summaryrefslogtreecommitdiff
path: root/lib/web/imageRouter/index.js
blob: f456fd30791d9c80192a5b95b4bc0ef7ddb9cca6 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
'use strict'

const Router = require('express').Router
const formidable = require('formidable')

const config = require('../../config')
const logger = require('../../logger')
const errors = require('../../errors')

const imageRouter = module.exports = Router()

// upload image
imageRouter.post('/uploadimage', function (req, res) {
  var form = new formidable.IncomingForm()

  form.keepExtensions = true

  if (config.imageUploadType === 'filesystem') {
    form.uploadDir = config.uploadsPath
  }

  form.parse(req, function (err, fields, files) {
    if (err) {
      logger.error(`formidable error: ${err}`)
      return errors.errorForbidden(res)
  } else if (!req.isAuthenticated() && !config.allowAnonymous && !config.allowAnonymousEdits) {
      logger.error(`formidable error: Anonymous edits and therefore uploads are not allowed)`)
      return errors.errorForbidden(res)
    } else if (!files.image || !files.image.path) {
      logger.error(`formidable error: Upload didn't contain file)`)
      return errors.errorBadRequest(res)
    } else if (!config.allowedUploadMimeTypes.includes(files.image.type)) {
      logger.error(`formidable error: MIME-type "${files.image.type}" of uploaded file not allowed, only "${config.allowedUploadMimeTypes.join(', ')}" are allowed)`)
      return errors.errorBadRequest(res)
    } else {
      logger.debug(`SERVER received uploadimage: ${JSON.stringify(files.image)}`)

      const uploadProvider = require('./' + config.imageUploadType)
      logger.debug(`imageRouter: Uploading ${files.image.path} using ${config.imageUploadType}`)
      uploadProvider.uploadImage(files.image.path, function (err, url) {
        if (err !== null) {
          logger.error(err)
          return res.status(500).end('upload image error')
        }
        logger.debug(`SERVER sending ${url} to client`)
        res.send({
          link: url
        })
      })
    }
  })
})