/* * Copyright (C) 2004, 2006 Apple Computer, Inc. All rights reserved. * Copyright (C) 2007, 2008, 2009 Google, Inc. All rights reserved. * * Redistribution and use in source and binary forms, with or without * modification, are permitted provided that the following conditions * are met: * 1. Redistributions of source code must retain the above copyright * notice, this list of conditions and the following disclaimer. * 2. Redistributions in binary form must reproduce the above copyright * notice, this list of conditions and the following disclaimer in the * documentation and/or other materials provided with the distribution. * * THIS SOFTWARE IS PROVIDED BY APPLE COMPUTER, INC. ``AS IS'' AND ANY * EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL APPLE COMPUTER, INC. OR * CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, * EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, * PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR * PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY * OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE * OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. */ #include "config.h" #include "NPV8Object.h" #include "PlatformBridge.h" #include "DOMWindow.h" #include "Frame.h" #include "OwnArrayPtr.h" #include "PlatformString.h" #include "ScriptController.h" #include "UserGestureIndicator.h" #include "V8GCController.h" #include "V8Helpers.h" #include "V8NPUtils.h" #include "V8Proxy.h" #include "WrapperTypeInfo.h" #include "npruntime_impl.h" #include "npruntime_priv.h" #if PLATFORM(CHROMIUM) #include #else #include "npruntime.h" #endif #include #include using namespace WebCore; namespace WebCore { WrapperTypeInfo* npObjectTypeInfo() { static WrapperTypeInfo typeInfo = { 0, 0, 0, 0 }; return &typeInfo; } // FIXME: Comments on why use malloc and free. static NPObject* allocV8NPObject(NPP, NPClass*) { return static_cast(malloc(sizeof(V8NPObject))); } static void freeV8NPObject(NPObject* npObject) { V8NPObject* v8NpObject = reinterpret_cast(npObject); #ifndef NDEBUG V8GCController::unregisterGlobalHandle(v8NpObject, v8NpObject->v8Object); #endif v8NpObject->v8Object.Dispose(); free(v8NpObject); } static PassOwnArrayPtr > createValueListFromVariantArgs(const NPVariant* arguments, uint32_t argumentCount, NPObject* owner) { OwnArrayPtr > argv = adoptArrayPtr(new v8::Handle[argumentCount]); for (uint32_t index = 0; index < argumentCount; index++) { const NPVariant* arg = &arguments[index]; argv[index] = convertNPVariantToV8Object(arg, owner); } return argv.release(); } // Create an identifier (null terminated utf8 char*) from the NPIdentifier. static v8::Local npIdentifierToV8Identifier(NPIdentifier name) { PrivateIdentifier* identifier = static_cast(name); if (identifier->isString) return v8::String::New(static_cast(identifier->value.string)); char buffer[32]; snprintf(buffer, sizeof(buffer), "%d", identifier->value.number); return v8::String::New(buffer); } NPObject* v8ObjectToNPObject(v8::Handle object) { return reinterpret_cast(object->GetPointerFromInternalField(v8DOMWrapperObjectIndex)); } static NPClass V8NPObjectClass = { NP_CLASS_STRUCT_VERSION, allocV8NPObject, freeV8NPObject, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0 }; // NPAPI's npruntime functions. NPClass* npScriptObjectClass = &V8NPObjectClass; NPObject* npCreateV8ScriptObject(NPP npp, v8::Handle object, DOMWindow* root) { // Check to see if this object is already wrapped. if (object->InternalFieldCount() == npObjectInternalFieldCount) { WrapperTypeInfo* typeInfo = static_cast(object->GetPointerFromInternalField(v8DOMWrapperTypeIndex)); if (typeInfo == npObjectTypeInfo()) { NPObject* returnValue = v8ObjectToNPObject(object); _NPN_RetainObject(returnValue); return returnValue; } } V8NPObject* v8npObject = reinterpret_cast(_NPN_CreateObject(npp, &V8NPObjectClass)); v8npObject->v8Object = v8::Persistent::New(object); #ifndef NDEBUG V8GCController::registerGlobalHandle(NPOBJECT, v8npObject, v8npObject->v8Object); #endif v8npObject->rootObject = root; return reinterpret_cast(v8npObject); } } // namespace WebCore bool _NPN_Invoke(NPP npp, NPObject* npObject, NPIdentifier methodName, const NPVariant* arguments, uint32_t argumentCount, NPVariant* result) { if (!npObject) return false; if (npObject->_class != npScriptObjectClass) { if (npObject->_class->invoke) return npObject->_class->invoke(npObject, methodName, arguments, argumentCount, result); VOID_TO_NPVARIANT(*result); return true; } V8NPObject* v8NpObject = reinterpret_cast(npObject); PrivateIdentifier* identifier = static_cast(methodName); if (!identifier->isString) return false; if (!strcmp(identifier->value.string, "eval")) { if (argumentCount != 1) return false; if (arguments[0].type != NPVariantType_String) return false; return _NPN_Evaluate(npp, npObject, const_cast(&arguments[0].value.stringValue), result); } v8::HandleScope handleScope; // FIXME: should use the plugin's owner frame as the security context. v8::Handle context = toV8Context(npp, npObject); if (context.IsEmpty()) return false; v8::Context::Scope scope(context); ExceptionCatcher exceptionCatcher; v8::Handle functionObject = v8NpObject->v8Object->Get(v8::String::New(identifier->value.string)); if (functionObject.IsEmpty() || functionObject->IsNull()) { NULL_TO_NPVARIANT(*result); return false; } if (functionObject->IsUndefined()) { VOID_TO_NPVARIANT(*result); return false; } V8Proxy* proxy = toV8Proxy(npObject); ASSERT(proxy); // Call the function object. v8::Handle function = v8::Handle::Cast(functionObject); OwnArrayPtr > argv = createValueListFromVariantArgs(arguments, argumentCount, npObject); v8::Local resultObject = proxy->callFunction(function, v8NpObject->v8Object, argumentCount, argv.get()); // If we had an error, return false. The spec is a little unclear here, but says "Returns true if the method was // successfully invoked". If we get an error return value, was that successfully invoked? if (resultObject.IsEmpty()) return false; convertV8ObjectToNPVariant(resultObject, npObject, result); return true; } // FIXME: Fix it same as _NPN_Invoke (HandleScope and such). bool _NPN_InvokeDefault(NPP npp, NPObject* npObject, const NPVariant* arguments, uint32_t argumentCount, NPVariant* result) { if (!npObject) return false; if (npObject->_class != npScriptObjectClass) { if (npObject->_class->invokeDefault) return npObject->_class->invokeDefault(npObject, arguments, argumentCount, result); VOID_TO_NPVARIANT(*result); return true; } V8NPObject* v8NpObject = reinterpret_cast(npObject); VOID_TO_NPVARIANT(*result); v8::HandleScope handleScope; v8::Handle context = toV8Context(npp, npObject); if (context.IsEmpty()) return false; v8::Context::Scope scope(context); ExceptionCatcher exceptionCatcher; // Lookup the function object and call it. v8::Handle functionObject(v8NpObject->v8Object); if (!functionObject->IsFunction()) return false; v8::Local resultObject; v8::Handle function(v8::Function::Cast(*functionObject)); if (!function->IsNull()) { V8Proxy* proxy = toV8Proxy(npObject); ASSERT(proxy); OwnArrayPtr > argv = createValueListFromVariantArgs(arguments, argumentCount, npObject); resultObject = proxy->callFunction(function, functionObject, argumentCount, argv.get()); } // If we had an error, return false. The spec is a little unclear here, but says "Returns true if the method was // successfully invoked". If we get an error return value, was that successfully invoked? if (resultObject.IsEmpty()) return false; convertV8ObjectToNPVariant(resultObject, npObject, result); return true; } bool _NPN_Evaluate(NPP npp, NPObject* npObject, NPString* npScript, NPVariant* result) { bool popupsAllowed = PlatformBridge::popupsAllowed(npp); return _NPN_EvaluateHelper(npp, popupsAllowed, npObject, npScript, result); } bool _NPN_EvaluateHelper(NPP npp, bool popupsAllowed, NPObject* npObject, NPString* npScript, NPVariant* result) { VOID_TO_NPVARIANT(*result); if (!npObject) return false; if (npObject->_class != npScriptObjectClass) return false; v8::HandleScope handleScope; v8::Handle context = toV8Context(npp, npObject); if (context.IsEmpty()) return false; V8Proxy* proxy = toV8Proxy(npObject); ASSERT(proxy); v8::Context::Scope scope(context); ExceptionCatcher exceptionCatcher; String filename; if (!popupsAllowed) filename = "npscript"; // Set popupsAllowed flag to the current execution frame, so WebKit can get // right gesture status for popups initiated from plugins. Frame* frame = proxy->frame(); ASSERT(frame); bool oldAllowPopups = frame->script()->allowPopupsFromPlugin(); frame->script()->setAllowPopupsFromPlugin(popupsAllowed); String script = String::fromUTF8(npScript->UTF8Characters, npScript->UTF8Length); v8::Local v8result = proxy->evaluate(ScriptSourceCode(script, KURL(ParsedURLString, filename)), 0); // Restore the old flag. frame->script()->setAllowPopupsFromPlugin(oldAllowPopups); if (v8result.IsEmpty()) return false; convertV8ObjectToNPVariant(v8result, npObject, result); return true; } bool _NPN_GetProperty(NPP npp, NPObject* npObject, NPIdentifier propertyName, NPVariant* result) { if (!npObject) return false; if (npObject->_class == npScriptObjectClass) { V8NPObject* object = reinterpret_cast(npObject); v8::HandleScope handleScope; v8::Handle context = toV8Context(npp, npObject); if (context.IsEmpty()) return false; v8::Context::Scope scope(context); ExceptionCatcher exceptionCatcher; v8::Handle obj(object->v8Object); v8::Local v8result = obj->Get(npIdentifierToV8Identifier(propertyName)); if (v8result.IsEmpty()) return false; convertV8ObjectToNPVariant(v8result, npObject, result); return true; } if (npObject->_class->hasProperty && npObject->_class->getProperty) { if (npObject->_class->hasProperty(npObject, propertyName)) return npObject->_class->getProperty(npObject, propertyName, result); } VOID_TO_NPVARIANT(*result); return false; } bool _NPN_SetProperty(NPP npp, NPObject* npObject, NPIdentifier propertyName, const NPVariant* value) { if (!npObject) return false; if (npObject->_class == npScriptObjectClass) { V8NPObject* object = reinterpret_cast(npObject); v8::HandleScope handleScope; v8::Handle context = toV8Context(npp, npObject); if (context.IsEmpty()) return false; v8::Context::Scope scope(context); ExceptionCatcher exceptionCatcher; v8::Handle obj(object->v8Object); obj->Set(npIdentifierToV8Identifier(propertyName), convertNPVariantToV8Object(value, object->rootObject->frame()->script()->windowScriptNPObject())); return true; } if (npObject->_class->setProperty) return npObject->_class->setProperty(npObject, propertyName, value); return false; } bool _NPN_RemoveProperty(NPP npp, NPObject* npObject, NPIdentifier propertyName) { if (!npObject) return false; if (npObject->_class != npScriptObjectClass) return false; V8NPObject* object = reinterpret_cast(npObject); v8::HandleScope handleScope; v8::Handle context = toV8Context(npp, npObject); if (context.IsEmpty()) return false; v8::Context::Scope scope(context); ExceptionCatcher exceptionCatcher; v8::Handle obj(object->v8Object); // FIXME: Verify that setting to undefined is right. obj->Set(npIdentifierToV8Identifier(propertyName), v8::Undefined()); return true; } bool _NPN_HasProperty(NPP npp, NPObject* npObject, NPIdentifier propertyName) { if (!npObject) return false; if (npObject->_class == npScriptObjectClass) { V8NPObject* object = reinterpret_cast(npObject); v8::HandleScope handleScope; v8::Handle context = toV8Context(npp, npObject); if (context.IsEmpty()) return false; v8::Context::Scope scope(context); ExceptionCatcher exceptionCatcher; v8::Handle obj(object->v8Object); return obj->Has(npIdentifierToV8Identifier(propertyName)); } if (npObject->_class->hasProperty) return npObject->_class->hasProperty(npObject, propertyName); return false; } bool _NPN_HasMethod(NPP npp, NPObject* npObject, NPIdentifier methodName) { if (!npObject) return false; if (npObject->_class == npScriptObjectClass) { V8NPObject* object = reinterpret_cast(npObject); v8::HandleScope handleScope; v8::Handle context = toV8Context(npp, npObject); if (context.IsEmpty()) return false; v8::Context::Scope scope(context); ExceptionCatcher exceptionCatcher; v8::Handle obj(object->v8Object); v8::Handle prop = obj->Get(npIdentifierToV8Identifier(methodName)); return prop->IsFunction(); } if (npObject->_class->hasMethod) return npObject->_class->hasMethod(npObject, methodName); return false; } void _NPN_SetException(NPObject* npObject, const NPUTF8 *message) { if (!npObject || npObject->_class != npScriptObjectClass) { // We won't be able to find a proper scope for this exception, so just throw it. // This is consistent with JSC, which throws a global exception all the time. #if PLATFORM(ANDROID) // However, if there isn't a v8 context, throw the error away as there really isn't anything useful to do with it. if (v8::Context::InContext()) V8Proxy::throwError(V8Proxy::GeneralError, message); #endif return; } v8::HandleScope handleScope; v8::Handle context = toV8Context(0, npObject); if (context.IsEmpty()) return; v8::Context::Scope scope(context); ExceptionCatcher exceptionCatcher; V8Proxy::throwError(V8Proxy::GeneralError, message); } bool _NPN_Enumerate(NPP npp, NPObject* npObject, NPIdentifier** identifier, uint32_t* count) { if (!npObject) return false; if (npObject->_class == npScriptObjectClass) { V8NPObject* object = reinterpret_cast(npObject); v8::HandleScope handleScope; v8::Handle context = toV8Context(npp, npObject); if (context.IsEmpty()) return false; v8::Context::Scope scope(context); ExceptionCatcher exceptionCatcher; v8::Handle obj(object->v8Object); // FIXME: http://b/issue?id=1210340: Use a v8::Object::Keys() method when it exists, instead of evaluating javascript. // FIXME: Figure out how to cache this helper function. Run a helper function that collects the properties // on the object into an array. const char enumeratorCode[] = "(function (obj) {" " var props = [];" " for (var prop in obj) {" " props[props.length] = prop;" " }" " return props;" "});"; v8::Handle source = v8::String::New(enumeratorCode); v8::Handle script = v8::Script::Compile(source, 0); v8::Handle enumeratorObj = script->Run(); v8::Handle enumerator = v8::Handle::Cast(enumeratorObj); v8::Handle argv[] = { obj }; v8::Local propsObj = enumerator->Call(v8::Handle::Cast(enumeratorObj), ARRAYSIZE_UNSAFE(argv), argv); if (propsObj.IsEmpty()) return false; // Convert the results into an array of NPIdentifiers. v8::Handle props = v8::Handle::Cast(propsObj); *count = props->Length(); *identifier = static_cast(malloc(sizeof(NPIdentifier*) * *count)); for (uint32_t i = 0; i < *count; ++i) { v8::Local name = props->Get(v8::Integer::New(i)); (*identifier)[i] = getStringIdentifier(v8::Local::Cast(name)); } return true; } if (NP_CLASS_STRUCT_VERSION_HAS_ENUM(npObject->_class) && npObject->_class->enumerate) return npObject->_class->enumerate(npObject, identifier, count); return false; } bool _NPN_Construct(NPP npp, NPObject* npObject, const NPVariant* arguments, uint32_t argumentCount, NPVariant* result) { if (!npObject) return false; if (npObject->_class == npScriptObjectClass) { V8NPObject* object = reinterpret_cast(npObject); v8::HandleScope handleScope; v8::Handle context = toV8Context(npp, npObject); if (context.IsEmpty()) return false; v8::Context::Scope scope(context); ExceptionCatcher exceptionCatcher; // Lookup the constructor function. v8::Handle ctorObj(object->v8Object); if (!ctorObj->IsFunction()) return false; // Call the constructor. v8::Local resultObject; v8::Handle ctor(v8::Function::Cast(*ctorObj)); if (!ctor->IsNull()) { V8Proxy* proxy = toV8Proxy(npObject); ASSERT(proxy); OwnArrayPtr > argv = createValueListFromVariantArgs(arguments, argumentCount, npObject); resultObject = proxy->newInstance(ctor, argumentCount, argv.get()); } if (resultObject.IsEmpty()) return false; convertV8ObjectToNPVariant(resultObject, npObject, result); return true; } if (NP_CLASS_STRUCT_VERSION_HAS_CTOR(npObject->_class) && npObject->_class->construct) return npObject->_class->construct(npObject, arguments, argumentCount, result); return false; }