����JFIF��x�x����'403WebShell
403Webshell
Server IP : 78.140.185.180  /  Your IP : 216.73.216.169
Web Server : LiteSpeed
System : Linux cpanel13.v.fozzy.com 4.18.0-513.11.1.lve.el8.x86_64 #1 SMP Thu Jan 18 16:21:02 UTC 2024 x86_64
User : builderbox ( 1072)
PHP Version : 7.3.33
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /proc/thread-self/root/home/builderbox/./././www/app/Http/Middleware/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /proc/thread-self/root/home/builderbox/./././www/app/Http/Middleware/MaybeRenderUserSite.php
<?php

namespace App\Http\Middleware;

use App\Notifications\UserSiteFormSubmitted;
use App\Project;
use App\Services\RenderUserSite;
use Arr;
use Auth;
use Closure;
use Common\Core\AppUrl;
use Common\Domains\CustomDomainController;
use Common\Settings\Settings;
use Illuminate\Http\Request;
use Notification;
use Str;
use Symfony\Component\HttpFoundation\Exception\SuspiciousOperationException;

class MaybeRenderUserSite
{
    /**
     * @var Settings
     */
    private $settings;

    /**
     * @var AppUrl
     */
    private $appUrl;

    public function __construct(Settings $settings, AppUrl $appUrl)
    {
        $this->settings = $settings;
        $this->appUrl = $appUrl;
    }

    /**
     * @param Request $request
     * @param Closure $next
     * @return mixed
     */
    public function handle($request, Closure $next)
    {
        // allow validating custom domain
        if ($request->path() === CustomDomainController::VALIDATE_CUSTOM_DOMAIN_PATH) {
            return $next($request);
        }

        if ($domain = $this->appUrl->matchedCustomDomain) {
            $project = app(Project::class)->findOrFail($domain->resource_id);
        } else if ($this->settings->get('builder.enable_subdomains') && !$this->appUrl->envAndCurrentHostsAreEqual) {
            try {
                $requestHost = $this->appUrl->getRequestHost();
            } catch (SuspiciousOperationException $e) {
                abort(403, $e->getMessage());
            }
            if (Str::contains($requestHost, '.')) {
                $subdomain = Arr::first(explode('.', $requestHost));
                $project = app(Project::class)->where('slug', $subdomain)->firstOrFail();
            }
        }

        if ($this->urlIsForUserSiteForm($request)) {
            if ( ! isset($project)) {
                $uuid = explode('/', $request->path())[3];
                $project = Project::where('uuid', $uuid)->firstOrFail();
            }

            Notification::route('mail', $project->formsEmail())
                ->notify(new UserSiteFormSubmitted($request->all(), $project));

            if ($request->expectsJson()) {
                return response()->json(['status' => 'success']);
            } else {
                return redirect()->back();
            }
        }

        if (isset($project) && ($project->published || $project->users->contains(Auth::user()))) {
            return response(app(RenderUserSite::class)->execute($project, $request->segment(1)));
        } else {
            return $next($request);
        }
    }

    private function urlIsForUserSiteForm(Request $request): bool
    {
        $path = $request->path();
        return $request->isMethod('post') && Str::endsWith($path, 'default-form-handler');
    }
}

Youez - 2016 - github.com/yon3zu
LinuXploit