1/*
2 * Copyright (C) 2012 Google Inc. All rights reserved.
3 *
4 * Redistribution and use in source and binary forms, with or without
5 * modification, are permitted provided that the following conditions are
6 * met:
7 *
8 *     * Redistributions of source code must retain the above copyright
9 * notice, this list of conditions and the following disclaimer.
10 *     * Redistributions in binary form must reproduce the above
11 * copyright notice, this list of conditions and the following disclaimer
12 * in the documentation and/or other materials provided with the
13 * distribution.
14 *     * Neither the name of Google Inc. nor the names of its
15 * contributors may be used to endorse or promote products derived from
16 * this software without specific prior written permission.
17 *
18 * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS
19 * "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT
20 * LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR
21 * A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT
22 * OWNER OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
23 * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT
24 * LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
25 * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
26 * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
27 * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE
28 * OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
29 */
30
31#include "config.h"
32#include "core/inspector/InjectedScriptManager.h"
33
34#include "V8InjectedScriptHost.h"
35#include "V8Window.h"
36#include "bindings/v8/BindingSecurity.h"
37#include "bindings/v8/ScriptDebugServer.h"
38#include "bindings/v8/ScriptObject.h"
39#include "bindings/v8/V8Binding.h"
40#include "bindings/v8/V8ObjectConstructor.h"
41#include "bindings/v8/V8ScriptRunner.h"
42#include "core/inspector/InjectedScriptHost.h"
43#include "core/page/DOMWindow.h"
44#include "wtf/RefPtr.h"
45
46namespace WebCore {
47
48static v8::Local<v8::Object> createInjectedScriptHostV8Wrapper(InjectedScriptHost* host, v8::Isolate* isolate)
49{
50    v8::Local<v8::Function> function = V8InjectedScriptHost::GetTemplate(isolate, MainWorld)->GetFunction();
51    if (function.IsEmpty()) {
52        // Return if allocation failed.
53        return v8::Local<v8::Object>();
54    }
55    v8::Local<v8::Object> instance = V8ObjectConstructor::newInstance(function);
56    if (instance.IsEmpty()) {
57        // Avoid setting the wrapper if allocation failed.
58        return v8::Local<v8::Object>();
59    }
60    V8DOMWrapper::setNativeInfo(instance, &V8InjectedScriptHost::info, host);
61    // Create a weak reference to the v8 wrapper of InspectorBackend to deref
62    // InspectorBackend when the wrapper is garbage collected.
63    host->ref();
64    v8::Persistent<v8::Object> weakHandle(isolate, instance);
65    weakHandle.MakeWeak(host, &InjectedScriptManager::makeWeakCallback);
66    return instance;
67}
68
69ScriptObject InjectedScriptManager::createInjectedScript(const String& scriptSource, ScriptState* inspectedScriptState, int id)
70{
71    v8::HandleScope handleScope;
72
73    v8::Local<v8::Context> inspectedContext = inspectedScriptState->context();
74    v8::Isolate* isolate = inspectedContext->GetIsolate();
75    v8::Context::Scope contextScope(inspectedContext);
76
77    // Call custom code to create InjectedScripHost wrapper specific for the context
78    // instead of calling toV8() that would create the
79    // wrapper in the current context.
80    // FIXME: make it possible to use generic bindings factory for InjectedScriptHost.
81    v8::Local<v8::Object> scriptHostWrapper = createInjectedScriptHostV8Wrapper(m_injectedScriptHost.get(), inspectedContext->GetIsolate());
82    if (scriptHostWrapper.IsEmpty())
83        return ScriptObject();
84
85    // Inject javascript into the context. The compiled script is supposed to evaluate into
86    // a single anonymous function(it's anonymous to avoid cluttering the global object with
87    // inspector's stuff) the function is called a few lines below with InjectedScriptHost wrapper,
88    // injected script id and explicit reference to the inspected global object. The function is expected
89    // to create and configure InjectedScript instance that is going to be used by the inspector.
90    v8::Local<v8::Value> value = V8ScriptRunner::compileAndRunInternalScript(v8String(scriptSource, isolate), isolate);
91    ASSERT(!value.IsEmpty());
92    ASSERT(value->IsFunction());
93
94    v8::Local<v8::Object> windowGlobal = inspectedContext->Global();
95    v8::Handle<v8::Value> args[] = { scriptHostWrapper, windowGlobal, v8::Number::New(id) };
96    v8::Local<v8::Value> injectedScriptValue = V8ScriptRunner::callInternalFunction(v8::Local<v8::Function>::Cast(value), windowGlobal, WTF_ARRAY_LENGTH(args), args, inspectedContext->GetIsolate());
97    return ScriptObject(inspectedScriptState, v8::Handle<v8::Object>::Cast(injectedScriptValue));
98}
99
100bool InjectedScriptManager::canAccessInspectedWindow(ScriptState* scriptState)
101{
102    v8::HandleScope handleScope;
103    v8::Local<v8::Context> context = scriptState->context();
104    v8::Local<v8::Object> global = context->Global();
105    if (global.IsEmpty())
106        return false;
107    v8::Handle<v8::Object> holder = global->FindInstanceInPrototypeChain(V8Window::GetTemplate(context->GetIsolate(), MainWorld));
108    if (holder.IsEmpty())
109        holder = global->FindInstanceInPrototypeChain(V8Window::GetTemplate(context->GetIsolate(), IsolatedWorld));
110    if (holder.IsEmpty())
111        return false;
112    Frame* frame = V8Window::toNative(holder)->frame();
113
114    v8::Context::Scope contextScope(context);
115    return BindingSecurity::shouldAllowAccessToFrame(frame, DoNotReportSecurityError);
116}
117
118void InjectedScriptManager::makeWeakCallback(v8::Isolate* isolate, v8::Persistent<v8::Object>* object, InjectedScriptHost* host)
119{
120    host->deref();
121    object->Dispose(isolate);
122}
123
124} // namespace WebCore
125