1<?php 2 3/** 4 * webtrees: online genealogy 5 * Copyright (C) 2021 webtrees development team 6 * This program is free software: you can redistribute it and/or modify 7 * it under the terms of the GNU General Public License as published by 8 * the Free Software Foundation, either version 3 of the License, or 9 * (at your option) any later version. 10 * This program is distributed in the hope that it will be useful, 11 * but WITHOUT ANY WARRANTY; without even the implied warranty of 12 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the 13 * GNU General Public License for more details. 14 * You should have received a copy of the GNU General Public License 15 * along with this program. If not, see <https://www.gnu.org/licenses/>. 16 */ 17 18declare(strict_types=1); 19 20namespace Fisharebest\Webtrees\Http\RequestHandlers; 21 22use Fisharebest\Webtrees\Auth; 23use Fisharebest\Webtrees\Registry; 24use Fisharebest\Webtrees\Tree; 25use Psr\Http\Message\ResponseInterface; 26use Psr\Http\Message\ServerRequestInterface; 27use Psr\Http\Server\RequestHandlerInterface; 28 29use function assert; 30use function is_string; 31use function preg_replace; 32use function redirect; 33use function trim; 34 35/** 36 * Edit the raw GEDCOM of a fact. 37 */ 38class EditRawFactAction implements RequestHandlerInterface 39{ 40 /** 41 * @param ServerRequestInterface $request 42 * 43 * @return ResponseInterface 44 */ 45 public function handle(ServerRequestInterface $request): ResponseInterface 46 { 47 $tree = $request->getAttribute('tree'); 48 assert($tree instanceof Tree); 49 50 $xref = $request->getAttribute('xref'); 51 assert(is_string($xref)); 52 53 $record = Registry::gedcomRecordFactory()->make($xref, $tree); 54 $record = Auth::checkRecordAccess($record, true); 55 56 $fact_id = $request->getAttribute('fact_id'); 57 assert(is_string($fact_id)); 58 59 $params = (array) $request->getParsedBody(); 60 61 $gedcom = $params['gedcom']; 62 63 // Cleanup the client’s bad editing? 64 $gedcom = preg_replace('/[\r\n]+/', "\n", $gedcom); // Empty lines 65 $gedcom = trim($gedcom); // Leading/trailing spaces 66 $record = Auth::checkRecordAccess($record, true); 67 68 foreach ($record->facts([], false, null, true) as $fact) { 69 if ($fact->id() === $fact_id && $fact->canEdit()) { 70 $record->updateFact($fact_id, $gedcom, false); 71 break; 72 } 73 } 74 75 $base_url = $request->getAttribute('base_url'); 76 $url = str_starts_with($params['url'], $base_url) ? $params['url'] : $record->url(); 77 78 return redirect($url); 79 } 80} 81