U
     5øi†Z  ã                   @   sX  d dl Z d dlZd dlZd dlZd dlZd dlmZ d dlmZ d dl	m
Z
mZmZ d dlmZmZmZ d dlmZ d dlmZ d dlmZ d d	lmZ d d
lmZ d dlmZ d dlmZ d dlm Z  edddid�Z!dd„ Z"G dd„ de#ƒZ$G dd„ dƒZ%d)dd„Z&e  '¡ dd„ ƒZ(dd„ Z)dd „ Z*G d!d"„ d"ƒZ+G d#d$„ d$ƒZ,d%d&„ Z-d'd(„ Z.dS )*é    N)ÚPath)Úsettings)ÚHttp404ÚHttpResponseÚHttpResponseNotFound)ÚContextÚEngineÚTemplateDoesNotExist)Úpprint)Úresolve)Útimezone)ÚMultiValueDict)Ú	force_str)Úimport_string)Ú_lazy_re_compile)Úget_docs_versionTZi18nzdjango.templatetags.i18n)ÚdebugÚ	librariesc                 C   s   t tƒjd |  S )z½
    Return a path to a builtin template.

    Avoid calling this function at the module level or in a class-definition
    because __file__ may not exist, e.g. in frozen environments.
    Z	templates)r   Ú__file__Úparent)Úname© r   ú6/tmp/pip-unpacked-wheel-gcyiijx6/django/views/debug.pyÚbuiltin_template_path   s    r   c                   @   s   e Zd ZdS )ÚExceptionCycleWarningN)Ú__name__Ú
__module__Ú__qualname__r   r   r   r   r   (   s   r   c                   @   s    e Zd ZdZdd„ Zdd„ ZdS )ÚCallableSettingWrapperzÅ
    Object to wrap callable appearing in settings.
    * Not to call in the debug page (#21345).
    * Not to break the debug page if the callable forbidding to set attributes
      (#23070).
    c                 C   s
   || _ d S ©N)Ú_wrapped)ÚselfZcallable_settingr   r   r   Ú__init__3   s    zCallableSettingWrapper.__init__c                 C   s
   t | jƒS r   )Úreprr    ©r!   r   r   r   Ú__repr__6   s    zCallableSettingWrapper.__repr__N)r   r   r   Ú__doc__r"   r%   r   r   r   r   r   ,   s   r   éô  c                 C   sL   t | ƒ| |||ƒ}|  d¡r2| ¡ }t||dd�S | ¡ }t||dd�S dS )z‰
    Create a technical server error response. The last three arguments are
    the values returned from sys.exc_info() and friends.
    ú	text/html)ÚstatusÚcontent_typeztext/plain; charset=utf-8N)Úget_exception_reporter_classZacceptsÚget_traceback_htmlr   Úget_traceback_text)ÚrequestÚexc_typeÚ	exc_valueÚtbÚstatus_codeZreporterÚhtmlÚtextr   r   r   Útechnical_500_response:   s    
r5   c                   C   s   t tjƒƒ S r   )r   r   Z!DEFAULT_EXCEPTION_REPORTER_FILTERr   r   r   r   Ú%get_default_exception_reporter_filterH   s    r6   c                 C   s   t ƒ }t| d|ƒS )NZexception_reporter_filter)r6   Úgetattr)r.   Zdefault_filterr   r   r   Úget_exception_reporter_filterN   s    r8   c                 C   s   t tjƒ}t| d|ƒS )NZexception_reporter_class)r   r   ZDEFAULT_EXCEPTION_REPORTERr7   )r.   Z default_exception_reporter_classr   r   r   r+   S   s    
r+   c                   @   sb   e Zd ZdZdZedejd�Zdd„ Z	dd„ Z
d	d
„ Zdd„ Zdd„ Zdd„ Zdd„ Zdd„ ZdS )ÚSafeExceptionReporterFilterz‹
    Use annotations made by the sensitive_post_parameters and
    sensitive_variables decorators to filter out sensitive information.
    z********************z#API|TOKEN|KEY|SECRET|PASS|SIGNATURE)Úflagsc                    s°   zˆ j  |¡}W n tk
r(   d}Y nX |r6ˆ j}nft|tƒrX‡ fdd„| ¡ D ƒ}nDt|tƒrv‡ fdd„|D ƒ}n&t|tƒr˜t‡ fdd„|D ƒƒ}n|}t	|ƒr¬t
|ƒ}|S )z¦
        Cleanse an individual setting key/value of sensitive content. If the
        value is a dictionary, recursively cleanse the keys in that dictionary.
        Fc                    s   i | ]\}}|ˆ   ||¡“qS r   ©Úcleanse_setting©Ú.0ÚkÚvr$   r   r   Ú
<dictcomp>m   s      z?SafeExceptionReporterFilter.cleanse_setting.<locals>.<dictcomp>c                    s   g | ]}ˆ   d |¡‘qS ©Ú r;   ©r>   r@   r$   r   r   Ú
<listcomp>o   s     z?SafeExceptionReporterFilter.cleanse_setting.<locals>.<listcomp>c                    s   g | ]}ˆ   d |¡‘qS rB   r;   rD   r$   r   r   rE   q   s     )Úhidden_settingsÚsearchÚ	TypeErrorÚcleansed_substituteÚ
isinstanceÚdictÚitemsÚlistÚtupleÚcallabler   )r!   ÚkeyÚvalueZis_sensitiveÚcleansedr   r$   r   r<   `   s     



z+SafeExceptionReporterFilter.cleanse_settingc                 C   s4   i }t tƒD ]"}| ¡ r|  |tt|ƒ¡||< q|S )z‡
        Return a dictionary of the settings module with values of sensitive
        settings replaced with stars (*********).
        )Údirr   Úisupperr<   r7   )r!   Zsettings_dictr?   r   r   r   Úget_safe_settingsz   s
    z-SafeExceptionReporterFilter.get_safe_settingsc                    s&   t |dƒsi S ‡ fdd„|j ¡ D ƒS )zU
        Return a dictionary of request.META with sensitive values redacted.
        ÚMETAc                    s   i | ]\}}|ˆ   ||¡“qS r   r;   r=   r$   r   r   rA   ‹   s      zESafeExceptionReporterFilter.get_safe_request_meta.<locals>.<dictcomp>)ÚhasattrrV   rL   ©r!   r.   r   r$   r   Úget_safe_request_meta…   s    
z1SafeExceptionReporterFilter.get_safe_request_metac                 C   s
   t jdkS )a  
        This filter is to add safety in production environments (i.e. DEBUG
        is False). If DEBUG is True then your site is not safe anyway.
        This hook is provided as a convenience to easily activate or
        deactivate the filter on a per request basis.
        F)r   ÚDEBUGrX   r   r   r   Ú	is_active�   s    z%SafeExceptionReporterFilter.is_activec                 C   sB   t |dg ƒ}|  |¡r>|r>| ¡ }|D ]}||kr&| j||< q&|S )zç
        Replace the keys in a MultiValueDict marked as sensitive with stars.
        This mitigates leaking sensitive POST parameters if something like
        request.POST['nonexistent_key'] throws an exception (#21098).
        Úsensitive_post_parameters)r7   r[   ÚcopyrI   )r!   r.   Zmultivaluedictr\   Úparamr   r   r   Úget_cleansed_multivaluedict–   s    z7SafeExceptionReporterFilter.get_cleansed_multivaluedictc                 C   s|   |dkri S t |dg ƒ}|  |¡rr|rr|j ¡ }|dkrP|D ]}| j||< q<|S |D ]}||krT| j||< qT|S n|jS dS )zk
        Replace the values of POST parameters marked as sensitive with
        stars (*********).
        Nr\   Ú__ALL__)r7   r[   ÚPOSTr]   rI   )r!   r.   r\   rR   r?   r^   r   r   r   Úget_post_parameters¤   s    
z/SafeExceptionReporterFilter.get_post_parametersc              
   C   sV   zt |tƒ}W n2 tk
r@ } zd ||¡ W Y ¢S d }~X Y nX |rR|  ||¡}|S )Nz{!r} while evaluating {!r})rJ   r   Ú	ExceptionÚformatr_   )r!   r.   rQ   Zis_multivalue_dictÚer   r   r   Úcleanse_special_types½   s    "z1SafeExceptionReporterFilter.cleanse_special_typesc           	      C   s  |j }d}|dk	rH|jjdkr@d|jkr@|jd }t|ddƒ}qH|j }q
i }|  |¡r´|r´|dkrz|jD ]}| j||< qhqØ|j ¡ D ],\}}||krœ| j}n|  ||¡}|||< q„n$|j ¡ D ]\}}|  ||¡||< q¾|jjdk�rd|jk�r| j|d< | j|d< | ¡ S )ze
        Replace the values of variables marked as sensitive with
        stars (*********).
        NZsensitive_variables_wrapperÚsensitive_variablesr`   Ú	func_argsZfunc_kwargs)	Úf_backÚf_codeÚco_nameÚf_localsr7   r[   rI   rL   rf   )	r!   r.   Útb_frameÚcurrent_framerg   ÚwrapperrR   r   rQ   r   r   r   Úget_traceback_frame_variablesË   s8    ÿ

ÿ

z9SafeExceptionReporterFilter.get_traceback_frame_variablesN)r   r   r   r&   rI   r   ÚreÚIrF   r<   rU   rY   r[   r_   rb   rf   rp   r   r   r   r   r9   X   s   	r9   c                   @   s|   e Zd ZdZedd„ ƒZedd„ ƒZddd„Zd	d
„ Zdd„ Z	dd„ Z
dd„ Zdd„ Zddd„Zdd„ Zdd„ Zdd„ ZdS )ÚExceptionReporterz0Organize and coordinate reporting on exceptions.c                 C   s   t dƒS )Nztechnical_500.html©r   r$   r   r   r   Úhtml_template_path  s    z$ExceptionReporter.html_template_pathc                 C   s   t dƒS )Nztechnical_500.txtrt   r$   r   r   r   Útext_template_path  s    z$ExceptionReporter.text_template_pathFc                 C   sJ   || _ t| j ƒ| _|| _|| _|| _|| _t| jdd ƒ| _d| _	d | _
d S )NZtemplate_debugF)r.   r8   Úfilterr/   r0   r1   Úis_emailr7   Útemplate_infoÚtemplate_does_not_existÚ
postmortem)r!   r.   r/   r0   r1   rx   r   r   r   r"   	  s    zExceptionReporter.__init__c                 C   s    dj | jj| j ¡ | j ¡ d�S )z•
        Return an absolute URI from variables available in this request. Skip
        allowed hosts protection, so may return insecure URI.
        z{scheme}://{host}{path})ÚschemeÚhostÚpath)rd   r.   r|   Z_get_raw_hostZget_full_pathr$   r   r   r   Ú_get_raw_insecure_uri  s
    ýz'ExceptionReporter._get_raw_insecure_uric                 C   sl  | j r*t| j tƒr*d| _| jjp&| jg| _|  ¡ }t|ƒD ]p\}}d|kr¢g }|d D ]B\}}t	|ƒ}t
|ƒdkrŠd|dd… t
|ƒf }| ||f¡ qV||d< |||< q:d}| j �r0t| j tƒ�r0t| jddƒ}t| jd	dƒ}	|dk	�r0|	dk	�r0| jjd
 }
t|
t|d dƒt|	d t
|
ƒƒ… ddd�}ddlm} | jdk�rNd}n,zt| jjƒ}W n tk
�rx   d}Y nX | j||| j| j | j¡|t| j | j¡ ¡ ƒ| j ¡ tj dtj!dd…  t" #¡ |ƒ tj$| j%| j| jdœ}| jdk	�r,| jj& ¡ |d< | jj' ¡ |d< | jj( ¡ |d< |  )¡ |d< | j �r@| j j*|d< | j�rVt| jƒ|d< |�rh|d |d< |S )z5Return a dictionary containing traceback information.TÚvarsi   u   %sâ€¦ <trimmed %d bytes string>r   rC   ÚstartNÚendé   é   ÚasciiÚreplace)Úerrors)Úget_versionz%[unable to retrieve the current user]z%d.%d.%dé   )rx   Úunicode_hintÚframesr.   Zrequest_metaÚuser_strZfiltered_POST_itemsr   Zsys_executableZsys_version_infoZserver_timeZdjango_version_infoÚsys_pathry   rz   r{   Zrequest_GET_itemsZrequest_FILES_itemsZrequest_COOKIES_itemsZrequest_insecure_uriZexception_typeZexception_valueéÿÿÿÿZ	lastframe)+r/   Ú
issubclassr	   rz   r0   Úchainr{   Úget_traceback_framesÚ	enumerater
   ÚlenÚappendÚUnicodeErrorr7   Úargsr   ÚmaxÚminÚdjangorˆ   r.   ÚstrÚuserrc   rx   rw   rY   rM   rb   rL   rU   ÚsysÚ
executableÚversion_infor   Únowr~   ry   ÚGETZFILESZCOOKIESr   r   )r!   r‹   ÚiÚframeZ
frame_varsr?   r@   rŠ   r�   r‚   Zunicode_strrˆ   rŒ   Úcr   r   r   Úget_traceback_data   sz    
" þ
ðz$ExceptionReporter.get_traceback_datac              	   C   sB   | j jdd��}t | ¡ ¡}W 5 Q R X t|  ¡ dd�}| |¡S )z1Return HTML version of debug 500 HTTP error page.úutf-8©ÚencodingF)Úuse_l10n)ru   ÚopenÚDEBUG_ENGINEÚfrom_stringÚreadr   r¤   Úrender©r!   ÚfhÚtr£   r   r   r   r,   j  s    z$ExceptionReporter.get_traceback_htmlc              	   C   sD   | j jdd��}t | ¡ ¡}W 5 Q R X t|  ¡ ddd�}| |¡S )z7Return plain text version of debug 500 HTTP error page.r¥   r¦   F)Z
autoescaper¨   )rv   r©   rª   r«   r¬   r   r¤   r­   r®   r   r   r   r-   q  s    z$ExceptionReporter.get_traceback_textc              	   C   sŠ   d }t |dƒrBz| |¡}W n tk
r0   Y nX |d k	rB| ¡ }|d kr†z&t|dƒ�}| ¡  ¡ }W 5 Q R X W n tk
r„   Y nX |S )NÚ
get_sourceÚrb)rW   r±   ÚImportErrorÚ
splitlinesr©   r¬   ÚOSError)r!   ÚfilenameÚloaderÚmodule_nameÚsourceÚfpr   r   r   Ú_get_sourcex  s    
zExceptionReporter._get_sourceNc                    sæ   |   |||¡}|dkr"dg dg fS t|d tƒrzd‰ |dd… D ]&}t d|¡}|r@|d  d¡‰  qhq@‡ fdd„|D ƒ}td|| ƒ}	|| }
z(||	|… }|| }||d |
… }W n  tk
rØ   dg dg f Y S X |	|||fS )	z—
        Return context_lines before and after lineno from file.
        Return (pre_context_lineno, pre_context, context_line, post_context).
        Nr   r…   é   s   coding[:=]\s*([-\w.]+)rƒ   c                    s   g | ]}t |ˆ d ƒ‘qS )r†   )rš   )r>   Úsliner¦   r   r   rE   ž  s     z:ExceptionReporter._get_lines_from_file.<locals>.<listcomp>)r»   rJ   Úbytesrq   rG   Údecoder—   Ú
IndexError)r!   r¶   ÚlinenoZcontext_linesr·   r¸   r¹   ÚlineÚmatchZlower_boundZupper_boundÚpre_contextÚcontext_lineÚpost_contextr   r¦   r   Ú_get_lines_from_file‰  s(    z&ExceptionReporter._get_lines_from_filec                 C   s4   t |dd ƒ}t |dd ƒ}t |dd ƒ}|p2|r0d S |S )NÚ	__cause__Ú__suppress_context__Ú__context__)r7   )r!   r0   ÚexplicitZsuppress_contextZimplicitr   r   r   Ú_get_explicit_or_implicit_cause«  s    z1ExceptionReporter._get_explicit_or_implicit_causec                 C   s¦   g }| j }|r>| |¡ |  |¡}||kr
t d| t¡ q>q
g }|sJ|S | ¡ }|s\| jn|j}| 	|  
||¡¡ z| ¡ }W n tk
r˜   Y q¢Y nX |j}qb|S )NzHCycle in the exception chain detected: exception '%s' encountered again.)r0   r”   rÌ   ÚwarningsÚwarnr   Úpopr1   Ú__traceback__ÚextendÚget_exception_traceback_framesrÀ   )r!   Ú
exceptionsr0   r‹   r1   r   r   r   r‘   ±  s2    

ÿý
z&ExceptionReporter.get_traceback_framesc                 c   s  |   |¡}t|ddƒ}|d kr.||d ddœV  |d k	�r|jj d¡rN|j}q.|jjj}|jjj}|j	d }|jj
 d¡}|jj
 d¡pŠd	}	|  ||d
||	¡\}
}}}|
d kr¾|}
g }d}g }||||	 d¡rÒdnd|||d | j | j|j¡t|ƒ||||
d dœV  |j}q.d S )NrÈ   Tr›   )Ú	exc_causeÚexc_cause_explicitr1   ÚtypeZ__traceback_hide__rƒ   Ú
__loader__r   rC   é   z<source code not available>zdjango.r™   )rÔ   rÕ   r1   rÖ   r¶   ÚfunctionrÁ   r€   ÚidrÄ   rÅ   rÆ   Úpre_context_lineno)rÌ   r7   rm   rl   ÚgetÚtb_nextrj   Úco_filenamerk   Ú	tb_linenoÚ	f_globalsrÇ   Ú
startswithrw   rp   r.   rÚ   )r!   r0   r1   rÔ   rÕ   r¶   rÙ   rÁ   r·   r¸   rÛ   rÄ   rÅ   rÆ   r   r   r   rÒ   Ò  sX    
ü



    ÿóz0ExceptionReporter.get_exception_traceback_frames)F)NN)r   r   r   r&   Úpropertyru   rv   r"   r   r¤   r,   r-   r»   rÇ   rÌ   r‘   rÒ   r   r   r   r   rs   þ   s   


J
"!rs   c                 C   s  z|j d d }W n( tttfk
r:   | jdd… }Y nX z|j d d }W n0 tttfk
r~   d}| jrv| jjnd}Y npX d}|ræ| jdkrît|ƒdkrît|d ƒdkrît	|d d d	d
ƒt	|d d dd
ƒ  krâdkrîn nt
| ƒS t	| dtjƒ}t|tjƒ�r|j}d
}zt| jƒ}W n tk
�r8   Y npX |j}t|dƒ�rT|j}n6t|dƒ�rh|j}n"t|dƒ�rŠt|jdƒ�rŠ|jj}t|dƒ�r¨|j}	d|	|f }tdƒjdd��}
t |
 ¡ ¡}W 5 Q R X tƒ }t|tj|||t|ƒ| |  ¡ |dœ	ƒ}t!| "|¡dd�S )zBCreate a technical 404 error response. `exception` is the Http404.r   r~   rƒ   NÚtriedTFú/Zapp_namerC   Ú	namespaceZadminÚurlconfÚ
view_classr   Ú	__class__r   z%s.%sztechnical_404.htmlr¥   r¦   )	ræ   Zroot_urlconfÚrequest_pathZurlpatternsÚresolvedÚreasonr.   r   Zraising_view_namer(   ©r*   )#r–   rÀ   rH   ÚKeyErrorZ	path_infoÚresolver_matchrã   r~   r“   r7   Údefault_urlconfr   ZROOT_URLCONFrJ   ÚtypesÚ
ModuleTyper   r   r   ÚfuncrW   rç   rè   r   r   r©   rª   r«   r¬   r6   r   rš   rU   r   r­   )r.   Ú	exceptionZ	error_urlrã   rê   ræ   Zcallerrî   ÚobjÚmoduler¯   r°   Zreporter_filterr£   r   r   r   Útechnical_404_response  sp    ÿ
þý üü
÷rö   c              	   C   sJ   t dƒjdd��}t | ¡ ¡}W 5 Q R X tdtƒ iƒ}t| |¡dd�S )z+Create an empty URLconf 404 error response.zdefault_urlconf.htmlr¥   r¦   Úversionr(   rì   )	r   r©   rª   r«   r¬   r   r   r   r­   )r.   r¯   r°   r£   r   r   r   rï   ?  s     ÿrï   )r'   )/Ú	functoolsrq   rœ   rð   rÍ   Úpathlibr   Zdjango.confr   Zdjango.httpr   r   r   Zdjango.templater   r   r	   Zdjango.template.defaultfiltersr
   Zdjango.urlsr   Zdjango.utilsr   Zdjango.utils.datastructuresr   Zdjango.utils.encodingr   Zdjango.utils.module_loadingr   Zdjango.utils.regex_helperr   Zdjango.utils.versionr   rª   r   ÚUserWarningr   r   r5   Ú	lru_cacher6   r8   r+   r9   rs   rö   rï   r   r   r   r   Ú<module>   sF   þ


 '  >