Files
pp-tcms/backend/routes/comments/edit.js
2026-02-23 12:26:07 +09:00

54 lines
1.5 KiB
JavaScript

import express from 'express';
const router = express.Router();
import { DataTypes } from 'sequelize';
import defineComment from '../../models/comments.js';
import defineUser from '../../models/users.js';
import authMiddleware from '../../middleware/auth.js';
export default function (sequelize) {
const { verifySignedIn } = authMiddleware(sequelize);
const Comment = defineComment(sequelize, DataTypes);
const User = defineUser(sequelize, DataTypes);
Comment.belongsTo(User, { foreignKey: 'userId' });
router.put('/:commentId', verifySignedIn, async (req, res) => {
const commentId = req.params.commentId;
const { content } = req.body;
if (!commentId || !content) {
return res.status(400).json({ error: 'id and content are required' });
}
try {
const comment = await Comment.findByPk(commentId);
if (!comment) {
return res.status(404).json({ error: 'Comment not found' });
}
// Verify the user owns the comment
if (comment.userId !== req.userId) {
return res.status(403).json({ error: 'Unauthorized' });
}
await comment.update({ content });
// Fetch the comment with user data
const commentWithUser = await Comment.findByPk(commentId, {
include: [
{
model: sequelize.models.User,
attributes: ['id', 'username', 'email'],
},
],
});
res.json(commentWithUser);
} catch (error) {
console.error(error);
res.status(500).send('Internal Server Error');
}
});
return router;
}