X-Git-Url: https://git.mxchange.org/?a=blobdiff_plain;f=mod%2Flockview.php;h=35c4b043329ae4284250d95a398636407a3d5d8e;hb=41663c7592abe55a958632c3a48265e0a8544d2b;hp=746df28cd9478bbbef134dbbe8a797c3c8a0750c;hpb=ed0143c9f001a6a3bbe51a56f82fd2476dd627d5;p=friendica.git
diff --git a/mod/lockview.php b/mod/lockview.php
index 746df28cd9..35c4b04332 100644
--- a/mod/lockview.php
+++ b/mod/lockview.php
@@ -1,91 +1,116 @@
argc > 1) ? $a->argv[1] : 0);
if (is_numeric($type)) {
$item_id = intval($type);
- $type='item';
+ $type = 'item';
} else {
$item_id = (($a->argc > 2) ? intval($a->argv[2]) : 0);
}
-
- if(! $item_id)
- killme();
-
- if (!in_array($type, array('item','photo','event')))
- killme();
-
- $r = q("SELECT * FROM `%s` WHERE `id` = %d LIMIT 1",
- dbesc($type),
- intval($item_id)
- );
- if (! dbm::is_result($r)) {
- killme();
+
+ if (!$item_id) {
+ exit();
}
- $item = $r[0];
- call_hooks('lockview_content', $item);
+ if (!in_array($type, ['item','photo','event'])) {
+ exit();
+ }
- if($item['uid'] != local_user()) {
- echo t('Remote privacy information not available.') . '
';
- killme();
+ $fields = ['uid', 'allow_cid', 'allow_gid', 'deny_cid', 'deny_gid'];
+ $condition = ['id' => $item_id];
+
+ if ($type != 'item') {
+ $item = DBA::selectFirst($type, $fields, $condition);
+ } else {
+ $fields[] = 'private';
+ $item = Item::selectFirst($fields, $condition);
}
+ if (!DBA::isResult($item)) {
+ exit();
+ }
- if(($item['private'] == 1) && (! strlen($item['allow_cid'])) && (! strlen($item['allow_gid']))
- && (! strlen($item['deny_cid'])) && (! strlen($item['deny_gid']))) {
+ Hook::callAll('lockview_content', $item);
- echo t('Remote privacy information not available.') . '
';
- killme();
+ if ($item['uid'] != local_user()) {
+ echo L10n::t('Remote privacy information not available.') . '
';
+ exit();
}
- $allowed_users = expand_acl($item['allow_cid']);
+ if (isset($item['private'])
+ && $item['private'] == 1
+ && empty($item['allow_cid'])
+ && empty($item['allow_gid'])
+ && empty($item['deny_cid'])
+ && empty($item['deny_gid']))
+ {
+ echo L10n::t('Remote privacy information not available.') . '
';
+ exit();
+ }
+
+ $allowed_users = expand_acl($item['allow_cid']);
$allowed_groups = expand_acl($item['allow_gid']);
- $deny_users = expand_acl($item['deny_cid']);
- $deny_groups = expand_acl($item['deny_gid']);
+ $deny_users = expand_acl($item['deny_cid']);
+ $deny_groups = expand_acl($item['deny_gid']);
- $o = t('Visible to:') . '
';
- $l = array();
+ $o = L10n::t('Visible to:') . '
';
+ $l = [];
- if(count($allowed_groups)) {
+ if (count($allowed_groups)) {
$r = q("SELECT `name` FROM `group` WHERE `id` IN ( %s )",
- dbesc(implode(', ', $allowed_groups))
+ DBA::escape(implode(', ', $allowed_groups))
);
- if (dbm::is_result($r))
- foreach($r as $rr)
+ if (DBA::isResult($r)) {
+ foreach ($r as $rr) {
$l[] = '' . $rr['name'] . '';
+ }
+ }
}
- if(count($allowed_users)) {
+
+ if (count($allowed_users)) {
$r = q("SELECT `name` FROM `contact` WHERE `id` IN ( %s )",
- dbesc(implode(', ',$allowed_users))
+ DBA::escape(implode(', ', $allowed_users))
);
- if (dbm::is_result($r))
- foreach($r as $rr)
+ if (DBA::isResult($r)) {
+ foreach ($r as $rr) {
$l[] = $rr['name'];
-
+ }
+ }
}
- if(count($deny_groups)) {
+ if (count($deny_groups)) {
$r = q("SELECT `name` FROM `group` WHERE `id` IN ( %s )",
- dbesc(implode(', ', $deny_groups))
+ DBA::escape(implode(', ', $deny_groups))
);
- if (dbm::is_result($r))
- foreach($r as $rr)
+ if (DBA::isResult($r)) {
+ foreach ($r as $rr) {
$l[] = '' . $rr['name'] . '';
+ }
+ }
}
- if(count($deny_users)) {
+
+ if (count($deny_users)) {
$r = q("SELECT `name` FROM `contact` WHERE `id` IN ( %s )",
- dbesc(implode(', ',$deny_users))
+ DBA::escape(implode(', ', $deny_users))
);
- if (dbm::is_result($r))
- foreach($r as $rr)
+ if (DBA::isResult($r)) {
+ foreach ($r as $rr) {
$l[] = '' . $rr['name'] . '';
-
+ }
+ }
}
echo $o . implode(', ', $l);
- killme();
+ exit();
}