summaryrefslogtreecommitdiff
path: root/includes/reply_inc.php
blob: cf7a839949b03c42cdc18037a9e6e9d702915746 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
<?php

session_start();

include_once 'db_inc.php';
include_once 'functions_inc.php';

if ($_SERVER['REQUEST_METHOD'] != 'POST') {
	die('This file cannot be called directly.');
} 

if (!isset($_SESSION['signed_in'])) {
	die('You must be signed in to reply to a thread.');
} 

$reply_content = filter_var($_POST['reply_content'], FILTER_SANITIZE_STRING);
$reply_to = $_GET['reply_to'];
$post_author = $_SESSION['user_id'];

$sql = "INSERT INTO posts(post_content, post_date, post_thread, post_author) VALUES(?, NOW(), ?, ?)";
$stmt = mysqli_stmt_init($dbc);

if (!mysqli_stmt_prepare($stmt, $sql)) {
	die('Failed to process statement: ' . mysqli_error($dbc));
}

mysqli_stmt_bind_param($stmt, "sii", $reply_content, $reply_to, $post_author);
mysqli_stmt_execute($stmt);
mysqli_stmt_close($stmt);

header("Location: ../thread.php?id=" . $_GET['reply_to']);