Use "break" instead of "continue"
[lhc/web/wiklou.git] / includes / FileDeleteForm.php
1 <?php
2 /**
3 * File deletion user interface.
4 *
5 * This program is free software; you can redistribute it and/or modify
6 * it under the terms of the GNU General Public License as published by
7 * the Free Software Foundation; either version 2 of the License, or
8 * (at your option) any later version.
9 *
10 * This program is distributed in the hope that it will be useful,
11 * but WITHOUT ANY WARRANTY; without even the implied warranty of
12 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
13 * GNU General Public License for more details.
14 *
15 * You should have received a copy of the GNU General Public License along
16 * with this program; if not, write to the Free Software Foundation, Inc.,
17 * 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301, USA.
18 * http://www.gnu.org/copyleft/gpl.html
19 *
20 * @file
21 * @author Rob Church <robchur@gmail.com>
22 * @ingroup Media
23 */
24 use MediaWiki\MediaWikiServices;
25
26 /**
27 * File deletion user interface
28 *
29 * @ingroup Media
30 */
31 class FileDeleteForm {
32
33 /**
34 * @var Title
35 */
36 private $title = null;
37
38 /**
39 * @var File
40 */
41 private $file = null;
42
43 /**
44 * @var File
45 */
46 private $oldfile = null;
47 private $oldimage = '';
48
49 /**
50 * @param File $file File object we're deleting
51 */
52 public function __construct( $file ) {
53 $this->title = $file->getTitle();
54 $this->file = $file;
55 }
56
57 /**
58 * Fulfil the request; shows the form or deletes the file,
59 * pending authentication, confirmation, etc.
60 */
61 public function execute() {
62 global $wgOut, $wgRequest, $wgUser, $wgUploadMaintenance;
63
64 $permissionErrors = $this->title->getUserPermissionsErrors( 'delete', $wgUser );
65 if ( count( $permissionErrors ) ) {
66 throw new PermissionsError( 'delete', $permissionErrors );
67 }
68
69 if ( wfReadOnly() ) {
70 throw new ReadOnlyError;
71 }
72
73 if ( $wgUploadMaintenance ) {
74 throw new ErrorPageError( 'filedelete-maintenance-title', 'filedelete-maintenance' );
75 }
76
77 $this->setHeaders();
78
79 $this->oldimage = $wgRequest->getText( 'oldimage', false );
80 $token = $wgRequest->getText( 'wpEditToken' );
81 # Flag to hide all contents of the archived revisions
82 $suppress = $wgRequest->getVal( 'wpSuppress' ) && $wgUser->isAllowed( 'suppressrevision' );
83
84 if ( $this->oldimage ) {
85 $this->oldfile = RepoGroup::singleton()->getLocalRepo()->newFromArchiveName(
86 $this->title,
87 $this->oldimage
88 );
89 }
90
91 if ( !self::haveDeletableFile( $this->file, $this->oldfile, $this->oldimage ) ) {
92 $wgOut->addHTML( $this->prepareMessage( 'filedelete-nofile' ) );
93 $wgOut->addReturnTo( $this->title );
94 return;
95 }
96
97 // Perform the deletion if appropriate
98 if ( $wgRequest->wasPosted() && $wgUser->matchEditToken( $token, $this->oldimage ) ) {
99 $deleteReasonList = $wgRequest->getText( 'wpDeleteReasonList' );
100 $deleteReason = $wgRequest->getText( 'wpReason' );
101
102 if ( $deleteReasonList == 'other' ) {
103 $reason = $deleteReason;
104 } elseif ( $deleteReason != '' ) {
105 // Entry from drop down menu + additional comment
106 $reason = $deleteReasonList . wfMessage( 'colon-separator' )
107 ->inContentLanguage()->text() . $deleteReason;
108 } else {
109 $reason = $deleteReasonList;
110 }
111
112 $status = self::doDelete(
113 $this->title,
114 $this->file,
115 $this->oldimage,
116 $reason,
117 $suppress,
118 $wgUser
119 );
120
121 if ( !$status->isGood() ) {
122 $wgOut->addHTML( '<h2>' . $this->prepareMessage( 'filedeleteerror-short' ) . "</h2>\n" );
123 $wgOut->addWikiText( '<div class="error">' .
124 $status->getWikiText( 'filedeleteerror-short', 'filedeleteerror-long' )
125 . '</div>' );
126 }
127 if ( $status->isOK() ) {
128 $wgOut->setPageTitle( wfMessage( 'actioncomplete' ) );
129 $wgOut->addHTML( $this->prepareMessage( 'filedelete-success' ) );
130 // Return to the main page if we just deleted all versions of the
131 // file, otherwise go back to the description page
132 $wgOut->addReturnTo( $this->oldimage ? $this->title : Title::newMainPage() );
133
134 WatchAction::doWatchOrUnwatch( $wgRequest->getCheck( 'wpWatch' ), $this->title, $wgUser );
135 }
136 return;
137 }
138
139 $this->showForm();
140 $this->showLogEntries();
141 }
142
143 /**
144 * Really delete the file
145 *
146 * @param Title &$title
147 * @param File &$file
148 * @param string &$oldimage Archive name
149 * @param string $reason Reason of the deletion
150 * @param bool $suppress Whether to mark all deleted versions as restricted
151 * @param User $user User object performing the request
152 * @param array $tags Tags to apply to the deletion action
153 * @throws MWException
154 * @return Status
155 */
156 public static function doDelete( &$title, &$file, &$oldimage, $reason,
157 $suppress, User $user = null, $tags = []
158 ) {
159 if ( $user === null ) {
160 global $wgUser;
161 $user = $wgUser;
162 }
163
164 if ( $oldimage ) {
165 $page = null;
166 $status = $file->deleteOld( $oldimage, $reason, $suppress, $user );
167 if ( $status->ok ) {
168 // Need to do a log item
169 $logComment = wfMessage( 'deletedrevision', $oldimage )->inContentLanguage()->text();
170 if ( trim( $reason ) != '' ) {
171 $logComment .= wfMessage( 'colon-separator' )
172 ->inContentLanguage()->text() . $reason;
173 }
174
175 $logtype = $suppress ? 'suppress' : 'delete';
176
177 $logEntry = new ManualLogEntry( $logtype, 'delete' );
178 $logEntry->setPerformer( $user );
179 $logEntry->setTarget( $title );
180 $logEntry->setComment( $logComment );
181 $logEntry->setTags( $tags );
182 $logid = $logEntry->insert();
183 $logEntry->publish( $logid );
184
185 $status->value = $logid;
186 }
187 } else {
188 $status = Status::newFatal( 'cannotdelete',
189 wfEscapeWikiText( $title->getPrefixedText() )
190 );
191 $page = WikiPage::factory( $title );
192 $dbw = wfGetDB( DB_MASTER );
193 $dbw->startAtomic( __METHOD__ );
194 // delete the associated article first
195 $error = '';
196 $deleteStatus = $page->doDeleteArticleReal( $reason, $suppress, 0, false, $error,
197 $user, $tags );
198 // doDeleteArticleReal() returns a non-fatal error status if the page
199 // or revision is missing, so check for isOK() rather than isGood()
200 if ( $deleteStatus->isOK() ) {
201 $status = $file->delete( $reason, $suppress, $user );
202 if ( $status->isOK() ) {
203 if ( $deleteStatus->value === null ) {
204 // No log ID from doDeleteArticleReal(), probably
205 // because the page/revision didn't exist, so create
206 // one here.
207 $logtype = $suppress ? 'suppress' : 'delete';
208 $logEntry = new ManualLogEntry( $logtype, 'delete' );
209 $logEntry->setPerformer( $user );
210 $logEntry->setTarget( clone $title );
211 $logEntry->setComment( $reason );
212 $logEntry->setTags( $tags );
213 $logid = $logEntry->insert();
214 $dbw->onTransactionPreCommitOrIdle(
215 function () use ( $dbw, $logEntry, $logid ) {
216 $logEntry->publish( $logid );
217 },
218 __METHOD__
219 );
220 $status->value = $logid;
221 } else {
222 $status->value = $deleteStatus->value; // log id
223 }
224 $dbw->endAtomic( __METHOD__ );
225 } else {
226 // Page deleted but file still there? rollback page delete
227 $lbFactory = MediaWikiServices::getInstance()->getDBLoadBalancerFactory();
228 $lbFactory->rollbackMasterChanges( __METHOD__ );
229 }
230 } else {
231 // Done; nothing changed
232 $dbw->endAtomic( __METHOD__ );
233 }
234 }
235
236 if ( $status->isOK() ) {
237 Hooks::run( 'FileDeleteComplete', [ &$file, &$oldimage, &$page, &$user, &$reason ] );
238 }
239
240 return $status;
241 }
242
243 /**
244 * Show the confirmation form
245 */
246 private function showForm() {
247 global $wgOut, $wgUser, $wgRequest;
248
249 $conf = RequestContext::getMain()->getConfig();
250 $oldCommentSchema = $conf->get( 'CommentTableSchemaMigrationStage' ) === MIGRATION_OLD;
251
252 if ( $wgUser->isAllowed( 'suppressrevision' ) ) {
253 $suppress = "<tr id=\"wpDeleteSuppressRow\">
254 <td></td>
255 <td class='mw-input'><strong>" .
256 Xml::checkLabel( wfMessage( 'revdelete-suppress' )->text(),
257 'wpSuppress', 'wpSuppress', false, [ 'tabindex' => '3' ] ) .
258 "</strong></td>
259 </tr>";
260 } else {
261 $suppress = '';
262 }
263
264 $wgOut->addModules( 'mediawiki.action.delete.file' );
265
266 $checkWatch = $wgUser->getBoolOption( 'watchdeletion' ) || $wgUser->isWatched( $this->title );
267 $form = Xml::openElement( 'form', [ 'method' => 'post', 'action' => $this->getAction(),
268 'id' => 'mw-img-deleteconfirm' ] ) .
269 Xml::openElement( 'fieldset' ) .
270 Xml::element( 'legend', null, wfMessage( 'filedelete-legend' )->text() ) .
271 Html::hidden( 'wpEditToken', $wgUser->getEditToken( $this->oldimage ) ) .
272 $this->prepareMessage( 'filedelete-intro' ) .
273 Xml::openElement( 'table', [ 'id' => 'mw-img-deleteconfirm-table' ] ) .
274 "<tr>
275 <td class='mw-label'>" .
276 Xml::label( wfMessage( 'filedelete-comment' )->text(), 'wpDeleteReasonList' ) .
277 "</td>
278 <td class='mw-input'>" .
279 Xml::listDropDown(
280 'wpDeleteReasonList',
281 wfMessage( 'filedelete-reason-dropdown' )->inContentLanguage()->text(),
282 wfMessage( 'filedelete-reason-otherlist' )->inContentLanguage()->text(),
283 '',
284 'wpReasonDropDown',
285 1
286 ) .
287 "</td>
288 </tr>
289 <tr>
290 <td class='mw-label'>" .
291 Xml::label( wfMessage( 'filedelete-otherreason' )->text(), 'wpReason' ) .
292 "</td>
293 <td class='mw-input'>" .
294 Xml::input( 'wpReason', 60, $wgRequest->getText( 'wpReason' ), [
295 'type' => 'text',
296 // HTML maxlength uses "UTF-16 code units", which means that characters outside BMP
297 // (e.g. emojis) count for two each. This limit is overridden in JS to instead count
298 // Unicode codepoints (or 255 UTF-8 bytes for old schema).
299 'maxlength' => $oldCommentSchema ? 255 : CommentStore::COMMENT_CHARACTER_LIMIT,
300 'tabindex' => '2',
301 'id' => 'wpReason'
302 ] ) .
303 "</td>
304 </tr>
305 {$suppress}";
306 if ( $wgUser->isLoggedIn() ) {
307 $form .= "
308 <tr>
309 <td></td>
310 <td class='mw-input'>" .
311 Xml::checkLabel( wfMessage( 'watchthis' )->text(),
312 'wpWatch', 'wpWatch', $checkWatch, [ 'tabindex' => '3' ] ) .
313 "</td>
314 </tr>";
315 }
316 $form .= "
317 <tr>
318 <td></td>
319 <td class='mw-submit'>" .
320 Xml::submitButton(
321 wfMessage( 'filedelete-submit' )->text(),
322 [
323 'name' => 'mw-filedelete-submit',
324 'id' => 'mw-filedelete-submit',
325 'tabindex' => '4'
326 ]
327 ) .
328 "</td>
329 </tr>" .
330 Xml::closeElement( 'table' ) .
331 Xml::closeElement( 'fieldset' ) .
332 Xml::closeElement( 'form' );
333
334 if ( $wgUser->isAllowed( 'editinterface' ) ) {
335 $title = wfMessage( 'filedelete-reason-dropdown' )->inContentLanguage()->getTitle();
336 $linkRenderer = MediaWikiServices::getInstance()->getLinkRenderer();
337 $link = $linkRenderer->makeKnownLink(
338 $title,
339 wfMessage( 'filedelete-edit-reasonlist' )->text(),
340 [],
341 [ 'action' => 'edit' ]
342 );
343 $form .= '<p class="mw-filedelete-editreasons">' . $link . '</p>';
344 }
345
346 $wgOut->addHTML( $form );
347 }
348
349 /**
350 * Show deletion log fragments pertaining to the current file
351 */
352 private function showLogEntries() {
353 global $wgOut;
354 $deleteLogPage = new LogPage( 'delete' );
355 $wgOut->addHTML( '<h2>' . $deleteLogPage->getName()->escaped() . "</h2>\n" );
356 LogEventsList::showLogExtract( $wgOut, 'delete', $this->title );
357 }
358
359 /**
360 * Prepare a message referring to the file being deleted,
361 * showing an appropriate message depending upon whether
362 * it's a current file or an old version
363 *
364 * @param string $message Message base
365 * @return string
366 */
367 private function prepareMessage( $message ) {
368 global $wgLang;
369 if ( $this->oldimage ) {
370 # Message keys used:
371 # 'filedelete-intro-old', 'filedelete-nofile-old', 'filedelete-success-old'
372 return wfMessage(
373 "{$message}-old",
374 wfEscapeWikiText( $this->title->getText() ),
375 $wgLang->date( $this->getTimestamp(), true ),
376 $wgLang->time( $this->getTimestamp(), true ),
377 wfExpandUrl( $this->file->getArchiveUrl( $this->oldimage ), PROTO_CURRENT ) )->parseAsBlock();
378 } else {
379 return wfMessage(
380 $message,
381 wfEscapeWikiText( $this->title->getText() )
382 )->parseAsBlock();
383 }
384 }
385
386 /**
387 * Set headers, titles and other bits
388 */
389 private function setHeaders() {
390 global $wgOut;
391 $wgOut->setPageTitle( wfMessage( 'filedelete', $this->title->getText() ) );
392 $wgOut->setRobotPolicy( 'noindex,nofollow' );
393 $wgOut->addBacklinkSubtitle( $this->title );
394 }
395
396 /**
397 * Is the provided `oldimage` value valid?
398 *
399 * @param string $oldimage
400 * @return bool
401 */
402 public static function isValidOldSpec( $oldimage ) {
403 return strlen( $oldimage ) >= 16
404 && strpos( $oldimage, '/' ) === false
405 && strpos( $oldimage, '\\' ) === false;
406 }
407
408 /**
409 * Could we delete the file specified? If an `oldimage`
410 * value was provided, does it correspond to an
411 * existing, local, old version of this file?
412 *
413 * @param File &$file
414 * @param File &$oldfile
415 * @param File $oldimage
416 * @return bool
417 */
418 public static function haveDeletableFile( &$file, &$oldfile, $oldimage ) {
419 return $oldimage
420 ? $oldfile && $oldfile->exists() && $oldfile->isLocal()
421 : $file && $file->exists() && $file->isLocal();
422 }
423
424 /**
425 * Prepare the form action
426 *
427 * @return string
428 */
429 private function getAction() {
430 $q = [];
431 $q['action'] = 'delete';
432
433 if ( $this->oldimage ) {
434 $q['oldimage'] = $this->oldimage;
435 }
436
437 return $this->title->getLocalURL( $q );
438 }
439
440 /**
441 * Extract the timestamp of the old version
442 *
443 * @return string
444 */
445 private function getTimestamp() {
446 return $this->oldfile->getTimestamp();
447 }
448 }