edit_req.py 6.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174
  1. from .tool.func import *
  2. def edit_req_2(conn, name):
  3. curs = conn.cursor()
  4. ip = ip_check()
  5. get_ver = flask.request.args.get('r', None)
  6. if get_ver:
  7. section = None
  8. else:
  9. section = flask.request.args.get('section', None)
  10. if acl_check(name) == 1:
  11. if acl_check(name, 'edit_req') == 1 or re.search(r'^user:', name) or get_ver:
  12. return re_error('/ban')
  13. else:
  14. if not get_ver:
  15. return redirect('/edit/' + url_pas(name))
  16. else:
  17. get_ver = int(number_check(get_ver))
  18. if not get_ver:
  19. curs.execute(db_change("select data from data where title = ?"), [name])
  20. old = curs.fetchall()
  21. if not old:
  22. return redirect('/ban')
  23. else:
  24. curs.execute(db_change("select data, send, ip, date from history where title = ? and id = ? and type = 'req'"), [name, str(get_ver)])
  25. old = curs.fetchall()
  26. if not old:
  27. return redirect('/w/' + url_pas(name))
  28. if flask.request.method == 'POST':
  29. if captcha_post(flask.request.form.get('g-recaptcha-response', flask.request.form.get('g-recaptcha', ''))) == 1:
  30. return re_error('/error/13')
  31. else:
  32. captcha_post('', 0)
  33. if slow_edit_check() == 1:
  34. return re_error('/error/24')
  35. today = get_time()
  36. if get_ver:
  37. content = old[0][0]
  38. else:
  39. content = flask.request.form.get('content', '')
  40. if flask.request.form.get('otent', '') == content:
  41. return redirect('/w/' + url_pas(name))
  42. if edit_filter_do(content) == 1:
  43. return re_error('/error/21')
  44. curs.execute(db_change('select data from other where name = "copyright_checkbox_text"'))
  45. copyright_checkbox_text_d = curs.fetchall()
  46. if copyright_checkbox_text_d and copyright_checkbox_text_d[0][0] != '' and flask.request.form.get('copyright_agreement', '') != 'yes':
  47. return re_error('/error/29')
  48. if old:
  49. leng = leng_check(len(flask.request.form.get('otent', '')), len(content))
  50. if section:
  51. content = old[0][0].replace(
  52. flask.request.form.get('otent', '').replace('\r\n', '\n'),
  53. content.replace('\r\n', '\n')
  54. )
  55. else:
  56. leng = '+' + str(len(content))
  57. if get_ver:
  58. if old:
  59. curs.execute(db_change("update data set data = ? where title = ?"), [content, name])
  60. else:
  61. curs.execute(db_change("insert into data (title, data) values (?, ?)"), [name, content])
  62. curs.execute(db_change('select data from other where name = "count_all_title"'))
  63. curs.execute(db_change("update other set data = ? where name = 'count_all_title'"), [str(int(curs.fetchall()[0][0]) + 1)])
  64. curs.execute(db_change("select user from scan where title = ? and type = ''"), [name])
  65. for scan_user in curs.fetchall():
  66. curs.execute(db_change("insert into alarm (name, data, date) values (?, ?, ?)"), [
  67. scan_user[0],
  68. ip + ' | <a href="/w/' + url_pas(name) + '">' + name + '</a> | Edit',
  69. today
  70. ])
  71. curs.execute(db_change("update history set type = '', send = ? where title = ? and id = ? and ip = ? and date = ? and type = 'req'"), [
  72. old[0][1] + ' (' + ip + ' pass)',
  73. name,
  74. str(get_ver),
  75. old[0][2],
  76. old[0][3]
  77. ])
  78. curs.execute(db_change("delete from back where link = ?"), [name])
  79. curs.execute(db_change("delete from back where title = ? and type = 'no'"), [name])
  80. render_set(
  81. title = name,
  82. data = content,
  83. num = 1
  84. )
  85. else:
  86. history_plus(
  87. name,
  88. content,
  89. today,
  90. ip,
  91. flask.request.form.get('send', ''),
  92. leng,
  93. '',
  94. 'req'
  95. )
  96. conn.commit()
  97. if get_ver:
  98. return redirect('/w/' + url_pas(name))
  99. else:
  100. return redirect('/recent_changes?set=req')
  101. else:
  102. if old:
  103. data = old[0][0]
  104. else:
  105. data = ''
  106. data_old = data
  107. get_name = ''
  108. save_button = load_lang('edit_req') if not get_ver else load_lang('accept_edit_request')
  109. sub = load_lang('edit_req')
  110. disable = '' if not get_ver else 'disabled'
  111. curs.execute(db_change('select data from other where name = "edit_bottom_text"'))
  112. sql_d = curs.fetchall()
  113. if sql_d and sql_d[0][0] != '':
  114. b_text = '<hr class=\"main_hr\">' + sql_d[0][0]
  115. else:
  116. b_text = ''
  117. cccb_text = ''
  118. curs.execute(db_change('select data from other where name = "copyright_checkbox_text"'))
  119. sql_d = curs.fetchall()
  120. if sql_d and sql_d[0][0] != '':
  121. cccb_text = '<hr class=\"wmain_hr\"><input type="checkbox" name="copyright_agreement" value="yes">' + sql_d[0][0] + '<hr class=\"main_hr\">'
  122. curs.execute(db_change('select data from other where name = "edit_help"'))
  123. sql_d = curs.fetchall()
  124. if sql_d and sql_d[0][0] != '':
  125. p_text = sql_d[0][0]
  126. else:
  127. p_text = load_lang('defalut_edit_help')
  128. return easy_minify(flask.render_template(skin_check(),
  129. imp = [name, wiki_set(), custom(), other2([' (' + sub + ')', 0])],
  130. data = get_name + '''
  131. <form method="post">
  132. <script>do_stop_exit();</script>
  133. ''' + edit_button() + '''
  134. <textarea rows="25" ''' + disable + ''' id="content" placeholder="''' + p_text + '''" name="content">''' + html.escape(re.sub('\n$', '', data)) + '''</textarea>
  135. <textarea id="origin" name="otent">''' + html.escape(re.sub('\n$', '', data_old)) + '''</textarea>
  136. <hr class=\"main_hr\">
  137. <input ''' + disable + ''' placeholder="''' + load_lang('why') + '''" name="send" type="text">
  138. <hr class=\"main_hr\">
  139. ''' + captcha_get() + ip_warring() + cccb_text + '''
  140. <button id="save" type="submit" onclick="go_save_zone = 1;">''' + save_button + '''</button>
  141. <button id="preview" type="button" onclick="load_preview(\'''' + url_pas(name) + '\')">' + load_lang('preview') + '''</button>
  142. </form>
  143. ''' + b_text + '''
  144. <hr class=\"main_hr\">
  145. <div id="see_preview"></div>
  146. ''',
  147. menu = [['w/' + url_pas(name), load_lang('return')]]
  148. ))