Zeile 13 | Zeile 13 |
---|
allow_html allow_smilies allow_mycode
|
allow_html allow_smilies allow_mycode
|
| allow_auto_url
|
nl2br filter_badwords me_username
| nl2br filter_badwords me_username
|
Zeile 87 | Zeile 88 |
---|
* @var int */ public $list_count;
|
* @var int */ public $list_count;
|
| /** * Whether or not should a <br /> with clear: both be added at the end of the parsed message * * @access public * @var boolean */ public $clear_needed = false;
/** * Don't validate parser output */ const VALIDATION_DISABLE = 0;
/** * Validate parser output and log errors */ const VALIDATION_REPORT_ONLY = 1;
/** * Validate parser output, log errors, and block output on failure */ const VALIDATION_REQUIRE = 2;
/** * Whether to validate the parser's HTML output when `allow_html` is disabled. * Validation errors will be logged/sent/displayed according to board settings. * * @access public * @var self::VALIDATION_* */ public $output_validation_policy = self::VALIDATION_REQUIRE;
|
/** * Parses a message with the specified options. * * @param string $message The message to be parsed.
|
/** * Parses a message with the specified options. * * @param string $message The message to be parsed.
|
* @param array $options Array of yes/no options - allow_html,filter_badwords,allow_mycode,allow_smilies,nl2br,me_username,filter_cdata.
| * @param array $options Array of yes/no options
|
* @return string The parsed message. */ function parse_message($message, $options=array()) { global $plugins, $mybb;
|
* @return string The parsed message. */ function parse_message($message, $options=array()) { global $plugins, $mybb;
|
| $original_message = $message;
$this->clear_needed = false;
|
// Set base URL for parsing smilies $this->base_url = $mybb->settings['bburl'];
| // Set base URL for parsing smilies $this->base_url = $mybb->settings['bburl'];
|
Zeile 105 | Zeile 142 |
---|
if($this->base_url != "") { if(my_substr($this->base_url, my_strlen($this->base_url) -1) != "/")
|
if($this->base_url != "") { if(my_substr($this->base_url, my_strlen($this->base_url) -1) != "/")
|
{
| {
|
$this->base_url = $this->base_url."/"; } }
| $this->base_url = $this->base_url."/"; } }
|
Zeile 131 | Zeile 168 |
---|
}
// If MyCode needs to be replaced, first filter out [code] and [php] tags.
|
}
// If MyCode needs to be replaced, first filter out [code] and [php] tags.
|
| $code_matches = array();
|
if(!empty($this->options['allow_mycode']) && $mybb->settings['allowcodemycode'] == 1) { // This code is reserved and could break codes $message = str_replace("<mybb-code>\n", "<mybb_code>\n", $message);
|
if(!empty($this->options['allow_mycode']) && $mybb->settings['allowcodemycode'] == 1) { // This code is reserved and could break codes $message = str_replace("<mybb-code>\n", "<mybb_code>\n", $message);
|
preg_match_all("#\[(code|php)\](.*?)\[/\\1\](\r\n?|\n?)#si", $message, $code_matches, PREG_SET_ORDER); $message = preg_replace("#\[(code|php)\](.*?)\[/\\1\](\r\n?|\n?)#si", "<mybb-code>\n", $message); }
| preg_match_all("#\[(code|php)\](.*?)(\[/\\1\])+(\r\n?|\n?)#si", $message, $code_matches, PREG_SET_ORDER); foreach($code_matches as $point => $part) { if(isset($part[3])) { $part[1] = "[".$part[1]."]"; $code_matches[$point][2] = substr_replace($part[0], "", strrpos($part[0], $part[3]), strlen($part[3])); $code_matches[$point][2] = substr_replace($code_matches[$point][2], "", strpos($code_matches[$point][2], $part[1]), strlen($part[1])); } } $message = preg_replace("#\[(code|php)\](.*?)(\[/\\1\])+(\r\n?|\n?)#si", "<mybb-code>\n", $message); }
|
if(empty($this->options['allow_html']))
|
if(empty($this->options['allow_html']))
|
{
| {
|
$message = $this->parse_html($message); $message = str_replace("<mybb-code>\n", "<mybb-code>\n", $message); }
| $message = $this->parse_html($message); $message = str_replace("<mybb-code>\n", "<mybb-code>\n", $message); }
|
Zeile 154 | Zeile 201 |
---|
$find = array("<br />\n", "<br>\n"); $replace = array("\n", "\n"); $message = str_replace($find, $replace, $message);
|
$find = array("<br />\n", "<br>\n"); $replace = array("\n", "\n"); $message = str_replace($find, $replace, $message);
|
}
| }
$message = $plugins->run_hooks("parse_message_htmlsanitized", $message);
|
// Replace "me" code and slaps if we have a username if(!empty($this->options['me_username']) && $mybb->settings['allowmemycode'] == 1)
|
// Replace "me" code and slaps if we have a username if(!empty($this->options['me_username']) && $mybb->settings['allowmemycode'] == 1)
|
{
| {
|
global $lang;
|
global $lang;
|
$message = preg_replace('#(>|^|\r|\n)/me ([^\r\n<]*)#i', "\\1<span style=\"color: red;\">* {$this->options['me_username']} \\2</span>", $message); $message = preg_replace('#(>|^|\r|\n)/slap ([^\r\n<]*)#i', "\\1<span style=\"color: red;\">* {$this->options['me_username']} {$lang->slaps} \\2 {$lang->with_trout}</span>", $message); }
| $message = preg_replace('#(>|^|\r|\n)/me ([^\r\n<]*)#i', "\\1<span style=\"color: red;\" class=\"mycode_me\">* {$this->options['me_username']} \\2</span>", $message); $message = preg_replace('#(>|^|\r|\n)/slap ([^\r\n<]*)#i', "\\1<span style=\"color: red;\" class=\"mycode_slap\">* {$this->options['me_username']} {$lang->slaps} \\2 {$lang->with_trout}</span>", $message); }
$message = $plugins->run_hooks("parse_message_me_mycode", $message);
|
// If we can, parse smilies if(!empty($this->options['allow_smilies'])) {
| // If we can, parse smilies if(!empty($this->options['allow_smilies'])) {
|
Zeile 172 | Zeile 223 |
---|
}
// Replace MyCode if requested.
|
}
// Replace MyCode if requested.
|
if(!empty($this->options['allow_mycode'])) {
| if(!empty($this->options['allow_mycode'])) {
|
$message = $this->parse_mycode($message);
|
$message = $this->parse_mycode($message);
|
| }
// Filter url codes, if disabled. if($mybb->settings['allowlinkmycode'] != 1) { $message = preg_replace("#\[(\/)?url{1}(.*?)\]#i", "", $message);
|
}
// Parse Highlights
| }
// Parse Highlights
|
Zeile 215 | Zeile 272 |
---|
// Fix up new lines and block level elements $message = preg_replace("#(</?(?:html|head|body|div|p|form|table|thead|tbody|tfoot|tr|td|th|ul|ol|li|div|p|blockquote|cite|hr)[^>]*>)\s*<br />#i", "$1", $message); $message = preg_replace("#( )+(</?(?:html|head|body|div|p|form|table|thead|tbody|tfoot|tr|td|th|ul|ol|li|div|p|blockquote|cite|hr)[^>]*>)#i", "$2", $message);
|
// Fix up new lines and block level elements $message = preg_replace("#(</?(?:html|head|body|div|p|form|table|thead|tbody|tfoot|tr|td|th|ul|ol|li|div|p|blockquote|cite|hr)[^>]*>)\s*<br />#i", "$1", $message); $message = preg_replace("#( )+(</?(?:html|head|body|div|p|form|table|thead|tbody|tfoot|tr|td|th|ul|ol|li|div|p|blockquote|cite|hr)[^>]*>)#i", "$2", $message);
|
| }
if($this->clear_needed) { $message .= '<br class="clear" />';
|
}
$message = $plugins->run_hooks("parse_message_end", $message);
|
}
$message = $plugins->run_hooks("parse_message_end", $message);
|
return $message;
| if ($this->output_allowed($original_message, $message) === true) { return $message; } else { return ''; }
|
}
/**
| }
/**
|
Zeile 246 | Zeile 315 |
---|
global $cache, $lang, $mybb; $this->mycode_cache = array();
|
global $cache, $lang, $mybb; $this->mycode_cache = array();
|
$standard_mycode = $callback_mycode = $nestable_mycode = array(); $standard_count = $callback_count = $nestable_count = 0;
| $standard_mycode = $callback_mycode = $nestable_mycode = $nestable_callback_mycode = array(); $standard_count = $callback_count = $nestable_count = $nestable_callback_count = 0;
|
if($mybb->settings['allowbasicmycode'] == 1) { $standard_mycode['b']['regex'] = "#\[b\](.*?)\[/b\]#si";
|
if($mybb->settings['allowbasicmycode'] == 1) { $standard_mycode['b']['regex'] = "#\[b\](.*?)\[/b\]#si";
|
$standard_mycode['b']['replacement'] = "<span style=\"font-weight: bold;\">$1</span>";
| $standard_mycode['b']['replacement'] = "<span style=\"font-weight: bold;\" class=\"mycode_b\">$1</span>";
|
$standard_mycode['u']['regex'] = "#\[u\](.*?)\[/u\]#si";
|
$standard_mycode['u']['regex'] = "#\[u\](.*?)\[/u\]#si";
|
$standard_mycode['u']['replacement'] = "<span style=\"text-decoration: underline;\">$1</span>";
| $standard_mycode['u']['replacement'] = "<span style=\"text-decoration: underline;\" class=\"mycode_u\">$1</span>";
|
$standard_mycode['i']['regex'] = "#\[i\](.*?)\[/i\]#si";
|
$standard_mycode['i']['regex'] = "#\[i\](.*?)\[/i\]#si";
|
$standard_mycode['i']['replacement'] = "<span style=\"font-style: italic;\">$1</span>";
| $standard_mycode['i']['replacement'] = "<span style=\"font-style: italic;\" class=\"mycode_i\">$1</span>";
|
$standard_mycode['s']['regex'] = "#\[s\](.*?)\[/s\]#si";
|
$standard_mycode['s']['regex'] = "#\[s\](.*?)\[/s\]#si";
|
$standard_mycode['s']['replacement'] = "<del>$1</del>";
| $standard_mycode['s']['replacement'] = "<span style=\"text-decoration: line-through;\" class=\"mycode_s\">$1</span>";
|
$standard_mycode['hr']['regex'] = "#\[hr\]#si";
|
$standard_mycode['hr']['regex'] = "#\[hr\]#si";
|
$standard_mycode['hr']['replacement'] = "<hr />";
| $standard_mycode['hr']['replacement'] = "<hr class=\"mycode_hr\" />";
|
++$standard_count; }
| ++$standard_count; }
|
Zeile 285 | Zeile 354 |
---|
if($mybb->settings['allowlinkmycode'] == 1) {
|
if($mybb->settings['allowlinkmycode'] == 1) {
|
$callback_mycode['url_simple']['regex'] = "#\[url\]([a-z]+?://)([^\r\n\"<]+?)\[/url\]#si";
| $callback_mycode['url_simple']['regex'] = "#\[url\]((?!javascript)[a-z]+?://)([^\r\n\"<]+?)\[/url\]#si";
|
$callback_mycode['url_simple']['replacement'] = array($this, 'mycode_parse_url_callback1');
|
$callback_mycode['url_simple']['replacement'] = array($this, 'mycode_parse_url_callback1');
|
$callback_mycode['url_simple2']['regex'] = "#\[url\]([^\r\n\"<]+?)\[/url\]#i";
| $callback_mycode['url_simple2']['regex'] = "#\[url\]((?!javascript:)[^\r\n\"<]+?)\[/url\]#i";
|
$callback_mycode['url_simple2']['replacement'] = array($this, 'mycode_parse_url_callback2');
|
$callback_mycode['url_simple2']['replacement'] = array($this, 'mycode_parse_url_callback2');
|
$callback_mycode['url_complex']['regex'] = "#\[url=([a-z]+?://)([^\r\n\"<]+?)\](.+?)\[/url\]#si";
| $callback_mycode['url_complex']['regex'] = "#\[url=((?!javascript)[a-z]+?://)([^\r\n\"<]+?)\](.+?)\[/url\]#si";
|
$callback_mycode['url_complex']['replacement'] = array($this, 'mycode_parse_url_callback1');
|
$callback_mycode['url_complex']['replacement'] = array($this, 'mycode_parse_url_callback1');
|
$callback_mycode['url_complex2']['regex'] = "#\[url=([^\r\n\"<]+?)\](.+?)\[/url\]#si";
| $callback_mycode['url_complex2']['regex'] = "#\[url=((?!javascript:)[^\r\n\"<]+?)\](.+?)\[/url\]#si";
|
$callback_mycode['url_complex2']['replacement'] = array($this, 'mycode_parse_url_callback2');
++$callback_count;
| $callback_mycode['url_complex2']['replacement'] = array($this, 'mycode_parse_url_callback2');
++$callback_count;
|
Zeile 302 | Zeile 371 |
---|
if($mybb->settings['allowemailmycode'] == 1) {
|
if($mybb->settings['allowemailmycode'] == 1) {
|
$callback_mycode['email_simple']['regex'] = "#\[email\](.*?)\[/email\]#i";
| $callback_mycode['email_simple']['regex'] = "#\[email\]((?:[a-zA-Z0-9-_\+\.]+?)@[a-zA-Z0-9-]+\.[a-zA-Z0-9\.-]+(?:\?.*?)?)\[/email\]#i";
|
$callback_mycode['email_simple']['replacement'] = array($this, 'mycode_parse_email_callback');
|
$callback_mycode['email_simple']['replacement'] = array($this, 'mycode_parse_email_callback');
|
$callback_mycode['email_complex']['regex'] = "#\[email=(.*?)\](.*?)\[/email\]#i";
| $callback_mycode['email_complex']['regex'] = "#\[email=((?:[a-zA-Z0-9-_\+\.]+?)@[a-zA-Z0-9-]+\.[a-zA-Z0-9\.-]+(?:\?.*?)?)\](.*?)\[/email\]#i";
|
$callback_mycode['email_complex']['replacement'] = array($this, 'mycode_parse_email_callback');
++$callback_count;
| $callback_mycode['email_complex']['replacement'] = array($this, 'mycode_parse_email_callback');
++$callback_count;
|
Zeile 314 | Zeile 383 |
---|
if($mybb->settings['allowcolormycode'] == 1) { $nestable_mycode['color']['regex'] = "#\[color=([a-zA-Z]*|\#?[\da-fA-F]{3}|\#?[\da-fA-F]{6})](.*?)\[/color\]#si";
|
if($mybb->settings['allowcolormycode'] == 1) { $nestable_mycode['color']['regex'] = "#\[color=([a-zA-Z]*|\#?[\da-fA-F]{3}|\#?[\da-fA-F]{6})](.*?)\[/color\]#si";
|
$nestable_mycode['color']['replacement'] = "<span style=\"color: $1;\">$2</span>";
| $nestable_mycode['color']['replacement'] = "<span style=\"color: $1;\" class=\"mycode_color\">$2</span>";
|
++$nestable_count; }
| ++$nestable_count; }
|
Zeile 322 | Zeile 391 |
---|
if($mybb->settings['allowsizemycode'] == 1) { $nestable_mycode['size']['regex'] = "#\[size=(xx-small|x-small|small|medium|large|x-large|xx-large)\](.*?)\[/size\]#si";
|
if($mybb->settings['allowsizemycode'] == 1) { $nestable_mycode['size']['regex'] = "#\[size=(xx-small|x-small|small|medium|large|x-large|xx-large)\](.*?)\[/size\]#si";
|
$nestable_mycode['size']['replacement'] = "<span style=\"font-size: $1;\">$2</span>";
| $nestable_mycode['size']['replacement'] = "<span style=\"font-size: $1;\" class=\"mycode_size\">$2</span>";
|
$callback_mycode['size_int']['regex'] = "#\[size=([0-9\+\-]+?)\](.*?)\[/size\]#si"; $callback_mycode['size_int']['replacement'] = array($this, 'mycode_handle_size_callback');
++$nestable_count; ++$callback_count;
|
$callback_mycode['size_int']['regex'] = "#\[size=([0-9\+\-]+?)\](.*?)\[/size\]#si"; $callback_mycode['size_int']['replacement'] = array($this, 'mycode_handle_size_callback');
++$nestable_count; ++$callback_count;
|
}
if($mybb->settings['allowfontmycode'] == 1) { $nestable_mycode['font']['regex'] = "#\[font=([a-z0-9 ,\-_'\"]+)\](.*?)\[/font\]#si"; $nestable_mycode['font']['replacement'] = "<span style=\"font-family: $1;\">$2</span>";
++$nestable_count;
| |
}
if($mybb->settings['allowalignmycode'] == 1) { $nestable_mycode['align']['regex'] = "#\[align=(left|center|right|justify)\](.*?)\[/align\]#si";
|
}
if($mybb->settings['allowalignmycode'] == 1) { $nestable_mycode['align']['regex'] = "#\[align=(left|center|right|justify)\](.*?)\[/align\]#si";
|
$nestable_mycode['align']['replacement'] = "<div style=\"text-align: $1;\">$2</div>";
| $nestable_mycode['align']['replacement'] = "<div style=\"text-align: $1;\" class=\"mycode_align\">$2</div>";
|
++$nestable_count;
|
++$nestable_count;
|
| }
if($mybb->settings['allowfontmycode'] == 1) { $nestable_callback_mycode['font']['regex'] = "#\[font=\\s*(\"?)([a-z0-9 ,\-_'\"]+)\\1\\s*\](.*?)\[/font\]#si"; $nestable_callback_mycode['font']['replacement'] = array($this, 'mycode_parse_font_callback');
++$nestable_callback_count;
|
}
$custom_mycode = $cache->read("mycode");
| }
$custom_mycode = $cache->read("mycode");
|
Zeile 379 | Zeile 448 |
---|
$this->mycode_cache['nestable'][] = array('find' => $code['regex'], 'replacement' => $code['replacement']); }
|
$this->mycode_cache['nestable'][] = array('find' => $code['regex'], 'replacement' => $code['replacement']); }
|
// Assign the nestable MyCode to the cache.
| // Assign the callback MyCode to the cache.
|
foreach($callback_mycode as $code)
|
foreach($callback_mycode as $code)
|
{
| {
|
$this->mycode_cache['callback'][] = array('find' => $code['regex'], 'replacement' => $code['replacement']);
|
$this->mycode_cache['callback'][] = array('find' => $code['regex'], 'replacement' => $code['replacement']);
|
| }
// Assign the nestable callback MyCode to the cache. foreach($nestable_callback_mycode as $code) { $this->mycode_cache['nestable_callback'][] = array('find' => $code['regex'], 'replacement' => $code['replacement']);
|
}
$this->mycode_cache['standard_count'] = $standard_count; $this->mycode_cache['callback_count'] = $callback_count; $this->mycode_cache['nestable_count'] = $nestable_count;
|
}
$this->mycode_cache['standard_count'] = $standard_count; $this->mycode_cache['callback_count'] = $callback_count; $this->mycode_cache['nestable_count'] = $nestable_count;
|
| $this->mycode_cache['nestable_callback_count'] = $nestable_callback_count;
|
}
|
}
|
|
|
/** * Parses MyCode tags in a specific message with the specified options. *
| /** * Parses MyCode tags in a specific message with the specified options. *
|
Zeile 415 | Zeile 491 |
---|
// Parse quotes first $message = $this->mycode_parse_quotes($message);
|
// Parse quotes first $message = $this->mycode_parse_quotes($message);
|
$message = $this->mycode_auto_url($message);
| // Convert images when allowed. if(!empty($this->options['allow_imgcode'])) { $message = preg_replace_callback("#\[img\](\r\n?|\n?)(https?://([^<>\"']+?))\[/img\]#is", array($this, 'mycode_parse_img_callback1'), $message); $message = preg_replace_callback("#\[img=([1-9][0-9]*)x([1-9][0-9]*)\](\r\n?|\n?)(https?://([^<>\"']+?))\[/img\]#is", array($this, 'mycode_parse_img_callback2'), $message); $message = preg_replace_callback("#\[img align=(left|right)\](\r\n?|\n?)(https?://([^<>\"']+?))\[/img\]#is", array($this, 'mycode_parse_img_callback3'), $message); $message = preg_replace_callback("#\[img=([1-9][0-9]*)x([1-9][0-9]*) align=(left|right)\](\r\n?|\n?)(https?://([^<>\"']+?))\[/img\]#is", array($this, 'mycode_parse_img_callback4'), $message); } else { $message = preg_replace_callback("#\[img\](\r\n?|\n?)(https?://([^<>\"']+?))\[/img\]#is", array($this, 'mycode_parse_img_disabled_callback1'), $message); $message = preg_replace_callback("#\[img=([1-9][0-9]*)x([1-9][0-9]*)\](\r\n?|\n?)(https?://([^<>\"']+?))\[/img\]#is", array($this, 'mycode_parse_img_disabled_callback2'), $message); $message = preg_replace_callback("#\[img align=(left|right)\](\r\n?|\n?)(https?://([^<>\"']+?))\[/img\]#is", array($this, 'mycode_parse_img_disabled_callback3'), $message); $message = preg_replace_callback("#\[img=([1-9][0-9]*)x([1-9][0-9]*) align=(left|right)\](\r\n?|\n?)(https?://([^<>\"']+?))\[/img\]#is", array($this, 'mycode_parse_img_disabled_callback4'), $message); }
// Convert videos when allow. if(!empty($this->options['allow_videocode'])) { $message = preg_replace_callback("#\[video=(.*?)\](.*?)\[/video\]#i", array($this, 'mycode_parse_video_callback'), $message); } else { $message = preg_replace_callback("#\[video=(.*?)\](.*?)\[/video\]#i", array($this, 'mycode_parse_video_disabled_callback'), $message); }
|
$message = str_replace('$', '$', $message);
| $message = str_replace('$', '$', $message);
|
Zeile 441 | Zeile 541 |
---|
while(preg_match($mycode['find'], $message)) { $message = preg_replace($mycode['find'], $mycode['replacement'], $message);
|
while(preg_match($mycode['find'], $message)) { $message = preg_replace($mycode['find'], $mycode['replacement'], $message);
|
| } } }
// Replace the nestable callback mycodes if($this->mycode_cache['nestable_callback_count'] > 0) { foreach($this->mycode_cache['nestable_callback'] as $replace) { while(preg_match($replace['find'], $message)) { $message_org = $message; $message = preg_replace_callback($replace['find'], $replace['replacement'], $message); if ($message_org == $message) { break; }
|
} } }
| } } }
|
Zeile 459 | Zeile 576 |
---|
{ // Ignores missing end tags $message = preg_replace_callback("#\s?\[list(=(a|A|i|I|1))?&{$i}\](.*?)(\[/list&{$i}\]|$)(\r\n?|\n?)#si", array($this, 'mycode_parse_list_callback'), $message, 1);
|
{ // Ignores missing end tags $message = preg_replace_callback("#\s?\[list(=(a|A|i|I|1))?&{$i}\](.*?)(\[/list&{$i}\]|$)(\r\n?|\n?)#si", array($this, 'mycode_parse_list_callback'), $message, 1);
|
} }
// Convert images when allowed. if(!empty($this->options['allow_imgcode'])) { $message = preg_replace_callback("#\[img\](\r\n?|\n?)(https?://([^<>\"']+?))\[/img\]#is", array($this, 'mycode_parse_img_callback1'), $message); $message = preg_replace_callback("#\[img=([0-9]{1,3})x([0-9]{1,3})\](\r\n?|\n?)(https?://([^<>\"']+?))\[/img\]#is", array($this, 'mycode_parse_img_callback2'), $message); $message = preg_replace_callback("#\[img align=([a-z]+)\](\r\n?|\n?)(https?://([^<>\"']+?))\[/img\]#is", array($this, 'mycode_parse_img_callback3'), $message); $message = preg_replace_callback("#\[img=([0-9]{1,3})x([0-9]{1,3}) align=([a-z]+)\](\r\n?|\n?)(https?://([^<>\"']+?))\[/img\]#is", array($this, 'mycode_parse_img_callback4'), $message); } else { $message = preg_replace_callback("#\[img\](\r\n?|\n?)(https?://([^<>\"']+?))\[/img\]#is", array($this, 'mycode_parse_img_disabled_callback1'), $message); $message = preg_replace_callback("#\[img=([0-9]{1,3})x([0-9]{1,3})\](\r\n?|\n?)(https?://([^<>\"']+?))\[/img\]#is", array($this, 'mycode_parse_img_disabled_callback2'), $message); $message = preg_replace_callback("#\[img align=([a-z]+)\](\r\n?|\n?)(https?://([^<>\"']+?))\[/img\]#is", array($this, 'mycode_parse_img_disabled_callback3'), $message); $message = preg_replace_callback("#\[img=([0-9]{1,3})x([0-9]{1,3}) align=([a-z]+)\](\r\n?|\n?)(https?://([^<>\"']+?))\[/img\]#is", array($this, 'mycode_parse_img_disabled_callback4'), $message); }
// Convert videos when allow. if(!empty($this->options['allow_videocode'])) { $message = preg_replace_callback("#\[video=(.*?)\](.*?)\[/video\]#i", array($this, 'mycode_parse_video_callback'), $message); } else { $message = preg_replace_callback("#\[video=(.*?)\](.*?)\[/video\]#i", array($this, 'mycode_parse_video_disabled_callback'), $message); }
return $message;
| } }
if( (!isset($this->options['allow_auto_url']) || $this->options['allow_auto_url'] == 1) && $mybb->settings['allowautourl'] == 1 ) { $message = $this->mycode_auto_url($message); }
return $message;
|
}
/**
| }
/**
|
Zeile 500 | Zeile 599 |
---|
{ global $cache, $mybb, $theme, $templates; $this->smilies_cache = array();
|
{ global $cache, $mybb, $theme, $templates; $this->smilies_cache = array();
|
|
|
$smilies = $cache->read("smilies"); if(is_array($smilies)) { $extra_class = $onclick = ''; foreach($smilies as $sid => $smilie) {
|
$smilies = $cache->read("smilies"); if(is_array($smilies)) { $extra_class = $onclick = ''; foreach($smilies as $sid => $smilie) {
|
| if(isset($theme['imgdir'])) { $imgdir = $theme['imgdir']; } else { $imgdir = ''; }
|
$smilie['find'] = explode("\n", $smilie['find']);
|
$smilie['find'] = explode("\n", $smilie['find']);
|
$smilie['image'] = str_replace("{theme}", $theme['imgdir'], $smilie['image']);
| $smilie['image'] = str_replace("{theme}", $imgdir, $smilie['image']);
|
$smilie['image'] = htmlspecialchars_uni($mybb->get_asset_url($smilie['image'])); $smilie['name'] = htmlspecialchars_uni($smilie['name']);
foreach($smilie['find'] as $s)
|
$smilie['image'] = htmlspecialchars_uni($mybb->get_asset_url($smilie['image'])); $smilie['name'] = htmlspecialchars_uni($smilie['name']);
foreach($smilie['find'] as $s)
|
{
| {
|
$s = $this->parse_html($s); eval("\$smilie_template = \"".$templates->get("smilie", 1, 0)."\";"); $this->smilies_cache[$s] = $smilie_template;
| $s = $this->parse_html($s); eval("\$smilie_template = \"".$templates->get("smilie", 1, 0)."\";"); $this->smilies_cache[$s] = $smilie_template;
|
Zeile 536 | Zeile 644 |
---|
* * @param string $message $message The message being parsed. * @param int $allow_html not used
|
* * @param string $message $message The message being parsed. * @param int $allow_html not used
|
* @return string The parsed message.
| * @return string The parsed message.
|
*/ function parse_smilies($message, $allow_html=0) { if($this->smilies_cache == 0) { $this->cache_smilies();
|
*/ function parse_smilies($message, $allow_html=0) { if($this->smilies_cache == 0) { $this->cache_smilies();
|
}
| }
|
// No smilies? if(!count($this->smilies_cache)) { return $message;
|
// No smilies? if(!count($this->smilies_cache)) { return $message;
|
}
| }
|
// First we take out any of the tags we don't want parsed between (url= etc) preg_match_all("#\[(url(=[^\]]*)?\]|quote=([^\]]*)?\])|(http|ftp)(s|)://[^\s]*#i", $message, $bad_matches, PREG_PATTERN_ORDER); if(count($bad_matches[0]) > 0) { $message = preg_replace("#\[(url(=[^\]]*)?\]|quote=([^\]]*)?\])|(http|ftp)(s|)://[^\s]*#si", "<mybb-bad-sm>", $message);
|
// First we take out any of the tags we don't want parsed between (url= etc) preg_match_all("#\[(url(=[^\]]*)?\]|quote=([^\]]*)?\])|(http|ftp)(s|)://[^\s]*#i", $message, $bad_matches, PREG_PATTERN_ORDER); if(count($bad_matches[0]) > 0) { $message = preg_replace("#\[(url(=[^\]]*)?\]|quote=([^\]]*)?\])|(http|ftp)(s|)://[^\s]*#si", "<mybb-bad-sm>", $message);
|
}
$message = strtr($message, $this->smilies_cache);
| }
$message = strtr($message, $this->smilies_cache);
|
// If we matched any tags previously, swap them back in if(count($bad_matches[0]) > 0) {
| // If we matched any tags previously, swap them back in if(count($bad_matches[0]) > 0) {
|
Zeile 582 | Zeile 690 |
---|
* @access private */ function cache_badwords()
|
* @access private */ function cache_badwords()
|
{
| {
|
global $cache; $this->badwords_cache = array(); $this->badwords_cache = $cache->read("badwords");
| global $cache; $this->badwords_cache = array(); $this->badwords_cache = $cache->read("badwords");
|
Zeile 605 | Zeile 713 |
---|
if($this->badwords_cache == 0) { $this->cache_badwords();
|
if($this->badwords_cache == 0) { $this->cache_badwords();
|
}
| }
|
if(is_array($this->badwords_cache))
|
if(is_array($this->badwords_cache))
|
{
| {
|
reset($this->badwords_cache); foreach($this->badwords_cache as $bid => $badword) { if(!$badword['replacement'])
|
reset($this->badwords_cache); foreach($this->badwords_cache as $bid => $badword) { if(!$badword['replacement'])
|
{
| {
|
$badword['replacement'] = "*****";
|
$badword['replacement'] = "*****";
|
}
// Take into account the position offset for our last replacement. $index = substr_count($badword['badword'], '*')+2; $badword['badword'] = str_replace('\*', '([a-zA-Z0-9_]{1})', preg_quote($badword['badword'], "#"));
| }
|
|
|
// Ensure we run the replacement enough times but not recursively (i.e. not while(preg_match..)) $count = preg_match_all("#(^|\W)".$badword['badword']."(\W|$)#i", $message, $matches); for($i=0; $i < $count; ++$i)
| if(!$badword['regex'])
|
{
|
{
|
$message = preg_replace("#(^|\W)".$badword['badword']."(\W|$)#i", "\\1".$badword['replacement'].'\\'.$index, $message);
| $badword['badword'] = $this->generate_regex($badword['badword']);
|
}
|
}
|
| $message = preg_replace('#'.$badword['badword'].'#is', $badword['replacement'], $message);
|
} } if(!empty($this->options['strip_tags'])) { $message = strip_tags($message);
|
} } if(!empty($this->options['strip_tags'])) { $message = strip_tags($message);
|
} return $message; }
/**
| } return $message; }
/** * Generates REGEX patterns based on user defined badword string. * * @param string $badword The word defined to replace. * @return string The regex pattern to match the word or null on error. */ function generate_regex($bad_word = "") { if($bad_word == "") { return; }
// Neutralize escape character, regex operators, multiple adjacent wildcards and generate pattern $ptrn = array('/\\\\/', '/([\[\^\$\.\|\?\(\)\{\}]{1})/', '/\*\++/', '/\++\*/', '/\*+/'); $rplc = array('\\\\\\\\','\\\\${1}', '*', '*', '[^\s\n]*'); $bad_word = preg_replace($ptrn, $rplc, $bad_word); // Count + and generate pattern $bad_word = explode('+', $bad_word); $trap = ""; $plus = 0; foreach($bad_word as $bad_piece) { if($bad_piece) { $trap .= $plus ? '[^\s\n]{'.$plus.'}'.$bad_piece : $bad_piece; $plus = 1; } else { $plus++; } } // Handle trailing + if($plus > 1) { $trap .= '[^\s\n]{'.($plus-1).'}'; } return '\b'.$trap.'\b'; }
/**
|
* Resolves nested CDATA tags in the specified message. * * @param string $message The message to be parsed.
| * Resolves nested CDATA tags in the specified message. * * @param string $message The message to be parsed.
|
Zeile 649 | Zeile 797 |
---|
}
/**
|
}
/**
|
* Attempts to move any javascript references in the specified message.
| * Attempts to move any javascript references in the specified message.
|
* * @param string The message to be parsed. * @return string The parsed message.
| * * @param string The message to be parsed. * @return string The parsed message.
|
Zeile 676 | Zeile 824 |
---|
*/ function mycode_handle_size($size, $text) {
|
*/ function mycode_handle_size($size, $text) {
|
$size = (int)$size+10;
| global $templates;
$size = (int)$size;
if($size < 1) { $size = 1; }
|
if($size > 50) { $size = 50;
|
if($size > 50) { $size = 50;
|
}
$text = "<span style=\"font-size: {$size}pt;\">".str_replace("\'", "'", $text)."</span>";
return $text; }
/**
| }
$text = str_replace("\'", "'", $text);
eval("\$mycode_size = \"".$templates->get("mycode_size_int", 1, 0)."\";"); return $mycode_size; }
/**
|
* Handles fontsize. * * @param array $matches Matches.
| * Handles fontsize. * * @param array $matches Matches.
|
Zeile 707 | Zeile 863 |
---|
* @return string The parsed message. */ function mycode_parse_quotes($message, $text_only=false)
|
* @return string The parsed message. */ function mycode_parse_quotes($message, $text_only=false)
|
{ global $lang, $templates, $theme, $mybb;
| { global $lang, $templates, $theme, $mybb;
|
// Assign pattern and replace values. $pattern = "#\[quote\](.*?)\[\/quote\](\r\n?|\n?)#si"; $pattern_callback = "#\[quote=([\"']|"|)(.*?)(?:\\1)(.*?)(?:[\"']|")?\](.*?)\[/quote\](\r\n?|\n?)#si";
if($text_only == false) {
|
// Assign pattern and replace values. $pattern = "#\[quote\](.*?)\[\/quote\](\r\n?|\n?)#si"; $pattern_callback = "#\[quote=([\"']|"|)(.*?)(?:\\1)(.*?)(?:[\"']|")?\](.*?)\[/quote\](\r\n?|\n?)#si";
if($text_only == false) {
|
$replace = "<blockquote><cite>$lang->quote</cite>$1</blockquote>\n";
| $replace = "<blockquote class=\"mycode_quote\"><cite>$lang->quote</cite>$1</blockquote>\n";
|
$replace_callback = array($this, 'mycode_parse_post_quotes_callback1'); } else {
|
$replace_callback = array($this, 'mycode_parse_post_quotes_callback1'); } else {
|
$replace = "\n{$lang->quote}\n--\n$1\n--\n";
| $replace = empty($this->options['signature_parse']) ? "\n{$lang->quote}\n--\n$1\n--\n" : "$1";
|
$replace_callback = array($this, 'mycode_parse_post_quotes_callback2'); }
| $replace_callback = array($this, 'mycode_parse_post_quotes_callback2'); }
|
Zeile 780 | Zeile 936 |
---|
$delete_quote = true;
preg_match("#pid=(?:"|\"|')?([0-9]+)[\"']?(?:"|\"|')?#i", $username, $match);
|
$delete_quote = true;
preg_match("#pid=(?:"|\"|')?([0-9]+)[\"']?(?:"|\"|')?#i", $username, $match);
|
if((int)$match[1]) {
| if(isset($match[1]) && (int)$match[1]) {
|
$pid = (int)$match[1]; $url = $mybb->settings['bburl']."/".get_post_link($pid)."#pid$pid"; if(defined("IN_ARCHIVE"))
| $pid = (int)$match[1]; $url = $mybb->settings['bburl']."/".get_post_link($pid)."#pid$pid"; if(defined("IN_ARCHIVE"))
|
Zeile 789 | Zeile 945 |
---|
$linkback = " <a href=\"{$url}\">[ -> ]</a>"; } else
|
$linkback = " <a href=\"{$url}\">[ -> ]</a>"; } else
|
{
| {
|
eval("\$linkback = \" ".$templates->get("postbit_gotopost", 1, 0)."\";"); }
| eval("\$linkback = \" ".$templates->get("postbit_gotopost", 1, 0)."\";"); }
|
Zeile 799 | Zeile 955 |
---|
unset($match); preg_match("#dateline=(?:"|\"|')?([0-9]+)(?:"|\"|')?#i", $username, $match);
|
unset($match); preg_match("#dateline=(?:"|\"|')?([0-9]+)(?:"|\"|')?#i", $username, $match);
|
if((int)$match[1])
| if(isset($match[1]) && (int)$match[1])
|
{ if($match[1] < TIME_NOW) {
|
{ if($match[1] < TIME_NOW) {
|
$postdate = my_date('relative', (int)$match[1]);
| if($text_only) { $postdate = my_date('normal', (int)$match[1]); } else { $postdate = my_date('relative', (int)$match[1]); }
|
$date = " ({$postdate})"; } $username = preg_replace("#(?:"|\"|')? dateline=(?:"|\"|')?[0-9]+(?:"|\"|')?#i", '', $username);
| $date = " ({$postdate})"; } $username = preg_replace("#(?:"|\"|')? dateline=(?:"|\"|')?[0-9]+(?:"|\"|')?#i", '', $username);
|
Zeile 812 | Zeile 975 |
---|
if($delete_quote) {
|
if($delete_quote) {
|
$username = my_substr($username, 0, my_strlen($username)-1);
| $username = my_substr($username, 0, my_strlen($username)-1, true);
|
}
|
}
|
|
|
if(!empty($this->options['allow_html'])) { $username = htmlspecialchars_uni($username);
| if(!empty($this->options['allow_html'])) { $username = htmlspecialchars_uni($username);
|
Zeile 832 | Zeile 995 |
---|
$span = "<span>{$date}</span>"; }
|
$span = "<span>{$date}</span>"; }
|
return "<blockquote><cite>{$span}{$username} {$lang->wrote}{$linkback}</cite>{$message}</blockquote>\n";
| eval("\$mycode_quote = \"".$templates->get("mycode_quote_post", 1, 0)."\";"); return $mycode_quote;
|
} }
| } }
|
Zeile 854 | Zeile 1018 |
---|
* @return string The parsed message. */ function mycode_parse_post_quotes_callback2($matches)
|
* @return string The parsed message. */ function mycode_parse_post_quotes_callback2($matches)
|
{
| {
|
return $this->mycode_parse_post_quotes($matches[4],$matches[2].$matches[3], true); }
| return $this->mycode_parse_post_quotes($matches[4],$matches[2].$matches[3], true); }
|
Zeile 867 | Zeile 1031 |
---|
*/ function mycode_parse_code($code, $text_only=false) {
|
*/ function mycode_parse_code($code, $text_only=false) {
|
global $lang;
| global $lang, $templates;
|
if($text_only == true) {
|
if($text_only == true) {
|
return "\n{$lang->code}\n--\n{$code}\n--\n";
| return empty($this->options['signature_parse']) ? "\n{$lang->code}\n--\n{$code}\n--\n" : $code;
|
}
// Clean the string before parsing. $code = preg_replace('#^(\t*)(\n|\r|\0|\x0B| )*#', '\\1', $code); $code = rtrim($code);
|
}
// Clean the string before parsing. $code = preg_replace('#^(\t*)(\n|\r|\0|\x0B| )*#', '\\1', $code); $code = rtrim($code);
|
$original = preg_replace('#^\t*#', '', $code);
| $original = preg_replace('#^\t*#', '', $code);
|
if(empty($original)) { return;
| if(empty($original)) { return;
|
Zeile 890 | Zeile 1054 |
---|
$code = str_replace("\t", ' ', $code); $code = str_replace(" ", ' ', $code);
|
$code = str_replace("\t", ' ', $code); $code = str_replace(" ", ' ', $code);
|
return "<div class=\"codeblock\">\n<div class=\"title\">".$lang->code."\n</div><div class=\"body\" dir=\"ltr\"><code>".$code."</code></div></div>\n";
| eval("\$mycode_code = \"".$templates->get("mycode_code", 1, 0)."\";"); return $mycode_code;
|
}
/**
| }
/**
|
Zeile 902 | Zeile 1067 |
---|
function mycode_parse_code_callback($matches) { return $this->mycode_parse_code($matches[1], true);
|
function mycode_parse_code_callback($matches) { return $this->mycode_parse_code($matches[1], true);
|
}
| }
|
/** * Parses PHP code MyCode. *
| /** * Parses PHP code MyCode. *
|
Zeile 914 | Zeile 1079 |
---|
*/ function mycode_parse_php($str, $bare_return = false, $text_only = false) {
|
*/ function mycode_parse_php($str, $bare_return = false, $text_only = false) {
|
global $lang;
| global $lang, $templates;
|
if($text_only == true) {
|
if($text_only == true) {
|
return "\n{$lang->php_code}\n--\n$str\n--\n";
| return empty($this->options['signature_parse']) ? "\n{$lang->php_code}\n--\n{$str}\n--\n" : $str;
|
}
// Clean the string before parsing except tab spaces.
| }
// Clean the string before parsing except tab spaces.
|
Zeile 950 | Zeile 1115 |
---|
$code = @highlight_string($str, true);
// Do the actual replacing.
|
$code = @highlight_string($str, true);
// Do the actual replacing.
|
| $code = preg_replace('#<pre><code style="color: \#000000">#i', "<code>", $code);
|
$code = preg_replace('#<code>\s*<span style="color: \#000000">\s*#i', "<code>", $code); $code = preg_replace("#</span>\s*</code>#", "</code>", $code);
|
$code = preg_replace('#<code>\s*<span style="color: \#000000">\s*#i', "<code>", $code); $code = preg_replace("#</span>\s*</code>#", "</code>", $code);
|
| $code = preg_replace("#</code>\s*</pre>#", "</code>", $code);
|
$code = preg_replace("#</span>(\r\n?|\n?)</code>#", "</span></code>", $code); $code = str_replace("\\", '\', $code); $code = str_replace('$', '$', $code);
| $code = preg_replace("#</span>(\r\n?|\n?)</code>#", "</span></code>", $code); $code = str_replace("\\", '\', $code); $code = str_replace('$', '$', $code);
|
Zeile 959 | Zeile 1126 |
---|
if($added_open_tag) {
|
if($added_open_tag) {
|
$code = preg_replace("#<code><span style=\"color: \#([A-Z0-9]{6})\"><\?php( | )(<br />?)#", "<code><span style=\"color: #$1\">", $code);
| $code = preg_replace("#<code><span style=\"color: \#([A-Z0-9]{6})\"><\?php( | )(<br />|\n)#", "<code><span style=\"color: #$1\">", $code);
|
}
if($added_end_tag)
| }
if($added_end_tag)
|
Zeile 980 | Zeile 1147 |
---|
}
// Send back the code all nice and pretty
|
}
// Send back the code all nice and pretty
|
return "<div class=\"codeblock phpcodeblock\"><div class=\"title\">$lang->php_code\n</div><div class=\"body\">".$code."</div></div>\n";
| eval("\$mycode_php = \"".$templates->get("mycode_php", 1, 0)."\";"); return $mycode_php;
|
}
/**
| }
/**
|
Zeile 1003 | Zeile 1171 |
---|
*/ function mycode_parse_url($url, $name="") {
|
*/ function mycode_parse_url($url, $name="") {
|
| global $templates;
|
if(!preg_match("#^[a-z0-9]+://#i", $url)) { $url = "http://".$url;
| if(!preg_match("#^[a-z0-9]+://#i", $url)) { $url = "http://".$url;
|
Zeile 1028 | Zeile 1197 |
---|
$name = htmlspecialchars_uni($name); }
|
$name = htmlspecialchars_uni($name); }
|
$nofollow = '';
| |
if(!empty($this->options['nofollow_on'])) {
|
if(!empty($this->options['nofollow_on'])) {
|
$nofollow = " rel=\"nofollow\"";
| $rel = " rel=\"noopener nofollow\"";
|
}
|
}
|
| else { $rel = " rel=\"noopener\""; }
|
// Fix some entities in URLs
|
// Fix some entities in URLs
|
$entities = array('$' => '%24', '$' => '%24', '^' => '%5E', '`' => '%60', '[' => '%5B', ']' => '%5D', '{' => '%7B', '}' => '%7D', '"' => '%22', '<' => '%3C', '>' => '%3E', ' ' => '%20'); $url = str_replace(array_keys($entities), array_values($entities), $url);
| $url = $this->encode_url($url); $name = $this->parse_badwords(preg_replace("#&\#([0-9]+);#si", "&#$1;", $name)); // Fix & but allow unicode, filter bad words
eval("\$mycode_url = \"".$templates->get("mycode_url", 1, 0)."\";"); return $mycode_url; }
/** * Parses font MyCode. * * @param array $matches Matches. * @return string The HTML <span> tag with styled font. */ function mycode_parse_font_callback($matches) { // Replace any occurrence(s) of double quotes in fonts with single quotes. // A back-fix for double-quote-containing MyBB font tags in existing // posts prior to the client-side aspect of this fix for the // browser-independent SCEditor bug of issue #4182. $fonts = str_replace('"', "'", $matches[2]);
|
|
|
$name = preg_replace("#&\#([0-9]+);#si", "&#$1;", $name); // Fix & but allow unicode $link = "<a href=\"$url\" target=\"_blank\"{$nofollow}>$name</a>"; return $link;
| return "<span style=\"font-family: {$fonts};\" class=\"mycode_font\">{$matches[3]}</span>";
|
}
/**
| }
/**
|
Zeile 1071 | Zeile 1259 |
---|
$matches[2] = ''; } return $this->mycode_parse_url($matches[1], $matches[2]);
|
$matches[2] = ''; } return $this->mycode_parse_url($matches[1], $matches[2]);
|
}
| }
|
/** * Parses IMG MyCode. *
| /** * Parses IMG MyCode. *
|
Zeile 1083 | Zeile 1271 |
---|
*/ function mycode_parse_img($url, $dimensions=array(), $align='') {
|
*/ function mycode_parse_img($url, $dimensions=array(), $align='') {
|
global $lang;
| global $lang, $templates;
|
$url = trim($url); $url = str_replace("\n", "", $url); $url = str_replace("\r", "", $url);
| $url = trim($url); $url = str_replace("\n", "", $url); $url = str_replace("\r", "", $url);
|
Zeile 1094 | Zeile 1282 |
---|
}
$css_align = '';
|
}
$css_align = '';
|
if($align == "right")
| if($align == "right")
|
{
|
{
|
$css_align = " style=\"float: right;\"";
| $css_align = ' style="float: right;"';
|
} else if($align == "left") {
|
} else if($align == "left") {
|
$css_align = " style=\"float: left;\"";
| $css_align = ' style="float: left;"';
|
}
|
}
|
| if($align) { $this->clear_needed = true; }
|
$alt = basename($url);
|
$alt = basename($url);
|
| |
$alt = htmlspecialchars_decode($alt); if(my_strlen($alt) > 55) { $alt = my_substr($alt, 0, 40).'...'.my_substr($alt, -10); }
|
$alt = htmlspecialchars_decode($alt); if(my_strlen($alt) > 55) { $alt = my_substr($alt, 0, 40).'...'.my_substr($alt, -10); }
|
$alt = htmlspecialchars_uni($alt);
| $alt = $this->encode_url($alt); $alt = preg_replace("#&(?!\#[0-9]+;)#si", "&", $alt); // fix & but allow unicode
|
$alt = $lang->sprintf($lang->posted_image, $alt);
|
$alt = $lang->sprintf($lang->posted_image, $alt);
|
| $width = $height = '';
|
if(isset($dimensions[0]) && $dimensions[0] > 0 && isset($dimensions[1]) && $dimensions[1] > 0) {
|
if(isset($dimensions[0]) && $dimensions[0] > 0 && isset($dimensions[1]) && $dimensions[1] > 0) {
|
return "<img src=\"{$url}\" width=\"{$dimensions[0]}\" height=\"{$dimensions[1]}\" border=\"0\" alt=\"{$alt}\"{$css_align} />";
| $width = " width=\"{$dimensions[0]}\""; $height = " height=\"{$dimensions[1]}\"";
|
}
|
}
|
else { return "<img src=\"{$url}\" border=\"0\" alt=\"{$alt}\"{$css_align} />"; } }
| $url = $this->encode_url($url);
eval("\$mycode_img = \"".$templates->get("mycode_img", 1, 0)."\";"); return $mycode_img; }
|
/** * Parses IMG MyCode.
| /** * Parses IMG MyCode.
|
Zeile 1162 | Zeile 1359 |
---|
* @return string Image code. */ function mycode_parse_img_callback4($matches)
|
* @return string Image code. */ function mycode_parse_img_callback4($matches)
|
{
| {
|
return $this->mycode_parse_img($matches[5], array($matches[1], $matches[2]), $matches[3]);
|
return $this->mycode_parse_img($matches[5], array($matches[1], $matches[2]), $matches[3]);
|
}
/**
| }
/**
|
* Parses IMG MyCode disabled. * * @param string $url The URL to the image
| * Parses IMG MyCode disabled. * * @param string $url The URL to the image
|
Zeile 1179 | Zeile 1376 |
---|
$url = str_replace("\n", "", $url); $url = str_replace("\r", "", $url); $url = str_replace("\'", "'", $url);
|
$url = str_replace("\n", "", $url); $url = str_replace("\r", "", $url); $url = str_replace("\'", "'", $url);
|
|
|
$image = $lang->sprintf($lang->posted_image, $this->mycode_parse_url($url)); return $image;
|
$image = $lang->sprintf($lang->posted_image, $this->mycode_parse_url($url)); return $image;
|
}
/** * Parses IMG MyCode disabled. * * @param array $matches Matches.
| }
/** * Parses IMG MyCode disabled. * * @param array $matches Matches.
|
* @return string Image code. */ function mycode_parse_img_disabled_callback1($matches)
| * @return string Image code. */ function mycode_parse_img_disabled_callback1($matches)
|
Zeile 1204 | Zeile 1401 |
---|
function mycode_parse_img_disabled_callback2($matches) { return $this->mycode_parse_img_disabled($matches[4]);
|
function mycode_parse_img_disabled_callback2($matches) { return $this->mycode_parse_img_disabled($matches[4]);
|
}
| }
|
/** * Parses IMG MyCode disabled. *
| /** * Parses IMG MyCode disabled. *
|
Zeile 1237 | Zeile 1434 |
---|
*/ function mycode_parse_email($email, $name="") {
|
*/ function mycode_parse_email($email, $name="") {
|
| global $templates;
|
if(!$name)
|
if(!$name)
|
{
| {
|
$name = $email; }
|
$name = $email; }
|
if(preg_match("/^([a-zA-Z0-9-_\+\.]+?)@[a-zA-Z0-9-]+\.[a-zA-Z0-9\.-]+$/si", $email)) { return "<a href=\"mailto:$email\">".$name."</a>"; } elseif(preg_match("/^([a-zA-Z0-9-_\+\.]+?)@[a-zA-Z0-9-]+\.[a-zA-Z0-9\.-]+\?(.*?)$/si", $email)) { return "<a href=\"mailto:".htmlspecialchars_uni($email)."\">".$name."</a>"; } else { return $email; }
| $email = $this->encode_url($email);
eval("\$mycode_email = \"".$templates->get("mycode_email", 1, 0)."\";"); return $mycode_email;
|
}
/**
| }
/**
|
Zeile 1279 | Zeile 1471 |
---|
*/ function mycode_parse_video($video, $url) {
|
*/ function mycode_parse_video($video, $url) {
|
global $templates;
| global $mybb, $templates;
|
if(empty($video) || empty($url))
|
if(empty($video) || empty($url))
|
{ return "[video={$video}]{$url}[/video]"; }
| { return "[video={$video}]{$url}[/video]"; }
// Check URL is a valid URL first, as `parse_url` doesn't check validity. if(false === filter_var($url, FILTER_VALIDATE_URL)) { return "[video={$video}]{$url}[/video]"; }
|
$parsed_url = @parse_url(urldecode($url));
|
$parsed_url = @parse_url(urldecode($url));
|
if($parsed_url == false) {
| if($parsed_url === false) {
|
return "[video={$video}]{$url}[/video]";
|
return "[video={$video}]{$url}[/video]";
|
}
| }
$bbdomain = parse_url($mybb->settings['bburl'], PHP_URL_HOST);
$fragments = empty($parsed_url['fragment']) ? array() : explode("&", $parsed_url['fragment']);
|
|
|
$fragments = array(); if($parsed_url['fragment'])
| if($video == "liveleak" && !empty($parsed_url['query']))
|
{
|
{
|
$fragments = explode("&", $parsed_url['fragment']);
| // The query part can start with any alphabet, but set only 'i' to catch in index key later $parsed_url['query'] = "i".substr($parsed_url['query'], 1);
|
}
|
}
|
$queries = explode("&", $parsed_url['query']);
| $queries = empty($parsed_url['query']) ? array() : explode("&", $parsed_url['query']);
|
$input = array(); foreach($queries as $query)
|
$input = array(); foreach($queries as $query)
|
{ list($key, $value) = explode("=", $query); $key = str_replace("amp;", "", $key); $input[$key] = $value; }
$path = explode('/', $parsed_url['path']);
| { $query_array = explode("=", $query); if(count($query_array) == 2) { list($key, $value) = $query_array; $key = str_replace("amp;", "", $key); $input[$key] = $value; } }
$path = empty($parsed_url['path']) ? array() : explode('/', $parsed_url['path']);
|
switch($video) { case "dailymotion":
|
switch($video) { case "dailymotion":
|
list($id) = explode('_', $path[2], 2); // http://www.dailymotion.com/video/fds123_title-goes-here
| if(!empty($path[2])) { list($id) = explode('_', $path[2], 2); // http://www.dailymotion.com/video/fds123_title-goes-here } elseif(!empty($path[1])) { $id = $path[1]; // http://dai.ly/fds123 }
|
break; case "metacafe":
|
break; case "metacafe":
|
$id = $path[2]; // http://www.metacafe.com/watch/fds123/title_goes_here/ $title = htmlspecialchars_uni($path[3]);
| if(!empty($path[2])) { $id = $path[2]; // http://www.metacafe.com/watch/fds123/title_goes_here/ }
|
break; case "myspacetv":
|
break; case "myspacetv":
|
$id = $path[4]; // http://www.myspace.com/video/fds/fds/123 break; case "facebook": if(isset($input['v']))
| if(!empty($path[4])) { $id = $path[4]; // http://www.myspace.com/video/fds/fds/123 } break; case "facebook": if(!empty($input['v']))
|
{ $id = $input['v']; // http://www.facebook.com/video/video.php?v=123 }
|
{ $id = $input['v']; // http://www.facebook.com/video/video.php?v=123 }
|
elseif(substr($path[3], 0, 3) == 'vb.') { $id = $path[4]; // https://www.facebook.com/fds/videos/vb.123/123/ } else
| elseif(!empty($path[3]) && substr($path[3], 0, 3) == 'vb.' && !empty($path[4])) { $id = $path[4]; // https://www.facebook.com/fds/videos/vb.123/123/ } elseif(!empty($path[3]))
|
{ $id = $path[3]; // https://www.facebook.com/fds/videos/123/ } break;
|
{ $id = $path[3]; // https://www.facebook.com/fds/videos/123/ } break;
|
case "veoh": $id = $path[2]; // http://www.veoh.com/watch/123
| case "mixer": if(!empty($path[1])) { $id = $path[1]; // https://mixer.com/streamer }
|
break; case "liveleak":
|
break; case "liveleak":
|
$id = $input['i']; // http://www.liveleak.com/view?i=123 break;
| if(!empty($input['i'])) { $id = $input['i']; // http://www.liveleak.com/view?i=123 } break;
|
case "yahoo":
|
case "yahoo":
|
if(isset($path[2]))
| if(!empty($path[2]))
|
{ $id = $path[2]; // http://xy.screen.yahoo.com/fds/fds-123.html
|
{ $id = $path[2]; // http://xy.screen.yahoo.com/fds/fds-123.html
|
} else {
| } elseif(!empty($path[1])) {
|
$id = $path[1]; // http://xy.screen.yahoo.com/fds-123.html } // Support for localized portals
|
$id = $path[1]; // http://xy.screen.yahoo.com/fds-123.html } // Support for localized portals
|
$domain = explode('.', $parsed_url['host']); if($domain[0] != 'screen' && preg_match('#^([a-z-]+)$#', $domain[0])) { $local = "{$domain[0]}."; } else { $local = '';
| if(!empty($parsed_url['host'])) { $domain = explode('.', $parsed_url['host']); if($domain[0] != 'screen' && preg_match('#^([a-z-]+)$#', $domain[0])) { $local = "{$domain[0]}."; } else { $local = ''; }
|
} break; case "vimeo":
|
} break; case "vimeo":
|
if(isset($path[3]))
| if(!empty($path[3]))
|
{ $id = $path[3]; // http://vimeo.com/fds/fds/fds123 }
|
{ $id = $path[3]; // http://vimeo.com/fds/fds/fds123 }
|
else { $id = $path[1]; // http://vimeo.com/fds123 } break;
| elseif(!empty($path[1])) { $id = $path[1]; // http://vimeo.com/fds123 } break;
|
case "youtube":
|
case "youtube":
|
if($fragments[0])
| if(!empty($fragments[0]))
|
{ $id = str_replace('!v=', '', $fragments[0]); // http://www.youtube.com/watch#!v=fds123 }
|
{ $id = str_replace('!v=', '', $fragments[0]); // http://www.youtube.com/watch#!v=fds123 }
|
elseif($input['v']) { $id = $input['v']; // http://www.youtube.com/watch?v=fds123 } else {
| elseif(!empty($input['v'])) { $id = $input['v']; // http://www.youtube.com/watch?v=fds123 } elseif(!empty($path[1])) {
|
$id = $path[1]; // http://www.youtu.be/fds123
|
$id = $path[1]; // http://www.youtu.be/fds123
|
| } break; case "twitch": if(count($path) >= 3 && $path[1] == 'videos') { // Direct video embed with URL like: https://www.twitch.tv/videos/179723472 $id = 'video=v'.$path[2]; } elseif(count($path) >= 4 && $path[2] == 'v') { // Direct video embed with URL like: https://www.twitch.tv/waypoint/v/179723472 $id = 'video=v'.$path[3]; } elseif(count($path) >= 2) { // Channel (livestream) embed with URL like: https://twitch.tv/waypoint $id = 'channel='.$path[1];
|
} break; default:
| } break; default:
|
Zeile 1391 | Zeile 1635 |
---|
}
if(empty($id))
|
}
if(empty($id))
|
{
| {
|
return "[video={$video}]{$url}[/video]"; }
|
return "[video={$video}]{$url}[/video]"; }
|
$id = htmlspecialchars_uni($id);
eval("\$video_code = \"".$templates->get("video_{$video}_embed")."\";");
| $id = $this->encode_url($id);
|
|
|
| eval("\$video_code = \"".$templates->get("video_{$video}_embed", 1, 0)."\";");
|
return $video_code; }
| return $video_code; }
|
Zeile 1450 | Zeile 1693 |
---|
*/ function mycode_auto_url($message) {
|
*/ function mycode_auto_url($message) {
|
$message = " ".$message; // Links should end with slashes, numbers, characters and braces but not with dots, commas or question marks $message = preg_replace_callback("#([\>\s\(\)])(http|https|ftp|news|irc|ircs|irc6){1}://([^\/\"\s\<\[\.]+\.([^\/\"\s\<\[\.]+\.)*[\w]+(:[0-9]+)?(/([^\"\s<\[]|\[\])*)?([\w\/\)]))#iu", array($this, 'mycode_auto_url_callback'), $message); $message = preg_replace_callback("#([\>\s\(\)])(www|ftp)\.(([^\/\"\s\<\[\.]+\.)*[\w]+(:[0-9]+)?(/([^\"\s<\[]|\[\])*)?([\w\/\)]))#iu", array($this, 'mycode_auto_url_callback'), $message); $message = my_substr($message, 1);
| /* * Don't create links: * - within existing links (any <a> HTML tag must be returned as-is) * - within HTML tags (must not be followed by a > character without a matching < after the link) * * Don't include: * - common punctuation characters around the link * - braces that likely constitute punctuation around the particular link (handled in the callback function) * - partial HTML entities (https://github.com/mybb/mybb/issues/4303) */ $message = preg_replace_callback( "~ <a\\s[^>]*>.*?</a>| # match and return existing links (?<=^|[\s\(\)\[\>]) # character preceding the link (?P<prefix> (?:http|https|ftp|news|irc|ircs|irc6)://| # scheme, or (?:www|ftp)\. # common subdomain ) (?P<link> (?: \[[0-9a-fA-F:]+(?:%[0-9a-zA-Z._-]+)?\]| # IPv6 address with optional zone (?:\d{1,3}\.){3}\d{1,3}| # IPv4 address (?:[^\"\s<>\[\]:/?&#.]+\.)*[\w-]+ # domain name ) (?::[0-9]+)? # optional port number (?:/[^\"\s<>\[\]?&#]*)? # optional path (?:\?(?:[^\"\s<>\[\]?#]|\[\])*)? # optional query (?:\#[^\"\s<>\[\]]*)? # optional fragment ) (?: (?<=&)|(?<=<)|(?<=>)| # allow trailing entities (?<![.,:`'\"?!])(?<!&) # exclude other trailing punctuation ) (?![^<>]*?>) # not followed by unopened > (within HTML tags) ~iusx", array($this, 'mycode_auto_url_callback'), $message );
|
return $message; }
| return $message; }
|
Zeile 1465 | Zeile 1741 |
---|
* @param array $matches Matches * @return string The parsed message. */
|
* @param array $matches Matches * @return string The parsed message. */
|
function mycode_auto_url_callback($matches)
| function mycode_auto_url_callback($matches=array())
|
{
|
{
|
| // If we matched a preexisting link (the part of the regexes in mycode_auto_url() before the pipe symbol), // then simply return it - we don't create links within existing links. if(count($matches) == 1) { return $matches[0]; }
|
$external = ''; // Allow links like http://en.wikipedia.org/wiki/PHP_(disambiguation) but detect mismatching braces
|
$external = ''; // Allow links like http://en.wikipedia.org/wiki/PHP_(disambiguation) but detect mismatching braces
|
while(my_substr($matches[3], -1) == ')') { if(substr_count($matches[3], ')') > substr_count($matches[3], '(')) { $matches[3] = my_substr($matches[3], 0, -1);
| while(my_substr($matches['link'], -1) == ')') { if(substr_count($matches['link'], ')') > substr_count($matches['link'], '(')) { $matches['link'] = my_substr($matches['link'], 0, -1);
|
$external = ')'.$external;
|
$external = ')'.$external;
|
}
| }
|
else { break; }
// Example: ([...] http://en.wikipedia.org/Example_(disambiguation).)
|
else { break; }
// Example: ([...] http://en.wikipedia.org/Example_(disambiguation).)
|
$last_char = my_substr($matches[3], -1);
| $last_char = my_substr($matches['link'], -1);
|
while($last_char == '.' || $last_char == ',' || $last_char == '?' || $last_char == '!') {
|
while($last_char == '.' || $last_char == ',' || $last_char == '?' || $last_char == '!') {
|
$matches[3] = my_substr($matches[3], 0, -1);
| $matches['link'] = my_substr($matches['link'], 0, -1);
|
$external = $last_char.$external;
|
$external = $last_char.$external;
|
$last_char = my_substr($matches[3], -1); } } if($matches[2] == 'www' || $matches[2] == 'ftp') { return "{$matches[1]}[url]{$matches[2]}.{$matches[3]}[/url]{$external}"; } else { return "{$matches[1]}[url]{$matches[2]}://{$matches[3]}[/url]{$external}";
| $last_char = my_substr($matches['link'], -1); }
|
}
|
}
|
| $url = $matches['prefix'].$matches['link'];
return $this->mycode_parse_url($url, $url).$external;
|
}
/**
| }
/**
|
Zeile 1513 | Zeile 1791 |
---|
if(strpos($message, '[*]') === false) { $message = "[*]{$message}";
|
if(strpos($message, '[*]') === false) { $message = "[*]{$message}";
|
}
| }
|
|
|
$message = preg_replace("#[^\S\n\r]*\[\*\]\s*#", "</li>\n<li>", $message); $message .= "</li>";
if($type)
| $message = preg_split("#[^\S\n\r]*\[\*\]\s*#", $message); if(isset($message[0]) && trim($message[0]) == '')
|
{
|
{
|
$list = "\n<ol type=\"$type\">$message</ol>\n";
| array_shift($message);
|
}
|
}
|
else
| $message = '<li>'.implode("</li>\n<li>", $message)."</li>\n";
if($type)
|
{
|
{
|
$list = "<ul>$message</ul>\n";
| $list = "\n<ol type=\"$type\" class=\"mycode_list\">$message</ol>\n"; } else { $list = "<ul class=\"mycode_list\">$message</ul>\n";
|
} $list = preg_replace("#<(ol type=\"$type\"|ul)>\s*</li>#", "<$1>", $list); return $list;
| } $list = preg_replace("#<(ol type=\"$type\"|ul)>\s*</li>#", "<$1>", $list); return $list;
|
Zeile 1590 | Zeile 1872 |
---|
{ $this->cache_smilies(); }
|
{ $this->cache_smilies(); }
|
if(is_array($this->smilies_cache)) { $message = str_replace($this->smilies_cache, array_keys($this->smilies_cache), $message); }
| if(is_array($this->smilies_cache)) { $message = str_replace($this->smilies_cache, array_keys($this->smilies_cache), $message); }
|
return $message; }
|
return $message; }
|
|
|
/** * Highlights a string *
| /** * Highlights a string *
|
Zeile 1607 | Zeile 1889 |
---|
function highlight_message($message, $highlight) { if(empty($this->highlight_cache))
|
function highlight_message($message, $highlight) { if(empty($this->highlight_cache))
|
{
| {
|
$this->highlight_cache = build_highlight_array($highlight); }
if(is_array($this->highlight_cache) && !empty($this->highlight_cache)) { $message = preg_replace(array_keys($this->highlight_cache), $this->highlight_cache, $message);
|
$this->highlight_cache = build_highlight_array($highlight); }
if(is_array($this->highlight_cache) && !empty($this->highlight_cache)) { $message = preg_replace(array_keys($this->highlight_cache), $this->highlight_cache, $message);
|
}
| }
|
return $message; }
|
return $message; }
|
|
|
/** * Parses message to plain text equivalents of MyCode. *
| /** * Parses message to plain text equivalents of MyCode. *
|
Zeile 1633 | Zeile 1915 |
---|
if(empty($this->options)) { $this->options = $options;
|
if(empty($this->options)) { $this->options = $options;
|
| } else { foreach($options as $option_name => $option_value) { $this->options[$option_name] = $option_value; }
|
}
// Filter bad words if requested.
| }
// Filter bad words if requested.
|
Zeile 1649 | Zeile 1938 |
---|
$find = array( "#\[(b|u|i|s|url|email|color|img)\](.*?)\[/\\1\]#is",
|
$find = array( "#\[(b|u|i|s|url|email|color|img)\](.*?)\[/\\1\]#is",
|
"#\[img=([0-9]{1,3})x([0-9]{1,3})\](\r\n?|\n?)(https?://([^<>\"']+?))\[/img\]#is", "#\[url=([a-z]+?://)([^\r\n\"<]+?)\](.+?)\[/url\]#si", "#\[url=([^\r\n\"<&\(\)]+?)\](.+?)\[/url\]#si",
| "#\[(email|color|size|font|align|video)=[^]]*\](.*?)\[/\\1\]#is", "#\[img=([1-9][0-9]*)x([1-9][0-9]*)\](\r\n?|\n?)(https?://([^<>\"']+?))\[/img\]#is", "#\[url=((?!javascript)[a-z]+?://)([^\r\n\"<]+?)\](.+?)\[/url\]#si", "#\[url=((?!javascript:)[^\r\n\"<&\(\)]+?)\](.+?)\[/url\]#si", "#\[attachment=([0-9]+?)\]#i",
|
);
$replace = array(
|
);
$replace = array(
|
| "$2",
|
"$2", "$4", "$3 ($1$2)", "$2 ($1)",
|
"$2", "$4", "$3 ($1$2)", "$2 ($1)",
|
| "",
|
);
|
);
|
$message = preg_replace($find, $replace, $message);
| $messageBefore = ""; // The counter limit for this "for" loop is for defensive programming purpose only. It protects against infinite repetition. for($cnt = 1; $cnt < 20 && $message != $messageBefore; $cnt++) { $messageBefore = $message; $message = preg_replace($find, $replace, $messageBefore); }
|
// Replace "me" code and slaps if we have a username if(!empty($this->options['me_username']))
| // Replace "me" code and slaps if we have a username if(!empty($this->options['me_username']))
|
Zeile 1689 | Zeile 1989 |
---|
$message = $plugins->run_hooks("text_parse_message", $message);
return $message;
|
$message = $plugins->run_hooks("text_parse_message", $message);
return $message;
|
| }
/** * Replaces certain characters with their entities in a URL. * * @param string $url The URL to be escaped. * @return string The escaped URL. */ function encode_url($url) { $entities = array('$' => '%24', '$' => '%24', '^' => '%5E', '`' => '%60', '[' => '%5B', ']' => '%5D', '{' => '%7B', '}' => '%7D', '"' => '%22', '<' => '%3C', '>' => '%3E', ' ' => '%20');
$url = str_replace(array_keys($entities), array_values($entities), $url);
return $url; }
/** * Determines whether the resulting HTML syntax is acceptable for output, * according to the parser's validation policy and HTML support. * * @param string $source The original MyCode. * @param string $output The output HTML code. * @return bool */ function output_allowed($source, $output) { if($this->output_validation_policy === self::VALIDATION_DISABLE || !empty($this->options['allow_html'])) { return true; } else { $output_valid = $this->validate_output($source, $output);
if($this->output_validation_policy === self::VALIDATION_REPORT_ONLY) { return true; } else { return $output_valid === true; } } }
/** * Validate HTML syntax and pass errors to the error handler. * * @param string $source The original MyCode. * @param string $output The output HTML code. * @return bool */ function validate_output($source, $output) { global $error_handler;
$ignored_error_codes = array( // entities may be broken through smilie parsing; cache_smilies() method workaround doesn't cover all entities 'XML_ERR_INVALID_DEC_CHARREF' => 7, 'XML_ERR_INVALID_CHAR' => 9,
'XML_ERR_UNDECLARED_ENTITY' => 26, // unrecognized HTML entities 'XML_ERR_ATTRIBUTE_WITHOUT_VALUE' => 41, 'XML_ERR_TAG_NAME_MISMATCH' => 76, // the parser may output tags closed in different levels and siblings );
libxml_use_internal_errors(true); @libxml_disable_entity_loader(true);
simplexml_load_string('<root>'.$output.'</root>', 'SimpleXMLElement', 524288 /* LIBXML_PARSEHUGE */);
$errors = libxml_get_errors();
libxml_use_internal_errors(false);
if( $errors && array_diff( array_column($errors, 'code'), $ignored_error_codes ) ) { $data = array( 'sourceHtmlEntities' => htmlspecialchars_uni($source), 'outputHtmlEntities' => htmlspecialchars_uni($output), 'errors' => $errors, ); $error_message = "Parser output validation failed.\n"; $error_message .= var_export($data, true);
$error_handler->error(E_USER_WARNING, $error_message, __FILE__, __LINE__, false);
return false; } else { return true; }
|
} }
| } }
|