viewforum.php 23 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459
  1. <?php
  2. /* For licensing terms, see /license.txt */
  3. /**
  4. * These files are a complete rework of the forum. The database structure is
  5. * based on phpBB but all the code is rewritten. A lot of new functionalities
  6. * are added:
  7. * - forum categories and forums can be sorted up or down, locked or made invisible
  8. * - consistent and integrated forum administration
  9. * - forum options: are students allowed to edit their post?
  10. * moderation of posts (approval)
  11. * reply only forums (students cannot create new threads)
  12. * multiple forums per group
  13. * - sticky messages
  14. * - new view option: nested view
  15. * - quoting a message
  16. *
  17. * @Author Patrick Cool <patrick.cool@UGent.be>, Ghent University
  18. * @Copyright Ghent University
  19. * @Copyright Patrick Cool
  20. *
  21. * @package chamilo.forum
  22. */
  23. use \ChamiloSession as Session;
  24. // Language files that need to be included.
  25. $language_file = array('forum', 'group');
  26. // Including the global initialization file.
  27. require_once '../inc/global.inc.php';
  28. $current_course_tool = TOOL_FORUM;
  29. // Notification for unauthorized people.
  30. api_protect_course_script(true);
  31. // The section (tabs).
  32. $this_section = SECTION_COURSES;
  33. $nameTools = get_lang('ToolForum');
  34. // Are we in a lp ?
  35. $origin = '';
  36. $origin_string = '';
  37. if (isset($_GET['origin'])) {
  38. $origin = Security::remove_XSS($_GET['origin']);
  39. $origin_string = '&amp;origin='.$origin;
  40. }
  41. /* Including necessary files */
  42. require 'forumconfig.inc.php';
  43. require_once 'forumfunction.inc.php';
  44. $userid = api_get_user_id();
  45. /* MAIN DISPLAY SECTION */
  46. $group_id = api_get_group_id();
  47. $my_forum = isset($_GET['forum']) ? $_GET['forum'] : '';
  48. $current_forum = get_forum_information($my_forum); // Note: This has to be validated that it is an existing forum.
  49. if (empty($current_forum)) {
  50. api_not_allowed();
  51. }
  52. $current_forum_category = get_forumcategory_information($current_forum['forum_category']);
  53. $is_group_tutor = false;
  54. if (!empty($group_id)) {
  55. //Group info & group category info
  56. $group_properties = GroupManager::get_group_properties($group_id);
  57. //User has access in the group?
  58. $user_has_access_in_group = GroupManager::user_has_access($userid, $group_id, GroupManager::GROUP_TOOL_FORUM);
  59. $is_group_tutor = GroupManager::is_tutor_of_group(api_get_user_id(), $group_id);
  60. //Course
  61. if (!api_is_allowed_to_edit(false, true) AND //is a student
  62. (($current_forum_category && $current_forum_category['visibility'] == 0) OR $current_forum['visibility'] == 0 OR !$user_has_access_in_group)
  63. ) {
  64. api_not_allowed();
  65. }
  66. } else {
  67. //Course
  68. if (!api_is_allowed_to_edit(false, true) AND //is a student
  69. (($current_forum_category && $current_forum_category['visibility'] == 0) OR $current_forum['visibility'] == 0) //forum category or forum visibility is false
  70. ) {
  71. api_not_allowed();
  72. }
  73. }
  74. /* Header and Breadcrumbs */
  75. $my_search = isset($_GET['search']) ? $_GET['search'] : '';
  76. $my_action = isset($_GET['action']) ? $_GET['action'] : '';
  77. if (isset($_SESSION['gradebook'])){
  78. $gradebook = $_SESSION['gradebook'];
  79. }
  80. if (!empty($gradebook) && $gradebook == 'view') {
  81. $interbreadcrumb[] = array (
  82. 'url' => '../gradebook/'.$_SESSION['gradebook_dest'],
  83. 'name' => get_lang('ToolGradebook')
  84. );
  85. }
  86. if (!empty($_GET['gidReq'])) {
  87. $toolgroup = Database::escape_string($_GET['gidReq']);
  88. Session::write('toolgroup',$toolgroup);
  89. }
  90. if ($origin == 'group') {
  91. $interbreadcrumb[] = array('url' => '../group/group.php', 'name' => get_lang('Groups'));
  92. $interbreadcrumb[] = array('url'=>'../group/group_space.php?gidReq='.$_SESSION['toolgroup'], 'name'=> get_lang('GroupSpace').' '.$group_properties['name']);
  93. $interbreadcrumb[] = array('url' => '#', 'name' => get_lang('Forum').' '.Security::remove_XSS($current_forum['forum_title']));
  94. } else {
  95. $interbreadcrumb[] = array('url' => 'index.php?gradebook='.$gradebook.'&amp;search='.Security::remove_XSS($my_search), 'name' => get_lang('ForumCategories'));
  96. $interbreadcrumb[] = array('url' => 'viewforumcategory.php?forumcategory='.$current_forum_category['cat_id'].'&amp;search='.Security::remove_XSS(urlencode($my_search)), 'name' => prepare4display($current_forum_category['cat_title']));
  97. $interbreadcrumb[] = array('url' => '#', 'name' => Security::remove_XSS($current_forum['forum_title']));
  98. }
  99. if ($origin == 'learnpath') {
  100. Display::display_reduced_header();
  101. } else {
  102. // The last element of the breadcrumb navigation is already set in interbreadcrumb, so give empty string.
  103. Display :: display_header('');
  104. }
  105. /* Actions */
  106. // Change visibility of a forum or a forum category.
  107. if (($my_action == 'invisible' OR $my_action=='visible') AND isset($_GET['content']) AND isset($_GET['id']) AND api_is_allowed_to_edit(false, true) && api_is_allowed_to_session_edit(false, true)) {
  108. $message = change_visibility($_GET['content'], $_GET['id'], $_GET['action']); // Note: This has to be cleaned first.
  109. }
  110. // Locking and unlocking.
  111. if (($my_action == 'lock' OR $my_action == 'unlock') AND isset($_GET['content']) AND isset($_GET['id']) AND api_is_allowed_to_edit(false, true) && api_is_allowed_to_session_edit(false, true)) {
  112. $message = change_lock_status($_GET['content'], $_GET['id'], $my_action); // Note: This has to be cleaned first.
  113. }
  114. // Deleting.
  115. if ($my_action == 'delete' AND isset($_GET['content']) AND isset($_GET['id']) AND api_is_allowed_to_edit(false, true) && api_is_allowed_to_session_edit(false, true)) {
  116. $locked = api_resource_is_locked_by_gradebook($_GET['id'], LINK_FORUM_THREAD);
  117. if ($locked == false) {
  118. $message = delete_forum_forumcategory_thread($_GET['content'], $_GET['id']); // Note: This has to be cleaned first.
  119. // Delete link
  120. require_once api_get_path(SYS_CODE_PATH).'gradebook/lib/gradebook_functions.inc.php';
  121. $link_info = is_resource_in_course_gradebook(api_get_course_id(), 5 , intval($_GET['id']), api_get_session_id());
  122. $link_id = $link_info['id'];
  123. if ($link_info !== false) {
  124. remove_resource_from_course_gradebook($link_id);
  125. }
  126. }
  127. }
  128. // Moving.
  129. if ($my_action == 'move' AND isset($_GET['thread']) AND api_is_allowed_to_edit(false, true) && api_is_allowed_to_session_edit(false, true)) {
  130. $message = move_thread_form();
  131. }
  132. // Notification.
  133. if ($my_action == 'notify' AND isset($_GET['content']) AND isset($_GET['id']) && api_is_allowed_to_session_edit(false, true)) {
  134. $return_message = set_notification($_GET['content'], $_GET['id']);
  135. Display :: display_confirmation_message($return_message, false);
  136. }
  137. // Student list
  138. if ($my_action == 'liststd' AND isset($_GET['content']) AND isset($_GET['id']) AND (api_is_allowed_to_edit(null, true) || $is_group_tutor)) {
  139. $active = null;
  140. switch ($_GET['list']) {
  141. case 'qualify':
  142. $student_list = get_thread_users_qualify($_GET['id']);
  143. $nrorow3 = -2;
  144. $active = 2;
  145. break;
  146. case 'notqualify':
  147. $student_list = get_thread_users_not_qualify($_GET['id']);
  148. $nrorow3 = -2;
  149. $active = 3;
  150. break;
  151. default:
  152. $student_list = get_thread_users_details($_GET['id']);
  153. $nrorow3 = Database::num_rows($student_list);
  154. $active = 1;
  155. break;
  156. }
  157. $table_list = Display::page_subheader(get_lang('ThreadUsersList').': '.get_name_thread_by_id($_GET['id']));
  158. if ($nrorow3 > 0 || $nrorow3 == -2) {
  159. $url = 'cidReq='.Security::remove_XSS($_GET['cidReq']).'&amp;forum='.Security::remove_XSS($my_forum).'&amp;action='.Security::remove_XSS($_GET['action']).'&amp;content='.Security::remove_XSS($_GET['content'],STUDENT).'&amp;id='.intval($_GET['id']);
  160. $tabs = array(
  161. array('content' => get_lang('AllStudents'),
  162. 'url' => 'viewforum.php?'.$url.'&amp;origin='.$origin.'&amp;list=all'),
  163. array('content' => get_lang('StudentsQualified'),
  164. 'url' => 'viewforum.php?'.$url.'&amp;origin='.$origin.'&amp;list=qualify'),
  165. array('content' => get_lang('StudentsNotQualified'),
  166. 'url' => 'viewforum.php?'.$url.'&amp;origin='.$origin.'&amp;list=notqualify'),
  167. );
  168. $table_list .= Display::tabs_only_link($tabs, $active);
  169. $icon_qualify = 'blog_new.gif';
  170. $table_list .= '<center><br /><table class="data_table" style="width:50%">';
  171. // The column headers (TODO: Make this sortable).
  172. $table_list .= '<tr >';
  173. $table_list .= '<th height="24">'.get_lang('NamesAndLastNames').'</th>';
  174. if ($_GET['list'] == 'qualify') {
  175. $table_list.= '<th>'.get_lang('Qualification').'</th>';
  176. }
  177. if (api_is_allowed_to_edit(null, true)) {
  178. $table_list.= '<th>'.get_lang('Qualify').'</th>';
  179. }
  180. $table_list .= '</tr>';
  181. $max_qualify = show_qualify('2', $userid, $_GET['id']);
  182. $counter_stdlist = 0;
  183. if (Database::num_rows($student_list) > 0) {
  184. while ($row_student_list=Database::fetch_array($student_list)) {
  185. if ($counter_stdlist % 2 == 0) {
  186. $class_stdlist = 'row_odd';
  187. } else {
  188. $class_stdlist = 'row_even';
  189. }
  190. $name_user_theme = api_get_person_name($row_student_list['firstname'], $row_student_list['lastname']);
  191. $table_list .= '<tr class="'.$class_stdlist.'"><td><a href="../user/userInfo.php?uInfo='.$row_student_list['user_id'].'&amp;tipo=sdtlist&amp;'.api_get_cidreq().'&amp;forum='.Security::remove_XSS($my_forum).$origin_string.'">'.$name_user_theme.'</a></td>';
  192. if ($_GET['list'] == 'qualify') {
  193. $table_list .= '<td>'.$row_student_list['qualify'].'/'.$max_qualify.'</td>';
  194. }
  195. if (api_is_allowed_to_edit(null, true)) {
  196. $current_qualify_thread = show_qualify('1', $row_student_list['user_id'], $_GET['id']);
  197. $table_list .= '<td><a href="forumqualify.php?'.api_get_cidreq().'&amp;forum='.Security::remove_XSS($my_forum).'&amp;thread='.Security::remove_XSS($_GET['id']).'&amp;user='.$row_student_list['user_id'].'&amp;user_id='.$row_student_list['user_id'].'&amp;idtextqualify='.$current_qualify_thread.'&amp;origin='.$origin.'">'.Display::return_icon($icon_qualify, get_lang('Qualify')).'</a></td></tr>';
  198. }
  199. $counter_stdlist++;
  200. }
  201. } else {
  202. if ($_GET['list'] == 'qualify') {
  203. $table_list .= '<tr><td colspan="2">'.get_lang('ThereIsNotQualifiedLearners').'</td></tr>';
  204. } else {
  205. $table_list .= '<tr><td colspan="2">'.get_lang('ThereIsNotUnqualifiedLearners').'</td></tr>';
  206. }
  207. }
  208. $table_list .= '</table></center>';
  209. $table_list .= '<br />';
  210. } else {
  211. $table_list .= Display::return_message(get_lang('NoParticipation'), 'warning');
  212. }
  213. }
  214. if ($origin == 'learnpath') {
  215. echo '<div style="height:15px">&nbsp;</div>';
  216. }
  217. /* Display the action messages */
  218. if (!empty($message)) {
  219. Display :: display_confirmation_message($message);
  220. }
  221. /* Action links */
  222. echo '<div class="actions">';
  223. if ($origin != 'learnpath') {
  224. if ($origin=='group') {
  225. echo '<a href="../group/group_space.php?'.api_get_cidreq().'&amp;gradebook='.$gradebook.'">'.Display::return_icon('back.png',get_lang('BackTo').' '.get_lang('Groups'),'',ICON_SIZE_MEDIUM).'</a>';
  226. } else {
  227. echo '<span style="float:right;">'.search_link().'</span>';
  228. echo '<a href="index.php">'.Display::return_icon('back.png', get_lang('BackToForumOverview'), '', ICON_SIZE_MEDIUM).'</a>';
  229. }
  230. }
  231. // The link should appear when
  232. // 1. the course admin is here
  233. // 2. the course member is here and new threads are allowed
  234. // 3. a visitor is here and new threads AND allowed AND anonymous posts are allowed
  235. if (api_is_allowed_to_edit(false, true) OR ($current_forum['allow_new_threads'] == 1 AND isset($_user['user_id'])) OR ($current_forum['allow_new_threads'] == 1 AND !isset($_user['user_id']) AND $current_forum['allow_anonymous'] == 1)) {
  236. if ($current_forum['locked'] <> 1 AND $current_forum['locked'] <> 1) {
  237. if (!api_is_anonymous()) {
  238. if ($my_forum == strval(intval($my_forum))) {
  239. echo '<a href="newthread.php?'.api_get_cidreq().'&amp;forum='.Security::remove_XSS($my_forum).$origin_string.'">'.Display::return_icon('new_thread.png',get_lang('NewTopic'),'',ICON_SIZE_MEDIUM).'</a>';
  240. } else {
  241. $my_forum = strval(intval($my_forum));
  242. echo '<a href="newthread.php?'.api_get_cidreq().'&amp;forum='.$my_forum.$origin_string.'">'.Display::return_icon('new_thread.png',get_lang('NewTopic'),'',ICON_SIZE_MEDIUM).'</a>';
  243. }
  244. }
  245. } else {
  246. echo get_lang('ForumLocked');
  247. }
  248. }
  249. echo '</div>';
  250. /* Display */
  251. echo '<table class="forum_table" >';
  252. // The current forum
  253. if ($origin != 'learnpath') {
  254. echo '<thead><tr><th class="forum_head" colspan="7">';
  255. if (!empty ($current_forum_category['cat_title'])) {
  256. //echo '<span class="forum_low_description">'.prepare4display($current_forum_category['cat_title'])."</span><br />";
  257. }
  258. echo '<span class="forum_title">'.prepare4display($current_forum['forum_title']).'</span>';
  259. if (!empty ($current_forum['forum_comment'])) {
  260. echo '<br /><span class="forum_description">'.prepare4display($current_forum['forum_comment']).'</span>';
  261. }
  262. echo '</th></tr></thead>';
  263. }
  264. // The column headers (TODO: Make this sortable).
  265. echo '<tr class="forum_threadheader">';
  266. echo '<td></td>';
  267. echo '<td>'.get_lang('Title').'</td>';
  268. echo '<td>'.get_lang('Replies').'</td>';
  269. echo '<td>'.get_lang('Views').'</td>';
  270. echo '<td>'.get_lang('Author').'</td>';
  271. echo '<td>'.get_lang('LastPost').'</td>';
  272. echo '<td>'.get_lang('Actions').'</td>';
  273. echo '</tr>';
  274. // Getting al the threads
  275. $threads = get_threads($my_forum); // Note: This has to be cleaned first
  276. $whatsnew_post_info = isset($_SESSION['whatsnew_post_info']) ? $_SESSION['whatsnew_post_info'] : null;
  277. $course_id = api_get_course_int_id();
  278. $counter = 0;
  279. if (is_array($threads)) {
  280. foreach ($threads as $row) {
  281. // Thread who have no replies yet and the only post is invisible should not be displayed to students.
  282. if (api_is_allowed_to_edit(false, true) OR !($row['thread_replies'] == '0' AND $row['visible'] == '0')) {
  283. if ($counter % 2 == 0) {
  284. $class = 'row_odd';
  285. } else {
  286. $class = 'row_even';
  287. }
  288. echo "<tr class=\"$class\">";
  289. echo '<td>';
  290. $my_whatsnew_post_info = isset($whatsnew_post_info[$my_forum][$row['thread_id']]) ? $whatsnew_post_info[$my_forum][$row['thread_id']] : null;
  291. if (is_array($my_whatsnew_post_info) && !empty($my_whatsnew_post_info)) {
  292. echo Display::return_icon('forumthread.gif');
  293. } else {
  294. echo Display::return_icon('forumthread.gif');
  295. }
  296. if ($row['thread_sticky'] == 1) {
  297. echo Display::return_icon('exclamation.gif');
  298. }
  299. echo '</td>';
  300. echo '<td>';
  301. echo '<a href="viewthread.php?'.api_get_cidreq().'&amp;gradebook='.Security::remove_XSS($_GET['gradebook']).'&amp;forum='.Security::remove_XSS($my_forum).'&amp;origin='.$origin.'&amp;thread='.$row['thread_id'].$origin_string.'&amp;search='.Security::remove_XSS(urlencode($my_search)).'" '.class_visible_invisible($row['visibility']).'>'.prepare4display($row['thread_title']).'</a></td>';
  302. echo '<td>'.$row['thread_replies'].'</td>';
  303. echo '<td>'.$row['thread_views'].'</td>';
  304. // display the author name
  305. $tab_poster_info = api_get_user_info($row['user_id']);
  306. $poster_username = sprintf(get_lang('LoginX'), $tab_poster_info['username']);
  307. if ($origin != 'learnpath') {
  308. echo '<td>'.display_user_link($row['user_id'], api_get_person_name($row['firstname'], $row['lastname']), '', $poster_username).'</td>';
  309. } else {
  310. echo '<td>'.Display::tag('span', api_get_person_name($row['firstname'], $row['lastname']), array("title"=>api_htmlentities($poster_username, ENT_QUOTES))).'</td>';
  311. }
  312. $last_post_info = get_last_post_by_thread($row['c_id'], $row['thread_id'], $row['forum_id'], is_allowed_to_edit());
  313. $last_post = null;
  314. if ($last_post_info) {
  315. $poster_info = api_get_user_info($last_post_info['poster_id']);
  316. $post_date = api_convert_and_format_date($last_post_info['post_date']);
  317. $last_post = $post_date.' '.get_lang('By').' '.display_user_link($last_post_info['poster_id'], $poster_info['complete_name'], '', $poster_info['user_name']);
  318. }
  319. /*
  320. if ($row['last_poster_user_id'] == '0') {
  321. $name = $row['poster_name'];
  322. $last_poster_username = "";
  323. } else {
  324. $name = api_get_person_name($row['last_poster_firstname'], $row['last_poster_lastname']);
  325. $tab_last_poster_info = api_get_user_info($row['last_poster_user_id']);
  326. $last_poster_username = sprintf(get_lang('LoginX'), $tab_last_poster_info['username']);
  327. }
  328. // If the last post is invisible and it is not the teacher who is looking then we have to find the last visible post of the thread.
  329. if (($row['visible'] == '1' OR api_is_allowed_to_edit(false, true)) && $origin != 'learnpath') {
  330. $last_post = $post_date.' '.get_lang('By').' '.display_user_link($row['last_poster_user_id'], $name, '', $last_poster_username);
  331. } elseif ($origin != 'learnpath') {
  332. $last_post_sql = "SELECT post.*, user.firstname, user.lastname, user.username FROM $table_posts post, $table_users user WHERE post.poster_id=user.user_id AND visible='1' AND thread_id='".$row['thread_id']."' AND post.c_id=".api_get_course_int_id()." ORDER BY post_id DESC";
  333. $last_post_result = Database::query($last_post_sql);
  334. $last_post_row = Database::fetch_array($last_post_result);
  335. $name = api_get_person_name($last_post_row['firstname'], $last_post_row['lastname']);
  336. $last_post_info_username = sprintf(get_lang('LoginX'), $last_post_row['username']);
  337. $last_post = api_convert_and_format_date($last_post_row['post_date']).' '.get_lang('By').' '.display_user_link($last_post_row['poster_id'], $name, '', $last_post_info_username);
  338. } else {
  339. $last_post_sql = "SELECT post.*, user.firstname, user.lastname, user.username FROM $table_posts post, $table_users user WHERE post.poster_id=user.user_id AND visible='1' AND thread_id='".$row['thread_id']."' AND post.c_id=".api_get_course_int_id()." ORDER BY post_id DESC";
  340. $last_post_result = Database::query($last_post_sql);
  341. $last_post_row = Database::fetch_array($last_post_result);
  342. $last_post_info_username = sprintf(get_lang('LoginX'), $last_post_row['username']);
  343. $name = api_get_person_name($last_post_row['firstname'], $last_post_row['lastname']);
  344. $last_post = api_convert_and_format_date($last_post_row['post_date']).' '.get_lang('By').' '.Display::tag('span', $name, array("title"=>api_htmlentities($last_post_info_username, ENT_QUOTES)));
  345. }*/
  346. echo '<td>'.$last_post.'</td>';
  347. echo '<td class="td_actions">';
  348. // Get attachment id.
  349. $attachment_list = get_attachment($row['post_id']);
  350. $id_attach = !empty($attachment_list) ? $attachment_list['id'] : '';
  351. $sql_post_id = "SELECT post_id FROM $table_posts WHERE c_id = $course_id AND post_title='".Database::escape_string($row['thread_title'])."'";
  352. $result_post_id = Database::query($sql_post_id);
  353. $row_post_id = Database::fetch_array($result_post_id);
  354. if ($origin != 'learnpath') {
  355. if (api_is_allowed_to_edit(false, true) && !(api_is_course_coach() && $current_forum['session_id'] != $_SESSION['id_session'])) {
  356. echo '<a href="editpost.php?'.api_get_cidreq().'&amp;forum='.Security::remove_XSS($my_forum).'&amp;thread='.Security::remove_XSS($row['thread_id']).'&amp;post='.$row_post_id['post_id'].'&amp;gidReq='.$_SESSION['toolgroup'].'&amp;origin='.$origin.'&amp;id_attach='.$id_attach.'">'.Display::return_icon('edit.png', get_lang('Edit'), array(), ICON_SIZE_SMALL).'</a>';
  357. if (api_resource_is_locked_by_gradebook($row['thread_id'], LINK_FORUM_THREAD)) {
  358. echo Display::return_icon('delete_na.png', get_lang('ResourceLockedByGradebook'), array(), ICON_SIZE_SMALL);
  359. } else {
  360. echo '<a href="'.api_get_self().'?'.api_get_cidreq().'&amp;forum='.Security::remove_XSS($my_forum).'&amp;action=delete&amp;content=thread&amp;gidReq='.$_SESSION['toolgroup'].'&amp;id='.$row['thread_id'].$origin_string."\" onclick=\"javascript:if(!confirm('".addslashes(api_htmlentities(get_lang('DeleteCompleteThread'), ENT_QUOTES))."')) return false;\">".Display::return_icon('delete.png', get_lang('Delete'), array(), ICON_SIZE_SMALL).'</a>';
  361. }
  362. display_visible_invisible_icon('thread', $row['thread_id'], $row['visibility'], array('forum' => $my_forum, 'origin' => $origin, 'gidReq' => $_SESSION['toolgroup']));
  363. display_lock_unlock_icon('thread', $row['thread_id'], $row['locked'], array('forum' => $my_forum, 'origin' => $origin, 'gidReq' => $_SESSION['toolgroup']));
  364. echo '<a href="viewforum.php?'.api_get_cidreq().'&amp;forum='.Security::remove_XSS($my_forum).'&amp;action=move&amp;gidReq='.$_SESSION['toolgroup'].'&amp;thread='.$row['thread_id'].$origin_string.'">'.Display::return_icon('move.png', get_lang('MoveThread'), array(), ICON_SIZE_SMALL).'</a>';
  365. }
  366. }
  367. $iconnotify = 'send_mail.gif';
  368. if (is_array(isset($_SESSION['forum_notification']['thread']) ? $_SESSION['forum_notification']['thread'] : null)) {
  369. if (in_array($row['thread_id'], $_SESSION['forum_notification']['thread'])) {
  370. $iconnotify = 'send_mail_checked.gif';
  371. }
  372. }
  373. $icon_liststd = 'user.png';
  374. if (!api_is_anonymous() && api_is_allowed_to_session_edit(false, true)) {
  375. echo '<a href="'.api_get_self().'?'.api_get_cidreq().'&amp;forum='.Security::remove_XSS($my_forum).'&amp;origin='.$origin.'&amp;action=notify&amp;content=thread&amp;gidReq='.$_SESSION['toolgroup'].'&amp;id='.$row['thread_id'].'">'.Display::return_icon($iconnotify, get_lang('NotifyMe')).'</a>';
  376. }
  377. if (api_is_allowed_to_edit(null,true) && $origin != 'learnpath') {
  378. echo '<a href="'.api_get_self().'?'.api_get_cidreq().'&amp;forum='.Security::remove_XSS($my_forum).'&amp;origin='.$origin.'&amp;action=liststd&amp;content=thread&amp;gidReq='.$_SESSION['toolgroup'].'&amp;id='.$row['thread_id'].'">'.Display::return_icon($icon_liststd,get_lang('StudentList'), array(), ICON_SIZE_SMALL).'</a>';
  379. }
  380. echo '</td></tr>';
  381. }
  382. $counter++;
  383. }
  384. }
  385. echo '</table>';
  386. echo isset($table_list) ? $table_list : '';
  387. /* FOOTER */
  388. if ($origin != 'learnpath') {
  389. Display :: display_footer();
  390. }