1 /* 2 * Copyright (C) 2012 Google Inc. All rights reserved. 3 * 4 * Redistribution and use in source and binary forms, with or without 5 * modification, are permitted provided that the following conditions are 6 * met: 7 * 8 * * Redistributions of source code must retain the above copyright 9 * notice, this list of conditions and the following disclaimer. 10 * * Redistributions in binary form must reproduce the above 11 * copyright notice, this list of conditions and the following disclaimer 12 * in the documentation and/or other materials provided with the 13 * distribution. 14 * * Neither the name of Google Inc. nor the names of its 15 * contributors may be used to endorse or promote products derived from 16 * this software without specific prior written permission. 17 * 18 * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS 19 * "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT 20 * LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR 21 * A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT 22 * OWNER OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, 23 * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT 24 * LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, 25 * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY 26 * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT 27 * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE 28 * OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. 29 */ 30 31 #include "config.h" 32 #include "core/inspector/InjectedScriptManager.h" 33 34 #include "V8InjectedScriptHost.h" 35 #include "V8Window.h" 36 #include "bindings/v8/BindingSecurity.h" 37 #include "bindings/v8/ScriptDebugServer.h" 38 #include "bindings/v8/ScriptObject.h" 39 #include "bindings/v8/V8Binding.h" 40 #include "bindings/v8/V8ObjectConstructor.h" 41 #include "bindings/v8/V8ScriptRunner.h" 42 #include "core/inspector/InjectedScriptHost.h" 43 #include "core/page/DOMWindow.h" 44 #include "wtf/RefPtr.h" 45 46 namespace WebCore { 47 48 static v8::Local<v8::Object> createInjectedScriptHostV8Wrapper(InjectedScriptHost* host, v8::Isolate* isolate) 49 { 50 v8::Local<v8::Function> function = V8InjectedScriptHost::GetTemplate(isolate, MainWorld)->GetFunction(); 51 if (function.IsEmpty()) { 52 // Return if allocation failed. 53 return v8::Local<v8::Object>(); 54 } 55 v8::Local<v8::Object> instance = V8ObjectConstructor::newInstance(function); 56 if (instance.IsEmpty()) { 57 // Avoid setting the wrapper if allocation failed. 58 return v8::Local<v8::Object>(); 59 } 60 V8DOMWrapper::setNativeInfo(instance, &V8InjectedScriptHost::info, host); 61 // Create a weak reference to the v8 wrapper of InspectorBackend to deref 62 // InspectorBackend when the wrapper is garbage collected. 63 host->ref(); 64 v8::Persistent<v8::Object> weakHandle(isolate, instance); 65 weakHandle.MakeWeak(host, &InjectedScriptManager::makeWeakCallback); 66 return instance; 67 } 68 69 ScriptObject InjectedScriptManager::createInjectedScript(const String& scriptSource, ScriptState* inspectedScriptState, int id) 70 { 71 v8::HandleScope handleScope; 72 73 v8::Local<v8::Context> inspectedContext = inspectedScriptState->context(); 74 v8::Isolate* isolate = inspectedContext->GetIsolate(); 75 v8::Context::Scope contextScope(inspectedContext); 76 77 // Call custom code to create InjectedScripHost wrapper specific for the context 78 // instead of calling toV8() that would create the 79 // wrapper in the current context. 80 // FIXME: make it possible to use generic bindings factory for InjectedScriptHost. 81 v8::Local<v8::Object> scriptHostWrapper = createInjectedScriptHostV8Wrapper(m_injectedScriptHost.get(), inspectedContext->GetIsolate()); 82 if (scriptHostWrapper.IsEmpty()) 83 return ScriptObject(); 84 85 // Inject javascript into the context. The compiled script is supposed to evaluate into 86 // a single anonymous function(it's anonymous to avoid cluttering the global object with 87 // inspector's stuff) the function is called a few lines below with InjectedScriptHost wrapper, 88 // injected script id and explicit reference to the inspected global object. The function is expected 89 // to create and configure InjectedScript instance that is going to be used by the inspector. 90 v8::Local<v8::Value> value = V8ScriptRunner::compileAndRunInternalScript(v8String(scriptSource, isolate), isolate); 91 ASSERT(!value.IsEmpty()); 92 ASSERT(value->IsFunction()); 93 94 v8::Local<v8::Object> windowGlobal = inspectedContext->Global(); 95 v8::Handle<v8::Value> args[] = { scriptHostWrapper, windowGlobal, v8::Number::New(id) }; 96 v8::Local<v8::Value> injectedScriptValue = V8ScriptRunner::callInternalFunction(v8::Local<v8::Function>::Cast(value), windowGlobal, WTF_ARRAY_LENGTH(args), args, inspectedContext->GetIsolate()); 97 return ScriptObject(inspectedScriptState, v8::Handle<v8::Object>::Cast(injectedScriptValue)); 98 } 99 100 bool InjectedScriptManager::canAccessInspectedWindow(ScriptState* scriptState) 101 { 102 v8::HandleScope handleScope; 103 v8::Local<v8::Context> context = scriptState->context(); 104 v8::Local<v8::Object> global = context->Global(); 105 if (global.IsEmpty()) 106 return false; 107 v8::Handle<v8::Object> holder = global->FindInstanceInPrototypeChain(V8Window::GetTemplate(context->GetIsolate(), MainWorld)); 108 if (holder.IsEmpty()) 109 holder = global->FindInstanceInPrototypeChain(V8Window::GetTemplate(context->GetIsolate(), IsolatedWorld)); 110 if (holder.IsEmpty()) 111 return false; 112 Frame* frame = V8Window::toNative(holder)->frame(); 113 114 v8::Context::Scope contextScope(context); 115 return BindingSecurity::shouldAllowAccessToFrame(frame, DoNotReportSecurityError); 116 } 117 118 void InjectedScriptManager::makeWeakCallback(v8::Isolate* isolate, v8::Persistent<v8::Object>* object, InjectedScriptHost* host) 119 { 120 host->deref(); 121 object->Dispose(isolate); 122 } 123 124 } // namespace WebCore 125