Changeset 3765 for trunk/wp-admin/inline-uploading.php
- Timestamp:
- 05/06/2006 04:41:21 AM (19 years ago)
- File:
-
- 1 edited
Legend:
- Unmodified
- Added
- Removed
-
trunk/wp-admin/inline-uploading.php
r3759 r3765 2 2 3 3 require_once('admin.php'); 4 5 check_admin_referer('inlineuploading');6 4 7 5 header('Content-Type: text/html; charset=' . get_option('blog_charset')); … … 37 35 case 'delete': 38 36 37 check_admin_referer('inlineuploading'); 38 39 39 if ( !current_user_can('edit_post', (int) $attachment) ) 40 40 die(__('You are not allowed to delete this attachment.').' <a href="'.basename(__FILE__)."?post=$post&all=$all&action=upload\">".__('Go back').'</a>'); … … 42 42 wp_delete_attachment($attachment); 43 43 44 header("Location: " . wp_nonce_url(basename(__FILE__)."?post=$post&all=$all&action=view&start=$start", 'inlineuploading'));44 header("Location: " . basename(__FILE__) ."?post=$post&all=$all&action=view&start=$start"); 45 45 die; 46 46 47 47 case 'save': 48 49 check_admin_referer('inlineuploading'); 48 50 49 51 $overrides = array('action'=>'save'); … … 101 103 } 102 104 103 header("Location: " . wp_nonce_url(basename(__FILE__)."?post=$post&all=$all&action=view&start=0", 'inlineuploading'));105 header("Location: " . basename(__FILE__) . "?post=$post&all=$all&action=view&start=0"); 104 106 die(); 105 107 … … 140 142 141 143 if ( count($attachments) == 0 ) { 142 header("Location: " . wp_nonce_url(basename(__FILE__)."?post=$post&action=upload", 'inlineuploading'));144 header("Location: " . basename(__FILE__) ."?post=$post&action=upload" ); 143 145 die; 144 146 } elseif ( count($attachments) > $num ) { … … 214 216 "; 215 217 $send_delete_cancel = "<a onclick=\"sendToEditor({$ID});return false;\" href=\"javascript:void()\">$__send_to_editor</a> 216 <a onclick=\"return confirm('$__confirmdelete')\" href=\"" .basename(__FILE__)."?action=delete&attachment={$ID}&all=$all&start=$start&post=$post\">$__delete</a>218 <a onclick=\"return confirm('$__confirmdelete')\" href=\"" . wp_nonce_url( basename(__FILE__) . "?action=delete&attachment={$ID}&all=$all&start=$start&post=$post", inlineuploading) . "\">$__delete</a> 217 219 <a onclick=\"popup.style.display='none';return false;\" href=\"javascript:void()\">$__close</a> 218 220 "; … … 642 644 <body> 643 645 <ul id="upload-menu"> 644 <li<?php echo $current_1; ?>><a href="<?php echo basename(__FILE__) ; ?>?action=upload&post=<?php echo $post; ?>&all=<?php echo $all; ?>&start=<?php echo $start; ?>"><?php _e('Upload'); ?></a></li>646 <li<?php echo $current_1; ?>><a href="<?php echo basename(__FILE__) . "?action=upload&post=$post&all=$all&start=$start"; ?>"><?php _e('Upload'); ?></a></li> 645 647 <?php if ( $attachments = $wpdb->get_results("SELECT ID FROM $wpdb->posts WHERE post_parent = '$post'") ) { ?> 646 <li<?php echo $current_2; ?>><a href="<?php echo basename(__FILE__) ; ?>?action=view&post=<?php echo $post; ?>&all=false"><?php _e('Browse'); ?></a></li>648 <li<?php echo $current_2; ?>><a href="<?php echo basename(__FILE__) . "?action=view&post=$post&all=false"; ?>"><?php _e('Browse'); ?></a></li> 647 649 <?php } ?> 648 650 <?php if ($wpdb->get_var("SELECT count(ID) FROM $wpdb->posts WHERE post_type = 'attachment'")) { ?> 649 <li<?php echo $current_3; ?>><a href="<?php echo basename(__FILE__) ; ?>?action=view&post=<?php echo $post; ?>&all=true"><?php _e('Browse All'); ?></a></li>651 <li<?php echo $current_3; ?>><a href="<?php echo basename(__FILE__) . "?action=view&post=$post&all=true"; ?>"><?php _e('Browse All'); ?></a></li> 650 652 <?php } ?> 651 653 <li> </li> 652 654 <?php if ( $action == 'view' ) { ?> 653 655 <?php if ( false !== $back ) : ?> 654 <li class="spacer"><a href="<?php echo basename(__FILE__) ; ?>?action=<?php echo $action; ?>&post=<?php echo $post; ?>&all=<?php echo $all; ?>&start=0" title="<?php _e('First'); ?>">|«</a></li>655 <li><a href="<?php echo basename(__FILE__) ; ?>?action=<?php echo $action; ?>&post=<?php echo $post; ?>&all=<?php echo $all; ?>&start=<?php echo $back; ?>"">« <?php _e('Back'); ?></a></li>656 <li class="spacer"><a href="<?php echo basename(__FILE__) . "?action=$action&post=$post&all=$all&start=0"; ?>" title="<?php _e('First'); ?>">|«</a></li> 657 <li><a href="<?php echo basename(__FILE__) . "?action=$action&post=$post&all=$all&start=$back"; ?>">« <?php _e('Back'); ?></a></li> 656 658 <?php else : ?> 657 659 <li class="inactive spacer">|«</li> … … 659 661 <?php endif; ?> 660 662 <?php if ( false !== $next ) : ?> 661 <li><a href="<?php echo basename(__FILE__) ; ?>?action=<?php echo $action; ?>&post=<?php echo $post; ?>&all=<?php echo $all; ?>&start=<?php echo $next; ?>"><?php _e('Next »'); ?></a></li>662 <li><a href="<?php echo basename(__FILE__) ; ?>?action=<?php echo $action; ?>&post=<?php echo $post; ?>&all=<?php echo $all; ?>&last=true" title="<?php _e('Last'); ?>">»|</a></li>663 <li><a href="<?php echo basename(__FILE__) . "?action=$action&post=$post&all=$all&start=$next"; ?>"><?php _e('Next »'); ?></a></li> 664 <li><a href="<?php echo basename(__FILE__) . "?action=$action&post=$post&all=$all&last=true"; ?>" title="<?php _e('Last'); ?>">»|</a></li> 663 665 <?php else : ?> 664 666 <li class="inactive"><?php _e('Next »'); ?></li> … … 698 700 <input type="hidden" name="all" value="<?php echo $all; ?>" /> 699 701 <input type="hidden" name="start" value="<?php echo $start; ?>" /> 702 <?php wp_nonce_field( 'inlineuploading' ); ?> 700 703 <div id="submit"> 701 704 <input type="submit" value="<?php _e('Upload'); ?>" />
Note: See TracChangeset
for help on using the changeset viewer.