2 /*=====================================================================*\
3 || ###################################################################
5 || # Copyright 2002-2007 Blue Static
7 || # This program is free software; you can redistribute it and/or modify
8 || # it under the terms of the GNU General Public License as published by
9 || # the Free Software Foundation; version 2 of the License.
11 || # This program is distributed in the hope that it will be useful, but
12 || # WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY
13 || # or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License for
16 || # You should have received a copy of the GNU General Public License along
17 || # with this program; if not, write to the Free Software Foundation, Inc.,
18 || # 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301, USA
19 || ###################################################################
20 \*=====================================================================*/
22 $fetchtemplates = array(
33 define('SVN', '$Id$');
35 $focus['search'] = 'focus';
37 require_once('./global.php');
38 require_once('./includes/functions_product.php');
39 require_once('./includes/class_sort.php');
40 require_once('./includes/class_logging.php');
41 require_once('./includes/api_bug.php');
42 require_once('./includes/class_api_error.php');
44 APIError(array($message, 'error'));
46 if (!can_perform('cansearch'))
48 $message->errorPermission();
51 define('MODE_ANY', 1);
52 define('MODE_ALL', 2);
53 define('MODE_RAW', 3);
55 $var = $db->query_first("SHOW VARIABLES LIKE 'ft_min_word_len'");
56 define('SEARCH_WORD_MIN', $var['Value']);
58 $db->query("DELETE FROM " . TABLE_PREFIX
. "search WHERE userid = 0 AND dateline < " . (TIMENOW
- 3600));
60 $show['search'] = true
;
62 // ###################################################################
64 if (empty($_REQUEST['do']))
66 $_REQUEST['do'] = 'search';
69 // ###################################################################
71 if ($_REQUEST['do'] == 'search')
73 if ($bugsys->in
['new'])
77 else if ($bugsys->in
['searchid'])
79 $cachedsearch = $db->query_first("SELECT * FROM " . TABLE_PREFIX
. "search WHERE searchid = " . $bugsys->input_clean('searchid', TYPE_UINT
) . " AND userid = " . $bugsys->userinfo
['userid']);
81 else if ($bugsys->userinfo
['userid'])
83 $cachedsearch = $db->query_first("SELECT * FROM " . TABLE_PREFIX
. "search WHERE name IS NULL AND userid = " . $bugsys->userinfo
['userid']);
92 $show['cached'] = true
;
93 if ($cachedsearch['dateline'] < TIMENOW
- 900 OR $bugsys->in
['rerun'])
95 $_REQUEST['do'] = 'process';
96 $bugsys->in
= array_merge(unserialize($cachedsearch['query']), $bugsys->in
);
97 $bugsys->debug('rerunning the search');
101 $search = $cachedsearch;
102 $_POST['do'] = 'results';
112 if (!is_array($bugsys->datastore
['product']))
114 $message->error(_('No products are setup, therefore there can be no bugs and thus search cannot function.'));
117 if (!is_array($bugsys->datastore
['version']))
119 $message->error(_('No versions have been added underneath your product(s), there can be no bugs and thus search cannot function.'));
122 $productSelect = ConstructProductSelect();
124 // -------------------------------------------------------------------
126 $fields = construct_custom_fields(null
, true
, false
, true
);
128 foreach ($fields AS $field)
132 $customfields['left'] .= $field;
136 $customfields['right'] .= $field;
141 // -------------------------------------------------------------------
143 $select['severity'] = construct_datastore_select('severity', 'severity', 'severityid');
144 $select['priority'] = construct_datastore_select('priority', 'priority', 'priorityid');
145 $select['status'] = construct_datastore_select('status', 'status', 'statusid');
146 $select['resolution'] = construct_datastore_select('resolution', 'resolution', 'resolutionid');
149 if ($bugsys->userinfo
['userid'])
151 $searchesFetch = $db->query("SELECT * FROM " . TABLE_PREFIX
. "search WHERE name IS NOT NULL AND userid = " . $bugsys->userinfo
['userid']);
152 while ($search = $db->fetch_array($searchesFetch))
154 $value = $search['searchid'];
155 $label = $search['name'];
156 eval('$searches .= "' . $template->fetch('selectoption') . '";');
161 foreach ($bugsys->datastore
['assignto'] AS $dev)
163 $value = $dev['userid'];
164 $label = construct_user_display($dev, false
);
165 eval('$select[dev] .= "' . $template->fetch('selectoption') . '";');
168 eval('$template->flush("' . $template->fetch('search') . '");');
172 // ###################################################################
174 if ($_REQUEST['do'] == 'process')
176 // -------------------------------------------------------------------
178 if ($bugsys->in
['summary'])
180 $keywords = preg_split('#\s+#', $bugsys->in
['summary']);
182 // TODO - need to have some str to bool conversions
184 foreach ($keywords AS $word)
186 if (strlen($word) < SEARCH_WORD_MIN
)
191 if ($bugsys->in
['mode'] == MODE_ALL
)
193 $querybuild['text'] .= " +$word";
197 $querybuild['text'] .= " $word";
200 if (!preg_match('#-(.+?)#', trim($word)))
202 $hilight .= " $word";
206 $hilight = preg_replace('#[^0-9a-zA-Z_ ]#', '', $hilight);
207 $hilight = trim($hilight);
208 $hilight = preg_replace('#\s#', '+', $hilight);
210 $temp = trim($querybuild['text']);
212 if ($bugsys->in
['mode'] == MODE_ALL
OR $bugsys->in
['mode'] == MODE_RAW
)
214 $bool_flag = ' IN BOOLEAN MODE';
217 $querybuild['text'] = "AND\n\t\t\t(\n\t\t\t\tMATCH (bug.summary) AGAINST ('$temp'$bool_flag)\n\t\t\t\tOR MATCH (comment.comment) AGAINST ('$temp'$bool_flag)\n\t\t\t)";
220 // -------------------------------------------------------------------
222 if ($bugsys->in
['reporter'])
224 // force email or name?? make a distinction?
225 // more elegant way to do this? probably
226 $user = $db->query_first("SELECT * FROM " . TABLE_PREFIX
. "user WHERE email LIKE '%" . str_replace('%', '\%', $bugsys->input_escape('reporter')) . "' OR displayname LIKE '%" . str_replace('%', '\%', $bugsys->input_escape('reporter')) . "%'");
229 $querybuild['reporter'] = "AND bug.userid = $user[userid] OR comment.userid = $user[userid]";
233 // -------------------------------------------------------------------
234 // product/component/version stuff
235 if (is_array($bugsys->in
['product']))
237 foreach ($bugsys->in
['product'] AS $prod)
239 $product = explode(',', $prod);
240 $product = $bugsys->clean($product, TYPE_UINT
);
241 $products[] = $product[0];
242 $components[] = $product[1];
243 $versions[] = $product[2];
245 $querybuild['pcv'] = "AND bug.product IN (" . implode(',', $products) . ") AND bug.component IN (" . implode(',', $components) . ") AND bug.version IN (" . implode(',', $versions) . ")";
248 // -------------------------------------------------------------------
249 // severity, priority, status, resolution, assignedto
252 if ($bugsys->in
['severity'])
254 $bugsys->input_clean('severity', TYPE_UINT
);
255 $querybuild['severity'] = "AND bug.severity IN (" . implode(',', $bugsys->in
['severity']) . ")";
259 if ($bugsys->in
['priority'])
261 $bugsys->input_clean('priority', TYPE_UINT
);
262 $querybuild['priority'] = "AND bug.priority IN (" . implode(',', $bugsys->in
['priority']) . ")";
266 if ($bugsys->in
['status'])
268 $bugsys->input_clean('status', TYPE_UINT
);
269 $querybuild['status'] = "AND bug.status IN (" . implode(',', $bugsys->in
['status']) . ")";
273 if ($bugsys->in
['resolution'])
275 $bugsys->input_clean('resolution', TYPE_UINT
);
276 $querybuild['resolution'] = "AND bug.resolution IN (" . implode(',', $bugsys->in
['resolution']) . ")";
280 if ($bugsys->in
['assignedto'])
282 $bugsys->input_clean('assignedto', TYPE_UINT
);
283 $querybuild['assignedto'] = "AND bug.assignedto IN (" . implode(',', $bugsys->in
['assignedto']) . ")";
286 // -------------------------------------------------------------------
288 if ($bugsys->in
['date'])
290 // now - (seconds/day * number of days)
291 $dateline = time() - ($bugsys->input_clean('date', TYPE_INT
) * 3600);
292 $querybuild['date'] = "AND bug.dateline >= $dateline";
295 // -------------------------------------------------------------------
297 $bugsys->input_clean('favorite', TYPE_INT
);
298 if ($bugsys->in
['favorite'] != 0 AND $bugsys->userinfo
['userid'])
300 $favorites = $db->query("SELECT * FROM " . TABLE_PREFIX
. "favorite WHERE userid = " . $bugsys->userinfo
['userid']);
301 while ($favorite = $db->fetch_array($favorites))
303 $ids[] = $favorite['bugid'];
305 $querybuild['favorites'] = "AND bug.bugid " . ($bugsys->in
['favorite'] > 0 ?
"IN" : "NOT IN") . " (" . implode(', ', $ids) . ")";
308 // -------------------------------------------------------------------
310 $sortby = array('bugid', 'severity', 'priority', 'status', 'resolution', 'dateline');
311 $orderby = array('ASC', 'DESC');
312 $bugsys->in
['orderby'] = strtoupper($bugsys->in
['orderby']);
313 if (in_array($bugsys->in
['sortby'], $sortby) AND in_array($bugsys->in
['orderby'], $orderby))
315 $sortclause = "ORDER BY " . $bugsys->in
['sortby'] . ' ' . $bugsys->in
['orderby'];
317 else if ($bugsys->in
['sortby'] == 'relevance')
326 // -------------------------------------------------------------------
328 $fields_fetch = $bugsys->db
->query("
329 SELECT bugfield.*, MAX(permission.mask) AS mask
330 FROM " . TABLE_PREFIX
. "bugfield AS bugfield
331 LEFT JOIN " . TABLE_PREFIX
. "bugfieldpermission AS permission
332 ON (bugfield.fieldid = permission.fieldid)
334 AND permission.usergroupid IN ({$bugsys->userinfo['usergroupid']}" . (sizeof($bugsys->userinfo
['groupids']) != 0 ?
',' . implode(',', $bugsys->userinfo
['groupids']) : '') . ")
335 AND bugfield.cansearch = 1
336 GROUP BY (bugfield.fieldid)"
338 while ($field = $bugsys->db
->fetch_array($fields_fetch))
340 if (!empty($bugsys->in
["custom$field[fieldid]"]) OR ($field['type'] == 'select_single' AND isset($bugsys->in
["custom$field[fieldid]"])))
342 if ($field['type'] == 'input_checkbox' AND $bugsys->input_clean("custom$field[fieldid]", TYPE_INT
) != 0)
344 $querybuild[] = "AND bug.custom$field[fieldid] = " . ($bugsys->in
["custom$field[fieldid]"] > 0 ?
1 : 0);
346 else if ($field['type'] == 'input_text')
348 $querybuild[] = "AND bug.custom$field[fieldid] LIKE '%" . $bugsys->in
["custom$field[fieldid]"] . "%'";
350 else if ($field['type'] == 'select_single' AND $bugsys->in
["custom$field[fieldid]"] != -1)
352 $temp = unserialize($field['selects']);
353 $querybuild[] = "AND bug.custom$field[fieldid] = '" . trim($temp[ intval($bugsys->in
["custom$field[fieldid]"]) ]) . "'";
358 // -------------------------------------------------------------------
359 // have to search something
360 if (sizeof($querybuild) < 1)
362 $message->error(sprintf(_('You have to enter some criteria to search for. Note that words less than %1$d characters are ignored by the search engine (and some other very common words, too).'), SEARCH_WORD_MIN
));
365 // -------------------------------------------------------------------
368 $search = $db->query("
369 SELECT bug.*, comment.commentid
370 FROM " . TABLE_PREFIX
. "bug AS bug
371 LEFT JOIN " . TABLE_PREFIX
. "comment AS comment
372 ON (bug.bugid = comment.bugid)
374 AND bug.product IN (" . fetch_on_bits('canviewbugs') . ")
379 (bug.hidden AND bug.product IN (" . fetch_on_bits('canviewhidden') . "))" . (can_perform('canviewownhidden') ?
"
381 (bug.hidden AND bug.userid = " . $bugsys->userinfo
['userid'] . " AND bug.product IN (" . fetch_on_bits('canviewonhidden') . "))" : "") . "
383 " . implode("\n\t\t", $querybuild) . "
388 $numrows = $db->num_rows($search);
392 $message->error(_('No search results were returned that matched your criteria.'));
395 while ($result = $db->fetch_array($search))
397 $ids[] = $result['bugid'];
398 $results[] = $result;
401 if ($bugsys->userinfo
['userid'] AND !$cachedsearch AND !$bugsys->in
['rerun'])
403 $db->query("DELETE FROM " . TABLE_PREFIX
. "search WHERE userid = " . $bugsys->userinfo
['userid'] . " AND name IS NULL");
406 // store the search params
407 $params = $bugsys->in
;
408 foreach ($_COOKIE AS $key => $value)
410 unset($params["$key"]);
415 $search = $cachedsearch;
416 $search['ids'] = implode(',', $ids);
417 $search['resultcount'] = sizeof($results);
418 $db->query("UPDATE " . TABLE_PREFIX
. "search SET ids = '$search[ids]', resultcount = $search[resultcount], dateline = " . TIMENOW
. " WHERE searchid = " . $cachedsearch['searchid']);
423 INSERT INTO " . TABLE_PREFIX
. "search
424 (userid, dateline, query, ids, orderby, hilight, resultcount)
426 (" . $bugsys->userinfo
['userid'] . ",
427 " . TIMENOW
. ", '" . $bugsys->escape(serialize($params)) . "',
428 '" . implode(',', $ids) . "', '" . $bugsys->escape($sortclause) . "',
429 '" . $bugsys->escape($hilight) . "',
430 " . sizeof($results) . "
433 $search = array('searchid' => $db->insert_id(), 'ids' => implode(',', $ids), 'orderby' => $sortclause, 'hilight' => $hilight, 'resultcount' => sizeof($results));
436 $_POST['do'] = 'results';
439 // ###################################################################
441 if ($_REQUEST['do'] == 'update')
443 $search = $db->query_first("SELECT * FROM " . TABLE_PREFIX
. "search WHERE searchid = " . $bugsys->input_clean('searchid', TYPE_UINT
) . " AND userid = " . $bugsys->userinfo
['userid']);
444 if (!$search OR !can_perform('caneditother'))
446 $message->errorPermission();
449 $productSelect = ConstructProductSelect();
451 $show['update'] = true
;
453 // -------------------------------------------------------------------
455 $fields = construct_custom_fields(null
, true
, false
, true
);
457 foreach ($fields AS $field)
461 $customfields['left'] .= $field;
465 $customfields['right'] .= $field;
470 // -------------------------------------------------------------------
472 $select['severity'] = construct_datastore_select('severity', 'severity', 'severityid', 0, 0);
473 $select['priority'] = construct_datastore_select('priority', 'priority', 'priorityid', 0, 0);
474 $select['status'] = construct_datastore_select('status', 'status', 'statusid', 0, 0);
475 $select['resolution'] = construct_datastore_select('resolution', 'resolution', 'resolutionid', 0, 0);
481 eval('$select[dev] .= "' . $template->fetch('selectoption') . '";');
483 foreach ($bugsys->datastore
['assignto'] AS $dev)
485 $value = $dev['userid'];
486 $label = construct_user_display($dev, false
);
487 eval('$select[dev] .= "' . $template->fetch('selectoption') . '";');
490 eval('$template->flush("' . $template->fetch('search_update') . '");');
493 // ###################################################################
495 if ($_POST['do'] == 'doupdate')
497 $search = $db->query_first("SELECT * FROM " . TABLE_PREFIX
. "search WHERE searchid = " . $bugsys->input_clean('searchid', TYPE_UINT
) . " AND userid = " . $bugsys->userinfo
['userid']);
498 if (!$search OR !can_perform('caneditother'))
500 $message->errorPermission();
503 // find all the bugs that we can edit
505 SELECT * FROM " . TABLE_PREFIX
. "bug
506 WHERE bugid IN ($search[ids])
507 AND product IN (" . fetch_on_bits('canviewbugs') . ")
510 product IN (" . fetch_on_bits('caneditother') . ")
512 (userid = " . $bugsys->userinfo
['userid'] . " AND product IN (" . fetch_on_bits('caneditown') . "))
515 while ($bug = $db->fetch_array($bugs))
517 if (!((can_perform('caneditown', $bug['product']) AND $bugsys->userinfo
['userid'] == $bug['userid']) OR (can_perform('caneditother', $bug['product']) AND $bugsys->userinfo
['userid'] != $bug['userid'])) AND !can_perform('canpostcomments', $bug['product']))
522 $api = new BugApi($bugsys);
523 $api->set('bugid', $bug['bugid']);
524 $api->set_condition();
527 $log = new Logging();
528 $log->set_bugid($bug['bugid']);
529 $log->add_data(true
, $bug, $log->getCommonFields(), true
);
531 if ($bugsys->in
['status'] AND can_perform('canchangestatus', $bug['product']))
533 $api->set('status', $bugsys->in
['status']);
535 if ($bugsys->in
['priority'] AND can_perform('canchangestatus', $bug['product']))
537 $api->set('priority', $bugsys->in
['priority']);
539 if ($bugsys->in
['severity'])
541 $api->set('severity', $bugsys->in
['severity']);
543 if ($bugsys->in
['resolution'] AND can_perform('canchangestatus', $bug['product']))
545 $api->set('resolution', $bugsys->in
['resolution']);
547 if ($bugsys->in
['assignedto'] AND can_perform('canassign', $bug['product']))
549 $api->set('assignedto', $bugsys->in
['assignedto']);
551 if ($bugsys->in
['product'])
553 $product = explode(',', $bugsys->in
['product']);
554 $api->set('product', $product[0]);
555 $api->set('component', $product[1]);
556 $api->set('version', $product[2]);
559 process_custom_fields($api, $message, false
, true
);
561 $log->add_data(false
, $api->values
, $log->getCommonFields(), true
);
564 $log->update_history();
567 $message->redirect(_('The specified bugs have been updated and you will now return to your search results.'), 'search.php?searchid=' . $bugsys->in
['searchid']);
570 // ###################################################################
572 if ($_REQUEST['do'] == 'export')
574 if (!$bugsys->in
['searchid'] AND $bugsys->userinfo
['userid'])
576 $search = $db->query_first("SELECT * FROM " . TABLE_PREFIX
. "search WHERE name IS NULL AND userid = " . $bugsys->userinfo
['userid']);
578 else if ($bugsys->in
['searchid'])
580 $search = $db->query_first("SELECT * FROM " . TABLE_PREFIX
. "search WHERE searchid = " . $bugsys->input_clean('searchid', TYPE_UINT
) . " AND userid = " . $bugsys->userinfo
['userid']);
584 $message->error(_('The search results are trying to export are invalid. Please start over <a href="search.php?new=1">here</a> and try again.'));
589 $message->error(_('Your search has expired because it is older than one hour. Please start over <a href="search.php?new=1">here</a>.'));
592 $bugs = $db->query("SELECT * FROM " . TABLE_PREFIX
. "bug WHERE bugid IN ($search[ids]) $search[orderby]");
594 $xml = '<?xml version="1.0" encoding="' . $language['charset'] . '"?>
596 <bugdarExport user="' . $bugsys->unsanitize(construct_user_display($bugsys->userinfo
, false
)) . '" date="' . $datef->format('r', TIMENOW
) . '" searchid="' . $search['searchid'] . '">';
598 while ($bug = $db->fetch_array($bugs))
602 ProcessBugDataForDisplay(&$bug);
604 $xml .= "\n\t\t<id>" . $bug['bugid'] . "</id>";
605 $xml .= "\n\t\t<dateReported>" . $datef->format('r', $bug['dateline']) . "</dateReported>";
608 $xml .= "\n\t\t<reporter>" . construct_user_display($db->query_first("SELECT * FROM " . TABLE_PREFIX
. "user WHERE userid = $bug[userid]"), false
) . "</reporter>";
610 $xml .= "\n\t\t<summary>" . $bug['summary'] . "</summary>";
611 $xml .= "\n\t\t<product>" . $bug['product'] . "</product>";
612 if ($bug['component'])
614 $xml .= "\n\t\t<component>" . $bug['component'] . "</component>";
616 $xml .= "\n\t\t<version>" . $bug['version'] . "</version>";
617 $xml .= "\n\t\t<status>" . $bug['status'] . "</status>";
618 if ($bug['assignedto'])
620 $xml .= "\n\t\t<assignedTo>" . construct_user_display($bugsys->datastore
['assignto']["$bug[assignedto]"], false
) . "</assignedTo>";
622 $xml .= "\n\t\t<resolution>" . $bug['resolution'] . "</resolution>";
623 $xml .= "\n\t\t<severity>" . $bug['severity'] . "</severity>";
624 $xml .= "\n\t\t<priority>" . $bug['priority'] . "</priority>";
626 $xml .= "\n\t</bug>";
629 $xml .= "\n</bugdarExport>";
631 $funct->download_file($xml, _('bugdar-search-' . $search['searchid'] . '.xml'), true
);
634 // ###################################################################
636 if ($_POST['do'] == 'dosave')
638 $search = $db->query_first("SELECT * FROM " . TABLE_PREFIX
. "search WHERE searchid = " . $bugsys->input_clean('searchid', TYPE_UINT
) . " AND userid = " . $bugsys->userinfo
['userid']);
641 $message->addError(_('The search does not exist.'));
645 $message->addError(sprintf(_('This search has already been named "%1$s".'), $search['name']));
647 if (empty($bugsys->in
['name']))
649 $message->addError(_('The name cannot be empty.'));
652 if (!$message->hasErrors())
654 $db->query("UPDATE " . TABLE_PREFIX
. "search SET name = '" . $bugsys->input_escape('name') . "' WHERE searchid = " . $bugsys->in
['searchid']);
655 $message->redirect(_('Your search has been saved.'), 'search.php?searchid=' . $search['searchid']);
659 $_REQUEST['do'] = 'save';
660 $show['errors'] = true
;
664 // ###################################################################
666 if ($_REQUEST['do'] == 'save')
668 if (!$bugsys->userinfo
['userid'])
670 $message->errorPermission();
673 eval('$template->flush("' . $template->fetch('search_save') . '");');
676 // ###################################################################
678 if ($_POST['do'] == 'results')
682 $message->error(_('No bugs matched your search criteria. Please <a href="search.php?new=1">try again</a> with different search requirements.'));
685 $searchid = $search['searchid'];
686 $hilight = $search['hilight'];
688 LoadPaginationFramework();
689 $pagination->setTotal($search['resultcount']);
690 $pagination->splitPages();
692 $sort = new ListSorter('search');
694 $show['save'] = ($bugsys->userinfo
['userid'] AND !$search['name']);
695 $show['update'] = can_perform('caneditother');
698 $search = $db->query("SELECT * FROM " . TABLE_PREFIX
. "bug WHERE bugid IN ($search[ids]) $search[orderby] LIMIT " . $pagination->fetchLimit($pagination->getPage() - 1) . ", " . $pagination->getPerPage());
699 while ($bug = $db->fetch_array($search))
701 $funct->exec_swap_bg('altcolor', '');
702 $bug = ProcessBugDataForDisplay($bug, $funct->bgcolour
);
703 $bugs .= $sort->constructRow($bug, "&hilight=$hilight");
706 $columnHeads = $sort->constructColumnHeaders(false
);
707 $show['pagenav'] = ($pagination->getPageCount() > 1);
708 $pagenav = $pagination->constructPageNav('search.php?searchid=' . $searchid);
710 eval('$template->flush("' . $template->fetch('search_results') . '");');
713 /*=====================================================================*\
714 || ###################################################################
717 || ###################################################################
718 \*=====================================================================*/