Update: 2026-08-03 12:30:24

This commit is contained in:
Hamza-Ayed
2026-08-03 12:30:25 +03:00
parent ec467b01c6
commit f36b30f0b8
14 changed files with 66 additions and 32 deletions
+1 -1
View File
@@ -1,5 +1,5 @@
<?php
require_once __DIR__ . '/../../../connect.php';
require_once __DIR__ . '/../../connect.php';
// 🔥 [Fix Broken Access Control] كان يتحقق من صلاحية التوكن فقط — أي مستخدم
// مسجّل دخول (راكب/سائق آخر) كان يقدر يجلب بيانات أي سائق مفكوكة التشفير
+1 -1
View File
@@ -1,5 +1,5 @@
<?php
require_once __DIR__ . '/../../../connect.php';
require_once __DIR__ . '/../../connect.php';
$phoneNumber = filterRequest("phone_number");
+1 -1
View File
@@ -7,7 +7,7 @@
*/
//register_driver_and_car.php
$allowRegistration = true;
require_once __DIR__ . '/../../../connect.php';
require_once __DIR__ . '/../../connect.php';
header('Content-Type: application/json; charset=utf-8');
// Rate Limiting: الحماية من التسجيل العشوائي وهجمات الـ Bots
+1 -1
View File
@@ -1,6 +1,6 @@
<?php
// File: send_otp.php (بديل عن النسخة المعتمدة على RaseelPlus)
require_once __DIR__ . '/../../connect.php';
require_once __DIR__ . '/../../../connect.php';
/* 1) توليد رمز التحقق (3 خانات) */
$otp = (string)random_int(100, 999);
+1 -1
View File
@@ -1,7 +1,7 @@
<?php
// File: verify_otp.php (with enhanced logging)
// siro_v1/auth/token_passenger
require_once __DIR__ . '/../../connect.php';
require_once __DIR__ . '/../../../connect.php';
// --- Start of Script Execution ---
error_log("--- [verify_otp.php] Script execution started. ---");
+7 -1
View File
@@ -1,4 +1,9 @@
<?php
// ‏نفس الاسم معرّف أيضاً في core/helpers.php بتوقيع مختلف. أي ملف يُحمِّل
// ‏bootstrap.php (ومنه helpers.php) ثم يصل إلى هنا كان ينهار بـ
// ‏"Cannot redeclare loadEnvironment()" — وهو ما أسقط blacklist_manager.php.
// ‏الحارس يُبقي أول تعريف محمَّل ويتجاهل الثاني، والسلوك متوافق بينهما.
if (!function_exists('loadEnvironment')) {
function loadEnvironment($env_file) {
if (!file_exists($env_file)) {
error_log("❌ .env not found: $env_file");
@@ -19,4 +24,5 @@ function loadEnvironment($env_file) {
}
return true;
}
}
}
+1 -1
View File
@@ -1,5 +1,5 @@
<?php
require_once __DIR__ . '/../connect.php';
require_once __DIR__ . '/../../connect.php';
// If Main Redis is not available, return empty array
if (!isset($redis) || $redis === null) {
+1 -1
View File
@@ -1,5 +1,5 @@
<?php
require_once __DIR__ . '/../connect.php';
require_once __DIR__ . '/../../connect.php';
$lat = filterRequest("lat");
$lng = filterRequest("lng");