. writeLog('success', 'Tab Editor Function - Tab: ' . $array['data']['tab'] . '\'s preload status was changed to [' . $array['data']['tabPreloadWord'] . ']', $GLOBALS['organizrUser']['username']);
  738. return true;
  739. } catch (Dibi\Exception $e) {
  740. return false;
  741. }
  742. break;
  743. case 'changeDefault':
  744. try {
  745. $connect = new Dibi\Connection([
  746. 'driver' => 'sqlite3',
  747. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  748. ]);
  749. $connect->query('UPDATE tabs SET `default` = 0');
  750. $connect->query('
  751. UPDATE tabs SET', [
  752. 'default' => 1
  753. ], '
  754. WHERE id=?', $array['data']['id']);
  755. writeLog('success', 'Tab Editor Function - Changed Default Tab to [' . $array['data']['tab'] . ']', $GLOBALS['organizrUser']['username']);
  756. return true;
  757. } catch (Dibi\Exception $e) {
  758. return false;
  759. }
  760. break;
  761. case 'deleteTab':
  762. try {
  763. $connect = new Dibi\Connection([
  764. 'driver' => 'sqlite3',
  765. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  766. ]);
  767. $connect->query('DELETE FROM tabs WHERE id = ?', $array['data']['id']);
  768. writeLog('success', 'Tab Editor Function - Deleted Tab [' . $array['data']['tab'] . ']', $GLOBALS['organizrUser']['username']);
  769. return true;
  770. } catch (Dibi\Exception $e) {
  771. return false;
  772. }
  773. break;
  774. case 'editTab':
  775. try {
  776. $connect = new Dibi\Connection([
  777. 'driver' => 'sqlite3',
  778. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  779. ]);
  780. $connect->query('
  781. UPDATE tabs SET', [
  782. 'name' => $array['data']['tabName'],
  783. 'url' => $array['data']['tabURL'],
  784. 'url_local' => $array['data']['tabLocalURL'],
  785. 'ping_url' => $array['data']['pingURL'],
  786. 'image' => $array['data']['tabImage'],
  787. 'timeout' => $array['data']['tabActionType'],
  788. 'timeout_ms' => $array['data']['tabActionTime'],
  789. ], '
  790. WHERE id=?', $array['data']['id']);
  791. writeLog('success', 'Tab Editor Function - Edited Tab Info for [' . $array['data']['tabName'] . ']', $GLOBALS['organizrUser']['username']);
  792. return true;
  793. } catch (Dibi\Exception $e) {
  794. return false;
  795. }
  796. case 'changeOrder':
  797. try {
  798. $connect = new Dibi\Connection([
  799. 'driver' => 'sqlite3',
  800. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  801. ]);
  802. foreach ($array['data']['tabs']['tab'] as $key => $value) {
  803. if ($value['order'] != $value['originalOrder']) {
  804. $connect->query('
  805. UPDATE tabs SET', [
  806. 'order' => $value['order'],
  807. ], '
  808. WHERE id=?', $value['id']);
  809. writeLog('success', 'Tab Editor Function - ' . $value['name'] . ' Order Changed From ' . $value['order'] . ' to ' . $value['originalOrder'], $GLOBALS['organizrUser']['username']);
  810. }
  811. }
  812. writeLog('success', 'Tab Editor Function - Tab Order Changed', $GLOBALS['organizrUser']['username']);
  813. return true;
  814. } catch (Dibi\Exception $e) {
  815. return false;
  816. }
  817. break;
  818. case 'addNewTab':
  819. try {
  820. $default = defaultTabCategory()['category_id'];
  821. $connect = new Dibi\Connection([
  822. 'driver' => 'sqlite3',
  823. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  824. ]);
  825. $newTab = [
  826. 'order' => $array['data']['tabOrder'],
  827. 'category_id' => $default,
  828. 'name' => $array['data']['tabName'],
  829. 'url' => $array['data']['tabURL'],
  830. 'url_local' => $array['data']['tabLocalURL'],
  831. 'ping_url' => $array['data']['pingURL'],
  832. 'default' => $array['data']['tabDefault'],
  833. 'enabled' => 1,
  834. 'group_id' => $array['data']['tabGroupID'],
  835. 'image' => $array['data']['tabImage'],
  836. 'type' => $array['data']['tabType'],
  837. 'timeout' => $array['data']['tabActionType'],
  838. 'timeout_ms' => $array['data']['tabActionTime'],
  839. ];
  840. $connect->query('INSERT INTO [tabs]', $newTab);
  841. writeLog('success', 'Tab Editor Function - Created Tab for: ' . $array['data']['tabName'], $GLOBALS['organizrUser']['username']);
  842. return true;
  843. } catch (Dibi\Exception $e) {
  844. return false;
  845. }
  846. break;
  847. default:
  848. return false;
  849. break;
  850. }
  851. }
  852. function editCategories($array)
  853. {
  854. switch ($array['data']['action']) {
  855. case 'changeDefault':
  856. try {
  857. $connect = new Dibi\Connection([
  858. 'driver' => 'sqlite3',
  859. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  860. ]);
  861. $connect->query('UPDATE categories SET `default` = 0');
  862. $connect->query('
  863. UPDATE categories SET', [
  864. 'default' => 1
  865. ], '
  866. WHERE id=?', $array['data']['id']);
  867. writeLog('success', 'Category Editor Function - Changed Default Category from [' . $array['data']['oldCategoryName'] . '] to [' . $array['data']['newCategoryName'] . ']', $GLOBALS['organizrUser']['username']);
  868. return true;
  869. } catch (Dibi\Exception $e) {
  870. return false;
  871. }
  872. break;
  873. case 'deleteCategory':
  874. try {
  875. $connect = new Dibi\Connection([
  876. 'driver' => 'sqlite3',
  877. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  878. ]);
  879. $connect->query('DELETE FROM categories WHERE id = ?', $array['data']['id']);
  880. writeLog('success', 'Category Editor Function - Deleted Category [' . $array['data']['category'] . ']', $GLOBALS['organizrUser']['username']);
  881. return true;
  882. } catch (Dibi\Exception $e) {
  883. return false;
  884. }
  885. break;
  886. case 'addNewCategory':
  887. try {
  888. $connect = new Dibi\Connection([
  889. 'driver' => 'sqlite3',
  890. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  891. ]);
  892. $newCategory = [
  893. 'category' => $array['data']['categoryName'],
  894. 'order' => $array['data']['categoryOrder'],
  895. 'category_id' => $array['data']['categoryID'],
  896. 'default' => false,
  897. 'image' => $array['data']['categoryImage'],
  898. ];
  899. $connect->query('INSERT INTO [categories]', $newCategory);
  900. writeLog('success', 'Category Editor Function - Added Category [' . $array['data']['categoryName'] . ']', $GLOBALS['organizrUser']['username']);
  901. return true;
  902. } catch (Dibi\Exception $e) {
  903. return $e;
  904. }
  905. break;
  906. case 'editCategory':
  907. try {
  908. $connect = new Dibi\Connection([
  909. 'driver' => 'sqlite3',
  910. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  911. ]);
  912. $connect->query('
  913. UPDATE categories SET', [
  914. 'category' => $array['data']['name'],
  915. 'image' => $array['data']['image'],
  916. ], '
  917. WHERE id=?', $array['data']['id']);
  918. writeLog('success', 'Category Editor Function - Edited Category Info for [' . $array['data']['name'] . ']', $GLOBALS['organizrUser']['username']);
  919. return true;
  920. } catch (Dibi\Exception $e) {
  921. return false;
  922. }
  923. break;
  924. case 'changeOrder':
  925. try {
  926. $connect = new Dibi\Connection([
  927. 'driver' => 'sqlite3',
  928. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  929. ]);
  930. foreach ($array['data']['categories']['category'] as $key => $value) {
  931. if ($value['order'] != $value['originalOrder']) {
  932. $connect->query('
  933. UPDATE categories SET', [
  934. 'order' => $value['order'],
  935. ], '
  936. WHERE id=?', $value['id']);
  937. writeLog('success', 'Category Editor Function - ' . $value['name'] . ' Order Changed From ' . $value['order'] . ' to ' . $value['originalOrder'], $GLOBALS['organizrUser']['username']);
  938. }
  939. }
  940. writeLog('success', 'Category Editor Function - Category Order Changed', $GLOBALS['organizrUser']['username']);
  941. return true;
  942. } catch (Dibi\Exception $e) {
  943. return false;
  944. }
  945. break;
  946. default:
  947. return false;
  948. break;
  949. }
  950. }
  951. function allUsers()
  952. {
  953. try {
  954. $connect = new Dibi\Connection([
  955. 'driver' => 'sqlite3',
  956. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  957. ]);
  958. $users = $connect->fetchAll('SELECT * FROM users');
  959. $groups = $connect->fetchAll('SELECT * FROM groups ORDER BY group_id ASC');
  960. foreach ($users as $k => $v) {
  961. // clear password from array
  962. unset($users[$k]['password']);
  963. }
  964. $all['users'] = $users;
  965. $all['groups'] = $groups;
  966. return $all;
  967. } catch (Dibi\Exception $e) {
  968. return false;
  969. }
  970. }
  971. function usernameTaken($username, $email)
  972. {
  973. try {
  974. $connect = new Dibi\Connection([
  975. 'driver' => 'sqlite3',
  976. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  977. ]);
  978. $all = $connect->fetch('SELECT * FROM users WHERE username = ? COLLATE NOCASE OR email = ? COLLATE NOCASE', $username, $email);
  979. return ($all) ? true : false;
  980. } catch (Dibi\Exception $e) {
  981. return false;
  982. }
  983. }
  984. function usernameTakenExcept($username, $email, $id)
  985. {
  986. try {
  987. $connect = new Dibi\Connection([
  988. 'driver' => 'sqlite3',
  989. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  990. ]);
  991. $all = $connect->fetch('SELECT * FROM users WHERE id IS NOT ? AND username = ? COLLATE NOCASE OR id IS NOT ? AND email = ? COLLATE NOCASE', $id, $username, $id, $email);
  992. return ($all) ? true : false;
  993. } catch (Dibi\Exception $e) {
  994. return false;
  995. }
  996. }
  997. function createUser($username, $password, $defaults, $email = null)
  998. {
  999. $email = ($email) ? $email : random_ascii_string(10) . '@placeholder.eml';
  1000. try {
  1001. if (!usernameTaken($username, $email)) {
  1002. $createDB = new Dibi\Connection([
  1003. 'driver' => 'sqlite3',
  1004. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  1005. ]);
  1006. $userInfo = [
  1007. 'username' => $username,
  1008. 'password' => password_hash($password, PASSWORD_BCRYPT),
  1009. 'email' => $email,
  1010. 'group' => $defaults['group'],
  1011. 'group_id' => $defaults['group_id'],
  1012. 'image' => gravatar($email),
  1013. 'register_date' => $GLOBALS['currentTime'],
  1014. ];
  1015. $createDB->query('INSERT INTO [users]', $userInfo);
  1016. return true;
  1017. } else {
  1018. return false;
  1019. }
  1020. } catch (Dibi\Exception $e) {
  1021. return false;
  1022. }
  1023. }
  1024. function importUsers($array)
  1025. {
  1026. $imported = 0;
  1027. $defaults = defaultUserGroup();
  1028. foreach ($array as $user) {
  1029. $password = random_ascii_string(30);
  1030. if ($user['username'] !== '' && $user['email'] !== '' && $password !== '' && $defaults !== '') {
  1031. $newUser = createUser($user['username'], $password, $defaults, $user['email']);
  1032. if (!$newUser) {
  1033. writeLog('error', 'Import Function - Error', $user['username']);
  1034. } else {
  1035. $imported++;
  1036. }
  1037. }
  1038. }
  1039. return $imported;
  1040. }
  1041. function importUsersType($array)
  1042. {
  1043. $type = $array['data']['type'];
  1044. if ($type !== '') {
  1045. switch ($type) {
  1046. case 'plex':
  1047. return importUsers(allPlexUsers(true));
  1048. break;
  1049. default:
  1050. return false;
  1051. }
  1052. }
  1053. return false;
  1054. }
  1055. function allTabs()
  1056. {
  1057. if (file_exists('config' . DIRECTORY_SEPARATOR . 'config.php')) {
  1058. try {
  1059. $connect = new Dibi\Connection([
  1060. 'driver' => 'sqlite3',
  1061. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  1062. ]);
  1063. $all['tabs'] = $connect->fetchAll('SELECT * FROM tabs ORDER BY `order` ASC');
  1064. $all['categories'] = $connect->fetchAll('SELECT * FROM categories ORDER BY `order` ASC');
  1065. $all['groups'] = $connect->fetchAll('SELECT * FROM groups ORDER BY `group_id` ASC');
  1066. return $all;
  1067. } catch (Dibi\Exception $e) {
  1068. return false;
  1069. }
  1070. }
  1071. return false;
  1072. }
  1073. function allGroups()
  1074. {
  1075. if (file_exists('config' . DIRECTORY_SEPARATOR . 'config.php')) {
  1076. try {
  1077. $connect = new Dibi\Connection([
  1078. 'driver' => 'sqlite3',
  1079. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  1080. ]);
  1081. $all = $connect->fetchAll('SELECT * FROM groups ORDER BY `group_id` ASC');
  1082. return $all;
  1083. } catch (Dibi\Exception $e) {
  1084. return false;
  1085. }
  1086. }
  1087. return false;
  1088. }
  1089. function loadTabs()
  1090. {
  1091. if (file_exists('config' . DIRECTORY_SEPARATOR . 'config.php')) {
  1092. try {
  1093. $connect = new Dibi\Connection([
  1094. 'driver' => 'sqlite3',
  1095. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  1096. ]);
  1097. $sort = ($GLOBALS['unsortedTabs'] == 'top') ? 'DESC' : 'ASC';
  1098. $tabs = $connect->fetchAll('SELECT * FROM tabs WHERE `group_id` >= ? AND `enabled` = 1 ORDER BY `order` ' . $sort, $GLOBALS['organizrUser']['groupID']);
  1099. $categories = $connect->fetchAll('SELECT * FROM categories ORDER BY `order` ASC');
  1100. $all['tabs'] = $tabs;
  1101. foreach ($tabs as $k => $v) {
  1102. $v['access_url'] = (!empty($v['url_local']) && ($v['url_local'] !== null) && ($v['url_local'] !== 'null') && isLocal() && $v['type'] !== 0) ? $v['url_local'] : $v['url'];
  1103. }
  1104. $count = array_map(function ($element) {
  1105. return $element['category_id'];
  1106. }, $tabs);
  1107. $count = (array_count_values($count));
  1108. foreach ($categories as $k => $v) {
  1109. $v['count'] = isset($count[$v['category_id']]) ? $count[$v['category_id']] : 0;
  1110. }
  1111. $all['categories'] = $categories;
  1112. return $all;
  1113. } catch (Dibi\Exception $e) {
  1114. return false;
  1115. }
  1116. }
  1117. return false;
  1118. }
  1119. function getActiveTokens()
  1120. {
  1121. try {
  1122. $connect = new Dibi\Connection([
  1123. 'driver' => 'sqlite3',
  1124. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  1125. ]);
  1126. $all = $connect->fetchAll('SELECT * FROM `tokens` WHERE `user_id` = ? AND `expires` > ?', $GLOBALS['organizrUser']['userID'], $GLOBALS['currentTime']);
  1127. return $all;
  1128. } catch (Dibi\Exception $e) {
  1129. return false;
  1130. }
  1131. }
  1132. function revokeToken($array)
  1133. {
  1134. if ($array['data']['token']) {
  1135. try {
  1136. $connect = new Dibi\Connection([
  1137. 'driver' => 'sqlite3',
  1138. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  1139. ]);
  1140. $connect->query('DELETE FROM tokens WHERE user_id = ? AND token = ?', $GLOBALS['organizrUser']['userID'], $array['data']['token']);
  1141. return true;
  1142. } catch (Dibi\Exception $e) {
  1143. return false;
  1144. }
  1145. }
  1146. }
  1147. function getSchema()
  1148. {
  1149. if (file_exists('config' . DIRECTORY_SEPARATOR . 'config.php')) {
  1150. try {
  1151. $connect = new Dibi\Connection([
  1152. 'driver' => 'sqlite3',
  1153. 'database' => $GLOBALS['dbLocation'] . $GLOBALS['dbName'],
  1154. ]);
  1155. $result = $connect->fetchAll(' SELECT name, sql FROM sqlite_master WHERE type=\'table\' ORDER BY name');
  1156. return $result;
  1157. } catch (Dibi\Exception $e) {
  1158. return false;
  1159. }
  1160. } else {
  1161. return 'DB not set yet...';
  1162. }
  1163. }