$sqlString ); // Escape all data foreach ($data as $key => $value) { $dataSecured[$key] = SQL_ESCAPE($value, $secure, $strip); } // END - foreach // Generate query $query = call_user_func_array('sprintf', $dataSecured); if ($run === true) { // Run SQL query (default) return SQL_QUERY($query, $F, $L); } else { // Return secured string return $query; } } // Get id from last INSERT command function SQL_INSERTID () { if (!SQL_IS_LINK_UP()) return false; return mysql_insert_id(); } // Escape a string for the database function SQL_ESCAPE ($str, $secureString = true, $strip = true) { // Is there cache? if (!isset($GLOBALS['sql_escapes']['' . $str . ''])) { // Prepare the string here $str = SQL_PREPARE_SQL_STRING($str); // Secure string first? (which is the default behaviour!) if ($secureString === true) { // Then do it here $str = secureString($str, $strip); } // END - if if (!SQL_IS_LINK_UP()) { // Fall-back to escapeQuotes() when there is no link $ret = escapeQuotes($str); } elseif (function_exists('mysql_real_escape_string')) { // The new and improved version $ret = mysql_real_escape_string($str, SQL_GET_LINK()); } elseif (function_exists('mysql_escape_string')) { // The obsolete function $ret = mysql_escape_string($str, SQL_GET_LINK()); } else { // If nothing else works, fall back to escapeQuotes() again $ret = escapeQuotes($str); } // Cache result $GLOBALS['sql_escapes']['' . $str . ''] = $ret; } // END - if // Return it return $GLOBALS['sql_escapes']['' . $str . '']; } // SELECT query string from table, columns and so on... ;-) function SQL_RESULT_FROM_ARRAY ($table, $columns, $idRow, $id, $F, $L) { // Is columns an array? if (!is_array($columns)) { // No array reportBug(__FUNCTION__, __LINE__, sprintf("columns is not an array. %s != array, file=%s, line=%s", gettype($columns), basename($F), $L )); // Abort here with 'false' return false; } // END - if // Is this is a simple array? if ((is_array($columns[0])) && (isset($columns[0]['column']))) { // Begin with SQL query $sql = 'SELECT '; // No, it comes from XML, so get it back from it $sql .= getSqlPartFromXmlArray($columns); // Finalize it $sql .= " FROM `{?_MYSQL_PREFIX?}_%s` WHERE `%s`='%s' LIMIT 1"; } else { // Yes, prepare the SQL statement $sql = 'SELECT `' . implode('`,`', $columns) . "` FROM `{?_MYSQL_PREFIX?}_%s` WHERE `%s`='%s' LIMIT 1"; } // Return the result return SQL_QUERY_ESC($sql, array( $table, $idRow, bigintval($id), ), $F, $L ); } // ALTER TABLE wrapper function function SQL_ALTER_TABLE ($sql, $F, $L, $enableCodes = true) { // Abort if link is down if (!SQL_IS_LINK_UP()) return false; // This is the default result... $result = false; // Determine index/fulltext/unique word $isAlterIndex = ( ( isInString('INDEX', $sql) ) || ( isInString('KEY', $sql) ) || ( isInString('FULLTEXT', $sql) ) || ( isInString('UNIQUE', $sql) ) ); // Extract table name $tableArray = explode(' ', $sql); $tableName = str_replace('`', '', $tableArray[2]); // Debug log //* DEBUG: */ logDebugMessage(__FUNCTION__, __LINE__, 'sql=' . $sql . ',tableName=' . $tableName . ',tableArray=
' . print_r($tableArray, true) . '
,isAlterIndex=' . intval($isAlterIndex)); // Shall we add/drop? if (((isInString('ADD', $sql)) || (isInString('DROP', $sql)) || (isInString('CHANGE', $sql))) && ($isAlterIndex === false)) { // Try two columns, one should fix foreach (array(4,5) as $idx) { // If an entry is not set, abort here if (!isset($tableArray[$idx])) { // Debug log this logDebugMessage(__FUNCTION__, __LINE__, 'columnName=' . $columnName . ',idx=' . $idx . ',sql=' . $sql . ' is missing!'); break; } // END - if // And column name as well $columnName = $tableArray[$idx]; // Debug log //* DEBUG: */ logDebugMessage(__FUNCTION__, __LINE__, 'columnName=' . $columnName . ',idx=' . $idx . ',sql=' . $sql . ',hasZeroNums=' . intval(ifSqlColumnExists($tableName, $columnName))); // Is there no entry on ADD or an entry on DROP/CHANGE? if (((!ifSqlColumnExists($tableName, $columnName)) && (isInString('ADD', $sql))) || ((ifSqlColumnExists($tableName, $columnName)) && ((isInString('DROP', $sql)) || ((isInString('CHANGE', $sql)) && ($idx == 4) && ((!ifSqlColumnExists($tableName, $tableArray[5])) || ($columnName == $tableArray[5])))))) { // Do the query //* DEBUG: */ logDebugMessage(__FUNCTION__, __LINE__, 'Executing: ' . $sql); $result = SQL_QUERY($sql, $F, $L, false); // Skip further attempt(s) break; } elseif ((((ifSqlColumnExists($tableName, $columnName)) && (isInString('ADD', $sql))) || ((!ifSqlColumnExists($tableName, $columnName)) && ((isInString('DROP', $sql))) || (isInString('CHANGE', $sql)))) && ($columnName != 'KEY')) { // Abort here because it is alreay there //* DEBUG: */ logDebugMessage(__FUNCTION__, __LINE__, 'Skipped: sql=' . $sql . ',columnName=' . $columnName . ',idx=' . $idx); break; } elseif ((!ifSqlColumnExists($tableName, $columnName)) && (isInString('DROP', $sql))) { // Abort here because we tried to drop a column which is not there (never created maybe) //* DEBUG: */ logDebugMessage(__FUNCTION__, __LINE__, 'No drop: ' . $sql); break; } elseif ($columnName != 'KEY') { // Something didn't fit, we better log it logDebugMessage(__FUNCTION__, __LINE__, 'Possible problem: ' . $sql . ',hasZeroNums=' . intval(ifSqlColumnExists($tableName, $columnName)) . ''); } } // END - foreach } elseif ((getTableType() == 'InnoDB') && (isInString('FULLTEXT', $sql))) { // Skip this query silently because InnoDB does not understand fulltext indexes //* DEBUG: */ logDebugMessage(__FUNCTION__, __LINE__, sprintf("Skipped FULLTEXT: sql=%s,tableName=%s,hasZeroNums=%d,file=%s,line=%s", $sql, $tableName, intval((is_bool($result)) ? 0 : ifSqlColumnExists($columnName)), $F, $L)); } elseif ($isAlterIndex === true) { // And column name as well without backticks $keyName = str_replace('`', '', $tableArray[5]); //* DEBUG: */ logDebugMessage(__FUNCTION__, __LINE__, 'keyName=' . $keyName . ',tableArray=
' . print_r($tableArray, true) . '
'); // Is this "UNIQUE" or so? FULLTEXT has been handled the elseif() block above if (in_array(strtoupper($tableArray[4]), array('INDEX', 'UNIQUE', 'KEY', 'FULLTEXT'))) { // Init loop $begin = 1; $keyName = ','; while (isInString(',', $keyName)) { // Use last //* DEBUG: */ logDebugMessage(__FUNCTION__, __LINE__, 'keyName=' . $keyName . 'begin=' . $begin . ' - BEFORE'); $keyName = str_replace('`', '', $tableArray[count($tableArray) - $begin]); //* DEBUG: */ logDebugMessage(__FUNCTION__, __LINE__, 'keyName=' . $keyName . 'begin=' . $begin . ' - BETWEEN'); // Remove brackes $keyName = str_replace(array('(', ')'), array('', ''), $keyName); //* DEBUG: */ logDebugMessage(__FUNCTION__, __LINE__, 'keyName=' . $keyName . 'begin=' . $begin . ' - AFTER'); // Continue $begin++; } // END while } // END - if // Shall we run it? //* DEBUG: */ logDebugMessage(__FUNCTION__, __LINE__, 'tableName=' . $tableName . ', tableArray[3]=' . $tableArray[3] . ',keyName=' . $keyName); if (($tableArray[3] == 'ADD') && (!isSqlTableIndexFound($tableName, $keyName))) { // Send it to the SQL_QUERY() function to add it //* DEBUG: */ logDebugMessage(__FUNCTION__, __LINE__, 'sql=' . $sql . ' - ADDING!'); $result = SQL_QUERY($sql, $F, $L, $enableCodes); } elseif (($tableArray[3] == 'DROP') && (isSqlTableIndexFound($tableName, $keyName))) { // Send it to the SQL_QUERY() function to drop it //* DEBUG: */ logDebugMessage(__FUNCTION__, __LINE__, 'sql=' . $sql . ' - DROPPING!'); $result = SQL_QUERY($sql, $F, $L, $enableCodes); } else { // Not executed //* DEBUG: */ logDebugMessage(__FUNCTION__, __LINE__, 'Not executed: ' . $sql); } } else { // Other ALTER TABLE query //* DEBUG: */ logDebugMessage(__FUNCTION__, __LINE__, $sql); $result = SQL_QUERY($sql, $F, $L, $enableCodes); } // Return result return $result; } // Getter for SQL link function SQL_GET_LINK () { // Init link $link = NULL; // Is it in the globals? if (isset($GLOBALS['sql_link'])) { // Then take it $link = $GLOBALS['sql_link']; } // END - if // Return it return $link; } // Setter for link function SQL_SET_LINK ($link) { // Is this a resource or null? if ((ifFatalErrorsDetected()) && (isInstallationPhase())) { // This may happen in installation phase return; } elseif ((!is_resource($link)) && (!is_null($link))) { // This should never happen! reportBug(__FUNCTION__, __LINE__, sprintf("Type of link is not resource or null, type=%s", gettype($link))); } // END - if // Set it $GLOBALS['sql_link'] = $link; // Re-init cache $GLOBALS['is_sql_link_up'] = is_resource($link); } // Checks if the link is up function SQL_IS_LINK_UP () { // Is there cached this? if (!isset($GLOBALS['is_sql_link_up'])) { // Determine it $GLOBALS['is_sql_link_up'] = is_resource(SQL_GET_LINK()); } // END - if // Return the result return $GLOBALS['is_sql_link_up']; } // Wrapper function to make code more readable function SQL_HASZERONUMS ($result) { // Just pass it through return (SQL_NUMROWS($result) === 0); } // Wrapper function to make code more readable function SQL_HASZEROAFFECTED () { // Just pass it through return (SQL_AFFECTEDROWS() === 0); } // Private function to prepare the SQL query string function SQL_PREPARE_SQL_STRING ($sqlString, $enableCodes = true) { // Is it already cached? if (!isset($GLOBALS['sql_strings'][$sqlString])) { // Compile URI codes+config+expression code $sqlString2 = FILTER_COMPILE_EXPRESSION_CODE(FILTER_COMPILE_CONFIG(compileUriCode($sqlString))); // Do final compilation $GLOBALS['sql_strings'][$sqlString] = doFinalCompilation($sqlString2, false, $enableCodes); } // END - if // Return it return $GLOBALS['sql_strings'][$sqlString]; } // Creates a MySQL TIMESTAMP compatible string from given Uni* timestamp function SQL_EPOCHE_TO_TIMESTAMP ($timestamp) { return generateDateTime($timestamp, 7); } // Log SQL errors to debug.log in installation phase or call reportBug() function SQL_ERROR ($file, $line, $message) { // Remember plain error in last_sql_error $GLOBALS['last_sql_error'] = mysql_error(); // Is there installation phase? if (isInstallationPhase()) { /* * In installation phase, we don't want SQL errors abort e.g. connection * tests, so just log it away. */ logDebugMessage($file, $line, $message); } else { // Regular mode, then call reportBug() reportBug($file, $line, $message); } } // Check if there is a SQL table created function ifSqlTableExists ($tableName) { //* DEBUG: */ logDebugMessage(__FUNCTION__, __LINE__, 'tableName=' . $tableName . ' - ENTERED!'); // Is there cache? if (!isset($GLOBALS[__FUNCTION__][$tableName])) { // Check if the table is there $result = SQL_QUERY_ESC("SHOW TABLES FROM `{?__DB_NAME?}` WHERE `Tables_in_{?__DB_NAME?}`='{?_MYSQL_PREFIX?}_%s'", array($tableName), __FILE__, __LINE__); // Is there an entry? $GLOBALS[__FUNCTION__][$tableName] = (SQL_NUMROWS($result) == 1); //* DEBUG: */ logDebugMessage(__FUNCTION__, __LINE__, 'tableName=' . $tableName . ',numRows=' . intval($GLOBALS[__FUNCTION__][$tableName])); } // END - if // Return cache //* DEBUG: */ logDebugMessage(__FUNCTION__, __LINE__, 'tableName=' . $tableName . ',result=' . intval($GLOBALS[__FUNCTION__][$tableName]) . ' - EXIT!'); return $GLOBALS[__FUNCTION__][$tableName]; } // Is a table column there? function ifSqlColumnExists ($tableName, $columnName) { //* DEBUG: */ logDebugMessage(__FUNCTION__, __LINE__, 'tableName=' . $tableName . ',columnName=' . $columnName . ' - ENTERED!'); // Is there cache? if (!isset($GLOBALS[__FUNCTION__][$tableName][$columnName])) { // And column name as well $columnName = str_replace('`', '', $columnName); // Get column information $result = SQL_QUERY_ESC("SHOW COLUMNS FROM `%s` LIKE '%s'", array( $tableName, $columnName ), __FUNCTION__, __LINE__); // Determine it $GLOBALS[__FUNCTION__][$tableName][$columnName] = (!SQL_HASZERONUMS($result)); //* DEBUG: */ logDebugMessage(__FUNCTION__, __LINE__, 'tableName=' . $tableName . ',columnName=' . $columnName . ',hasZeroNums=' . intval(SQL_HASZERONUMS($result)) . ',numRows=' . intval($GLOBALS[__FUNCTION__][$tableName][$columnName])); // Free result SQL_FREERESULT($result); } // END - if // Return cache //* DEBUG: */ logDebugMessage(__FUNCTION__, __LINE__, 'tableName=' . $tableName . ',columnName=' . $columnName . ',result=' . intval($GLOBALS[__FUNCTION__][$tableName][$columnName]) . ' - EXIT!'); return $GLOBALS[__FUNCTION__][$tableName][$columnName]; } // Checks depending on the mode if the index is there function isSqlTableIndexFound ($tableName, $keyName) { //* DEBUG: */ logDebugMessage(__FUNCTION__, __LINE__, 'tableName=' . $tableName . ',columnName=' . $keyName . ' - ENTERED!'); // Is there cache? if (!isset($GLOBALS[__FUNCTION__][$tableName][$keyName])) { // Show indexes $result = SQL_QUERY_ESC("SHOW INDEX FROM `%s`", array($tableName), __FUNCTION__, __LINE__); // The column is not found by default $GLOBALS[__FUNCTION__][$tableName][$keyName] = false; // Walk through all while ($content = SQL_FETCHARRAY($result)) { // Add all entries for better caching behavior $GLOBALS[__FUNCTION__][$tableName][$content['Key_name']] = true; } // END - while // Free result SQL_FREERESULT($result); } else { // Cache used //* DEBUG: */ logDebugMessage(__FUNCTION__, __LINE__, 'tableName=' . $tableName . ',columnName=' . $keyName . ',result=' . intval($GLOBALS[__FUNCTION__][$tableName][$keyName]) . ' - CACHE!'); } // END - if // Return cache //* DEBUG: */ logDebugMessage(__FUNCTION__, __LINE__, 'tableName=' . $tableName . ',columnName=' . $keyName . ',result=' . intval($GLOBALS[__FUNCTION__][$tableName][$keyName]) . ' - EXIT!'); return $GLOBALS[__FUNCTION__][$tableName][$keyName]; } // Init database layer function initDatabaseLayer () { // Set all required variables: $GLOBALS['last_sql_error'] = ''; } // Get last SQL error function getLastSqlError () { return $GLOBALS['last_sql_error']; } // Gets an array (or false if none is found) from all supported engines function getArrayFromSupportedSqlEngines ($support = 'YES') { // Init array $engines = array(); // This also worked, now we need to check if the selected database type is supported $result = SQL_QUERY('SHOW ENGINES', __FUNCTION__, __LINE__); // Are there entries? (Bad if not) if (SQL_NUMROWS($result) > 0) { // Load all and check for active entries while ($content = SQL_FETCHARRAY($result)) { // Is this supported? if (($support == 'ALL') || ($content['Support'] == $support)) { // Add it array_push($engines, $content); } elseif (isDebugModeEnabled()) { // Log it away in debug mode logDebugMessage(__FUNCTION__, __LINE__, 'Engine ' . $content['Engine'] . ' is not supported (' . $content['Supported'] . ')'); } } // END - if } else { // No engines! :( $engines = false; } // Free result SQL_FREERESULT($result); // Return result return $engines; } // [EOF] ?>