Add a script to remove inactive users awaiting email confirmation.
[bugdar.git] / search.php
1 <?php
2 /*=====================================================================*\
3 || ###################################################################
4 || # Bugdar
5 || # Copyright 2002-2007 Blue Static
6 || #
7 || # This program is free software; you can redistribute it and/or modify
8 || # it under the terms of the GNU General Public License as published by
9 || # the Free Software Foundation; version 2 of the License.
10 || #
11 || # This program is distributed in the hope that it will be useful, but
12 || # WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY
13 || # or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License for
14 || # more details.
15 || #
16 || # You should have received a copy of the GNU General Public License along
17 || # with this program; if not, write to the Free Software Foundation, Inc.,
18 || # 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301, USA
19 || ###################################################################
20 \*=====================================================================*/
21
22 $fetchtemplates = array(
23 'search',
24 'search_results',
25 'search_update',
26 'search_save',
27 'trackerhome_bits',
28 'list_head',
29 'pagenav_bit',
30 'pagenav'
31 );
32
33 define('SVN', '$Id$');
34
35 $focus['search'] = 'focus';
36
37 require_once('./global.php');
38 require_once('./includes/functions_product.php');
39 require_once('./includes/class_sort.php');
40 require_once('./includes/class_logging.php');
41 require_once('./includes/api_bug.php');
42 require_once('./includes/class_api_error.php');
43
44 APIError(array($message, 'error'));
45
46 if (!can_perform('cansearch'))
47 {
48 $message->errorPermission();
49 }
50
51 define('MODE_ANY', 1);
52 define('MODE_ALL', 2);
53 define('MODE_RAW', 3);
54
55 $var = $db->query_first("SHOW VARIABLES LIKE 'ft_min_word_len'");
56 define('SEARCH_WORD_MIN', $var['Value']);
57
58 $db->query("DELETE FROM " . TABLE_PREFIX . "search WHERE userid = 0 AND dateline < " . (TIMENOW - 3600));
59
60 $show['search'] = true;
61
62 // ###################################################################
63
64 if (empty($_REQUEST['do']))
65 {
66 $_REQUEST['do'] = 'search';
67 }
68
69 // ###################################################################
70
71 if ($_REQUEST['do'] == 'search')
72 {
73 if ($bugsys->in['new'])
74 {
75 $newsearch = true;
76 }
77 else if ($bugsys->in['searchid'])
78 {
79 $cachedsearch = $db->query_first("SELECT * FROM " . TABLE_PREFIX . "search WHERE searchid = " . $bugsys->input_clean('searchid', TYPE_UINT) . " AND userid = " . $bugsys->userinfo['userid']);
80 }
81 else if ($bugsys->userinfo['userid'])
82 {
83 $cachedsearch = $db->query_first("SELECT * FROM " . TABLE_PREFIX . "search WHERE name IS NULL AND userid = " . $bugsys->userinfo['userid']);
84 }
85 else
86 {
87 $newsearch = true;
88 }
89
90 if ($cachedsearch)
91 {
92 $show['cached'] = true;
93 if ($cachedsearch['dateline'] < TIMENOW - 900 OR $bugsys->in['rerun'])
94 {
95 $_REQUEST['do'] = 'process';
96 $bugsys->in = array_merge(unserialize($cachedsearch['query']), $bugsys->in);
97 $bugsys->debug('rerunning the search');
98 }
99 else
100 {
101 $search = $cachedsearch;
102 $_POST['do'] = 'results';
103 }
104 }
105 else
106 {
107 $newsearch = true;
108 }
109
110 if ($newsearch)
111 {
112 if (!is_array($bugsys->datastore['product']))
113 {
114 $message->error(T('No products are setup, therefore there can be no bugs and thus search cannot function.'));
115 }
116
117 if (!is_array($bugsys->datastore['version']))
118 {
119 $message->error(T('No versions have been added underneath your product(s), there can be no bugs and thus search cannot function.'));
120 }
121
122 $productSelect = ConstructProductSelect();
123
124 // -------------------------------------------------------------------
125 // custom fields
126 $fields = construct_custom_fields(null, true, false, true);
127 $i = 0;
128 foreach ($fields AS $field)
129 {
130 if ($i % 2 == 0)
131 {
132 $customfields['left'] .= $field;
133 }
134 else
135 {
136 $customfields['right'] .= $field;
137 }
138 $i++;
139 }
140
141 // -------------------------------------------------------------------
142 // built-in fields
143 $select['severity'] = construct_datastore_select('severity', 'severity', 'severityid');
144 $select['priority'] = construct_datastore_select('priority', 'priority', 'priorityid');
145 $select['status'] = construct_datastore_select('status', 'status', 'statusid');
146 $select['resolution'] = construct_datastore_select('resolution', 'resolution', 'resolutionid');
147
148 $searches = '';
149 if ($bugsys->userinfo['userid'])
150 {
151 $searchesFetch = $db->query("SELECT * FROM " . TABLE_PREFIX . "search WHERE name IS NOT NULL AND userid = " . $bugsys->userinfo['userid']);
152 while ($search = $db->fetch_array($searchesFetch))
153 {
154 $value = $search['searchid'];
155 $label = $search['name'];
156 eval('$searches .= "' . $template->fetch('selectoption') . '";');
157 }
158 }
159
160 $select['dev'] = '';
161 foreach ($bugsys->datastore['assignto'] AS $dev)
162 {
163 $value = $dev['userid'];
164 $label = construct_user_display($dev, false);
165 eval('$select[dev] .= "' . $template->fetch('selectoption') . '";');
166 }
167
168 eval('$template->flush("' . $template->fetch('search') . '");');
169 }
170 }
171
172 // ###################################################################
173
174 if ($_REQUEST['do'] == 'process')
175 {
176 // -------------------------------------------------------------------
177 // handle keywords
178 if ($bugsys->in['summary'])
179 {
180 $keywords = preg_split('#\s+#', $bugsys->in['summary']);
181
182 // TODO - need to have some str to bool conversions
183
184 foreach ($keywords AS $word)
185 {
186 if (strlen($word) < SEARCH_WORD_MIN)
187 {
188 continue;
189 }
190
191 $word = str_replace("'", "\'", $word);
192 if ($bugsys->in['mode'] == MODE_ALL)
193 {
194 $querybuild['text'] .= " +$word";
195 }
196 else
197 {
198 $querybuild['text'] .= " $word";
199 }
200
201 if (!preg_match('#-(.+?)#', trim($word)))
202 {
203 $hilight .= " $word";
204 }
205 }
206
207 $hilight = preg_replace('#[^0-9a-zA-Z_ ]#', '', $hilight);
208 $hilight = trim($hilight);
209 $hilight = preg_replace('#\s#', '+', $hilight);
210
211 $temp = trim($querybuild['text']);
212
213 if ($bugsys->in['mode'] == MODE_ALL OR $bugsys->in['mode'] == MODE_RAW)
214 {
215 $bool_flag = ' IN BOOLEAN MODE';
216 }
217
218 $querybuild['text'] = "AND\n\t\t\t(\n\t\t\t\tMATCH (bug.summary) AGAINST ('$temp'$bool_flag)\n\t\t\t\tOR MATCH (comment.comment) AGAINST ('$temp'$bool_flag)\n\t\t\t)";
219 }
220
221 // -------------------------------------------------------------------
222 // reporter
223 if ($bugsys->in['reporter'])
224 {
225 // force email or name?? make a distinction?
226 // more elegant way to do this? probably
227 $user = $db->query_first("SELECT * FROM " . TABLE_PREFIX . "user WHERE email LIKE '%" . str_replace('%', '\%', $bugsys->input_escape('reporter')) . "' OR displayname LIKE '%" . str_replace('%', '\%', $bugsys->input_escape('reporter')) . "%'");
228 if ($user['userid'])
229 {
230 $querybuild['reporter'] = "AND bug.userid = $user[userid] OR comment.userid = $user[userid]";
231 }
232 }
233
234 // -------------------------------------------------------------------
235 // product/component/version stuff
236 if (is_array($bugsys->in['product']))
237 {
238 foreach ($bugsys->in['product'] AS $prod)
239 {
240 $product = explode(',', $prod);
241 $product = $bugsys->clean($product, TYPE_UINT);
242 $products[] = $product[0];
243 $components[] = $product[1];
244 $versions[] = $product[2];
245 }
246 $querybuild['pcv'] = "AND bug.product IN (" . implode(',', $products) . ") AND bug.component IN (" . implode(',', $components) . ") AND bug.version IN (" . implode(',', $versions) . ")";
247 }
248
249 // -------------------------------------------------------------------
250 // severity, priority, status, resolution, assignedto
251
252 // severity
253 if ($bugsys->in['severity'])
254 {
255 $bugsys->input_clean('severity', TYPE_UINT);
256 $querybuild['severity'] = "AND bug.severity IN (" . implode(',', $bugsys->in['severity']) . ")";
257 }
258
259 // priority
260 if ($bugsys->in['priority'])
261 {
262 $bugsys->input_clean('priority', TYPE_UINT);
263 $querybuild['priority'] = "AND bug.priority IN (" . implode(',', $bugsys->in['priority']) . ")";
264 }
265
266 // status
267 if ($bugsys->in['status'])
268 {
269 $bugsys->input_clean('status', TYPE_UINT);
270 $querybuild['status'] = "AND bug.status IN (" . implode(',', $bugsys->in['status']) . ")";
271 }
272
273 // resolution
274 if ($bugsys->in['resolution'])
275 {
276 $bugsys->input_clean('resolution', TYPE_UINT);
277 $querybuild['resolution'] = "AND bug.resolution IN (" . implode(',', $bugsys->in['resolution']) . ")";
278 }
279
280 // assignment
281 if ($bugsys->in['assignedto'])
282 {
283 $bugsys->input_clean('assignedto', TYPE_UINT);
284 $querybuild['assignedto'] = "AND bug.assignedto IN (" . implode(',', $bugsys->in['assignedto']) . ")";
285 }
286
287 // -------------------------------------------------------------------
288 // date
289 if ($bugsys->in['date'])
290 {
291 // now - (seconds/day * number of days)
292 $dateline = time() - ($bugsys->input_clean('date', TYPE_INT) * 3600);
293 $querybuild['date'] = "AND bug.dateline >= $dateline";
294 }
295
296 // -------------------------------------------------------------------
297 // favorites
298 $bugsys->input_clean('favorite', TYPE_INT);
299 if ($bugsys->in['favorite'] != 0 AND $bugsys->userinfo['userid'])
300 {
301 $favorites = $db->query("SELECT * FROM " . TABLE_PREFIX . "favorite WHERE userid = " . $bugsys->userinfo['userid']);
302 while ($favorite = $db->fetch_array($favorites))
303 {
304 $ids[] = $favorite['bugid'];
305 }
306 $querybuild['favorites'] = "AND bug.bugid " . ($bugsys->in['favorite'] > 0 ? "IN" : "NOT IN") . " (" . implode(', ', $ids) . ")";
307 }
308
309 // -------------------------------------------------------------------
310 // sort by
311 $sortby = array('bugid', 'severity', 'priority', 'status', 'resolution', 'dateline');
312 $orderby = array('ASC', 'DESC');
313 $bugsys->in['orderby'] = strtoupper($bugsys->in['orderby']);
314 if (in_array($bugsys->in['sortby'], $sortby) AND in_array($bugsys->in['orderby'], $orderby))
315 {
316 $sortclause = "ORDER BY " . $bugsys->in['sortby'] . ' ' . $bugsys->in['orderby'];
317 }
318 else if ($bugsys->in['sortby'] == 'relevance')
319 {
320 $sortclause = '';
321 }
322 else
323 {
324 $sortclause = '';
325 }
326
327 // -------------------------------------------------------------------
328 // custom fields
329 $fields_fetch = $bugsys->db->query("
330 SELECT bugfield.*, MAX(permission.mask) AS mask
331 FROM " . TABLE_PREFIX . "bugfield AS bugfield
332 LEFT JOIN " . TABLE_PREFIX . "bugfieldpermission AS permission
333 ON (bugfield.fieldid = permission.fieldid)
334 WHERE mask <> 0
335 AND permission.usergroupid IN ({$bugsys->userinfo['usergroupid']}" . (sizeof($bugsys->userinfo['groupids']) != 0 ? ',' . implode(',', $bugsys->userinfo['groupids']) : '') . ")
336 AND bugfield.cansearch = 1
337 GROUP BY (bugfield.fieldid)"
338 );
339 while ($field = $bugsys->db->fetch_array($fields_fetch))
340 {
341 if (!empty($bugsys->in["custom$field[fieldid]"]) OR ($field['type'] == 'select_single' AND isset($bugsys->in["custom$field[fieldid]"])))
342 {
343 if ($field['type'] == 'input_checkbox' AND $bugsys->input_clean("custom$field[fieldid]", TYPE_INT) != 0)
344 {
345 $querybuild[] = "AND bug.custom$field[fieldid] = " . ($bugsys->in["custom$field[fieldid]"] > 0 ? 1 : 0);
346 }
347 else if ($field['type'] == 'input_text')
348 {
349 $like = str_replace("'", "\'", $bugsys->in["custom$field[fieldid]"]);
350 $querybuild[] = "AND bug.custom$field[fieldid] LIKE '%$like%'";
351 }
352 else if ($field['type'] == 'select_single' AND $bugsys->in["custom$field[fieldid]"] != -1)
353 {
354 $temp = unserialize($field['selects']);
355 $querybuild[] = "AND bug.custom$field[fieldid] = '" . trim($temp[ intval($bugsys->in["custom$field[fieldid]"]) ]) . "'";
356 }
357 }
358 }
359
360 // -------------------------------------------------------------------
361 // have to search something
362 if (sizeof($querybuild) < 1)
363 {
364 $message->error(sprintf(T('You have to enter some criteria to search for. Note that words less than %1$d characters are ignored by the search engine (and some other very common words, too).'), SEARCH_WORD_MIN));
365 }
366
367 // -------------------------------------------------------------------
368 // do the search
369
370 $search = $db->query("
371 SELECT bug.*, comment.commentid
372 FROM " . TABLE_PREFIX . "bug AS bug
373 LEFT JOIN " . TABLE_PREFIX . "comment AS comment
374 ON (bug.bugid = comment.bugid)
375 WHERE bug.bugid <> 0
376 AND bug.product IN (" . fetch_on_bits('canviewbugs') . ")
377 AND
378 (
379 !bug.hidden
380 OR
381 (bug.hidden AND bug.product IN (" . fetch_on_bits('canviewhidden') . "))" . (can_perform('canviewownhidden') ? "
382 OR
383 (bug.hidden AND bug.userid = " . $bugsys->userinfo['userid'] . " AND bug.product IN (" . fetch_on_bits('canviewonhidden') . "))" : "") . "
384 )
385 " . implode("\n\t\t", $querybuild) . "
386 GROUP BY bug.bugid
387 $sortclause
388 ");
389
390 $numrows = $db->num_rows($search);
391
392 if ($numrows < 1)
393 {
394 $message->error(T('No search results were returned that matched your criteria. Please <a href="search.php?new=1">try again</a> with different search requirements.'));
395 }
396
397 while ($result = $db->fetch_array($search))
398 {
399 $ids[] = $result['bugid'];
400 $results[] = $result;
401 }
402
403 if ($bugsys->userinfo['userid'] AND !$cachedsearch AND !$bugsys->in['rerun'])
404 {
405 $db->query("DELETE FROM " . TABLE_PREFIX . "search WHERE userid = " . $bugsys->userinfo['userid'] . " AND name IS NULL");
406 }
407
408 // store the search params
409 $params = $bugsys->in;
410 foreach ($_COOKIE AS $key => $value)
411 {
412 unset($params["$key"]);
413 }
414
415 if ($cachedsearch)
416 {
417 $search = $cachedsearch;
418 $search['ids'] = implode(',', $ids);
419 $search['resultcount'] = sizeof($results);
420 $db->query("UPDATE " . TABLE_PREFIX . "search SET ids = '$search[ids]', resultcount = $search[resultcount], dateline = " . TIMENOW . " WHERE searchid = " . $cachedsearch['searchid']);
421 }
422 else
423 {
424 $db->query("
425 INSERT INTO " . TABLE_PREFIX . "search
426 (userid, dateline, query, ids, orderby, hilight, resultcount)
427 VALUES
428 (" . $bugsys->userinfo['userid'] . ",
429 " . TIMENOW . ", '" . $bugsys->escape(serialize($params)) . "',
430 '" . implode(',', $ids) . "', '" . $bugsys->escape($sortclause) . "',
431 '" . $bugsys->escape($hilight) . "',
432 " . sizeof($results) . "
433 )"
434 );
435 $search = array('searchid' => $db->insert_id(), 'ids' => implode(',', $ids), 'orderby' => $sortclause, 'hilight' => $hilight, 'resultcount' => sizeof($results));
436 }
437
438 $_POST['do'] = 'results';
439 }
440
441 // ###################################################################
442
443 if ($_REQUEST['do'] == 'update')
444 {
445 $search = $db->query_first("SELECT * FROM " . TABLE_PREFIX . "search WHERE searchid = " . $bugsys->input_clean('searchid', TYPE_UINT) . " AND userid = " . $bugsys->userinfo['userid']);
446 if (!$search OR !can_perform('caneditother'))
447 {
448 $message->errorPermission();
449 }
450
451 $productSelect = ConstructProductSelect();
452
453 $show['update'] = true;
454
455 // -------------------------------------------------------------------
456 // custom fields
457 $fields = construct_custom_fields(null, true, false, true);
458 $i = 0;
459 foreach ($fields AS $field)
460 {
461 if ($i % 2 == 0)
462 {
463 $customfields['left'] .= $field;
464 }
465 else
466 {
467 $customfields['right'] .= $field;
468 }
469 $i++;
470 }
471
472 // -------------------------------------------------------------------
473 // built-in fields
474 $select['severity'] = construct_datastore_select('severity', 'severity', 'severityid', 0, 0);
475 $select['priority'] = construct_datastore_select('priority', 'priority', 'priorityid', 0, 0);
476 $select['status'] = construct_datastore_select('status', 'status', 'statusid', 0, 0);
477 $select['resolution'] = construct_datastore_select('resolution', 'resolution', 'resolutionid', 0, 0);
478
479 $select['dev'] = '';
480 $value = '0';
481 $label = '';
482 $selected = true;
483 eval('$select[dev] .= "' . $template->fetch('selectoption') . '";');
484 $selected = false;
485 foreach ($bugsys->datastore['assignto'] AS $dev)
486 {
487 $value = $dev['userid'];
488 $label = construct_user_display($dev, false);
489 eval('$select[dev] .= "' . $template->fetch('selectoption') . '";');
490 }
491
492 eval('$template->flush("' . $template->fetch('search_update') . '");');
493 }
494
495 // ###################################################################
496
497 if ($_POST['do'] == 'doupdate')
498 {
499 $search = $db->query_first("SELECT * FROM " . TABLE_PREFIX . "search WHERE searchid = " . $bugsys->input_clean('searchid', TYPE_UINT) . " AND userid = " . $bugsys->userinfo['userid']);
500 if (!$search OR !can_perform('caneditother'))
501 {
502 $message->errorPermission();
503 }
504
505 // find all the bugs that we can edit
506 $bugs = $db->query("
507 SELECT * FROM " . TABLE_PREFIX . "bug
508 WHERE bugid IN ($search[ids])
509 AND product IN (" . fetch_on_bits('canviewbugs') . ")
510 AND
511 (
512 product IN (" . fetch_on_bits('caneditother') . ")
513 OR
514 (userid = " . $bugsys->userinfo['userid'] . " AND product IN (" . fetch_on_bits('caneditown') . "))
515 )
516 ");
517 while ($bug = $db->fetch_array($bugs))
518 {
519 if (!((can_perform('caneditown', $bug['product']) AND $bugsys->userinfo['userid'] == $bug['userid']) OR (can_perform('caneditother', $bug['product']) AND $bugsys->userinfo['userid'] != $bug['userid'])) AND !can_perform('canpostcomments', $bug['product']))
520 {
521 continue;
522 }
523
524 $api = new BugApi($bugsys);
525 $api->set('bugid', $bug['bugid']);
526 $api->set_condition();
527 $api->values = $bug;
528
529 $log = new Logging();
530 $log->set_bugid($bug['bugid']);
531 $log->add_data(true, $bug, $log->getCommonFields(), true);
532
533 if ($bugsys->in['status'] AND can_perform('canchangestatus', $bug['product']))
534 {
535 $api->set('status', $bugsys->in['status']);
536 }
537 if ($bugsys->in['priority'] AND can_perform('canchangestatus', $bug['product']))
538 {
539 $api->set('priority', $bugsys->in['priority']);
540 }
541 if ($bugsys->in['severity'])
542 {
543 $api->set('severity', $bugsys->in['severity']);
544 }
545 if ($bugsys->in['resolution'] AND can_perform('canchangestatus', $bug['product']))
546 {
547 $api->set('resolution', $bugsys->in['resolution']);
548 }
549 if ($bugsys->in['assignedto'] AND can_perform('canassign', $bug['product']))
550 {
551 $api->set('assignedto', $bugsys->in['assignedto']);
552 }
553 if ($bugsys->in['product'])
554 {
555 $product = explode(',', $bugsys->in['product']);
556 $api->set('product', $product[0]);
557 $api->set('component', $product[1]);
558 $api->set('version', $product[2]);
559 }
560
561 process_custom_fields($api, $message, false, true);
562
563 $log->add_data(false, $api->values, $log->getCommonFields(), true);
564
565 $api->update();
566 $log->update_history();
567 }
568
569 $message->redirect(T('The specified bugs have been updated and you will now return to your search results.'), 'search.php?searchid=' . $bugsys->in['searchid']);
570 }
571
572 // ###################################################################
573
574 if ($_REQUEST['do'] == 'export')
575 {
576 if (!$bugsys->in['searchid'] AND $bugsys->userinfo['userid'])
577 {
578 $search = $db->query_first("SELECT * FROM " . TABLE_PREFIX . "search WHERE name IS NULL AND userid = " . $bugsys->userinfo['userid']);
579 }
580 else if ($bugsys->in['searchid'])
581 {
582 $search = $db->query_first("SELECT * FROM " . TABLE_PREFIX . "search WHERE searchid = " . $bugsys->input_clean('searchid', TYPE_UINT) . " AND userid = " . $bugsys->userinfo['userid']);
583 }
584 else
585 {
586 $message->error(T('The search results are trying to export are invalid. Please start over <a href="search.php?new=1">here</a> and try again.'));
587 }
588
589 if (!$search)
590 {
591 $message->error(T('Your search has expired because it is older than one hour. Please start over <a href="search.php?new=1">here</a>.'));
592 }
593
594 $bugs = $db->query("SELECT * FROM " . TABLE_PREFIX . "bug WHERE bugid IN ($search[ids]) $search[orderby]");
595
596 $xml = '<?xml version="1.0" encoding="' . $language['charset'] . '"?>
597
598 <bugdarExport user="' . $bugsys->unsanitize(construct_user_display($bugsys->userinfo, false)) . '" date="' . $datef->format('r', TIMENOW) . '" searchid="' . $search['searchid'] . '">';
599
600 while ($bug = $db->fetch_array($bugs))
601 {
602 $xml .= "\n\t<bug>";
603
604 $bug = ProcessBugDataForDisplay($bug);
605
606 $xml .= "\n\t\t<id>" . $bug['bugid'] . "</id>";
607 $xml .= "\n\t\t<dateReported>" . $datef->format('r', $bug['dateline']) . "</dateReported>";
608 if ($bug['userid'])
609 {
610 $xml .= "\n\t\t<reporter>" . construct_user_display($db->query_first("SELECT * FROM " . TABLE_PREFIX . "user WHERE userid = $bug[userid]"), false) . "</reporter>";
611 }
612 $xml .= "\n\t\t<summary>" . $bug['summary'] . "</summary>";
613 $xml .= "\n\t\t<product>" . $bug['product'] . "</product>";
614 if ($bug['component'])
615 {
616 $xml .= "\n\t\t<component>" . $bug['component'] . "</component>";
617 }
618 $xml .= "\n\t\t<version>" . $bug['version'] . "</version>";
619 $xml .= "\n\t\t<status>" . $bug['status'] . "</status>";
620 if ($bug['assignedto'])
621 {
622 $xml .= "\n\t\t<assignedTo>" . construct_user_display($bugsys->datastore['assignto']["$bug[assignedto]"], false) . "</assignedTo>";
623 }
624 $xml .= "\n\t\t<resolution>" . $bug['resolution'] . "</resolution>";
625 $xml .= "\n\t\t<severity>" . $bug['severity'] . "</severity>";
626 $xml .= "\n\t\t<priority>" . $bug['priority'] . "</priority>";
627
628 $xml .= "\n\t</bug>";
629 }
630
631 $xml .= "\n</bugdarExport>";
632
633 $funct->download_file($xml, T('bugdar-search-' . $search['searchid'] . '.xml'), true);
634 }
635
636 // ###################################################################
637
638 if ($_POST['do'] == 'dosave')
639 {
640 $search = $db->query_first("SELECT * FROM " . TABLE_PREFIX . "search WHERE searchid = " . $bugsys->input_clean('searchid', TYPE_UINT) . " AND userid = " . $bugsys->userinfo['userid']);
641 if (!$search)
642 {
643 $message->addError(T('The search does not exist.'));
644 }
645 if ($search['name'])
646 {
647 $message->addError(sprintf(T('This search has already been named "%1$s".'), $search['name']));
648 }
649 if (empty($bugsys->in['name']))
650 {
651 $message->addError(T('The name cannot be empty.'));
652 }
653
654 if (!$message->hasErrors())
655 {
656 $db->query("UPDATE " . TABLE_PREFIX . "search SET name = '" . $bugsys->input_escape('name') . "' WHERE searchid = " . $bugsys->in['searchid']);
657 $message->redirect(T('Your search has been saved.'), 'search.php?searchid=' . $search['searchid']);
658 }
659 else
660 {
661 $_REQUEST['do'] = 'save';
662 $show['errors'] = true;
663 }
664 }
665
666 // ###################################################################
667
668 if ($_REQUEST['do'] == 'save')
669 {
670 if (!$bugsys->userinfo['userid'])
671 {
672 $message->errorPermission();
673 }
674
675 eval('$template->flush("' . $template->fetch('search_save') . '");');
676 }
677
678 // ###################################################################
679
680 if ($_POST['do'] == 'results')
681 {
682 if (!$search['ids'])
683 {
684 $message->error(T('No bugs matched your search criteria. Please <a href="search.php?new=1">try again</a> with different search requirements.'));
685 }
686
687 $searchid = $search['searchid'];
688 $hilight = $search['hilight'];
689
690 LoadPaginationFramework();
691 $pagination->setTotal($search['resultcount']);
692 $pagination->splitPages();
693
694 $sort = new ListSorter('search');
695
696 $show['save'] = ($bugsys->userinfo['userid'] AND !$search['name']);
697 $show['update'] = can_perform('caneditother');
698
699 $bugs = '';
700 $search = $db->query("SELECT * FROM " . TABLE_PREFIX . "bug WHERE bugid IN ($search[ids]) $search[orderby] LIMIT " . $pagination->fetchLimit($pagination->getPage() - 1) . ", " . $pagination->getPerPage());
701 while ($bug = $db->fetch_array($search))
702 {
703 $funct->exec_swap_bg('altcolor', '');
704 $bug = ProcessBugDataForDisplay($bug, $funct->bgcolour);
705 $bugs .= $sort->constructRow($bug, "&amp;hilight=$hilight");
706 }
707
708 $columnHeads = $sort->constructColumnHeaders(false);
709 $show['pagenav'] = ($pagination->getPageCount() > 1);
710 $pagenav = $pagination->constructPageNav('search.php?searchid=' . $searchid);
711
712 eval('$template->flush("' . $template->fetch('search_results') . '");');
713 }
714
715 /*=====================================================================*\
716 || ###################################################################
717 || # $HeadURL$
718 || # $Id$
719 || ###################################################################
720 \*=====================================================================*/
721 ?>