From fab08bf6eac597077dcb5328ec43b734fcd43d64 Mon Sep 17 00:00:00 2001
From: 65160258 <65160258@go.buu.ac.th>
Date: Fri, 21 Mar 2025 18:27:08 +0700
Subject: [PATCH] confweb

---
 app.js                    |  21 ++++++
 db.js                     |   2 +-
 package-lock.json         | 149 ++++++++++++++++++++++++++++++++++++++
 package.json              |   1 +
 routes/posts.js           |  48 +++++++-----
 views/partials/header.ejs |  15 +++-
 views/posts/add.ejs       |   3 +-
 views/posts/index.ejs     |   7 +-
 8 files changed, 216 insertions(+), 30 deletions(-)

diff --git a/app.js b/app.js
index 281d4b0..4d170e5 100644
--- a/app.js
+++ b/app.js
@@ -67,6 +67,27 @@ app.get('/index', async (req, res) => {
   }
 });
 
+// ค้นหาบทความ (ค้นหาจาก title)
+app.get('/index/search', async (req, res) => {
+  if (!req.session.user) return res.redirect('/');
+  const { keyword } = req.query;
+  try {
+    const [posts] = await db.query(
+      `SELECT p.*, u.username, c.name AS category_name 
+       FROM posts p 
+       JOIN users u ON p.user_id = u.id 
+       JOIN categories c ON p.category_id = c.id
+       WHERE p.title LIKE ?
+       ORDER BY p.created_at DESC`,
+      [`%${keyword}%`]
+    );
+    res.render('pages/index', { posts, user: req.session.user, keyword });
+  } catch (error) {
+    console.error('Error searching posts:', error);
+    res.render('pages/index', { posts: [], user: req.session.user, keyword: '' });
+  }
+});
+
 
 // เริ่มต้นเซิร์ฟเวอร์
 const port = process.env.PORT || 3000;
diff --git a/db.js b/db.js
index b4b69c2..761aab0 100644
--- a/db.js
+++ b/db.js
@@ -8,7 +8,7 @@ const pool = mysql.createPool({
   port: process.env.DB_PORT || '3306',
   user: process.env.DB_USER || 'root',
   password: process.env.DB_PASS || '',
-  database: process.env.DB_NAME || 'posts_db',
+  database: process.env.DB_NAME || 'club_db',
 });
 
 // ตัวอย่างการใช้งาน async/await เพื่อเชื่อมต่อ
diff --git a/package-lock.json b/package-lock.json
index 672b67e..df11aae 100644
--- a/package-lock.json
+++ b/package-lock.json
@@ -19,6 +19,7 @@
         "express-rate-limit": "^7.5.0",
         "express-session": "^1.18.1",
         "express-validator": "^7.2.1",
+        "multer": "^1.4.5-lts.2",
         "mysql2": "^3.14.0",
         "nodemon": "^3.1.9",
         "openai": "^4.86.1"
@@ -178,6 +179,12 @@
         "node": ">= 8"
       }
     },
+    "node_modules/append-field": {
+      "version": "1.0.0",
+      "resolved": "https://registry.npmjs.org/append-field/-/append-field-1.0.0.tgz",
+      "integrity": "sha512-klpgFSWLW1ZEs8svjfb7g4qWY0YS5imI82dTg+QahUvJ8YqAY0P10Uk8tTyh9ZGuYEZEMaeJYCF5BFuX552hsw==",
+      "license": "MIT"
+    },
     "node_modules/aproba": {
       "version": "2.0.0",
       "resolved": "https://registry.npmjs.org/aproba/-/aproba-2.0.0.tgz",
@@ -314,6 +321,23 @@
         "node": ">=8"
       }
     },
+    "node_modules/buffer-from": {
+      "version": "1.1.2",
+      "resolved": "https://registry.npmjs.org/buffer-from/-/buffer-from-1.1.2.tgz",
+      "integrity": "sha512-E+XQCRwSbaaiChtv6k6Dwgc+bx+Bs6vuKJHHl5kox/BaKbhiXzqQOwK4cO22yElGp2OCmjwVhT3HmxgyPGnJfQ==",
+      "license": "MIT"
+    },
+    "node_modules/busboy": {
+      "version": "1.6.0",
+      "resolved": "https://registry.npmjs.org/busboy/-/busboy-1.6.0.tgz",
+      "integrity": "sha512-8SFQbg/0hQ9xy3UNTB0YEnsNBbWfhf7RtnzpL7TkBiTBRfrQ9Fxcnz7VJsleJpyp6rVLvXiuORqjlHi5q+PYuA==",
+      "dependencies": {
+        "streamsearch": "^1.1.0"
+      },
+      "engines": {
+        "node": ">=10.16.0"
+      }
+    },
     "node_modules/bytes": {
       "version": "3.1.2",
       "resolved": "https://registry.npmjs.org/bytes/-/bytes-3.1.2.tgz",
@@ -446,6 +470,51 @@
       "integrity": "sha512-/Srv4dswyQNBfohGpz9o6Yb3Gz3SrUDqBH5rTuhGR7ahtlbYKnVxw2bCFMRljaA7EXHaXZ8wsHdodFvbkhKmqg==",
       "license": "MIT"
     },
+    "node_modules/concat-stream": {
+      "version": "1.6.2",
+      "resolved": "https://registry.npmjs.org/concat-stream/-/concat-stream-1.6.2.tgz",
+      "integrity": "sha512-27HBghJxjiZtIk3Ycvn/4kbJk/1uZuJFfuPEns6LaEvpvG1f0hTea8lilrouyo9mVc2GWdcEZ8OLoGmSADlrCw==",
+      "engines": [
+        "node >= 0.8"
+      ],
+      "license": "MIT",
+      "dependencies": {
+        "buffer-from": "^1.0.0",
+        "inherits": "^2.0.3",
+        "readable-stream": "^2.2.2",
+        "typedarray": "^0.0.6"
+      }
+    },
+    "node_modules/concat-stream/node_modules/readable-stream": {
+      "version": "2.3.8",
+      "resolved": "https://registry.npmjs.org/readable-stream/-/readable-stream-2.3.8.tgz",
+      "integrity": "sha512-8p0AUk4XODgIewSi0l8Epjs+EVnWiK7NoDIEGU0HhE7+ZyY8D1IMY7odu5lRrFXGg71L15KG8QrPmum45RTtdA==",
+      "license": "MIT",
+      "dependencies": {
+        "core-util-is": "~1.0.0",
+        "inherits": "~2.0.3",
+        "isarray": "~1.0.0",
+        "process-nextick-args": "~2.0.0",
+        "safe-buffer": "~5.1.1",
+        "string_decoder": "~1.1.1",
+        "util-deprecate": "~1.0.1"
+      }
+    },
+    "node_modules/concat-stream/node_modules/safe-buffer": {
+      "version": "5.1.2",
+      "resolved": "https://registry.npmjs.org/safe-buffer/-/safe-buffer-5.1.2.tgz",
+      "integrity": "sha512-Gd2UZBJDkXlY7GbJxfsE8/nvKkUEU1G38c1siN6QP6a9PT9MmHB8GnpscSmMJSoF8LOIrt8ud/wPtojys4G6+g==",
+      "license": "MIT"
+    },
+    "node_modules/concat-stream/node_modules/string_decoder": {
+      "version": "1.1.1",
+      "resolved": "https://registry.npmjs.org/string_decoder/-/string_decoder-1.1.1.tgz",
+      "integrity": "sha512-n/ShnvDi6FHbbVfviro+WojiFzv+s8MPMHBczVePfUpDJLwoLT0ht1l4YwBCbi8pJAveEEdnkHyPyTP/mzRfwg==",
+      "license": "MIT",
+      "dependencies": {
+        "safe-buffer": "~5.1.0"
+      }
+    },
     "node_modules/console-control-strings": {
       "version": "1.1.0",
       "resolved": "https://registry.npmjs.org/console-control-strings/-/console-control-strings-1.1.0.tgz",
@@ -488,6 +557,12 @@
       "integrity": "sha512-QADzlaHc8icV8I7vbaJXJwod9HWYp8uCqf1xa4OfNu1T7JVxQIrUgOWtHdNDtPiywmFbiS12VjotIXLrKM3orQ==",
       "license": "MIT"
     },
+    "node_modules/core-util-is": {
+      "version": "1.0.3",
+      "resolved": "https://registry.npmjs.org/core-util-is/-/core-util-is-1.0.3.tgz",
+      "integrity": "sha512-ZQBvi1DcpJ4GDqanjucZ2Hj3wEO5pZDS89BWbkcrvdxksJorwUDDZamX9ldFkp9aw2lmBDLgkObEA4DWNJ9FYQ==",
+      "license": "MIT"
+    },
     "node_modules/cors": {
       "version": "2.8.5",
       "resolved": "https://registry.npmjs.org/cors/-/cors-2.8.5.tgz",
@@ -1314,6 +1389,12 @@
       "integrity": "sha512-Ks/IoX00TtClbGQr4TWXemAnktAQvYB7HzcCxDGqEZU6oCmb2INHuOoKxbtR+HFkmYWBKv/dOZtGRiAjDhj92g==",
       "license": "MIT"
     },
+    "node_modules/isarray": {
+      "version": "1.0.0",
+      "resolved": "https://registry.npmjs.org/isarray/-/isarray-1.0.0.tgz",
+      "integrity": "sha512-VLghIWNM6ELQzo7zwmcg0NmTVyWKYjvIeM83yjp0wRDTmUnrM678fQbcKBo6n2CJEF0szoG//ytg+TKla89ALQ==",
+      "license": "MIT"
+    },
     "node_modules/jake": {
       "version": "10.9.2",
       "resolved": "https://registry.npmjs.org/jake/-/jake-10.9.2.tgz",
@@ -1473,6 +1554,15 @@
         "node": "*"
       }
     },
+    "node_modules/minimist": {
+      "version": "1.2.8",
+      "resolved": "https://registry.npmjs.org/minimist/-/minimist-1.2.8.tgz",
+      "integrity": "sha512-2yyAR8qBkN3YuheJanUpWC5U3bb5osDywNB8RzDVlDwDHbocAJveqqj1u8+SVD7jkWT4yvsHCpWqqWqAxb0zCA==",
+      "license": "MIT",
+      "funding": {
+        "url": "https://github.com/sponsors/ljharb"
+      }
+    },
     "node_modules/minipass": {
       "version": "5.0.0",
       "resolved": "https://registry.npmjs.org/minipass/-/minipass-5.0.0.tgz",
@@ -1525,6 +1615,36 @@
       "integrity": "sha512-Tpp60P6IUJDTuOq/5Z8cdskzJujfwqfOTkrwIwj7IRISpnkJnT6SyJ4PCPnGMoFjC9ddhal5KVIYtAt97ix05A==",
       "license": "MIT"
     },
+    "node_modules/multer": {
+      "version": "1.4.5-lts.2",
+      "resolved": "https://registry.npmjs.org/multer/-/multer-1.4.5-lts.2.tgz",
+      "integrity": "sha512-VzGiVigcG9zUAoCNU+xShztrlr1auZOlurXynNvO9GiWD1/mTBbUljOKY+qMeazBqXgRnjzeEgJI/wyjJUHg9A==",
+      "license": "MIT",
+      "dependencies": {
+        "append-field": "^1.0.0",
+        "busboy": "^1.0.0",
+        "concat-stream": "^1.5.2",
+        "mkdirp": "^0.5.4",
+        "object-assign": "^4.1.1",
+        "type-is": "^1.6.4",
+        "xtend": "^4.0.0"
+      },
+      "engines": {
+        "node": ">= 6.0.0"
+      }
+    },
+    "node_modules/multer/node_modules/mkdirp": {
+      "version": "0.5.6",
+      "resolved": "https://registry.npmjs.org/mkdirp/-/mkdirp-0.5.6.tgz",
+      "integrity": "sha512-FP+p8RB8OWpF3YZBCrP5gtADmtXApB5AMLn+vdyA+PyxCjrCs00mjyUozssO33cwDeT3wNGdLxJ5M//YqtHAJw==",
+      "license": "MIT",
+      "dependencies": {
+        "minimist": "^1.2.6"
+      },
+      "bin": {
+        "mkdirp": "bin/cmd.js"
+      }
+    },
     "node_modules/mysql2": {
       "version": "3.14.0",
       "resolved": "https://registry.npmjs.org/mysql2/-/mysql2-3.14.0.tgz",
@@ -1849,6 +1969,12 @@
         "url": "https://github.com/sponsors/jonschlinkert"
       }
     },
+    "node_modules/process-nextick-args": {
+      "version": "2.0.1",
+      "resolved": "https://registry.npmjs.org/process-nextick-args/-/process-nextick-args-2.0.1.tgz",
+      "integrity": "sha512-3ouUOpQhtgrbOa17J7+uxOTpITYWaGP7/AhoR3+A+/1e9skrzelGi/dXzEYyvbxubEF6Wn2ypscTKiKJFFn1ag==",
+      "license": "MIT"
+    },
     "node_modules/proxy-addr": {
       "version": "2.0.7",
       "resolved": "https://registry.npmjs.org/proxy-addr/-/proxy-addr-2.0.7.tgz",
@@ -2181,6 +2307,14 @@
         "node": ">= 0.8"
       }
     },
+    "node_modules/streamsearch": {
+      "version": "1.1.0",
+      "resolved": "https://registry.npmjs.org/streamsearch/-/streamsearch-1.1.0.tgz",
+      "integrity": "sha512-Mcc5wHehp9aXz1ax6bZUyY5afg9u2rv5cqQI3mRrYkGC8rW2hM02jWuwjtL++LS5qinSyhj2QfLyNsuc+VsExg==",
+      "engines": {
+        "node": ">=10.0.0"
+      }
+    },
     "node_modules/string_decoder": {
       "version": "1.3.0",
       "resolved": "https://registry.npmjs.org/string_decoder/-/string_decoder-1.3.0.tgz",
@@ -2294,6 +2428,12 @@
         "node": ">= 0.6"
       }
     },
+    "node_modules/typedarray": {
+      "version": "0.0.6",
+      "resolved": "https://registry.npmjs.org/typedarray/-/typedarray-0.0.6.tgz",
+      "integrity": "sha512-/aCDEGatGvZ2BIk+HmLf4ifCJFwvKFNb9/JeZPMulfgFracn9QFcAf5GO8B/mweUjSoblS5In0cWhqpfs/5PQA==",
+      "license": "MIT"
+    },
     "node_modules/uid-safe": {
       "version": "2.1.5",
       "resolved": "https://registry.npmjs.org/uid-safe/-/uid-safe-2.1.5.tgz",
@@ -2400,6 +2540,15 @@
       "integrity": "sha512-l4Sp/DRseor9wL6EvV2+TuQn63dMkPjZ/sp9XkghTEbV9KlPS1xUsZ3u7/IQO4wxtcFB4bgpQPRcR3QCvezPcQ==",
       "license": "ISC"
     },
+    "node_modules/xtend": {
+      "version": "4.0.2",
+      "resolved": "https://registry.npmjs.org/xtend/-/xtend-4.0.2.tgz",
+      "integrity": "sha512-LKYU1iAXJXUgAXn9URjiu+MWhyUXHsvfp7mcuYm9dSUKK0/CjtrUwFAxD82/mCWbtLsGjFIad0wIsod4zrTAEQ==",
+      "license": "MIT",
+      "engines": {
+        "node": ">=0.4"
+      }
+    },
     "node_modules/yallist": {
       "version": "4.0.0",
       "resolved": "https://registry.npmjs.org/yallist/-/yallist-4.0.0.tgz",
diff --git a/package.json b/package.json
index 41be33a..ffd33c8 100644
--- a/package.json
+++ b/package.json
@@ -19,6 +19,7 @@
     "express-rate-limit": "^7.5.0",
     "express-session": "^1.18.1",
     "express-validator": "^7.2.1",
+    "multer": "^1.4.5-lts.2",
     "mysql2": "^3.14.0",
     "nodemon": "^3.1.9",
     "openai": "^4.86.1"
diff --git a/routes/posts.js b/routes/posts.js
index 44c6012..7869aa1 100644
--- a/routes/posts.js
+++ b/routes/posts.js
@@ -1,5 +1,7 @@
 const express = require('express');
 const router = express.Router();
+const multer = require('multer');
+const path = require('path');
 const db = require('../db');
 
 // ตรวจสอบว่าผู้ใช้ล็อกอินหรือไม่ (middleware)
@@ -123,26 +125,6 @@ router.post('/delete/:id', isAuthenticated, async (req, res) => {
   }
 });
 
-// ค้นหาบทความ (ค้นหาจาก title)
-router.get('/search', async (req, res) => {
-  const { keyword } = req.query;
-  try {
-    const [posts] = await db.query(
-      `SELECT p.*, u.username, c.name AS category_name 
-       FROM posts p 
-       JOIN users u ON p.user_id = u.id 
-       JOIN categories c ON p.category_id = c.id
-       WHERE p.title LIKE ?
-       ORDER BY p.created_at DESC`,
-      [`%${keyword}%`]
-    );
-    res.render('pages/index', { posts });
-  } catch (error) {
-    console.error('Error searching posts:', error);
-    res.status(500).send('Internal Server Error');
-  }
-});
-
 router.get('/:id', async (req, res) => {
     try {
       const postId = req.params.id;
@@ -162,4 +144,30 @@ router.get('/:id', async (req, res) => {
     }
   });
   
+  // ตั้งค่า Storage สำหรับ Multer
+const storage = multer.diskStorage({
+    destination: (req, file, cb) => {
+      cb(null, 'public/uploads/'); // เก็บไฟล์ไว้ที่โฟลเดอร์ public/uploads/
+    },
+    filename: (req, file, cb) => {
+      cb(null, Date.now() + path.extname(file.originalname)); // ตั้งชื่อไฟล์ให้ไม่ซ้ำกัน
+    }
+  });
+  
+  // กำหนดเงื่อนไขการอัปโหลดไฟล์
+  const upload = multer({
+    storage: storage,
+    limits: { fileSize: 5 * 1024 * 1024 }, // จำกัดขนาด 5MB
+    fileFilter: (req, file, cb) => {
+      const fileTypes = /jpeg|jpg|png|gif/;
+      const extName = fileTypes.test(path.extname(file.originalname).toLowerCase());
+      const mimeType = fileTypes.test(file.mimetype);
+  
+      if (extName && mimeType) {
+        return cb(null, true);
+      } else {
+        return cb(new Error('Only images are allowed!'));
+      }
+    }
+  });
 module.exports = router;
diff --git a/views/partials/header.ejs b/views/partials/header.ejs
index d0f0a5b..80b6379 100644
--- a/views/partials/header.ejs
+++ b/views/partials/header.ejs
@@ -12,10 +12,9 @@
       </div>
     <% } %>
     <form action="/index/search" method="get">
-        <input type="text" name="keyword" placeholder="ค้นหาบทความ">
-        <button type="submit">ค้นหา</button>
-      </form>
-  </div>
+      <input type="text" name="keyword" placeholder="ค้นหาบทความ" value="<%= typeof keyword !== 'undefined' ? keyword : '' %>">
+      <button type="submit">ค้นหา</button>
+    </form>
 
   <nav class="sidebar-nav">
     <ul class="nav flex-column">
@@ -55,3 +54,11 @@
     </div>
   <% } %>
 </aside>
+<script>
+  function confirmDelete(event) {
+    event.preventDefault(); // ป้องกันการส่งฟอร์มทันที
+    if (confirm("คุณแน่ใจหรือไม่ว่าต้องการลบโพสต์นี้?")) {
+      event.target.submit(); // ส่งฟอร์มถ้ากด OK
+    }
+  }
+</script>
diff --git a/views/posts/add.ejs b/views/posts/add.ejs
index 2e0a8f0..7e90035 100644
--- a/views/posts/add.ejs
+++ b/views/posts/add.ejs
@@ -28,7 +28,8 @@
         <% }); %>
       </select>
     </div>
-    
+    <form action="/posts/add" method="post" enctype="multipart/form-data">
+
     <button type="submit" class="btn btn-primary">เพิ่มบทความ</button>
   </form>
 </div>
diff --git a/views/posts/index.ejs b/views/posts/index.ejs
index f1ead3e..31ed703 100644
--- a/views/posts/index.ejs
+++ b/views/posts/index.ejs
@@ -50,13 +50,12 @@
                 </a>
               </div>
               <div class="col-auto">
-                <form action="/posts/delete/<%= post.id %>" method="post">
-                  <button type="submit" 
-                          class="btn btn-sm btn-outline-danger d-flex align-items-center text-nowrap">
+                <form action="/posts/delete/<%= post.id %>" method="post" onsubmit="return confirmDelete(event)">
+                  <button type="submit" class="btn btn-sm btn-outline-danger d-flex align-items-center text-nowrap">
                     <i class="bi bi-trash me-2"></i>
                     ลบ
                   </button>
-                </form>
+                </form>                
               </div>
             </div>
 
-- 
GitLab