3 * Main wiki script; see docs/design.txt
7 $wgRequestTime = microtime();
10 @ini_set
( 'allow_url_fopen', 0 ); # For security...
12 if ( isset( $_REQUEST['GLOBALS'] ) ) {
13 die( '<a href="http://www.hardened-php.net/index.76.html">$GLOBALS overwrite vulnerability</a>');
16 # Valid web server entry point, enable includes.
17 # Please don't move this line to includes/Defines.php. This line essentially defines
18 # a valid entry point. If you put it in includes/Defines.php, then any script that includes
19 # it becomes an entry point, thereby defeating its purpose.
20 define( 'MEDIAWIKI', true );
21 require_once( './includes/Defines.php' );
23 if( !file_exists( 'LocalSettings.php' ) ) {
25 require_once( 'includes/DefaultSettings.php' ); # used for printing the version
27 <!DOCTYPE html
PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
28 <html xmlns
='http://www.w3.org/1999/xhtml' xml
:lang
='en' lang
='en'>
30 <title
>MediaWiki
<?php
echo $wgVersion ?
></title
>
31 <meta http
-equiv
='Content-Type' content
='text/html; charset=utf-8' />
32 <style type
='text/css' media
='screen, projection'>
35 background
-color
: #fff;
36 font
-family
: sans
-serif
;
46 <img src
='skins/common/images/mediawiki.png' alt
='The MediaWiki logo' />
48 <h1
>MediaWiki
<?php
echo $wgVersion ?
></h1
>
51 if ( file_exists( 'config/LocalSettings.php' ) ) {
52 echo( "To complete the installation, move <tt>config/LocalSettings.php</tt> to the parent directory." );
54 echo( "Please <a href='config/index.php' title='setup'>setup the wiki</a> first." );
65 require_once( './LocalSettings.php' );
66 require_once( 'includes/Setup.php' );
68 wfProfileIn( 'main-misc-setup' );
69 OutputPage
::setEncodings(); # Not really used yet
72 $action = $wgRequest->getVal( 'action', 'view' );
73 $title = $wgRequest->getVal( 'title' );
75 if ($wgRequest->getVal( 'printable' ) == 'yes') {
76 $wgOut->setPrintable();
79 if ( '' == $title && 'delete' != $action ) {
80 $wgTitle = Title
::newFromText( wfMsgForContent( 'mainpage' ) );
81 } elseif ( $curid = $wgRequest->getInt( 'curid' ) ) {
82 # URLs like this are generated by RC, because rc_title isn't always accurate
83 $wgTitle = Title
::newFromID( $curid );
85 $wgTitle = Title
::newFromURL( $title );
86 /* check variant links so that interwiki links don't have to worry about
87 the possible different language variants
89 if( count($wgContLang->getVariants()) > 1 && !is_null($wgTitle) && $wgTitle->getArticleID() == 0 )
90 $wgContLang->findVariantLink( $title, $wgTitle );
93 wfProfileOut( 'main-misc-setup' );
95 # Debug statement for user levels
98 $search = $wgRequest->getText( 'search' );
99 if( !is_null( $search ) && $search !== '' ) {
100 // Compatibility with old search URLs which didn't use Special:Search
101 // Do this above the read whitelist check for security...
102 $wgTitle = Title
::makeTitle( NS_SPECIAL
, 'Search' );
105 # If the user is not logged in, the Namespace:title of the article must be in
106 # the Read array in order for the user to see it. (We have to check here to
107 # catch special pages etc. We check again in Article::view())
108 if ( !is_null( $wgTitle ) && !$wgTitle->userCanRead() ) {
109 $wgOut->loginToUse();
114 wfProfileIn( 'main-action' );
116 if( !$wgDisableInternalSearch && !is_null( $search ) && $search !== '' ) {
117 require_once( 'includes/SpecialSearch.php' );
118 $wgTitle = Title
::makeTitle( NS_SPECIAL
, 'Search' );
120 } else if( !$wgTitle or $wgTitle->getDBkey() == '' ) {
121 $wgTitle = Title
::newFromText( wfMsgForContent( 'badtitle' ) );
122 $wgOut->errorpage( 'badtitle', 'badtitletext' );
123 } else if ( $wgTitle->getInterwiki() != '' ) {
124 if( $rdfrom = $wgRequest->getVal( 'rdfrom' ) ) {
125 $url = $wgTitle->getFullURL( 'rdfrom=' . urlencode( $rdfrom ) );
127 $url = $wgTitle->getFullURL();
129 # Check for a redirect loop
130 if ( !preg_match( '/^' . preg_quote( $wgServer, '/' ) . '/', $url ) && $wgTitle->isLocal() ) {
131 $wgOut->redirect( $url );
133 $wgTitle = Title
::newFromText( wfMsgForContent( 'badtitle' ) );
134 $wgOut->errorpage( 'badtitle', 'badtitletext' );
136 } else if ( ( $action == 'view' ) &&
137 (!isset( $_GET['title'] ) ||
$wgTitle->getPrefixedDBKey() != $_GET['title'] ) &&
138 !count( array_diff( array_keys( $_GET ), array( 'action', 'title' ) ) ) )
140 /* redirect to canonical url, make it a 301 to allow caching */
141 $wgOut->setSquidMaxage( 1200 );
142 $wgOut->redirect( $wgTitle->getFullURL(), '301');
143 } else if ( NS_SPECIAL
== $wgTitle->getNamespace() ) {
144 # actions that need to be made when we have a special pages
145 SpecialPage
::executePath( $wgTitle );
147 if ( NS_MEDIA
== $wgTitle->getNamespace() ) {
148 $wgTitle = Title
::makeTitle( NS_IMAGE
, $wgTitle->getDBkey() );
151 $ns = $wgTitle->getNamespace();
153 // Namespace might change when using redirects
154 if($action == 'view' && !$wgRequest->getVal( 'oldid' ) ) {
155 $wgArticle = new Article( $wgTitle );
156 $rTitle = Title
::newFromRedirect( $wgArticle->fetchContent() );
158 # Reload from the page pointed to later
159 $wgArticle->mContentLoaded
= false;
160 $ns = $rTitle->getNamespace();
164 // Categories and images are handled by a different class
165 if ( $ns == NS_IMAGE
) {
167 require_once( 'includes/ImagePage.php' );
168 $wgArticle = new ImagePage( $wgTitle );
169 } elseif ( $wgUseCategoryMagic && $ns == NS_CATEGORY
) {
171 require_once( 'includes/CategoryPage.php' );
172 $wgArticle = new CategoryPage( $wgTitle );
175 if ( in_array( $action, $wgDisabledActions ) ) {
176 $wgOut->errorpage( 'nosuchaction', 'nosuchactiontext' );
180 $wgOut->setSquidMaxage( $wgSquidMaxage );
191 case 'markpatrolled':
194 case 'deletetrackback':
196 $wgArticle->$action();
202 if( !$wgEnableDublinCoreRdf ) {
203 wfHttpError( 403, 'Forbidden', wfMsg( 'nodublincore' ) );
205 require_once( 'includes/Metadata.php' );
206 wfDublinCoreRdf( $wgArticle );
209 case 'creativecommons':
210 if( !$wgEnableCreativeCommonsRdf ) {
211 wfHttpError( 403, 'Forbidden', wfMsg('nocreativecommons') );
213 require_once( 'includes/Metadata.php' );
214 wfCreativeCommonsRdf( $wgArticle );
218 require_once( 'includes/Credits.php' );
219 showCreditsPage( $wgArticle );
222 if( !$wgCommandLineMode && !$wgRequest->checkSessionCookie() ) {
223 # Send a cookie so anons get talk message notifications
224 User
::SetupSession();
228 $internal = $wgRequest->getVal( 'internaledit' );
229 $external = $wgRequest->getVal( 'externaledit' );
230 $section = $wgRequest->getVal( 'section' );
231 $oldid = $wgRequest->getVal( 'oldid' );
232 if(!$wgUseExternalEditor ||
$action=='submit' ||
$internal ||
233 $section ||
$oldid ||
(!$wgUser->getOption('externaleditor') && !$external)) {
234 require_once( 'includes/EditPage.php' );
235 $editor = new EditPage( $wgArticle );
237 } elseif($wgUseExternalEditor && ($external ||
$wgUser->getOption('externaleditor'))) {
238 require_once( 'includes/ExternalEdit.php' );
239 $mode = $wgRequest->getVal( 'mode' );
240 $extedit = new ExternalEdit( $wgArticle, $mode );
245 if ($_SERVER['REQUEST_URI'] == $wgTitle->getInternalURL('action=history')) {
246 $wgOut->setSquidMaxage( $wgSquidMaxage );
248 require_once( 'includes/PageHistory.php' );
249 $history = new PageHistory( $wgArticle );
253 require_once( 'includes/RawPage.php' );
254 $raw = new RawPage( $wgArticle );
258 if (wfRunHooks('UnknownAction', array($action, $wgArticle))) {
259 $wgOut->errorpage( 'nosuchaction', 'nosuchactiontext' );
264 wfProfileOut( 'main-action' );
266 # Deferred updates aren't really deferred anymore. It's important to report errors to the
267 # user, and that means doing this before OutputPage::output(). Note that for page saves,
268 # the client will wait until the script exits anyway before following the redirect.
269 wfProfileIn( 'main-updates' );
270 foreach ( $wgDeferredUpdateList as $up ) {
273 wfProfileOut( 'main-updates' );
275 wfProfileIn( 'main-cleanup' );
276 $wgLoadBalancer->saveMasterPos();
278 # Now commit any transactions, so that unreported errors after output() don't roll back the whole thing
279 $wgLoadBalancer->commitAll();
283 foreach ( $wgPostCommitUpdateList as $up ) {
287 wfProfileOut( 'main-cleanup' );
290 $wgLoadBalancer->closeAll();
291 wfDebug( "Request ended normally\n" );