123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225 |
- <?php
- /**
- * @copyright Copyright (c) 2021 勾股工作室
- * @license https://opensource.org/licenses/Apache-2.0
- * @link https://www.gougucms.com
- */
-
- declare (strict_types = 1);
- namespace app\admin\controller;
- use app\admin\BaseController;
- use app\admin\model\Pages as PagesModel;
- use app\admin\validate\PagesValidate;
- use think\exception\ValidateException;
- use HTMLPurifier;
- use HTMLPurifier_Config;
- use think\facade\Db;
- use think\facade\View;
- class Pages extends BaseController
- {
- /**
- * 构造函数
- */
- public function __construct()
- {
- $this->model = new PagesModel();
- $this->uid = get_login_admin('id');
- }
- /**
- * 数据列表
- */
- public function datalist()
- {
- if (request()->isAjax()) {
- $param = get_params();
- $where = [];
- if (!empty($param['keywords'])) {
- $where[] = ['a.id|a.title|a.desc|a.content', 'like', '%' . $param['keywords'] . '%'];
- }
- $where[] = ['a.delete_time', '=', 0];
- $list = $this->model->getPagesList($where, $param);
- return table_assign(0, '', $list);
- }
- else{
- return view();
- }
- }
- /**
- * 添加
- */
- public function add()
- {
- if (request()->isAjax()) {
- $param = get_params();
-
- // 检验完整性
- try {
- validate(PagesValidate::class)->check($param);
- } catch (ValidateException $e) {
- // 验证失败 输出错误信息
- return to_assign(1, $e->getError());
- }
- // 创建HTMLPurifier配置对象
- $config = HTMLPurifier_Config::createDefault();
- $config->set('HTML.DefinitionID', 'html5-definitions');
- $config->set('HTML.DefinitionRev', 1);
- $config->set('HTML.ForbiddenAttributes', ['width', 'height']);
- //$config->set('HTML.Allowed', 'p,b,a[href],pre[class],code,blockquote,img[src],table,tr,th,td,ul,li,ol,dl,dt,dd');
- $config->set('HTML.ForbiddenElements',array('script'),true);//设置拒绝使用的tagname
- if ($def = $config->maybeGetRawHTMLDefinition()) {
- $def->addElement('video', 'Block', 'Optional: (source, Flow) | (Flow, source) | Flow', 'Common', [
- 'src' => 'URI',
- 'type' => 'Text',
- 'poster' => 'URI',
- 'preload' => 'Enum#auto,metadata,none',
- 'controls' => 'Bool',
- ]);
- $def->addElement('source', 'Block', 'Flow', 'Common', [
- 'src' => 'URI',
- 'type' => 'Text',
- ]);
- }
- // 创建HTMLPurifier对象
- $purifier = new HTMLPurifier($config);
- //防止xss,过滤输入并输出结果
- //$param['content'] = '测试<script>alert(0);</script>';
- $param['content'] = $purifier->purify($param['content']);
-
- $param['admin_id'] = $this->uid;
- $this->model->addPages($param);
- }else{
- $templates = get_file_list(CMS_ROOT . '/app/home/view/pages/');
- View::assign('templates', $templates);
- return view();
- }
- }
-
- /**
- * 编辑
- */
- public function edit()
- {
- $param = get_params();
-
- if (request()->isAjax()) {
- // 检验完整性
- try {
- validate(PagesValidate::class)->check($param);
- } catch (ValidateException $e) {
- // 验证失败 输出错误信息
- return to_assign(1, $e->getError());
- }
-
- // 创建HTMLPurifier配置对象
- $config = HTMLPurifier_Config::createDefault();
- $config->set('HTML.DefinitionID', 'html5-definitions');
- $config->set('HTML.DefinitionRev', 1);
- $config->set('HTML.ForbiddenAttributes', ['width', 'height']);
- //$config->set('HTML.Allowed', 'p,b,a[href],pre[class],code,blockquote,img[src],table,tr,th,td,ul,li,ol,dl,dt,dd');
- $config->set('HTML.ForbiddenElements',array('script'),true);//设置拒绝使用的tagname
- if ($def = $config->maybeGetRawHTMLDefinition()) {
- $def->addElement('video', 'Block', 'Optional: (source, Flow) | (Flow, source) | Flow', 'Common', [
- 'src' => 'URI',
- 'type' => 'Text',
- 'poster' => 'URI',
- 'preload' => 'Enum#auto,metadata,none',
- 'controls' => 'Bool',
- ]);
- $def->addElement('source', 'Block', 'Flow', 'Common', [
- 'src' => 'URI',
- 'type' => 'Text',
- ]);
- }
- // 创建HTMLPurifier对象
- $purifier = new HTMLPurifier($config);
- //防止xss,过滤输入并输出结果
- //$param['content'] = '测试<script>alert(0);</script>';
- $param['content'] = $purifier->purify($param['content']);
-
- $this->model->editPages($param);
- }else{
- $id = isset($param['id']) ? $param['id'] : 0;
- $detail = $this->model->getPagesById($id);
- if (!empty($detail)) {
- //轮播图
- if(!empty($detail['banner'])) {
- $detail['banner_array'] = explode(',',$detail['banner']);
- }
- //关键字
- $keyword_array = Db::name('PagesKeywords')
- ->field('i.aid,i.keywords_id,k.title')
- ->alias('i')
- ->join('keywords k', 'k.id = i.keywords_id', 'LEFT')
- ->order('i.create_time asc')
- ->where(array('i.aid' => $id, 'k.status' => 1))
- ->select()->toArray();
- $detail['keyword_ids'] = implode(",", array_column($keyword_array, 'keywords_id'));
- $detail['keyword_names'] = implode(',', array_column($keyword_array, 'title'));
- $detail['keyword_array'] = $keyword_array;
-
- $templates = get_file_list(CMS_ROOT . '/app/home/view/pages/');
- View::assign('templates', $templates);
- View::assign('detail', $detail);
- return view();
- }
- else{
- throw new \think\exception\HttpException(404, '找不到页面');
- }
- }
- }
- /**
- * 查看信息
- */
- public function read()
- {
- $param = get_params();
- $id = isset($param['id']) ? $param['id'] : 0;
- $detail = $this->model->getPagesById($id);
- if (!empty($detail)) {
- //轮播图
- if(!empty($detail['banner'])) {
- $detail['banner_array'] = explode(',',$detail['banner']);
- }
- //关键字
- $keyword_array = Db::name('PagesKeywords')
- ->field('i.aid,i.keywords_id,k.title')
- ->alias('i')
- ->join('keywords k', 'k.id = i.keywords_id', 'LEFT')
- ->order('i.create_time asc')
- ->where(array('i.aid' => $id, 'k.status' => 1))
- ->select()->toArray();
- $detail['keyword_ids'] = implode(",", array_column($keyword_array, 'keywords_id'));
- $detail['keyword_names'] = implode(',', array_column($keyword_array, 'title'));
- $detail['keyword_array'] = $keyword_array;
- View::assign('detail', $detail);
- return view();
- }
- else{
- throw new \think\exception\HttpException(404, '找不到页面');
- }
- }
- /**
- * 删除
- */
- public function del()
- {
- $param = get_params();
- $param = get_params();
- $id = isset($param['id']) ? $param['id'] : 0;
- $type = isset($param['type']) ? $param['type'] : 0;
- $this->model->delPagesById($id,$type);
- }
- }
|