edit_req.py 6.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177
  1. from .tool.func import *
  2. def edit_req_2(conn, name):
  3. curs = conn.cursor()
  4. ip = ip_check()
  5. get_ver = flask.request.args.get('r', None)
  6. if get_ver:
  7. section = None
  8. else:
  9. section = flask.request.args.get('section', None)
  10. if acl_check(name) == 1:
  11. if acl_check(name, 'edit_req') == 1 or re.search('^user:', name) or get_ver:
  12. return re_error('/ban')
  13. else:
  14. if not get_ver:
  15. return redirect('/edit/' + url_pas(name))
  16. else:
  17. get_ver = int(number_check(get_ver))
  18. if not get_ver:
  19. curs.execute(db_change("select data from data where title = ?"), [name])
  20. old = curs.fetchall()
  21. if not old:
  22. return redirect('/ban')
  23. else:
  24. curs.execute(db_change("select data, send, ip, date from history where title = ? and id = ? and type = 'req'"), [name, str(get_ver)])
  25. old = curs.fetchall()
  26. if not old:
  27. return redirect('/w/' + url_pas(name))
  28. if flask.request.method == 'POST':
  29. if captcha_post(flask.request.form.get('g-recaptcha-response', flask.request.form.get('g-recaptcha', ''))) == 1:
  30. return re_error('/error/13')
  31. else:
  32. captcha_post('', 0)
  33. if slow_edit_check() == 1:
  34. return re_error('/error/24')
  35. today = get_time()
  36. if get_ver:
  37. content = old[0][0]
  38. else:
  39. content = flask.request.form.get('content', '')
  40. if flask.request.form.get('otent', '') == content:
  41. return redirect('/w/' + url_pas(name))
  42. if edit_filter_do(content) == 1:
  43. return re_error('/error/21')
  44. curs.execute(db_change('select data from other where name = "copyright_checkbox_text"'))
  45. copyright_checkbox_text_d = curs.fetchall()
  46. if copyright_checkbox_text_d and copyright_checkbox_text_d[0][0] != '' and flask.request.form.get('copyright_agreement', '') != 'yes':
  47. return re_error('/error/29')
  48. content = savemark(content)
  49. if old:
  50. leng = leng_check(len(flask.request.form.get('otent', '')), len(content))
  51. if section:
  52. content = old[0][0].replace(
  53. flask.request.form.get('otent', '').replace('\r\n', '\n'),
  54. content.replace('\r\n', '\n')
  55. )
  56. else:
  57. leng = '+' + str(len(content))
  58. if get_ver:
  59. if old:
  60. curs.execute(db_change("update data set data = ? where title = ?"), [content, name])
  61. else:
  62. curs.execute(db_change("insert into data (title, data) values (?, ?)"), [name, content])
  63. curs.execute(db_change('select data from other where name = "count_all_title"'))
  64. curs.execute(db_change("update other set data = ? where name = 'count_all_title'"), [str(int(curs.fetchall()[0][0]) + 1)])
  65. curs.execute(db_change("select user from scan where title = ?"), [name])
  66. for scan_user in curs.fetchall():
  67. curs.execute(db_change("insert into alarm (name, data, date) values (?, ?, ?)"), [
  68. scan_user[0],
  69. ip + ' | <a href="/w/' + url_pas(name) + '">' + name + '</a> | Edit',
  70. today
  71. ])
  72. curs.execute(db_change("update history set type = '', send = ? where title = ? and id = ? and ip = ? and date = ? and type = 'req'"), [
  73. old[0][1] + ' (' + ip + ' pass)',
  74. name,
  75. str(get_ver),
  76. old[0][2],
  77. old[0][3]
  78. ])
  79. curs.execute(db_change("delete from back where link = ?"), [name])
  80. curs.execute(db_change("delete from back where title = ? and type = 'no'"), [name])
  81. render_set(
  82. title = name,
  83. data = content,
  84. num = 1
  85. )
  86. else:
  87. history_plus(
  88. name,
  89. content,
  90. today,
  91. ip,
  92. flask.request.form.get('send', ''),
  93. leng,
  94. '',
  95. 'req'
  96. )
  97. conn.commit()
  98. if get_ver:
  99. return redirect('/w/' + url_pas(name))
  100. else:
  101. return redirect('/recent_changes?set=req')
  102. else:
  103. if old:
  104. data = old[0][0]
  105. else:
  106. data = ''
  107. data_old = data
  108. get_name = ''
  109. save_button = load_lang('edit_req') if not get_ver else load_lang('accept_edit_request')
  110. menu_plus = [[]]
  111. sub = load_lang('edit_req')
  112. disable = '' if not get_ver else 'disabled'
  113. curs.execute(db_change('select data from other where name = "edit_bottom_text"'))
  114. sql_d = curs.fetchall()
  115. if sql_d and sql_d[0][0] != '':
  116. b_text = '<hr class=\"main_hr\">' + sql_d[0][0]
  117. else:
  118. b_text = ''
  119. cccb_text = ''
  120. curs.execute(db_change('select data from other where name = "copyright_checkbox_text"'))
  121. sql_d = curs.fetchall()
  122. if sql_d and sql_d[0][0] != '':
  123. cccb_text = '<hr class=\"wmain_hr\"><input type="checkbox" name="copyright_agreement" value="yes">' + sql_d[0][0] + '<hr class=\"main_hr\">'
  124. curs.execute(db_change('select data from other where name = "edit_help"'))
  125. sql_d = curs.fetchall()
  126. if sql_d and sql_d[0][0] != '':
  127. p_text = sql_d[0][0]
  128. else:
  129. p_text = load_lang('defalut_edit_help')
  130. return easy_minify(flask.render_template(skin_check(),
  131. imp = [name, wiki_set(), custom(), other2([' (' + sub + ')', 0])],
  132. data = get_name + '''
  133. <form method="post">
  134. <script>do_stop_exit();</script>
  135. ''' + edit_button() + '''
  136. <textarea rows="25" ''' + disable + ''' id="content" placeholder="''' + p_text + '''" name="content">''' + html.escape(re.sub('\n$', '', data)) + '''</textarea>
  137. <textarea id="origin" name="otent">''' + html.escape(re.sub('\n$', '', data_old)) + '''</textarea>
  138. <hr class=\"main_hr\">
  139. <input ''' + disable + ''' placeholder="''' + load_lang('why') + '''" name="send" type="text">
  140. <hr class=\"main_hr\">
  141. ''' + captcha_get() + ip_warring() + cccb_text + '''
  142. <button id="save" type="submit" onclick="go_save_zone = 1;">''' + save_button + '''</button>
  143. <button id="preview" type="button" onclick="load_preview(\'''' + url_pas(name) + '\')">' + load_lang('preview') + '''</button>
  144. </form>
  145. ''' + b_text + '''
  146. <hr class=\"main_hr\">
  147. <div id="see_preview"></div>
  148. ''',
  149. menu = [['w/' + url_pas(name), load_lang('return')]] + menu_plus
  150. ))