phpmyadmin/libraries/classes/Controllers/Table/CreateController.php
Maurício Meneghini Fauth 5950693fb3
Fix possible undefined globals
Related to https://github.com/phpmyadmin/phpmyadmin/pull/17427.

Signed-off-by: Maurício Meneghini Fauth <mauricio@fauth.dev>
2022-03-10 18:05:21 -03:00

167 lines
5.4 KiB
PHP

<?php
declare(strict_types=1);
namespace PhpMyAdmin\Controllers\Table;
use PhpMyAdmin\Config;
use PhpMyAdmin\Controllers\AbstractController;
use PhpMyAdmin\Core;
use PhpMyAdmin\CreateAddField;
use PhpMyAdmin\DatabaseInterface;
use PhpMyAdmin\Html\Generator;
use PhpMyAdmin\ResponseRenderer;
use PhpMyAdmin\Table\ColumnsDefinition;
use PhpMyAdmin\Template;
use PhpMyAdmin\Transformations;
use PhpMyAdmin\Url;
use function __;
use function htmlspecialchars;
use function is_array;
use function mb_strtolower;
use function sprintf;
use function strlen;
/**
* Displays table create form and handles it.
*/
class CreateController extends AbstractController
{
/** @var Transformations */
private $transformations;
/** @var Config */
private $config;
/** @var DatabaseInterface */
private $dbi;
/** @var ColumnsDefinition */
private $columnsDefinition;
public function __construct(
ResponseRenderer $response,
Template $template,
Transformations $transformations,
Config $config,
DatabaseInterface $dbi,
ColumnsDefinition $columnsDefinition
) {
parent::__construct($response, $template);
$this->transformations = $transformations;
$this->config = $config;
$this->dbi = $dbi;
$this->columnsDefinition = $columnsDefinition;
}
public function __invoke(): void
{
$GLOBALS['num_fields'] = $GLOBALS['num_fields'] ?? null;
$GLOBALS['result'] = $GLOBALS['result'] ?? null;
$this->checkParameters(['db']);
$cfg = $this->config->settings;
/* Check if database name is empty */
if (strlen($GLOBALS['db']) === 0) {
Generator::mysqlDie(
__('The database name is empty!'),
'',
false,
'index.php'
);
}
/**
* Selects the database to work with
*/
if (! $this->dbi->selectDb($GLOBALS['db'])) {
Generator::mysqlDie(
sprintf(__('\'%s\' database does not exist.'), htmlspecialchars($GLOBALS['db'])),
'',
false,
'index.php'
);
}
if ($this->dbi->getColumns($GLOBALS['db'], $GLOBALS['table'])) {
// table exists already
Generator::mysqlDie(
sprintf(__('Table %s already exists!'), htmlspecialchars($GLOBALS['table'])),
'',
false,
Url::getFromRoute('/database/structure', ['db' => $GLOBALS['db']])
);
}
$createAddField = new CreateAddField($this->dbi);
$GLOBALS['num_fields'] = $createAddField->getNumberOfFieldsFromRequest();
/**
* The form used to define the structure of the table has been submitted
*/
if (isset($_POST['do_save_data'])) {
// lower_case_table_names=1 `DB` becomes `db`
if ($this->dbi->getLowerCaseNames() === '1') {
$GLOBALS['db'] = mb_strtolower($GLOBALS['db']);
$GLOBALS['table'] = mb_strtolower($GLOBALS['table']);
}
$GLOBALS['sql_query'] = $createAddField->getTableCreationQuery($GLOBALS['db'], $GLOBALS['table']);
// If there is a request for SQL previewing.
if (isset($_POST['preview_sql'])) {
Core::previewSQL($GLOBALS['sql_query']);
return;
}
// Executes the query
$GLOBALS['result'] = $this->dbi->tryQuery($GLOBALS['sql_query']);
if ($GLOBALS['result']) {
// Update comment table for mime types [MIME]
if (isset($_POST['field_mimetype']) && is_array($_POST['field_mimetype']) && $cfg['BrowseMIME']) {
foreach ($_POST['field_mimetype'] as $fieldindex => $mimetype) {
if (
! isset($_POST['field_name'][$fieldindex])
|| strlen($_POST['field_name'][$fieldindex]) <= 0
) {
continue;
}
$this->transformations->setMime(
$GLOBALS['db'],
$GLOBALS['table'],
$_POST['field_name'][$fieldindex],
$mimetype,
$_POST['field_transformation'][$fieldindex],
$_POST['field_transformation_options'][$fieldindex],
$_POST['field_input_transformation'][$fieldindex],
$_POST['field_input_transformation_options'][$fieldindex]
);
}
}
} else {
$this->response->setRequestStatus(false);
$this->response->addJSON('message', $this->dbi->getError());
}
return;
}
// Do not display the table in the header since it hasn't been created yet
$this->response->getHeader()->getMenu()->setTable('');
$this->addScriptFiles(['vendor/jquery/jquery.uitablefilter.js', 'indexes.js']);
$this->checkParameters(['server', 'db', 'table', 'num_fields']);
$templateData = $this->columnsDefinition->displayForm('/table/create', $GLOBALS['num_fields']);
$this->render('columns_definitions/column_definitions_form', $templateData);
}
}