Completed
Push — master ( 80080e...2132d0 )
by mains
02:40
created

index.php (1 issue)

Upgrade to new PHP Analysis Engine

These results are based on our legacy PHP analysis, consider migrating to our new PHP analysis engine instead. Learn more

1
<?php
2
error_reporting(-1);
3
include 'php/jodel-web.php';
4
5
	$location = new Location();
6
	$location->setLat('52.5134288');
7
	$location->setLng('13.2746394');
8
	$location->setCityName('Berlin');
9
10
	$accessToken;
11
	$accessToken_forId1;
12
	$deviceUid;
13
14
	setcookie("JodelId", "", time()-3600);
15
16 View Code Duplication
	if(!isset($_COOKIE["JodelDeviceId"]))
17
	{
18
		$deviceUid = createAccount();
19
		setcookie("JodelDeviceId", $deviceUid, time()+60*60*24*365*10);
20
		
21
	}
22
	else
23
	{
24
		$deviceUid = $db->real_escape_string($_COOKIE["JodelDeviceId"]);
25
	}
26
27
	$location = getLocationByDeviceUid($deviceUid);
28
	$newPositionStatus = $location->getCityName();
29
	$accessToken = isTokenFreshByDeviceUid($location, $deviceUid);
30
	//Acc is fresh. token and location is set
31
32
	$accessToken_forId1 = isTokenFresh($location);
33
34
35
	//Set View
36 View Code Duplication
	if(isset($_GET['view']))
37
	{
38
		switch ($_GET['view']) {
39
			case 'comment':
40
				$view = 'comment';
41
				break;
42
			
43
			case 'upVote':
44
				$view = 'upVote';
45
				break;
46
47
			default:
48
				$view = 'time';
49
				break;
50
		}
51
	}
52
	else
53
	{
54
		$view = 'time';
55
	}
56
	
57
	//Set Location
58
	if(isset($_GET['city'])) {
59
		$url = 'https://maps.googleapis.com/maps/api/geocode/json?address=' . htmlspecialchars($_GET['city']) . '&key=AIzaSyCwhnja-or07012HqrhPW7prHEDuSvFT4w';
60
		$result = Requests::post($url);
61
		if(json_decode($result->body, true)['status'] == 'ZERO_RESULTS' || json_decode($result->body, true)['status'] == 'INVALID_REQUEST')
62
		{
63
			$newPositionStatus = "0 results";
64
		}
65
		else
66
		{
67
			$name = json_decode($result->body, true)['results']['0']['address_components']['0']['long_name'];
68
			$lat = json_decode($result->body, true)['results']['0']['geometry']['location']['lat'];
69
			$lng = json_decode($result->body, true)['results']['0']['geometry']['location']['lng'];
70
71
			$location = new Location();
72
			$location->setLat($lat);
73
			$location->setLng($lng);
74
			$location->setCityName($name);
75
			$accountCreator = new UpdateLocation();
76
			$accountCreator->setLocation($location);
77
			$accountCreator->setAccessToken($accessToken);
78
			$data = $accountCreator->execute();
79
80
			//safe location to db
81
			if($data == "Success")
82
			{
83
				$result = $db->query("UPDATE accounts 
84
						SET name='" . $name . "',
85
							lat='" . $lat . "',
86
							lng='" . $lng . "'
87
						WHERE access_token='" . $accessToken . "'");
88
89
				if($result === false)
90
				{
91
						echo "Updating location failed: (" . $db->errno . ") " . $db->error;
92
				}
93
				else
94
				{
95
					$newPositionStatus = $name;
96
				}
97
			}
98
		}
99
	}
100
	
101
	//Vote
102
	if(isset($_GET['vote']) && isset($_GET['postID'])) {
103 View Code Duplication
		if($_GET['vote'] == "up") {
104
			$accountCreator = new Upvote();
105
		}
106
		else if($_GET['vote'] == "down") {
107
			$accountCreator = new Downvote();
108
		}
109
		$accountCreator->setAccessToken($accessToken_forId1);
110
		$accountCreator->postId = $_GET['postID'];
111
		$data = $accountCreator->execute();
112
113
		header("Location: index.php#postId-" . htmlspecialchars($_GET['postID']));
114
		die();
115
	}
116
	
117
	
118
	//SendJodel
119
	if(isset($_POST['message'])) {
120
		$accountCreator = new SendJodel();
121
122
		if(isset($_POST['ancestor']))
123
		{
124
			$ancestor = $_POST['ancestor'];
125
			$accountCreator->ancestor = $ancestor;
126
		}
127
		if(isset($_POST['color']))
128
		{
129
			$color = $_POST['color'];
130
			switch ($color) {
131
				case '8ABDB0':
132
					$color = '8ABDB0';
133
					break;
134
				case '9EC41C':
135
					$color = '9EC41C';
136
					break;
137
				case '06A3CB':
138
					$color = '06A3CB';
139
					break;
140
				case 'FFBA00':
141
					$color = 'FFBA00';
142
					break;
143
				case 'DD5F5F':
144
					$color = 'DD5F5F';
145
					break;
146
				case 'FF9908':
147
					$color = 'FF9908';
148
					break;
149
				
150
				default:
151
					$color = '8ABDB0';
152
					break;
153
			}
154
			$accountCreator->color = $color;
155
		}
156
		
157
		//$location = getLocationByAccessToken($accessToken);
0 ignored issues
show
Unused Code Comprehensibility introduced by
56% of this comment could be valid code. Did you maybe forget this after debugging?

Sometimes obsolete code just ends up commented out instead of removed. In this case it is better to remove the code once you have checked you do not need it.

The code might also have been commented out for debugging purposes. In this case it is vital that someone uncomments it again or your project may behave in very unexpected ways in production.

This check looks for comments that seem to be mostly valid code and reports them.

Loading history...
158
		
159
		$accountCreator->location = $location;
160
		
161
		$accountCreator->setAccessToken($accessToken_forId1);
162
		$data = $accountCreator->execute();
163
164
		if(isset($_POST['ancestor']))
165
		{
166
			$actual_link = "http://$_SERVER[HTTP_HOST]$_SERVER[REQUEST_URI]";
167
			header('Location: ' . $actual_link . '#postId-' . htmlspecialchars($data['post_id']));
168
			exit;
169
		}
170
		else
171
		{
172
			header('Location: ./');
173
			exit;
174
		}
175
	}
176
?>
177
<!DOCTYPE html>
178
<html lang="en">
179
	<head>
180
		<title>JodelBlue WebClient</title>
181
		
182
		<meta charset="utf8">
183
		<meta name="viewport" content="width=device-width, initial-scale=1, shrink-to-fit=no">
184
		<meta http-equiv="x-ua-compatible" content="ie=edge">
185
		
186
		<meta name="description" content="JodelBlue is a WebClient for the Jodel App. No registration required! Browse Jodels all over the world. Send your own Jodels or upvote others.">
187
		<meta name="keywords" content="jodelblue, jodel, blue, webclient, web, client">
188
		
189
		<link rel="stylesheet" href="https://maxcdn.bootstrapcdn.com/bootstrap/4.0.0-alpha.5/css/bootstrap.min.css" integrity="sha384-AysaV+vQoT3kOAXZkl02PThvDr8HYKPZhNT5h/CXfBThSRXQ6jW5DO2ekP5ViFdi" crossorigin="anonymous">
190
		<link rel="stylesheet" href="css/font-awesome.min.css">
191
		<link rel="stylesheet" href="style.css" type="text/css">
192
		
193
		<link rel="shortcut icon" type="image/x-icon" href="./img/favicon/favicon.ico">
194
		<link rel="icon" type="image/x-icon" href="./img/favicon/favicon.ico">
195
		<link rel="icon" type="image/gif" href="./img/favicon/favicon.gif">
196
		<link rel="icon" type="image/png" href="./img/favicon/favicon.png">
197
		<link rel="apple-touch-icon" href="./img/favicon/apple-touch-icon.png">
198
		<link rel="apple-touch-icon" href="./img/favicon/apple-touch-icon-57x57.png" sizes="57x57">
199
		<link rel="apple-touch-icon" href="./img/favicon/apple-touch-icon-60x60.png" sizes="60x60">
200
		<link rel="apple-touch-icon" href="./img/favicon/apple-touch-icon-72x72.png" sizes="72x72">
201
		<link rel="apple-touch-icon" href="./img/favicon/apple-touch-icon-76x76.png" sizes="76x76">
202
		<link rel="apple-touch-icon" href="./img/favicon/apple-touch-icon-114x114.png" sizes="114x114">
203
		<link rel="apple-touch-icon" href="./img/favicon/apple-touch-icon-120x120.png" sizes="120x120">
204
		<link rel="apple-touch-icon" href="./img/favicon/apple-touch-icon-128x128.png" sizes="128x128">
205
		<link rel="apple-touch-icon" href="./img/favicon/apple-touch-icon-144x144.png" sizes="144x144">
206
		<link rel="apple-touch-icon" href="./img/favicon/apple-touch-icon-152x152.png" sizes="152x152">
207
		<link rel="apple-touch-icon" href="./img/favicon/apple-touch-icon-180x180.png" sizes="180x180">
208
		<link rel="apple-touch-icon" href="./img/favicon/apple-touch-icon-precomposed.png">
209
		<link rel="icon" type="image/png" href="./img/favicon/favicon-16x16.png" sizes="16x16">
210
		<link rel="icon" type="image/png" href="./img/favicon/favicon-32x32.png" sizes="32x32">
211
		<link rel="icon" type="image/png" href="./img/favicon/favicon-96x96.png" sizes="96x96">
212
		<link rel="icon" type="image/png" href="./img/favicon/favicon-160x160.png" sizes="160x160">
213
		<link rel="icon" type="image/png" href="./img/favicon/favicon-192x192.png" sizes="192x192">
214
		<link rel="icon" type="image/png" href="./img/favicon/favicon-196x196.png" sizes="196x196">
215
		<meta name="msapplication-TileImage" content="./img/favicon/win8-tile-144x144.png"> 
216
		<meta name="msapplication-TileColor" content="#5682a3"> 
217
		<meta name="msapplication-navbutton-color" content="#5682a3"> 
218
		<meta name="application-name" content="JodelBlue"/> 
219
		<meta name="msapplication-tooltip" content="JodelBlue"/> 
220
		<meta name="apple-mobile-web-app-title" content="JodelBlue"/> 
221
		<meta name="msapplication-square70x70logo" content="./img/favicon/win8-tile-70x70.png"> 
222
		<meta name="msapplication-square144x144logo" content="./img/favicon/win8-tile-144x144.png"> 
223
		<meta name="msapplication-square150x150logo" content="./img/favicon/win8-tile-150x150.png"> 
224
		<meta name="msapplication-wide310x150logo" content="./img/favicon/win8-tile-310x150.png"> 
225
		<meta name="msapplication-square310x310logo" content="./img/favicon/win8-tile-310x310.png"> 
226
	</head>
227
	
228
	<body>
229
		<header>
230
			<nav class="navbar navbar-full navbar-dark navbar-fixed-top">
231
				<div class="container">					
232
						<?php
233
							if(isset($_GET['postID']) && isset($_GET['getPostDetails']))
234
							{
235
								echo '<a id="comment-back" href="index.php?view=' . $view . '#postId-' . htmlspecialchars($_GET['postID']) . '">';
236
								echo '<i class="fa fa-angle-left fa-3x"></i>';
237
								echo '</a>';
238
								echo '<h1>';
239
								echo '<a href="index.php?getPostDetails=' . htmlspecialchars($_GET['getPostDetails']) . '&postID=' . htmlspecialchars($_GET['postID']) . '" class="spinnable">';
240
							}
241
							else
242
							{
243
								echo '<h1>';	
244
								echo '<a href="./" class="spinnable">';
245
							}
246
						?>
247
						JodelBlue <i class="fa fa-refresh fa-1x"></i></a>
248
					</h1>					
249
				</div>
250
			</nav>
251
		</header>
252
		
253
		<div class="mainContent container">		
254
			<div class="content row">
255
				<article class="topContent col-sm-8">
256
257
					<content id="posts">
258
						<?php
259
							$posts;
260
261
							//Get Post Details
262
							if(isset($_GET['postID']) && isset($_GET['getPostDetails']))
263
							{
264
								$userHandleBuffer = [];
265
266
								$accountCreator = new GetPostDetails();
267
								$accountCreator->setAccessToken($accessToken);
268
								$data = $accountCreator->execute();
269
								
270
								$posts[0] = $data;
271
								if(isset($data['children'])) {
272
									foreach($data['children'] as $key => $child)
273
									{
274
										
275
										if(!$child["parent_creator"] == 1)
276
										{
277
											$numberForUser = array_search($child['user_handle'], $userHandleBuffer);
278
											if($numberForUser === FALSE)
279
											{
280
												array_push($userHandleBuffer, $child['user_handle']);
281
												$data['children'][$key]['user_handle'] = count($userHandleBuffer);
282
											}
283
											else
284
											{
285
												$data['children'][$key]['user_handle'] = $numberForUser + 1;
286
											}
287
										}
288
289
										array_push($posts, $data['children'][$key]);
290
									}
291
									$loops = $data['child_count'] + 1;
292
								}
293
								else $loops = 1;
294
								$isDetailedView = TRUE;
295
							}
296
							//Get Posts
297
							else
298
							{
299
								$version = 'v2';
300
								if($view=='comment')
301
								{
302
									$url = "/v2/posts/location/discussed/";
303
								}
304
								else
305
								{
306
									if($view=='upVote')
307
									{
308
										$url = "/v2/posts/location/popular/";
309
									}
310
									else
311
									{
312
										$url = "/v3/posts/location/combo/";
313
										$version = 'v3';
314
									}
315
								}
316
317
								if($version == 'v3')
318
								{
319
									$posts = getPosts($lastPostId, $accessToken, $url, $version)['recent'];
320
								}
321
								else
322
								{
323
									$posts = getPosts($lastPostId, $accessToken, $url, $version)['posts'];
324
								}
325
								$loops = 29;
326
								$isDetailedView = FALSE;
327
							}
328
							
329
330 View Code Duplication
							for($i = 0; $i<$loops; $i++)
331
							{
332
							
333
							if(isset($posts[$i]))
334
							{
335
								$lastPostId = $posts[$i]['post_id'];
336
337
								jodelToHtml($posts[$i], $view, $isDetailedView);
338
							}
339
						} ?>
340
341
					</content>
342
					
343
					<?php if(!isset($_GET['postID']) && !isset($_GET['getPostDetails'])) { ?>
344
						<p id="loading">
345
							Loading…
346
						</p>
347
					<?php } ?>
348
				</article>
349
			
350
				<aside class="topSidebar col-sm-4 sidebar-outer">
351
					<div class="fixed">
352
						<article>
353
							<div>
354
								<h2>Position</h2>
355
								<form method="get">
356
									<input type="text" id="city" name="city" placeholder="<?php if(isset($newPositionStatus)) echo $newPositionStatus; ?>" required>
357
358
									<input type="submit" value="Set Location" /> 
359
								</form>
360
							</div>
361
						</article>
362
363
						<article>
364
							<div>
365
								<h2>Karma</h2>
366
								<?php echo getKarma($accessToken_forId1); ?>
367
							</div>
368
						</article>
369
370
						<article>
371
							<div>
372
								<?php if(isset($_GET['postID']) && isset($_GET['getPostDetails'])) { ?>
373
								<h2>Comment on Jodel</h2>
374
								<form method="POST">				
375
										<input type="hidden" name="ancestor" value="<?php echo htmlspecialchars($_GET['postID']);?>" />
376
										<textarea id="message" name="message" placeholder="Send a comment on a Jodel to all students within 10km" required></textarea> 
377
									<br />
378
									<input type="submit" value="SEND" /> 
379
								</form>
380
									<?php } else { ?>
381
								<h2>New Jodel</h2>
382
								<form method="POST">
383
									<textarea id="message" name="message" placeholder="Send a Jodel to all students within 10km" required></textarea> 
384
									<br />
385
									<select id="postColorPicker" name="color">
386
										<option value="06A3CB">Blue</option>
387
										<option value="8ABDB0">Teal</option>
388
										<option value="9EC41C">Green</option>
389
										<option value="FFBA00">Yellow</option>
390
										<option value="DD5F5F">Red</option>
391
										<option value="FF9908">Orange</option>
392
									</select> 
393
									<br />
394
									<input type="submit" value="SEND" /> 
395
								</form>
396
								<?php } ?>
397
							</div>
398
						</article>
399
							
400
						<article>
401
							<div>
402
								<h2>Login</h2>
403
							</div>
404
						</article>
405
					</div>
406
				</aside>
407
			</div>
408
			<div id="sortJodelBy" class="row">
409
				<div class="col-sm-12">
410
					<div class="row">
411
						<div class="col-sm-3">
412
							<a href="index.php" <?php if($view=='time') echo 'class="active"';?>><i class="fa fa-clock-o fa-3x"></i></a>
413
						</div>
414
						<div class="col-sm-3">
415
							<a href="index.php?view=comment" <?php if($view=='comment') echo 'class="active"';?>><i class="fa fa-commenting-o fa-3x"></i></a>
416
						</div>
417
						<div class="col-sm-3">
418
							<a href="index.php?view=upVote" <?php if($view=='upVote') echo 'class="active"';?>><i class="fa fa-angle-up fa-3x"></i></a>
419
						</div>
420
						<div class="col-sm-3">
421
							<nav>
422
								<a href="./about-us.html">about us</a>
423
							</nav>
424
						</div>
425
					</div>
426
				</div>	
427
			</div>
428
		</div>
429
		
430
		
431
		<!-- jQuery, Tether, Bootstrap JS and own-->
432
		<script src="https://ajax.googleapis.com/ajax/libs/jquery/3.1.1/jquery.min.js" integrity="sha384-3ceskX3iaEnIogmQchP8opvBy3Mi7Ce34nWjpBIwVTHfGYWQS9jwHDVRnpKKHJg7" crossorigin="anonymous"></script>
433
    	<script src="https://cdnjs.cloudflare.com/ajax/libs/tether/1.3.7/js/tether.min.js" integrity="sha384-XTs3FgkjiBgo8qjEjBk0tGmf3wPrWtA6coPfQDfFEY8AnYJwjalXCiosYRBIBZX8" crossorigin="anonymous"></script>
434
    	<script src="https://maxcdn.bootstrapcdn.com/bootstrap/4.0.0-alpha.5/js/bootstrap.min.js" integrity="sha384-BLiI7JTZm+JWlgKa0M0kGRpJbF2J8q+qreVrKBC47e3K6BW78kGLrCkeRX6I9RoK" crossorigin="anonymous"></script>
435
    	<script src="js/jQueryEmoji.js"></script>
436
437
		<script>
438
			//BackButton
439
			function goBack()
440
			{
441
				window.history.back();
442
			}
443
444
			$(document).ready(function()
445
			{
446
447
448
				//Transform UTF-8 Emoji to img
449
				$('.jodel > content').Emoji();
450
451
				$('a').on('click', function(){
452
				    $('a').removeClass('selected');
453
				    $(this).addClass('selected');
454
				});
455
456
				function scrollToAnchor(aid){
457
				    var aTag = $("article[id='"+ aid +"']");
458
				    $('html,body').animate({scrollTop: aTag.offset().top-90},'slow');
459
				}
460
461
				<?php if(!isset($_GET['postID']) && !isset($_GET['getPostDetails'])) { ?>
462
463
				
464
465
466
467
				var win = $(window);
468
				var lastPostId = "<?php echo $lastPostId; ?>";
469
				var view = "<?php echo $view; ?>"
470
				var old_lastPostId = "";
471
				var morePostsAvailable = true;
472
473
				if(window.location.hash)
474
				{
475
					var hash = window.location.hash.slice(1);
476
477
					if(!$("article[id='"+ hash +"']").length)
478
					{
479
						for (var i = 5; i >= 0; i--)
480
						{
481
							if(!$("article[id='"+ hash +"']").length)
482
							{
483
								$.ajax({
484
									url: 'get-posts-ajax.php?lastPostId=' + lastPostId + '&view=' + view,
485
									dataType: 'html',
486
									async: false,
487
									success: function(html) {
488
										var div = document.createElement('div');
489
										div.innerHTML = html;
490
										var elements = div.childNodes;
491
										old_lastPostId = lastPostId;
492
										lastPostId = elements[3].textContent;
493
										lastPostId = lastPostId.replace(/\s+/g, '');
494
										//alert('Neu: ' + lastPostId + " Alt: " + old_lastPostId);
495
										if(lastPostId == old_lastPostId) {
496
											
497
											//morePostsAvailable = false;
498
										}
499
										else {
500
											//alert(elements[3].textContent);
501
											$('#posts').append(elements[1].innerHTML);
502
											$('#posts').hide().show(0);
503
										}
504
										$('#loading').hide();
505
									}
506
								});
507
508
								$('.jodel > content').Emoji();
509
							}
510
							
511
						}
512
						scrollToAnchor(hash);
513
514
					}						
515
				}
516
517
				// Each time the user scrolls
518
				win.scroll(function() {
519
520
521
					// End of the document reached?
522
					if (($(document).height() - win.height() == win.scrollTop()) && morePostsAvailable) {
523
						$('#loading').show();
524
525
						
526
						
527
						$.ajax({
528
							url: 'get-posts-ajax.php?lastPostId=' + lastPostId + '&view=' + view,
529
							dataType: 'html',
530
							async: false,
531
							success: function(html) {
532
								var div = document.createElement('div');
533
								div.innerHTML = html;
534
								var elements = div.childNodes;
535
								old_lastPostId = lastPostId;
536
								lastPostId = elements[3].textContent;
537
								lastPostId = lastPostId.replace(/\s+/g, '');
538
								//alert('Neu: ' + lastPostId + " Alt: " + old_lastPostId);
539
								if(lastPostId == old_lastPostId)
540
								{
541
									
542
									//morePostsAvailable = false;
543
								}
544
								else
545
								{
546
									//alert(elements[3].textContent);
547
									$('#posts').append(elements[1].innerHTML);
548
								}
549
								$('#loading').hide();
550
							}
551
						});
552
553
						$('.jodel > content').Emoji();
554
					}
555
				});
556
			<?php } ?>
557
			});	
558
559
		</script>
560
	</body>
561
</html>
562
563