T.ME/BIBIL_0DAY
CasperSecurity


Server : Apache/2
System : Linux server-15-235-50-60 5.15.0-164-generic #174-Ubuntu SMP Fri Nov 14 20:25:16 UTC 2025 x86_64
User : gositeme ( 1004)
PHP Version : 8.2.29
Disable Function : exec,system,passthru,shell_exec,proc_close,proc_open,dl,popen,show_source,posix_kill,posix_mkfifo,posix_getpwuid,posix_setpgid,posix_setsid,posix_setuid,posix_setgid,posix_seteuid,posix_setegid,posix_uname
Directory :  /home/gositeme/.cursor-server/data/User/History/-2d7d74d2/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Current File : /home/gositeme/.cursor-server/data/User/History/-2d7d74d2/gkU9.php
<?php
header('Content-Type: application/json');
require_once '../config/database.php';

// Start session to get current user context
session_start();

try {
    $pdo = getDBConnection();
    
    // Check if we're in a personal library context
    $is_personal_library = isset($_GET['personal']) && $_GET['personal'] === 'true';
    $current_user_id = $_SESSION['user_id'] ?? null;
    
    if ($is_personal_library && $current_user_id) {
        // For personal library, show only user's own tracks
        $stmt = $pdo->prepare("
            SELECT 
                mt.id,
                mt.title,
                mt.prompt,
                mt.audio_url,
                mt.created_at,
                u.name as artist_name,
                u.id as user_id
            FROM music_tracks mt
            LEFT JOIN users u ON mt.user_id = u.id
            WHERE mt.user_id = ?
            AND mt.status = 'complete' 
            AND mt.audio_url IS NOT NULL 
            AND mt.audio_url != ''
            AND mt.audio_url LIKE '%apiboxfiles.erweima.ai%'
            ORDER BY mt.created_at DESC
            LIMIT 50
        ");
        
        $stmt->execute([$current_user_id]);
        $tracks = $stmt->fetchAll(PDO::FETCH_ASSOC);
        
        // Apply title fallback logic for empty titles
        foreach ($tracks as &$track) {
            if (empty($track['title'])) {
                // Get the prompt for this track
                $prompt_stmt = $pdo->prepare("SELECT prompt FROM music_tracks WHERE id = ?");
                $prompt_stmt->execute([$track['id']]);
                $prompt = $prompt_stmt->fetchColumn();
                
                if (!empty($prompt)) {
                    $track['title'] = substr($prompt, 0, 50);
                    if (strlen($prompt) > 50) {
                        $track['title'] .= '...';
                    }
                } else {
                    $track['title'] = 'Untitled Track';
                }
            }
        }
        
        echo json_encode([
            'success' => true,
            'tracks' => $tracks,
            'context' => 'personal_library',
            'user_id' => $current_user_id
        ]);
        
    } else {
        // For community context, show all tracks (original behavior)
        $stmt = $pdo->prepare("
            SELECT 
                mt.id,
                mt.title,
                mt.prompt,
                mt.audio_url,  -- This is the CDN URL from Box API
                mt.created_at,
                u.name as artist_name,
                u.id as user_id
            FROM music_tracks mt
            LEFT JOIN users u ON mt.user_id = u.id
            WHERE mt.status = 'complete' 
            AND mt.audio_url IS NOT NULL 
            AND mt.audio_url != ''
            AND mt.audio_url LIKE '%apiboxfiles.erweima.ai%'  -- Only CDN tracks
            ORDER BY mt.created_at DESC
            LIMIT 50
        ");
        
        $stmt->execute();
        $tracks = $stmt->fetchAll(PDO::FETCH_ASSOC);
        
        // Apply title fallback logic for empty titles
        foreach ($tracks as &$track) {
            if (empty($track['title'])) {
                // Get the prompt for this track
                $prompt_stmt = $pdo->prepare("SELECT prompt FROM music_tracks WHERE id = ?");
                $prompt_stmt->execute([$track['id']]);
                $prompt = $prompt_stmt->fetchColumn();
                
                if (!empty($prompt)) {
                    $track['title'] = substr($prompt, 0, 50);
                    if (strlen($prompt) > 50) {
                        $track['title'] .= '...';
                    }
                } else {
                    $track['title'] = 'Untitled Track';
                }
            }
        }
        
        echo json_encode([
            'success' => true,
            'tracks' => $tracks,
            'context' => 'community'
        ]);
    }
    
} catch (Exception $e) {
    echo json_encode([
        'success' => false,
        'error' => 'Failed to load community tracks'
    ]);
}
?> 

CasperSecurity Mini