edit_req.py 6.0 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163
  1. from .tool.func import *
  2. def edit_req_2(conn, name):
  3. curs = conn.cursor()
  4. ip = ip_check()
  5. get_ver = flask.request.args.get('r', None)
  6. if get_ver:
  7. section = None
  8. else:
  9. section = flask.request.args.get('section', None)
  10. if acl_check(name) == 1:
  11. if acl_check(name, 'edit_req') == 1 or re.search('^user:', name) or ban_check() == 1 or get_ver:
  12. return re_error('/ban')
  13. else:
  14. if not get_ver:
  15. return redirect('/edit/' + url_pas(name))
  16. else:
  17. get_ver = int(number_check(get_ver))
  18. if not get_ver:
  19. curs.execute(db_change("select data from data where title = ?"), [name])
  20. old = curs.fetchall()
  21. if not old:
  22. return redirect('/w/' + url_pas(name))
  23. else:
  24. curs.execute(db_change("select data, send, ip, date from history where title = ? and id = ? and type = 'req'"), [name, str(get_ver)])
  25. old = curs.fetchall()
  26. if not old:
  27. return redirect('/w/' + url_pas(name))
  28. if flask.request.method == 'POST':
  29. if captcha_post(flask.request.form.get('g-recaptcha-response', '')) == 1:
  30. return re_error('/error/13')
  31. else:
  32. captcha_post('', 0)
  33. if slow_edit_check() == 1:
  34. return re_error('/error/24')
  35. today = get_time()
  36. if get_ver:
  37. content = old[0][0]
  38. else:
  39. content = flask.request.form.get('content', '')
  40. if flask.request.form.get('otent', '') == content:
  41. return redirect('/w/' + url_pas(name))
  42. if edit_filter_do(content) == 1:
  43. return re_error('/error/21')
  44. content = savemark(content)
  45. if old:
  46. leng = leng_check(len(flask.request.form.get('otent', '')), len(content))
  47. if section:
  48. content = old[0][0].replace(flask.request.form.get('otent', ''), content)
  49. else:
  50. leng = '+' + str(len(content))
  51. if get_ver:
  52. if old:
  53. curs.execute(db_change("update data set data = ? where title = ?"), [content, name])
  54. else:
  55. curs.execute(db_change("insert into data (title, data) values (?, ?)"), [name, content])
  56. curs.execute(db_change('select data from other where name = "count_all_title"'))
  57. curs.execute(db_change("update other set data = ? where name = 'count_all_title'"), [str(int(curs.fetchall()[0][0]) + 1)])
  58. curs.execute(db_change("select user from scan where title = ?"), [name])
  59. for scan_user in curs.fetchall():
  60. curs.execute(db_change("insert into alarm (name, data, date) values (?, ?, ?)"), [
  61. scan_user[0],
  62. ip + ' | <a href="/w/' + url_pas(name) + '">' + name + '</a> | Edit',
  63. today
  64. ])
  65. curs.execute(db_change("update history set type = '', send = ? where title = ? and id = ? and ip = ? and date = ? and type = 'req'"), [
  66. old[0][1] + ' (' + ip + ' pass)',
  67. name,
  68. str(get_ver),
  69. old[0][2],
  70. old[0][3]
  71. ])
  72. curs.execute(db_change("delete from back where link = ?"), [name])
  73. curs.execute(db_change("delete from back where title = ? and type = 'no'"), [name])
  74. render_set(
  75. title = name,
  76. data = content,
  77. num = 1
  78. )
  79. else:
  80. history_plus(
  81. name,
  82. content,
  83. today,
  84. ip,
  85. flask.request.form.get('send', ''),
  86. leng,
  87. '',
  88. 'req'
  89. )
  90. conn.commit()
  91. if get_ver:
  92. return redirect('/w/' + url_pas(name))
  93. else:
  94. return redirect('/recent_changes?set=req')
  95. else:
  96. if old:
  97. data = old[0][0]
  98. else:
  99. data = ''
  100. data_old = data
  101. get_name = ''
  102. save_button = load_lang('edit_req') if not get_ver else load_lang('edit_req_check')
  103. menu_plus = [[]]
  104. sub = load_lang('edit_req')
  105. disable = '' if not get_ver else 'disabled'
  106. curs.execute(db_change('select data from other where name = "edit_bottom_text"'))
  107. sql_d = curs.fetchall()
  108. if sql_d and sql_d[0][0] != '':
  109. b_text = '<hr class=\"main_hr\">' + sql_d[0][0]
  110. else:
  111. b_text = ''
  112. curs.execute(db_change('select data from other where name = "edit_help"'))
  113. sql_d = curs.fetchall()
  114. if sql_d and sql_d[0][0] != '':
  115. p_text = sql_d[0][0]
  116. else:
  117. p_text = load_lang('defalut_edit_help')
  118. return easy_minify(flask.render_template(skin_check(),
  119. imp = [name, wiki_set(), custom(), other2([' (' + sub + ')', 0])],
  120. data = get_name + '''
  121. <form method="post">
  122. <script>do_stop_exit();</script>
  123. ''' + edit_button() + '''
  124. <textarea rows="25" ''' + disable + ''' id="content" placeholder="''' + p_text + '''" name="content">''' + html.escape(re.sub('\n$', '', data)) + '''</textarea>
  125. <textarea id="origin" name="otent">''' + html.escape(re.sub('\n$', '', data_old)) + '''</textarea>
  126. <hr class=\"main_hr\">
  127. <input ''' + disable + ''' placeholder="''' + load_lang('why') + '''" name="send" type="text">
  128. <hr class=\"main_hr\">
  129. ''' + captcha_get() + ip_warring() + '''
  130. <button id="save" type="submit" onclick="go_save_zone = 1;">''' + save_button + '''</button>
  131. <button id="preview" type="button" onclick="load_preview(\'''' + url_pas(name) + '\')">' + load_lang('preview') + '''</button>
  132. </form>
  133. ''' + b_text + '''
  134. <hr class=\"main_hr\">
  135. <div id="see_preview"></div>
  136. ''',
  137. menu = [['w/' + url_pas(name), load_lang('return')]] + menu_plus
  138. ))