{ $sql = "SELECT * FROM `comments` WHERE comment_news_id = ".$id_newsa.""; if ( $ile_wynikow > 0 ) { { $author_nick = $row['comment_from_userid'] == 0 ? '<b>' . $row['guest_nick'] . '</b>' : '<a href="loginek.php?admin=viewprofile&id=' . $row['comment_from_userid'] . '"><b>' . get_username($row['comment_from_userid']) . '</b></a>'; $tabela_comments .= '<table border="1"><tr><td>Autor: ' . $author_nick . '</td></tr><tr><td>Data dodania: ' . $czasik . '</td></tr><tr><td>Tresc komenatrza:<br>' . $message . '</td></tr></table>'; } } else { $tabela_comments = '<table border="1"><tr><td>BRAK KOMENTARZY</td></tr></table>'; } $session_type = $_SESSION['admin'] == NULL ? '<input type="post" name="guest_nick" maxlength="25">' : '<input type="post" readonly="readonly" value="' . $userdata['nick'] . '" maxlength="25">'; $tabela_add_comment = '<form action="loginek.php?read_news=' . $row['id'] . '" method="post"><table border="1"><tr><td>Autor: ' . $session_type . '</td></tr><tr><td>Komentarz:<br><textarea name="comment_message" rows="5" cols="30" tabindex="3" class="post"></textarea></td></tr><tr><td><input type="submit" name="submit" value="Wyslij"></table></form>'; $sql = "SELECT * FROM `news` WHERE id = ".$newsa_id.""; if ( $ile > 0 ) { $tresc = prep_message($row['news_text']); $title = $row['news_subject']; $newsman_name = get_username($row['newsman_id']); $edytowany = $row['edit_newsman_id'] > 0 && $userdata['user_newsman'] == 1 ? $edytowany = '<br><br>-------------------<br>News byl ostatnio edytowany przez <a href="loginek.php?admin=viewprofile&id=' . $row['edit_newsman_id'] . '">' . get_username($row['edit_newsman_id']) . '</a>, dnia ' . date('d.m.Y, H:i', $row['edit_time_news']) . '<br>-------------------' : $edytowany = ''; $body = '<table border="1"><tr><td>Dodane przez: ' . $newsman_name . '</td></tr><tr><td>Data dodania: ' . $czas . '</td></tr><tr><td>Tytul newsa: ' . $title . '</td></tr><tr><td>Tresc newsa:<br>' . $tresc . $edytowany . '</td></tr></table><br>' . $tabela_comments . $tabela_add_comment . ''; exit; } else { exit; } } { if ( $_SESSION['admin'] !== NULL ) { { $sql = "INSERT INTO `comments` (`comment_from_userid`, `comment_text`, `guest_nick`, `comment_date`, `comment_news_id`) VALUES (".$userdata['id'].", '".$comment_text."', 0, '".$teraz."', ".$newsik_id.")"; exit; } else { exit; } } else { { $sql = "INSERT INTO `comments` (`comment_from_userid`, `comment_text`, `guest_nick`, `comment_date`, `comment_news_id`) VALUES (0, '".$comment_text."', '".htmlspecialchars($_POST['guest_nick'])."', '".$teraz."', ".$newsik_id.")"; exit; } else { exit; } } }
Co jest nie tak?