forked from mantisbt/mantisbt
-
Notifications
You must be signed in to change notification settings - Fork 0
/
bugnote_edit_page.php
152 lines (137 loc) · 4.86 KB
/
bugnote_edit_page.php
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
<?php
# MantisBT - A PHP based bugtracking system
# MantisBT is free software: you can redistribute it and/or modify
# it under the terms of the GNU General Public License as published by
# the Free Software Foundation, either version 2 of the License, or
# (at your option) any later version.
#
# MantisBT is distributed in the hope that it will be useful,
# but WITHOUT ANY WARRANTY; without even the implied warranty of
# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
# GNU General Public License for more details.
#
# You should have received a copy of the GNU General Public License
# along with MantisBT. If not, see <http://www.gnu.org/licenses/>.
/**
* CALLERS
* This page is submitted to by the following pages:
* - bugnote_inc.php
*
* EXPECTED BEHAVIOUR
* Allow the user to modify the text of a bugnote, then submit to
* bugnote_update.php with the new text
*
* RESTRICTIONS & PERMISSIONS
* - none beyond API restrictions
*
* @package MantisBT
* @copyright Copyright 2000 - 2002 Kenzaburo Ito - [email protected]
* @copyright Copyright 2002 MantisBT Team - [email protected]
* @link http://www.mantisbt.org
*
* @uses core.php
* @uses access_api.php
* @uses authentication_api.php
* @uses bug_api.php
* @uses bugnote_api.php
* @uses config_api.php
* @uses constant_inc.php
* @uses database_api.php
* @uses error_api.php
* @uses event_api.php
* @uses form_api.php
* @uses gpc_api.php
* @uses helper_api.php
* @uses html_api.php
* @uses lang_api.php
* @uses print_api.php
* @uses string_api.php
*/
require_once( 'core.php' );
require_api( 'access_api.php' );
require_api( 'authentication_api.php' );
require_api( 'bug_api.php' );
require_api( 'bugnote_api.php' );
require_api( 'config_api.php' );
require_api( 'constant_inc.php' );
require_api( 'database_api.php' );
require_api( 'error_api.php' );
require_api( 'event_api.php' );
require_api( 'form_api.php' );
require_api( 'gpc_api.php' );
require_api( 'helper_api.php' );
require_api( 'html_api.php' );
require_api( 'lang_api.php' );
require_api( 'print_api.php' );
require_api( 'string_api.php' );
$f_bugnote_id = gpc_get_int( 'bugnote_id' );
$t_bug_id = bugnote_get_field( $f_bugnote_id, 'bug_id' );
$t_bug = bug_get( $t_bug_id, true );
if( $t_bug->project_id != helper_get_current_project() ) {
# in case the current project is not the same project of the bug we are viewing...
# ... override the current project. This to avoid problems with categories and handlers lists etc.
$g_project_override = $t_bug->project_id;
}
# Check if the current user is allowed to edit the bugnote
$t_user_id = auth_get_current_user_id();
$t_reporter_id = bugnote_get_field( $f_bugnote_id, 'reporter_id' );
if( $t_user_id == $t_reporter_id ) {
access_ensure_bugnote_level( config_get( 'bugnote_user_edit_threshold' ), $f_bugnote_id );
} else {
access_ensure_bugnote_level( config_get( 'update_bugnote_threshold' ), $f_bugnote_id );
}
# Check if the bug is readonly
if( bug_is_readonly( $t_bug_id ) ) {
error_parameters( $t_bug_id );
trigger_error( ERROR_BUG_READ_ONLY_ACTION_DENIED, ERROR );
}
$t_bugnote_text = string_textarea( bugnote_get_text( $f_bugnote_id ) );
# No need to gather the extra information if not used
if( config_get( 'time_tracking_enabled' ) &&
access_has_bug_level( config_get( 'time_tracking_edit_threshold' ), $t_bug_id ) ) {
$t_time_tracking = bugnote_get_field( $f_bugnote_id, 'time_tracking' );
$t_time_tracking = db_minutes_to_hhmm( $t_time_tracking );
}
# Determine which view page to redirect back to.
$t_redirect_url = string_get_bug_view_url( $t_bug_id );
html_page_top( bug_format_summary( $t_bug_id, SUMMARY_CAPTION ) );
?>
<br />
<div>
<form method="post" action="bugnote_update.php">
<?php echo form_security_field( 'bugnote_update' ) ?>
<table class="width75" cellspacing="1">
<tr>
<td class="form-title">
<input type="hidden" name="bugnote_id" value="<?php echo $f_bugnote_id ?>" />
<?php echo lang_get( 'edit_bugnote_title' ) ?>
</td>
<td class="right">
<?php print_bracket_link( $t_redirect_url, lang_get( 'go_back' ) ) ?>
</td>
</tr>
<tr class="row-1">
<td class="center" colspan="2">
<textarea cols="80" rows="10" name="bugnote_text"><?php echo $t_bugnote_text ?></textarea>
</td>
</tr>
<?php if( config_get( 'time_tracking_enabled' ) ) { ?>
<?php if( access_has_bug_level( config_get( 'time_tracking_edit_threshold' ), $t_bug_id ) ) { ?>
<tr class="row-2">
<td class="center" colspan="2">
<strong><?php echo lang_get( 'time_tracking' ) ?> (HH:MM)</strong><br />
<input type="text" name="time_tracking" size="5" value="<?php echo $t_time_tracking ?>" />
</td>
</tr>
<?php } ?>
<?php } ?>
<?php event_signal( 'EVENT_BUGNOTE_EDIT_FORM', array( $t_bug_id, $f_bugnote_id ) ); ?>
<tr>
<td class="center" colspan="2">
<input type="submit" class="button" value="<?php echo lang_get( 'update_information_button' ) ?>" />
</td>
</tr>
</table>
</form>
</div>
<?php html_page_bottom();