forked from elabftw/elabftw
-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathstar-rating.php
42 lines (38 loc) · 2.33 KB
/
star-rating.php
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
<?php
/********************************************************************************
* *
* Copyright 2012 Nicolas CARPi (nicolas.carpi@gmail.com) *
* http://www.elabftw.net/ *
* *
********************************************************************************/
/********************************************************************************
* This file is part of eLabFTW. *
* *
* eLabFTW is free software: you can redistribute it and/or modify *
* it under the terms of the GNU Affero General Public License as *
* published by the Free Software Foundation, either version 3 of *
* the License, or (at your option) any later version. *
* *
* eLabFTW is distributed in the hope that it will be useful, *
* but WITHOUT ANY WARRANTY; without even the implied *
* warranty of MERCHANTABILITY or FITNESS FOR A PARTICULAR *
* PURPOSE. See the GNU Affero General Public License for more details. *
* *
* You should have received a copy of the GNU Affero General Public *
* License along with eLabFTW. If not, see <http://www.gnu.org/licenses/>. *
* *
********************************************************************************/
/* star-rating.php - for items rating
* called from post request from editDB
*/
require_once 'inc/common.php';
if (isset($_POST['star']) &&
isset($_POST['item_id']) &&
is_pos_int($_POST['star']) &&
is_pos_int($_POST['item_id'])) {
$sql = 'UPDATE items SET rating = :rating WHERE id = :id';
$req = $pdo->prepare($sql);
$req->bindParam(':rating', $_POST['star'], PDO::PARAM_INT);
$req->bindParam(':id', $_POST['item_id'], PDO::PARAM_INT);
$req->execute();
}