') { $line = substr($line, 1); if (!$strict && ctype_space($line{0})) { $line = substr($line, 1); } $quote_level++; } if (ctype_space($line{0})) { $line = substr($line, 1); } return $line; } function banana_quote($line, $level, $mark = '>') { $lines = explode("\n", $line); $quote = str_repeat($mark, $level); foreach ($lines as &$line) { $line = $quote . $line; } return implode("\n", $lines); } function banana_unflowed($text) { $lines = explode("\n", $text); $text = ''; while (!is_null($line = array_shift($lines))) { $level = 0; $line = banana_removeQuotes($line, $level); while (banana_isFlowed($line)) { $lvl = 0; if (empty($lines)) { break; } $nl = $lines[0]; $nl = banana_removeQuotes($nl, $lvl); if ($lvl == $level) { $line .= $nl; array_shift($lines); } else { break; } } $text .= banana_quote($line, $level) . "\n"; } return $text; } function banana_wordwrap($text, $quote_level = 0) { if ($quote_level > 0) { $length = Banana::$msgshow_wrap - $quote_level - 1; return banana_quote(wordwrap($text, $length), $quote_level); } return wordwrap($text, Banana::$msgshow_wrap); } function banana_catchFormats($text) { $formatting = Array('em' => array('\B\/\b', '\b\/\B'), 'u' => array('\b_', '_\b'), 'strong' => array('\B\*\b', '\b\*\B')); $url = Banana::$msgshow_url; preg_match_all("/$url/ui", $text, $urls); $text = str_replace($urls[0], "&&&urls&&&", $text); foreach ($formatting as $mark=>$limit) { list($ll, $lr) = $limit; $text = preg_replace('/' . $ll . '(\w+?)' . $lr . '/us', "<$mark>\\1$mark>", $text); } return preg_replace('/&&&urls&&&/e', 'array_shift($urls[0])', $text); } /** Build a flowed text from plain text */ function banana_flow($text) { $lines = explode("\n", $text); $text = ''; while (!is_null($line = array_shift($lines))) { if ($line != '-- ') { $level = 0; $line = banana_removeQuotes($line, $level); $text .= rtrim(str_replace("\n", " \n", banana_wordwrap($line, $level))) . "\n"; } else { $text .= $line . "\n"; } } return $text; } // {{{ URL Catcher tools function banana__cutlink($link) { $link = banana_html_entity_decode($link, ENT_QUOTES); if (strlen($link) > Banana::$msgshow_wrap) { $link = substr($link, 0, Banana::$msgshow_wrap - 3) . "..."; } return banana_htmlentities($link, ENT_QUOTES); } function banana__cleanURL($url) { $url = str_replace('@', '%40', $url); if (strpos($url, '://') === false) { $url = 'http://' . $url; } return '' . banana__cutlink($url) . ''; } function banana__catchMailLink($email) { $mid = '<' . $email . '>'; if (isset(Banana::$spool->ids[$mid])) { return Banana::$page->makeLink(Array('group' => Banana::$group, 'artid' => Banana::$spool->ids[$mid]->id, 'text' => $email)); } elseif (strpos($email, '$') !== false) { return $email; } return '' . $email . ''; } // }}} function banana_catchURLs($text) { $url = Banana::$msgshow_url; $res = preg_replace("/&(lt|gt|quot);/", " &\\1; ", $text); $res = preg_replace("/$url/uie", "'\\1'.banana__cleanurl('\\2').'\\3'", $res); $res = preg_replace('/(["\[])?(?:mailto:|news:)?([a-z0-9.\-+_\$]+@([\-.+_]?[a-z0-9])+)(["\]])?/ie', "'\\1' . banana__catchMailLink('\\2') . '\\4'", $res); $res = preg_replace("/ &(lt|gt|quot); /", "&\\1;", $res); return $res; } // {{{ Quotes catcher functions function banana__replaceQuotes($text, $regexp) { return stripslashes(preg_replace("@(^|
|\n)$regexp@i", '\1', $text)); } // }}} function banana_catchQuotes($res, $strict = true) { if ($strict) { $regexp = ">"; } else { $regexp = "> *"; } while (preg_match("/(^||\n)$regexp/i", $res)) { $res = preg_replace("/(^||\n)(($regexp.*(?:\n|$))+)/ie", "'\\1'" ." . banana__replaceQuotes('\\2', '$regexp')" ." . ''", $res); } return $res; } function banana_catchSignature($res) { $res = preg_replace("@-- ?\n@", "\n-- \n", $res); $parts = preg_split("/\n-- ?\n/", $res); $sign = ''; return join($sign, $parts); } function banana_plainTextToHtml($text, $strict = true) { $text = banana_htmlentities($text); $text = banana_catchFormats($text); $text = banana_catchURLs($text); $text = banana_catchQuotes($text, $strict); $text = banana_catchSignature($text); return '' . $text . ''; } function banana_wrap($text, $base_level = 0, $strict = true) { $lines = explode("\n", $text); $text = ''; $buffer = array(); $level = 0; while (!is_null($line = array_shift($lines))) { $lvl = 0; $line = banana_removeQuotes($line, $lvl, $strict); if($lvl != $level) { if (!empty($buffer)) { $text .= banana_wordwrap(implode("\n", $buffer), $level + $base_level) . "\n"; $buffer = array(); } $level = $lvl; } $buffer[] = $line; } if (!empty($buffer)) { $text .= banana_wordwrap(implode("\n", $buffer), $level + $base_level); } return $text; } function banana_formatPlainText(BananaMimePart &$part, $base_level = 0) { $text = $part->getText(); if ($part->isFlowed()) { $text = banana_unflowed($text); } $text = banana_wrap($text, $base_level, $part->isFlowed()); return banana_plainTextToHtml($text, $part->isFlowed()); } function banana_quotePlainText(BananaMimePart &$part) { $text = $part->getText(); if ($part->isFlowed()) { $text = banana_unflowed($text); } return banana_quote($text, 1); } // }}} // {{{ HTML Functions function banana_htmlentities($text, $quote = ENT_COMPAT) { return htmlentities($text, $quote, 'UTF-8'); } function banana_html_entity_decode($text, $quote = ENT_COMPAT) { return html_entity_decode($text, $quote, 'UTF-8'); } function banana_removeEvilAttributes($tagSource) { $stripAttrib = 'javascript:|onclick|ondblclick|onmousedown|onmouseup|onmouseover|'. 'onmousemove|onmouseout|onkeypress|onkeydown|onkeyup'; return stripslashes(preg_replace("/$stripAttrib/i", '', $tagSource)); } function banana_cleanStyles($tag, $attributes) { static $td_style, $conv, $size_conv; if (!isset($td_style)) { $conv = array('style' => 'style', 'width' => 'width', 'height' => 'height', 'border' => 'border-size', 'size' => 'font-size', 'align' => 'text-align', 'valign' => 'vertical-align', 'face' => 'font', 'bgcolor' => 'background-color', 'color' => 'color', 'style' => 'style', 'cellpadding' => 'padding', 'cellspacing' => 'border-spacing'); $size_conv = array(1 => 'xx-small', 2 => 'x-small', 3 => 'small', 4 => 'medium', 5 => 'large', 6 => 'x-large', 7 => 'xx-large', '-2' => 'xx-small', '-1' => 'x-small', '+1' => 'medium', '+2' => 'large', '+3' => 'x-large', '+4' => 'xx-large'); $td_style = array(); } if ($tag == 'table') { array_unshift($td_style, ''); } if ($tag == '/table') { array_shift($td_style); } if ($tag{0} == '/') { return ''; } if ($tag == 'td') { $style = $td_style[0]; } else { $style = ''; } $attributes = str_replace(array("\n", "\r"), ' ', stripslashes($attributes)); $attributes = str_replace(array('= "', '= \''), array('="', '=\''), $attributes); foreach ($conv as $att=>$stl) { $pattern = '/\b' . preg_quote($att, '/') . '=([\'"])?(.+?)(?(1)\1|(?:$| ))/i'; if (preg_match($pattern, $attributes, $matches)) { $attributes = preg_replace($pattern, '', $attributes); $val = $matches[2]; if ($att == 'cellspacing' && strpos($style, 'border-collapse') === false) { $style = "border-collapse: separate; border-spacing: $val $val; " . $style; } elseif ($att == 'cellpadding' && $tag == 'table') { $td_style[0] = "$stl: {$val}px; "; } elseif ($att == 'style') { $val = rtrim($val, ' ;'); $style .= "$val; "; } elseif ($att == 'size') { $val = $size_conv[$val]; $style = "$stl: $val; " . $style; } elseif (is_numeric($val)) { $style = "$stl: {$val}px; " . $style; } else { $style = "$stl: $val; " . $style; } } } if (!empty($style)) { $style = 'style="' . $style . '" '; } return ' ' . $style . trim($attributes); } function banana__filterCss($text) { $text = preg_replace("/(,[\s\n\r]*)/s", '\1 .banana .message .body .html ', $text); return '.banana .message .body .html ' . $text; } function banana_filterCss($css) { preg_match_all("/(^|\n|,\s*)\s*([\#\.@\w][^;\{\}\<]*?[\{])/s", $css, $matches); $css = preg_replace("/(^|\n)\s*([\#\.@\w][^;\{\}\<]*?)([\{])/se", '"\1" . banana__filterCss("\2") . "\3"', $css); $css = preg_replace('/ body\b/i', '', $css); if (!Banana::$msgshow_externalimages) { if (preg_match('!url\([^:\)]+:(//|\\\).*?\)!i', $css)) { $css = preg_replace('!url\([^:\)]+:(//|\\\).*?\)!i', 'url(invalid-image.png)', $css); Banana::$msgshow_hasextimages = true; } } return $css; } /** * @return string * @param string * @desc Strip forbidden tags and delegate tag-source check to removeEvilAttributes() */ function banana_cleanHtml($source, $to_xhtml = false) { if (function_exists('tidy_repair_string')) { $tidy_config = array('drop-empty-paras' => true, 'drop-proprietary-attributes' => true, 'hide-comments' => true, 'logical-emphasis' => true, 'output-xhtml' => true, 'replace-color' => true, 'join-classes' => false, 'clean' => false, 'show-body-only' => false, 'alt-text' => '[ inserted by TIDY ]', 'wrap' => 120); if (function_exists('tidy_setopt')) { // Tidy 1.0 foreach ($tidy_config as $field=>$value) { tidy_setopt($field, $value); } tidy_set_encoding('utf8'); $source = tidy_repair_string($source); } else { // Tidy 2.0 $source = tidy_repair_string($source, $tidy_config, 'utf8'); } } // To XHTML if ($to_xhtml) { // catch inline CSS $css = null; if (preg_match('/(.*?)<\/head>/is', $source, $matches)) { $source = preg_replace('/ .*?<\/head>/is', '', $source); preg_match_all('/