You can not select more than 25 topics
Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
76 lines
2.1 KiB
76 lines
2.1 KiB
2 years ago
|
<?php
|
||
|
|
||
|
declare(strict_types=1);
|
||
|
|
||
|
namespace PhpMyAdmin\Controllers\Sql;
|
||
|
|
||
|
use PhpMyAdmin\CheckUserPrivileges;
|
||
|
use PhpMyAdmin\Controllers\AbstractController;
|
||
|
use PhpMyAdmin\ResponseRenderer;
|
||
|
use PhpMyAdmin\Sql;
|
||
|
use PhpMyAdmin\Template;
|
||
|
|
||
|
use function __;
|
||
|
use function htmlentities;
|
||
|
|
||
|
use const ENT_COMPAT;
|
||
|
|
||
|
final class SetValuesController extends AbstractController
|
||
|
{
|
||
|
/** @var Sql */
|
||
|
private $sql;
|
||
|
|
||
|
/** @var CheckUserPrivileges */
|
||
|
private $checkUserPrivileges;
|
||
|
|
||
|
public function __construct(
|
||
|
ResponseRenderer $response,
|
||
|
Template $template,
|
||
|
Sql $sql,
|
||
|
CheckUserPrivileges $checkUserPrivileges
|
||
|
) {
|
||
|
parent::__construct($response, $template);
|
||
|
$this->sql = $sql;
|
||
|
$this->checkUserPrivileges = $checkUserPrivileges;
|
||
|
}
|
||
|
|
||
|
/**
|
||
|
* Get possible values for SET fields during grid edit.
|
||
|
*/
|
||
|
public function __invoke(): void
|
||
|
{
|
||
|
global $db, $table;
|
||
|
|
||
|
$this->checkUserPrivileges->getPrivileges();
|
||
|
|
||
|
$column = $_POST['column'];
|
||
|
$currentValue = $_POST['curr_value'];
|
||
|
$fullValues = $_POST['get_full_values'] ?? false;
|
||
|
$whereClause = $_POST['where_clause'] ?? null;
|
||
|
|
||
|
$values = $this->sql->getValuesForColumn($db, $table, $column);
|
||
|
|
||
|
if ($values === null) {
|
||
|
$this->response->addJSON('message', __('Error in processing request'));
|
||
|
$this->response->setRequestStatus(false);
|
||
|
|
||
|
return;
|
||
|
}
|
||
|
|
||
|
// If the $currentValue was truncated, we should fetch the correct full values from the table.
|
||
|
if ($fullValues && ! empty($whereClause)) {
|
||
|
$currentValue = $this->sql->getFullValuesForSetColumn($db, $table, $column, $whereClause);
|
||
|
}
|
||
|
|
||
|
// Converts characters of $currentValue to HTML entities.
|
||
|
$convertedCurrentValue = htmlentities($currentValue, ENT_COMPAT, 'UTF-8');
|
||
|
|
||
|
$select = $this->template->render('sql/set_column', [
|
||
|
'values' => $values,
|
||
|
'current_values' => $convertedCurrentValue,
|
||
|
]);
|
||
|
|
||
|
$this->response->addJSON('select', $select);
|
||
|
}
|
||
|
}
|