Request.php 5.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188
  1. <?php
  2. // +----------------------------------------------------------------------
  3. // | CRMEB [ CRMEB赋能开发者,助力企业发展 ]
  4. // +----------------------------------------------------------------------
  5. // | Copyright (c) 2016~2023 https://www.crmeb.com All rights reserved.
  6. // +----------------------------------------------------------------------
  7. // | Licensed CRMEB并不是自由软件,未经许可不能去掉CRMEB相关版权
  8. // +----------------------------------------------------------------------
  9. // | Author: CRMEB Team <admin@crmeb.com>
  10. // +----------------------------------------------------------------------
  11. namespace app;
  12. use Spatie\Macroable\Macroable;
  13. /**
  14. * Class Request
  15. * @package app
  16. * @method tokenData() 获取token信息
  17. * @method user(string $key = null) 获取用户信息
  18. * @method uid() 获取用户uid
  19. * @method isAdminLogin() 后台登陆状态
  20. * @method adminId() 后台管理员id
  21. * @method adminInfo() 后台管理信息
  22. * @method kefuId() 客服id
  23. * @method kefuInfo() 客服信息
  24. */
  25. class Request extends \think\Request
  26. {
  27. use Macroable;
  28. /**
  29. * 不过滤变量名
  30. * @var array
  31. */
  32. protected $except = ['menu_path', 'api_url', 'unique_auth',
  33. 'description', 'custom_form', 'content', 'tableField'];
  34. /**
  35. * 获取请求的数据
  36. * @param array $params
  37. * @param bool $suffix
  38. * @param bool $filter
  39. * @return array
  40. */
  41. public function more(array $params, bool $suffix = false, bool $filter = true): array
  42. {
  43. $p = [];
  44. $i = 0;
  45. foreach ($params as $param) {
  46. if (!is_array($param)) {
  47. $p[$suffix == true ? $i++ : $param] = $this->filterWord(is_string($this->param($param)) ? trim($this->param($param)) : $this->param($param), $filter && !in_array($param, $this->except));
  48. } else {
  49. if (!isset($param[1])) $param[1] = null;
  50. if (!isset($param[2])) $param[2] = '';
  51. if (is_array($param[0])) {
  52. $name = is_array($param[1]) ? $param[0][0] . '/a' : $param[0][0] . '/' . $param[0][1];
  53. $keyName = $param[0][0];
  54. } else {
  55. $name = is_array($param[1]) ? $param[0] . '/a' : $param[0];
  56. $keyName = $param[0];
  57. }
  58. $p[$suffix == true ? $i++ : ($param[3] ?? $keyName)] = $this->filterWord(is_string($this->param($name, $param[1], $param[2])) ? trim($this->param($name, $param[1], $param[2])) : $this->param($name, $param[1], $param[2]), $filter && !in_array($keyName, $this->except));
  59. }
  60. }
  61. return $p;
  62. }
  63. /**
  64. * 过滤接受的参数
  65. * @param $str
  66. * @param bool $filter
  67. * @return array|mixed|string|string[]
  68. */
  69. public function filterWord($str, bool $filter = true)
  70. {
  71. if (!$str || !$filter) return $str;
  72. // 把数据过滤
  73. $farr = [
  74. "/<(\\/?)(script|i?frame|style|html|body|title|link|meta|object|\\?|\\%)([^>]*?)>/isU",
  75. "/(<[^>]*)on[a-zA-Z]+\s*=([^>]*>)/isU",
  76. '/phar/is',
  77. "/select|join|where|drop|like|modify|rename|insert|update|table|database|alter|truncate|\'|\/\*|\.\.\/|\.\/|union|into|load_file|outfile/is"
  78. ];
  79. if (is_array($str)) {
  80. foreach ($str as &$v) {
  81. if (is_array($v)) {
  82. foreach ($v as &$vv) {
  83. if (!is_array($vv)) $vv = preg_replace($farr, '', $vv);
  84. }
  85. } else {
  86. $v = preg_replace($farr, '', $v);
  87. }
  88. }
  89. } else {
  90. $str = preg_replace($farr, '', $str);
  91. }
  92. return $str;
  93. }
  94. /**
  95. * 获取get参数
  96. * @param array $params
  97. * @param bool $suffix
  98. * @param bool $filter
  99. * @return array
  100. */
  101. public function getMore(array $params, bool $suffix = false, bool $filter = true): array
  102. {
  103. return $this->more($params, $suffix, $filter);
  104. }
  105. /**
  106. * 获取post参数
  107. * @param array $params
  108. * @param bool $suffix
  109. * @param bool $filter
  110. * @return array
  111. */
  112. public function postMore(array $params, bool $suffix = false, bool $filter = true): array
  113. {
  114. return $this->more($params, $suffix, $filter);
  115. }
  116. /**
  117. * 获取用户访问端
  118. * @return array|string|null
  119. */
  120. public function getFromType()
  121. {
  122. return $this->header('Form-type', '');
  123. }
  124. /**
  125. * 当前访问端
  126. * @param string $terminal
  127. * @return bool
  128. */
  129. public function isTerminal(string $terminal)
  130. {
  131. return strtolower($this->getFromType()) === $terminal;
  132. }
  133. /**
  134. * 是否是H5端
  135. * @return bool
  136. */
  137. public function isH5()
  138. {
  139. return $this->isTerminal('h5');
  140. }
  141. /**
  142. * 是否是微信端
  143. * @return bool
  144. */
  145. public function isWechat()
  146. {
  147. return $this->isTerminal('wechat');
  148. }
  149. /**
  150. * 是否是小程序端
  151. * @return bool
  152. */
  153. public function isRoutine()
  154. {
  155. return $this->isTerminal('routine');
  156. }
  157. /**
  158. * 是否是app端
  159. * @return bool
  160. */
  161. public function isApp()
  162. {
  163. return $this->isTerminal('app');
  164. }
  165. /**
  166. * 是否是app端
  167. * @return bool
  168. */
  169. public function isPc()
  170. {
  171. return $this->isTerminal('pc');
  172. }
  173. }