]> scripts.mit.edu Git - autoinstalls/wordpress.git/blob - wp-admin/page.php
Wordpress 2.5.1
[autoinstalls/wordpress.git] / wp-admin / page.php
1 <?php
2 require_once('admin.php');
3
4 $parent_file = 'edit.php';
5 $submenu_file = 'edit-pages.php';
6
7 wp_reset_vars(array('action'));
8
9 function redirect_page($page_ID) {
10         $referredby = '';
11         if ( !empty($_POST['referredby']) ) {
12                 $referredby = preg_replace('|https?://[^/]+|i', '', $_POST['referredby']);
13                 $referredby = remove_query_arg('_wp_original_http_referer', $referredby);
14         }
15         $referer = preg_replace('|https?://[^/]+|i', '', wp_get_referer());
16
17         if ( 'post' == $_POST['originalaction'] && !empty($_POST['mode']) && 'bookmarklet' == $_POST['mode'] ) {
18                 $location = $_POST['referredby'];
19         } elseif ( 'post' == $_POST['originalaction'] && !empty($_POST['mode']) && 'sidebar' == $_POST['mode'] ) {
20                 $location = 'sidebar.php?a=b';
21         } elseif ( isset($_POST['save']) && ( empty($referredby) || $referredby == $referer || 'redo' != $referredby ) ) {
22                 if ( $_POST['_wp_original_http_referer'] && strpos( $_POST['_wp_original_http_referer'], '/wp-admin/page.php') === false && strpos( $_POST['_wp_original_http_referer'], '/wp-admin/page-new.php') === false )
23                         $location = add_query_arg( '_wp_original_http_referer', urlencode( stripslashes( $_POST['_wp_original_http_referer'] ) ), "page.php?action=edit&post=$page_ID&message=1" );
24                 else
25                         $location = "page.php?action=edit&post=$page_ID&message=4";
26         } elseif ($_POST['addmeta']) {
27                 $location = add_query_arg( 'message', 2, wp_get_referer() );
28                 $location = explode('#', $location);
29                 $location = $location[0] . '#postcustom';
30         } elseif ($_POST['deletemeta']) {
31                 $location = add_query_arg( 'message', 3, wp_get_referer() );
32                 $location = explode('#', $location);
33                 $location = $location[0] . '#postcustom';
34         } elseif (!empty($referredby) && $referredby != $referer) {
35                 $location = $_POST['referredby'];
36                 $location = remove_query_arg('_wp_original_http_referer', $location);
37                 if ( $_POST['referredby'] == 'redo' )
38                         $location = get_permalink( $page_ID );
39                 elseif ( false !== strpos($location, 'edit-pages.php') )
40                         $location = add_query_arg('posted', $page_ID, $location);
41                 elseif ( false !== strpos($location, 'wp-admin') )
42                         $location = "page-new.php?posted=$page_ID";
43         } elseif ( isset($_POST['publish']) ) {
44                 $location = "page-new.php?posted=$page_ID";
45         } elseif ($action == 'editattachment') {
46                 $location = 'attachments.php';
47         } else {
48                 $location = "page.php?action=edit&post=$page_ID&message=4";
49         }
50
51         wp_redirect($location);
52 }
53
54 if (isset($_POST['deletepost'])) {
55 $action = "delete";
56 }
57
58 switch($action) {
59 case 'post':
60         check_admin_referer('add-page');
61         $page_ID = write_post();
62
63         redirect_page($page_ID);
64
65         exit();
66         break;
67
68 case 'edit':
69         $title = __('Edit');
70         $editing = true;
71         $page_ID = $post_ID = $p = (int) $_GET['post'];
72         $post = get_post_to_edit($page_ID);
73
74         if ( empty($post->ID) ) wp_die( __("You attempted to edit a page that doesn't exist. Perhaps it was deleted?") );
75
76         if ( 'post' == $post->post_type ) {
77                 wp_redirect("post.php?action=edit&post=$post_ID");
78                 exit();
79         }
80
81         wp_enqueue_script('page');
82         if ( user_can_richedit() )
83                 wp_enqueue_script('editor');
84         wp_enqueue_script('thickbox');
85         wp_enqueue_script('media-upload');
86
87         if ( current_user_can('edit_page', $page_ID) ) {
88                 if ( $last = wp_check_post_lock( $post->ID ) ) {
89                         $last_user = get_userdata( $last );
90                         $last_user_name = $last_user ? $last_user->display_name : __('Somebody');
91                         $message = sprintf( __( 'Warning: %s is currently editing this page' ), wp_specialchars( $last_user_name ) );
92                         $message = str_replace( "'", "\'", "<div class='error'><p>$message</p></div>" );
93                         add_action('admin_notices', create_function( '', "echo '$message';" ) );
94                 } else {
95                         wp_set_post_lock( $post->ID );
96                         wp_enqueue_script('autosave');
97                 }
98         }
99
100         require_once('admin-header.php');
101
102         if ( !current_user_can('edit_page', $page_ID) )
103                 die ( __('You are not allowed to edit this page.') );
104
105         include('edit-page-form.php');
106         break;
107
108 case 'editattachment':
109         $page_id = $post_ID = (int) $_POST['post_ID'];
110         check_admin_referer('update-attachment_' . $page_id);
111
112         // Don't let these be changed
113         unset($_POST['guid']);
114         $_POST['post_type'] = 'attachment';
115
116         // Update the thumbnail filename
117         $newmeta = wp_get_attachment_metadata( $page_id, true );
118         $newmeta['thumb'] = $_POST['thumb'];
119
120         wp_update_attachment_metadata( $newmeta );
121
122 case 'editpost':
123         $page_ID = (int) $_POST['post_ID'];
124         check_admin_referer('update-page_' . $page_ID);
125
126         $page_ID = edit_post();
127
128         redirect_page($page_ID);
129
130         exit();
131         break;
132
133 case 'delete':
134         $page_id = (isset($_GET['post']))  ? intval($_GET['post']) : intval($_POST['post_ID']);
135         check_admin_referer('delete-page_' .  $page_id);
136
137         $page = & get_post($page_id);
138
139         if ( !current_user_can('delete_page', $page_id) )
140                 wp_die( __('You are not allowed to delete this page.') );
141
142         if ( $page->post_type == 'attachment' ) {
143                 if ( ! wp_delete_attachment($page_id) )
144                         wp_die( __('Error in deleting...') );
145         } else {
146                 if ( !wp_delete_post($page_id) )
147                         wp_die( __('Error in deleting...') );
148         }
149
150         $sendback = wp_get_referer();
151         if (strpos($sendback, 'page.php') !== false) $sendback = get_option('siteurl') .'/wp-admin/page.php';
152         elseif (strpos($sendback, 'attachments.php') !== false) $sendback = get_option('siteurl') .'/wp-admin/attachments.php';
153         $sendback = preg_replace('|[^a-z0-9-~+_.?#=&;,/:]|i', '', $sendback);
154         wp_redirect($sendback);
155         exit();
156         break;
157
158 default:
159         wp_redirect('edit-pages.php');
160         exit();
161         break;
162 } // end switch
163 include('admin-footer.php');
164 ?>