li-dance-backoffice/backend/api/enroll/get.php

43 lines
1.1 KiB
PHP

<?php
require_once('../../utils/config.php');
require_once('../../utils/db.php');
require_once('../../utils/strings.php');
$authorization = $_SERVER["HTTP_AUTHORIZATION"];
if(strcmp($authorization, INTERNAL_API_KEY) !== 0) {
echo 'STOP TRYING TO STEAL MY DATA!';
exit;
}
$connection = connect();
$cid = intval($_GET["cid"]);
$date = mysqli_real_escape_string($connection, $_GET["date"]);
$returnValue = array();
$querystr = "SELECT * FROM li_enroll, li_students
WHERE li_students.deleted = 0
AND li_enroll.sid = li_students.sid
AND li_enroll.cid = $cid
AND li_enroll.begin < '{$date}'
AND li_enroll.end > '{$date}'";
$result = mysqli_query($connection, $querystr);
if($result->num_rows !== 0) {
while ($row = mysqli_fetch_object($result)) {
$student = (object) [
'sid' => $row->sid,
'firstname' => $row->firstname,
'lastname' => $row->lastname,
];
array_push($returnValue, $student);
}
}
mysqli_free_result($result);
echo json_encode($returnValue);
?>