T.ME/BIBIL_0DAY
CasperSecurity


Server : Apache/2
System : Linux server-15-235-50-60 5.15.0-164-generic #174-Ubuntu SMP Fri Nov 14 20:25:16 UTC 2025 x86_64
User : gositeme ( 1004)
PHP Version : 8.2.29
Disable Function : exec,system,passthru,shell_exec,proc_close,proc_open,dl,popen,show_source,posix_kill,posix_mkfifo,posix_getpwuid,posix_setpgid,posix_setsid,posix_setuid,posix_setgid,posix_seteuid,posix_setegid,posix_uname
Directory :  /home/gositeme/domains/soundstudiopro.com/public_html/api/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Current File : /home/gositeme/domains/soundstudiopro.com/public_html/api/get_comments.php
<?php
require_once '../config/database.php';
session_start();

header('Content-Type: application/json');

// Only allow GET requests
if ($_SERVER['REQUEST_METHOD'] !== 'GET') {
    http_response_code(405);
    echo json_encode(['success' => false, 'error' => 'Method not allowed']);
    exit;
}

$track_id = $_GET['track_id'] ?? null;

if (!$track_id) {
    http_response_code(400);
    echo json_encode(['success' => false, 'error' => 'Track ID is required']);
    exit;
}

try {
    $pdo = getDBConnection();
    
    // Get comments with user names and IDs
    $stmt = $pdo->prepare("
        SELECT 
            tc.id,
            tc.comment,
            tc.created_at,
            u.name as author_name,
            u.id as author_id
        FROM track_comments tc
        JOIN users u ON tc.user_id = u.id
        WHERE tc.track_id = ?
        ORDER BY tc.created_at DESC
        LIMIT 50
    ");
    $stmt->execute([$track_id]);
    $comments = $stmt->fetchAll(PDO::FETCH_ASSOC);
    
    echo json_encode([
        'success' => true,
        'comments' => $comments
    ]);
    
} catch (Exception $e) {
    error_log("Error getting comments: " . $e->getMessage());
    http_response_code(500);
    echo json_encode(['success' => false, 'error' => 'Internal server error']);
}
?> 

CasperSecurity Mini