3 use BookStack\Entities\Page;
4 use BookStack\Entities\Repos\EntityRepo;
5 use BookStack\Entities\Repos\PageRepo;
7 class PageContentTest extends TestCase
10 public function test_page_includes()
12 $page = Page::first();
13 $secondPage = Page::where('id', '!=', $page->id)->first();
15 $secondPage->html = "<p id='section1'>Hello, This is a test</p><p id='section2'>This is a second block of content</p>";
20 $pageContent = $this->get($page->getUrl());
21 $pageContent->assertDontSee('Hello, This is a test');
23 $originalHtml = $page->html;
24 $page->html .= "{{@{$secondPage->id}}}";
27 $pageContent = $this->get($page->getUrl());
28 $pageContent->assertSee('Hello, This is a test');
29 $pageContent->assertSee('This is a second block of content');
31 $page->html = $originalHtml . " Well {{@{$secondPage->id}#section2}}";
34 $pageContent = $this->get($page->getUrl());
35 $pageContent->assertDontSee('Hello, This is a test');
36 $pageContent->assertSee('Well This is a second block of content');
39 public function test_saving_page_with_includes()
41 $page = Page::first();
42 $secondPage = Page::where('id', '!=', $page->id)->first();
45 $includeTag = '{{@' . $secondPage->id . '}}';
46 $page->html = '<p>' . $includeTag . '</p>';
48 $resp = $this->put($page->getUrl(), ['name' => $page->name, 'html' => $page->html, 'summary' => '']);
50 $resp->assertStatus(302);
52 $page = Page::find($page->id);
53 $this->assertContains($includeTag, $page->html);
54 $this->assertEquals('', $page->text);
57 public function test_page_includes_do_not_break_tables()
59 $page = Page::first();
60 $secondPage = Page::where('id', '!=', $page->id)->first();
62 $content = '<table id="table"><tbody><tr><td>test</td></tr></tbody></table>';
63 $secondPage->html = $content;
66 $page->html = "{{@{$secondPage->id}#table}}";
70 $pageResp = $this->get($page->getUrl());
71 $pageResp->assertSee($content);
74 public function test_page_revision_views_viewable()
78 $pageRepo = app(PageRepo::class);
79 $page = Page::first();
80 $pageRepo->updatePage($page, $page->book_id, ['name' => 'updated page', 'html' => '<p>new content</p>', 'summary' => 'page revision testing']);
81 $pageRevision = $page->revisions->last();
83 $revisionView = $this->get($page->getUrl() . '/revisions/' . $pageRevision->id);
84 $revisionView->assertStatus(200);
85 $revisionView->assertSee('new content');
87 $revisionView = $this->get($page->getUrl() . '/revisions/' . $pageRevision->id . '/changes');
88 $revisionView->assertStatus(200);
89 $revisionView->assertSee('new content');
92 public function test_page_revision_restore_updates_content()
96 $pageRepo = app(PageRepo::class);
97 $page = Page::first();
98 $pageRepo->updatePage($page, $page->book_id, ['name' => 'updated page abc123', 'html' => '<p>new contente def456</p>', 'summary' => 'initial page revision testing']);
99 $pageRepo->updatePage($page, $page->book_id, ['name' => 'updated page again', 'html' => '<p>new content</p>', 'summary' => 'page revision testing']);
100 $page = Page::find($page->id);
103 $pageView = $this->get($page->getUrl());
104 $pageView->assertDontSee('abc123');
105 $pageView->assertDontSee('def456');
107 $revToRestore = $page->revisions()->where('name', 'like', '%abc123')->first();
108 $restoreReq = $this->get($page->getUrl() . '/revisions/' . $revToRestore->id . '/restore');
109 $page = Page::find($page->id);
111 $restoreReq->assertStatus(302);
112 $restoreReq->assertRedirect($page->getUrl());
114 $pageView = $this->get($page->getUrl());
115 $pageView->assertSee('abc123');
116 $pageView->assertSee('def456');
119 public function test_page_content_scripts_escaped_by_default()
122 $page = Page::first();
123 $script = '<script>console.log("hello-test")</script>';
124 $page->html = "escape {$script}";
127 $pageView = $this->get($page->getUrl());
128 $pageView->assertDontSee($script);
129 $pageView->assertSee(htmlentities($script));
132 public function test_page_content_scripts_show_when_configured()
135 $page = Page::first();
136 config()->push('app.allow_content_scripts', 'true');
137 $script = '<script>console.log("hello-test")</script>';
138 $page->html = "no escape {$script}";
141 $pageView = $this->get($page->getUrl());
142 $pageView->assertSee($script);
143 $pageView->assertDontSee(htmlentities($script));