/
filter_api.php
266 lines (215 loc) · 8.99 KB
/
filter_api.php
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
<?php
# Mantis - a php based bugtracking system
# Copyright (C) 2000 - 2002 Kenzaburo Ito - kenito@300baud.org
# Copyright (C) 2002 - 2003 Mantis Team - mantisbt-dev@lists.sourceforge.net
# This program is distributed under the terms and conditions of the GPL
# See the README and LICENSE files for details
# --------------------------------------------------------
# $Id: filter_api.php,v 1.9 2003-02-25 15:48:07 int2str Exp $
# --------------------------------------------------------
$t_core_dir = dirname( __FILE__ ).DIRECTORY_SEPARATOR;
require_once( $t_core_dir . 'current_user_api.php' );
###########################################################################
# Filter API
###########################################################################
# @@@ Had to make all these parameters required because we can't use
# call-time pass by reference anymore. I really preferred not having
# to pass all the params in if you didn't want to, but I wanted to get
# rid of the errors for now. If we can think of a better way later
# (maybe return an object) that would be great.
#
# $p_page_numer
# - the page you want to see (set to the actual page on return)
# $p_per_page
# - the number of bugs to see per page (set to actual on return)
# -1 indicates you want to see all bugs
# null indicates you want to use the value specified in the filter
# $p_page_count
# - you don't need to give a value here, the number of pages will be
# stored here on return
# $p_bug_count
# - you don't need to give a value here, the number of bugs will be
# stored here on return
function filter_get_bug_rows( &$p_page_number, &$p_per_page, &$p_page_count, &$p_bug_count ) {
$t_bug_table = config_get( 'mantis_bug_table' );
$t_bug_text_table = config_get( 'mantis_bug_text_table' );
$t_bugnote_table = config_get( 'mantis_bugnote_table' );
$t_bugnote_text_table = config_get( 'mantis_bugnote_text_table' );
$t_project_table = config_get( 'mantis_project_table' );
$t_filter = current_user_get_bug_filter();
if ( false === $t_filter ) {
return false; # signify a need to create a cookie
#@@@ error instead?
}
$t_project_id = helper_get_current_project();
$t_user_id = auth_get_current_user_id();
$t_where_clauses = array( "$t_project_table.enabled = 1", "$t_project_table.id = $t_bug_table.project_id" );
$t_select_clauses = array( "$t_bug_table.*" );
$t_from_clauses = array( $t_bug_table, $t_project_table );
$t_join_clauses = array();
if ( 0 == $t_project_id ) { # all projects
if ( ! current_user_is_administrator() ) {
$t_projects = current_user_get_accessible_projects();
if ( 0 == sizeof( $t_projects ) ) {
return array(); # no accessible projects, return an empty array
} else {
$t_clauses = array();
#@@@ use project_id IN (1,2,3,4) syntax if we can
for ( $i=0 ; $i < sizeof( $t_projects ) ; $i++) {
array_push( $t_clauses, "($t_bug_table.project_id='$t_projects[$i]')" );
}
array_push( $t_where_clauses, '('. implode( ' OR ', $t_clauses ) .')' );
}
}
} else {
access_ensure_project_level( VIEWER, $t_project_id );
array_push( $t_where_clauses, "($t_bug_table.project_id='$t_project_id')" );
}
# private bug selection
if ( ! access_has_project_level( config_get( 'private_bug_threshold' ) ) ) {
$t_public = PUBLIC;
$t_private = PRIVATE;
array_push( $t_where_clauses, "($t_bug_table.view_state='$t_public' OR ($t_bug_table.view_state='$t_private' AND $t_bug_table.reporter_id='$t_user_id'))" );
}
# reporter
if ( 'any' != $t_filter['reporter_id'] ) {
$c_reporter_id = db_prepare_int( $t_filter['reporter_id'] );
array_push( $t_where_clauses, "($t_bug_table.reporter_id='$c_reporter_id')" );
}
# handler
if ( 'none' == $t_filter['handler_id'] ) {
array_push( $t_where_clauses, "$t_bug_table.handler_id=0" );
} else if ( 'any' != $t_filter['handler_id'] ) {
$c_handler_id = db_prepare_int( $t_filter['handler_id'] );
array_push( $t_where_clauses, "($t_bug_table.handler_id='$c_handler_id')" );
}
# hide closed
if (( 'on' == $t_filter['hide_closed'] )&&( CLOSED != $t_filter['show_status'] )) {
$t_closed = CLOSED;
array_push( $t_where_clauses, "($t_bug_table.status<>'$t_closed')" );
}
# hide resolved
if (( 'on' == $t_filter['hide_resolved'] )&&( RESOLVED != $t_filter['show_status'] )) {
$t_resolved = RESOLVED;
array_push( $t_where_clauses, "($t_bug_table.status<>'$t_resolved')" );
}
# category
if ( 'any' != $t_filter['show_category'] ) {
$c_show_category = db_prepare_string( $t_filter['show_category'] );
array_push( $t_where_clauses, "($t_bug_table.category='$c_show_category')" );
}
# severity
if ( 'any' != $t_filter['show_severity'] ) {
$c_show_severity = db_prepare_string( $t_filter['show_severity'] );
array_push( $t_where_clauses, "($t_bug_table.severity='$c_show_severity')" );
}
# status
if ( 'any' != $t_filter['show_status'] ) {
$c_show_status = db_prepare_string( $t_filter['show_status'] );
array_push( $t_where_clauses, "($t_bug_table.status='$c_show_status')" );
}
# Simple Text Search - Thnaks to Alan Knowles
if ( !is_blank( $t_filter['search'] ) ) {
$c_search = db_prepare_string( $t_filter['search'] );
array_push( $t_where_clauses,
"((summary LIKE '%$c_search%')
OR ($t_bug_text_table.description LIKE '%$c_search%')
OR ($t_bug_text_table.steps_to_reproduce LIKE '%$c_search%')
OR ($t_bug_text_table.additional_information LIKE '%$c_search%')
OR ($t_bug_table.id LIKE '%$c_search%')
OR ($t_bugnote_text_table.note LIKE '%$c_search%'))" );
array_push( $t_where_clauses, "($t_bug_text_table.id = $t_bug_table.bug_text_id)" );
array_push( $t_from_clauses, $t_bug_text_table );
array_push( $t_join_clauses, "LEFT JOIN $t_bugnote_table ON $t_bugnote_table.bug_id = $t_bug_table.id" );
array_push( $t_join_clauses, "LEFT JOIN $t_bugnote_text_table ON $t_bugnote_text_table.id = $t_bugnote_table.bugnote_text_id" );
}
$t_select = implode( ', ', array_unique( $t_select_clauses ) );
$t_from = 'FROM ' . implode( ', ', array_unique( $t_from_clauses ) );
$t_join = implode( ' ', $t_join_clauses );
if ( sizeof( $t_where_clauses ) > 0 ) {
$t_where = 'WHERE ' . implode( ' AND ', $t_where_clauses );
} else {
$t_where = '';
}
# Get the total number of bugs that meet the criteria.
$query = "SELECT COUNT( DISTINCT ( $t_bug_table.id ) ) as count $t_from $t_join $t_where";
$result = db_query( $query );
$bug_count = db_result( $result );
# write the value back in case the caller wants to know
$p_bug_count = $bug_count;
if ( null === $p_per_page ) {
$p_per_page = (int)$t_filter['per_page'];
} else if ( -1 == $p_per_page ) {
$p_per_page = $bug_count;
}
# Guard against silly values of $f_per_page.
if ( 0 == $p_per_page ) {
$p_per_page = 1;
}
$p_per_page = (int)abs( $p_per_page );
# Use $bug_count and $p_per_page to determine how many pages
# to split this list up into.
# For the sake of consistency have at least one page, even if it
# is empty.
$t_page_count = ceil($bug_count / $p_per_page);
if ( $t_page_count < 1 ) {
$t_page_count = 1;
}
# write the value back in case the caller wants to know
$p_page_count = $t_page_count;
# Make sure $p_page_number isn't past the last page.
if ( $p_page_number > $t_page_count ) {
$p_page_number = $t_page_count;
}
# Make sure $p_page_number isn't before the first page
if ( $p_page_number < 1 ) {
$p_page_number = 1;
}
$query2 = "SELECT DISTINCT $t_select, UNIX_TIMESTAMP(last_updated) as last_updated
$t_from
$t_join
$t_where";
# Now add the rest of the criteria i.e. sorting, limit.
$c_sort = db_prepare_string( $t_filter['sort'] );
if ( 'DESC' == $t_filter['dir'] ) {
$c_dir = 'DESC';
} else {
$c_dir = 'ASC';
}
$query2 .= " ORDER BY '$c_sort' $c_dir";
# Figure out the offset into the db query
#
# for example page number 1, per page 5:
# t_offset = 0
# for example page number 2, per page 5:
# t_offset = 5
$c_per_page = db_prepare_int( $p_per_page );
$c_page_number = db_prepare_int( $p_page_number );
$t_offset = ( ( $c_page_number - 1 ) * $c_per_page );
$query2 .= " LIMIT $t_offset, $c_per_page";
# perform query
$result2 = db_query( $query2 );
$row_count = db_num_rows( $result2 );
$rows = array();
for ( $i=0 ; $i < $row_count ; $i++ ) {
array_push( $rows, db_fetch_array( $result2 ) );
}
return $rows;
}
# --------------------
# return true if the filter cookie exists and is of the correct version,
# false otherwise
function filter_is_cookie_valid() {
$t_view_all_cookie = gpc_get_cookie( config_get( 'view_all_cookie' ), '' );
# check to see if the cookie does not exist
if ( is_blank( $t_view_all_cookie ) ) {
return false;
}
# check to see if new cookie is needed
$t_setting_arr = explode( '#', $t_view_all_cookie );
if ( $t_setting_arr[0] != config_get( 'cookie_version' ) ) {
return false;
}
return true;
}
?>