forms.py 7.0 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162
  1. from recaptcha.client.captcha import submit as recaptcha_submit
  2. from django import forms
  3. from django.utils.translation import ugettext_lazy as _
  4. class Form(forms.Form):
  5. """
  6. Misago-native form abstract extending Django's one with automatic trimming
  7. of user input, captacha support and more accessible validation errors
  8. """
  9. validate_repeats = []
  10. repeats_errors = []
  11. dont_strip = []
  12. error_source = None
  13. def __init__(self, data=None, file=None, request=None, *args, **kwargs):
  14. self.form_finalized = False
  15. self.request = request
  16. # Extract request from first arguments
  17. if data != None:
  18. super(Form, self).__init__(data, file, *args, **kwargs)
  19. else:
  20. super(Form, self).__init__(*args, **kwargs)
  21. # Let forms do mumbo-jumbo with fields removing
  22. self.ensure_finalization()
  23. # Kill captcha fields
  24. try:
  25. if self.request.settings['bots_registration'] != 'recaptcha' or self.request.session.get('captcha_passed'):
  26. del self.fields['recaptcha']
  27. except KeyError:
  28. pass
  29. try:
  30. if self.request.settings['bots_registration'] != 'qa' or self.request.session.get('captcha_passed'):
  31. del self.fields['captcha_qa']
  32. else:
  33. # Make sure we have any questions loaded
  34. self.fields['captcha_qa'].label = self.request.settings['qa_test']
  35. self.fields['captcha_qa'].help_text = self.request.settings['qa_test_help']
  36. except KeyError:
  37. pass
  38. def ensure_finalization(self):
  39. if not self.form_finalized:
  40. self.form_finalized = True
  41. self.finalize_form()
  42. def finalize_form(self):
  43. pass
  44. def full_clean(self):
  45. """
  46. Trim inputs and strip newlines
  47. """
  48. self.ensure_finalization()
  49. self.data = self.data.copy()
  50. for key, field in self.fields.iteritems():
  51. try:
  52. if field.__class__.__name__ in ['ModelChoiceField', 'TreeForeignKey'] and self.data[key]:
  53. self.data[key] = int(self.data[key])
  54. elif field.__class__.__name__ == 'ModelMultipleChoiceField':
  55. self.data.setlist(key, [int(x) for x in self.data.getlist(key, [])])
  56. elif field.__class__.__name__ not in ['DateField', 'DateTimeField']:
  57. if not key in self.dont_strip:
  58. if field.__class__.__name__ in ['MultipleChoiceField', 'TypedMultipleChoiceField']:
  59. self.data.setlist(key, [x.strip() for x in self.data.getlist(key, [])])
  60. else:
  61. self.data[key] = self.data[key].strip()
  62. if field.__class__.__name__ in ['MultipleChoiceField', 'TypedMultipleChoiceField']:
  63. self.data.setlist(key, [x.replace("\r\n", '') for x in self.data.getlist(key, [])])
  64. elif not field.widget.__class__.__name__ in ['Textarea']:
  65. self.data[key] = self.data[key].replace("\r\n", '')
  66. except (KeyError, AttributeError):
  67. pass
  68. super(Form, self).full_clean()
  69. def clean(self):
  70. """
  71. Clean data, do magic checks and stuff
  72. """
  73. cleaned_data = super(Form, self).clean()
  74. self._check_all()
  75. return cleaned_data
  76. def clean_recaptcha(self):
  77. """
  78. Test reCaptcha, scream if it went wrong
  79. """
  80. response = recaptcha_submit(
  81. self.request.POST.get('recaptcha_challenge_field'),
  82. self.request.POST.get('recaptcha_response_field'),
  83. self.request.settings['recaptcha_private'],
  84. self.request.session.get_ip(self.request)
  85. ).is_valid
  86. if not response:
  87. raise forms.ValidationError(_("Entered words are incorrect. Please try again."))
  88. self.request.session['captcha_passed'] = True
  89. return ''
  90. def clean_captcha_qa(self):
  91. """
  92. Test QA Captcha, scream if it went wrong
  93. """
  94. if not unicode(self.cleaned_data['captcha_qa']).lower() in (name.lower() for name in unicode(self.request.settings['qa_test_answers']).splitlines()):
  95. raise forms.ValidationError(_("The answer you entered is incorrect."))
  96. self.request.session['captcha_passed'] = True
  97. return self.cleaned_data['captcha_qa']
  98. def _check_all(self):
  99. # Check repeated fields
  100. self._check_repeats()
  101. # Check CSRF, we dont allow un-csrf'd forms in Misago
  102. self._check_csrf()
  103. # Check if we have any errors from fields, if we do, we will set fancy form-wide error message
  104. self._check_fields_errors()
  105. def _check_repeats(self):
  106. for index, repeat in enumerate(self.validate_repeats):
  107. # Check empty fields
  108. for field in repeat:
  109. if not field in self.data:
  110. try:
  111. if len(repeat) == 2:
  112. self.errors['_'.join(repeat)] = [self.repeats_errors[index]['fill_both']]
  113. else:
  114. self.errors['_'.join(repeat)] = [self.repeats_errors[index]['fill_all']]
  115. except (IndexError, KeyError):
  116. if len(repeat) == 2:
  117. self.errors['_'.join(repeat)] = [_("You have to fill in both fields.")]
  118. else:
  119. self.errors['_'.join(repeat)] = [_("You have to fill in all fields.")]
  120. break
  121. else:
  122. # Check different fields
  123. past_field = self.data[repeat[0]]
  124. for field in repeat:
  125. if self.data[field] != past_field:
  126. try:
  127. self.errors['_'.join(repeat)] = [self.repeats_errors[index]['different']]
  128. except (IndexError, KeyError):
  129. self.errors['_'.join(repeat)] = [_("Entered values differ from each other.")]
  130. break
  131. past_field = self.data[field]
  132. def _check_csrf(self):
  133. if not self.request.csrf.request_secure(self.request):
  134. raise forms.ValidationError(_("Request authorization is invalid. Please resubmit your form."))
  135. def _check_fields_errors(self):
  136. if self.errors:
  137. if self.error_source and self.error_source in self.errors:
  138. field_error, self.errors[self.error_source] = self.errors[self.error_source][0], []
  139. raise forms.ValidationError(field_error)
  140. raise forms.ValidationError(_("Form contains errors."))
  141. def empty_errors(self):
  142. for i in self.errors:
  143. self.errors[i] = []