T.ME/BIBIL_0DAY
CasperSecurity


Server : Apache/2
System : Linux server-15-235-50-60 5.15.0-164-generic #174-Ubuntu SMP Fri Nov 14 20:25:16 UTC 2025 x86_64
User : gositeme ( 1004)
PHP Version : 8.2.29
Disable Function : exec,system,passthru,shell_exec,proc_close,proc_open,dl,popen,show_source,posix_kill,posix_mkfifo,posix_getpwuid,posix_setpgid,posix_setsid,posix_setuid,posix_setgid,posix_seteuid,posix_setegid,posix_uname
Directory :  /home/gositeme/domains/lavocat.ca/private_html/.next/server/pages/api/users/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Current File : /home/gositeme/domains/lavocat.ca/private_html/.next/server/pages/api/users/[id].js
"use strict";(()=>{var e={};e.id=7685,e.ids=[7685],e.modules={8667:(e,i)=>{Object.defineProperty(i,"A",{enumerable:!0,get:function(){return r}});var r=function(e){return e.PAGES="PAGES",e.PAGES_API="PAGES_API",e.APP_PAGE="APP_PAGE",e.APP_ROUTE="APP_ROUTE",e.IMAGE="IMAGE",e}({})},15806:e=>{e.exports=require("next-auth/next")},16382:e=>{e.exports=require("next-auth/providers/credentials")},33480:(e,i,r)=>{e.exports=r(75600)},41822:(e,i,r)=>{r.d(i,{N:()=>l});var o=r(16382),s=r.n(o),a=r(74729),n=r(76760);let l={providers:[s()({name:"Credentials",credentials:{email:{label:"Email",type:"email"},password:{label:"Password",type:"password"}},async authorize(e){if(!e?.email||!e?.password)return null;try{let i=await n.z.user.findUnique({where:{email:e.email},select:{id:!0,email:!0,password:!0,role:!0,name:!0,isVerified:!0,verificationStatus:!0}});if(!i||!await (0,a.compare)(e.password,i.password))return null;let{password:r,...o}=i;return{...o,name:o.name||o.email}}catch(e){return console.error("Auth error:",e),null}}})],session:{strategy:"jwt",maxAge:2592e3},cookies:{sessionToken:{name:"__Secure-next-auth.session-token",options:{httpOnly:!0,sameSite:"lax",path:"/",secure:!0,domain:process.env.COOKIE_DOMAIN}}},pages:{signIn:"/auth/login",signOut:"/auth/login",error:"/auth/error"},callbacks:{async jwt({token:e,user:i,trigger:r}){try{if(console.log("JWT Callback - trigger:",r),console.log("JWT Callback - user:",i?{id:i.id,email:i.email,role:i.role}:null),i)e.id=i.id,e.role=i.role,e.email=i.email,e.name=i.name||i.email,e.profilePicture=i.profilePicture||void 0,e.username=i.username||void 0,e.isVerified=i.isVerified||!1,e.verificationStatus=i.verificationStatus||"PENDING",e.isImpersonating=i.isImpersonating||!1,e.originalUser=i.originalUser||void 0,console.log("JWT Callback - Updated token from user:",{id:e.id,role:e.role,isImpersonating:e.isImpersonating});else if(e.id)try{console.log("JWT Callback - Checking for impersonation sessions...");let i=await n.z.impersonationSession.findFirst({where:{originalUserId:e.id,isActive:!0,expiresAt:{gt:new Date}},include:{impersonatedUser:{select:{id:!0,email:!0,name:!0,role:!0,profilePicture:!0,username:!0}},originalUser:{select:{id:!0,email:!0,name:!0,role:!0,profilePicture:!0,username:!0}}}});if(i){let r=i.impersonatedUser;e.id=r.id,e.email=r.email,e.name=r.name||r.email,e.role=r.role,e.profilePicture=r.profilePicture||void 0,e.username=r.username||void 0,e.isImpersonating=!0,e.originalUser={id:i.originalUser.id,email:i.originalUser.email,name:i.originalUser.name||i.originalUser.email,role:i.originalUser.role,profilePicture:i.originalUser.profilePicture||void 0,username:i.originalUser.username||void 0},console.log("JWT Callback - Applied impersonation:",{originalId:e.originalUser.id,impersonatedId:e.id,originalRole:e.originalUser.role,impersonatedRole:e.role})}else e.isImpersonating&&(e.originalUser&&(console.log("JWT Callback - Restoring original user from token"),e.id=e.originalUser.id,e.email=e.originalUser.email,e.name=e.originalUser.name||e.originalUser.email,e.role=e.originalUser.role,e.profilePicture=e.originalUser.profilePicture||void 0,e.username=e.originalUser.username||void 0),e.isImpersonating=!1,e.originalUser=void 0,console.log("JWT Callback - Cleared impersonation state"))}catch(i){console.error("JWT Callback - Database error:",i),e.isImpersonating&&e.originalUser&&(console.log("JWT Callback - Error occurred, restoring original user"),e.id=e.originalUser.id,e.email=e.originalUser.email,e.name=e.originalUser.name||e.originalUser.email,e.role=e.originalUser.role,e.profilePicture=e.originalUser.profilePicture||void 0,e.username=e.originalUser.username||void 0,e.isImpersonating=!1,e.originalUser=void 0)}return console.log("JWT Callback - Final token:",{id:e.id,email:e.email,role:e.role,isImpersonating:e.isImpersonating}),e}catch(i){return console.error("JWT Callback - Error:",i),e}},async session({session:e,token:i}){try{return console.log("Session Callback - token:",{id:i.id,email:i.email,role:i.role,isImpersonating:i.isImpersonating}),console.log("Session Callback - session before:",e),i&&e.user&&(e.user.id=i.id,e.user.role=i.role,e.user.email=i.email,e.user.name=i.name,e.user.profilePicture=i.profilePicture,e.user.username=i.username,e.user.isVerified=i.isVerified,e.user.verificationStatus=i.verificationStatus,e.user.isImpersonating=i.isImpersonating,e.user.originalUser=i.originalUser),console.log("Session Callback - session after:",e),console.log("Session Callback - Final user ID:",e.user?.id),e}catch(i){return console.error("Session Callback - Error:",i),e}},redirect:async({url:e,baseUrl:i})=>e===i||e===`${i}/`||e.endsWith("/auth/login")?i:e.startsWith("/")?`${i}${e}`:e.startsWith(i)?e:i},secret:process.env.NEXTAUTH_SECRET||"3560f921b7bbf968e64fbc2835960840d184fcb95977e960a2124de6bbbed2d3",debug:!1}},67133:(e,i,r)=>{r.r(i),r.d(i,{config:()=>m,default:()=>c,routeModule:()=>g});var o={};r.r(o),r.d(o,{default:()=>d});var s=r(33480),a=r(8667),n=r(86435),l=r(15806),t=r(41822),u=r(76760);async function d(e,i){if("GET"!==e.method&&"PATCH"!==e.method)return i.status(405).json({message:"Method not allowed"});try{let r=await (0,l.getServerSession)(e,i,t.N),{id:o}=e.query;if(console.log("API /api/users/[id] called with id:",o),!o||"string"!=typeof o)return i.status(400).json({message:"User ID is required"});if("PATCH"===e.method){if(!r?.user?.id||r.user.id!==o)return i.status(403).json({message:"Not authorized to update this user"});let{showFriends:s,showEmail:a,showPhone:n,showLocation:l,allowMessages:t,showOnlineStatus:d}=e.body,c=await u.z.user.update({where:{id:o},data:{showFriends:void 0!==s?s:void 0,showEmail:void 0!==a?a:void 0,showPhone:void 0!==n?n:void 0,showLocation:void 0!==l?l:void 0,allowMessages:void 0!==t?t:void 0,showOnlineStatus:void 0!==d?d:void 0},select:{showFriends:!0,showEmail:!0,showPhone:!0,showLocation:!0,allowMessages:!0,showOnlineStatus:!0}});return i.status(200).json(c)}let s=await u.z.user.findUnique({where:{id:o},select:{id:!0,name:!0,email:!0,username:!0,role:!0,profilePicture:!0,bio:!0,officeLocation:!0,isVerified:!0,experience:!0,specializations:!0,hourlyRate:!0,averageRating:!0,totalCases:!0,wonCases:!0,proBono:!0,createdAt:!0,updatedAt:!0,xpPoints:!0,level:!0,showFriends:!0,showEmail:!0,showPhone:!0,showLocation:!0,allowMessages:!0,showOnlineStatus:!0}});if(!s)return i.status(404).json({message:"User not found"});let a=await u.z.friendship.count({where:{userId:o,status:"accepted"}}),n={id:s.id,name:s.name,email:s.email,username:s.username,role:s.role,profilePicture:s.profilePicture,bio:s.bio,location:s.officeLocation||null,isVerified:s.isVerified,isOnline:!1,experience:s.experience,languages:[],specializations:s.specializations?s.specializations.split(",").map(e=>e.trim()):[],hourlyRate:s.hourlyRate,averageRating:s.averageRating,totalCases:s.totalCases,wonCases:s.wonCases,proBono:s.proBono,createdAt:s.createdAt.toISOString(),updatedAt:s.updatedAt.toISOString(),followers:a,following:a,endorsements:0,mutualConnections:a,profileViews:0,xpPoints:s.xpPoints||0,level:s.level||1,showFriends:s.showFriends,showEmail:s.showEmail,showPhone:s.showPhone,showLocation:s.showLocation,allowMessages:s.allowMessages,showOnlineStatus:s.showOnlineStatus};return i.status(200).json({user:n})}catch(e){return console.error("Error fetching user data:",e),i.status(500).json({message:"Internal server error"})}}let c=(0,n.M)(o,"default"),m=(0,n.M)(o,"config"),g=new s.PagesAPIRouteModule({definition:{kind:a.A.PAGES_API,page:"/api/users/[id]",pathname:"/api/users/[id]",bundlePath:"",filename:""},userland:o})},74729:e=>{e.exports=require("bcryptjs")},75600:e=>{e.exports=require("next/dist/compiled/next-server/pages-api.runtime.prod.js")},76760:(e,i,r)=>{r.d(i,{z:()=>s});var o=r(96330);let s=globalThis.prisma??new o.PrismaClient({log:["error"]})},86435:(e,i)=>{Object.defineProperty(i,"M",{enumerable:!0,get:function(){return function e(i,r){return r in i?i[r]:"then"in i&&"function"==typeof i.then?i.then(i=>e(i,r)):"function"==typeof i&&"default"===r?i:void 0}}})},96330:e=>{e.exports=require("@prisma/client")}};var i=require("../../../webpack-api-runtime.js");i.C(e);var r=i(i.s=67133);module.exports=r})();

CasperSecurity Mini