summaryrefslogtreecommitdiff
path: root/create_thread.php
blob: 534b0abcf24ac3125e2c8e155d33d18ae2f5ccfb (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
<?php session_start() ?>
<!DOCTYPE html>
<html lang="en">
<head>
    <title>Create a thread - cflip.net forum</title>
    <link rel="stylesheet" href="styles/style.css">
</head>
<body>
<?php include_once 'includes/templates/header.php' ?>
<h2>Create a new thread</h2>
<?php
include_once 'includes/Session.php';
if (!Session::get()->is_signed_in()) {
	trigger_error('You must be <a href="signin.php">signed in</a> to create a thread.');
	exit();
}
?>
<form action="<?php echo htmlspecialchars($_SERVER["PHP_SELF"]); ?>" method="post">
    <label for="thread_subject">Subject: </label><br>
    <input type="text" name="thread_subject"><br>
    <label for="thread_cat">Category: </label><br>
	<?php
	include_once './includes/db_inc.php';
	include_once './includes/model/Category.php';

	$categories = get_all_categories($dbc);

	if (count($categories) == 0) {
		echo 'There are no categories to post to!';
	} else {
		echo '<select name="thread_cat">';

		foreach ($categories as $category) {
			echo '<option value="' . $category->id . '">' . $category->name . '</option>';
		}

		echo '</select><br>';
	}
	?>
    <label for="post_content">Write your post: </label><br>
    <textarea name="post_content"></textarea><br>
    <input type="submit" name="submit">
</form>
<?php
include_once 'includes/functions_post.php';
include_once 'includes/functions_thread.php';

if ($_SERVER['REQUEST_METHOD'] == 'POST') {
	$post_content = filter_input(INPUT_POST, 'post_content', FILTER_SANITIZE_STRING);
	$thread_subject = filter_input(INPUT_POST, 'thread_subject', FILTER_SANITIZE_STRING);
	$thread_cat = filter_input(INPUT_POST, 'thread_cat', FILTER_SANITIZE_NUMBER_INT);

	if (empty($thread_subject) or !$thread_subject) {
		echo 'Thread subject cannot be empty';
	} else {
		$thread_id = create_thread($thread_subject, $thread_cat);
		create_post($post_content, $thread_id, $thread_cat);


		header("Location: viewthread.php?id=" . $thread_id);
	}
}
?>
</body>
</html>