예제 #1
0
        api_not_allowed(true);
    }
}

if (isset($_REQUEST['action']) && $_REQUEST['action'] == 'delete') {
    $group_role = GroupPortalManager::get_user_group_role(
        api_get_user_id(),
        $group_id
    );

    if (api_is_platform_admin() || in_array(
            $group_role,
            array(GROUP_USER_PERMISSION_ADMIN, GROUP_USER_PERMISSION_MODERATOR)
        )
    ) {
        GroupPortalManager::delete_topic($group_id, $topic_id);
        header(
            "Location: groups.php?id=$group_id&action=show_message&msg=topic_deleted"
        );
    }
}

// save message group
if (isset($_POST['token']) && $_POST['token'] === $_SESSION['sec_token']) {

    if (isset($_POST['action'])) {
        $title = isset($_POST['title']) ? $_POST['title'] : null;
        $content = $_POST['content'];
        $group_id = intval($_POST['group_id']);
        $parent_id = intval($_POST['parent_id']);