Options.cs 19 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493
  1. using System.Dynamic;
  2. using System.Globalization;
  3. using System.Linq;
  4. using System.Reflection;
  5. using Jint.Native;
  6. using Jint.Native.Object;
  7. using Jint.Runtime;
  8. using Jint.Runtime.Interop;
  9. using Jint.Runtime.Debugger;
  10. using Jint.Runtime.Descriptors;
  11. using Jint.Runtime.Modules;
  12. using Jint.Runtime.CallStack;
  13. namespace Jint;
  14. public class Options
  15. {
  16. private static readonly CultureInfo _defaultCulture = CultureInfo.CurrentCulture;
  17. private static readonly TimeZoneInfo _defaultTimeZone = TimeZoneInfo.Local;
  18. private ITimeSystem? _timeSystem;
  19. internal List<Action<Engine>> _configurations { get; } = new();
  20. public delegate JsValue? MemberAccessorDelegate(Engine engine, object target, string member);
  21. public delegate ObjectInstance? WrapObjectDelegate(Engine engine, object target, Type? type);
  22. public delegate bool ExceptionHandlerDelegate(Exception exception);
  23. /// <summary>
  24. /// Execution constraints for the engine.
  25. /// </summary>
  26. public ConstraintOptions Constraints { get; } = new();
  27. /// <summary>
  28. /// CLR interop related options.
  29. /// </summary>
  30. public InteropOptions Interop { get; } = new();
  31. /// <summary>
  32. /// Debugger configuration.
  33. /// </summary>
  34. public DebuggerOptions Debugger { get; } = new();
  35. /// <summary>
  36. /// Host options.
  37. /// </summary>
  38. internal HostOptions Host { get; } = new();
  39. /// <summary>
  40. /// Module options
  41. /// </summary>
  42. public ModuleOptions Modules { get; } = new();
  43. /// <summary>
  44. /// Whether the code should be always considered to be in strict mode. Can improve performance.
  45. /// </summary>
  46. public bool Strict { get; set; }
  47. /// <summary>
  48. /// The culture the engine runs on, defaults to current culture.
  49. /// </summary>
  50. public CultureInfo Culture { get; set; } = _defaultCulture;
  51. /// <summary>
  52. /// Configures a time system to use. Defaults to DefaultTimeSystem using local time.
  53. /// </summary>
  54. public ITimeSystem TimeSystem
  55. {
  56. get => _timeSystem ??= new DefaultTimeSystem(TimeZone, Culture);
  57. set => _timeSystem = value;
  58. }
  59. /// <summary>
  60. /// The time zone the engine runs on, defaults to local. Same as setting DefaultTimeSystem with the time zone.
  61. /// </summary>
  62. public TimeZoneInfo TimeZone { get; set; } = _defaultTimeZone;
  63. /// <summary>
  64. /// Reference resolver allows customizing behavior for reference resolving. This can be useful in cases where
  65. /// you want to ignore long chain of property accesses that might throw if anything is null or undefined.
  66. /// An example of such is <code>var a = obj.field.subField.value</code>. Custom resolver could accept chain to return
  67. /// null/undefined on first occurrence.
  68. /// </summary>
  69. public IReferenceResolver ReferenceResolver { get; set; } = DefaultReferenceResolver.Instance;
  70. /// <summary>
  71. /// Whether calling 'eval' with custom code and function constructors taking function code as string is allowed.
  72. /// Defaults to true.
  73. /// </summary>
  74. /// <remarks>
  75. /// https://tc39.es/ecma262/#sec-hostensurecancompilestrings
  76. /// </remarks>
  77. public bool StringCompilationAllowed { get; set; } = true;
  78. /// <summary>
  79. /// Options for the built-in JSON (de)serializer which
  80. /// gets used using <c>JSON.parse</c> or <c>JSON.stringify</c>
  81. /// </summary>
  82. public JsonOptions Json { get; set; } = new();
  83. /// <summary>
  84. /// What experimental features are allowed, functionality may lacking or even plain wrong. Defaults to having none.
  85. /// </summary>
  86. public ExperimentalFeature ExperimentalFeatures { get; set; }
  87. /// <summary>
  88. /// Called by the <see cref="Engine"/> instance that loads this <see cref="Options" />
  89. /// once it is loaded.
  90. /// </summary>
  91. internal void Apply(Engine engine)
  92. {
  93. foreach (var configuration in _configurations)
  94. {
  95. configuration(engine);
  96. }
  97. // add missing bits if needed
  98. if (Interop.Enabled)
  99. {
  100. #pragma warning disable IL2026
  101. engine.Realm.GlobalObject.SetProperty("System", new PropertyDescriptor(new NamespaceReference(engine, "System"), PropertyFlag.AllForbidden));
  102. engine.Realm.GlobalObject.SetProperty("importNamespace", new PropertyDescriptor(new ClrFunction(
  103. engine,
  104. "importNamespace",
  105. (thisObj, arguments) =>
  106. new NamespaceReference(engine, TypeConverter.ToString(arguments.At(0)))),
  107. PropertyFlag.AllForbidden));
  108. engine.Realm.GlobalObject.SetProperty("clrHelper", new PropertyDescriptor(ObjectWrapper.Create(engine, new ClrHelper(Interop)), PropertyFlag.AllForbidden));
  109. #pragma warning restore IL2026
  110. }
  111. if (Interop.ExtensionMethodTypes.Count > 0)
  112. {
  113. AttachExtensionMethodsToPrototypes(engine);
  114. }
  115. if (Modules.RegisterRequire)
  116. {
  117. // Node js like loading of modules
  118. engine.Realm.GlobalObject.SetProperty("require", new PropertyDescriptor(new ClrFunction(
  119. engine,
  120. "require",
  121. (thisObj, arguments) =>
  122. {
  123. var specifier = TypeConverter.ToString(arguments.At(0));
  124. return engine.Modules.Import(specifier);
  125. }),
  126. PropertyFlag.AllForbidden));
  127. }
  128. engine.Modules = new Engine.ModuleOperations(engine, Modules.ModuleLoader);
  129. }
  130. private static void AttachExtensionMethodsToPrototypes(Engine engine)
  131. {
  132. AttachExtensionMethodsToPrototype(engine, engine.Realm.Intrinsics.Array.PrototypeObject, typeof(Array));
  133. AttachExtensionMethodsToPrototype(engine, engine.Realm.Intrinsics.Boolean.PrototypeObject, typeof(bool));
  134. AttachExtensionMethodsToPrototype(engine, engine.Realm.Intrinsics.Date.PrototypeObject, typeof(DateTime));
  135. AttachExtensionMethodsToPrototype(engine, engine.Realm.Intrinsics.Number.PrototypeObject, typeof(double));
  136. AttachExtensionMethodsToPrototype(engine, engine.Realm.Intrinsics.Object.PrototypeObject, typeof(ExpandoObject));
  137. AttachExtensionMethodsToPrototype(engine, engine.Realm.Intrinsics.RegExp.PrototypeObject, typeof(System.Text.RegularExpressions.Regex));
  138. AttachExtensionMethodsToPrototype(engine, engine.Realm.Intrinsics.String.PrototypeObject, typeof(string));
  139. }
  140. private static void AttachExtensionMethodsToPrototype(Engine engine, ObjectInstance prototype, Type objectType)
  141. {
  142. if (!engine._extensionMethods.TryGetExtensionMethods(objectType, out var methods))
  143. {
  144. return;
  145. }
  146. foreach (var overloads in methods.GroupBy(x => x.Name, StringComparer.Ordinal))
  147. {
  148. PropertyDescriptor CreateMethodInstancePropertyDescriptor(ClrFunction? function)
  149. {
  150. var instance = new MethodInfoFunction(
  151. engine,
  152. objectType,
  153. target: null,
  154. overloads.Key,
  155. methods: MethodDescriptor.Build(overloads.ToList()),
  156. function);
  157. return new PropertyDescriptor(instance, PropertyFlag.AllForbidden);
  158. }
  159. JsValue key = overloads.Key;
  160. PropertyDescriptor? descriptorWithFallback = null;
  161. PropertyDescriptor? descriptorWithoutFallback = null;
  162. if (prototype.HasOwnProperty(key) &&
  163. prototype.GetOwnProperty(key).Value is ClrFunction clrFunctionInstance)
  164. {
  165. descriptorWithFallback = CreateMethodInstancePropertyDescriptor(clrFunctionInstance);
  166. prototype.SetOwnProperty(key, descriptorWithFallback);
  167. }
  168. else
  169. {
  170. descriptorWithoutFallback = CreateMethodInstancePropertyDescriptor(null);
  171. prototype.SetOwnProperty(key, descriptorWithoutFallback);
  172. }
  173. // make sure we register both lower case and upper case
  174. if (char.IsUpper(overloads.Key[0]))
  175. {
  176. key = char.ToLower(overloads.Key[0], CultureInfo.InvariantCulture) + overloads.Key.Substring(1);
  177. if (prototype.HasOwnProperty(key) &&
  178. prototype.GetOwnProperty(key).Value is ClrFunction lowerclrFunctionInstance)
  179. {
  180. descriptorWithFallback ??= CreateMethodInstancePropertyDescriptor(lowerclrFunctionInstance);
  181. prototype.SetOwnProperty(key, descriptorWithFallback);
  182. }
  183. else
  184. {
  185. descriptorWithoutFallback ??= CreateMethodInstancePropertyDescriptor(null);
  186. prototype.SetOwnProperty(key, descriptorWithoutFallback);
  187. }
  188. }
  189. }
  190. }
  191. public class DebuggerOptions
  192. {
  193. /// <summary>
  194. /// Whether debugger functionality is enabled, defaults to false.
  195. /// </summary>
  196. public bool Enabled { get; set; }
  197. /// <summary>
  198. /// Configures the statement handling strategy, defaults to Ignore.
  199. /// </summary>
  200. public DebuggerStatementHandling StatementHandling { get; set; } = DebuggerStatementHandling.Ignore;
  201. /// <summary>
  202. /// Configures the step mode used when entering the script.
  203. /// </summary>
  204. public StepMode InitialStepMode { get; set; } = StepMode.None;
  205. }
  206. public class InteropOptions
  207. {
  208. /// <summary>
  209. /// Whether accessing CLR and it's types and methods is allowed from JS code, defaults to false.
  210. /// </summary>
  211. public bool Enabled { get; set; }
  212. /// <summary>
  213. /// Whether to expose <see cref="object.GetType"></see> which can allow bypassing allow lists and open a way to reflection.
  214. /// Defaults to false.
  215. /// </summary>
  216. public bool AllowGetType { get; set; }
  217. /// <summary>
  218. /// Whether Jint should allow wrapping objects from System.Reflection namespace.
  219. /// Defaults to false.
  220. /// </summary>
  221. public bool AllowSystemReflection { get; set; }
  222. /// <summary>
  223. /// Whether writing to CLR objects is allowed (set properties), defaults to true.
  224. /// </summary>
  225. public bool AllowWrite { get; set; } = true;
  226. /// <summary>
  227. /// Whether operator overloading resolution is allowed, defaults to false.
  228. /// </summary>
  229. public bool AllowOperatorOverloading { get; set; }
  230. /// <summary>
  231. /// Types holding extension methods that should be considered when resolving methods.
  232. /// </summary>
  233. public List<Type> ExtensionMethodTypes { get; } = new();
  234. /// <summary>
  235. /// Object converters to try when build-in conversions.
  236. /// </summary>
  237. public List<IObjectConverter> ObjectConverters { get; } = new();
  238. /// <summary>
  239. /// Whether identity map is persisted for object wrappers in order to maintain object identity. This can cause
  240. /// memory usage to grow when targeting large set and freeing of memory can be delayed due to ConditionalWeakTable semantics.
  241. /// Defaults to false.
  242. /// </summary>
  243. public bool TrackObjectWrapperIdentity { get; set; }
  244. /// <summary>
  245. /// If no known type could be guessed, objects are by default wrapped as an
  246. /// ObjectInstance using class ObjectWrapper. This function can be used to
  247. /// change the behavior.
  248. /// </summary>
  249. public WrapObjectDelegate WrapObjectHandler { get; set; } = static (engine, target, type) => ObjectWrapper.Create(engine, target, type);
  250. /// <summary>
  251. ///
  252. /// </summary>
  253. public MemberAccessorDelegate MemberAccessor { get; set; } = static (engine, target, member) => null;
  254. /// <summary>
  255. /// Exceptions that thrown from CLR code are converted to JavaScript errors and
  256. /// can be used in at try/catch statement. By default these exceptions are bubbled
  257. /// to the CLR host and interrupt the script execution. If handler returns true these exceptions are converted
  258. /// to JS errors that can be caught by the script.
  259. /// </summary>
  260. public ExceptionHandlerDelegate ExceptionHandler { get; set; } = _defaultExceptionHandler;
  261. /// <summary>
  262. /// Assemblies to allow scripts to call CLR types directly like <example>System.IO.File</example>.
  263. /// </summary>
  264. public List<Assembly> AllowedAssemblies { get; set; } = new();
  265. /// <summary>
  266. /// Type and member resolving strategy, which allows filtering allowed members and configuring member
  267. /// name matching comparison.
  268. /// </summary>
  269. /// <remarks>
  270. /// As this object holds caching state same instance should be shared between engines, if possible.
  271. /// </remarks>
  272. public TypeResolver TypeResolver { get; set; } = TypeResolver.Default;
  273. /// <summary>
  274. /// When writing values to CLR objects, how should JS values be coerced to CLR types.
  275. /// Defaults to only coercing to string values when writing to string targets.
  276. /// </summary>
  277. public ValueCoercionType ValueCoercion { get; set; } = ValueCoercionType.String;
  278. /// <summary>
  279. /// Strategy to create a CLR object to hold converted <see cref="ObjectInstance"/>.
  280. /// </summary>
  281. public Func<ObjectInstance, IDictionary<string, object?>>? CreateClrObject = _ => new ExpandoObject();
  282. /// <summary>
  283. /// Strategy to create a CLR object from TypeReference.
  284. /// Defaults to retuning null which makes TypeReference attempt to find suitable constructor.
  285. /// </summary>
  286. public Func<Engine, Type, JsValue[], object?> CreateTypeReferenceObject = (_, _, _) => null;
  287. internal static readonly ExceptionHandlerDelegate _defaultExceptionHandler = static exception => false;
  288. /// <summary>
  289. /// When not null, is used to serialize any CLR object in an
  290. /// <see cref="IObjectWrapper"/> passing through 'JSON.stringify'.
  291. /// </summary>
  292. public Func<object, string>? SerializeToJson { get; set; }
  293. /// <summary>
  294. /// What kind of date time should be produced when JavaScript date is converted to DateTime. If Local, uses <see cref="Options.TimeZone"/>.
  295. /// Defaults to <see cref="System.DateTimeKind.Utc"/>.
  296. /// </summary>
  297. public DateTimeKind DateTimeKind { get; set; } = DateTimeKind.Utc;
  298. /// <summary>
  299. /// Should the Array prototype be attached instead of Object prototype to the wrapped interop objects when type looks suitable. Defaults to true.
  300. /// </summary>
  301. public bool AttachArrayPrototype { get; set; } = true;
  302. }
  303. public class ConstraintOptions
  304. {
  305. /// <summary>
  306. /// Registered constraints.
  307. /// </summary>
  308. public List<Constraint> Constraints { get; } = new();
  309. /// <summary>
  310. /// Maximum recursion depth allowed, defaults to -1 (no checks).
  311. /// </summary>
  312. public int MaxRecursionDepth { get; set; } = -1;
  313. /// <summary>
  314. /// Maximum recursion stack count, defaults to -1 (as-is dotnet stacktrace).
  315. /// </summary>
  316. /// <remarks>
  317. /// Chrome and V8 based engines (ClearScript) that can handle 13955.
  318. /// When set to a different value except -1, it can reduce slight performance/stack trace readability drawback. (after hitting the engine's own limit),
  319. /// When max stack size to be exceeded, Engine throws an exception <see cref="JavaScriptException" />.
  320. /// </remarks>
  321. public int MaxExecutionStackCount { get; set; } = StackGuard.Disabled;
  322. /// <summary>
  323. /// Maximum time a Regex is allowed to run, defaults to 10 seconds.
  324. /// </summary>
  325. public TimeSpan RegexTimeout { get; set; } = TimeSpan.FromSeconds(10);
  326. /// <summary>
  327. /// The maximum size for JavaScript array, defaults to <see cref="uint.MaxValue"/>.
  328. /// </summary>
  329. public uint MaxArraySize { get; set; } = uint.MaxValue;
  330. }
  331. /// <summary>
  332. /// Host related customization, still work in progress.
  333. /// </summary>
  334. public class HostOptions
  335. {
  336. internal Func<Engine, Host> Factory { get; set; } = _ => new Host();
  337. }
  338. /// <summary>
  339. /// Module related customization
  340. /// </summary>
  341. public class ModuleOptions
  342. {
  343. /// <summary>
  344. /// Whether to register require function to engine which will delegate to module loader, defaults to false.
  345. /// </summary>
  346. public bool RegisterRequire { get; set; }
  347. /// <summary>
  348. /// Module loader implementation, by default exception will be thrown if module loading is not enabled.
  349. /// </summary>
  350. public IModuleLoader ModuleLoader { get; set; } = FailFastModuleLoader.Instance;
  351. }
  352. /// <summary>
  353. /// JSON.parse / JSON.stringify related customization
  354. /// </summary>
  355. public class JsonOptions
  356. {
  357. /// <summary>
  358. /// The maximum depth allowed when parsing JSON files using "JSON.parse",
  359. /// defaults to 64.
  360. /// </summary>
  361. public int MaxParseDepth { get; set; } = 64;
  362. }
  363. }
  364. /// <summary>
  365. /// Rules for writing values to CLR fields.
  366. /// </summary>
  367. [Flags]
  368. public enum ValueCoercionType
  369. {
  370. /// <summary>
  371. /// No coercion will be done. If there's no type converter, and error will be thrown.
  372. /// </summary>
  373. None = 0,
  374. /// <summary>
  375. /// JS coercion using boolean rules "dog" == true, "" == false, 1 == true, 3 == true, 0 == false, { "prop": 1 } == true etc.
  376. /// </summary>
  377. Boolean = 1,
  378. /// <summary>
  379. /// JS coercion to numbers, false == 0, true == 1. valueOf functions will be used when available for object instances.
  380. /// Valid against targets of type: Decimal, Double, Int32, Int64.
  381. /// </summary>
  382. Number = 2,
  383. /// <summary>
  384. /// JS coercion to strings, toString function will be used when available for objects.
  385. /// </summary>
  386. String = 4,
  387. /// <summary>
  388. /// All coercion rules enabled.
  389. /// </summary>
  390. All = Boolean | Number | String
  391. }
  392. /// <summary>
  393. /// Features that only work partially, if all.
  394. /// </summary>
  395. [Flags]
  396. public enum ExperimentalFeature
  397. {
  398. /// <summary>
  399. /// No experimental features enabled.
  400. /// </summary>
  401. None = 0,
  402. /// <summary>
  403. /// Generator support
  404. /// </summary>
  405. Generators = 1,
  406. /// <summary>
  407. /// Wrapping tasks to promises
  408. /// </summary>
  409. TaskInterop = 2,
  410. /// <summary>
  411. /// All coercion rules enabled.
  412. /// </summary>
  413. All = Generators | TaskInterop
  414. }