diff options
| author | Connor Thomson <blumatrikz@gmail.com> | 2026-09-20 21:23:09 -0700 |
|---|---|---|
| committer | Connor Thomson <blumatrikz@gmail.com> | 2026-09-20 21:23:09 -0700 |
| commit | 070a27baa8f93c3bf191459b88d24d7430a78899 (patch) | |
| tree | 8c96b12d16e1d219ef410ad0e45b2d886368bc5e /admin/remove-user | |
| parent | 83cd353b01660f34d6fd894d15a27fb1b3aeab4c (diff) | |
Some fixes and updates
Diffstat (limited to 'admin/remove-user')
| -rwxr-xr-x | admin/remove-user/index.php | 28 | ||||
| -rwxr-xr-x | admin/remove-user/remove-user.php | 63 |
2 files changed, 91 insertions, 0 deletions
diff --git a/admin/remove-user/index.php b/admin/remove-user/index.php new file mode 100755 index 0000000..cd186a5 --- /dev/null +++ b/admin/remove-user/index.php @@ -0,0 +1,28 @@ +<?php +/* + * GNUfault.org - GNUfault's website + * Copyright (C) 2026 Connor Thomson + * + * This program is free software: you can redistribute it and/or modify + * it under the terms of the GNU Affero General Public License as published by + * the Free Software Foundation, either version 3 of the License, or + * (at your option) any later version. + * + * This program is distributed in the hope that it will be useful, + * but WITHOUT ANY WARRANTY; without even the implied warranty of + * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the + * GNU Affero General Public License for more details. + * + * You should have received a copy of the GNU Affero General Public License + * along with this program. If not, see <https://www.gnu.org/licenses/>. + */ + +define('ROOT', rtrim($_SERVER['DOCUMENT_ROOT'], '/') . '/'); + +require_once ROOT . '/php/user.php'; + +require_admin(); + +render_content(ROOT . '/html/remove-user.html'); + +?> diff --git a/admin/remove-user/remove-user.php b/admin/remove-user/remove-user.php new file mode 100755 index 0000000..81849c2 --- /dev/null +++ b/admin/remove-user/remove-user.php @@ -0,0 +1,63 @@ +<?php +/* + * GNUfault.org - GNUfault's website + * Copyright (C) 2026 Connor Thomson + * + * This program is free software: you can redistribute it and/or modify + * it under the terms of the GNU Affero General Public License as published by + * the Free Software Foundation, either version 3 of the License, or + * (at your option) any later version. + * + * This program is distributed in the hope that it will be useful, + * but WITHOUT ANY WARRANTY; without even the implied warranty of + * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the + * GNU Affero General Public License for more details. + * + * You should have received a copy of the GNU Affero General Public License + * along with this program. If not, see <https://www.gnu.org/licenses/>. + */ + +define('ROOT', rtrim($_SERVER['DOCUMENT_ROOT'], '/') . '/'); + +require_once ROOT . '/php/user.php'; + +require_admin(); + +if ($_SERVER["REQUEST_METHOD"] != "POST") { + header("Location: /admin/remove-user/"); + exit; +} + +$username = isset($_POST['username']) ? $_POST['username'] : ''; + +try { + $user = find_user($username); + + if (!$user) { + echo "User not found."; + exit; + } + + $me = current_user(); + + if ($me !== null && (int)$user['id'] === (int)$me['id']) { + echo "You cannot remove yourself!"; + exit; + } + + if ($user['status'] === 'admin') { + echo "You cannot remove an admin, lower their status first!"; + exit; + } + + $sql = "DELETE FROM users WHERE username = :username"; + + query($sql, ['username' => $username]); +} catch (\PDOException $e) { + echo "Error: " . $e->getMessage(); + exit; +} + +header("Location: /admin/"); + +?> |
