0 Votes

Changes for page LiveTable View Sheet

Last modified by Сергей Коршунов on 2025/05/01 21:19

From version 6.1
edited by Сергей Коршунов
on 2024/01/18 17:27
Change comment: Install extension [org.xwiki.platform:xwiki-platform-appwithinminutes-ui/15.10.5]
To version 2.1
edited by Сергей Коршунов
on 2022/03/08 16:59
Change comment: Install extension [org.xwiki.platform:xwiki-platform-appwithinminutes-ui/14.1]

Summary

Details

Page properties
Content
... ... @@ -11,8 +11,16 @@
11 11   ## Display the live table only if it was generated.
12 12   #if ($doc.content.length() > 0)
13 13   = $services.localization.render('platform.appwithinminutes.appLiveTableHeading') =
14 -
15 - {{include reference="" author="target"/}}
14 + ## We don't use the Include macro (with empty reference) because we want the content to be executed with the rights
15 + ## of the current document rather than the rights of the sheet. This is important because the user can modify the
16 + ## content of the application home page which means we could execute untrusted content with the rights of the sheet.
17 + ## Ideally we should use the Display macro with a parameter to disable the sheet, but we don't have this parameter.
18 + ## We don't clean the HTML content because getRenderedContent() should produce clean HTML, unless the user has
19 + ## disabled the HTML cleaning, in which case he will get what he asked for. Note that one good reason to disable
20 + ## HTML cleaning is to preserve the whitespaces in the attribute values.
21 + ## Escape {{ in the rendered content to be sure that the HTML macro is not closed unintentionally.
22 + {{html clean="false"}}$doc.getRenderedContent($doc.content,
23 + $doc.syntax.toIdString()).replace('{{', '{{'){{/html}}
16 16   #end
17 17  #end
18 18  
... ... @@ -60,7 +60,6 @@
60 60   #end
61 61   ## We need to set the title if we want to be able to sort or filter the doc.title live table column.
62 62   #set ($params = {
63 - 'form_token': $services.csrf.token,
64 64   'template': "${className}Template",
65 65   'title': '__entryName__',
66 66   'parent': $services.model.serialize($doc.documentReference, 'local')
... ... @@ -115,30 +115,23 @@
115 115   data-backdrop="static" data-keyboard="false">
116 116   <div class="modal-dialog" role="document">
117 117   <form class="modal-content xform">
118 - ## The fieldset allows us to disable and enable the entire form quickly and easy.
119 - <fieldset>
120 - <div class="modal-header">
121 - <button type="button" class="close" data-dismiss="modal"
122 - title="$escapetool.xml($services.localization.render('appWithinMinutes.renameApp.close'))"
123 - aria-label="$escapetool.xml($services.localization.render('appWithinMinutes.renameApp.close'))">
124 - <span aria-hidden="true">&times;</span>
125 - </button>
126 - <span class="modal-title" id="renameAppModal-label">
127 - $escapetool.xml($services.localization.render('appWithinMinutes.renameApp.label'))
128 - </span>
129 - </div>
130 - <div class="modal-body">
131 - #renameAppModalBody
132 - </div>
133 - <div class="modal-footer">
134 - <button type="button" class="btn btn-default" data-dismiss="modal">
135 - $escapetool.xml($services.localization.render('cancel'))
136 - </button>
137 - <button type="submit" class="btn btn-primary" disabled="disabled">
138 - $escapetool.xml($services.localization.render('core.rename.submit'))
139 - </button>
140 - </div>
141 - </fieldset>
125 + <div class="modal-header">
126 + <button type="button" class="close" data-dismiss="modal" aria-label="Close">
127 + <span aria-hidden="true">&times;</span>
128 + </button>
129 + <span class="modal-title" id="renameAppModal-label">Rename Application</span>
130 + </div>
131 + <div class="modal-body">
132 + #renameAppModalBody
133 + </div>
134 + <div class="modal-footer">
135 + <button type="button" class="btn btn-default" data-dismiss="modal">
136 + $escapetool.xml($services.localization.render('cancel'))
137 + </button>
138 + <button type="submit" class="btn btn-primary" disabled="disabled">
139 + $escapetool.xml($services.localization.render('core.rename.submit'))
140 + </button>
141 + </div>
142 142   </form>
143 143   </div>
144 144   </div>
XWiki.JavaScriptExtension[0]
Code
... ... @@ -58,9 +58,8 @@
58 58  /**
59 59   * Rename Application
60 60   */
61 -require(['jquery', 'bootstrap', 'xwiki-form-validation-async'], function($) {
62 - ## Note: if not currentApp request param is not passed, we default to the wiki home page reference to avoid a NPE
63 - #set ($currentDocReference = $xwiki.getDocument("$!request.currentApp").getDocumentReference())
61 +require(['jquery', 'bootstrap'], function($) {
62 + #set ($currentDocReference = $xwiki.getDocument($request.currentApp).getDocumentReference())
64 64   // if we cannot find any extension related to this page app, it's not part of an extension.
65 65   var isNotAnExtension = $services.extension.xar.getInstalledExtensions($currentDocReference).isEmpty();
66 66  
... ... @@ -78,6 +78,7 @@
78 78   // Form validation.
79 79   var appNameInput = $('#renameAppTitle');
80 80   var appParentInput = $('#renameAppParentReference');
80 + var submitButton = renameAppModal.find('.btn-primary[type="submit"]');
81 81  
82 82   var appNameEmptyError = renameAppModal.find('.appNameEmptyError');
83 83   var pageExistsError = renameAppModal.find('.pageExistsError');
... ... @@ -100,44 +100,49 @@
100 100  
101 101   var startValidation = function() {
102 102   if (appNameInput.val() === '') {
103 - return Promise.reject(appNameEmptyError);
103 + endValidation(appNameEmptyError);
104 104   } else {
105 105   var newAppHomePage = getNewAppHomePage();
106 106   if (newAppHomePage.documentReference.equals(XWiki.currentDocument.documentReference)) {
107 - return Promise.reject(pageExistsError);
107 + endValidation(pageExistsError);
108 108   } else {
109 - return new Promise((resolve, reject) => {
110 - $.ajax({
111 - type: 'HEAD',
112 - url: newAppHomePage.getURL()
113 - }).then(reject.bind(null, pageExistsError), response => {
114 - if (response.status === 404) {
115 - $.ajax({
116 - type: 'HEAD',
117 - url: newAppHomePage.getURL('edit')
118 - }).then(
119 - () => resolve(),
120 - () => reject(locationForbiddenError)
121 - );
122 - } else if (response.status === 403) {
123 - reject(locationForbiddenError);
124 - } else {
125 - resolve();
126 - }
127 - });
109 + $.ajax({
110 + type: 'HEAD',
111 + url: newAppHomePage.getURL()
112 + }).then(endValidation.bind(null, pageExistsError), response => {
113 + if (response.status === 404) {
114 + $.ajax({
115 + type: 'HEAD',
116 + url: newAppHomePage.getURL('edit')
117 + }).then(
118 + () => endValidation(),
119 + () => endValidation(locationForbiddenError)
120 + );
121 + } else if (response.status === 403) {
122 + endValidation(locationForbiddenError);
123 + } else {
124 + endValidation();
125 + }
128 128   });
129 129   }
130 130   }
131 131   };
132 132  
131 + var endValidation = function(error) {
132 + if (error) {
133 + error.show();
134 + }
135 + appNameInput.removeClass('loading');
136 + submitButton.prop('disabled', !!error);
137 + };
138 +
139 + var validationTimeout;
133 133   var scheduleValidation = function() {
134 - // Hide all error messages before starting the asynchronous validation.
141 + clearTimeout(validationTimeout);
135 135   renameAppModal.find('.xErrorMsg').hide();
136 - appNameInput.addClass('loading').validateAsync(startValidation, 500, 'awm').catch((error) => {
137 - error.show();
138 - }).finally(() => {
139 - appNameInput.removeClass('loading');
140 - });
143 + appNameInput.addClass('loading');
144 + submitButton.prop('disabled', true);
145 + validationTimeout = setTimeout(startValidation, 500);
141 141   };
142 142  
143 143   appNameInput.add(appParentInput).on('input', scheduleValidation);
... ... @@ -186,13 +186,13 @@
186 186  
187 187   var renameApp = function(data) {
188 188   // Disable the form to prevent it from being submitted twice.
189 - renameAppModal.find('fieldset').prop('disabled', true);
194 + renameAppModal.find(':input').prop('disabled', true);
190 190   var notification = new XWiki.widgets.Notification(
191 191   $jsontool.serialize($services.localization.render('appWithinMinutes.renameApp.inProgress')),
192 192   'inprogress'
193 193   );
194 194   var renameAppURL = new XWiki.Document('RenameApplication', 'AppWithinMinutes').getURL('get');
195 - Promise.resolve($.post(renameAppURL, data)).then(updateAppHomePage).then(function() {
200 + $.post(renameAppURL, data).then(updateAppHomePage).then(function() {
196 196   renameAppModal.modal('hide');
197 197   notification.replace(new XWiki.widgets.Notification(
198 198   $jsontool.serialize($services.localization.render('appWithinMinutes.renameApp.done')),
... ... @@ -209,7 +209,7 @@
209 209   ));
210 210   }).finally(function() {
211 211   // Re-enable the form.
212 - renameAppModal.find('fieldset').prop('disabled', false);
217 + renameAppModal.find(':input').prop('disabled', false);
213 213   });
214 214   };
215 215