2
0

edit.py 16 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360
  1. import multiprocessing
  2. from .tool.func import *
  3. def edit_render_set(name, content):
  4. render_set(
  5. doc_name = name,
  6. doc_data = content
  7. )
  8. # https://stackoverflow.com/questions/13821156/timeout-function-using-threading-in-python-does-not-work
  9. def edit_timeout(func, args = (), timeout = 3):
  10. pool = multiprocessing.Pool(processes = 1)
  11. result = pool.apply_async(func, args = args)
  12. try:
  13. result.get(timeout = timeout)
  14. except multiprocessing.TimeoutError:
  15. pool.terminate()
  16. return 1
  17. else:
  18. pool.close()
  19. pool.join()
  20. return 0
  21. def edit_editor(curs, ip, data_main = '', do_type = 'edit', addon = '', name = ''):
  22. monaco_editor_top = ''
  23. editor_display = ''
  24. monaco_display = ''
  25. div = ''
  26. if do_type == 'edit':
  27. curs.execute(db_change('select data from other where name = "edit_help"'))
  28. sql_d = curs.fetchall()
  29. curs.execute(db_change("select set_data from data_set where doc_name = ? and set_name = 'document_top'"), [name])
  30. body = curs.fetchall()
  31. div = body[0][0] if body else ''
  32. elif do_type == 'bbs':
  33. curs.execute(db_change('select data from other where name = "bbs_help"'))
  34. sql_d = curs.fetchall()
  35. elif do_type == 'bbs_comment':
  36. curs.execute(db_change('select data from other where name = "bbs_comment_help"'))
  37. sql_d = curs.fetchall()
  38. else:
  39. curs.execute(db_change('select data from other where name = "topic_text"'))
  40. sql_d = curs.fetchall()
  41. if do_type == 'bbs_comment':
  42. do_type = 'thread'
  43. elif do_type == 'bbs':
  44. do_type = 'edit'
  45. p_text = html.escape(sql_d[0][0]) if sql_d and sql_d[0][0] != '' else load_lang('default_edit_help')
  46. monaco_editor_top += '<a href="javascript:opennamu_do_editor_temp_save();">(' + load_lang('load_temp_save') + ')</a> <a href="javascript:opennamu_do_editor_temp_save_load();">(' + load_lang('load_temp_save_load') + ')</a> '
  47. monaco_editor_top += '<a href="javascript:opennamu_edit_turn_off_monaco();">(' + load_lang('turn_off_monaco') + ')</a>'
  48. darkmode = flask.request.cookies.get('main_css_darkmode', '0')
  49. monaco_thema = 'vs-dark' if darkmode == '1' else ''
  50. add_script = 'do_monaco_init("' + monaco_thema + '");'
  51. monaco_on = get_main_skin_set(curs, flask.session, 'main_css_monaco', ip)
  52. if monaco_on == 'use':
  53. editor_display = 'style="display: none;"'
  54. else:
  55. monaco_display = 'style="display: none;"'
  56. textarea_size = 'opennamu_textarea_500' if do_type == 'edit' else 'opennamu_textarea_100'
  57. return '''
  58. <textarea style="display: none;" id="opennamu_edit_origin" name="doc_data_org">''' + html.escape(data_main) + '''</textarea>
  59. <div>
  60. ''' + monaco_editor_top + '''
  61. <hr class="main_hr">
  62. ''' + edit_button() + '''
  63. </div>
  64. ''' + div + '''
  65. <div id="opennamu_monaco_editor" class="''' + textarea_size + '''" ''' + monaco_display + '''></div>
  66. <textarea id="opennamu_edit_textarea" ''' + editor_display + ''' class="''' + textarea_size + '''" name="content" placeholder="''' + p_text + '''">''' + html.escape(data_main) + '''</textarea>
  67. <hr class="main_hr">
  68. ''' + captcha_get() + ip_warning() + addon + '''
  69. <hr class="main_hr">
  70. <script>
  71. do_stop_exit();
  72. do_paste_image();
  73. ''' + add_script + '''
  74. </script>
  75. <button id="opennamu_save_button" type="submit" onclick="do_stop_exit_release();">''' + load_lang('send') + '''</button>
  76. <button id="opennamu_preview_button" type="button" onclick="opennamu_do_editor_preview();">''' + load_lang('preview') + '''</button>
  77. <hr class="main_hr">
  78. <div id="opennamu_preview_area"></div>
  79. '''
  80. def edit(name = 'Test', section = 0, do_type = ''):
  81. with get_db_connect() as conn:
  82. curs = conn.cursor()
  83. ip = ip_check()
  84. edit_req_mode = 0
  85. if acl_check(name, 'document_edit') == 1:
  86. edit_req_mode = 1
  87. if do_title_length_check(name) == 1:
  88. return re_error('/error/38')
  89. curs.execute(db_change("select id from history where title = ? order by id + 0 desc"), [name])
  90. doc_ver = curs.fetchall()
  91. doc_ver = doc_ver[0][0] if doc_ver else '0'
  92. curs.execute(db_change("select set_data from data_set where doc_name = ? and doc_rev = ? and set_name = 'edit_request_data'"), [name, doc_ver])
  93. if curs.fetchall():
  94. return redirect('/edit_request_from/' + url_pas(name))
  95. section = '' if section == 0 else section
  96. post_ver = flask.request.form.get('ver', '')
  97. if flask.request.method == 'POST':
  98. edit_repeat = 'error' if post_ver != doc_ver else 'post'
  99. else:
  100. edit_repeat = 'get'
  101. if edit_repeat == 'post':
  102. if captcha_post(flask.request.form.get('g-recaptcha-response', flask.request.form.get('g-recaptcha', ''))) == 1:
  103. return re_error('/error/13')
  104. else:
  105. captcha_post('', 0)
  106. if do_edit_slow_check() == 1:
  107. return re_error('/error/24')
  108. today = get_time()
  109. content = flask.request.form.get('content', '').replace('\r', '')
  110. send = flask.request.form.get('send', '')
  111. agree = flask.request.form.get('copyright_agreement', '')
  112. if do_edit_filter(content) == 1:
  113. return re_error('/error/21')
  114. if do_edit_send_check(send) == 1:
  115. return re_error('/error/37')
  116. if do_edit_text_bottom_check_box_check(agree) == 1:
  117. return re_error('/error/29')
  118. curs.execute(db_change("select data from data where title = ?"), [name])
  119. db_data = curs.fetchall()
  120. if db_data:
  121. o_data = db_data[0][0].replace('\r', '')
  122. if section != '':
  123. if flask.request.form.get('doc_section_edit_apply', 'X') != 'X':
  124. if flask.request.form.get('doc_section_data_where', '') != '':
  125. data_match_where = flask.request.form.get('doc_section_data_where', '').split(',')
  126. if len(data_match_where) == 2:
  127. data_match_a = int(number_check(data_match_where[0]))
  128. if data_match_where[1] != 'inf':
  129. data_match_b = int(number_check(data_match_where[1]))
  130. else:
  131. data_match_b = 'inf'
  132. try:
  133. if data_match_b != 'inf':
  134. content = o_data[ : data_match_a] + content + o_data[data_match_b : ]
  135. else:
  136. content = o_data[ : data_match_a] + content
  137. except:
  138. pass
  139. leng = leng_check(len(o_data), len(content))
  140. else:
  141. leng = '+' + str(len(content))
  142. curs.execute(db_change("select data from other where name = 'document_content_max_length'"))
  143. db_data_3 = curs.fetchall()
  144. if db_data_3 and db_data_3[0][0] != '':
  145. if int(number_check(db_data_3[0][0])) < len(content):
  146. return re_error('/error/44')
  147. curs.execute(db_change("select data from other where name = 'edit_timeout'"))
  148. db_data_2 = curs.fetchall()
  149. db_data_2 = number_check(db_data_2[0][0]) if db_data_2 and db_data_2[0][0] != '' else ''
  150. if db_data_2 != '' and platform.system() == 'Linux':
  151. timeout = edit_timeout(edit_render_set, (name, content), timeout = int(db_data_2))
  152. else:
  153. timeout = 0
  154. if timeout == 1:
  155. return re_error('/error/41')
  156. if edit_req_mode == 0:
  157. # 진짜 기록 부분
  158. curs.execute(db_change("delete from data where title = ?"), [name])
  159. curs.execute(db_change("insert into data (title, data) values (?, ?)"), [name, content])
  160. curs.execute(db_change("select id from user_set where name = 'watchlist' and data = ?"), [name])
  161. for scan_user in curs.fetchall():
  162. add_alarm(scan_user[0], ip, '<a href="/w/' + url_pas(name) + '">' + html.escape(name) + '</a>')
  163. history_plus(
  164. name,
  165. content,
  166. today,
  167. ip,
  168. send,
  169. leng
  170. )
  171. render_set(
  172. doc_name = name,
  173. doc_data = content,
  174. data_type = 'backlink'
  175. )
  176. else:
  177. curs.execute(db_change("insert into data_set (doc_name, doc_rev, set_name, set_data) values (?, ?, 'edit_request_data', ?)"), [name, doc_ver, content])
  178. curs.execute(db_change("insert into data_set (doc_name, doc_rev, set_name, set_data) values (?, ?, 'edit_request_user', ?)"), [name, doc_ver, ip])
  179. curs.execute(db_change("insert into data_set (doc_name, doc_rev, set_name, set_data) values (?, ?, 'edit_request_date', ?)"), [name, doc_ver, today])
  180. curs.execute(db_change("insert into data_set (doc_name, doc_rev, set_name, set_data) values (?, ?, 'edit_request_send', ?)"), [name, doc_ver, send])
  181. curs.execute(db_change("insert into data_set (doc_name, doc_rev, set_name, set_data) values (?, ?, 'edit_request_leng', ?)"), [name, doc_ver, leng])
  182. curs.execute(db_change("insert into data_set (doc_name, doc_rev, set_name, set_data) values (?, ?, 'edit_request_doing', ?)"), [name, doc_ver, today])
  183. curs.execute(db_change("select id from user_set where name = 'watchlist' and data = ?"), [name])
  184. for scan_user in curs.fetchall():
  185. add_alarm(scan_user[0], ip, '<a href="/edit_request/' + url_pas(name) + '">' + html.escape(name) + '</a> edit_request')
  186. conn.commit()
  187. section = (('#edit_load_' + str(section)) if section != '' else '')
  188. return redirect('/w/' + url_pas(name) + section)
  189. else:
  190. editor_top_text = ''
  191. doc_section_edit_apply = 'X'
  192. data_section = ''
  193. data_section_where = ''
  194. if edit_repeat == 'get':
  195. if do_type == 'load':
  196. if flask.session and 'edit_load_document' in flask.session:
  197. load_title = flask.session['edit_load_document']
  198. else:
  199. load_title = 0
  200. else:
  201. load_title = 0
  202. if load_title == 0 and section == '':
  203. load_title = name
  204. editor_top_text += '<a href="/manager/15/' + url_pas(name) + '">(' + load_lang('load') + ')</a> '
  205. elif section != '':
  206. load_title = name
  207. curs.execute(db_change("select data from data where title = ?"), [load_title])
  208. db_data = curs.fetchall()
  209. data = db_data[0][0] if db_data else ''
  210. data = data.replace('\r', '')
  211. if section != '':
  212. curs.execute(db_change('select data from other where name = "markup"'))
  213. db_data = curs.fetchall()
  214. db_data = db_data[0][0] if db_data else 'namumark'
  215. if db_data in ('namumark', 'namumark_beta'):
  216. count = 1
  217. data_section = '\n' + data + '\n'
  218. while 1:
  219. data_match_re = r'\n((={1,6})(#?) ?([^\n]+))\n'
  220. data_match = re.search(data_match_re, data_section)
  221. if not data_match:
  222. data_section = ''
  223. break
  224. elif count > section:
  225. data_section = ''
  226. break
  227. if section == count:
  228. data_section_sub = data_section
  229. data_section_sub = re.sub(data_match_re, ('.' * (len(data_match.group(0)) - 1)) + '\n', data_section_sub, 1)
  230. data_match_plus = re.search(data_match_re, data_section_sub)
  231. if data_match_plus:
  232. data_section = data[data_match.span()[0] : data_match_plus.span()[0] - 1]
  233. data_section_where = str(data_match.span()[0]) + ',' + str(data_match_plus.span()[0] - 1)
  234. else:
  235. data_section = data[data_match.span()[0] : ]
  236. data_section_where = str(data_match.span()[0]) + ',inf'
  237. doc_section_edit_apply = 'O'
  238. break
  239. else:
  240. data_section = re.sub(data_match_re, ('.' * (len(data_match.group(0)) - 1)) + '\n', data_section, 1)
  241. count += 1
  242. else:
  243. data = flask.request.form.get('content', '')
  244. data = data.replace('\r', '')
  245. data_section_where = flask.request.form.get('doc_section_data_where', '')
  246. doc_section_edit_apply = flask.request.form.get('doc_section_edit_apply', '')
  247. doc_ver = flask.request.form.get('ver', '')
  248. warning_edit = load_lang('exp_edit_conflict') + ' '
  249. if flask.request.form.get('ver', '0') == '0':
  250. warning_edit += '<a href="/raw/' + url_pas(name) + '">(r' + doc_ver + ')</a>'
  251. else:
  252. warning_edit += '' + \
  253. '<a href="/diff/' + flask.request.form.get('ver', '1') + '/' + doc_ver + '/' + url_pas(name) + '">' + \
  254. '(r' + doc_ver + ')' + \
  255. '</a>' + \
  256. ''
  257. warning_edit += '<hr class="main_hr">'
  258. editor_top_text = warning_edit + editor_top_text
  259. if data_section == '':
  260. data_section = data
  261. editor_top_text += '<a href="/filter/edit_filter">(' + load_lang('edit_filter_rule') + ')</a>'
  262. if editor_top_text != '':
  263. editor_top_text += '<hr class="main_hr">'
  264. sub_menu = ' (' + str(section) + ')' if section != '' else ''
  265. sub_title = '(' + load_lang('edit_request') + ')' if edit_req_mode == 1 else '(' + load_lang('edit') + ')'
  266. return easy_minify(flask.render_template(skin_check(),
  267. imp = [name, wiki_set(), wiki_custom(), wiki_css([sub_title + sub_menu, 0])],
  268. data = editor_top_text + '''
  269. <form method="post">
  270. <textarea style="display: none;" name="doc_section_data_where">''' + data_section_where + '''</textarea>
  271. <input style="display: none;" name="doc_section_edit_apply" value="''' + doc_section_edit_apply + '''">
  272. <input style="display: none;" id="opennamu_editor_doc_name" value="''' + html.escape(name) + '''">
  273. <input style="display: none;" name="ver" value="''' + doc_ver + '''">
  274. <input placeholder="''' + load_lang('why') + '''" name="send">
  275. <hr class="main_hr">
  276. ''' + edit_editor(curs, ip, data_section, addon = get_edit_text_bottom_check_box() + get_edit_text_bottom(), name = name) + '''
  277. </form>
  278. ''',
  279. menu = [
  280. ['w/' + url_pas(name), load_lang('return')],
  281. ['delete/' + url_pas(name), load_lang('delete')],
  282. ['move/' + url_pas(name), load_lang('move')],
  283. ['upload', load_lang('upload')]
  284. ]
  285. ))