Skip to content
Projects
Groups
Snippets
Help
This project
Loading...
Sign in / Register
Toggle navigation
Q
question2answer
Overview
Overview
Details
Activity
Cycle Analytics
Repository
Repository
Files
Commits
Branches
Tags
Contributors
Graph
Compare
Charts
Issues
0
Issues
0
List
Board
Labels
Milestones
Merge Requests
0
Merge Requests
0
CI / CD
CI / CD
Pipelines
Jobs
Schedules
Charts
Wiki
Wiki
Snippets
Snippets
Members
Members
Collapse sidebar
Close sidebar
Activity
Graph
Charts
Create a new issue
Jobs
Commits
Issue Boards
Open sidebar
outils
question2answer
Commits
e449b233
Commit
e449b233
authored
Jul 15, 2016
by
Scott
Browse files
Options
Browse Files
Download
Email Patches
Plain Diff
Coding style (user pages)
parent
b0af268c
Hide whitespace changes
Inline
Side-by-side
Showing
6 changed files
with
826 additions
and
858 deletions
+826
-858
account.php
qa-include/pages/account.php
+368
-374
confirm.php
qa-include/pages/confirm.php
+84
-90
login.php
qa-include/pages/login.php
+119
-120
logout.php
qa-include/pages/logout.php
+9
-15
register.php
qa-include/pages/register.php
+171
-179
reset.php
qa-include/pages/reset.php
+75
-80
No files found.
qa-include/pages/account.php
View file @
e449b233
...
...
@@ -20,479 +20,473 @@
More about this license: http://www.question2answer.org/license.php
*/
if
(
!
defined
(
'QA_VERSION'
))
{
// don't allow this page to be requested directly from browser
header
(
'Location: ../'
);
exit
;
}
if
(
!
defined
(
'QA_VERSION'
))
{
// don't allow this page to be requested directly from browser
header
(
'Location: ../'
);
exit
;
}
require_once
QA_INCLUDE_DIR
.
'db/users.php'
;
require_once
QA_INCLUDE_DIR
.
'app/format.php'
;
require_once
QA_INCLUDE_DIR
.
'app/users.php'
;
require_once
QA_INCLUDE_DIR
.
'db/selects.php'
;
require_once
QA_INCLUDE_DIR
.
'util/image.php'
;
require_once
QA_INCLUDE_DIR
.
'db/users.php'
;
require_once
QA_INCLUDE_DIR
.
'app/format.php'
;
require_once
QA_INCLUDE_DIR
.
'app/users.php'
;
require_once
QA_INCLUDE_DIR
.
'db/selects.php'
;
require_once
QA_INCLUDE_DIR
.
'util/image.php'
;
// Check we're not using single-sign on integration, that we're logged in
if
(
QA_FINAL_EXTERNAL_USERS
)
qa_fatal_error
(
'User accounts are handled by external code'
);
if
(
QA_FINAL_EXTERNAL_USERS
)
qa_fatal_error
(
'User accounts are handled by external code'
);
$userid
=
qa_get_logged_in_userid
();
$userid
=
qa_get_logged_in_userid
();
if
(
!
isset
(
$userid
))
qa_redirect
(
'login'
);
if
(
!
isset
(
$userid
))
qa_redirect
(
'login'
);
// Get current information on user
list
(
$useraccount
,
$userprofile
,
$userpoints
,
$userfields
)
=
qa_db_select_with_pending
(
qa_db_user_account_selectspec
(
$userid
,
true
),
qa_db_user_profile_selectspec
(
$userid
,
true
),
qa_db_user_points_selectspec
(
$userid
,
true
),
qa_db_userfields_selectspec
()
);
list
(
$useraccount
,
$userprofile
,
$userpoints
,
$userfields
)
=
qa_db_select_with_pending
(
qa_db_user_account_selectspec
(
$userid
,
true
),
qa_db_user_profile_selectspec
(
$userid
,
true
),
qa_db_user_points_selectspec
(
$userid
,
true
),
qa_db_userfields_selectspec
()
);
$changehandle
=
qa_opt
(
'allow_change_usernames'
)
||
(
!
$userpoints
[
'qposts'
]
&&
!
$userpoints
[
'aposts'
]
&&
!
$userpoints
[
'cposts'
]);
$doconfirms
=
qa_opt
(
'confirm_user_emails'
)
&&
$useraccount
[
'level'
]
<
QA_USER_LEVEL_EXPERT
;
$isconfirmed
=
(
$useraccount
[
'flags'
]
&
QA_USER_FLAGS_EMAIL_CONFIRMED
)
?
true
:
false
;
$haspasswordold
=
isset
(
$useraccount
[
'passsalt'
])
&&
isset
(
$useraccount
[
'passcheck'
]);
if
(
QA_PASSWORD_HASH
)
{
$haspassword
=
isset
(
$useraccount
[
'passhash'
]);
}
else
{
$haspassword
=
$haspasswordold
;
}
$permit_error
=
qa_user_permit_error
();
$isblocked
=
$permit_error
!==
false
;
$pending_confirmation
=
$doconfirms
&&
$permit_error
==
'confirm'
;
$changehandle
=
qa_opt
(
'allow_change_usernames'
)
||
(
!
$userpoints
[
'qposts'
]
&&
!
$userpoints
[
'aposts'
]
&&
!
$userpoints
[
'cposts'
]);
$doconfirms
=
qa_opt
(
'confirm_user_emails'
)
&&
$useraccount
[
'level'
]
<
QA_USER_LEVEL_EXPERT
;
$isconfirmed
=
(
$useraccount
[
'flags'
]
&
QA_USER_FLAGS_EMAIL_CONFIRMED
)
?
true
:
false
;
// Process profile if saved
$haspasswordold
=
isset
(
$useraccount
[
'passsalt'
])
&&
isset
(
$useraccount
[
'passcheck'
]);
if
(
QA_PASSWORD_HASH
)
{
$haspassword
=
isset
(
$useraccount
[
'passhash'
]);
}
else
{
$haspassword
=
$haspasswordold
;
}
$permit_error
=
qa_user_permit_error
();
$isblocked
=
$permit_error
!==
false
;
$pending_confirmation
=
$doconfirms
&&
$permit_error
==
'confirm'
;
// If the post_max_size is exceeded then the $_POST array is empty so no field processing can be done
if
(
qa_post_limit_exceeded
())
$errors
[
'avatar'
]
=
qa_lang
(
'main/file_upload_limit_exceeded'
);
else
{
require_once
QA_INCLUDE_DIR
.
'app/users-edit.php'
;
if
(
qa_clicked
(
'dosaveprofile'
)
&&
!
$isblocked
)
{
$inhandle
=
$changehandle
?
qa_post_text
(
'handle'
)
:
$useraccount
[
'handle'
];
$inemail
=
qa_post_text
(
'email'
);
$inmessages
=
qa_post_text
(
'messages'
);
$inwallposts
=
qa_post_text
(
'wall'
);
$inmailings
=
qa_post_text
(
'mailings'
);
$inavatar
=
qa_post_text
(
'avatar'
);
$inprofile
=
array
();
foreach
(
$userfields
as
$userfield
)
$inprofile
[
$userfield
[
'fieldid'
]]
=
qa_post_text
(
'field_'
.
$userfield
[
'fieldid'
]);
if
(
!
qa_check_form_security_code
(
'account'
,
qa_post_text
(
'code'
)))
$errors
[
'page'
]
=
qa_lang_html
(
'misc/form_security_again'
);
else
{
$errors
=
qa_handle_email_filter
(
$inhandle
,
$inemail
,
$useraccount
);
if
(
!
isset
(
$errors
[
'handle'
]))
qa_db_user_set
(
$userid
,
'handle'
,
$inhandle
);
if
(
!
isset
(
$errors
[
'email'
])
&&
$inemail
!==
$useraccount
[
'email'
])
{
qa_db_user_set
(
$userid
,
'email'
,
$inemail
);
qa_db_user_set_flag
(
$userid
,
QA_USER_FLAGS_EMAIL_CONFIRMED
,
false
);
$isconfirmed
=
false
;
if
(
$doconfirms
)
qa_send_new_confirm
(
$userid
);
}
// Process profile if saved
if
(
qa_opt
(
'allow_private_messages'
))
qa_db_user_set_flag
(
$userid
,
QA_USER_FLAGS_NO_MESSAGES
,
!
$inmessages
);
// If the post_max_size is exceeded then the $_POST array is empty so no field processing can be done
if
(
qa_post_limit_exceeded
())
$errors
[
'avatar'
]
=
qa_lang
(
'main/file_upload_limit_exceeded'
);
else
{
require_once
QA_INCLUDE_DIR
.
'app/users-edit.php'
;
if
(
qa_clicked
(
'dosaveprofile'
)
&&
!
$isblocked
)
{
$inhandle
=
$changehandle
?
qa_post_text
(
'handle'
)
:
$useraccount
[
'handle'
];
$inemail
=
qa_post_text
(
'email'
);
$inmessages
=
qa_post_text
(
'messages'
);
$inwallposts
=
qa_post_text
(
'wall'
);
$inmailings
=
qa_post_text
(
'mailings'
);
$inavatar
=
qa_post_text
(
'avatar'
);
$inprofile
=
array
();
foreach
(
$userfields
as
$userfield
)
$inprofile
[
$userfield
[
'fieldid'
]]
=
qa_post_text
(
'field_'
.
$userfield
[
'fieldid'
]);
if
(
!
qa_check_form_security_code
(
'account'
,
qa_post_text
(
'code'
)))
$errors
[
'page'
]
=
qa_lang_html
(
'misc/form_security_again'
);
else
{
$errors
=
qa_handle_email_filter
(
$inhandle
,
$inemail
,
$useraccount
);
if
(
!
isset
(
$errors
[
'handle'
]))
qa_db_user_set
(
$userid
,
'handle'
,
$inhandle
);
if
(
!
isset
(
$errors
[
'email'
])
&&
$inemail
!==
$useraccount
[
'email'
])
{
qa_db_user_set
(
$userid
,
'email'
,
$inemail
);
qa_db_user_set_flag
(
$userid
,
QA_USER_FLAGS_EMAIL_CONFIRMED
,
false
);
$isconfirmed
=
false
;
if
(
$doconfirms
)
qa_send_new_confirm
(
$userid
);
}
if
(
qa_opt
(
'allow_user_walls'
))
qa_db_user_set_flag
(
$userid
,
QA_USER_FLAGS_NO_WALL_POSTS
,
!
$inwallposts
);
if
(
qa_opt
(
'allow_private_messages
'
))
qa_db_user_set_flag
(
$userid
,
QA_USER_FLAGS_NO_MESSAGES
,
!
$inmessage
s
);
if
(
qa_opt
(
'mailing_enabled
'
))
qa_db_user_set_flag
(
$userid
,
QA_USER_FLAGS_NO_MAILINGS
,
!
$inmailing
s
);
if
(
qa_opt
(
'allow_user_walls'
))
qa_db_user_set_flag
(
$userid
,
QA_USER_FLAGS_NO_WALL_POSTS
,
!
$inwallposts
);
qa_db_user_set_flag
(
$userid
,
QA_USER_FLAGS_SHOW_AVATAR
,
(
$inavatar
==
'uploaded'
));
qa_db_user_set_flag
(
$userid
,
QA_USER_FLAGS_SHOW_GRAVATAR
,
(
$inavatar
==
'gravatar'
)
);
if
(
qa_opt
(
'mailing_enabled'
))
qa_db_user_set_flag
(
$userid
,
QA_USER_FLAGS_NO_MAILINGS
,
!
$inmailings
)
;
if
(
is_array
(
@
$_FILES
[
'file'
]))
{
$avatarfileerror
=
$_FILES
[
'file'
][
'error'
]
;
qa_db_user_set_flag
(
$userid
,
QA_USER_FLAGS_SHOW_AVATAR
,
(
$inavatar
==
'uploaded'
));
qa_db_user_set_flag
(
$userid
,
QA_USER_FLAGS_SHOW_GRAVATAR
,
(
$inavatar
==
'gravatar'
));
// Note if $_FILES['file']['error'] === 1 then upload_max_filesize has been exceeded
if
(
$avatarfileerror
===
1
)
$errors
[
'avatar'
]
=
qa_lang
(
'main/file_upload_limit_exceeded'
);
elseif
(
$avatarfileerror
===
0
&&
$_FILES
[
'file'
][
'size'
]
>
0
)
{
require_once
QA_INCLUDE_DIR
.
'app/limits.php'
;
if
(
is_array
(
@
$_FILES
[
'file'
]))
{
$avatarfileerror
=
$_FILES
[
'file'
][
'error'
];
switch
(
qa_user_permit_error
(
null
,
QA_LIMIT_UPLOADS
))
{
case
'limit'
:
$errors
[
'avatar'
]
=
qa_lang
(
'main/upload_limit'
);
break
;
// Note if $_FILES['file']['error'] === 1 then upload_max_filesize has been exceeded
if
(
$avatarfileerror
===
1
)
$errors
[
'avatar'
]
=
qa_lang
(
'main/file_upload_limit_exceeded'
);
elseif
(
$avatarfileerror
===
0
&&
$_FILES
[
'file'
][
'size'
]
>
0
)
{
require_once
QA_INCLUDE_DIR
.
'app/limits.php'
;
default
:
$errors
[
'avatar'
]
=
qa_lang
(
'users/no_permission'
);
break
;
switch
(
qa_user_permit_error
(
null
,
QA_LIMIT_UPLOADS
))
{
case
'limit'
:
$errors
[
'avatar'
]
=
qa_lang
(
'main/upload_limit'
);
break
;
case
false
:
qa_limits_increment
(
$userid
,
QA_LIMIT_UPLOADS
);
$toobig
=
qa_image_file_too_big
(
$_FILES
[
'file'
][
'tmp_name'
],
qa_opt
(
'avatar_store_size'
));
default
:
$errors
[
'avatar'
]
=
qa_lang
(
'users/no_permission'
);
break
;
if
(
$toobig
)
$errors
[
'avatar'
]
=
qa_lang_sub
(
'main/image_too_big_x_pc'
,
(
int
)(
$toobig
*
100
));
elseif
(
!
qa_set_user_avatar
(
$userid
,
file_get_contents
(
$_FILES
[
'file'
][
'tmp_name'
]),
$useraccount
[
'avatarblobid'
]))
$errors
[
'avatar'
]
=
qa_lang_sub
(
'main/image_not_read'
,
implode
(
', '
,
qa_gd_image_formats
()));
break
;
}
}
// There shouldn't be any need to catch any other error
}
case
false
:
qa_limits_increment
(
$userid
,
QA_LIMIT_UPLOADS
);
if
(
count
(
$inprofile
))
{
$filtermodules
=
qa_load_modules_with
(
'filter'
,
'filter_profile'
);
foreach
(
$filtermodules
as
$filtermodule
)
$filtermodule
->
filter_profile
(
$inprofile
,
$errors
,
$useraccount
,
$userprofile
);
}
$toobig
=
qa_image_file_too_big
(
$_FILES
[
'file'
][
'tmp_name'
],
qa_opt
(
'avatar_store_size'
));
foreach
(
$userfields
as
$userfield
)
{
if
(
!
isset
(
$errors
[
$userfield
[
'fieldid'
]]))
qa_db_user_profile_set
(
$userid
,
$userfield
[
'title'
],
$inprofile
[
$userfield
[
'fieldid'
]]);
}
if
(
$toobig
)
$errors
[
'avatar'
]
=
qa_lang_sub
(
'main/image_too_big_x_pc'
,
(
int
)
(
$toobig
*
100
));
elseif
(
!
qa_set_user_avatar
(
$userid
,
file_get_contents
(
$_FILES
[
'file'
][
'tmp_name'
]),
$useraccount
[
'avatarblobid'
]))
$errors
[
'avatar'
]
=
qa_lang_sub
(
'main/image_not_read'
,
implode
(
', '
,
qa_gd_image_formats
()));
break
;
}
}
// There shouldn't be any need to catch any other error
}
list
(
$useraccount
,
$userprofile
)
=
qa_db_select_with_pending
(
qa_db_user_account_selectspec
(
$userid
,
true
),
qa_db_user_profile_selectspec
(
$userid
,
true
)
);
if
(
count
(
$inprofile
))
{
$filtermodules
=
qa_load_modules_with
(
'filter'
,
'filter_profile'
);
foreach
(
$filtermodules
as
$filtermodule
)
$filtermodule
->
filter_profile
(
$inprofile
,
$errors
,
$useraccount
,
$userprofile
);
}
qa_report_event
(
'u_save'
,
$userid
,
$useraccount
[
'handle'
],
qa_cookie_get
());
foreach
(
$userfields
as
$userfield
)
{
if
(
!
isset
(
$errors
[
$userfield
[
'fieldid'
]]))
qa_db_user_profile_set
(
$userid
,
$userfield
[
'title'
],
$inprofile
[
$userfield
[
'fieldid'
]]);
}
if
(
empty
(
$errors
))
qa_redirect
(
'account'
,
array
(
'state'
=>
'profile-saved'
));
qa_logged_in_user_flush
();
}
}
else
if
(
qa_clicked
(
'dosaveprofile'
)
&&
$pending_confirmation
)
{
// only allow user to update email if they are not confirmed yet
$inemail
=
qa_post_text
(
'email'
);
list
(
$useraccount
,
$userprofile
)
=
qa_db_select_with_pending
(
qa_db_user_account_selectspec
(
$userid
,
true
),
qa_db_user_profile_selectspec
(
$userid
,
true
)
);
if
(
!
qa_check_form_security_code
(
'account'
,
qa_post_text
(
'code'
)))
$errors
[
'page'
]
=
qa_lang_html
(
'misc/form_security_again'
);
qa_report_event
(
'u_save'
,
$userid
,
$useraccount
[
'handle'
],
qa_cookie_get
());
else
{
$errors
=
qa_handle_email_filter
(
$useraccount
[
'handle'
],
$inemail
,
$useraccount
);
if
(
empty
(
$errors
))
qa_redirect
(
'account'
,
array
(
'state'
=>
'profile-saved'
));
if
(
!
isset
(
$errors
[
'email'
])
&&
$inemail
!==
$useraccount
[
'email'
])
{
qa_db_user_set
(
$userid
,
'email'
,
$inemail
);
qa_db_user_set_flag
(
$userid
,
QA_USER_FLAGS_EMAIL_CONFIRMED
,
false
);
$isconfirmed
=
false
;
qa_logged_in_user_flush
();
if
(
$doconfirms
)
qa_send_new_confirm
(
$userid
);
}
}
else
if
(
qa_clicked
(
'dosaveprofile'
)
&&
$pending_confirmation
)
{
// only allow user to update email if they are not confirmed yet
$inemail
=
qa_post_text
(
'email'
);
if
(
!
qa_check_form_security_code
(
'account'
,
qa_post_text
(
'code'
)))
$errors
[
'page'
]
=
qa_lang_html
(
'misc/form_security_again'
);
qa_report_event
(
'u_save'
,
$userid
,
$useraccount
[
'handle'
],
qa_cookie_get
());
else
{
$errors
=
qa_handle_email_filter
(
$useraccount
[
'handle'
],
$inemail
,
$useraccount
);
if
(
empty
(
$errors
))
qa_redirect
(
'account'
,
array
(
'state'
=>
'profile-saved'
)
);
if
(
!
isset
(
$errors
[
'email'
])
&&
$inemail
!==
$useraccount
[
'email'
])
{
qa_db_user_set
(
$userid
,
'email'
,
$inemail
);
qa_db_user_set_flag
(
$userid
,
QA_USER_FLAGS_EMAIL_CONFIRMED
,
false
);
$isconfirmed
=
false
;
qa_logged_in_user_flush
();
}
}
// Process change password if clicked
if
(
$doconfirms
)
qa_send_new_confirm
(
$userid
);
if
(
qa_clicked
(
'dochangepassword'
))
{
$inoldpassword
=
qa_post_text
(
'oldpassword'
);
$innewpassword1
=
qa_post_text
(
'newpassword1'
);
$innewpassword2
=
qa_post_text
(
'newpassword2'
);
if
(
!
qa_check_form_security_code
(
'password'
,
qa_post_text
(
'code'
)))
$errors
[
'page'
]
=
qa_lang_html
(
'misc/form_security_again'
);
else
{
$errors
=
array
();
$legacyPassError
=
!
hash_equals
(
strtolower
(
$useraccount
[
'passcheck'
]),
strtolower
(
qa_db_calc_passcheck
(
$inoldpassword
,
$useraccount
[
'passsalt'
])));
if
(
QA_PASSWORD_HASH
)
{
$passError
=
!
password_verify
(
$inoldpassword
,
$useraccount
[
'passhash'
]);
if
((
$haspasswordold
&&
$legacyPassError
)
||
(
!
$haspasswordold
&&
$haspassword
&&
$passError
))
{
$errors
[
'oldpassword'
]
=
qa_lang
(
'users/password_wrong'
);
}
}
else
{
if
(
$haspassword
&&
$legacyPassError
)
{
$errors
[
'oldpassword'
]
=
qa_lang
(
'users/password_wrong'
);
}
}
$useraccount
[
'password'
]
=
$inoldpassword
;
$errors
=
$errors
+
qa_password_validate
(
$innewpassword1
,
$useraccount
);
// array union
if
(
$innewpassword1
!=
$innewpassword2
)
$errors
[
'newpassword2'
]
=
qa_lang
(
'users/password_mismatch'
);
qa_report_event
(
'u_save'
,
$userid
,
$useraccount
[
'handle'
],
qa_cookie_get
());
if
(
empty
(
$errors
))
{
qa_db_user_set_password
(
$userid
,
$innewpassword1
);
qa_db_user_set
(
$userid
,
'sessioncode'
,
''
);
// stop old 'Remember me' style logins from still working
qa_set_logged_in_user
(
$userid
,
$useraccount
[
'handle'
],
false
,
$useraccount
[
'sessionsource'
]);
// reinstate this specific session
if
(
empty
(
$errors
))
qa_redirect
(
'account'
,
array
(
'state'
=>
'profile-saved'
));
qa_report_event
(
'u_password'
,
$userid
,
$useraccount
[
'handle'
],
qa_cookie_get
());
qa_
logged_in_user_flush
(
);
qa_
redirect
(
'account'
,
array
(
'state'
=>
'password-changed'
)
);
}
}
}
}
// Prepare content for theme
// Process change password if clicked
if
(
qa_clicked
(
'dochangepassword'
))
{
$inoldpassword
=
qa_post_text
(
'oldpassword'
);
$innewpassword1
=
qa_post_text
(
'newpassword1'
);
$innewpassword2
=
qa_post_text
(
'newpassword2'
);
$qa_content
=
qa_content_prepare
();
if
(
!
qa_check_form_security_code
(
'password'
,
qa_post_text
(
'code'
)))
$errors
[
'page'
]
=
qa_lang_html
(
'misc/form_security_again'
)
;
$qa_content
[
'title'
]
=
qa_lang_html
(
'profile/my_account_title'
);
$qa_content
[
'error'
]
=
@
$errors
[
'page'
]
;
else
{
$errors
=
array
();
$legacyPassError
=
!
hash_equals
(
strtolower
(
$useraccount
[
'passcheck'
]),
strtolower
(
qa_db_calc_passcheck
(
$inoldpassword
,
$useraccount
[
'passsalt'
])));
$qa_content
[
'form_profile'
]
=
array
(
'tags'
=>
'enctype="multipart/form-data" method="post" action="'
.
qa_self_html
()
.
'"'
,
if
(
QA_PASSWORD_HASH
)
{
$passError
=
!
password_verify
(
$inoldpassword
,
$useraccount
[
'passhash'
]);
if
((
$haspasswordold
&&
$legacyPassError
)
||
(
!
$haspasswordold
&&
$haspassword
&&
$passError
))
{
$errors
[
'oldpassword'
]
=
qa_lang
(
'users/password_wrong'
);
}
}
else
{
if
(
$haspassword
&&
$legacyPassError
)
{
$errors
[
'oldpassword'
]
=
qa_lang
(
'users/password_wrong'
);
}
}
'style'
=>
'wide'
,
$useraccount
[
'password'
]
=
$inoldpassword
;
$errors
=
$errors
+
qa_password_validate
(
$innewpassword1
,
$useraccount
);
// array union
'fields'
=>
array
(
'duration'
=>
array
(
'type'
=>
'static'
,
'label'
=>
qa_lang_html
(
'users/member_for'
),
'value'
=>
qa_time_to_string
(
qa_opt
(
'db_time'
)
-
$useraccount
[
'created'
]),
),
if
(
$innewpassword1
!=
$innewpassword2
)
$errors
[
'newpassword2'
]
=
qa_lang
(
'users/password_mismatch'
);
'type'
=>
array
(
'type'
=>
'static'
,
'label'
=>
qa_lang_html
(
'users/member_type'
),
'value'
=>
qa_html
(
qa_user_level_string
(
$useraccount
[
'level'
])),
'note'
=>
$isblocked
?
qa_lang_html
(
'users/user_blocked'
)
:
null
,
),
if
(
empty
(
$errors
))
{
qa_db_user_set_password
(
$userid
,
$innewpassword1
);
qa_db_user_set
(
$userid
,
'sessioncode'
,
''
);
// stop old 'Remember me' style logins from still working
qa_set_logged_in_user
(
$userid
,
$useraccount
[
'handle'
],
false
,
$useraccount
[
'sessionsource'
]);
// reinstate this specific session
'handle'
=>
array
(
'label'
=>
qa_lang_html
(
'users/handle_label'
),
'tags'
=>
'name="handle"'
,
'value'
=>
qa_html
(
isset
(
$inhandle
)
?
$inhandle
:
$useraccount
[
'handle'
]),
'error'
=>
qa_html
(
@
$errors
[
'handle'
]),
'type'
=>
(
$changehandle
&&
!
$isblocked
)
?
'text'
:
'static'
,
),
qa_report_event
(
'u_password'
,
$userid
,
$useraccount
[
'handle'
],
qa_cookie_get
());
'email'
=>
array
(
'label'
=>
qa_lang_html
(
'users/email_label'
),
'tags'
=>
'name="email"'
,
'value'
=>
qa_html
(
isset
(
$inemail
)
?
$inemail
:
$useraccount
[
'email'
]),
'error'
=>
isset
(
$errors
[
'email'
])
?
qa_html
(
$errors
[
'email'
])
:
(
$pending_confirmation
?
qa_insert_login_links
(
qa_lang_html
(
'users/email_please_confirm'
))
:
null
),
'type'
=>
$pending_confirmation
?
'text'
:
(
$isblocked
?
'static'
:
'text'
),
),
qa_redirect
(
'account'
,
array
(
'state'
=>
'password-changed'
));
}
}
}
}
'messages'
=>
array
(
'label'
=>
qa_lang_html
(
'users/private_messages'
),
'tags'
=>
'name="messages"'
.
(
$pending_confirmation
?
' disabled'
:
''
),
'type'
=>
'checkbox'
,
'value'
=>
!
(
$useraccount
[
'flags'
]
&
QA_USER_FLAGS_NO_MESSAGES
),
'note'
=>
qa_lang_html
(
'users/private_messages_explanation'
),
),
// Prepare content for theme
'wall'
=>
array
(
'label'
=>
qa_lang_html
(
'users/wall_posts'
),
'tags'
=>
'name="wall"'
.
(
$pending_confirmation
?
' disabled'
:
''
),
'type'
=>
'checkbox'
,
'value'
=>
!
(
$useraccount
[
'flags'
]
&
QA_USER_FLAGS_NO_WALL_POSTS
),
'note'
=>
qa_lang_html
(
'users/wall_posts_explanation'
),
),
$qa_content
=
qa_content_prepare
();
$qa_content
[
'title'
]
=
qa_lang_html
(
'profile/my_account_title'
);
$qa_content
[
'error'
]
=@
$errors
[
'page'
];
$qa_content
[
'form_profile'
]
=
array
(
'tags'
=>
'enctype="multipart/form-data" method="post" action="'
.
qa_self_html
()
.
'"'
,
'style'
=>
'wide'
,
'fields'
=>
array
(
'duration'
=>
array
(
'type'
=>
'static'
,
'label'
=>
qa_lang_html
(
'users/member_for'
),
'value'
=>
qa_time_to_string
(
qa_opt
(
'db_time'
)
-
$useraccount
[
'created'
]),
),
'type'
=>
array
(
'type'
=>
'static'
,
'label'
=>
qa_lang_html
(
'users/member_type'
),
'value'
=>
qa_html
(
qa_user_level_string
(
$useraccount
[
'level'
])),
'note'
=>
$isblocked
?
qa_lang_html
(
'users/user_blocked'
)
:
null
,
),
'handle'
=>
array
(
'label'
=>
qa_lang_html
(
'users/handle_label'
),
'tags'
=>
'name="handle"'
,
'value'
=>
qa_html
(
isset
(
$inhandle
)
?
$inhandle
:
$useraccount
[
'handle'
]),
'error'
=>
qa_html
(
@
$errors
[
'handle'
]),
'type'
=>
(
$changehandle
&&
!
$isblocked
)
?
'text'
:
'static'
,
),
'email'
=>
array
(
'label'
=>
qa_lang_html
(
'users/email_label'
),
'tags'
=>
'name="email"'
,
'value'
=>
qa_html
(
isset
(
$inemail
)
?
$inemail
:
$useraccount
[
'email'
]),
'error'
=>
isset
(
$errors
[
'email'
])
?
qa_html
(
$errors
[
'email'
])
:
(
$pending_confirmation
?
qa_insert_login_links
(
qa_lang_html
(
'users/email_please_confirm'
))
:
null
),
'type'
=>
$pending_confirmation
?
'text'
:
(
$isblocked
?
'static'
:
'text'
),
),
'messages'
=>
array
(
'label'
=>
qa_lang_html
(
'users/private_messages'
),
'tags'
=>
'name="messages"'
.
(
$pending_confirmation
?
' disabled'
:
''
),
'type'
=>
'checkbox'
,
'value'
=>
!
(
$useraccount
[
'flags'
]
&
QA_USER_FLAGS_NO_MESSAGES
),
'note'
=>
qa_lang_html
(
'users/private_messages_explanation'
),
),
'wall'
=>
array
(
'label'
=>
qa_lang_html
(
'users/wall_posts'
),
'tags'
=>
'name="wall"'
.
(
$pending_confirmation
?
' disabled'
:
''
),
'type'
=>
'checkbox'
,
'value'
=>
!
(
$useraccount
[
'flags'
]
&
QA_USER_FLAGS_NO_WALL_POSTS
),
'note'
=>
qa_lang_html
(
'users/wall_posts_explanation'
),
),
'mailings'
=>
array
(
'label'
=>
qa_lang_html
(
'users/mass_mailings'
),
'tags'
=>
'name="mailings"'
,
'type'
=>
'checkbox'
,
'value'
=>
!
(
$useraccount
[
'flags'
]
&
QA_USER_FLAGS_NO_MAILINGS
),
'note'
=>
qa_lang_html
(
'users/mass_mailings_explanation'
),
),
'avatar'
=>
null
,
// for positioning
'mailings'
=>
array
(
'label'
=>
qa_lang_html
(
'users/mass_mailings'
),
'tags'
=>
'name="mailings"'
,
'type'
=>
'checkbox'
,
'value'
=>
!
(
$useraccount
[
'flags'
]
&
QA_USER_FLAGS_NO_MAILINGS
),
'note'
=>
qa_lang_html
(
'users/mass_mailings_explanation'
),
),
'buttons'
=>
array
(
'save'
=>
array
(
'tags'
=>
'onclick="qa_show_waiting_after(this, false);"'
,
'label'
=>
qa_lang_html
(
'users/save_profile'
),
),
'avatar'
=>
null
,
// for positioning
),
'buttons'
=>
array
(
'save'
=>
array
(
'tags'
=>
'onclick="qa_show_waiting_after(this, false);"'
,
'label'
=>
qa_lang_html
(
'users/save_profile'
),
),
),
'hidden'
=>
array
(
'dosaveprofile'
=>
array
(
'tags'
=>
'name="dosaveprofile"'
,
'value'
=>
'1'
,
),
'code'
=>
array
(
'tags'
=>
'name="code"'
,
'value'
=>
qa_get_form_security_code
(
'account'
),
),
'hidden'
=>
array
(
'dosaveprofile'
=>
array
(
'tags'
=>
'name="dosaveprofile"'
,
'value'
=>
'1'
,
),
);
'code'
=>
array
(
'tags'
=>
'name="code"'
,
'value'
=>
qa_get_form_security_code
(
'account'
),
),
),
);
if
(
qa_get_state
()
==
'profile-saved'
)
$qa_content
[
'form_profile'
][
'ok'
]
=
qa_lang_html
(
'users/profile_saved'
);
if
(
qa_get_state
()
==
'profile-saved'
)
$qa_content
[
'form_profile'
][
'ok'
]
=
qa_lang_html
(
'users/profile_saved'
);
if
(
!
qa_opt
(
'allow_private_messages'
))
unset
(
$qa_content
[
'form_profile'
][
'fields'
][
'messages'
]);
if
(
!
qa_opt
(
'allow_private_messages'
))
unset
(
$qa_content
[
'form_profile'
][
'fields'
][
'messages'
]);
if
(
!
qa_opt
(
'allow_user_walls'
))
unset
(
$qa_content
[
'form_profile'
][
'fields'
][
'wall'
]);
if
(
!
qa_opt
(
'allow_user_walls'
))
unset
(
$qa_content
[
'form_profile'
][
'fields'
][
'wall'
]);
if
(
!
qa_opt
(
'mailing_enabled'
))
unset
(
$qa_content
[
'form_profile'
][
'fields'
][
'mailings'
]);
if
(
!
qa_opt
(
'mailing_enabled'
))
unset
(
$qa_content
[
'form_profile'
][
'fields'
][
'mailings'
]);
if
(
$isblocked
&&
!
$pending_confirmation
)
{
unset
(
$qa_content
[
'form_profile'
][
'buttons'
][
'save'
]);
$qa_content
[
'error'
]
=
qa_lang_html
(
'users/no_permission'
);
}
if
(
$isblocked
&&
!
$pending_confirmation
)
{
unset
(
$qa_content
[
'form_profile'
][
'buttons'
][
'save'
]);
$qa_content
[
'error'
]
=
qa_lang_html
(
'users/no_permission'
);
}
// Avatar upload stuff
if
(
qa_opt
(
'avatar_allow_gravatar'
)
||
qa_opt
(
'avatar_allow_upload'
))
{
$avataroptions
=
array
();
if
(
qa_opt
(
'avatar_allow_gravatar'
)
||
qa_opt
(
'avatar_allow_upload'
))
{
$avataroptions
=
array
();
if
(
qa_opt
(
'avatar_default_show'
)
&&
strlen
(
qa_opt
(
'avatar_default_blobid'
)))
{
$avataroptions
[
''
]
=
'<span style="margin:2px 0; display:inline-block;">'
.
qa_get_avatar_blob_html
(
qa_opt
(
'avatar_default_blobid'
),
qa_opt
(
'avatar_default_width'
),
qa_opt
(
'avatar_default_height'
),
32
)
.
'</span> '
.
qa_lang_html
(
'users/avatar_default'
);
}
else
$avataroptions
[
''
]
=
qa_lang_html
(
'users/avatar_none'
);
if
(
qa_opt
(
'avatar_default_show'
)
&&
strlen
(
qa_opt
(
'avatar_default_blobid'
)))
{
$avataroptions
[
''
]
=
'<span style="margin:2px 0; display:inline-block;">'
.
qa_get_avatar_blob_html
(
qa_opt
(
'avatar_default_blobid'
),
qa_opt
(
'avatar_default_width'
),
qa_opt
(
'avatar_default_height'
),
32
)
.
'</span> '
.
qa_lang_html
(
'users/avatar_default'
);
}
else
$avataroptions
[
''
]
=
qa_lang_html
(
'users/avatar_none'
);
$avatarvalue
=
$avataroptions
[
''
];
$avatarvalue
=
$avataroptions
[
''
];
if
(
qa_opt
(
'avatar_allow_gravatar'
)
&&
!
$pending_confirmation
)
{
$avataroptions
[
'gravatar'
]
=
'<span style="margin:2px 0; display:inline-block;">'
.
qa_get_gravatar_html
(
$useraccount
[
'email'
],
32
)
.
' '
.
strtr
(
qa_lang_html
(
'users/avatar_gravatar'
),
array
(
'^1'
=>
'<a href="http://www.gravatar.com/" target="_blank">'
,
'^2'
=>
'</a>'
,
))
.
'</span>'
;
if
(
qa_opt
(
'avatar_allow_gravatar'
)
&&
!
$pending_confirmation
)
{
$avataroptions
[
'gravatar'
]
=
'<span style="margin:2px 0; display:inline-block;">'
.
qa_get_gravatar_html
(
$useraccount
[
'email'
],
32
)
.
' '
.
strtr
(
qa_lang_html
(
'users/avatar_gravatar'
),
array
(
'^1'
=>
'<a href="http://www.gravatar.com/" target="_blank">'
,
'^2'
=>
'</a>'
,
))
.
'</span>'
;
if
(
$useraccount
[
'flags'
]
&
QA_USER_FLAGS_SHOW_GRAVATAR
)
$avatarvalue
=
$avataroptions
[
'gravatar'
];
}
if
(
$useraccount
[
'flags'
]
&
QA_USER_FLAGS_SHOW_GRAVATAR
)
$avatarvalue
=
$avataroptions
[
'gravatar'
];
}
if
(
qa_has_gd_image
()
&&
qa_opt
(
'avatar_allow_upload'
)
&&
!
$pending_confirmation
)
{
$avataroptions
[
'uploaded'
]
=
'<input name="file" type="file">'
;
if
(
qa_has_gd_image
()
&&
qa_opt
(
'avatar_allow_upload'
)
&&
!
$pending_confirmation
)
{
$avataroptions
[
'uploaded'
]
=
'<input name="file" type="file">'
;
if
(
isset
(
$useraccount
[
'avatarblobid'
]))
$avataroptions
[
'uploaded'
]
=
'<span style="margin:2px 0; display:inline-block;">'
.
qa_get_avatar_blob_html
(
$useraccount
[
'avatarblobid'
],
$useraccount
[
'avatarwidth'
],
$useraccount
[
'avatarheight'
],
32
)
.
'</span>'
.
$avataroptions
[
'uploaded'
];
if
(
isset
(
$useraccount
[
'avatarblobid'
]))
$avataroptions
[
'uploaded'
]
=
'<span style="margin:2px 0; display:inline-block;">'
.
qa_get_avatar_blob_html
(
$useraccount
[
'avatarblobid'
],
$useraccount
[
'avatarwidth'
],
$useraccount
[
'avatarheight'
],
32
)
.
'</span>'
.
$avataroptions
[
'uploaded'
];
if
(
$useraccount
[
'flags'
]
&
QA_USER_FLAGS_SHOW_AVATAR
)
$avatarvalue
=
$avataroptions
[
'uploaded'
];
}
if
(
$useraccount
[
'flags'
]
&
QA_USER_FLAGS_SHOW_AVATAR
)
$avatarvalue
=
$avataroptions
[
'uploaded'
];
}
$qa_content
[
'form_profile'
][
'fields'
][
'avatar'
]
=
array
(
'type'
=>
'select-radio'
,
'label'
=>
qa_lang_html
(
'users/avatar_label'
),
'tags'
=>
'name="avatar"'
,
'options'
=>
$avataroptions
,
'value'
=>
$avatarvalue
,
'error'
=>
qa_html
(
@
$errors
[
'avatar'
]),
);
$qa_content
[
'form_profile'
][
'fields'
][
'avatar'
]
=
array
(
'type'
=>
'select-radio'
,
'label'
=>
qa_lang_html
(
'users/avatar_label'
),
'tags'
=>
'name="avatar"'
,
'options'
=>
$avataroptions
,
'value'
=>
$avatarvalue
,
'error'
=>
qa_html
(
@
$errors
[
'avatar'
]),
);
}
else
unset
(
$qa_content
[
'form_profile'
][
'fields'
][
'avatar'
]);
}
else
{
unset
(
$qa_content
[
'form_profile'
][
'fields'
][
'avatar'
]);
}
// Other profile fields
foreach
(
$userfields
as
$userfield
)
{
$value
=
@
$inprofile
[
$userfield
[
'fieldid'
]];
if
(
!
isset
(
$value
))
$value
=
@
$userprofile
[
$userfield
[
'title'
]];
$label
=
trim
(
qa_user_userfield_label
(
$userfield
),
':'
);
if
(
strlen
(
$label
))
$label
.=
':'
;
$qa_content
[
'form_profile'
][
'fields'
][
$userfield
[
'title'
]]
=
array
(
'label'
=>
qa_html
(
$label
),
'tags'
=>
'name="field_'
.
$userfield
[
'fieldid'
]
.
'"'
,
'value'
=>
qa_html
(
$value
),
'error'
=>
qa_html
(
@
$errors
[
$userfield
[
'fieldid'
]]),
'rows'
=>
(
$userfield
[
'flags'
]
&
QA_FIELD_FLAGS_MULTI_LINE
)
?
8
:
null
,
'type'
=>
$isblocked
?
'static'
:
'text'
,
);
}
foreach
(
$userfields
as
$userfield
)
{
$value
=
@
$inprofile
[
$userfield
[
'fieldid'
]];
if
(
!
isset
(
$value
))
$value
=
@
$userprofile
[
$userfield
[
'title'
]];
$label
=
trim
(
qa_user_userfield_label
(
$userfield
),
':'
);
if
(
strlen
(
$label
))
$label
.=
':'
;
$qa_content
[
'form_profile'
][
'fields'
][
$userfield
[
'title'
]]
=
array
(
'label'
=>
qa_html
(
$label
),
'tags'
=>
'name="field_'
.
$userfield
[
'fieldid'
]
.
'"'
,
'value'
=>
qa_html
(
$value
),
'error'
=>
qa_html
(
@
$errors
[
$userfield
[
'fieldid'
]]),
'rows'
=>
(
$userfield
[
'flags'
]
&
QA_FIELD_FLAGS_MULTI_LINE
)
?
8
:
null
,
'type'
=>
$isblocked
?
'static'
:
'text'
,
);
}
// Raw information for plugin layers to access
$qa_content
[
'raw'
][
'account'
]
=
$useraccount
;
$qa_content
[
'raw'
][
'profile'
]
=
$userprofile
;
$qa_content
[
'raw'
][
'points'
]
=
$userpoints
;
$qa_content
[
'raw'
][
'account'
]
=
$useraccount
;
$qa_content
[
'raw'
][
'profile'
]
=
$userprofile
;
$qa_content
[
'raw'
][
'points'
]
=
$userpoints
;
// Change password form
$qa_content
[
'form_password'
]
=
array
(
'tags'
=>
'method="post" action="'
.
qa_self_html
()
.
'"'
,
'style'
=>
'wide'
,
'title'
=>
qa_lang_html
(
'users/change_password'
),
'fields'
=>
array
(
'old'
=>
array
(
'label'
=>
qa_lang_html
(
'users/old_password'
),
'tags'
=>
'name="oldpassword"'
,
'value'
=>
qa_html
(
@
$inoldpassword
),
'type'
=>
'password'
,
'error'
=>
qa_html
(
@
$errors
[
'oldpassword'
]),
),
'new_1'
=>
array
(
'label'
=>
qa_lang_html
(
'users/new_password_1'
),
'tags'
=>
'name="newpassword1"'
,
'type'
=>
'password'
,
'error'
=>
qa_html
(
@
$errors
[
'password'
]),
),
'new_2'
=>
array
(
'label'
=>
qa_lang_html
(
'users/new_password_2'
),
'tags'
=>
'name="newpassword2"'
,
'type'
=>
'password'
,
'error'
=>
qa_html
(
@
$errors
[
'newpassword2'
]),
),
$qa_content
[
'form_password'
]
=
array
(
'tags'
=>
'method="post" action="'
.
qa_self_html
()
.
'"'
,
'style'
=>
'wide'
,
'title'
=>
qa_lang_html
(
'users/change_password'
),
'fields'
=>
array
(
'old'
=>
array
(
'label'
=>
qa_lang_html
(
'users/old_password'
),
'tags'
=>
'name="oldpassword"'
,
'value'
=>
qa_html
(
@
$inoldpassword
),
'type'
=>
'password'
,
'error'
=>
qa_html
(
@
$errors
[
'oldpassword'
]),
),
'buttons'
=>
array
(
'change'
=>
array
(
'label'
=>
qa_lang_html
(
'users/change_password'
),
),
'new_1'
=>
array
(
'label'
=>
qa_lang_html
(
'users/new_password_1'
),
'tags'
=>
'name="newpassword1"'
,
'type'
=>
'password'
,
'error'
=>
qa_html
(
@
$errors
[
'password'
]),
),
'hidden'
=>
array
(
'dochangepassword'
=>
array
(
'tags'
=>
'name="dochangepassword"'
,
'value'
=>
'1'
,
),
'code'
=>
array
(
'tags'
=>
'name="code"'
,
'value'
=>
qa_get_form_security_code
(
'password'
),
),
'new_2'
=>
array
(
'label'
=>
qa_lang_html
(
'users/new_password_2'
),
'tags'
=>
'name="newpassword2"'
,
'type'
=>
'password'
,
'error'
=>
qa_html
(
@
$errors
[
'newpassword2'
]),
),
)
;
)
,
if
(
!
$haspassword
&&
!
$haspasswordold
)
{
$qa_content
[
'form_password'
][
'fields'
][
'old'
][
'type'
]
=
'static'
;
$qa_content
[
'form_password'
][
'fields'
][
'old'
][
'value'
]
=
qa_lang_html
(
'users/password_none'
);
}
'buttons'
=>
array
(
'change'
=>
array
(
'label'
=>
qa_lang_html
(
'users/change_password'
),
),
),
if
(
qa_get_state
()
==
'password-changed'
)
$qa_content
[
'form_profile'
][
'ok'
]
=
qa_lang_html
(
'users/password_changed'
);
'hidden'
=>
array
(
'dochangepassword'
=>
array
(
'tags'
=>
'name="dochangepassword"'
,
'value'
=>
'1'
,
),
'code'
=>
array
(
'tags'
=>
'name="code"'
,
'value'
=>
qa_get_form_security_code
(
'password'
),
),
),
);
if
(
!
$haspassword
&&
!
$haspasswordold
)
{
$qa_content
[
'form_password'
][
'fields'
][
'old'
][
'type'
]
=
'static'
;
$qa_content
[
'form_password'
][
'fields'
][
'old'
][
'value'
]
=
qa_lang_html
(
'users/password_none'
);
}
$qa_content
[
'navigation'
][
'sub'
]
=
qa_user_sub_navigation
(
$useraccount
[
'handle'
],
'account'
,
true
);
if
(
qa_get_state
()
==
'password-changed'
)
$qa_content
[
'form_profile'
][
'ok'
]
=
qa_lang_html
(
'users/password_changed'
);
return
$qa_content
;
$qa_content
[
'navigation'
][
'sub'
]
=
qa_user_sub_navigation
(
$useraccount
[
'handle'
],
'account'
,
true
)
;
/*
Omit PHP closing tag to help avoid accidental output
*/
return
$qa_content
;
qa-include/pages/confirm.php
View file @
e449b233
...
...
@@ -20,136 +20,131 @@
More about this license: http://www.question2answer.org/license.php
*/
if
(
!
defined
(
'QA_VERSION'
))
{
// don't allow this page to be requested directly from browser
header
(
'Location: ../'
);
exit
;
}
if
(
!
defined
(
'QA_VERSION'
))
{
// don't allow this page to be requested directly from browser
header
(
'Location: ../'
);
exit
;
}
// Check we're not using single-sign on integration, that we're not already confirmed, and that we're not blocked
if
(
QA_FINAL_EXTERNAL_USERS
)
qa_fatal_error
(
'User login is handled by external code'
);
if
(
QA_FINAL_EXTERNAL_USERS
)
qa_fatal_error
(
'User login is handled by external code'
);
// Check if we've been asked to send a new link or have a successful email confirmation
$incode
=
trim
(
qa_get
(
'c'
));
// trim to prevent passing in blank values to match uninitiated DB rows
$inhandle
=
qa_get
(
'u'
);
$loginuserid
=
qa_get_logged_in_userid
();
$useremailed
=
false
;
$userconfirmed
=
false
;
$incode
=
trim
(
qa_get
(
'c'
));
// trim to prevent passing in blank values to match uninitiated DB rows
$inhandle
=
qa_get
(
'u'
);
$loginuserid
=
qa_get_logged_in_userid
();
$useremailed
=
false
;
$userconfirmed
=
false
;
if
(
isset
(
$loginuserid
)
&&
qa_clicked
(
'dosendconfirm'
))
{
// button clicked to send a link
require_once
QA_INCLUDE_DIR
.
'app/users-edit.php'
;
if
(
isset
(
$loginuserid
)
&&
qa_clicked
(
'dosendconfirm'
))
{
// button clicked to send a link
require_once
QA_INCLUDE_DIR
.
'app/users-edit.php'
;
if
(
!
qa_check_form_security_code
(
'confirm'
,
qa_post_text
(
'code'
)))
$pageerror
=
qa_lang_html
(
'misc/form_security_again'
);
if
(
!
qa_check_form_security_code
(
'confirm'
,
qa_post_text
(
'code'
)))
$pageerror
=
qa_lang_html
(
'misc/form_security_again'
);
else
{
qa_send_new_confirm
(
$loginuserid
);
$useremailed
=
true
;
}
else
{
qa_send_new_confirm
(
$loginuserid
);
$useremailed
=
true
;
}
}
elseif
(
strlen
(
$incode
))
{
// non-empty code detected from the URL
require_once
QA_INCLUDE_DIR
.
'db/selects.php'
;
require_once
QA_INCLUDE_DIR
.
'app/users-edit.php'
;
}
elseif
(
strlen
(
$incode
))
{
// non-empty code detected from the URL
require_once
QA_INCLUDE_DIR
.
'db/selects.php'
;
require_once
QA_INCLUDE_DIR
.
'app/users-edit.php'
;
if
(
!
empty
(
$inhandle
))
{
// match based on code and handle provided on URL
$userinfo
=
qa_db_select_with_pending
(
qa_db_user_account_selectspec
(
$inhandle
,
false
));
if
(
!
empty
(
$inhandle
))
{
// match based on code and handle provided on URL
$userinfo
=
qa_db_select_with_pending
(
qa_db_user_account_selectspec
(
$inhandle
,
false
));
if
(
strtolower
(
trim
(
@
$userinfo
[
'emailcode'
]))
==
strtolower
(
$incode
))
{
qa_complete_confirm
(
$userinfo
[
'userid'
],
$userinfo
[
'email'
],
$userinfo
[
'handle'
]);
$userconfirmed
=
true
;
}
if
(
strtolower
(
trim
(
@
$userinfo
[
'emailcode'
]))
==
strtolower
(
$incode
))
{
qa_complete_confirm
(
$userinfo
[
'userid'
],
$userinfo
[
'email'
],
$userinfo
[
'handle'
]);
$userconfirmed
=
true
;
}
}
if
((
!
$userconfirmed
)
&&
isset
(
$loginuserid
))
{
// as a backup, also match code on URL against logged in user
$userinfo
=
qa_db_select_with_pending
(
qa_db_user_account_selectspec
(
$loginuserid
,
true
));
$flags
=
$userinfo
[
'flags'
];
if
((
!
$userconfirmed
)
&&
isset
(
$loginuserid
))
{
// as a backup, also match code on URL against logged in user
$userinfo
=
qa_db_select_with_pending
(
qa_db_user_account_selectspec
(
$loginuserid
,
true
));
$flags
=
$userinfo
[
'flags'
];
if
(
(
$flags
&
QA_USER_FLAGS_EMAIL_CONFIRMED
)
&&
!
(
$flags
&
QA_USER_FLAGS_MUST_CONFIRM
)
)
$userconfirmed
=
true
;
// if they confirmed before, just show message as if it happened now
if
((
$flags
&
QA_USER_FLAGS_EMAIL_CONFIRMED
)
&&
!
(
$flags
&
QA_USER_FLAGS_MUST_CONFIRM
)
)
$userconfirmed
=
true
;
// if they confirmed before, just show message as if it happened now
elseif
(
strtolower
(
trim
(
$userinfo
[
'emailcode'
]))
==
strtolower
(
$incode
))
{
qa_complete_confirm
(
$userinfo
[
'userid'
],
$userinfo
[
'email'
],
$userinfo
[
'handle'
]);
$userconfirmed
=
true
;
}
elseif
(
strtolower
(
trim
(
$userinfo
[
'emailcode'
]))
==
strtolower
(
$incode
))
{
qa_complete_confirm
(
$userinfo
[
'userid'
],
$userinfo
[
'email'
],
$userinfo
[
'handle'
]);
$userconfirmed
=
true
;
}
}
}
// Prepare content for theme
$qa_content
=
qa_content_prepare
();
$qa_content
=
qa_content_prepare
();
$qa_content
[
'title'
]
=
qa_lang_html
(
'users/confirm_title'
);
$qa_content
[
'error'
]
=
@
$pageerror
;
$qa_content
[
'title'
]
=
qa_lang_html
(
'users/confirm_title'
);
$qa_content
[
'error'
]
=
@
$pageerror
;
if
(
$useremailed
)
$qa_content
[
'error'
]
=
qa_lang_html
(
'users/confirm_emailed'
);
// not an error, but display it prominently anyway
if
(
$useremailed
)
{
$qa_content
[
'error'
]
=
qa_lang_html
(
'users/confirm_emailed'
);
// not an error, but display it prominently anyway
elseif
(
$userconfirmed
)
{
$qa_content
[
'error'
]
=
qa_lang_html
(
'users/confirm_complete'
);
}
elseif
(
$userconfirmed
)
{
$qa_content
[
'error'
]
=
qa_lang_html
(
'users/confirm_complete'
);
if
(
!
isset
(
$loginuserid
))
$qa_content
[
'suggest_next'
]
=
strtr
(
qa_lang_html
(
'users/log_in_to_access'
),
array
(
'^1'
=>
'<a href="'
.
qa_path_html
(
'login'
,
array
(
'e'
=>
$inhandle
))
.
'"
>'
,
'^2'
=>
'</a>'
,
)
);
if
(
!
isset
(
$loginuserid
))
{
$qa_content
[
'suggest_next'
]
=
strtr
(
qa_lang_html
(
'users/log_in_to_access'
),
array
(
'^1'
=>
'<a href="'
.
qa_path_html
(
'login'
,
array
(
'e'
=>
$inhandle
))
.
'">'
,
'^2'
=>
'</a
>'
,
)
);
}
}
elseif
(
isset
(
$loginuserid
))
{
// if logged in, allow sending a fresh link
require_once
QA_INCLUDE_DIR
.
'util/string.php'
;
}
elseif
(
isset
(
$loginuserid
))
{
// if logged in, allow sending a fresh link
require_once
QA_INCLUDE_DIR
.
'util/string.php'
;
if
(
strlen
(
$incode
))
$qa_content
[
'error'
]
=
qa_lang_html
(
'users/confirm_wrong_resend'
);
if
(
strlen
(
$incode
))
$qa_content
[
'error'
]
=
qa_lang_html
(
'users/confirm_wrong_resend'
);
$email
=
qa_get_logged_in_email
();
$email
=
qa_get_logged_in_email
();
$qa_content
[
'form'
]
=
array
(
'tags'
=>
'method="post" action="'
.
qa_path_html
(
'confirm'
)
.
'"'
,
$qa_content
[
'form'
]
=
array
(
'tags'
=>
'method="post" action="'
.
qa_path_html
(
'confirm'
)
.
'"'
,
'style'
=>
'tall'
,
'style'
=>
'tall'
,
'fields'
=>
array
(
'email'
=>
array
(
'label'
=>
qa_lang_html
(
'users/email_label'
),
'value'
=>
qa_html
(
$email
)
.
strtr
(
qa_lang_html
(
'users/change_email_link'
),
array
(
'^1'
=>
'<a href="'
.
qa_path_html
(
'account'
)
.
'">'
,
'fields'
=>
array
(
'email'
=>
array
(
'label'
=>
qa_lang_html
(
'users/email_label'
),
'value'
=>
qa_html
(
$email
)
.
strtr
(
qa_lang_html
(
'users/change_email_link'
),
array
(
'^1'
=>
'<a href="'
.
qa_path_html
(
'account'
)
.
'">'
,
'^2'
=>
'</a>'
,
)),
'type'
=>
'static'
,
),
'type'
=>
'static'
,
),
),
'buttons'
=>
array
(
'send'
=>
array
(
'tags'
=>
'name="dosendconfirm"'
,
'label'
=>
qa_lang_html
(
'users/send_confirm_button'
),
),
'buttons'
=>
array
(
'send'
=>
array
(
'tags'
=>
'name="dosendconfirm"'
,
'label'
=>
qa_lang_html
(
'users/send_confirm_button'
),
),
),
'hidden'
=>
array
(
'code'
=>
qa_get_form_security_code
(
'confirm'
),
),
);
if
(
!
qa_email_validate
(
$email
))
{
$qa_content
[
'error'
]
=
qa_lang_html
(
'users/email_invalid'
);
unset
(
$qa_content
[
'form'
][
'buttons'
][
'send'
]);
}
}
else
$qa_content
[
'error'
]
=
qa_insert_login_links
(
qa_lang_html
(
'users/confirm_wrong_log_in'
),
'confirm'
);
'hidden'
=>
array
(
'code'
=>
qa_get_form_security_code
(
'confirm'
),
),
);
if
(
!
qa_email_validate
(
$email
))
{
$qa_content
[
'error'
]
=
qa_lang_html
(
'users/email_invalid'
);
unset
(
$qa_content
[
'form'
][
'buttons'
][
'send'
]);
}
return
$qa_content
;
}
else
$qa_content
[
'error'
]
=
qa_insert_login_links
(
qa_lang_html
(
'users/confirm_wrong_log_in'
),
'confirm'
);
/*
Omit PHP closing tag to help avoid accidental output
*/
\ No newline at end of file
return
$qa_content
;
qa-include/pages/login.php
View file @
e449b233
...
...
@@ -20,177 +20,176 @@
More about this license: http://www.question2answer.org/license.php
*/
if
(
!
defined
(
'QA_VERSION'
))
{
// don't allow this page to be requested directly from browser
header
(
'Location: ../'
);
exit
;
}
if
(
!
defined
(
'QA_VERSION'
))
{
// don't allow this page to be requested directly from browser
header
(
'Location: ../'
);
exit
;
}
// Check we're not using Q2A's single-sign on integration and that we're not logged in
if
(
QA_FINAL_EXTERNAL_USERS
)
qa_fatal_error
(
'User login is handled by external code'
);
if
(
QA_FINAL_EXTERNAL_USERS
)
qa_fatal_error
(
'User login is handled by external code'
);
if
(
qa_is_logged_in
())
qa_redirect
(
''
);
if
(
qa_is_logged_in
())
qa_redirect
(
''
);
// Process submitted form after checking we haven't reached rate limit
$passwordsent
=
qa_get
(
'ps'
);
$emailexists
=
qa_get
(
'ee'
);
$inemailhandle
=
qa_post_text
(
'emailhandle'
);
$inpassword
=
qa_post_text
(
'password'
);
$inremember
=
qa_post_text
(
'remember'
);
$passwordsent
=
qa_get
(
'ps'
);
$emailexists
=
qa_get
(
'ee'
);
if
(
qa_clicked
(
'dologin'
)
&&
(
strlen
(
$inemailhandle
)
||
strlen
(
$inpassword
))
)
{
require_once
QA_INCLUDE_DIR
.
'app/limits.php'
;
$inemailhandle
=
qa_post_text
(
'emailhandle'
);
$inpassword
=
qa_post_text
(
'password'
);
$inremember
=
qa_post_text
(
'remember'
);
if
(
qa_user_limits_remaining
(
QA_LIMIT_LOGINS
))
{
require_once
QA_INCLUDE_DIR
.
'db/users.php'
;
require_once
QA_INCLUDE_DIR
.
'db/selects.php'
;
if
(
qa_clicked
(
'dologin'
)
&&
(
strlen
(
$inemailhandle
)
||
strlen
(
$inpassword
)))
{
require_once
QA_INCLUDE_DIR
.
'app/limits.php'
;
if
(
!
qa_check_form_security_code
(
'login'
,
qa_post_text
(
'code'
)))
$pageerror
=
qa_lang_html
(
'misc/form_security_again'
);
if
(
qa_user_limits_remaining
(
QA_LIMIT_LOGINS
))
{
require_once
QA_INCLUDE_DIR
.
'db/users.php'
;
require_once
QA_INCLUDE_DIR
.
'db/selects.php'
;
else
{
qa_limits_increment
(
null
,
QA_LIMIT_LOGINS
);
if
(
!
qa_check_form_security_code
(
'login'
,
qa_post_text
(
'code'
)))
{
$pageerror
=
qa_lang_html
(
'misc/form_security_again'
);
}
else
{
qa_limits_increment
(
null
,
QA_LIMIT_LOGINS
);
$errors
=
array
();
$errors
=
array
();
if
(
qa_opt
(
'allow_login_email_only'
)
||
(
strpos
(
$inemailhandle
,
'@'
)
!==
false
))
// handles can't contain @ symbols
$matchusers
=
qa_db_user_find_by_email
(
$inemailhandle
);
else
$matchusers
=
qa_db_user_find_by_handle
(
$inemailhandle
);
if
(
qa_opt
(
'allow_login_email_only'
)
||
strpos
(
$inemailhandle
,
'@'
)
!==
false
)
{
// handles can't contain @ symbols
$matchusers
=
qa_db_user_find_by_email
(
$inemailhandle
);
}
else
{
$matchusers
=
qa_db_user_find_by_handle
(
$inemailhandle
);
}
if
(
count
(
$matchusers
)
==
1
)
{
// if matches more than one (should be impossible), don't log in
$inuserid
=
$matchusers
[
0
];
$userinfo
=
qa_db_select_with_pending
(
qa_db_user_account_selectspec
(
$inuserid
,
true
));
if
(
count
(
$matchusers
)
==
1
)
{
// if matches more than one (should be impossible), don't log in
$inuserid
=
$matchusers
[
0
];
$userinfo
=
qa_db_select_with_pending
(
qa_db_user_account_selectspec
(
$inuserid
,
true
));
$legacyPassOk
=
hash_equals
(
strtolower
(
$userinfo
[
'passcheck'
]),
strtolower
(
qa_db_calc_passcheck
(
$inpassword
,
$userinfo
[
'passsalt'
])));
$legacyPassOk
=
hash_equals
(
strtolower
(
$userinfo
[
'passcheck'
]),
strtolower
(
qa_db_calc_passcheck
(
$inpassword
,
$userinfo
[
'passsalt'
])));
if
(
QA_PASSWORD_HASH
)
{
$haspassword
=
isset
(
$userinfo
[
'passhash'
]);
$haspasswordold
=
isset
(
$userinfo
[
'passsalt'
])
&&
isset
(
$userinfo
[
'passcheck'
]);
$passOk
=
password_verify
(
$inpassword
,
$userinfo
[
'passhash'
]);
if
(
QA_PASSWORD_HASH
)
{
$haspassword
=
isset
(
$userinfo
[
'passhash'
]);
$haspasswordold
=
isset
(
$userinfo
[
'passsalt'
])
&&
isset
(
$userinfo
[
'passcheck'
]);
$passOk
=
password_verify
(
$inpassword
,
$userinfo
[
'passhash'
]);
if
((
$haspasswordold
&&
$legacyPassOk
)
||
(
$haspassword
&&
$passOk
))
{
// upgrade password or rehash, when options like the cost parameter changed
if
(
$haspasswordold
||
password_needs_rehash
(
$userinfo
[
'passhash'
],
PASSWORD_BCRYPT
))
{
qa_db_user_set_password
(
$inuserid
,
$inpassword
);
}
}
else
{
$errors
[
'password'
]
=
qa_lang
(
'users/password_wrong'
);
if
((
$haspasswordold
&&
$legacyPassOk
)
||
(
$haspassword
&&
$passOk
))
{
// upgrade password or rehash, when options like the cost parameter changed
if
(
$haspasswordold
||
password_needs_rehash
(
$userinfo
[
'passhash'
],
PASSWORD_BCRYPT
))
{
qa_db_user_set_password
(
$inuserid
,
$inpassword
);
}
}
else
{
if
(
!
$legacyPassOk
)
{
$errors
[
'password'
]
=
qa_lang
(
'users/password_wrong'
);
}
$errors
[
'password'
]
=
qa_lang
(
'users/password_wrong'
);
}
}
else
{
if
(
!
$legacyPassOk
)
{
$errors
[
'password'
]
=
qa_lang
(
'users/password_wrong'
);
}
}
if
(
!
isset
(
$errors
[
'password'
]))
{
// login and redirect
require_once
QA_INCLUDE_DIR
.
'app/users.php'
;
qa_set_logged_in_user
(
$inuserid
,
$userinfo
[
'handle'
],
!
empty
(
$inremember
));
if
(
!
isset
(
$errors
[
'password'
]))
{
// login and redirect
require_once
QA_INCLUDE_DIR
.
'app/users.php'
;
qa_set_logged_in_user
(
$inuserid
,
$userinfo
[
'handle'
],
!
empty
(
$inremember
));
$topath
=
qa_get
(
'to'
);
$topath
=
qa_get
(
'to'
);
if
(
isset
(
$topath
))
qa_redirect_raw
(
qa_path_to_root
()
.
$topath
);
// path already provided as URL fragment
elseif
(
$passwordsent
)
qa_redirect
(
'account'
);
else
qa_redirect
(
''
);
}
if
(
isset
(
$topath
))
qa_redirect_raw
(
qa_path_to_root
()
.
$topath
);
// path already provided as URL fragment
elseif
(
$passwordsent
)
qa_redirect
(
'account'
);
else
qa_redirect
(
''
);
}
}
else
$errors
[
'emailhandle'
]
=
qa_lang
(
'users/user_not_found'
);
}
else
{
$errors
[
'emailhandle'
]
=
qa_lang
(
'users/user_not_found'
);
}
}
}
else
$pageerror
=
qa_lang
(
'users/login_limit'
);
}
else
{
$pageerror
=
qa_lang
(
'users/login_limit'
);
}
}
else
$inemailhandle
=
qa_get
(
'e'
);
}
else
{
$inemailhandle
=
qa_get
(
'e'
);
}
// Prepare content for theme
$qa_content
=
qa_content_prepare
();
$qa_content
=
qa_content_prepare
();
$qa_content
[
'title'
]
=
qa_lang_html
(
'users/login_title'
);
$qa_content
[
'title'
]
=
qa_lang_html
(
'users/login_title'
);
$qa_content
[
'error'
]
=
@
$pageerror
;
$qa_content
[
'error'
]
=
@
$pageerror
;
if
(
empty
(
$inemailhandle
)
||
isset
(
$errors
[
'emailhandle'
]))
$forgotpath
=
qa_path
(
'forgot'
);
else
$forgotpath
=
qa_path
(
'forgot'
,
array
(
'e'
=>
$inemailhandle
));
if
(
empty
(
$inemailhandle
)
||
isset
(
$errors
[
'emailhandle'
]))
$forgotpath
=
qa_path
(
'forgot'
);
else
$forgotpath
=
qa_path
(
'forgot'
,
array
(
'e'
=>
$inemailhandle
));
$forgothtml
=
'<a href="'
.
qa_html
(
$forgotpath
)
.
'">'
.
qa_lang_html
(
'users/forgot_link'
)
.
'</a>'
;
$forgothtml
=
'<a href="'
.
qa_html
(
$forgotpath
)
.
'">'
.
qa_lang_html
(
'users/forgot_link'
)
.
'</a>'
;
$qa_content
[
'form'
]
=
array
(
'tags'
=>
'method="post" action="'
.
qa_self_html
()
.
'"'
,
$qa_content
[
'form'
]
=
array
(
'tags'
=>
'method="post" action="'
.
qa_self_html
()
.
'"'
,
'style'
=>
'tall'
,
'style'
=>
'tall'
,
'ok'
=>
$passwordsent
?
qa_lang_html
(
'users/password_sent'
)
:
(
$emailexists
?
qa_lang_html
(
'users/email_exists'
)
:
null
),
'ok'
=>
$passwordsent
?
qa_lang_html
(
'users/password_sent'
)
:
(
$emailexists
?
qa_lang_html
(
'users/email_exists'
)
:
null
),
'fields'
=>
array
(
'email_handle'
=>
array
(
'label'
=>
qa_opt
(
'allow_login_email_only'
)
?
qa_lang_html
(
'users/email_label'
)
:
qa_lang_html
(
'users/email_handle_label'
),
'tags'
=>
'name="emailhandle" id="emailhandle" dir="auto"'
,
'value'
=>
qa_html
(
@
$inemailhandle
),
'error'
=>
qa_html
(
@
$errors
[
'emailhandle'
]),
),
'password'
=>
array
(
'type'
=>
'password'
,
'label'
=>
qa_lang_html
(
'users/password_label'
),
'tags'
=>
'name="password" id="password" dir="auto"'
,
'value'
=>
qa_html
(
@
$inpassword
),
'error'
=>
empty
(
$errors
[
'password'
])
?
''
:
(
qa_html
(
@
$errors
[
'password'
])
.
' - '
.
$forgothtml
),
'note'
=>
$passwordsent
?
qa_lang_html
(
'users/password_sent'
)
:
$forgothtml
,
),
'remember'
=>
array
(
'type'
=>
'checkbox'
,
'label'
=>
qa_lang_html
(
'users/remember_label'
),
'tags'
=>
'name="remember"'
,
'value'
=>
!
empty
(
$inremember
),
),
'fields'
=>
array
(
'email_handle'
=>
array
(
'label'
=>
qa_opt
(
'allow_login_email_only'
)
?
qa_lang_html
(
'users/email_label'
)
:
qa_lang_html
(
'users/email_handle_label'
),
'tags'
=>
'name="emailhandle" id="emailhandle" dir="auto"'
,
'value'
=>
qa_html
(
@
$inemailhandle
),
'error'
=>
qa_html
(
@
$errors
[
'emailhandle'
]),
),
'buttons'
=>
array
(
'login'
=>
array
(
'label'
=>
qa_lang_html
(
'users/login_button'
),
),
'password'
=>
array
(
'type'
=>
'password'
,
'label'
=>
qa_lang_html
(
'users/password_label'
),
'tags'
=>
'name="password" id="password" dir="auto"'
,
'value'
=>
qa_html
(
@
$inpassword
),
'error'
=>
empty
(
$errors
[
'password'
])
?
''
:
(
qa_html
(
@
$errors
[
'password'
])
.
' - '
.
$forgothtml
),
'note'
=>
$passwordsent
?
qa_lang_html
(
'users/password_sent'
)
:
$forgothtml
,
),
'hidden'
=>
array
(
'dologin'
=>
'1'
,
'code'
=>
qa_get_form_security_code
(
'login'
),
'remember'
=>
array
(
'type'
=>
'checkbox'
,
'label'
=>
qa_lang_html
(
'users/remember_label'
),
'tags'
=>
'name="remember"'
,
'value'
=>
!
empty
(
$inremember
),
),
)
;
)
,
$loginmodules
=
qa_load_modules_with
(
'login'
,
'login_html'
);
'buttons'
=>
array
(
'login'
=>
array
(
'label'
=>
qa_lang_html
(
'users/login_button'
),
),
),
foreach
(
$loginmodules
as
$module
)
{
ob_start
();
$module
->
login_html
(
qa_opt
(
'site_url'
)
.
qa_get
(
'to'
),
'login'
);
$html
=
ob_get_clean
();
'hidden'
=>
array
(
'dologin'
=>
'1'
,
'code'
=>
qa_get_form_security_code
(
'login'
),
),
);
if
(
strlen
(
$html
))
@
$qa_content
[
'custom'
]
.=
'<br>'
.
$html
.
'<br>'
;
}
$loginmodules
=
qa_load_modules_with
(
'login'
,
'login_html'
);
$qa_content
[
'focusid'
]
=
(
isset
(
$inemailhandle
)
&&
!
isset
(
$errors
[
'emailhandle'
]))
?
'password'
:
'emailhandle'
;
foreach
(
$loginmodules
as
$module
)
{
ob_start
();
$module
->
login_html
(
qa_opt
(
'site_url'
)
.
qa_get
(
'to'
),
'login'
);
$html
=
ob_get_clean
();
if
(
strlen
(
$html
))
@
$qa_content
[
'custom'
]
.=
'<br>'
.
$html
.
'<br>'
;
}
return
$qa_content
;
$qa_content
[
'focusid'
]
=
(
isset
(
$inemailhandle
)
&&
!
isset
(
$errors
[
'emailhandle'
]))
?
'password'
:
'emailhandle'
;
/*
Omit PHP closing tag to help avoid accidental output
*/
return
$qa_content
;
qa-include/pages/logout.php
View file @
e449b233
...
...
@@ -20,21 +20,16 @@
More about this license: http://www.question2answer.org/license.php
*/
if
(
!
defined
(
'QA_VERSION'
))
{
// don't allow this page to be requested directly from browser
header
(
'Location: ../'
);
exit
;
}
if
(
!
defined
(
'QA_VERSION'
))
{
// don't allow this page to be requested directly from browser
header
(
'Location: ../'
);
exit
;
}
if
(
QA_FINAL_EXTERNAL_USERS
)
qa_fatal_error
(
'User logout is handled by external code'
);
if
(
QA_FINAL_EXTERNAL_USERS
)
qa_fatal_error
(
'User logout is handled by external code'
);
if
(
qa_is_logged_in
())
qa_set_logged_in_user
(
null
);
if
(
qa_is_logged_in
())
qa_set_logged_in_user
(
null
);
qa_redirect
(
''
);
// back to home page
/*
Omit PHP closing tag to help avoid accidental output
*/
\ No newline at end of file
qa_redirect
(
''
);
// back to home page
qa-include/pages/register.php
View file @
e449b233
...
...
@@ -20,230 +20,223 @@
More about this license: http://www.question2answer.org/license.php
*/
if
(
!
defined
(
'QA_VERSION'
))
{
// don't allow this page to be requested directly from browser
header
(
'Location: ../'
);
exit
;
}
if
(
!
defined
(
'QA_VERSION'
))
{
// don't allow this page to be requested directly from browser
header
(
'Location: ../'
);
exit
;
}
require_once
QA_INCLUDE_DIR
.
'app/captcha.php'
;
require_once
QA_INCLUDE_DIR
.
'db/users.php'
;
require_once
QA_INCLUDE_DIR
.
'app/captcha.php'
;
require_once
QA_INCLUDE_DIR
.
'db/users.php'
;
// Check we're not using single-sign on integration, that we're not logged in, and we're not blocked
if
(
QA_FINAL_EXTERNAL_USERS
)
qa_fatal_error
(
'User registration is handled by external code'
);
if
(
QA_FINAL_EXTERNAL_USERS
)
qa_fatal_error
(
'User registration is handled by external code'
);
if
(
qa_is_logged_in
())
qa_redirect
(
''
);
if
(
qa_is_logged_in
())
qa_redirect
(
''
);
// Get information about possible additional fields
$show_terms
=
qa_opt
(
'show_register_terms'
);
$show_terms
=
qa_opt
(
'show_register_terms'
);
$userfields
=
qa_db_select_with_pending
(
qa_db_userfields_selectspec
()
);
$userfields
=
qa_db_select_with_pending
(
qa_db_userfields_selectspec
()
);
foreach
(
$userfields
as
$index
=>
$userfield
)
{
if
(
!
(
$userfield
[
'flags'
]
&
QA_FIELD_FLAGS_ON_REGISTER
))
unset
(
$userfields
[
$index
]);
}
foreach
(
$userfields
as
$index
=>
$userfield
)
{
if
(
!
(
$userfield
[
'flags'
]
&
QA_FIELD_FLAGS_ON_REGISTER
))
unset
(
$userfields
[
$index
]);
}
// Check we haven't suspended registration, and this IP isn't blocked
if
(
qa_opt
(
'suspend_register_users'
))
{
$qa_content
=
qa_content_prepare
();
$qa_content
[
'error'
]
=
qa_lang_html
(
'users/register_suspended'
);
return
$qa_content
;
}
if
(
qa_opt
(
'suspend_register_users'
))
{
$qa_content
=
qa_content_prepare
();
$qa_content
[
'error'
]
=
qa_lang_html
(
'users/register_suspended'
);
return
$qa_content
;
}
if
(
qa_user_permit_error
())
{
$qa_content
=
qa_content_prepare
();
$qa_content
[
'error'
]
=
qa_lang_html
(
'users/no_permission'
);
return
$qa_content
;
}
if
(
qa_user_permit_error
())
{
$qa_content
=
qa_content_prepare
();
$qa_content
[
'error'
]
=
qa_lang_html
(
'users/no_permission'
);
return
$qa_content
;
}
// Process submitted form
if
(
qa_clicked
(
'doregister'
))
{
require_once
QA_INCLUDE_DIR
.
'app/limits.php'
;
if
(
qa_user_limits_remaining
(
QA_LIMIT_REGISTRATIONS
))
{
require_once
QA_INCLUDE_DIR
.
'app/users-edit.php'
;
if
(
qa_clicked
(
'doregister'
))
{
require_once
QA_INCLUDE_DIR
.
'app/limits.php'
;
if
(
qa_user_limits_remaining
(
QA_LIMIT_REGISTRATIONS
))
{
require_once
QA_INCLUDE_DIR
.
'app/users-edit.php'
;
$inemail
=
qa_post_text
(
'email'
);
$inpassword
=
qa_post_text
(
'password'
);
$inhandle
=
qa_post_text
(
'handle'
);
$interms
=
(
int
)
qa_post_text
(
'terms'
);
$inprofile
=
array
();
foreach
(
$userfields
as
$userfield
)
$inprofile
[
$userfield
[
'fieldid'
]]
=
qa_post_text
(
'field_'
.
$userfield
[
'fieldid'
]);
if
(
!
qa_check_form_security_code
(
'register'
,
qa_post_text
(
'code'
)))
{
$pageerror
=
qa_lang_html
(
'misc/form_security_again'
);
}
else
{
// core validation
$errors
=
array_merge
(
qa_handle_email_filter
(
$inhandle
,
$inemail
),
qa_password_validate
(
$inpassword
)
);
// T&Cs validation
if
(
$show_terms
&&
!
$interms
)
$errors
[
'terms'
]
=
qa_lang_html
(
'users/terms_not_accepted'
);
// filter module validation
if
(
count
(
$inprofile
))
{
$filtermodules
=
qa_load_modules_with
(
'filter'
,
'filter_profile'
);
foreach
(
$filtermodules
as
$filtermodule
)
$filtermodule
->
filter_profile
(
$inprofile
,
$errors
,
null
,
null
);
}
$inemail
=
qa_post_text
(
'email'
);
$inpassword
=
qa_post_text
(
'password'
);
$inhandle
=
qa_post_text
(
'handle'
);
$interms
=
(
int
)
qa_post_text
(
'terms'
);
if
(
qa_opt
(
'captcha_on_register'
))
qa_captcha_validate_post
(
$errors
);
$inprofile
=
array
();
foreach
(
$userfields
as
$userfield
)
$inprofile
[
$userfield
[
'fieldid'
]]
=
qa_post_text
(
'field_'
.
$userfield
[
'fieldid'
]
);
if
(
empty
(
$errors
))
{
// register and redirect
qa_limits_increment
(
null
,
QA_LIMIT_REGISTRATIONS
);
if
(
!
qa_check_form_security_code
(
'register'
,
qa_post_text
(
'code'
)))
{
$pageerror
=
qa_lang_html
(
'misc/form_security_again'
);
}
else
{
// core validation
$errors
=
array_merge
(
qa_handle_email_filter
(
$inhandle
,
$inemail
),
qa_password_validate
(
$inpassword
)
);
$userid
=
qa_create_new_user
(
$inemail
,
$inpassword
,
$inhandle
);
// T&Cs validation
if
(
$show_terms
&&
!
$interms
)
$errors
[
'terms'
]
=
qa_lang_html
(
'users/terms_not_accepted'
);
foreach
(
$userfields
as
$userfield
)
qa_db_user_profile_set
(
$userid
,
$userfield
[
'title'
],
$inprofile
[
$userfield
[
'fieldid'
]]);
// filter module validation
if
(
count
(
$inprofile
))
{
$filtermodules
=
qa_load_modules_with
(
'filter'
,
'filter_profile'
);
foreach
(
$filtermodules
as
$filtermodule
)
$filtermodule
->
filter_profile
(
$inprofile
,
$errors
,
null
,
null
);
}
qa_set_logged_in_user
(
$userid
,
$inhandle
);
if
(
qa_opt
(
'captcha_on_register'
))
qa_captcha_validate_post
(
$errors
);
$topath
=
qa_get
(
'to'
);
if
(
empty
(
$errors
))
{
// register and redirect
qa_limits_increment
(
null
,
QA_LIMIT_REGISTRATIONS
);
if
(
isset
(
$topath
))
qa_redirect_raw
(
qa_path_to_root
()
.
$topath
);
// path already provided as URL fragment
else
qa_redirect
(
''
);
}
}
$userid
=
qa_create_new_user
(
$inemail
,
$inpassword
,
$inhandle
);
}
else
$pageerror
=
qa_lang
(
'users/register_limit'
);
}
foreach
(
$userfields
as
$userfield
)
qa_db_user_profile_set
(
$userid
,
$userfield
[
'title'
],
$inprofile
[
$userfield
[
'fieldid'
]]);
qa_set_logged_in_user
(
$userid
,
$inhandle
);
// Prepare content for theme
$topath
=
qa_get
(
'to'
);
$qa_content
=
qa_content_prepare
(
);
if
(
isset
(
$topath
))
qa_redirect_raw
(
qa_path_to_root
()
.
$topath
);
// path already provided as URL fragment
else
qa_redirect
(
''
);
}
}
$qa_content
[
'title'
]
=
qa_lang_html
(
'users/register_title'
);
}
else
$pageerror
=
qa_lang
(
'users/register_limit'
);
}
$qa_content
[
'error'
]
=
@
$pageerror
;
$qa_content
[
'form'
]
=
array
(
'tags'
=>
'method="post" action="'
.
qa_self_html
()
.
'"'
,
// Prepare content for theme
'style'
=>
'tall'
,
$qa_content
=
qa_content_prepare
();
'fields'
=>
array
(
'handle'
=>
array
(
'label'
=>
qa_lang_html
(
'users/handle_label'
),
'tags'
=>
'name="handle" id="handle" dir="auto"'
,
'value'
=>
qa_html
(
@
$inhandle
),
'error'
=>
qa_html
(
@
$errors
[
'handle'
]),
),
$qa_content
[
'title'
]
=
qa_lang_html
(
'users/register_title'
);
$qa_content
[
'error'
]
=
@
$pageerror
;
$qa_content
[
'form'
]
=
array
(
'tags'
=>
'method="post" action="'
.
qa_self_html
()
.
'"'
,
'style'
=>
'tall'
,
'fields'
=>
array
(
'handle'
=>
array
(
'label'
=>
qa_lang_html
(
'users/handle_label'
),
'tags'
=>
'name="handle" id="handle" dir="auto"'
,
'value'
=>
qa_html
(
@
$inhandle
),
'error'
=>
qa_html
(
@
$errors
[
'handle'
]),
),
'password'
=>
array
(
'type'
=>
'password'
,
'label'
=>
qa_lang_html
(
'users/password_label'
),
'tags'
=>
'name="password" id="password" dir="auto"'
,
'value'
=>
qa_html
(
@
$inpassword
),
'error'
=>
qa_html
(
@
$errors
[
'password'
]),
),
'email'
=>
array
(
'label'
=>
qa_lang_html
(
'users/email_label'
),
'tags'
=>
'name="email" id="email" dir="auto"'
,
'value'
=>
qa_html
(
@
$inemail
),
'note'
=>
qa_opt
(
'email_privacy'
),
'error'
=>
qa_html
(
@
$errors
[
'email'
]),
),
'password'
=>
array
(
'type'
=>
'password'
,
'label'
=>
qa_lang_html
(
'users/password_label'
),
'tags'
=>
'name="password" id="password" dir="auto"'
,
'value'
=>
qa_html
(
@
$inpassword
),
'error'
=>
qa_html
(
@
$errors
[
'password'
]),
),
'buttons'
=>
array
(
'register'
=>
array
(
'tags'
=>
'onclick="qa_show_waiting_after(this, false);"'
,
'label'
=>
qa_lang_html
(
'users/register_button'
),
),
'email'
=>
array
(
'label'
=>
qa_lang_html
(
'users/email_label'
),
'tags'
=>
'name="email" id="email" dir="auto"'
,
'value'
=>
qa_html
(
@
$inemail
),
'note'
=>
qa_opt
(
'email_privacy'
),
'error'
=>
qa_html
(
@
$errors
[
'email'
]),
),
),
'hidden'
=>
array
(
'doregister'
=>
'1'
,
'code'
=>
qa_get_form_security_code
(
'register'
),
'buttons'
=>
array
(
'register'
=>
array
(
'tags'
=>
'onclick="qa_show_waiting_after(this, false);"'
,
'label'
=>
qa_lang_html
(
'users/register_button'
),
),
),
'hidden'
=>
array
(
'doregister'
=>
'1'
,
'code'
=>
qa_get_form_security_code
(
'register'
),
),
);
// prepend custom message
$custom
=
qa_opt
(
'show_custom_register'
)
?
trim
(
qa_opt
(
'custom_register'
))
:
''
;
if
(
strlen
(
$custom
))
{
array_unshift
(
$qa_content
[
'form'
][
'fields'
],
array
(
'type'
=>
'custom'
,
'note'
=>
$custom
,
));
}
foreach
(
$userfields
as
$userfield
)
{
$value
=
@
$inprofile
[
$userfield
[
'fieldid'
]];
$label
=
trim
(
qa_user_userfield_label
(
$userfield
),
':'
);
if
(
strlen
(
$label
))
$label
.=
':'
;
$qa_content
[
'form'
][
'fields'
][
$userfield
[
'title'
]]
=
array
(
'label'
=>
qa_html
(
$label
),
'tags'
=>
'name="field_'
.
$userfield
[
'fieldid'
]
.
'"'
,
'value'
=>
qa_html
(
$value
),
'error'
=>
qa_html
(
@
$errors
[
$userfield
[
'fieldid'
]]),
'rows'
=>
(
$userfield
[
'flags'
]
&
QA_FIELD_FLAGS_MULTI_LINE
)
?
8
:
null
,
);
}
if
(
qa_opt
(
'captcha_on_register'
))
qa_set_up_captcha_field
(
$qa_content
,
$qa_content
[
'form'
][
'fields'
],
@
$errors
);
// show T&Cs checkbox
if
(
$show_terms
)
{
$qa_content
[
'form'
][
'fields'
][
'terms'
]
=
array
(
'type'
=>
'checkbox'
,
'label'
=>
trim
(
qa_opt
(
'register_terms'
)),
'tags'
=>
'name="terms" id="terms"'
,
'value'
=>
qa_html
(
@
$interms
),
'error'
=>
qa_html
(
@
$errors
[
'terms'
]),
);
}
// prepend custom message
$custom
=
qa_opt
(
'show_custom_register'
)
?
trim
(
qa_opt
(
'custom_register'
))
:
''
;
if
(
strlen
(
$custom
))
{
array_unshift
(
$qa_content
[
'form'
][
'fields'
],
array
(
'type'
=>
'custom'
,
'note'
=>
$custom
,
));
}
foreach
(
$userfields
as
$userfield
)
{
$value
=
@
$inprofile
[
$userfield
[
'fieldid'
]];
$label
=
trim
(
qa_user_userfield_label
(
$userfield
),
':'
);
if
(
strlen
(
$label
))
$label
.=
':'
;
$qa_content
[
'form'
][
'fields'
][
$userfield
[
'title'
]]
=
array
(
'label'
=>
qa_html
(
$label
),
'tags'
=>
'name="field_'
.
$userfield
[
'fieldid'
]
.
'"'
,
'value'
=>
qa_html
(
$value
),
'error'
=>
qa_html
(
@
$errors
[
$userfield
[
'fieldid'
]]),
'rows'
=>
(
$userfield
[
'flags'
]
&
QA_FIELD_FLAGS_MULTI_LINE
)
?
8
:
null
,
);
}
if
(
qa_opt
(
'captcha_on_register'
))
qa_set_up_captcha_field
(
$qa_content
,
$qa_content
[
'form'
][
'fields'
],
@
$errors
);
// show T&Cs checkbox
if
(
$show_terms
)
{
$qa_content
[
'form'
][
'fields'
][
'terms'
]
=
array
(
'type'
=>
'checkbox'
,
'label'
=>
trim
(
qa_opt
(
'register_terms'
)),
'tags'
=>
'name="terms" id="terms"'
,
'value'
=>
qa_html
(
@
$interms
),
'error'
=>
qa_html
(
@
$errors
[
'terms'
]),
);
}
$loginmodules
=
qa_load_modules_with
(
'login'
,
'login_html'
);
foreach
(
$loginmodules
as
$module
)
{
ob_start
();
$module
->
login_html
(
qa_opt
(
'site_url'
)
.
qa_get
(
'to'
),
'register'
);
$html
=
ob_get_clean
();
if
(
strlen
(
$html
))
@
$qa_content
[
'custom'
]
.=
'<br>'
.
$html
.
'<br>'
;
}
// prioritize 'handle' for keyboard focus
$qa_content
[
'focusid'
]
=
isset
(
$errors
[
'handle'
])
?
'handle'
:
(
isset
(
$errors
[
'password'
])
?
'password'
:
(
isset
(
$errors
[
'email'
])
?
'email'
:
'handle'
));
$loginmodules
=
qa_load_modules_with
(
'login'
,
'login_html'
);
foreach
(
$loginmodules
as
$module
)
{
ob_start
();
$module
->
login_html
(
qa_opt
(
'site_url'
)
.
qa_get
(
'to'
),
'register'
);
$html
=
ob_get_clean
();
return
$qa_content
;
if
(
strlen
(
$html
))
@
$qa_content
[
'custom'
]
.=
'<br>'
.
$html
.
'<br>'
;
}
// prioritize 'handle' for keyboard focus
$qa_content
[
'focusid'
]
=
isset
(
$errors
[
'handle'
])
?
'handle'
:
(
isset
(
$errors
[
'password'
])
?
'password'
:
(
isset
(
$errors
[
'email'
])
?
'email'
:
'handle'
));
/*
Omit PHP closing tag to help avoid accidental output
*/
\ No newline at end of file
return
$qa_content
;
qa-include/pages/reset.php
View file @
e449b233
...
...
@@ -20,120 +20,116 @@
More about this license: http://www.question2answer.org/license.php
*/
if
(
!
defined
(
'QA_VERSION'
))
{
// don't allow this page to be requested directly from browser
header
(
'Location: ../'
);
exit
;
}
if
(
!
defined
(
'QA_VERSION'
))
{
// don't allow this page to be requested directly from browser
header
(
'Location: ../'
);
exit
;
}
// Check we're not using single-sign on integration and that we're not logged in
if
(
QA_FINAL_EXTERNAL_USERS
)
qa_fatal_error
(
'User login is handled by external code'
);
if
(
QA_FINAL_EXTERNAL_USERS
)
qa_fatal_error
(
'User login is handled by external code'
);
if
(
qa_is_logged_in
())
qa_redirect
(
''
);
if
(
qa_is_logged_in
())
qa_redirect
(
''
);
// Process incoming form
if
(
qa_clicked
(
'doreset'
))
{
require_once
QA_INCLUDE_DIR
.
'app/users-edit.php'
;
require_once
QA_INCLUDE_DIR
.
'db/users.php'
;
$inemailhandle
=
qa_post_text
(
'emailhandle'
);
$incode
=
trim
(
qa_post_text
(
'code'
));
// trim to prevent passing in blank values to match uninitiated DB rows
if
(
qa_clicked
(
'doreset'
))
{
require_once
QA_INCLUDE_DIR
.
'app/users-edit.php'
;
require_once
QA_INCLUDE_DIR
.
'db/users.php'
;
$errors
=
array
();
$inemailhandle
=
qa_post_text
(
'emailhandle'
);
$incode
=
trim
(
qa_post_text
(
'code'
));
// trim to prevent passing in blank values to match uninitiated DB rows
if
(
!
qa_check_form_security_code
(
'reset'
,
qa_post_text
(
'formcode'
)))
$errors
[
'page'
]
=
qa_lang_html
(
'misc/form_security_again'
);
$errors
=
array
();
else
{
if
(
qa_opt
(
'allow_login_email_only'
)
||
(
strpos
(
$inemailhandle
,
'@'
)
!==
false
))
// handles can't contain @ symbols
$matchusers
=
qa_db_user_find_by_email
(
$inemailhandle
);
else
$matchusers
=
qa_db_user_find_by_handle
(
$inemailhandle
);
if
(
!
qa_check_form_security_code
(
'reset'
,
qa_post_text
(
'formcode'
)))
$errors
[
'page'
]
=
qa_lang_html
(
'misc/form_security_again'
);
if
(
count
(
$matchusers
)
==
1
)
{
// if match more than one (should be impossible), consider it a non-match
require_once
QA_INCLUDE_DIR
.
'db/selects.php'
;
else
{
if
(
qa_opt
(
'allow_login_email_only'
)
||
(
strpos
(
$inemailhandle
,
'@'
)
!==
false
))
// handles can't contain @ symbols
$matchusers
=
qa_db_user_find_by_email
(
$inemailhandle
);
else
$matchusers
=
qa_db_user_find_by_handle
(
$inemailhandle
);
$inuserid
=
$matchusers
[
0
];
$userinfo
=
qa_db_select_with_pending
(
qa_db_user_account_selectspec
(
$inuserid
,
true
))
;
if
(
count
(
$matchusers
)
==
1
)
{
// if match more than one (should be impossible), consider it a non-match
require_once
QA_INCLUDE_DIR
.
'db/selects.php'
;
// strlen() check is vital otherwise we can reset code for most users by entering the empty string
if
(
strlen
(
$incode
)
&&
(
strtolower
(
trim
(
$userinfo
[
'emailcode'
]))
==
strtolower
(
$incode
)))
{
qa_complete_reset_user
(
$inuserid
);
qa_redirect
(
'login'
,
array
(
'e'
=>
$inemailhandle
,
'ps'
=>
'1'
));
// redirect to login page
$inuserid
=
$matchusers
[
0
];
$userinfo
=
qa_db_select_with_pending
(
qa_db_user_account_selectspec
(
$inuserid
,
true
));
}
else
$errors
[
'code'
]
=
qa_lang
(
'users/reset_code_wrong'
);
// strlen() check is vital otherwise we can reset code for most users by entering the empty string
if
(
strlen
(
$incode
)
&&
strtolower
(
trim
(
$userinfo
[
'emailcode'
]))
==
strtolower
(
$incode
))
{
qa_complete_reset_user
(
$inuserid
);
qa_redirect
(
'login'
,
array
(
'e'
=>
$inemailhandle
,
'ps'
=>
'1'
));
// redirect to login page
}
else
{
$errors
[
'code'
]
=
qa_lang
(
'users/reset_code_wrong'
);
}
}
else
$errors
[
'emailhandle'
]
=
qa_lang
(
'users/user_not_found'
);
}
else
{
$errors
[
'emailhandle'
]
=
qa_lang
(
'users/user_not_found'
);
}
}
else
{
$inemailhandle
=
qa_get
(
'e'
);
$incode
=
qa_get
(
'c'
);
}
}
else
{
$inemailhandle
=
qa_get
(
'e'
);
$incode
=
qa_get
(
'c'
);
}
// Prepare content for theme
$qa_content
=
qa_content_prepare
();
// Prepare content for theme
$qa_content
[
'title'
]
=
qa_lang_html
(
'users/reset_title'
);
$qa_content
[
'error'
]
=@
$errors
[
'page'
];
$qa_content
=
qa_content_prepare
();
if
(
empty
(
$inemailhandle
)
||
isset
(
$errors
[
'emailhandle'
]))
$forgotpath
=
qa_path
(
'forgot'
);
else
$forgotpath
=
qa_path
(
'forgot'
,
array
(
'e'
=>
$inemailhandle
));
$qa_content
[
'title'
]
=
qa_lang_html
(
'users/reset_title'
);
$qa_content
[
'error'
]
=
@
$errors
[
'page'
];
$qa_content
[
'form'
]
=
array
(
'tags'
=>
'method="post" action="'
.
qa_self_html
()
.
'"'
,
if
(
empty
(
$inemailhandle
)
||
isset
(
$errors
[
'emailhandle'
]))
$forgotpath
=
qa_path
(
'forgot'
);
else
$forgotpath
=
qa_path
(
'forgot'
,
array
(
'e'
=>
$inemailhandle
));
'style'
=>
'tall'
,
$qa_content
[
'form'
]
=
array
(
'tags'
=>
'method="post" action="'
.
qa_self_html
()
.
'"'
,
'ok'
=>
empty
(
$incode
)
?
qa_lang_html
(
'users/reset_code_emailed'
)
:
null
,
'style'
=>
'tall'
,
'fields'
=>
array
(
'email_handle'
=>
array
(
'label'
=>
qa_opt
(
'allow_login_email_only'
)
?
qa_lang_html
(
'users/email_label'
)
:
qa_lang_html
(
'users/email_handle_label'
),
'tags'
=>
'name="emailhandle" id="emailhandle"'
,
'value'
=>
qa_html
(
@
$inemailhandle
),
'error'
=>
qa_html
(
@
$errors
[
'emailhandle'
]),
),
'ok'
=>
empty
(
$incode
)
?
qa_lang_html
(
'users/reset_code_emailed'
)
:
null
,
'code'
=>
array
(
'label'
=>
qa_lang_html
(
'users/reset_code_label'
),
'tags'
=>
'name="code" id="code"'
,
'value'
=>
qa_html
(
@
$incode
),
'error'
=>
qa_html
(
@
$errors
[
'code'
]),
'note'
=>
qa_lang_html
(
'users/reset_code_emailed'
)
.
' - '
.
'<a href="'
.
qa_html
(
$forgotpath
)
.
'">'
.
qa_lang_html
(
'users/reset_code_another'
)
.
'</a>'
,
),
'fields'
=>
array
(
'email_handle'
=>
array
(
'label'
=>
qa_opt
(
'allow_login_email_only'
)
?
qa_lang_html
(
'users/email_label'
)
:
qa_lang_html
(
'users/email_handle_label'
),
'tags'
=>
'name="emailhandle" id="emailhandle"'
,
'value'
=>
qa_html
(
@
$inemailhandle
),
'error'
=>
qa_html
(
@
$errors
[
'emailhandle'
]),
),
'buttons'
=>
array
(
'reset'
=>
array
(
'label'
=>
qa_lang_html
(
'users/send_password_button'
),
),
'code'
=>
array
(
'label'
=>
qa_lang_html
(
'users/reset_code_label'
),
'tags'
=>
'name="code" id="code"'
,
'value'
=>
qa_html
(
@
$incode
),
'error'
=>
qa_html
(
@
$errors
[
'code'
]),
'note'
=>
qa_lang_html
(
'users/reset_code_emailed'
)
.
' - '
.
'<a href="'
.
qa_html
(
$forgotpath
)
.
'">'
.
qa_lang_html
(
'users/reset_code_another'
)
.
'</a>'
,
),
),
'hidden
'
=>
array
(
'doreset'
=>
'1'
,
'
formcode'
=>
qa_get_form_security_code
(
'reset
'
),
'buttons
'
=>
array
(
'reset'
=>
array
(
'
label'
=>
qa_lang_html
(
'users/send_password_button
'
),
),
);
$qa_content
[
'focusid'
]
=
(
isset
(
$errors
[
'emailhandle'
])
||
!
strlen
(
@
$inemailhandle
))
?
'emailhandle'
:
'code'
;
),
'hidden'
=>
array
(
'doreset'
=>
'1'
,
'formcode'
=>
qa_get_form_security_code
(
'reset'
),
),
);
return
$qa_content
;
$qa_content
[
'focusid'
]
=
(
isset
(
$errors
[
'emailhandle'
])
||
!
strlen
(
@
$inemailhandle
))
?
'emailhandle'
:
'code'
;
/*
Omit PHP closing tag to help avoid accidental output
*/
\ No newline at end of file
return
$qa_content
;
Write
Preview
Markdown
is supported
0%
Try again
or
attach a new file
Attach a file
Cancel
You are about to add
0
people
to the discussion. Proceed with caution.
Finish editing this message first!
Cancel
Please
register
or
sign in
to comment