X-Git-Url: https://git.mxchange.org/?a=blobdiff_plain;f=mod%2Flockview.php;h=35c4b043329ae4284250d95a398636407a3d5d8e;hb=41663c7592abe55a958632c3a48265e0a8544d2b;hp=7ced34647fc02bb8fa9579fc26ca21eb74283612;hpb=9c2c4839968169a191084d6d2b0d629d82430e67;p=friendica.git
diff --git a/mod/lockview.php b/mod/lockview.php
index 7ced34647f..35c4b04332 100644
--- a/mod/lockview.php
+++ b/mod/lockview.php
@@ -1,99 +1,116 @@
argc > 1) ? $a->argv[1] : 0);
if (is_numeric($type)) {
$item_id = intval($type);
- $type='item';
+ $type = 'item';
} else {
$item_id = (($a->argc > 2) ? intval($a->argv[2]) : 0);
}
- if (! $item_id)
- killme();
-
- if (!in_array($type, array('item','photo','event')))
- killme();
+ if (!$item_id) {
+ exit();
+ }
- $r = q("SELECT * FROM `%s` WHERE `id` = %d LIMIT 1",
- dbesc($type),
- intval($item_id)
- );
- if (! dbm::is_result($r)) {
- killme();
+ if (!in_array($type, ['item','photo','event'])) {
+ exit();
}
- $item = $r[0];
- call_hooks('lockview_content', $item);
+ $fields = ['uid', 'allow_cid', 'allow_gid', 'deny_cid', 'deny_gid'];
+ $condition = ['id' => $item_id];
- if ($item['uid'] != local_user()) {
- echo t('Remote privacy information not available.') . '
';
- killme();
+ if ($type != 'item') {
+ $item = DBA::selectFirst($type, $fields, $condition);
+ } else {
+ $fields[] = 'private';
+ $item = Item::selectFirst($fields, $condition);
}
+ if (!DBA::isResult($item)) {
+ exit();
+ }
- if (($item['private'] == 1) && (! strlen($item['allow_cid'])) && (! strlen($item['allow_gid']))
- && (! strlen($item['deny_cid'])) && (! strlen($item['deny_gid']))) {
+ Hook::callAll('lockview_content', $item);
- echo t('Remote privacy information not available.') . '
';
- killme();
+ if ($item['uid'] != local_user()) {
+ echo L10n::t('Remote privacy information not available.') . '
';
+ exit();
+ }
+
+ if (isset($item['private'])
+ && $item['private'] == 1
+ && empty($item['allow_cid'])
+ && empty($item['allow_gid'])
+ && empty($item['deny_cid'])
+ && empty($item['deny_gid']))
+ {
+ echo L10n::t('Remote privacy information not available.') . '
';
+ exit();
}
- $allowed_users = expand_acl($item['allow_cid']);
+ $allowed_users = expand_acl($item['allow_cid']);
$allowed_groups = expand_acl($item['allow_gid']);
- $deny_users = expand_acl($item['deny_cid']);
- $deny_groups = expand_acl($item['deny_gid']);
+ $deny_users = expand_acl($item['deny_cid']);
+ $deny_groups = expand_acl($item['deny_gid']);
- $o = t('Visible to:') . '
';
- $l = array();
+ $o = L10n::t('Visible to:') . '
';
+ $l = [];
if (count($allowed_groups)) {
$r = q("SELECT `name` FROM `group` WHERE `id` IN ( %s )",
- dbesc(implode(', ', $allowed_groups))
+ DBA::escape(implode(', ', $allowed_groups))
);
- if (dbm::is_result($r)) {
+ if (DBA::isResult($r)) {
foreach ($r as $rr) {
$l[] = '' . $rr['name'] . '';
}
}
}
+
if (count($allowed_users)) {
$r = q("SELECT `name` FROM `contact` WHERE `id` IN ( %s )",
- dbesc(implode(', ',$allowed_users))
+ DBA::escape(implode(', ', $allowed_users))
);
- if (dbm::is_result($r)) {
+ if (DBA::isResult($r)) {
foreach ($r as $rr) {
$l[] = $rr['name'];
}
}
-
}
if (count($deny_groups)) {
$r = q("SELECT `name` FROM `group` WHERE `id` IN ( %s )",
- dbesc(implode(', ', $deny_groups))
+ DBA::escape(implode(', ', $deny_groups))
);
- if (dbm::is_result($r)) {
+ if (DBA::isResult($r)) {
foreach ($r as $rr) {
$l[] = '' . $rr['name'] . '';
}
}
}
+
if (count($deny_users)) {
$r = q("SELECT `name` FROM `contact` WHERE `id` IN ( %s )",
- dbesc(implode(', ',$deny_users))
+ DBA::escape(implode(', ', $deny_users))
);
- if (dbm::is_result($r)) {
+ if (DBA::isResult($r)) {
foreach ($r as $rr) {
$l[] = '' . $rr['name'] . '';
}
}
-
}
echo $o . implode(', ', $l);
- killme();
+ exit();
}