window.location.href = "../index.php";'; } require_once '../../functions.php'; $pdo = startDB(); $pageContent = '

Add auction

'; require '../../layout.php'; if (isset($_POST['submit'])) { $stmt = $pdo->prepare('SELECT * FROM users WHERE user_id = :user_id'); $values = [ 'user_id' => $_SESSION['loggedin'] ]; $stmt->execute($values); $user = $stmt->fetch(); $stmt = $pdo->prepare('INSERT INTO auction (title, description, endDate, categoryId, email) VALUES (:title, :description, :endDate, :categoryID, :email)'); $values = [ 'title' => $_POST['title'], 'description' => $_POST['description'], 'endDate' => $_POST['endDate'], 'categoryID' => intval($_POST['category']), 'email' => $user['email'] ]; $stmt->execute($values); echo '

Successful Post

'; } ?>