r887: Removing all the annoying calls to intval() in place of ISSO's cleaning framework
[bugdar.git] / showreport.php
1 <?php
2 /*=====================================================================*\
3 || ###################################################################
4 || # Bugdar [#]version[#]
5 || # Copyright ©2002-[#]year[#] Iris Studios, Inc.
6 || #
7 || # This program is free software; you can redistribute it and/or modify
8 || # it under the terms of the GNU General Public License as published by
9 || # the Free Software Foundation; version [#]gpl[#] of the License.
10 || #
11 || # This program is distributed in the hope that it will be useful, but
12 || # WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY
13 || # or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License for
14 || # more details.
15 || #
16 || # You should have received a copy of the GNU General Public License along
17 || # with this program; if not, write to the Free Software Foundation, Inc.,
18 || # 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301, USA
19 || ###################################################################
20 \*=====================================================================*/
21
22 $fetchtemplates = array(
23 'showreport',
24 'showreport_attachment',
25 'showreport_comment',
26 'quicksearch',
27 'bugfield_static_text'
28 );
29
30 define('SVN', '$Id$');
31
32 $focus['showreport'] = 'focus';
33
34 require_once('./global.php');
35 require_once('./includes/functions_product.php');
36
37 $bugid = $bugsys->input_clean('bugid', TYPE_UINT);
38
39 // ###################################################################
40
41 if (empty($bugid) OR $_REQUEST['do'] == 'quicksearch')
42 {
43 if (!empty($bugid))
44 {
45 if ($db->query_first("SELECT bugid FROM " . TABLE_PREFIX . "bug WHERE bugid = $bugid"))
46 {
47 header("Location: showreport.php?bugid=$bugid");
48 exit;
49 }
50 else
51 {
52 $error = $lang->getlex('error_invalid_id');
53 }
54 }
55
56 eval('$template->flush("' . $template->fetch('quicksearch') . '");');
57 exit;
58 }
59
60 // ###################################################################
61
62 // -------------------------------------------------------------------
63 // get the report
64 $bug = $db->query_first("
65 SELECT bugvaluefill.*, bug.*, user.email, user.displayname, user.showemail
66 FROM " . TABLE_PREFIX . "bug AS bug
67 LEFT JOIN " . TABLE_PREFIX . "user AS user
68 ON (bug.userid = user.userid)
69 LEFT JOIN " . TABLE_PREFIX . "bugvaluefill AS bugvaluefill
70 ON (bug.bugid = bugvaluefill.bugid)
71 WHERE bug.bugid = $bugid"
72 );
73
74 if (!can_perform('canviewbugs', $bug['productid']))
75 {
76 $message->error_permission();
77 }
78
79 $show['edit'] = ((can_perform('caneditown', $bug['productid']) AND $bugsys->userinfo['userid'] == $bug['userid'] AND $bug['userid'] != 0) OR (can_perform('caneditother', $bug['productid']) AND $bugsys->userinfo['userid'] != $bug['userid']));
80
81 if (!is_array($bug))
82 {
83 $message->error($lang->getlex('error_invalid_id'));
84 }
85
86 if ($bug['hidden'] AND !can_perform('canviewhidden', $bug['productid']))
87 {
88 $message->error_permission();
89 }
90
91 // ###################################################################
92 // global display items
93
94 $show['subscribe'] = can_perform('cansubscribe', $bug['productid']);
95
96 $favourite = (bool)$db->query_first("SELECT * FROM " . TABLE_PREFIX . "favourite WHERE bugid = $bug[bugid] AND userid = " . $bugsys->userinfo['userid']);
97 $favouritetext = (($favourite) ? $lang->string('Remove from Favourites') : $lang->string('Add to Favourites'));
98
99 $bug['userinfo'] = construct_user_display($bug);
100 $bug['datetime'] = $datef->format($bugsys->options['dateformat'], $bug['dateline']);
101 $bug['product'] = $bugsys->datastore['product']["$bug[productid]"]['title'];
102 $bug['component'] = (($bug['componentid']) ? $bugsys->datastore['product']["$bug[componentid]"]['title'] : '');
103 $bug['version'] = $bugsys->datastore['version']["$bug[versionid]"]['version'];
104
105 // ###################################################################
106 // edit display
107 if ($show['edit'])
108 {
109 $select['severity'] = construct_datastore_select('severity', 'severity', 'severityid', $bug['severity']);
110
111 $show['changestatus'] = ((can_perform('canchangestatus', $bug['productid'])) ? true : false);
112 if (can_perform('canchangestatus', $bug['productid']))
113 {
114 $select['priority'] = construct_datastore_select('priority', 'priority', 'priorityid', $bug['priority']);
115 $select['status'] = construct_datastore_select('status', 'status', 'statusid', $bug['status']);
116 $select['resolution'] = construct_datastore_select('resolution', 'resolution', 'resolutionid', $bug['resolution']);
117 }
118 else
119 {
120 $bug['status'] = $bugsys->datastore['status']["$bug[status]"]['status'];
121 $bug['resolution'] = $bugsys->datastore['resolution']["$bug[resolution]"]['resolution'];
122 $bug['severity'] = $bugsys->datastore['severity']["$bug[severity]"]['severity'];
123 $bug['priority'] = $bugsys->datastore['priority']["$bug[priority]"]['priority'];
124 }
125
126 $show['assign'] = ((can_perform('canassign', $bug['productid'])) ? true : false);
127 if (can_perform('canassign', $bug['productid']) AND is_array($bugsys->datastore['assignto']))
128 {
129 foreach ($bugsys->datastore['assignto'] AS $dev)
130 {
131 $value = $dev['userid'];
132 $selected = (($dev['userid'] == $bug['assignedto']) ? true : false);
133 $label = construct_user_display($dev, false);
134 eval('$select[dev] .= "' . $template->fetch('selectoption') . '";');
135 }
136 }
137
138 $pcv_select = construct_pcv_select('canviewbugs', "p$bug[productid]c$bug[componentid]v$bug[versionid]");
139
140 if ($bug['duplicateof'])
141 {
142 $duplicate = $db->query_first("SELECT * FROM " . TABLE_PREFIX . "bug WHERE bugid = $bug[duplicateof]");
143 }
144
145 if ($bug['dependency'])
146 {
147 $depends = array();
148 $dependencies = $db->query("SELECT * FROM " . TABLE_PREFIX . "bug WHERE bugid IN ($bug[dependency])");
149 while ($dependency = $db->fetch_array($dependencies))
150 {
151 $depends[] = "<a href=\"showreport.php?bugid=$dependency[bugid]\" title=\"$dependency[summary]\">$dependency[bugid]</a>";
152 }
153 $dependencies = implode(' ', $depends);
154 }
155
156 $select['autoactions'] = '';
157 $show['autoactions'] = false;
158 if (is_array($bugsys->datastore['autoaction']))
159 {
160 foreach ($bugsys->datastore['autoaction'] AS $action)
161 {
162 $label = $action['name'];
163 $value = $action['actionid'];
164 $selected = false;
165 eval('$select[autoaction] .= "' . $template->fetch('selectoption') . '";');
166 $show['autoactions'] = true;
167 }
168 if ($show['autoactions'])
169 {
170 $label = '';
171 $value = 0;
172 $selected = true;
173 eval('$select[autoaction] = "' . $template->fetch('selectoption') . '" . $select[autoaction];');
174 }
175 }
176 }
177
178 // ###################################################################
179 // non-edit display
180 else
181 {
182 // -------------------------------------------------------------------
183 // prep display
184 $bug['status'] = $bugsys->datastore['status']["$bug[status]"]['status'];
185 $bug['resolution'] = $bugsys->datastore['resolution']["$bug[resolution]"]['resolution'];
186 $bug['severity'] = $bugsys->datastore['severity']["$bug[severity]"]['severity'];
187 $bug['priority'] = $bugsys->datastore['priority']["$bug[priority]"]['priority'];
188
189 $assigninfo = $bugsys->datastore['assignto']["$bug[assignedto]"];
190 $bug['assigninfo'] = ((is_array($assigninfo)) ? construct_user_display($assigninfo) : '');
191
192 $duplicateof = $db->query_first("SELECT bugid, summary FROM " . TABLE_PREFIX . "bug WHERE bugid = $bug[duplicateof]");
193
194 $dupelist = array();
195 $duplicates = $db->query("SELECT bugid, summary FROM " . TABLE_PREFIX . "bug WHERE duplicateof = $bug[bugid]");
196 while ($duplicate = $db->fetch_array($duplicates))
197 {
198 $dupelist[] = "<a href=\"showreport.php?bugid=$duplicate[bugid]\" target=\"_blank\">$duplicate[summary]</a>";
199 }
200 $dupelist = implode(', ', $dupelist);
201
202 if ($bug['dependency'])
203 {
204 $depends = array();
205 $dependencies = $db->query("SELECT bugid, summary FROM " . TABLE_PREFIX . "bug WHERE bugid IN ($bug[dependency])");
206 while ($dependency = $db->fetch_array($dependencies))
207 {
208 $depends[] = "<a href=\"showreport.php?bugid=$dependency[bugid]\" title=\"$dependency[summary]\" target=\"_blank\">$dependency[bugid]</a>";
209 }
210 $dependencies = implode(' ', $depends);
211 }
212 }
213
214 // ###################################################################
215 // custom field output
216
217 $fields = construct_custom_fields($bug);
218 $i = 0;
219 foreach ($fields AS $field)
220 {
221 if ($i % 2 == 0)
222 {
223 $customfields['left'] .= $field;
224 }
225 else
226 {
227 $customfields['right'] .= $field;
228 }
229 $i++;
230 }
231
232 // ###################################################################
233 // other elements
234
235 // -------------------------------------------------------------------
236 // hilight
237 $words = explode(' ', $bugsys->in['hilight']);
238 foreach ($words AS $word)
239 {
240 if (trim($word))
241 {
242 $word = preg_quote($bugsys->unsanitize($word));
243 $hilight[] = $temp = trim(preg_replace('#[^0-9a-zA-Z_ ]#', '', $word));
244 }
245 }
246
247 // -------------------------------------------------------------------
248 // attachments
249 $show['getattachments'] = ((can_perform('cangetattach', $bug['productid']) OR can_perform('caneditattach', $bug['productid'])) ? true : false);
250 $show['putattachments'] = ((can_perform('canputattach', $bug['productid']) OR can_perform('caneditattach', $bug['productid'])) ? true : false);
251 $show['attachments'] = ($show['getattachments'] OR $show['putattachments']) ? true : false;
252
253 if ($show['getattachments'] OR $show['putattachments'])
254 {
255 $attachments_fetch = $db->query("
256 SELECT attachment.attachmentid, attachment.filename,
257 attachment.description, attachment.dateline,
258 attachment.userid, attachment.obsolete, user.email,
259 user.showemail, user.displayname
260 FROM " . TABLE_PREFIX . "attachment AS attachment
261 LEFT JOIN " . TABLE_PREFIX . "user AS user
262 ON (attachment.userid = user.userid)
263 WHERE attachment.bugid = $bug[bugid]
264 ORDER BY attachment.dateline"
265 );
266
267 $attaches = false;
268 while ($attachment = $db->fetch_array($attachments_fetch))
269 {
270 $attaches = true;
271 $show['editattach'] = ((can_perform('caneditattach', $bug['productid']) OR ($attachment['userid'] == $bugsys->userinfo['userid'] AND can_perform('canputattach', $bug['productid']))) ? true : false);
272 $attachment['date'] = $datef->format($bugsys->options['dateformat'], $attachment['dateline']);
273 $attachment['user'] = construct_user_display($attachment, false);
274 eval('$attachments .= "' . $template->fetch('showreport_attachment') . '";');
275 }
276
277 $show['attachments'] = (!$show['putattachments'] AND !$attaches) ? false : true;
278 }
279
280 // -------------------------------------------------------------------
281 // votes
282
283 $vote = $db->query_first("SELECT *, FIND_IN_SET(" . $bugsys->userinfo['userid'] . ", userids) AS uservote FROM " . TABLE_PREFIX . "vote WHERE bugid = $bug[bugid]");
284
285 $vote['total'] = $vote['votefor'] + $vote['voteagainst'];
286 if ($vote['total'] != 0)
287 {
288 $vote['forpercent'] = round($vote['votefor'] / $vote['total'], 3) * 100;
289 $vote['againstpercent'] = round($vote['voteagainst'] / $vote['total'], 3) * 100;
290 }
291 else
292 {
293 $vote['forpercent'] = 0;
294 $vote['againstpercent'] = 0;
295 }
296
297 $show['vote'] = ((can_perform('canvote', $bug['productid']) AND !$vote['uservote']) ? true : false);
298
299 // -------------------------------------------------------------------
300 // get comments
301 $comments_fetch = $db->query("
302 SELECT comment.*, user.email, user.showemail, user.displayname
303 FROM " . TABLE_PREFIX . "comment AS comment
304 LEFT JOIN " . TABLE_PREFIX . "user AS user
305 ON (comment.userid = user.userid)
306 WHERE comment.bugid = $bug[bugid]" . ((!can_perform('canviewhidden', $bug['productid'])) ? "
307 AND !hidden" : '') . "
308 ORDER BY comment.dateline ASC"
309 );
310 while ($comment = $db->fetch_array($comments_fetch))
311 {
312 $comment['posttime'] = $datef->format($bugsys->options['dateformat'], $comment['dateline']);
313 $comment['postby'] = construct_user_display($comment);
314 $show['editcomment'] = ((can_perform('caneditownreply', $bug['productid']) AND $bugsys->userinfo['userid'] == $comment['userid']) OR (can_perform('caneditotherreply', $bug['productid']) AND $bugsys->userinfo['userid'] != $comment['userid']));
315
316 $bugsys->debug('can edit own replies: ' . (int)(can_perform('caneditownreply', $bug['productid']) AND $bugsys->userinfo['userid'] == $comment['userid']));
317 $bugsys->debug('can edit other replies:' . (int)(can_perform('caneditotherreply', $bug['productid']) AND $bugsys->userinfo['userid'] != $comment['userid']));
318 $bugsys->debug('$show[editcomment]: ' . $show['editcomment']);
319
320 if (is_array($hilight))
321 {
322 foreach ($hilight AS $id => $find)
323 {
324 $find = "#($find)#i";
325 $replace = "<span style=\"background-color: yellow; font-weight: bold; color: red;\">\\1</span>";
326 $comment['comment_parsed'] = preg_replace($find, $replace, $comment['comment_parsed']);
327 }
328 }
329
330 eval('$comments .= "' . $template->fetch('showreport_comment') . '";');
331 }
332
333 $show['newreply'] = ((can_perform('canpostcomments', $bug['productid'])) ? true : false);
334
335 $bug['summary_title'] = $bug['summary'];
336 if (is_array($hilight) AND !$show['edit'])
337 {
338 foreach ($hilight AS $id => $find)
339 {
340 $find = "#($find)#i";
341 $replace = "<span style=\"background-color: yellow; font-weight: bold; color: red;\">\\1</span>";
342 $bug['summary'] = preg_replace($find, $replace, $bug['summary']);
343 }
344 }
345
346 eval('$template->flush("' . $template->fetch('showreport') . '");');
347
348 /*=====================================================================*\
349 || ###################################################################
350 || # $HeadURL$
351 || # $Id$
352 || ###################################################################
353 \*=====================================================================*/
354 ?>