src/PromemoriaBundle/Controller/ApiController.php line 31

Open in your IDE?
  1. <?php
  2. namespace App\PromemoriaBundle\Controller;
  3. use Pimcore\Db;
  4. use Pimcore\File;
  5. use Pimcore\Tool;
  6. use Pimcore\Model\User;
  7. use Pimcore\Security\User\User as UserAdmin;
  8. use Pimcore\Model\Asset;
  9. use Pimcore\Tool\Session;
  10. use Pimcore\Event\AdminEvents;
  11. use Pimcore\Tool\Authentication;
  12. use Pimcore\Controller\FrontendController;
  13. use Pimcore\Bundle\AdminBundle\Controller\Admin;
  14. use Pimcore\Controller\Configuration\ResponseHeader;
  15. use Pimcore\Event\Admin\Login\LoginCredentialsEvent;
  16. use Symfony\Component\HttpFoundation\Request;
  17. use Symfony\Component\HttpFoundation\Response;
  18. use Symfony\Component\Routing\Annotation\Route;
  19. use Symfony\Component\HttpFoundation\JsonResponse;
  20. use Symfony\Component\HttpFoundation\ResponseHeaderBag;
  21. use Symfony\Component\HttpFoundation\BinaryFileResponse;
  22. use Symfony\Component\HttpFoundation\StreamedResponse;
  23. use Symfony\Component\EventDispatcher\EventDispatcherInterface;
  24. use Symfony\Component\HttpFoundation\Session\Attribute\AttributeBagInterface;
  25. class ApiController extends FrontendController
  26. {
  27.        /**
  28.      * @Route("/promemoria/api/login", methods={"POST"})
  29.      * @param Request $request
  30.      *
  31.      * @return JsonResponse
  32.      */
  33.     public function login(Request $request)
  34.     {
  35.         $response = new Response();
  36.         $response->setStatusCode(401);
  37.         $data json_decode($request->getContent());
  38.         if (!empty($data->username) &&  !empty($data->password)) {
  39.             $credentials = [
  40.                 'username' => $data->username,
  41.                 'password' => $data->password
  42.             ];
  43.             $event = new LoginCredentialsEvent($request$credentials);
  44.             try {
  45.                 $this->dispatcher->dispatch(AdminEvents::LOGIN_CREDENTIALS$event);
  46.             } catch (\Throwable $th) {
  47.             }
  48.             $pimcoreUser Authentication::authenticatePlaintext($data->username$data->password);
  49.             if ($pimcoreUser) {
  50.                 return Session::useSession(function (AttributeBagInterface $adminSession) use ($pimcoreUser) {
  51.                     $user = new UserAdmin($pimcoreUser);
  52.                     Session::regenerateId();
  53.                     $adminSession->set('user'$pimcoreUser);
  54.                     $adminSession->set('2fa_required'true);
  55.                     return $this->json(['ok' => true'user' => array(
  56.                         'id' => $pimcoreUser->getId(),
  57.                         'firstname' => $pimcoreUser->getFirstname(),
  58.                         'lastname' => $pimcoreUser->getLastname(),
  59.                         'email' => $pimcoreUser->getEmail(),
  60.                         'roles' => $user->getRoles()
  61.                     )]);
  62.                 });
  63.             }
  64.         }
  65.         return $response;
  66.     }
  67.     /**
  68.      * @Route("/promemoria/api/logout", methods={"POST", "GET"})
  69.      *
  70.      * @return JsonResponse
  71.      */
  72.     public function logout()
  73.     {
  74.         return $this->redirectToRoute('pimcore_admin_logout');
  75.     }
  76.     /**
  77.      * @Route("/promemoria/api/get-audio-thumbnail", methods={"GET"})
  78.      *
  79.      * @param Request $request
  80.      *
  81.      * @return BinaryFileResponse
  82.      */
  83.     public function getAudioThumbnail(Request $request)
  84.     {
  85.         $response = new BinaryFileResponse(__DIR__ "/../Placeholder/audio.png");
  86.         $this->addThumbnailCacheHeaders($response);
  87.         return $response;
  88.     }
  89.     /**
  90.      * @Route("/promemoria/api/get-image-thumbnail", methods={"GET"})
  91.      *
  92.      * @param Request $request
  93.      *
  94.      * @return BinaryFileResponse|StreamedResponse
  95.      */
  96.     public function getImageThumbnail(Request $request)
  97.     {
  98.         $id $request->get('id');
  99.         if(!$this->checkHash($id)){
  100.             $response = new Response();
  101.             $response->setStatusCode(401);
  102.             return $response;
  103.         }
  104.         $image Asset\Image::getById(intval($id));
  105.         $thumb $this->getThumb($image$request->get('version''thumbnail'));
  106.         return $this->responseThumbnail($thumb);
  107.     }
  108.     /**
  109.      * @Route("/promemoria/api/get-video-thumbnail", methods={"GET"})
  110.      *
  111.      * @param Request $request
  112.      *
  113.      * @return BinaryFileResponse|StreamedResponse
  114.      */
  115.     public function getVideoThumbnail(Request $request)
  116.     {
  117.         $id $request->get('id');
  118.         if(!$this->checkHash($id)){
  119.             $response = new Response();
  120.             $response->setStatusCode(401);
  121.             return $response;
  122.         }
  123.         $video Asset\Video::getById(intval($id));
  124.         $thumb $video->getImageThumbnail(Asset\Image\Thumbnail\Config::getPreviewConfig());
  125.         return $this->responseThumbnail($thumb);
  126.     }
  127.     /**
  128.      * @Route("/promemoria/api/get-document-thumbnail", methods={"GET"})
  129.      *
  130.      * @param Request $request
  131.      *
  132.      * @return BinaryFileResponse|StreamedResponse
  133.      */
  134.     public function getDocumentThumbnail(Request $request)
  135.     {
  136.         $id $request->get('id');
  137.         if(!$this->checkHash($id)){
  138.             $response = new Response();
  139.             $response->setStatusCode(401);
  140.             return $response;
  141.         }
  142.         $document Asset\Document::getById(intval($id));
  143.         $thumb = new Asset\Document\ImageThumbnail($documentAsset\Image\Thumbnail\Config::getPreviewConfig(), 1);
  144.         return $this->responseThumbnail($thumb);
  145.     }
  146.     /**
  147.      * @Route("/promemoria/api/get-video-preview", methods={"GET"})
  148.      *
  149.      * @param Request $request
  150.      *
  151.      * @return BinaryFileResponse
  152.      */
  153.     public function getVideoPreview(Request $request)
  154.     {
  155.         $response = new Response();
  156.         $response->setStatusCode(400);
  157.         $id $request->get('id');
  158.         if(!$this->checkHash($id)){
  159.             $response->setStatusCode(401);
  160.             return $response;
  161.         }
  162.         $asset Asset::getById(intval($id));
  163.         if(!empty($asset) && $asset->getType()=='video'){
  164.             $thumbnail $asset->getThumbnail(Asset\Video\Thumbnail\Config::getPreviewConfig(), ['mp4']);
  165.             $storagePath $asset->getRealPath() . '/' preg_replace('@^' preg_quote($asset->getPath(), '@') . '@'''urldecode($thumbnail['formats']['mp4']));
  166.             $storage \Pimcore\Tool\Storage::get('thumbnail');
  167.             if ($storage->fileExists($storagePath)) {
  168.                 $fs $storage->fileSize($storagePath);
  169.                 $stream $storage->readStream($storagePath);
  170.                 return new StreamedResponse(function () use ($stream) {
  171.                     fpassthru($stream);
  172.                 }, 200, [
  173.                     'Content-Type' => 'video/mp4',
  174.                     'Content-Length' => $fs,
  175.                     'Accept-Ranges' => 'bytes',
  176.                 ]);
  177.             } else {
  178.                 $response->setStatusCode(204);
  179.             }
  180.         }
  181.         return $response;
  182.     }
  183.     /**
  184.      * @param Response $response
  185.      */
  186.     protected function responseThumbnail($thumb)
  187.     {
  188.         $stream $thumb->getStream();
  189.         if ($stream) {
  190.             $response = new StreamedResponse(function () use ($stream) {
  191.                 fpassthru($stream);
  192.             }, 200, [
  193.                 'Content-Type' => 'image/' $thumb->getFileExtension(),
  194.             ]);
  195.         } else {
  196.             $pathparts pathinfo($thumb->getAsset()->getFilename());
  197.             $ext = isset($pathparts["extension"]) ? $pathparts["extension"] : 'image';
  198.             $tmpfname tempnam("/tmp""image.png");
  199.             file_put_contents($tmpfnamefile_get_contents("https://dummyimage.com/300x300/3e3e3e/ffffff.png&text=%20{$ext}%20"));
  200.             $response = new BinaryFileResponse($tmpfname);
  201.         }
  202.         $this->addThumbnailCacheHeaders($response);
  203.         return $response;
  204.     }
  205.     /**
  206.      * @Route("/promemoria/api/download-as-zip", methods={"GET"})
  207.      *
  208.      * @param Request $request
  209.      *
  210.      * @return BinaryFileResponse
  211.      */
  212.     public function downloadAsZip(Request $request)
  213.     {
  214.         $name $request->get('name''');
  215.         $version $request->get('version''original');
  216.         $watermarked $request->get('watermarked'0);
  217.         $zipName = ($name ?: 'collection-' time()) . '.zip';
  218.         $zipFile tempnam("/tmp"$zipName);
  219.         $zip = new \ZipArchive();
  220.         $zipState $zip->open($zipFile\ZipArchive::CREATE);
  221.         $selectedIds $request->get('selectedIds''');
  222.         if (strlen($selectedIds) > && $zipState === true) {
  223.             $conditionFilters = [];
  224.             $selectedIds explode(','$selectedIds);
  225.             $ids = [];
  226.             foreach ($selectedIds as $id) {
  227.                 if(!$this->checkHash($id)){
  228.                     $response = new Response();
  229.                     $response->setStatusCode(401);
  230.                     return $response;
  231.                 }
  232.                 $ids[] = intval($id);
  233.             }
  234.             $conditionFilters[] = 'id IN (' implode(','$ids) . ')';
  235.             $conditionFilters[] .= "type != 'folder'";
  236.             $condition implode(' AND '$conditionFilters);
  237.             $assetList = new Asset\Listing();
  238.             $assetList->setCondition($condition);
  239.             $assetList->setOrderKey('LENGTH(path) ASC, id ASC'false);
  240.             $assetList->setOffset((int)$request->get('offset'));
  241.             $assetList->setLimit((int)$request->get('limit'));
  242.             foreach ($assetList->load() as $a) {
  243.                 if (!$a instanceof Asset\Folder) {
  244.                     if($a instanceof Asset\Image){
  245.                         $a $this->getThumb($a$watermarked $version "no_watermark"$version === 'original');
  246.                     }
  247.                     if ($a instanceof Asset\Image\Thumbnail) {
  248.                         $dir_prefix '/var/www/html/public/var/tmp/thumbnails';
  249.                         $pathReference $a->getPathReference();
  250.                         //serve per generare la thumb nel caso non esista
  251.                         $fileContent Tool\Storage::get('thumbnail')->read($pathReference['storagePath']);
  252.                         $path urldecode($a->getPath());
  253.                     } else {
  254.                         $dir_prefix '/var/www/html/public/var/assets';
  255.                         $path $a->getRealFullPath();
  256.                     }
  257.                     $zip->addFile($dir_prefix.$pathbasename($path));
  258.                 }
  259.             }
  260.             $zip->close();
  261.             $response = new BinaryFileResponse($zipFile);
  262.             $response->headers->set('Content-Type''application/zip');
  263.             $response->setContentDisposition(ResponseHeaderBag::DISPOSITION_ATTACHMENT$zipName);
  264.             $response->deleteFileAfterSend(true);
  265.             return $response;
  266.         }
  267.         return $this->json(['error' => true]);
  268.     }
  269.     /**
  270.      * @Route("/promemoria/api/getShortToken", methods={"GET"})
  271.      * @param Request $request
  272.      *
  273.      * @return JsonResponse
  274.      */
  275.     public function getShortToken(Request $request)
  276.     {
  277.         $response = new Response();
  278.         $response->setStatusCode(400);
  279.         $db \Pimcore\Db::get();
  280.         $jwtToken $request->get('jwtToken');
  281.         $this->clearExpiredShortUrls();
  282.         if (!empty($jwtToken)) {
  283.             $generatedToken substr(md5(uniqid(mt_rand(), true)), 08);
  284.             $db->insert('promemoria_shorturl', [
  285.                 'jwtToken' => $jwtToken,
  286.                 'shortToken' => $generatedToken
  287.             ]);
  288.             return $this->json(['shortToken' => $generatedToken]);
  289.         }
  290.         return $response;
  291.     }
  292.     /**
  293.      * @Route("/promemoria/api/getJwtToken", methods={"GET"})
  294.      * @param Request $request
  295.      *
  296.      * @return JsonResponse
  297.      */
  298.     public function getJwtToken(Request $request)
  299.     {
  300.         $response = new Response();
  301.         $response->setStatusCode(400);
  302.         $db \Pimcore\Db::get();
  303.         $shortToken $request->get('shortToken');
  304.         $this->clearExpiredShortUrls();
  305.         if (!empty($shortToken)) {
  306.             $res $db->fetchRow("SELECT jwtToken FROM promemoria_shorturl WHERE shortToken = " $db->quote($shortToken));
  307.             return $this->json(['jwtToken' => $res['jwtToken']]);
  308.         }
  309.         return $response;
  310.     }
  311.     /**
  312.      * @Route("/promemoria/api/changePassword", methods={"POST"})
  313.      * @param Request $request
  314.      *
  315.      * @return JsonResponse
  316.      */
  317.     public function changePassword(Request $request)
  318.     {
  319.         $response = new Response();
  320.         $response->setStatusCode(401);
  321.         $data json_decode($request->getContent());
  322.         $oldPassword $data->oldPassword;
  323.         $newPassword $data->password;
  324.         $pimcoreUser Authentication::authenticateSession();
  325.         if($pimcoreUser && !empty($newPassword)){
  326.             $checkOldPassword Authentication::authenticatePlaintext($pimcoreUser->getUsername(), $oldPassword);
  327.             if ($checkOldPassword) {
  328.                 $pimcoreUser->setPassword(Authentication::getPasswordHash($pimcoreUser->getUsername(), $newPassword));
  329.                 $pimcoreUser->save();
  330.                 return $this->json(['message' => 'Password changed']);
  331.             }
  332.         }
  333.         return $response;
  334.     }
  335.     /**
  336.      * @Route("/promemoria/api/getUserList", methods={"POST"}))
  337.      * @param Request $request
  338.      *
  339.      * @return JsonResponse
  340.      */
  341.     public function getUserList(Request $request)
  342.     {
  343.         $pimcoreUser Authentication::authenticateSession();
  344.         if(empty($pimcoreUser)){
  345.             $response = new Response();
  346.             $response->setStatusCode(401);
  347.             return $response;
  348.         }
  349.         $db \Pimcore\Db::get();
  350.         $query = <<<QUERY
  351.         SELECT u.id as user_id, u.name as user_name, u.firstname as fname, u.lastname as lname, u.email, r.id as role_id, r.name as role
  352.         FROM users u
  353.         INNER JOIN users r ON u.type = 'user' and u.roles = r.id and u.roles != '' and u.active = 1
  354.         order by u.name asc
  355. QUERY;
  356.         return $this->json(['users' => $db->executeQuery($query)->fetchAll()]);
  357.     }
  358.     /**
  359.     * @Route("/promemoria/api/getRoleList", methods={"POST"}))
  360.     * @param Request $request
  361.     *
  362.     * @return JsonResponse
  363.     */
  364.     public function getRoleList(Request $request)
  365.     {
  366.         $pimcoreUser Authentication::authenticateSession();
  367.         if(empty($pimcoreUser)){
  368.             $response = new Response();
  369.             $response->setStatusCode(401);
  370.             return $response;
  371.         }
  372.         $db \Pimcore\Db::get();
  373.         $query = <<<QUERY
  374.         SELECT u.id as role_id, u.name as name
  375.         FROM users u
  376.         WHERE
  377.         u.type = 'role'
  378.         order by u.name asc
  379. QUERY;
  380.         return $this->json(['roles' => $db->executeQuery($query)->fetchAll()]);
  381.     }
  382.     /**
  383.      * @Route("/promemoria/api/upsertUser", methods={"POST"})
  384.      * @param Request $request
  385.      *
  386.      * @return JsonResponse
  387.      */
  388.     public function upsertUser(Request $request)
  389.     {
  390.         $pimcoreUser Authentication::authenticateSession();
  391.         if(empty($pimcoreUser)){
  392.             $response = new Response();
  393.             $response->setStatusCode(401);
  394.             return $response;
  395.         }
  396.         $userAdmin = new UserAdmin($pimcoreUser);
  397.         if(!in_array("ROLE_PIMCORE_ADMIN"$userAdmin->getRoles())
  398.             && !in_array("ROLE_MANAGER"$userAdmin->getRoles())){
  399.             $response = new Response();
  400.             $response->setStatusCode(401);
  401.             return $response;
  402.         }
  403.         $data json_decode($request->getContent());
  404.         $user = new User();
  405.         if(!empty($data->user_id)){
  406.             $user User::getById($data->user_id);
  407.         }
  408.         $user->setParentId(0);
  409.         $user->setUsername($data->user_name);
  410.         $user->setFirstname($data->fname);
  411.         $user->setLastname($data->lname);
  412.         $user->setEmail($data->email);
  413.         $user->setActive($data->active);
  414.         $user->setLanguage("it");
  415.         $user->setContentLanguages("it,en");
  416.         if(!empty($data->password)){
  417.             $user->setPassword(Authentication::getPasswordHash($data->user_name$data->password));
  418.         }
  419.         $user->setRoles([$data->role_id]);
  420.         $user->save();
  421.         return $this->json(['message' => 'User updated']);
  422.     }
  423.     /**
  424.      * @Route("/promemoria/api/deleteUser", methods={"POST"})
  425.      * @param Request $request
  426.      *
  427.      * @return JsonResponse
  428.      */
  429.     public function deleteUser(Request $request)
  430.     {
  431.         $pimcoreUser Authentication::authenticateSession();
  432.         if(empty($pimcoreUser)){
  433.             $response = new Response();
  434.             $response->setStatusCode(401);
  435.             return $response;
  436.         }
  437.         $data json_decode($request->getContent());
  438.         $user User::getById($data->user_id);
  439.         $userAdmin = new UserAdmin($user);
  440.         if(in_array("ROLE_PIMCORE_ADMIN"$userAdmin->getRoles())){
  441.             $response = new Response();
  442.             $response->setStatusCode(401);
  443.             return $response;
  444.         }
  445.         $user->delete();
  446.         return $this->json(['message' => 'User deleted']);
  447.     }
  448.     /**
  449.      * @Route("/promemoria/api/buca", methods={"POST"})
  450.      * @param Request $request
  451.      *
  452.      * @return JsonResponse
  453.      */
  454.     public function buca(Request $request)
  455.     {
  456.         $token $request->get("token");
  457.         $config \App\PromemoriaBundle\PromemoriaBundle::getConfig();
  458.         if(!empty($config["googleRecaptchaSecretKey"]) && !empty($token)){
  459.             $verifyResponse file_get_contents('https://www.google.com/recaptcha/api/siteverify?secret=' $config["googleRecaptchaSecretKey"] . '&response=' $token);
  460.             $responseData json_decode($verifyResponse);
  461.             if (!$responseData->success || $responseData->score 0.5) {
  462.                 $response = new Response();
  463.                 $response->setStatusCode(401);
  464.                 return $response;
  465.             }
  466.             $email $request->get("email");
  467.             $pimcoreUsername = empty($email) ? "website" $email;
  468.             $pimcoreId 0;
  469.         }else{
  470.             $pimcoreUser Authentication::authenticateSession();
  471.             if(empty($pimcoreUser)){
  472.                 $email $request->get("email");
  473.                 if(empty($email)){
  474.                     $response = new Response();
  475.                     $response->setStatusCode(401);
  476.                     return $response;
  477.                 }else{
  478.                     $pimcoreUsername $email;
  479.                     $pimcoreId 0;
  480.                 }
  481.             }else{
  482.                 $pimcoreUsername $pimcoreUser->getUsername();
  483.                 $pimcoreId $pimcoreUser->getId();
  484.             }
  485.         }
  486.         // crezione folder utente se non esiste
  487.         $parentBuca "/Buca/";
  488.         $parentPath $parentBuca $pimcoreUsername;
  489.         $parentAsset \Pimcore\Model\Asset::getByPath($parentPath);
  490.         if(!$parentAsset){
  491.             $parent \Pimcore\Model\Asset::getByPath($parentBuca);
  492.             $parentAsset $this->createFolder($pimcoreUsername$parent->getId(), 'asset');
  493.         }
  494.         $parentObject \Pimcore\Model\DataObject::getByPath($parentPath);
  495.         if(!$parentObject){
  496.             $parent \Pimcore\Model\DataObject::getByPath($parentBuca);
  497.             $parentObject $this->createFolder($pimcoreUsername$parent->getId());
  498.         }
  499.         // creazione oggetto e media
  500.         $separatore "$";
  501.         $classe "\Pimcore\Model\DataObject\\" $request->get("class");
  502.         $fields json_decode($request->get("fields"), TRUE);
  503.         $obj = new $classe();
  504.         $obj->setParentId($parentObject->getId());
  505.         foreach ($fields as $key => $typeField) {
  506.             $fieldDefiniton $obj->getClass()->getFieldDefinition($key);
  507.             $type $fieldDefiniton $fieldDefiniton->getFieldtype() : "localizedfield";
  508.             $type strpos($key$separatore) !== FALSE "block" $type;
  509.             if(in_array($typeField,["file","image"])){
  510.                 $files $request->files->get($key);
  511.                 $metadati $request->get($key "Metadati");
  512.                 if(!empty($files)){
  513.                     $isMultiple is_array($files);
  514.                     $files $isMultiple $files : [$files];
  515.                     if(!empty($metadati)){
  516.                         $metadati $isMultiple $metadati : [$metadati];
  517.                     }
  518.                     $values = [];
  519.                     if($typeField === "image"){
  520.                         foreach ($files as $index => $file) {
  521.                             $advancedImage = new \Pimcore\Model\DataObject\Data\Hotspotimage();
  522.                             $metadatis = !empty($metadati) && !empty($metadati[$index]) ? json_decode($metadati[$index], TRUE) : [];
  523.                             $advancedImage->setImage($this->createAsset($parentAsset$file"image"$metadatis));
  524.                             $values[] = $advancedImage;
  525.                         }
  526.                         $values = new \Pimcore\Model\DataObject\Data\ImageGallery($values);
  527.                     }else{
  528.                         foreach ($files as $index => $file) {
  529.                             $values[] = $this->createAsset($parentAsset$file);
  530.                         }
  531.                     }
  532.                     $obj->{"set" ucfirst($key)}($isMultiple $values $values[0]);
  533.                 }
  534.             }else {
  535.                 $val $request->get($key);
  536.                 if(!empty($val)){
  537.                     switch($typeField){
  538.                         case "link":
  539.                             $link = new \Pimcore\Model\DataObject\Data\Link();
  540.                             $link->setText("Link");
  541.                             $link->setPath($val);
  542.                             $val $link;
  543.                             break;
  544.                         case 'date':
  545.                             $val \Carbon\Carbon::createFromFormat('Y-m-d'$val);
  546.                             break;
  547.                     }
  548.                     switch($type){
  549.                         case "video":
  550.                             $video = new \Pimcore\Model\DataObject\Data\Video();
  551.                             $video->setType("youtube");
  552.                             $video->setData($val);
  553.                             $result preg_match("/(?<=v=)[a-zA-Z0-9-]+(?=&)|(?<=v\/)[^&]+(?=\?)|(?<=v=)[^&]+|(?<=youtu.be\/)[^&]+/"$val$matches);
  554.                             if($result){
  555.                                 $video->setType("youtube");
  556.                                 $video->setData($matches[0]);
  557.                             }
  558.                             $result preg_match("/(?<=vimeo.com\/)[^&]+/"$val$matches);
  559.                             if($result){
  560.                                 $video->setType("vimeo");
  561.                                 $video->setData($matches[0]);
  562.                             }
  563.                             $obj->{"set" ucfirst($key)}($video);
  564.                             break;
  565.                         case "block":
  566.                             list ($keyContainer$keyMeta) = explode($separatore$key);
  567.                             $metadata = [];
  568.                             $metadata[$keyMeta] = new \Pimcore\Model\DataObject\Data\BlockElement($keyMeta$typeField$val);
  569.                             $obj->{"set" ucfirst($keyContainer)}([$metadata]);
  570.                             break;
  571.                         case "localizedfield":
  572.                             $obj->{"set" ucfirst($key)}($val'it');
  573.                             break;
  574.                         case "multiselect":
  575.                             $obj->{"set" ucfirst($key)}([$val]);
  576.                             break;
  577.                         default:
  578.                             $obj->{"set" ucfirst($key)}($val);
  579.                             break;
  580.                     }
  581.                     if($key === 'dcTitle'){
  582.                         $obj->setKey(\Pimcore\Model\Element\Service::getValidKey($val'object'));
  583.                     }
  584.                 }
  585.             }
  586.         }
  587.         $obj->setUserOwner($pimcoreId);
  588.         $obj->setUserModification($pimcoreId);
  589.         $obj->save();
  590.         $tags $request->get("tags");
  591.         if(!empty($tags)){
  592.             \Pimcore\Model\Element\Tag::setTagsForElement('object'$obj->getId(), array_map(function($id){
  593.                 return \Pimcore\Model\Element\Tag::getById($id);
  594.             }, $tags));
  595.         }
  596.         return $this->json(["status" =>  true ]);
  597.     }
  598.     /**
  599.      * @Route("/promemoria/api/bucaSelect", methods={"POST"})
  600.      * @param Request $request
  601.      *
  602.      * @return JsonResponse
  603.      */
  604.     public function bucaSelect(Request $request)
  605.     {
  606.         $pimcoreUser Authentication::authenticateSession();
  607.         if(empty($pimcoreUser)){
  608.             $response = new Response();
  609.             $response->setStatusCode(401);
  610.             return $response;
  611.         }
  612.         $data json_decode($request->getContent());
  613.         $classe "\Pimcore\Model\DataObject\\" $data->class;
  614.         $obj = new $classe();
  615.         $fieldDefiniton $obj->getClass()->getFieldDefinition($data->field);
  616.         return $this->json($fieldDefiniton->getOptions());
  617.     }
  618.      /**
  619.      * @Route("/promemoria/api/bucaTags", methods={"POST"})
  620.      * @param Request $request
  621.      *
  622.      * @return JsonResponse
  623.      */
  624.     public function bucaTags(Request $request)
  625.     {
  626.         $pimcoreUser Authentication::authenticateSession();
  627.         if(empty($pimcoreUser)){
  628.             $response = new Response();
  629.             $response->setStatusCode(401);
  630.             return $response;
  631.         }
  632.         $data json_decode($request->getContent());
  633.         $tagList = new \Pimcore\Model\Element\Tag\Listing();
  634.         $tagList->setCondition("parentId = ?"$data->parentId);
  635.         $tagList->setOrderKey("id");
  636.         $tags = [];
  637.         foreach ($tagList->load() as $tag) {
  638.             $tags[] = [
  639.                 "id" => $tag->getId(),
  640.                 "label" => $tag->getName()
  641.             ];
  642.         }
  643.         return $this->json($tags);
  644.     }
  645.     /**
  646.      * @Route("/promemoria/api/check-email", methods={"POST"}))
  647.      * @param Request $request
  648.      *
  649.      * @return JsonResponse
  650.      */
  651.     public function checkEmail(Request $request)
  652.     {
  653.         $response = new Response();
  654.         $response->setStatusCode(400);
  655.         $data json_decode($request->getContent());
  656.         if(empty($data->email)){
  657.             return $response;
  658.         }
  659.         $user false;
  660.         $entries = new \Pimcore\Model\User\Listing();
  661.         $entries->setLimit(1);
  662.         $entries->setCondition("email LIKE ?", [$data->email]);
  663.         foreach ($entries as $entry) {
  664.             $user $entry;
  665.             return $this->json([
  666.                 'status' => true
  667.             ]);
  668.         }
  669.         return $response;
  670.     }
  671.     /**
  672.      * @Route("/promemoria/api/change-reset-password", methods={"POST"}))
  673.      * @param Request $request
  674.      *
  675.      * @return JsonResponse
  676.      */
  677.     public function changeResetPassword(Request $request)
  678.     {
  679.         $response = new Response();
  680.         $response->setStatusCode(400);
  681.         $data json_decode($request->getContent());
  682.         if(empty($data->email) || empty($data->password)){
  683.             return $response;
  684.         }
  685.         $entries = new \Pimcore\Model\User\Listing();
  686.         $entries->setLimit(1);
  687.         $entries->setCondition("email LIKE ?", [$data->email]);
  688.         foreach ($entries as $entry) {
  689.             $user $entry;
  690.             $user->setPassword(Authentication::getPasswordHash($user->getUsername(), $data->password));
  691.             $user->save();
  692.             return $this->json([
  693.                 'status' => true
  694.             ]);
  695.         }
  696.         return $response;
  697.     }
  698.     /* PRIVATE */
  699.     private function clearExpiredShortUrls()
  700.     {
  701.         $db \Pimcore\Db::get();
  702.         $db->deleteWhere('promemoria_shorturl''insertDate < NOW() - INTERVAL 1 WEEK');
  703.     }
  704.     private function createFolder($name$parent$type 'object'){
  705.         $folder $type === 'object' ? new \Pimcore\Model\DataObject\Folder() : new \Pimcore\Model\Asset\Folder();
  706.         $folder->setParentId($parent);
  707.         $type === 'object'  $folder->setKey($name) : $folder->setFilename($name);
  708.         $folder->save();
  709.         return $folder;
  710.     }
  711.     private function createAsset($parentAsset$file$type=""$metadati = []){
  712.         $newAsset $type ? new \Pimcore\Model\Asset\Image() : new \Pimcore\Model\Asset();
  713.         $newAsset->setFilename($this->checkFileAndRename($parentAsset->getFullPath(), $file->getClientOriginalName()));
  714.         $newAsset->setData(file_get_contents($file->getPathname()));
  715.         $newAsset->setParent($parentAsset);
  716.         if(!empty($metadati)){
  717.             foreach ($metadati as $key => $value) {
  718.                 $newAsset->addMetadata($key"input"$value);
  719.             }
  720.         }
  721.         $newAsset->save();
  722.         return $newAsset;
  723.     }
  724.     private function checkFileAndRename($parentPath$filename){
  725.         $path_parts pathinfo($filename);
  726.         $i 1;
  727.         while(\Pimcore\Model\Asset::getByPath($parentPath "/" $filename)){
  728.             $filename $path_parts['filename'] . "_$i." $path_parts['extension'];
  729.             $i++;
  730.         }
  731.         return $filename;
  732.     }
  733.     private function getThumb($image$type$original=false){
  734.         $thumb $this->getThumbnail($image"watermarked_" $type);
  735.         if(!$thumb || empty($thumb->getConfig())) {
  736.             $thumb $this->getThumbnail($image$type);
  737.         }
  738.         if(!$thumb || empty($thumb->getConfig())){
  739.             if($original) return $image;
  740.             $thumb $this->getThumbnail($imageAsset\Image\Thumbnail\Config::getPreviewConfig());
  741.         }
  742.         return $thumb;
  743.     }
  744.     private function getThumbnail($image$type){
  745.         try{
  746.             return $image->getThumbnail($type);
  747.         }catch(\Exception $err){
  748.             return null;
  749.         }
  750.     }
  751.     private function addThumbnailCacheHeaders(Response $response)
  752.     {
  753.        $lifetime 300;
  754.         $date = new \DateTime('now');
  755.         $date->add(new \DateInterval('PT' $lifetime 'S'));
  756.         $response->setMaxAge($lifetime);
  757.         $response->setPublic();
  758.         $response->setExpires($date);
  759.         $response->headers->set('Access-Control-Allow-Origin''*');
  760.     }
  761.     private function checkHash($id){
  762.         list($id$hash) = explode("-"$id);
  763.         return $hash === substr(md5($id md5(getenv("dotenv_suffix"))), 08);
  764.     }
  765. }