Initial commit: CloudOps infrastructure platform

This commit is contained in:
root
2026-04-09 19:58:57 +02:00
commit 1166a52f26
7762 changed files with 839452 additions and 0 deletions

View File

@@ -0,0 +1,72 @@
<?php
namespace Mautic\AssetBundle\Controller;
use Gaufrette\Filesystem;
use Mautic\AssetBundle\AssetEvents;
use Mautic\AssetBundle\Event\RemoteAssetBrowseEvent;
use Mautic\AssetBundle\Model\AssetModel;
use Mautic\CoreBundle\Controller\AjaxController as CommonAjaxController;
use Mautic\CoreBundle\Helper\InputHelper;
use Mautic\PluginBundle\Helper\IntegrationHelper;
use Symfony\Component\HttpFoundation\Request;
class AjaxController extends CommonAjaxController
{
public function categoryListAction(Request $request): \Symfony\Component\HttpFoundation\JsonResponse
{
$assetModel = $this->getModel('asset');
\assert($assetModel instanceof AssetModel);
$filter = InputHelper::clean($request->query->get('filter'));
$results = $assetModel->getLookupResults('category', $filter, 10);
$dataArray = [];
foreach ($results as $r) {
$dataArray[] = [
'label' => $r['title']." ({$r['id']})",
'value' => $r['id'],
];
}
return $this->sendJsonResponse($dataArray);
}
/**
* @throws \Exception
*/
public function fetchRemoteFilesAction(Request $request, IntegrationHelper $integrationHelper): \Symfony\Component\HttpFoundation\JsonResponse
{
$provider = InputHelper::string($request->request->get('provider'));
$path = InputHelper::string($request->request->get('path', ''));
$dispatcher = $this->dispatcher;
$name = AssetEvents::ASSET_ON_REMOTE_BROWSE;
if (!$dispatcher->hasListeners($name)) {
return $this->sendJsonResponse(['success' => 0]);
}
/** @var \Mautic\PluginBundle\Integration\AbstractIntegration $integration */
$integration = $integrationHelper->getIntegrationObject($provider);
$event = new RemoteAssetBrowseEvent($integration);
$dispatcher->dispatch($event, $name);
if (!$adapter = $event->getAdapter()) {
return $this->sendJsonResponse([
'success' => 0,
'message' => $event->getFailureMessage() ?? null,
]);
}
$connector = new Filesystem($adapter);
$output = $this->renderView(
'@MauticAsset/Remote/list.html.twig',
[
'connector' => $connector,
'integration' => $integration,
'items' => $connector->listKeys($path),
]
);
return $this->sendJsonResponse(['success' => 1, 'output' => $output]);
}
}

View File

@@ -0,0 +1,102 @@
<?php
namespace Mautic\AssetBundle\Controller\Api;
use Doctrine\Persistence\ManagerRegistry;
use Mautic\ApiBundle\Controller\CommonApiController;
use Mautic\ApiBundle\Helper\EntityResultHelper;
use Mautic\AssetBundle\Entity\Asset;
use Mautic\AssetBundle\Model\AssetModel;
use Mautic\CoreBundle\Factory\ModelFactory;
use Mautic\CoreBundle\Helper\AppVersion;
use Mautic\CoreBundle\Helper\CoreParametersHelper;
use Mautic\CoreBundle\Security\Permissions\CorePermissions;
use Mautic\CoreBundle\Translation\Translator;
use Symfony\Component\EventDispatcher\EventDispatcherInterface;
use Symfony\Component\Form\FormFactoryInterface;
use Symfony\Component\HttpFoundation\Request;
use Symfony\Component\HttpFoundation\RequestStack;
use Symfony\Component\HttpFoundation\Response;
use Symfony\Component\Routing\RouterInterface;
/**
* @extends CommonApiController<Asset>
*/
class AssetApiController extends CommonApiController
{
/**
* @var AssetModel|null
*/
protected $model;
public function __construct(
CorePermissions $security,
Translator $translator,
EntityResultHelper $entityResultHelper,
RouterInterface $router,
FormFactoryInterface $formFactory,
AppVersion $appVersion,
RequestStack $requestStack,
private CoreParametersHelper $parametersHelper,
ManagerRegistry $doctrine,
ModelFactory $modelFactory,
EventDispatcherInterface $dispatcher,
CoreParametersHelper $coreParametersHelper,
) {
$assetModel = $modelFactory->getModel('asset');
\assert($assetModel instanceof AssetModel);
$this->model = $assetModel;
$this->entityClass = Asset::class;
$this->entityNameOne = 'asset';
$this->entityNameMulti = 'assets';
$this->serializerGroups = ['assetDetails', 'categoryList', 'publishDetails'];
parent::__construct($security, $translator, $entityResultHelper, $router, $formFactory, $appVersion, $requestStack, $doctrine, $modelFactory, $dispatcher, $coreParametersHelper);
}
/**
* Gives child controllers opportunity to analyze and do whatever to an entity before going through serializer.
*/
protected function preSerializeEntity(object $entity, string $action = 'view'): void
{
$entity->setDownloadUrl(
$this->model->generateUrl($entity, true)
);
}
/**
* Convert posted parameters into what the form needs in order to successfully bind.
*
* @return mixed
*/
protected function prepareParametersForBinding(Request $request, $parameters, $entity, $action)
{
$assetDir = $this->parametersHelper->get('upload_dir');
$entity->setUploadDir($assetDir);
if (isset($parameters['file'])) {
if ('local' === $parameters['storageLocation']) {
$entity->setPath($parameters['file']);
$entity->setFileInfoFromFile();
if (null === $entity->loadFile()) {
return $this->returnError('File '.$parameters['file'].' was not found in the asset directory.', Response::HTTP_BAD_REQUEST);
}
} elseif ('remote' === $parameters['storageLocation']) {
$parameters['remotePath'] = $parameters['file'];
$entity->setTitle($parameters['title']);
$entity->setStorageLocation('remote');
$entity->setRemotePath($parameters['remotePath']);
$entity->preUpload();
$entity->upload();
}
unset($parameters['file']);
} elseif ('new' === $action) {
return $this->returnError('File of the asset is required.', Response::HTTP_BAD_REQUEST);
}
return $parameters;
}
}

View File

@@ -0,0 +1,754 @@
<?php
namespace Mautic\AssetBundle\Controller;
use Mautic\AssetBundle\Model\AssetModel;
use Mautic\CoreBundle\Controller\FormController;
use Mautic\CoreBundle\Form\Type\DateRangeType;
use Mautic\CoreBundle\Helper\CoreParametersHelper;
use Mautic\CoreBundle\Helper\FileHelper;
use Mautic\CoreBundle\Model\AuditLogModel;
use Mautic\PluginBundle\Helper\IntegrationHelper;
use Oneup\UploaderBundle\Templating\Helper\UploaderHelper;
use Symfony\Component\HttpFoundation\JsonResponse;
use Symfony\Component\HttpFoundation\Request;
use Symfony\Component\HttpFoundation\Response;
class AssetController extends FormController
{
/**
* @return JsonResponse|Response
*/
public function indexAction(Request $request, CoreParametersHelper $parametersHelper, AssetModel $assetModel, int $page = 1)
{
// set some permissions
$permissions = $this->security->isGranted([
'asset:assets:viewown',
'asset:assets:viewother',
'asset:assets:create',
'asset:assets:editown',
'asset:assets:editother',
'asset:assets:deleteown',
'asset:assets:deleteother',
'asset:assets:publishown',
'asset:assets:publishother',
], 'RETURN_ARRAY');
if (!$permissions['asset:assets:viewown'] && !$permissions['asset:assets:viewother']) {
return $this->accessDenied();
}
$this->setListFilters();
$limit = $request->getSession()->get('mautic.asset.limit', $parametersHelper->get('default_assetlimit'));
$start = (1 === $page) ? 0 : (($page - 1) * $limit);
if ($start < 0) {
$start = 0;
}
$search = $request->get('search', $request->getSession()->get('mautic.asset.filter', ''));
$request->getSession()->set('mautic.asset.filter', $search);
$filter = ['string' => $search, 'force' => []];
if (!$permissions['asset:assets:viewother']) {
$filter['force'][] =
['column' => 'a.createdBy', 'expr' => 'eq', 'value' => $this->user->getId()];
}
$orderBy = $request->getSession()->get('mautic.asset.orderby', 'a.dateModified');
$orderByDir = $request->getSession()->get('mautic.asset.orderbydir', $this->getDefaultOrderDirection());
$assets = $assetModel->getEntities(
[
'start' => $start,
'limit' => $limit,
'filter' => $filter,
'orderBy' => $orderBy,
'orderByDir' => $orderByDir,
]
);
$count = count($assets);
if ($count && $count < ($start + 1)) {
// the number of entities are now less then the current asset so redirect to the last asset
if (1 === $count) {
$lastPage = 1;
} else {
$lastPage = (ceil($count / $limit)) ?: 1;
}
$request->getSession()->set('mautic.asset.asset', $lastPage);
$returnUrl = $this->generateUrl('mautic_asset_index', ['page' => $lastPage]);
return $this->postActionRedirect([
'returnUrl' => $returnUrl,
'viewParameters' => ['asset' => $lastPage],
'contentTemplate' => 'Mautic\AssetBundle\Controller\AssetController::indexAction',
'passthroughVars' => [
'activeLink' => '#mautic_asset_index',
'mauticContent' => 'asset',
],
]);
}
// set what asset currently on so that we can return here after form submission/cancellation
$request->getSession()->set('mautic.asset.page', $page);
$tmpl = $request->isXmlHttpRequest() ? $request->get('tmpl', 'index') : 'index';
// retrieve a list of categories
$categories = $assetModel->getLookupResults('category', '', 0);
return $this->delegateView([
'viewParameters' => [
'searchValue' => $search,
'items' => $assets,
'categories' => $categories,
'limit' => $limit,
'permissions' => $permissions,
'model' => $assetModel,
'tmpl' => $tmpl,
'page' => $page,
'security' => $this->security,
],
'contentTemplate' => '@MauticAsset/Asset/list.html.twig',
'passthroughVars' => [
'activeLink' => '#mautic_asset_index',
'mauticContent' => 'asset',
'route' => $this->generateUrl('mautic_asset_index', ['page' => $page]),
],
]);
}
/**
* Loads a specific form into the detailed panel.
*
* @param int $objectId
*
* @return JsonResponse|Response
*/
public function viewAction(Request $request, AssetModel $model, $objectId)
{
$activeAsset = $model->getEntity($objectId);
// set the asset we came from
$page = $request->getSession()->get('mautic.asset.page', 1);
$tmpl = $request->isXmlHttpRequest() ? $request->get('tmpl', 'details') : 'details';
// Init the date range filter form
$dateRangeValues = $request->get('daterange', []);
$action = $this->generateUrl('mautic_asset_action', ['objectAction' => 'view', 'objectId' => $objectId]);
$dateRangeForm = $this->formFactory->create(DateRangeType::class, $dateRangeValues, ['action' => $action]);
if (null === $activeAsset) {
// set the return URL
$returnUrl = $this->generateUrl('mautic_asset_index', ['page' => $page]);
return $this->postActionRedirect([
'returnUrl' => $returnUrl,
'viewParameters' => ['page' => $page],
'contentTemplate' => 'Mautic\AssetBundle\Controller\AssetController::indexAction',
'passthroughVars' => [
'activeLink' => '#mautic_asset_index',
'mauticContent' => 'asset',
],
'flashes' => [
[
'type' => 'error',
'msg' => 'mautic.asset.asset.error.notfound',
'msgVars' => ['%id%' => $objectId],
],
],
]);
} elseif (!$this->security->hasEntityAccess('asset:assets:viewown', 'asset:assets:viewother', $activeAsset->getCreatedBy())) {
return $this->accessDenied();
}
// Audit Log
$auditLogModel = $this->getModel('core.auditlog');
\assert($auditLogModel instanceof AuditLogModel);
$logs = $auditLogModel->getLogForObject('asset', $activeAsset->getId(), $activeAsset->getDateAdded());
return $this->delegateView([
'returnUrl' => $action,
'viewParameters' => [
'activeAsset' => $activeAsset,
'tmpl' => $tmpl,
'permissions' => $this->security->isGranted([
'asset:assets:viewown',
'asset:assets:viewother',
'asset:assets:create',
'asset:assets:editown',
'asset:assets:editother',
'asset:assets:deleteown',
'asset:assets:deleteother',
'asset:assets:publishown',
'asset:assets:publishother',
], 'RETURN_ARRAY'),
'stats' => [
'downloads' => [
'total' => $activeAsset->getDownloadCount(),
'unique' => $activeAsset->getUniqueDownloadCount(),
'timeStats' => $model->getDownloadsLineChartData(
null,
new \DateTime($dateRangeForm->get('date_from')->getData()),
new \DateTime($dateRangeForm->get('date_to')->getData()),
null,
['asset_id' => $activeAsset->getId()]
),
],
],
'security' => $this->security,
'assetDownloadUrl' => $model->generateUrl($activeAsset, true),
'logs' => $logs,
'dateRangeForm' => $dateRangeForm->createView(),
],
'contentTemplate' => '@MauticAsset/Asset/'.$tmpl.'.html.twig',
'passthroughVars' => [
'activeLink' => '#mautic_asset_index',
'mauticContent' => 'asset',
],
]);
}
/**
* Show a preview of the file.
*
* @param int $objectId
*
* @return JsonResponse|Response
*/
public function previewAction(Request $request, AssetModel $model, $objectId)
{
$activeAsset = $model->getEntity($objectId);
if (null === $activeAsset || !$this->security->hasEntityAccess('asset:assets:viewown', 'asset:assets:viewother', $activeAsset->getCreatedBy())) {
return $this->modalAccessDenied();
}
$download = $request->query->get('download', 0);
// Display the file directly in the browser just for selected extensions
$defaultStream = in_array($activeAsset->getExtension(), $this->coreParametersHelper->get('streamed_extensions')) ? '1' : null;
$stream = $request->query->get('stream', $defaultStream);
if ('1' === $download || '1' === $stream) {
try {
// set the uploadDir
$activeAsset->setUploadDir($this->coreParametersHelper->get('upload_dir'));
$contents = $activeAsset->getFileContents();
} catch (\Exception) {
return $this->notFound();
}
$response = new Response();
$response->headers->set('Content-Type', $activeAsset->getFileMimeType());
if ('1' === $download) {
$response->headers->set('Content-Disposition', 'attachment;filename="'.$activeAsset->getOriginalFileName());
}
$response->setContent($contents);
return $response;
}
return $this->delegateView([
'viewParameters' => [
'activeAsset' => $activeAsset,
'assetDownloadUrl' => $model->generateUrl($activeAsset),
],
'contentTemplate' => '@MauticAsset/Modules/preview.html.twig',
'passthroughVars' => [
'route' => false,
],
]);
}
/**
* Generates new form and processes post data.
*
* @return \Symfony\Component\HttpFoundation\RedirectResponse|Response
*/
public function newAction(Request $request, CoreParametersHelper $parametersHelper, UploaderHelper $uploaderHelper, IntegrationHelper $integrationHelper, AssetModel $model, $entity = null)
{
if (null == $entity) {
$entity = $model->getEntity();
}
$entity->setMaxSize(FileHelper::convertMegabytesToBytes($this->coreParametersHelper->get('max_size')));
$method = $request->getMethod();
$session = $request->getSession();
if (!$this->security->isGranted('asset:assets:create')) {
return $this->accessDenied();
}
$maxSize = $model->getMaxUploadSize();
$extensions = '.'.implode(', .', $this->coreParametersHelper->get('allowed_extensions'));
$maxSizeError = $this->translator->trans('mautic.asset.asset.error.file.size', [
'%fileSize%' => '{{filesize}}',
'%maxSize%' => '{{maxFilesize}}',
], 'validators');
$extensionError = $this->translator->trans('mautic.asset.asset.error.file.extension.js', [
'%extensions%' => $extensions,
], 'validators');
// Create temporary asset ID
$asset = $request->request->all()['asset'] ?? [];
$tempId = 'POST' === $method ? ($asset['tempId'] ?? '') : uniqid('tmp_');
$entity->setTempId($tempId);
// Set the page we came from
$page = $session->get('mautic.asset.page', 1);
$action = $this->generateUrl('mautic_asset_action', ['objectAction' => 'new']);
$uploadEndpoint = $uploaderHelper->endpoint('asset');
// create the form
$form = $model->createForm($entity, $this->formFactory, $action);
// /Check for a submitted form and process it
if ('POST' == $method) {
$valid = false;
if (!$cancelled = $this->isFormCancelled($form)) {
if ($valid = $this->isFormValid($form)) {
$entity->setUploadDir($parametersHelper->get('upload_dir'));
$entity->preUpload();
$entity->upload();
$entity->setDateModified(new \DateTime());
// form is valid so process the data
$model->saveEntity($entity);
// remove the asset from request
$request->files->remove('asset');
$this->addFlashMessage('mautic.core.notice.created', [
'%name%' => $entity->getTitle(),
'%menu_link%' => 'mautic_asset_index',
'%url%' => $this->generateUrl('mautic_asset_action', [
'objectAction' => 'edit',
'objectId' => $entity->getId(),
]),
]);
if (!$this->getFormButton($form, ['buttons', 'save'])->isClicked()) {
// return edit view so that all the session stuff is loaded
return $this->editAction($request, $uploaderHelper, $integrationHelper, $model, $entity->getId(), true);
}
$viewParameters = [
'objectAction' => 'view',
'objectId' => $entity->getId(),
];
$returnUrl = $this->generateUrl('mautic_asset_action', $viewParameters);
$template = 'Mautic\AssetBundle\Controller\AssetController::viewAction';
}
} else {
$viewParameters = ['page' => $page];
$returnUrl = $this->generateUrl('mautic_asset_index', $viewParameters);
$template = 'Mautic\AssetBundle\Controller\AssetController::indexAction';
}
if ($cancelled || ($valid && $this->getFormButton($form, ['buttons', 'save'])->isClicked())) {
return $this->postActionRedirect([
'returnUrl' => $returnUrl,
'viewParameters' => $viewParameters,
'contentTemplate' => $template,
'passthroughVars' => [
'activeLink' => 'mautic_asset_index',
'mauticContent' => 'asset',
],
]);
}
}
// Check for integrations to cloud providers
$integrations = $integrationHelper->getIntegrationObjects(null, ['cloud_storage']);
return $this->delegateView([
'viewParameters' => [
'form' => $form->createView(),
'activeAsset' => $entity,
'assetDownloadUrl' => $model->generateUrl($entity),
'integrations' => $integrations,
'startOnLocal' => $entity->isLocal(),
'uploadEndpoint' => $uploadEndpoint,
'maxSize' => $maxSize,
'maxSizeError' => $maxSizeError,
'extensions' => $extensions,
'extensionError' => $extensionError,
],
'contentTemplate' => '@MauticAsset/Asset/form.html.twig',
'passthroughVars' => [
'activeLink' => '#mautic_asset_index',
'mauticContent' => 'asset',
'route' => $this->generateUrl('mautic_asset_action', [
'objectAction' => 'new',
]),
],
]);
}
/**
* Generates edit form and processes post data.
*
* @param int $objectId
* @param bool $ignorePost
*
* @return JsonResponse|\Symfony\Component\HttpFoundation\RedirectResponse|Response
*/
public function editAction(Request $request, UploaderHelper $uploaderHelper, IntegrationHelper $integrationHelper, AssetModel $model, $objectId, $ignorePost = false)
{
$entity = $model->getEntity($objectId);
if (!$this->security->hasEntityAccess('asset:assets:editown', 'asset:assets:editother', $entity->getCreatedBy())) {
return $this->accessDenied();
}
$entity->setMaxSize(FileHelper::convertMegabytesToBytes($this->coreParametersHelper->get('max_size')));
$session = $request->getSession();
$page = $session->get('mautic.asset.page', 1);
$method = $request->getMethod();
$maxSize = $model->getMaxUploadSize();
$extensions = '.'.implode(', .', $this->coreParametersHelper->get('allowed_extensions'));
$maxSizeError = $this->translator->trans('mautic.asset.asset.error.file.size', [
'%fileSize%' => '{{filesize}}',
'%maxSize%' => '{{maxFilesize}}',
], 'validators');
$extensionError = $this->translator->trans('mautic.asset.asset.error.file.extension.js', [
'%extensions%' => $extensions,
], 'validators');
// set the return URL
$returnUrl = $this->generateUrl('mautic_asset_index', ['page' => $page]);
$uploadEndpoint = $uploaderHelper->endpoint('asset');
$postActionVars = [
'returnUrl' => $returnUrl,
'viewParameters' => ['page' => $page],
'contentTemplate' => 'Mautic\AssetBundle\Controller\AssetController::indexAction',
'passthroughVars' => [
'activeLink' => 'mautic_asset_index',
'mauticContent' => 'asset',
],
];
// not found
if (null === $entity) {
return $this->postActionRedirect(
array_merge($postActionVars, [
'flashes' => [
[
'type' => 'error',
'msg' => 'mautic.asset.asset.error.notfound',
'msgVars' => ['%id%' => $objectId],
],
],
])
);
} elseif (!$this->security->hasEntityAccess(
'asset:assets:viewown', 'asset:assets:viewother', $entity->getCreatedBy()
)
) {
return $this->accessDenied();
} elseif ($model->isLocked($entity)) {
// deny access if the entity is locked
return $this->isLocked($postActionVars, $entity, 'asset.asset');
}
// Create temporary asset ID
$asset = $request->request->all()['asset'] ?? [];
$tempId = 'POST' === $method ? ($asset['tempId'] ?? '') : uniqid('tmp_');
$entity->setTempId($tempId);
// Create the form
$action = $this->generateUrl('mautic_asset_action', ['objectAction' => 'edit', 'objectId' => $objectId]);
$form = $model->createForm($entity, $this->formFactory, $action);
// /Check for a submitted form and process it
if (!$ignorePost && 'POST' == $method) {
$valid = false;
if (!$cancelled = $this->isFormCancelled($form)) {
if ($valid = $this->isFormValid($form)) {
$entity->setUploadDir($this->coreParametersHelper->get('upload_dir'));
$entity->preUpload();
$entity->upload();
// form is valid so process the data
$model->saveEntity($entity, $this->getFormButton($form, ['buttons', 'save'])->isClicked());
// remove the asset from request
$request->files->remove('asset');
$this->addFlashMessage('mautic.core.notice.updated', [
'%name%' => $entity->getTitle(),
'%menu_link%' => 'mautic_asset_index',
'%url%' => $this->generateUrl('mautic_asset_action', [
'objectAction' => 'edit',
'objectId' => $entity->getId(),
]),
]);
$returnUrl = $this->generateUrl('mautic_asset_action', [
'objectAction' => 'view',
'objectId' => $entity->getId(),
]);
$viewParams = ['objectId' => $entity->getId()];
$template = 'Mautic\AssetBundle\Controller\AssetController::viewAction';
}
} else {
// clear any modified content
$session->remove('mautic.asestbuilder.'.$objectId.'.content');
// unlock the entity
$model->unlockEntity($entity);
$returnUrl = $this->generateUrl('mautic_asset_index', ['page' => $page]);
$viewParams = ['page' => $page];
$template = 'Mautic\AssetBundle\Controller\AssetController::indexAction';
}
if ($cancelled || ($valid && $this->getFormButton($form, ['buttons', 'save'])->isClicked())) {
return $this->postActionRedirect(
array_merge($postActionVars, [
'returnUrl' => $returnUrl,
'viewParameters' => $viewParams,
'contentTemplate' => $template,
])
);
}
} else {
// lock the entity
$model->lockEntity($entity);
}
// Check for integrations to cloud providers
$integrations = $integrationHelper->getIntegrationObjects(null, ['cloud_storage']);
return $this->delegateView([
'viewParameters' => [
'form' => $form->createView(),
'activeAsset' => $entity,
'assetDownloadUrl' => $model->generateUrl($entity),
'integrations' => $integrations,
'startOnLocal' => $entity->isLocal(),
'uploadEndpoint' => $uploadEndpoint,
'maxSize' => $maxSize,
'maxSizeError' => $maxSizeError,
'extensions' => $extensions,
'extensionError' => $extensionError,
],
'contentTemplate' => '@MauticAsset/Asset/form.html.twig',
'passthroughVars' => [
'activeLink' => '#mautic_asset_index',
'mauticContent' => 'asset',
'route' => $this->generateUrl('mautic_asset_action', [
'objectAction' => 'edit',
'objectId' => $entity->getId(),
]),
],
]);
}
/**
* Clone an entity.
*
* @param int $objectId
*
* @return JsonResponse|\Symfony\Component\HttpFoundation\RedirectResponse|Response
*/
public function cloneAction(Request $request, CoreParametersHelper $parametersHelper, UploaderHelper $uploaderHelper, IntegrationHelper $integrationHelper, AssetModel $model, $objectId)
{
$entity = $model->getEntity($objectId);
$clone = null;
if (null != $entity) {
if (!$this->security->isGranted('asset:assets:create')
|| !$this->security->hasEntityAccess(
'asset:assets:viewown', 'asset:assets:viewother', $entity->getCreatedBy()
)
) {
return $this->accessDenied();
}
$clone = clone $entity;
$clone->setDownloadCount(0);
$clone->setUniqueDownloadCount(0);
$clone->setRevision(0);
$clone->setIsPublished(false);
}
return $this->newAction($request, $parametersHelper, $uploaderHelper, $integrationHelper, $model, $clone);
}
/**
* Deletes the entity.
*
* @param int $objectId
*
* @return Response
*/
public function deleteAction(Request $request, AssetModel $model, $objectId)
{
$page = $request->getSession()->get('mautic.asset.page', 1);
$returnUrl = $this->generateUrl('mautic_asset_index', ['page' => $page]);
$flashes = [];
$postActionVars = [
'returnUrl' => $returnUrl,
'viewParameters' => ['page' => $page],
'contentTemplate' => 'Mautic\AssetBundle\Controller\AssetController::indexAction',
'passthroughVars' => [
'activeLink' => 'mautic_asset_index',
'mauticContent' => 'asset',
],
];
if ('POST' === $request->getMethod()) {
$entity = $model->getEntity($objectId);
if (null === $entity) {
$flashes[] = [
'type' => 'error',
'msg' => 'mautic.asset.asset.error.notfound',
'msgVars' => ['%id%' => $objectId],
];
} elseif (!$this->security->hasEntityAccess(
'asset:assets:deleteown',
'asset:assets:deleteother',
$entity->getCreatedBy()
)
) {
return $this->accessDenied();
} elseif ($model->isLocked($entity)) {
return $this->isLocked($postActionVars, $entity, 'asset.asset');
}
$entity->removeUpload();
$model->deleteEntity($entity);
$flashes[] = [
'type' => 'notice',
'msg' => 'mautic.core.notice.deleted',
'msgVars' => [
'%name%' => $entity->getTitle(),
'%id%' => $objectId,
],
];
} // else don't do anything
return $this->postActionRedirect(
array_merge($postActionVars, [
'flashes' => $flashes,
])
);
}
/**
* Deletes a group of entities.
*/
public function batchDeleteAction(Request $request, AssetModel $model): Response
{
$page = $request->getSession()->get('mautic.asset.page', 1);
$returnUrl = $this->generateUrl('mautic_asset_index', ['page' => $page]);
$flashes = [];
$postActionVars = [
'returnUrl' => $returnUrl,
'viewParameters' => ['page' => $page],
'contentTemplate' => 'Mautic\AssetBundle\Controller\AssetController::indexAction',
'passthroughVars' => [
'activeLink' => 'mautic_asset_index',
'mauticContent' => 'asset',
],
];
if ('POST' === $request->getMethod()) {
$ids = json_decode($request->query->get('ids', '{}'));
$deleteIds = [];
// Loop over the IDs to perform access checks pre-delete
foreach ($ids as $objectId) {
$entity = $model->getEntity($objectId);
if (null === $entity) {
$flashes[] = [
'type' => 'error',
'msg' => 'mautic.asset.asset.error.notfound',
'msgVars' => ['%id%' => $objectId],
];
} elseif (!$this->security->hasEntityAccess(
'asset:assets:deleteown', 'asset:assets:deleteother', $entity->getCreatedBy()
)
) {
$flashes[] = $this->accessDenied(true);
} elseif ($model->isLocked($entity)) {
$flashes[] = $this->isLocked($postActionVars, $entity, 'asset', true);
} else {
$deleteIds[] = $objectId;
}
}
// Delete everything we are able to
if (!empty($deleteIds)) {
$entities = $model->deleteEntities($deleteIds);
$flashes[] = [
'type' => 'notice',
'msg' => 'mautic.asset.asset.notice.batch_deleted',
'msgVars' => [
'%count%' => count($entities),
],
];
}
} // else don't do anything
return $this->postActionRedirect(
array_merge($postActionVars, [
'flashes' => $flashes,
])
);
}
/**
* Renders the container for the remote file browser.
*
* @return JsonResponse|\Symfony\Component\HttpFoundation\RedirectResponse
*/
public function remoteAction(Request $request, IntegrationHelper $integrationHelper): Response
{
// Check for integrations to cloud providers
$integrations = $integrationHelper->getIntegrationObjects(null, ['cloud_storage']);
$tmpl = $request->isXmlHttpRequest() ? $request->get('tmpl', 'index') : 'index';
return $this->delegateView([
'viewParameters' => [
'integrations' => $integrations,
'tmpl' => $tmpl,
],
'contentTemplate' => '@MauticAsset/Remote/browse.html.twig',
'passthroughVars' => [
'activeLink' => '#mautic_asset_index',
'mauticContent' => 'asset',
'route' => $this->generateUrl('mautic_asset_index', ['page' => $request->getSession()->get('mautic.asset.page', 1)]),
],
]);
}
public function getModelName(): string
{
return 'asset';
}
protected function getDefaultOrderDirection(): string
{
return 'DESC';
}
}

View File

@@ -0,0 +1,92 @@
<?php
namespace Mautic\AssetBundle\Controller;
use Mautic\CoreBundle\Controller\FormController as CommonFormController;
use Mautic\CoreBundle\Helper\CoreParametersHelper;
use Symfony\Component\HttpFoundation\RedirectResponse;
use Symfony\Component\HttpFoundation\Request;
use Symfony\Component\HttpFoundation\Response;
class PublicController extends CommonFormController
{
/**
* @param string $slug
*
* @return Response
*/
public function downloadAction(Request $request, CoreParametersHelper $parametersHelper, $slug)
{
// find the asset
/** @var \Mautic\AssetBundle\Model\AssetModel $model */
$model = $this->getModel('asset');
/** @var \Mautic\AssetBundle\Entity\Asset $entity */
$entity = $model->getEntityBySlugs($slug);
if (!empty($entity)) {
$published = $entity->isPublished();
// make sure the asset is published or deny access if not
if ((!$published) && (!$this->security->hasEntityAccess('asset:assets:viewown', 'asset:assets:viewother', $entity->getCreatedBy()))) {
$model->trackDownload($entity, $request, 401);
return $this->accessDenied();
}
// make sure URLs match up
$url = $model->generateUrl($entity, false);
$requestUri = $request->getRequestUri();
// remove query
$query = $request->getQueryString();
if (!empty($query)) {
$requestUri = str_replace("?{$query}", '', $url);
}
// redirect if they don't match
if ($requestUri != $url) {
$model->trackDownload($entity, $request, 301);
return $this->redirect($url, 301);
}
if ($entity->isRemote()) {
$model->trackDownload($entity, $request, 200);
// Redirect to remote URL
$response = new RedirectResponse($entity->getRemotePath());
} else {
try {
// set the uploadDir
$entity->setUploadDir($parametersHelper->get('upload_dir'));
$contents = $entity->getFileContents();
$model->trackDownload($entity, $request, 200);
} catch (\Exception) {
$model->trackDownload($entity, $request, 404);
return $this->notFound();
}
$response = new Response();
if ($entity->getDisallow()) {
$response->headers->set('X-Robots-Tag', 'noindex, nofollow, noarchive');
}
$response->headers->set('Content-Type', $entity->getFileMimeType());
// Display the file directly in the browser just for selected extensions
$stream = $request->get('stream', in_array($entity->getExtension(), $this->coreParametersHelper->get('streamed_extensions')));
if (!$stream) {
$response->headers->set('Content-Disposition', 'attachment;filename="'.$entity->getOriginalFileName());
}
$response->setContent($contents);
}
return $response;
}
return $this->notFound();
}
}

View File

@@ -0,0 +1,47 @@
<?php
namespace Mautic\AssetBundle\Controller;
use Oneup\UploaderBundle\Controller\DropzoneController;
use Oneup\UploaderBundle\Uploader\Response\EmptyResponse;
use Symfony\Component\HttpFoundation\File\Exception\UploadException;
use Symfony\Component\HttpFoundation\JsonResponse;
use Symfony\Contracts\Translation\TranslatorInterface;
class UploadController extends DropzoneController
{
private TranslatorInterface $translator;
public function upload(): JsonResponse
{
$request = $this->getRequest();
$response = new EmptyResponse();
$files = $this->getFiles($request->files);
$this->setTranslator($this->container->get('translator'));
if (!empty($files)) {
foreach ($files as $file) {
try {
$this->handleUpload($file, $response, $request);
} catch (UploadException $e) {
$this->errorHandler->addException($response, $e);
} catch (\Exception $e) {
error_log($e);
$error = new UploadException($this->translator->trans('mautic.asset.error.file.failed'));
$this->errorHandler->addException($response, $error);
}
}
} else {
$error = new UploadException($this->translator->trans('mautic.asset.error.file.failed'));
$this->errorHandler->addException($response, $error);
}
return $this->createSupportedJsonResponse($response->assemble());
}
#[\Symfony\Contracts\Service\Attribute\Required]
public function setTranslator(TranslatorInterface $translator): void
{
$this->translator = $translator;
}
}