Navigable.cpp 110 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968969970971972973974975976977978979980981982983984985986987988989990991992993994995996997998999100010011002100310041005100610071008100910101011101210131014101510161017101810191020102110221023102410251026102710281029103010311032103310341035103610371038103910401041104210431044104510461047104810491050105110521053105410551056105710581059106010611062106310641065106610671068106910701071107210731074107510761077107810791080108110821083108410851086108710881089109010911092109310941095109610971098109911001101110211031104110511061107110811091110111111121113111411151116111711181119112011211122112311241125112611271128112911301131113211331134113511361137113811391140114111421143114411451146114711481149115011511152115311541155115611571158115911601161116211631164116511661167116811691170117111721173117411751176117711781179118011811182118311841185118611871188118911901191119211931194119511961197119811991200120112021203120412051206120712081209121012111212121312141215121612171218121912201221122212231224122512261227122812291230123112321233123412351236123712381239124012411242124312441245124612471248124912501251125212531254125512561257125812591260126112621263126412651266126712681269127012711272127312741275127612771278127912801281128212831284128512861287128812891290129112921293129412951296129712981299130013011302130313041305130613071308130913101311131213131314131513161317131813191320132113221323132413251326132713281329133013311332133313341335133613371338133913401341134213431344134513461347134813491350135113521353135413551356135713581359136013611362136313641365136613671368136913701371137213731374137513761377137813791380138113821383138413851386138713881389139013911392139313941395139613971398139914001401140214031404140514061407140814091410141114121413141414151416141714181419142014211422142314241425142614271428142914301431143214331434143514361437143814391440144114421443144414451446144714481449145014511452145314541455145614571458145914601461146214631464146514661467146814691470147114721473147414751476147714781479148014811482148314841485148614871488148914901491149214931494149514961497149814991500150115021503150415051506150715081509151015111512151315141515151615171518151915201521152215231524152515261527152815291530153115321533153415351536153715381539154015411542154315441545154615471548154915501551155215531554155515561557155815591560156115621563156415651566156715681569157015711572157315741575157615771578157915801581158215831584158515861587158815891590159115921593159415951596159715981599160016011602160316041605160616071608160916101611161216131614161516161617161816191620162116221623162416251626162716281629163016311632163316341635163616371638163916401641164216431644164516461647164816491650165116521653165416551656165716581659166016611662166316641665166616671668166916701671167216731674167516761677167816791680168116821683168416851686168716881689169016911692169316941695169616971698169917001701170217031704170517061707170817091710171117121713171417151716171717181719172017211722172317241725172617271728172917301731173217331734173517361737173817391740174117421743174417451746174717481749175017511752175317541755175617571758175917601761176217631764176517661767176817691770177117721773177417751776177717781779178017811782178317841785178617871788178917901791179217931794179517961797179817991800180118021803180418051806180718081809181018111812181318141815181618171818181918201821182218231824182518261827182818291830183118321833183418351836183718381839184018411842184318441845184618471848184918501851185218531854185518561857185818591860186118621863186418651866186718681869187018711872187318741875187618771878187918801881188218831884188518861887188818891890189118921893189418951896189718981899190019011902190319041905190619071908190919101911191219131914191519161917191819191920192119221923192419251926192719281929193019311932193319341935193619371938193919401941194219431944194519461947194819491950195119521953195419551956195719581959196019611962196319641965196619671968196919701971197219731974197519761977197819791980198119821983198419851986198719881989199019911992199319941995199619971998199920002001200220032004200520062007200820092010201120122013201420152016201720182019202020212022202320242025202620272028202920302031203220332034203520362037203820392040204120422043204420452046204720482049205020512052205320542055205620572058205920602061206220632064206520662067206820692070207120722073207420752076207720782079208020812082208320842085208620872088208920902091209220932094209520962097209820992100210121022103210421052106210721082109211021112112211321142115211621172118211921202121212221232124212521262127212821292130213121322133213421352136213721382139214021412142214321442145214621472148214921502151215221532154215521562157215821592160216121622163216421652166216721682169217021712172217321742175217621772178217921802181218221832184218521862187218821892190219121922193219421952196219721982199220022012202220322042205220622072208220922102211221222132214221522162217221822192220222122222223
  1. /*
  2. * Copyright (c) 2022-2024, Andreas Kling <kling@serenityos.org>
  3. * Copyright (c) 2023, Aliaksandr Kalenik <kalenik.aliaksandr@gmail.com>
  4. *
  5. * SPDX-License-Identifier: BSD-2-Clause
  6. */
  7. #include <LibWeb/CSS/SystemColor.h>
  8. #include <LibWeb/Crypto/Crypto.h>
  9. #include <LibWeb/DOM/Document.h>
  10. #include <LibWeb/DOM/DocumentLoading.h>
  11. #include <LibWeb/DOM/Event.h>
  12. #include <LibWeb/DOM/Range.h>
  13. #include <LibWeb/Fetch/Fetching/Fetching.h>
  14. #include <LibWeb/Fetch/Infrastructure/FetchAlgorithms.h>
  15. #include <LibWeb/Fetch/Infrastructure/FetchController.h>
  16. #include <LibWeb/Fetch/Infrastructure/URL.h>
  17. #include <LibWeb/HTML/BrowsingContext.h>
  18. #include <LibWeb/HTML/DocumentState.h>
  19. #include <LibWeb/HTML/HTMLIFrameElement.h>
  20. #include <LibWeb/HTML/HistoryHandlingBehavior.h>
  21. #include <LibWeb/HTML/Navigable.h>
  22. #include <LibWeb/HTML/Navigation.h>
  23. #include <LibWeb/HTML/NavigationParams.h>
  24. #include <LibWeb/HTML/POSTResource.h>
  25. #include <LibWeb/HTML/Parser/HTMLParser.h>
  26. #include <LibWeb/HTML/SandboxingFlagSet.h>
  27. #include <LibWeb/HTML/Scripting/ClassicScript.h>
  28. #include <LibWeb/HTML/SessionHistoryEntry.h>
  29. #include <LibWeb/HTML/StructuredSerialize.h>
  30. #include <LibWeb/HTML/TraversableNavigable.h>
  31. #include <LibWeb/HTML/Window.h>
  32. #include <LibWeb/HTML/WindowProxy.h>
  33. #include <LibWeb/Infra/Strings.h>
  34. #include <LibWeb/Layout/Node.h>
  35. #include <LibWeb/Loader/GeneratedPagesLoader.h>
  36. #include <LibWeb/Page/Page.h>
  37. #include <LibWeb/Painting/Paintable.h>
  38. #include <LibWeb/Painting/ViewportPaintable.h>
  39. #include <LibWeb/Platform/EventLoopPlugin.h>
  40. #include <LibWeb/Selection/Selection.h>
  41. #include <LibWeb/XHR/FormData.h>
  42. namespace Web::HTML {
  43. JS_DEFINE_ALLOCATOR(Navigable);
  44. class ResponseHolder : public JS::Cell {
  45. JS_CELL(ResponseHolder, JS::Cell);
  46. JS_DECLARE_ALLOCATOR(ResponseHolder);
  47. public:
  48. [[nodiscard]] static JS::NonnullGCPtr<ResponseHolder> create(JS::VM& vm)
  49. {
  50. return vm.heap().allocate_without_realm<ResponseHolder>();
  51. }
  52. [[nodiscard]] JS::GCPtr<Fetch::Infrastructure::Response> response() const { return m_response; }
  53. void set_response(JS::GCPtr<Fetch::Infrastructure::Response> response) { m_response = response; }
  54. virtual void visit_edges(Cell::Visitor& visitor) override
  55. {
  56. Base::visit_edges(visitor);
  57. visitor.visit(m_response);
  58. }
  59. private:
  60. JS::GCPtr<Fetch::Infrastructure::Response> m_response;
  61. };
  62. JS_DEFINE_ALLOCATOR(ResponseHolder);
  63. HashTable<Navigable*>& all_navigables()
  64. {
  65. static HashTable<Navigable*> set;
  66. return set;
  67. }
  68. // https://html.spec.whatwg.org/multipage/document-sequences.html#child-navigable
  69. Vector<JS::Handle<Navigable>> Navigable::child_navigables() const
  70. {
  71. Vector<JS::Handle<Navigable>> results;
  72. for (auto& entry : all_navigables()) {
  73. if (entry->current_session_history_entry()->step() == SessionHistoryEntry::Pending::Tag)
  74. continue;
  75. if (entry->parent() == this)
  76. results.append(entry);
  77. }
  78. return results;
  79. }
  80. bool Navigable::is_traversable() const
  81. {
  82. return is<TraversableNavigable>(*this);
  83. }
  84. bool Navigable::is_ancestor_of(JS::NonnullGCPtr<Navigable> other) const
  85. {
  86. for (auto ancestor = other->parent(); ancestor; ancestor = ancestor->parent()) {
  87. if (ancestor == this)
  88. return true;
  89. }
  90. return false;
  91. }
  92. Navigable::Navigable(JS::NonnullGCPtr<Page> page)
  93. : m_page(page)
  94. , m_event_handler({}, *this)
  95. {
  96. all_navigables().set(this);
  97. }
  98. Navigable::~Navigable()
  99. {
  100. all_navigables().remove(this);
  101. }
  102. void Navigable::visit_edges(Cell::Visitor& visitor)
  103. {
  104. Base::visit_edges(visitor);
  105. visitor.visit(m_page);
  106. visitor.visit(m_parent);
  107. visitor.visit(m_current_session_history_entry);
  108. visitor.visit(m_active_session_history_entry);
  109. visitor.visit(m_container);
  110. m_event_handler.visit_edges(visitor);
  111. }
  112. void Navigable::set_delaying_load_events(bool value)
  113. {
  114. if (value) {
  115. auto document = container_document();
  116. VERIFY(document);
  117. m_delaying_the_load_event.emplace(*document);
  118. } else {
  119. m_delaying_the_load_event.clear();
  120. }
  121. }
  122. JS::GCPtr<Navigable> Navigable::navigable_with_active_document(JS::NonnullGCPtr<DOM::Document> document)
  123. {
  124. for (auto* navigable : all_navigables()) {
  125. if (navigable->active_document() == document)
  126. return navigable;
  127. }
  128. return nullptr;
  129. }
  130. // https://html.spec.whatwg.org/multipage/document-sequences.html#initialize-the-navigable
  131. ErrorOr<void> Navigable::initialize_navigable(JS::NonnullGCPtr<DocumentState> document_state, JS::GCPtr<Navigable> parent)
  132. {
  133. static int next_id = 0;
  134. m_id = TRY(String::number(next_id++));
  135. // 1. Assert: documentState's document is non-null.
  136. VERIFY(document_state->document());
  137. // 2. Let entry be a new session history entry, with
  138. JS::NonnullGCPtr<SessionHistoryEntry> entry = *heap().allocate_without_realm<SessionHistoryEntry>();
  139. // URL: document's URL
  140. entry->set_url(document_state->document()->url());
  141. // document state: documentState
  142. entry->set_document_state(document_state);
  143. // 3. Set navigable's current session history entry to entry.
  144. m_current_session_history_entry = entry;
  145. // 4. Set navigable's active session history entry to entry.
  146. m_active_session_history_entry = entry;
  147. // 5. Set navigable's parent to parent.
  148. m_parent = parent;
  149. return {};
  150. }
  151. // https://html.spec.whatwg.org/multipage/browsing-the-web.html#getting-the-target-history-entry
  152. JS::GCPtr<SessionHistoryEntry> Navigable::get_the_target_history_entry(int target_step) const
  153. {
  154. // 1. Let entries be the result of getting session history entries for navigable.
  155. auto& entries = get_session_history_entries();
  156. // 2. Return the item in entries that has the greatest step less than or equal to step.
  157. JS::GCPtr<SessionHistoryEntry> result = nullptr;
  158. for (auto& entry : entries) {
  159. auto entry_step = entry->step().get<int>();
  160. if (entry_step <= target_step) {
  161. if (!result || result->step().get<int>() < entry_step) {
  162. result = entry;
  163. }
  164. }
  165. }
  166. return result;
  167. }
  168. // https://html.spec.whatwg.org/multipage/browsing-the-web.html#activate-history-entry
  169. void Navigable::activate_history_entry(JS::GCPtr<SessionHistoryEntry> entry)
  170. {
  171. // FIXME: 1. Save persisted state to the navigable's active session history entry.
  172. // 2. Let newDocument be entry's document.
  173. JS::GCPtr<DOM::Document> new_document = entry->document().ptr();
  174. // 3. Assert: newDocument's is initial about:blank is false, i.e., we never traverse
  175. // back to the initial about:blank Document because it always gets replaced when we
  176. // navigate away from it.
  177. VERIFY(!new_document->is_initial_about_blank());
  178. // 4. Set navigable's active session history entry to entry.
  179. m_active_session_history_entry = entry;
  180. // 5. Make active newDocument.
  181. new_document->make_active();
  182. }
  183. // https://html.spec.whatwg.org/multipage/document-sequences.html#nav-document
  184. JS::GCPtr<DOM::Document> Navigable::active_document()
  185. {
  186. // A navigable's active document is its active session history entry's document.
  187. return m_active_session_history_entry->document();
  188. }
  189. // https://html.spec.whatwg.org/multipage/document-sequences.html#nav-bc
  190. JS::GCPtr<BrowsingContext> Navigable::active_browsing_context()
  191. {
  192. // A navigable's active browsing context is its active document's browsing context.
  193. // If this navigable is a traversable navigable, then its active browsing context will be a top-level browsing context.
  194. if (auto document = active_document())
  195. return document->browsing_context();
  196. return nullptr;
  197. }
  198. // https://html.spec.whatwg.org/multipage/document-sequences.html#nav-wp
  199. JS::GCPtr<HTML::WindowProxy> Navigable::active_window_proxy()
  200. {
  201. // A navigable's active WindowProxy is its active browsing context's associated WindowProxy.
  202. if (auto browsing_context = active_browsing_context())
  203. return browsing_context->window_proxy();
  204. return nullptr;
  205. }
  206. // https://html.spec.whatwg.org/multipage/document-sequences.html#nav-window
  207. JS::GCPtr<HTML::Window> Navigable::active_window()
  208. {
  209. // A navigable's active window is its active WindowProxy's [[Window]].
  210. if (auto window_proxy = active_window_proxy())
  211. return window_proxy->window();
  212. return nullptr;
  213. }
  214. // https://html.spec.whatwg.org/multipage/document-sequences.html#nav-target
  215. String Navigable::target_name() const
  216. {
  217. // A navigable's target name is its active session history entry's document state's navigable target name.
  218. return active_session_history_entry()->document_state()->navigable_target_name();
  219. }
  220. // https://html.spec.whatwg.org/multipage/document-sequences.html#nav-container
  221. JS::GCPtr<NavigableContainer> Navigable::container() const
  222. {
  223. // The container of a navigable navigable is the navigable container whose nested navigable is navigable, or null if there is no such element.
  224. return NavigableContainer::navigable_container_with_content_navigable(const_cast<Navigable&>(*this));
  225. }
  226. // https://html.spec.whatwg.org/multipage/document-sequences.html#nav-container-document
  227. JS::GCPtr<DOM::Document> Navigable::container_document() const
  228. {
  229. auto container = this->container();
  230. // 1. If navigable's container is null, then return null.
  231. if (!container)
  232. return nullptr;
  233. // 2. Return navigable's container's node document.
  234. return container->document();
  235. }
  236. // https://html.spec.whatwg.org/multipage/document-sequences.html#nav-traversable
  237. JS::GCPtr<TraversableNavigable> Navigable::traversable_navigable() const
  238. {
  239. // 1. Let navigable be inputNavigable.
  240. auto navigable = const_cast<Navigable*>(this);
  241. // 2. While navigable is not a traversable navigable, set navigable to navigable's parent.
  242. while (navigable && !is<TraversableNavigable>(*navigable))
  243. navigable = navigable->parent();
  244. // 3. Return navigable.
  245. return static_cast<TraversableNavigable*>(navigable);
  246. }
  247. // https://html.spec.whatwg.org/multipage/document-sequences.html#nav-top
  248. JS::GCPtr<TraversableNavigable> Navigable::top_level_traversable()
  249. {
  250. // 1. Let navigable be inputNavigable.
  251. auto navigable = this;
  252. // 2. While navigable's parent is not null, set navigable to navigable's parent.
  253. while (navigable->parent())
  254. navigable = navigable->parent();
  255. // 3. Return navigable.
  256. return verify_cast<TraversableNavigable>(navigable);
  257. }
  258. // https://html.spec.whatwg.org/multipage/browsing-the-web.html#set-the-ongoing-navigation
  259. void Navigable::set_ongoing_navigation(Variant<Empty, Traversal, String> ongoing_navigation)
  260. {
  261. // 1. If navigable's ongoing navigation is equal to newValue, then return.
  262. if (m_ongoing_navigation == ongoing_navigation)
  263. return;
  264. // 2. Inform the navigation API about aborting navigation given navigable.
  265. inform_the_navigation_api_about_aborting_navigation();
  266. // 3. Set navigable's ongoing navigation to newValue.
  267. m_ongoing_navigation = ongoing_navigation;
  268. }
  269. // https://html.spec.whatwg.org/multipage/document-sequences.html#the-rules-for-choosing-a-navigable
  270. Navigable::ChosenNavigable Navigable::choose_a_navigable(StringView name, TokenizedFeature::NoOpener no_opener, ActivateTab activate_tab, Optional<TokenizedFeature::Map const&> window_features)
  271. {
  272. // NOTE: Implementation for step 7 here.
  273. JS::GCPtr<Navigable> same_name_navigable = nullptr;
  274. if (!Infra::is_ascii_case_insensitive_match(name, "_blank"sv)) {
  275. for (auto& n : all_navigables()) {
  276. if (n->target_name() == name && !n->has_been_destroyed()) {
  277. same_name_navigable = n;
  278. }
  279. }
  280. }
  281. // 1. Let chosen be null.
  282. JS::GCPtr<Navigable> chosen = nullptr;
  283. // 2. Let windowType be "existing or none".
  284. auto window_type = WindowType::ExistingOrNone;
  285. // 3. Let sandboxingFlagSet be current's active document's active sandboxing flag set.
  286. auto sandboxing_flag_set = active_document()->active_sandboxing_flag_set();
  287. // 4. If name is the empty string or an ASCII case-insensitive match for "_self", then set chosen to currentNavigable.
  288. if (name.is_empty() || Infra::is_ascii_case_insensitive_match(name, "_self"sv)) {
  289. chosen = this;
  290. }
  291. // 5. Otherwise, if name is an ASCII case-insensitive match for "_parent",
  292. // set chosen to currentNavigable's parent, if any, and currentNavigable otherwise.
  293. else if (Infra::is_ascii_case_insensitive_match(name, "_parent"sv)) {
  294. if (auto parent = this->parent())
  295. chosen = parent;
  296. else
  297. chosen = this;
  298. }
  299. // 6. Otherwise, if name is an ASCII case-insensitive match for "_top",
  300. // set chosen to currentNavigable's traversable navigable.
  301. else if (Infra::is_ascii_case_insensitive_match(name, "_top"sv)) {
  302. chosen = traversable_navigable();
  303. }
  304. // 7. Otherwise, if name is not an ASCII case-insensitive match for "_blank",
  305. // there exists a navigable whose target name is the same as name, currentNavigable's
  306. // active browsing context is familiar with that navigable's active browsing context,
  307. // and the user agent determines that the two browsing contexts are related enough that
  308. // it is ok if they reach each other, set chosen to that navigable. If there are multiple
  309. // matching navigables, the user agent should pick one in some arbitrary consistent manner,
  310. // such as the most recently opened, most recently focused, or more closely related, and set
  311. // chosen to it.
  312. else if (same_name_navigable != nullptr && (active_browsing_context()->is_familiar_with(*same_name_navigable->active_browsing_context()))) {
  313. // FIXME: Handle multiple name-match case
  314. // FIXME: When are these contexts 'not related enough' ?
  315. chosen = same_name_navigable;
  316. }
  317. // 8. Otherwise, a new top-level traversable is being requested, and what happens depends on the
  318. // user agent's configuration and abilities — it is determined by the rules given for the first
  319. // applicable option from the following list:
  320. else {
  321. // --> If current's active window does not have transient activation and the user agent has been configured to
  322. // not show popups (i.e., the user agent has a "popup blocker" enabled)
  323. if (!active_window()->has_transient_activation() && traversable_navigable()->page().should_block_pop_ups()) {
  324. // FIXME: The user agent may inform the user that a popup has been blocked.
  325. dbgln("Pop-up blocked!");
  326. }
  327. // --> If sandboxingFlagSet has the sandboxed auxiliary navigation browsing context flag set
  328. else if (has_flag(sandboxing_flag_set, SandboxingFlagSet::SandboxedAuxiliaryNavigation)) {
  329. // FIXME: The user agent may report to a developer console that a popup has been blocked.
  330. dbgln("Pop-up blocked!");
  331. }
  332. // --> If the user agent has been configured such that in this instance it will create a new top-level traversable
  333. else if (true) { // FIXME: When is this the case?
  334. // 1. Set windowType to "new and unrestricted".
  335. window_type = WindowType::NewAndUnrestricted;
  336. // 2. Let currentDocument be currentNavigable's active document.
  337. auto current_document = active_document();
  338. // 3. If currentDocument's cross-origin opener policy's value is "same-origin" or "same-origin-plus-COEP",
  339. // and currentDocument's origin is not same origin with currentDocument's relevant settings object's top-level origin, then:
  340. if ((current_document->cross_origin_opener_policy().value == CrossOriginOpenerPolicyValue::SameOrigin || current_document->cross_origin_opener_policy().value == CrossOriginOpenerPolicyValue::SameOriginPlusCOEP)
  341. && !current_document->origin().is_same_origin(relevant_settings_object(*current_document).top_level_origin)) {
  342. // 1. Set noopener to true.
  343. no_opener = TokenizedFeature::NoOpener::Yes;
  344. // 2. Set name to "_blank".
  345. name = "_blank"sv;
  346. // 3. Set windowType to "new with no opener".
  347. window_type = WindowType::NewWithNoOpener;
  348. }
  349. // NOTE: In the presence of a cross-origin opener policy,
  350. // nested documents that are cross-origin with their top-level browsing context's active document always set noopener to true.
  351. // 4. Let chosen be null.
  352. chosen = nullptr;
  353. // 5. Let targetName be the empty string.
  354. String target_name;
  355. // 6. If name is not an ASCII case-insensitive match for "_blank", then set targetName to name.
  356. if (!Infra::is_ascii_case_insensitive_match(name, "_blank"sv))
  357. target_name = MUST(String::from_utf8(name));
  358. auto create_new_traversable_closure = [this, no_opener, target_name, activate_tab, window_features](JS::GCPtr<BrowsingContext> opener) -> JS::NonnullGCPtr<Navigable> {
  359. auto hints = WebViewHints::from_tokenised_features(window_features.value_or({}), traversable_navigable()->page());
  360. auto [page, window_handle] = traversable_navigable()->page().client().page_did_request_new_web_view(activate_tab, hints, no_opener);
  361. auto traversable = TraversableNavigable::create_a_new_top_level_traversable(*page, opener, target_name).release_value_but_fixme_should_propagate_errors();
  362. page->set_top_level_traversable(traversable);
  363. traversable->set_window_handle(window_handle);
  364. return traversable;
  365. };
  366. auto create_new_traversable = JS::create_heap_function(heap(), move(create_new_traversable_closure));
  367. // 7. If noopener is true, then set chosen to the result of creating a new top-level traversable given null and targetName.
  368. if (no_opener == TokenizedFeature::NoOpener::Yes) {
  369. chosen = create_new_traversable->function()(nullptr);
  370. }
  371. // 8. Otherwise:
  372. else {
  373. // 1. Set chosen to the result of creating a new top-level traversable given currentNavigable's active browsing context and targetName.
  374. chosen = create_new_traversable->function()(active_browsing_context());
  375. // FIXME: 2. If sandboxingFlagSet's sandboxed navigation browsing context flag is set,
  376. // then set chosen's active browsing context's one permitted sandboxed navigator to currentNavigable's active browsing context.
  377. }
  378. // FIXME: 5. If sandboxingFlagSet's sandbox propagates to auxiliary browsing contexts flag is set,
  379. // then all the flags that are set in sandboxingFlagSet must be set in chosen's active browsing context's popup sandboxing flag set.
  380. // Our BrowsingContexts do not have SandboxingFlagSets yet, only documents do
  381. }
  382. // --> If the user agent has been configured such that in this instance t will reuse current
  383. else if (false) { // FIXME: When is this the case?
  384. // Set chosen to current.
  385. chosen = *this;
  386. }
  387. // --> If the user agent has been configured such that in this instance it will not find a browsing context
  388. else if (false) { // FIXME: When is this the case?
  389. // Do nothing.
  390. }
  391. }
  392. return { chosen.ptr(), window_type };
  393. }
  394. // https://html.spec.whatwg.org/multipage/browsing-the-web.html#getting-session-history-entries
  395. Vector<JS::NonnullGCPtr<SessionHistoryEntry>>& Navigable::get_session_history_entries() const
  396. {
  397. // 1. Let traversable be navigable's traversable navigable.
  398. auto traversable = traversable_navigable();
  399. // FIXME 2. Assert: this is running within traversable's session history traversal queue.
  400. // 3. If navigable is traversable, return traversable's session history entries.
  401. if (this == traversable)
  402. return traversable->session_history_entries();
  403. // 4. Let docStates be an empty ordered set of document states.
  404. Vector<JS::GCPtr<DocumentState>> doc_states;
  405. // 5. For each entry of traversable's session history entries, append entry's document state to docStates.
  406. for (auto& entry : traversable->session_history_entries())
  407. doc_states.append(entry->document_state());
  408. // 6. For each docState of docStates:
  409. while (!doc_states.is_empty()) {
  410. auto doc_state = doc_states.take_first();
  411. // 1. For each nestedHistory of docState's nested histories:
  412. for (auto& nested_history : doc_state->nested_histories()) {
  413. // 1. If nestedHistory's id equals navigable's id, return nestedHistory's entries.
  414. if (nested_history.id == id())
  415. return nested_history.entries;
  416. // 2. For each entry of nestedHistory's entries, append entry's document state to docStates.
  417. for (auto& entry : nested_history.entries)
  418. doc_states.append(entry->document_state());
  419. }
  420. }
  421. VERIFY_NOT_REACHED();
  422. }
  423. // https://html.spec.whatwg.org/multipage/browsers.html#determining-navigation-params-policy-container
  424. static PolicyContainer determine_navigation_params_policy_container(URL::URL const& response_url,
  425. Optional<PolicyContainer> history_policy_container,
  426. Optional<PolicyContainer> initiator_policy_container,
  427. Optional<PolicyContainer> parent_policy_container,
  428. Optional<PolicyContainer> response_policy_container)
  429. {
  430. // NOTE: The clone a policy container AO is just a C++ copy
  431. // 1. If historyPolicyContainer is not null, then:
  432. if (history_policy_container.has_value()) {
  433. // FIXME: 1. Assert: responseURL requires storing the policy container in history.
  434. // 2. Return a clone of historyPolicyContainer.
  435. return *history_policy_container;
  436. }
  437. // 2. If responseURL is about:srcdoc, then:
  438. if (response_url == "about:srcdoc"sv) {
  439. // 1. Assert: parentPolicyContainer is not null.
  440. VERIFY(parent_policy_container.has_value());
  441. // 2. Return a clone of parentPolicyContainer.
  442. return *parent_policy_container;
  443. }
  444. // 3. If responseURL is local and initiatorPolicyContainer is not null, then return a clone of initiatorPolicyContainer.
  445. if (Fetch::Infrastructure::is_local_url(response_url) && initiator_policy_container.has_value())
  446. return *initiator_policy_container;
  447. // 4. If responsePolicyContainer is not null, then return responsePolicyContainer.
  448. // FIXME: File a spec issue to say "a clone of" here for consistency
  449. if (response_policy_container.has_value())
  450. return *response_policy_container;
  451. // 5. Return a new policy container.
  452. return {};
  453. }
  454. // https://html.spec.whatwg.org/multipage/browsers.html#obtain-coop
  455. static CrossOriginOpenerPolicy obtain_a_cross_origin_opener_policy(JS::NonnullGCPtr<Fetch::Infrastructure::Response>, Fetch::Infrastructure::Request::ReservedClientType const& reserved_client)
  456. {
  457. // 1. Let policy be a new cross-origin opener policy.
  458. CrossOriginOpenerPolicy policy = {};
  459. // AD-HOC: We don't yet setup environments in all cases
  460. if (!reserved_client)
  461. return policy;
  462. auto& reserved_environment = *reserved_client;
  463. // 2. If reservedEnvironment is a non-secure context, then return policy.
  464. if (is_non_secure_context(reserved_environment))
  465. return policy;
  466. // FIXME: We don't yet have the technology to extract structured data from Fetch headers
  467. // FIXME: 3. Let parsedItem be the result of getting a structured field value given `Cross-Origin-Opener-Policy` and "item" from response's header list.
  468. // FIXME: 4. If parsedItem is not null, then:
  469. // FIXME: nested steps...
  470. // FIXME: 5. Set parsedItem to the result of getting a structured field value given `Cross-Origin-Opener-Policy-Report-Only` and "item" from response's header list.
  471. // FIXME: 6. If parsedItem is not null, then:
  472. // FIXME: nested steps...
  473. // 7. Return policy.
  474. return policy;
  475. }
  476. // https://html.spec.whatwg.org/multipage/browsing-the-web.html#attempt-to-create-a-non-fetch-scheme-document
  477. static JS::GCPtr<DOM::Document> attempt_to_create_a_non_fetch_scheme_document(NonFetchSchemeNavigationParams const& params)
  478. {
  479. // FIXME: Implement this algorithm to hand off to external software or display inline content
  480. dbgln("(FIXME) Don't know how to navigate to {}", params.url);
  481. return nullptr;
  482. }
  483. // https://html.spec.whatwg.org/multipage/browsing-the-web.html#create-navigation-params-from-a-srcdoc-resource
  484. static WebIDL::ExceptionOr<JS::NonnullGCPtr<NavigationParams>> create_navigation_params_from_a_srcdoc_resource(JS::GCPtr<SessionHistoryEntry> entry, JS::GCPtr<Navigable> navigable, TargetSnapshotParams const& target_snapshot_params, Optional<String> navigation_id)
  485. {
  486. auto& vm = navigable->vm();
  487. auto& realm = navigable->active_window()->realm();
  488. // 1. Let documentResource be entry's document state's resource.
  489. auto document_resource = entry->document_state()->resource();
  490. VERIFY(document_resource.has<String>());
  491. // 2. Let response be a new response with
  492. // URL: about:srcdoc
  493. // header list: (`Content-Type`, `text/html`)
  494. // body: the UTF-8 encoding of documentResource, as a body
  495. auto response = Fetch::Infrastructure::Response::create(vm);
  496. response->url_list().append(URL::URL("about:srcdoc"));
  497. auto header = Fetch::Infrastructure::Header::from_string_pair("Content-Type"sv, "text/html"sv);
  498. response->header_list()->append(move(header));
  499. response->set_body(TRY(Fetch::Infrastructure::byte_sequence_as_body(realm, document_resource.get<String>().bytes())));
  500. // 3. Let responseOrigin be the result of determining the origin given response's URL, targetSnapshotParams's sandboxing flags, and entry's document state's origin.
  501. auto response_origin = determine_the_origin(*response->url(), target_snapshot_params.sandboxing_flags, entry->document_state()->origin());
  502. // 4. Let coop be a new cross-origin opener policy.
  503. CrossOriginOpenerPolicy coop = {};
  504. // 5. Let coopEnforcementResult be a new cross-origin opener policy enforcement result with
  505. // url: response's URL
  506. // origin: responseOrigin
  507. // cross-origin opener policy: coop
  508. CrossOriginOpenerPolicyEnforcementResult coop_enforcement_result {
  509. .url = *response->url(),
  510. .origin = response_origin,
  511. .cross_origin_opener_policy = coop
  512. };
  513. // 6. Let policyContainer be the result of determining navigation params policy container given response's URL,
  514. // entry's document state's history policy container, null, navigable's container document's policy container, and null.
  515. Optional<PolicyContainer> history_policy_container = entry->document_state()->history_policy_container().visit(
  516. [](PolicyContainer const& c) -> Optional<PolicyContainer> { return c; },
  517. [](DocumentState::Client) -> Optional<PolicyContainer> { return {}; });
  518. PolicyContainer policy_container;
  519. if (navigable->container()) {
  520. // NOTE: Specification assumes that only navigables corresponding to iframes can be navigated to about:srcdoc.
  521. // We also use srcdoc to implement load_html() for top level navigables so we need to null check container
  522. // because it might be null.
  523. policy_container = determine_navigation_params_policy_container(*response->url(), history_policy_container, {}, navigable->container_document()->policy_container(), {});
  524. }
  525. // 7. Return a new navigation params, with
  526. // id: navigationId
  527. // navigable: navigable
  528. // request: null
  529. // response: response
  530. // fetch controller: null
  531. // commit early hints: null
  532. // COOP enforcement result: coopEnforcementResult
  533. // reserved environment: null
  534. // origin: responseOrigin
  535. // policy container: policyContainer
  536. // final sandboxing flag set: targetSnapshotParams's sandboxing flags
  537. // cross-origin opener policy: coop
  538. // FIXME: navigation timing type: navTimingType
  539. // about base URL: entry's document state's about base URL
  540. auto navigation_params = vm.heap().allocate_without_realm<NavigationParams>();
  541. navigation_params->id = move(navigation_id);
  542. navigation_params->navigable = navigable;
  543. navigation_params->response = response;
  544. navigation_params->coop_enforcement_result = move(coop_enforcement_result);
  545. navigation_params->origin = move(response_origin);
  546. navigation_params->policy_container = policy_container;
  547. navigation_params->final_sandboxing_flag_set = target_snapshot_params.sandboxing_flags;
  548. navigation_params->cross_origin_opener_policy = move(coop);
  549. navigation_params->about_base_url = entry->document_state()->about_base_url();
  550. return navigation_params;
  551. }
  552. // https://html.spec.whatwg.org/multipage/browsing-the-web.html#create-navigation-params-by-fetching
  553. static WebIDL::ExceptionOr<Navigable::NavigationParamsVariant> create_navigation_params_by_fetching(JS::GCPtr<SessionHistoryEntry> entry, JS::GCPtr<Navigable> navigable, SourceSnapshotParams const& source_snapshot_params, TargetSnapshotParams const& target_snapshot_params, CSPNavigationType csp_navigation_type, Optional<String> navigation_id)
  554. {
  555. auto& vm = navigable->vm();
  556. auto& realm = navigable->active_window()->realm();
  557. auto& active_document = *navigable->active_document();
  558. (void)csp_navigation_type;
  559. // FIXME: 1. Assert: this is running in parallel.
  560. // 2. Let documentResource be entry's document state's resource.
  561. auto document_resource = entry->document_state()->resource();
  562. // 3. Let request be a new request, with
  563. // url: entry's URL
  564. // client: sourceSnapshotParams's fetch client
  565. // destination: "document"
  566. // credentials mode: "include"
  567. // use-URL-credentials flag: set
  568. // redirect mode: "manual"
  569. // replaces client id: navigable's active document's relevant settings object's id
  570. // mode: "navigate"
  571. // referrer: entry's document state's request referrer
  572. // referrer policy: entry's document state's request referrer policy
  573. auto request = Fetch::Infrastructure::Request::create(vm);
  574. request->set_url(entry->url());
  575. request->set_client(source_snapshot_params.fetch_client);
  576. request->set_destination(Fetch::Infrastructure::Request::Destination::Document);
  577. request->set_credentials_mode(Fetch::Infrastructure::Request::CredentialsMode::Include);
  578. request->set_use_url_credentials(true);
  579. request->set_redirect_mode(Fetch::Infrastructure::Request::RedirectMode::Manual);
  580. request->set_replaces_client_id(active_document.relevant_settings_object().id);
  581. request->set_mode(Fetch::Infrastructure::Request::Mode::Navigate);
  582. request->set_referrer(entry->document_state()->request_referrer());
  583. // 4. If documentResource is a POST resource, then:
  584. if (document_resource.has<POSTResource>()) {
  585. // 1. Set request's method to `POST`.
  586. request->set_method(TRY_OR_THROW_OOM(vm, ByteBuffer::copy("POST"sv.bytes())));
  587. // 2. Set request's body to documentResource's request body.
  588. request->set_body(document_resource.get<POSTResource>().request_body.value());
  589. // 3. Set `Content-Type` to documentResource's request content-type in request's header list.
  590. auto request_content_type = document_resource.get<POSTResource>().request_content_type;
  591. auto request_content_type_string = [request_content_type]() {
  592. switch (request_content_type) {
  593. case POSTResource::RequestContentType::ApplicationXWWWFormUrlencoded:
  594. return "application/x-www-form-urlencoded"sv;
  595. case POSTResource::RequestContentType::MultipartFormData:
  596. return "multipart/form-data"sv;
  597. case POSTResource::RequestContentType::TextPlain:
  598. return "text/plain"sv;
  599. default:
  600. VERIFY_NOT_REACHED();
  601. }
  602. }();
  603. auto header = Fetch::Infrastructure::Header::from_string_pair("Content-Type"sv, request_content_type_string);
  604. request->header_list()->append(move(header));
  605. }
  606. // 5. If entry's document state's reload pending is true, then set request's reload-navigation flag.
  607. if (entry->document_state()->reload_pending())
  608. request->set_reload_navigation(true);
  609. // 6. Otherwise, if entry's document state's ever populated is true, then set request's history-navigation flag.
  610. if (entry->document_state()->ever_populated())
  611. request->set_history_navigation(true);
  612. // 7. If sourceSnapshotParams's has transient activation is true, then set request's user-activation to true.
  613. if (source_snapshot_params.has_transient_activation)
  614. request->set_user_activation(true);
  615. // 8. If navigable's container is non-null:
  616. if (navigable->container() != nullptr) {
  617. // 1. If the navigable's container has a browsing context scope origin, then set request's origin to that browsing context scope origin.
  618. // FIXME: From "browsing context scope origin": This definition is broken and needs investigation to see what it was intended to express: see issue #4703.
  619. // The referenced issue suggests that it is a no-op to retrieve the browsing context scope origin.
  620. // 2. Set request's destination to navigable's container's local name.
  621. // FIXME: Are there other container types? If so, we need a helper here
  622. Web::Fetch::Infrastructure::Request::Destination destination = is<HTMLIFrameElement>(*navigable->container()) ? Web::Fetch::Infrastructure::Request::Destination::IFrame
  623. : Web::Fetch::Infrastructure::Request::Destination::Object;
  624. request->set_destination(destination);
  625. // 3. If sourceSnapshotParams's fetch client is navigable's container document's relevant settings object,
  626. // then set request's initiator type to navigable's container's local name.
  627. // NOTE: This ensure that only container-initiated navigations are reported to resource timing.
  628. if (source_snapshot_params.fetch_client == &navigable->container_document()->relevant_settings_object()) {
  629. // FIXME: Are there other container types? If so, we need a helper here
  630. Web::Fetch::Infrastructure::Request::InitiatorType initiator_type = is<HTMLIFrameElement>(*navigable->container()) ? Web::Fetch::Infrastructure::Request::InitiatorType::IFrame
  631. : Web::Fetch::Infrastructure::Request::InitiatorType::Object;
  632. request->set_initiator_type(initiator_type);
  633. }
  634. }
  635. // 9. Let response be null.
  636. // NOTE: We use a heap-allocated cell to hold the response pointer because the processResponse callback below
  637. // might use it after this stack is freed.
  638. auto response_holder = ResponseHolder::create(vm);
  639. // 10. Let responseOrigin be null.
  640. Optional<HTML::Origin> response_origin;
  641. // 11. Let fetchController be null.
  642. JS::GCPtr<Fetch::Infrastructure::FetchController> fetch_controller = nullptr;
  643. // 12. Let coopEnforcementResult be a new cross-origin opener policy enforcement result, with
  644. // - url: navigable's active document's URL
  645. // - origin: navigable's active document's origin
  646. // - cross-origin opener policy: navigable's active document's cross-origin opener policy
  647. // - current context is navigation source: true if navigable's active document's origin is same origin with
  648. // entry's document state's initiator origin otherwise false
  649. CrossOriginOpenerPolicyEnforcementResult coop_enforcement_result = {
  650. .url = active_document.url(),
  651. .origin = active_document.origin(),
  652. .cross_origin_opener_policy = active_document.cross_origin_opener_policy(),
  653. .current_context_is_navigation_source = entry->document_state()->initiator_origin().has_value() && active_document.origin().is_same_origin(*entry->document_state()->initiator_origin())
  654. };
  655. // 13. Let finalSandboxFlags be an empty sandboxing flag set.
  656. SandboxingFlagSet final_sandbox_flags = {};
  657. // 14. Let responsePolicyContainer be null.
  658. Optional<PolicyContainer> response_policy_container = {};
  659. // 15. Let responseCOOP be a new cross-origin opener policy.
  660. CrossOriginOpenerPolicy response_coop = {};
  661. // 16. Let locationURL be null.
  662. ErrorOr<Optional<URL::URL>> location_url { OptionalNone {} };
  663. // 17. Let currentURL be request's current URL.
  664. URL::URL current_url = request->current_url();
  665. // 18. Let commitEarlyHints be null.
  666. Function<void(DOM::Document&)> commit_early_hints = nullptr;
  667. // 19. While true:
  668. while (true) {
  669. // FIXME: 1. If request's reserved client is not null and currentURL's origin is not the same as request's reserved client's creation URL's origin, then:
  670. // FIXME: 2. If request's reserved client is null, then:
  671. // FIXME: 3. If the result of should navigation request of type be blocked by Content Security Policy? given request and cspNavigationType is "Blocked", then set response to a network error and break. [CSP]
  672. // 4. Set response to null.
  673. response_holder->set_response(nullptr);
  674. // 5. If fetchController is null, then set fetchController to the result of fetching request,
  675. // with processEarlyHintsResponse set to processEarlyHintsResponseas defined below, processResponse
  676. // set to processResponse as defined below, and useParallelQueue set to true.
  677. if (!fetch_controller) {
  678. // FIXME: Let processEarlyHintsResponse be the following algorithm given a response earlyResponse:
  679. // Let processResponse be the following algorithm given a response fetchedResponse:
  680. auto process_response = [response_holder](JS::NonnullGCPtr<Fetch::Infrastructure::Response> fetch_response) {
  681. // 1. Set response to fetchedResponse.
  682. response_holder->set_response(fetch_response);
  683. };
  684. fetch_controller = TRY(Fetch::Fetching::fetch(
  685. realm,
  686. request,
  687. Fetch::Infrastructure::FetchAlgorithms::create(vm,
  688. {
  689. .process_request_body_chunk_length = {},
  690. .process_request_end_of_body = {},
  691. .process_early_hints_response = {},
  692. .process_response = move(process_response),
  693. .process_response_end_of_body = {},
  694. .process_response_consume_body = {},
  695. }),
  696. Fetch::Fetching::UseParallelQueue::Yes));
  697. }
  698. // 6. Otherwise, process the next manual redirect for fetchController.
  699. else {
  700. fetch_controller->process_next_manual_redirect();
  701. }
  702. // 7. Wait until either response is non-null, or navigable's ongoing navigation changes to no longer equal navigationId.
  703. Platform::EventLoopPlugin::the().spin_until([&]() {
  704. if (response_holder->response() != nullptr)
  705. return true;
  706. if (navigation_id.has_value() && (!navigable->ongoing_navigation().has<String>() || navigable->ongoing_navigation().get<String>() != *navigation_id))
  707. return true;
  708. return false;
  709. });
  710. // If the latter condition occurs, then abort fetchController, and return. Otherwise, proceed onward.
  711. if (navigation_id.has_value() && (!navigable->ongoing_navigation().has<String>() || navigable->ongoing_navigation().get<String>() != *navigation_id)) {
  712. fetch_controller->abort(realm, {});
  713. return Empty {};
  714. }
  715. // 8. If request's body is null, then set entry's document state's resource to null.
  716. if (!request->body().has<Empty>()) {
  717. entry->document_state()->set_resource(Empty {});
  718. }
  719. // FIXME 9. Set responsePolicyContainer to the result of creating a policy container from a fetch response given response and request's reserved client.
  720. // FIXME 10. Set finalSandboxFlags to the union of targetSnapshotParams's sandboxing flags and responsePolicyContainer's CSP list's CSP-derived sandboxing flags.
  721. // 11. Set responseOrigin to the result of determining the origin given response's URL, finalSandboxFlags, and entry's document state's initiator origin.
  722. response_origin = determine_the_origin(*response_holder->response()->url(), final_sandbox_flags, entry->document_state()->initiator_origin());
  723. // 12. If navigable is a top-level traversable, then:
  724. if (navigable->is_top_level_traversable()) {
  725. // 1. Set responseCOOP to the result of obtaining a cross-origin opener policy given response and request's reserved client.
  726. response_coop = obtain_a_cross_origin_opener_policy(*response_holder->response(), request->reserved_client());
  727. // FIXME: 2. Set coopEnforcementResult to the result of enforcing the response's cross-origin opener policy given navigable's active browsing context,
  728. // response's URL, responseOrigin, responseCOOP, coopEnforcementResult and request's referrer.
  729. // FIXME: 3. If finalSandboxFlags is not empty and responseCOOP's value is not "unsafe-none", then set response to an appropriate network error and break.
  730. // NOTE: This results in a network error as one cannot simultaneously provide a clean slate to a response
  731. // using cross-origin opener policy and sandbox the result of navigating to that response.
  732. }
  733. // 13. FIXME If response is not a network error, navigable is a child navigable, and the result of performing a cross-origin resource policy check
  734. // with navigable's container document's origin, navigable's container document's relevant settings object, request's destination, response,
  735. // and true is blocked, then set response to a network error and break.
  736. // NOTE: Here we're running the cross-origin resource policy check against the parent navigable rather than navigable itself
  737. // This is because we care about the same-originness of the embedded content against the parent context, not the navigation source.
  738. // 14. Set locationURL to response's location URL given currentURL's fragment.
  739. location_url = response_holder->response()->location_url(current_url.fragment());
  740. VERIFY(!location_url.is_error());
  741. // 15. If locationURL is failure or null, then break.
  742. if (location_url.is_error() || !location_url.value().has_value()) {
  743. break;
  744. }
  745. // 16. Assert: locationURL is a URL.
  746. VERIFY(location_url.value()->is_valid());
  747. // 17. Set entry's classic history API state to StructuredSerializeForStorage(null).
  748. entry->set_classic_history_api_state(MUST(structured_serialize_for_storage(vm, JS::js_null())));
  749. // 18. Let oldDocState be entry's document state.
  750. auto old_doc_state = entry->document_state();
  751. // 19. Set entry's document state to a new document state, with
  752. // history policy container: a clone of the oldDocState's history policy container if it is non-null; null otherwise
  753. // request referrer: oldDocState's request referrer
  754. // request referrer policy: oldDocState's request referrer policy
  755. // origin: oldDocState's origin
  756. // resource: oldDocState's resource
  757. // ever populated: oldDocState's ever populated
  758. // navigable target name: oldDocState's navigable target name
  759. auto new_document_state = navigable->heap().allocate_without_realm<DocumentState>();
  760. new_document_state->set_history_policy_container(old_doc_state->history_policy_container());
  761. new_document_state->set_request_referrer(old_doc_state->request_referrer());
  762. new_document_state->set_request_referrer_policy(old_doc_state->request_referrer_policy());
  763. new_document_state->set_origin(old_doc_state->origin());
  764. new_document_state->set_resource(old_doc_state->resource());
  765. new_document_state->set_ever_populated(old_doc_state->ever_populated());
  766. new_document_state->set_navigable_target_name(old_doc_state->navigable_target_name());
  767. entry->set_document_state(new_document_state);
  768. // 20. If locationURL's scheme is not an HTTP(S) scheme, then:
  769. if (!Fetch::Infrastructure::is_http_or_https_scheme(location_url.value()->scheme())) {
  770. // 1. Set entry's document state's resource to null.
  771. entry->document_state()->set_resource(Empty {});
  772. // 2. Break.
  773. break;
  774. }
  775. // 21. Set currentURL to locationURL.
  776. current_url = location_url.value().value();
  777. // 22. Set entry's URL to currentURL.
  778. entry->set_url(current_url);
  779. }
  780. // 20. If locationURL is a URL whose scheme is not a fetch scheme, then return a new non-fetch scheme navigation params, with
  781. if (!location_url.is_error() && location_url.value().has_value() && !Fetch::Infrastructure::is_fetch_scheme(location_url.value().value().scheme())) {
  782. // - id: navigationId
  783. // - navigable: navigable
  784. // - URL: locationURL
  785. // - target snapshot sandboxing flags: targetSnapshotParams's sandboxing flags
  786. // - source snapshot has transient activation: sourceSnapshotParams's has transient activation
  787. // - initiator origin: responseOrigin
  788. // FIXME: - navigation timing type: navTimingType
  789. auto navigation_params = vm.heap().allocate_without_realm<NonFetchSchemeNavigationParams>();
  790. navigation_params->id = navigation_id;
  791. navigation_params->navigable = navigable;
  792. navigation_params->url = location_url.release_value().value();
  793. navigation_params->target_snapshot_sandboxing_flags = target_snapshot_params.sandboxing_flags;
  794. navigation_params->source_snapshot_has_transient_activation = source_snapshot_params.has_transient_activation;
  795. navigation_params->initiator_origin = move(*response_origin);
  796. return navigation_params;
  797. }
  798. // 21. If any of the following are true:
  799. // - response is a network error;
  800. // - locationURL is failure; or
  801. // - locationURL is a URL whose scheme is a fetch scheme
  802. // then return null.
  803. if (response_holder->response()->is_network_error()) {
  804. // AD-HOC: We pass the error message if we have one in NullWithError
  805. if (response_holder->response()->network_error_message().has_value() && !response_holder->response()->network_error_message().value().is_null())
  806. return response_holder->response()->network_error_message().value();
  807. else
  808. return Empty {};
  809. } else if (location_url.is_error() || (location_url.value().has_value() && Fetch::Infrastructure::is_fetch_scheme(location_url.value().value().scheme())))
  810. return Empty {};
  811. // 22. Assert: locationURL is null and response is not a network error.
  812. VERIFY(!location_url.value().has_value());
  813. VERIFY(!response_holder->response()->is_network_error());
  814. // 23. Let resultPolicyContainer be the result of determining navigation params policy container given response's URL,
  815. // entry's document state's history policy container, sourceSnapshotParams's source policy container, null, and responsePolicyContainer.
  816. Optional<PolicyContainer> history_policy_container = entry->document_state()->history_policy_container().visit(
  817. [](PolicyContainer const& c) -> Optional<PolicyContainer> { return c; },
  818. [](DocumentState::Client) -> Optional<PolicyContainer> { return {}; });
  819. auto result_policy_container = determine_navigation_params_policy_container(*response_holder->response()->url(), history_policy_container, source_snapshot_params.source_policy_container, {}, response_policy_container);
  820. // 24. If navigable's container is an iframe, and response's timing allow passed flag is set, then set container's pending resource-timing start time to null.
  821. if (navigable->container() && is<HTML::HTMLIFrameElement>(*navigable->container()) && response_holder->response()->timing_allow_passed())
  822. static_cast<HTML::HTMLIFrameElement&>(*navigable->container()).set_pending_resource_start_time({});
  823. // 25. Return a new navigation params, with
  824. // id: navigationId
  825. // navigable: navigable
  826. // request: request
  827. // response: response
  828. // fetch controller: fetchController
  829. // commit early hints: commitEarlyHints
  830. // cross-origin opener policy: responseCOOP
  831. // reserved environment: request's reserved client
  832. // origin: responseOrigin
  833. // policy container: resultPolicyContainer
  834. // final sandboxing flag set: finalSandboxFlags
  835. // COOP enforcement result: coopEnforcementResult
  836. // FIXME: navigation timing type: navTimingType
  837. // about base URL: entry's document state's about base URL
  838. auto navigation_params = vm.heap().allocate_without_realm<NavigationParams>();
  839. navigation_params->id = navigation_id;
  840. navigation_params->navigable = navigable;
  841. navigation_params->request = request;
  842. navigation_params->response = *response_holder->response();
  843. navigation_params->fetch_controller = fetch_controller;
  844. navigation_params->commit_early_hints = move(commit_early_hints);
  845. navigation_params->coop_enforcement_result = coop_enforcement_result;
  846. navigation_params->reserved_environment = request->reserved_client();
  847. navigation_params->origin = *response_origin;
  848. navigation_params->policy_container = result_policy_container;
  849. navigation_params->final_sandboxing_flag_set = final_sandbox_flags;
  850. navigation_params->cross_origin_opener_policy = response_coop;
  851. navigation_params->about_base_url = entry->document_state()->about_base_url();
  852. return navigation_params;
  853. }
  854. // https://html.spec.whatwg.org/multipage/browsing-the-web.html#attempt-to-populate-the-history-entry's-document
  855. WebIDL::ExceptionOr<void> Navigable::populate_session_history_entry_document(
  856. JS::GCPtr<SessionHistoryEntry> entry,
  857. SourceSnapshotParams const& source_snapshot_params,
  858. TargetSnapshotParams const& target_snapshot_params,
  859. Optional<String> navigation_id,
  860. Navigable::NavigationParamsVariant navigation_params,
  861. CSPNavigationType csp_navigation_type,
  862. bool allow_POST,
  863. JS::GCPtr<JS::HeapFunction<void()>> completion_steps)
  864. {
  865. // FIXME: 1. Assert: this is running in parallel.
  866. // 2. Assert: if navigationParams is non-null, then navigationParams's response is non-null.
  867. // NavigationParams' response field is NonnullGCPtr
  868. if (!navigation_params.has<Empty>())
  869. VERIFY(navigation_params.has<JS::NonnullGCPtr<NavigationParams>>());
  870. // 3. Let currentBrowsingContext be navigable's active browsing context.
  871. [[maybe_unused]] auto current_browsing_context = active_browsing_context();
  872. // 4. Let documentResource be entry's document state's resource.
  873. auto document_resource = entry->document_state()->resource();
  874. // 5. If navigationParams is null, then:
  875. if (navigation_params.has<Empty>()) {
  876. // 1. If documentResource is a string, then set navigationParams to the result
  877. // of creating navigation params from a srcdoc resource given entry, navigable,
  878. // targetSnapshotParams, navigationId, and navTimingType.
  879. if (document_resource.has<String>()) {
  880. navigation_params = TRY(create_navigation_params_from_a_srcdoc_resource(entry, this, target_snapshot_params, navigation_id));
  881. }
  882. // 2. Otherwise, if both of the following are true:
  883. // - entry's URL's scheme is a fetch scheme; and
  884. // - documentResource is null, or allowPOST is true and documentResource's request body is not failure (FIXME: check if request body is not failure)
  885. else if (Fetch::Infrastructure::is_fetch_scheme(entry->url().scheme()) && (document_resource.has<Empty>() || allow_POST)) {
  886. navigation_params = TRY(create_navigation_params_by_fetching(entry, this, source_snapshot_params, target_snapshot_params, csp_navigation_type, navigation_id));
  887. }
  888. // 3. Otherwise, if entry's URL's scheme is not a fetch scheme, then set navigationParams to a new non-fetch scheme navigation params, with:
  889. else if (!Fetch::Infrastructure::is_fetch_scheme(entry->url().scheme())) {
  890. // - id: navigationId
  891. // - navigable: navigable
  892. // - URL: entry's URL
  893. // - target snapshot sandboxing flags: targetSnapshotParams's sandboxing flags
  894. // - source snapshot has transient activation: sourceSnapshotParams's has transient activation
  895. // - initiator origin: entry's document state's initiator origin
  896. // FIXME: - navigation timing type: navTimingType
  897. auto non_fetching_scheme_navigation_params = vm().heap().allocate_without_realm<NonFetchSchemeNavigationParams>();
  898. non_fetching_scheme_navigation_params->id = navigation_id;
  899. non_fetching_scheme_navigation_params->navigable = this;
  900. non_fetching_scheme_navigation_params->url = entry->url();
  901. non_fetching_scheme_navigation_params->target_snapshot_sandboxing_flags = target_snapshot_params.sandboxing_flags;
  902. non_fetching_scheme_navigation_params->source_snapshot_has_transient_activation = source_snapshot_params.has_transient_activation;
  903. non_fetching_scheme_navigation_params->initiator_origin = *entry->document_state()->initiator_origin();
  904. navigation_params = non_fetching_scheme_navigation_params;
  905. }
  906. }
  907. // NOTE: Not in the spec but queuing task on the next step will fail because active_window() does not exist for destroyed navigable.
  908. if (has_been_destroyed())
  909. return {};
  910. // 6. Queue a global task on the navigation and traversal task source, given navigable's active window, to run these steps:
  911. queue_global_task(Task::Source::NavigationAndTraversal, *active_window(), JS::create_heap_function(heap(), [this, entry, navigation_params = move(navigation_params), navigation_id, completion_steps]() mutable {
  912. // NOTE: This check is not in the spec but we should not continue navigation if navigable has been destroyed.
  913. if (has_been_destroyed())
  914. return;
  915. // 1. If navigable's ongoing navigation no longer equals navigationId, then run completionSteps and return.
  916. if (navigation_id.has_value() && (!ongoing_navigation().has<String>() || ongoing_navigation().get<String>() != *navigation_id)) {
  917. if (completion_steps)
  918. completion_steps->function()();
  919. return;
  920. }
  921. // 2. Let failure be false.
  922. auto failure = false;
  923. // 3. If navigationParams is a non-fetch scheme navigation params, then set entry's document state's document to the result of
  924. // running attempt to create a non-fetch scheme document navigationParams
  925. if (navigation_params.has<JS::NonnullGCPtr<NonFetchSchemeNavigationParams>>()) {
  926. // FIXME: https://github.com/whatwg/html/issues/9767
  927. // We probably are expected to skip to steps 13 and 14 and return after doing this
  928. entry->document_state()->set_document(attempt_to_create_a_non_fetch_scheme_document(navigation_params.get<JS::NonnullGCPtr<NonFetchSchemeNavigationParams>>()));
  929. if (entry->document()) {
  930. entry->document_state()->set_ever_populated(true);
  931. }
  932. if (completion_steps)
  933. completion_steps->function()();
  934. return;
  935. }
  936. // 4. Otherwise, if navigationParams is null, then set failure to true.
  937. if (navigation_params.has<Empty>() || navigation_params.has<NullWithError>()) {
  938. failure = true;
  939. }
  940. // FIXME: 5. Otherwise, if the result of should navigation response to navigation request of type in target be blocked by Content Security Policy? given navigationParams's request,
  941. // navigationParams's response, navigationParams's policy container's CSP list, cspNavigationType, and navigable is "Blocked", then set failure to true.
  942. // FIXME: 6. Otherwise, if navigationParams's reserved environment is non-null and the result of checking a navigation response's adherence to its embedder policy given
  943. // navigationParams's response, navigable, and navigationParams's policy container's embedder policy is false, then set failure to true.
  944. // FIXME: 7. Otherwise, if the result of checking a navigation response's adherence to `X-Frame-Options` given navigationParams's response, navigable,
  945. // navigationParams's policy container's CSP list, and navigationParams's origin is false, then set failure to true.
  946. // 8. If failure is true, then:
  947. if (failure) {
  948. // 1. Set entry's document state's document to the result of creating a document for inline content that doesn't have a DOM, given navigable, null, and navTimingType.
  949. // The inline content should indicate to the user the sort of error that occurred.
  950. auto error_message = navigation_params.has<NullWithError>() ? navigation_params.get<NullWithError>() : "Unknown error"sv;
  951. auto error_html = load_error_page(entry->url(), error_message).release_value_but_fixme_should_propagate_errors();
  952. entry->document_state()->set_document(create_document_for_inline_content(this, navigation_id, [error_html](auto& document) {
  953. auto parser = HTML::HTMLParser::create(document, error_html, "utf-8"sv);
  954. document.set_url(URL::URL("about:error"));
  955. parser->run();
  956. }));
  957. // 2. Set entry's document state's document's salvageable to false.
  958. entry->document()->set_salvageable(false);
  959. // FIXME: 3. If navigationParams is not null, then:
  960. if (!navigation_params.has<Empty>()) {
  961. // 1. FIXME: Run the environment discarding steps for navigationParams's reserved environment.
  962. // 2. Invoke WebDriver BiDi navigation failed with currentBrowsingContext and a new WebDriver BiDi navigation status
  963. // whose id is navigationId, status is "canceled", and url is navigationParams's response's URL.
  964. }
  965. }
  966. // FIXME: 9. Otherwise, if navigationParams's response's status is 204 or 205, then:
  967. else if (navigation_params.get<JS::NonnullGCPtr<NavigationParams>>()->response->status() == 204 || navigation_params.get<JS::NonnullGCPtr<NavigationParams>>()->response->status() == 205) {
  968. // 1. Run completionSteps.
  969. if (completion_steps)
  970. completion_steps->function()();
  971. // 2. Return.
  972. return;
  973. }
  974. // FIXME: 10. Otherwise, if navigationParams's response has a `Content-Disposition`
  975. // header specifying the attachment disposition type, then:
  976. // 11. Otherwise:
  977. else {
  978. // 1. Let document be the result of loading a document given navigationParams, sourceSnapshotParams,
  979. // and entry's document state's initiator origin.
  980. auto document = load_document(navigation_params.get<JS::NonnullGCPtr<NavigationParams>>());
  981. // 2. If document is null, then run completionSteps and return.
  982. if (!document) {
  983. if (completion_steps)
  984. completion_steps->function()();
  985. return;
  986. }
  987. // 3. Set entry's document state's document to document.
  988. entry->document_state()->set_document(document.ptr());
  989. // 4. Set entry's document state's origin to document's origin.
  990. entry->document_state()->set_origin(document->origin());
  991. }
  992. // FIXME: 12. If entry's document state's request referrer is "client", then set it to request's referrer.
  993. // https://github.com/whatwg/html/issues/9767
  994. // What is "request" here?
  995. // 13. If entry's document state's document is not null, then set entry's document state's ever populated to true.
  996. if (entry->document()) {
  997. entry->document_state()->set_ever_populated(true);
  998. }
  999. // 14. Run completionSteps.
  1000. if (completion_steps)
  1001. completion_steps->function()();
  1002. }));
  1003. return {};
  1004. }
  1005. // To navigate a navigable navigable to a URL url using a Document sourceDocument,
  1006. // with an optional POST resource, string, or null documentResource (default null),
  1007. // an optional response-or-null response (default null), an optional boolean exceptionsEnabled (default false),
  1008. // an optional NavigationHistoryBehavior historyHandling (default "auto"),
  1009. // an optional serialized state-or-null navigationAPIState (default null),
  1010. // an optional entry list or null formDataEntryList (default null),
  1011. // an optional referrer policy referrerPolicy (default the empty string),
  1012. // and an optional user navigation involvement userInvolvement (default "none"):
  1013. // https://html.spec.whatwg.org/multipage/browsing-the-web.html#navigate
  1014. WebIDL::ExceptionOr<void> Navigable::navigate(NavigateParams params)
  1015. {
  1016. auto const& url = params.url;
  1017. auto source_document = params.source_document;
  1018. auto const& document_resource = params.document_resource;
  1019. auto response = params.response;
  1020. auto exceptions_enabled = params.exceptions_enabled;
  1021. auto history_handling = params.history_handling;
  1022. auto const& navigation_api_state = params.navigation_api_state;
  1023. auto const& form_data_entry_list = params.form_data_entry_list;
  1024. auto referrer_policy = params.referrer_policy;
  1025. auto user_involvement = params.user_involvement;
  1026. auto& active_document = *this->active_document();
  1027. auto& realm = active_document.realm();
  1028. auto& vm = this->vm();
  1029. // 1. Let cspNavigationType be "form-submission" if formDataEntryList is non-null; otherwise "other".
  1030. auto csp_navigation_type = form_data_entry_list.has_value() ? CSPNavigationType::FormSubmission : CSPNavigationType::Other;
  1031. // 2. Let sourceSnapshotParams be the result of snapshotting source snapshot params given sourceDocument.
  1032. auto source_snapshot_params = source_document->snapshot_source_snapshot_params();
  1033. // 3. Let initiatorOriginSnapshot be sourceDocument's origin.
  1034. auto initiator_origin_snapshot = source_document->origin();
  1035. // 4. Let initiatorBaseURLSnapshot be sourceDocument's document base URL.
  1036. auto initiator_base_url_snapshot = source_document->base_url();
  1037. // 5. If sourceDocument's node navigable is not allowed by sandboxing to navigate navigable given and sourceSnapshotParams, then:
  1038. if (!source_document->navigable()->allowed_by_sandboxing_to_navigate(*this, source_snapshot_params)) {
  1039. // 1. If exceptionsEnabled is true, then throw a "SecurityError" DOMException.
  1040. if (exceptions_enabled) {
  1041. return WebIDL::SecurityError::create(realm, "Source document's node navigable is not allowed to navigate"_fly_string);
  1042. }
  1043. // 2 Return.
  1044. return {};
  1045. }
  1046. // 6. Let navigationId be the result of generating a random UUID.
  1047. String navigation_id = TRY_OR_THROW_OOM(vm, Crypto::generate_random_uuid());
  1048. // FIXME: 7. If the surrounding agent is equal to navigable's active document's relevant agent, then continue these steps.
  1049. // Otherwise, queue a global task on the navigation and traversal task source given navigable's active window to continue these steps.
  1050. // 8. If navigable's active document's unload counter is greater than 0,
  1051. // then invoke WebDriver BiDi navigation failed with a WebDriver BiDi navigation status whose id is navigationId,
  1052. // status is "canceled", and url is url, and return.
  1053. if (active_document.unload_counter() > 0) {
  1054. // FIXME: invoke WebDriver BiDi navigation failed with a WebDriver BiDi navigation status whose id is navigationId,
  1055. // status is "canceled", and url is url
  1056. return {};
  1057. }
  1058. // 9. If historyHandling is "auto", then:
  1059. if (history_handling == Bindings::NavigationHistoryBehavior::Auto) {
  1060. // FIXME: Fix spec typo targetNavigable --> navigable
  1061. // 1. If url equals navigable's active document's URL,
  1062. // and initiatorOriginSnapshot is same origin with targetNavigable's active document's origin,
  1063. // then set historyHandling to "replace".
  1064. if (url.equals(active_document.url(), URL::ExcludeFragment::Yes) && initiator_origin_snapshot.is_same_origin(active_document.origin()))
  1065. history_handling = Bindings::NavigationHistoryBehavior::Replace;
  1066. // 2. Otherwise, set historyHandling to "push".
  1067. else
  1068. history_handling = Bindings::NavigationHistoryBehavior::Push;
  1069. }
  1070. // 10. If the navigation must be a replace given url and navigable's active document, then set historyHandling to "replace".
  1071. if (navigation_must_be_a_replace(url, active_document))
  1072. history_handling = Bindings::NavigationHistoryBehavior::Replace;
  1073. // 11. If all of the following are true:
  1074. // - documentResource is null;
  1075. // - response is null;
  1076. // - url equals navigable's active session history entry's URL with exclude fragments set to true; and
  1077. // - url's fragment is non-null
  1078. if (document_resource.has<Empty>()
  1079. && !response
  1080. && url.equals(active_session_history_entry()->url(), URL::ExcludeFragment::Yes)
  1081. && url.fragment().has_value()) {
  1082. // 1. Navigate to a fragment given navigable, url, historyHandling, userInvolvement, navigationAPIState, and navigationId.
  1083. TRY(navigate_to_a_fragment(url, to_history_handling_behavior(history_handling), user_involvement, navigation_api_state, navigation_id));
  1084. // 2. Return.
  1085. return {};
  1086. }
  1087. // 12. If navigable's parent is non-null, then set navigable's is delaying load events to true.
  1088. if (parent() != nullptr)
  1089. set_delaying_load_events(true);
  1090. // 13. Let targetBrowsingContext be navigable's active browsing context.
  1091. [[maybe_unused]] auto target_browsing_context = active_browsing_context();
  1092. // 14. Let targetSnapshotParams be the result of snapshotting target snapshot params given navigable.
  1093. auto target_snapshot_params = snapshot_target_snapshot_params();
  1094. // FIXME: 15. Invoke WebDriver BiDi navigation started with targetBrowsingContext, and a new WebDriver BiDi navigation status whose id is navigationId, url is url, and status is "pending".
  1095. // 16. If navigable's ongoing navigation is "traversal", then:
  1096. if (ongoing_navigation().has<Traversal>()) {
  1097. // FIXME: 1. Invoke WebDriver BiDi navigation failed with targetBrowsingContext and a new WebDriver BiDi navigation status whose id is navigationId, status is "canceled", and url is url.
  1098. // 2. Return.
  1099. return {};
  1100. }
  1101. // 17. Set navigable's ongoing navigation to navigationId.
  1102. set_ongoing_navigation(navigation_id);
  1103. // 18. If url's scheme is "javascript", then:
  1104. if (url.scheme() == "javascript"sv) {
  1105. // 1. Queue a global task on the navigation and traversal task source given navigable's active window to navigate to a javascript: URL given navigable, url, historyHandling, initiatorOriginSnapshot, and cspNavigationType.
  1106. queue_global_task(Task::Source::NavigationAndTraversal, *active_window(), JS::create_heap_function(heap(), [this, url, history_handling, initiator_origin_snapshot, csp_navigation_type, navigation_id] {
  1107. (void)navigate_to_a_javascript_url(url, to_history_handling_behavior(history_handling), initiator_origin_snapshot, csp_navigation_type, navigation_id);
  1108. }));
  1109. // 2. Return.
  1110. return {};
  1111. }
  1112. // 19. If all of the following are true:
  1113. // - userInvolvement is not "browser UI";
  1114. // - navigable's active document's origin is same origin-domain with sourceDocument's origin;
  1115. // - navigable's active document's is initial about:blank is false; and
  1116. // - url's scheme is a fetch scheme
  1117. // then:
  1118. if (user_involvement != UserNavigationInvolvement::BrowserUI && active_document.origin().is_same_origin_domain(source_document->origin()) && !active_document.is_initial_about_blank() && Fetch::Infrastructure::is_fetch_scheme(url.scheme())) {
  1119. // 1. Let navigation be navigable's active window's navigation API.
  1120. auto navigation = active_window()->navigation();
  1121. // 2. Let entryListForFiring be formDataEntryList if documentResource is a POST resource; otherwise, null.
  1122. auto entry_list_for_firing = [&]() -> Optional<Vector<XHR::FormDataEntry>&> {
  1123. if (document_resource.has<POSTResource>())
  1124. return form_data_entry_list;
  1125. return {};
  1126. }();
  1127. // 3. Let navigationAPIStateForFiring be navigationAPIState if navigationAPIState is not null;
  1128. // otherwise, StructuredSerializeForStorage(undefined).
  1129. auto navigation_api_state_for_firing = navigation_api_state.value_or(MUST(structured_serialize_for_storage(vm, JS::js_undefined())));
  1130. // FIXME: 4. Let continue be the result of firing a push/replace/reload navigate event at navigation
  1131. // with navigationType set to historyHandling, isSameDocument set to false, userInvolvement set to userInvolvement,
  1132. // formDataEntryList set to entryListForFiring, destinationURL set to url, and navigationAPIState set to navigationAPIStateForFiring.
  1133. (void)navigation;
  1134. (void)entry_list_for_firing;
  1135. (void)navigation_api_state_for_firing;
  1136. // FIXME: 5. If continue is false, then return.
  1137. }
  1138. if (is_top_level_traversable()) {
  1139. active_browsing_context()->page().client().page_did_start_loading(url, false);
  1140. }
  1141. // 20. In parallel, run these steps:
  1142. Platform::EventLoopPlugin::the().deferred_invoke([this, source_snapshot_params, target_snapshot_params, csp_navigation_type, document_resource, url, navigation_id, referrer_policy, initiator_origin_snapshot, response, history_handling, initiator_base_url_snapshot] {
  1143. // NOTE: Not in the spec but subsequent steps will fail because destroyed navigable does not have active document.
  1144. if (has_been_destroyed()) {
  1145. set_delaying_load_events(false);
  1146. return;
  1147. }
  1148. // FIXME: 1. Let unloadPromptCanceled be the result of checking if unloading is user-canceled for navigable's active document's inclusive descendant navigables.
  1149. // FIXME: 2. If unloadPromptCanceled is true, or navigable's ongoing navigation is no longer navigationId, then:
  1150. if (!ongoing_navigation().has<String>() || ongoing_navigation().get<String>() != navigation_id) {
  1151. // FIXME: 1. Invoke WebDriver BiDi navigation failed with targetBrowsingContext and a new WebDriver BiDi navigation status whose id is navigationId, status is "canceled", and url is url.
  1152. // 2. Abort these steps.
  1153. set_delaying_load_events(false);
  1154. return;
  1155. }
  1156. // 3. Queue a global task on the navigation and traversal task source given navigable's active window to abort a document and its descendants given navigable's active document.
  1157. queue_global_task(Task::Source::NavigationAndTraversal, *active_window(), JS::create_heap_function(heap(), [this] {
  1158. VERIFY(this->active_document());
  1159. this->active_document()->abort_a_document_and_its_descendants();
  1160. }));
  1161. // 4. Let documentState be a new document state with
  1162. // request referrer policy: referrerPolicy
  1163. // initiator origin: initiatorOriginSnapshot
  1164. // resource: documentResource
  1165. // navigable target name: navigable's target name
  1166. JS::NonnullGCPtr<DocumentState> document_state = *heap().allocate_without_realm<DocumentState>();
  1167. document_state->set_request_referrer_policy(referrer_policy);
  1168. document_state->set_initiator_origin(initiator_origin_snapshot);
  1169. document_state->set_resource(document_resource);
  1170. document_state->set_navigable_target_name(target_name());
  1171. // 5. If url matches about:blank or is about:srcdoc, then set documentState's origin to documentState's initiator origin.
  1172. if (url_matches_about_blank(url) || url_matches_about_srcdoc(url)) {
  1173. // document_resource cannot have an Empty if the url is about:srcdoc since we rely on document_resource
  1174. // having a String to call create_navigation_params_from_a_srcdoc_resource
  1175. if (url_matches_about_srcdoc(url) && document_resource.has<Empty>()) {
  1176. document_state->set_resource({ String {} });
  1177. }
  1178. // 1. Set documentState's origin to initiatorOriginSnapshot.
  1179. document_state->set_origin(document_state->initiator_origin());
  1180. // 2. Set documentState's about base URL to initiatorBaseURLSnapshot.
  1181. document_state->set_about_base_url(initiator_base_url_snapshot);
  1182. }
  1183. // 6. Let historyEntry be a new session history entry, with its URL set to url and its document state set to documentState.
  1184. JS::NonnullGCPtr<SessionHistoryEntry> history_entry = *heap().allocate_without_realm<SessionHistoryEntry>();
  1185. history_entry->set_url(url);
  1186. history_entry->set_document_state(document_state);
  1187. // 7. Let navigationParams be null.
  1188. NavigationParamsVariant navigation_params = Empty {};
  1189. // FIXME: 8. If response is non-null:
  1190. if (response) {
  1191. }
  1192. // 9. Attempt to populate the history entry's document
  1193. // for historyEntry, given navigable, "navigate", sourceSnapshotParams,
  1194. // targetSnapshotParams, navigationId, navigationParams, cspNavigationType, with allowPOST
  1195. // set to true and completionSteps set to the following step:
  1196. populate_session_history_entry_document(history_entry, source_snapshot_params, target_snapshot_params, navigation_id, navigation_params, csp_navigation_type, true, JS::create_heap_function(heap(), [this, history_entry, history_handling, navigation_id] {
  1197. // 1. Append session history traversal steps to navigable's traversable to finalize a cross-document navigation given navigable, historyHandling, and historyEntry.
  1198. traversable_navigable()->append_session_history_traversal_steps(JS::create_heap_function(heap(), [this, history_entry, history_handling, navigation_id] {
  1199. if (this->has_been_destroyed()) {
  1200. // NOTE: This check is not in the spec but we should not continue navigation if navigable has been destroyed.
  1201. set_delaying_load_events(false);
  1202. return;
  1203. }
  1204. if (this->ongoing_navigation() != navigation_id) {
  1205. // NOTE: This check is not in the spec but we should not continue navigation if ongoing navigation id has changed.
  1206. set_delaying_load_events(false);
  1207. return;
  1208. }
  1209. finalize_a_cross_document_navigation(*this, to_history_handling_behavior(history_handling), history_entry);
  1210. }));
  1211. })).release_value_but_fixme_should_propagate_errors();
  1212. });
  1213. return {};
  1214. }
  1215. // https://html.spec.whatwg.org/multipage/browsing-the-web.html#navigate-fragid
  1216. WebIDL::ExceptionOr<void> Navigable::navigate_to_a_fragment(URL::URL const& url, HistoryHandlingBehavior history_handling, UserNavigationInvolvement user_involvement, Optional<SerializationRecord> navigation_api_state, String navigation_id)
  1217. {
  1218. (void)navigation_id;
  1219. // 1. Let navigation be navigable's active window's navigation API.
  1220. auto navigation = active_window()->navigation();
  1221. // 2. Let destinationNavigationAPIState be navigable's active session history entry's navigation API state.
  1222. // 3. If navigationAPIState is not null, then set destinationNavigationAPIState to navigationAPIState.
  1223. auto destination_navigation_api_state = navigation_api_state.has_value() ? *navigation_api_state : active_session_history_entry()->navigation_api_state();
  1224. // 4. Let continue be the result of firing a push/replace/reload navigate event at navigation with navigationType set to historyHandling, isSameDocument set to true,
  1225. // userInvolvement set to userInvolvement, and destinationURL set to url, and navigationAPIState set to destinationNavigationAPIState.
  1226. auto navigation_type = history_handling == HistoryHandlingBehavior::Push ? Bindings::NavigationType::Push : Bindings::NavigationType::Replace;
  1227. bool const continue_ = navigation->fire_a_push_replace_reload_navigate_event(navigation_type, url, true, user_involvement, {}, destination_navigation_api_state);
  1228. // 5. If continue is false, then return.
  1229. if (!continue_)
  1230. return {};
  1231. // 6. Let historyEntry be a new session history entry, with
  1232. // URL: url
  1233. // document state: navigable's active session history entry's document state
  1234. // navigation API state: destinationNavigationAPIState
  1235. // scroll restoration mode: navigable's active session history entry's scroll restoration mode
  1236. JS::NonnullGCPtr<SessionHistoryEntry> history_entry = heap().allocate_without_realm<SessionHistoryEntry>();
  1237. history_entry->set_url(url);
  1238. history_entry->set_document_state(active_session_history_entry()->document_state());
  1239. history_entry->set_navigation_api_state(destination_navigation_api_state);
  1240. history_entry->set_scroll_restoration_mode(active_session_history_entry()->scroll_restoration_mode());
  1241. // 7. Let entryToReplace be navigable's active session history entry if historyHandling is "replace", otherwise null.
  1242. auto entry_to_replace = history_handling == HistoryHandlingBehavior::Replace ? active_session_history_entry() : nullptr;
  1243. // 8. Let history be navigable's active document's history object.
  1244. auto history = active_document()->history();
  1245. // 9. Let scriptHistoryIndex be history's index.
  1246. auto script_history_index = history->m_index;
  1247. // 10. Let scriptHistoryLength be history's length.
  1248. auto script_history_length = history->m_length;
  1249. // 11. If historyHandling is "push", then:
  1250. if (history_handling == HistoryHandlingBehavior::Push) {
  1251. // 1. Set history's state to null.
  1252. history->set_state(JS::js_null());
  1253. // 2. Increment scriptHistoryIndex.
  1254. script_history_index++;
  1255. // 3. Set scriptHistoryLength to scriptHistoryIndex + 1.
  1256. script_history_length = script_history_index + 1;
  1257. }
  1258. // 12. Set navigable's active session history entry to historyEntry.
  1259. m_active_session_history_entry = history_entry;
  1260. // 13. Update document for history step application given navigable's active document, historyEntry, true, scriptHistoryIndex, and scriptHistoryLength.
  1261. // AD HOC: Skip updating the navigation api entries twice here
  1262. active_document()->update_for_history_step_application(*history_entry, true, script_history_length, script_history_index, navigation_type, {}, {}, false);
  1263. // 14. Update the navigation API entries for a same-document navigation given navigation, historyEntry, and historyHandling.
  1264. navigation->update_the_navigation_api_entries_for_a_same_document_navigation(history_entry, navigation_type);
  1265. // 15. Scroll to the fragment given navigable's active document.
  1266. // FIXME: Specification doesn't say when document url needs to update during fragment navigation
  1267. active_document()->set_url(url);
  1268. active_document()->scroll_to_the_fragment();
  1269. // 16. Let traversable be navigable's traversable navigable.
  1270. auto traversable = traversable_navigable();
  1271. // 17. Append the following session history synchronous navigation steps involving navigable to traversable:
  1272. traversable->append_session_history_synchronous_navigation_steps(*this, JS::create_heap_function(heap(), [this, traversable, history_entry, entry_to_replace, navigation_id, history_handling] {
  1273. // 1. Finalize a same-document navigation given traversable, navigable, historyEntry, and entryToReplace.
  1274. finalize_a_same_document_navigation(*traversable, *this, history_entry, entry_to_replace, history_handling);
  1275. // FIXME: 2. Invoke WebDriver BiDi fragment navigated with navigable's active browsing context and a new WebDriver BiDi
  1276. // navigation status whose id is navigationId, url is url, and status is "complete".
  1277. (void)navigation_id;
  1278. }));
  1279. return {};
  1280. }
  1281. // https://html.spec.whatwg.org/multipage/browsing-the-web.html#evaluate-a-javascript:-url
  1282. WebIDL::ExceptionOr<JS::GCPtr<DOM::Document>> Navigable::evaluate_javascript_url(URL::URL const& url, Origin const& new_document_origin, String navigation_id)
  1283. {
  1284. auto& vm = this->vm();
  1285. auto& realm = active_window()->realm();
  1286. // 1. Let urlString be the result of running the URL serializer on url.
  1287. auto url_string = url.serialize();
  1288. // 2. Let encodedScriptSource be the result of removing the leading "javascript:" from urlString.
  1289. auto encoded_script_source = url_string.substring_view(11, url_string.length() - 11);
  1290. // 3. Let scriptSource be the UTF-8 decoding of the percent-decoding of encodedScriptSource.
  1291. auto script_source = URL::percent_decode(encoded_script_source);
  1292. // 4. Let settings be targetNavigable's active document's relevant settings object.
  1293. auto& settings = active_document()->relevant_settings_object();
  1294. // 5. Let baseURL be settings's API base URL.
  1295. auto base_url = settings.api_base_url();
  1296. // 6. Let script be the result of creating a classic script given scriptSource, settings, baseURL, and the default classic script fetch options.
  1297. auto script = HTML::ClassicScript::create("(javascript url)", script_source, settings, base_url);
  1298. // 7. Let evaluationStatus be the result of running the classic script script.
  1299. auto evaluation_status = script->run();
  1300. // 8. Let result be null.
  1301. String result;
  1302. // 9. If evaluationStatus is a normal completion, and evaluationStatus.[[Value]] is a String, then set result to evaluationStatus.[[Value]].
  1303. if (evaluation_status.type() == JS::Completion::Type::Normal && evaluation_status.value()->is_string()) {
  1304. result = evaluation_status.value()->as_string().utf8_string();
  1305. } else {
  1306. // 10. Otherwise, return null.
  1307. return nullptr;
  1308. }
  1309. // 11. Let response be a new response with
  1310. // URL: targetNavigable's active document's URL
  1311. // header list: «(`Content-Type`, `text/html;charset=utf-8`)»
  1312. // body: the UTF-8 encoding of result, as a body
  1313. auto response = Fetch::Infrastructure::Response::create(vm);
  1314. response->url_list().append(active_document()->url());
  1315. auto header = Fetch::Infrastructure::Header::from_string_pair("Content-Type"sv, "text/html"sv);
  1316. response->header_list()->append(move(header));
  1317. response->set_body(TRY(Fetch::Infrastructure::byte_sequence_as_body(realm, result.bytes())));
  1318. // 12. Let policyContainer be targetNavigable's active document's policy container.
  1319. auto const& policy_container = active_document()->policy_container();
  1320. // FIXME: 13. Let finalSandboxFlags be policyContainer's CSP list's CSP-derived sandboxing flags.
  1321. auto final_sandbox_flags = SandboxingFlagSet {};
  1322. // 14. Let coop be targetNavigable's active document's cross-origin opener policy.
  1323. auto const& coop = active_document()->cross_origin_opener_policy();
  1324. // 15. Let coopEnforcementResult be a new cross-origin opener policy enforcement result with
  1325. // url: url
  1326. // origin: newDocumentOrigin
  1327. // cross-origin opener policy: coop
  1328. CrossOriginOpenerPolicyEnforcementResult coop_enforcement_result {
  1329. .url = url,
  1330. .origin = new_document_origin,
  1331. .cross_origin_opener_policy = coop,
  1332. };
  1333. // 16. Let navigationParams be a new navigation params, with
  1334. // id: navigationId
  1335. // navigable: targetNavigable
  1336. // request: null
  1337. // response: response
  1338. // fetch controller: null
  1339. // commit early hints: null
  1340. // COOP enforcement result: coopEnforcementResult
  1341. // reserved environment: null
  1342. // origin: newDocumentOrigin
  1343. // policy container: policyContainer
  1344. // final sandboxing flag set: finalSandboxFlags
  1345. // cross-origin opener policy: coop
  1346. // FIXME: navigation timing type: "navigate"
  1347. // about base URL: targetNavigable's active document's about base URL
  1348. auto navigation_params = vm.heap().allocate_without_realm<NavigationParams>();
  1349. navigation_params->id = navigation_id;
  1350. navigation_params->navigable = this;
  1351. navigation_params->request = {};
  1352. navigation_params->response = response;
  1353. navigation_params->fetch_controller = nullptr;
  1354. navigation_params->commit_early_hints = nullptr;
  1355. navigation_params->coop_enforcement_result = move(coop_enforcement_result);
  1356. navigation_params->reserved_environment = {};
  1357. navigation_params->origin = new_document_origin;
  1358. navigation_params->policy_container = policy_container;
  1359. navigation_params->final_sandboxing_flag_set = final_sandbox_flags;
  1360. navigation_params->cross_origin_opener_policy = coop;
  1361. navigation_params->about_base_url = active_document()->about_base_url();
  1362. // 17. Return the result of loading an HTML document given navigationParams.
  1363. return load_document(navigation_params);
  1364. }
  1365. // https://html.spec.whatwg.org/multipage/browsing-the-web.html#navigate-to-a-javascript:-url
  1366. WebIDL::ExceptionOr<void> Navigable::navigate_to_a_javascript_url(URL::URL const& url, HistoryHandlingBehavior history_handling, Origin const& initiator_origin, CSPNavigationType csp_navigation_type, String navigation_id)
  1367. {
  1368. // 1. Assert: historyHandling is "replace".
  1369. VERIFY(history_handling == HistoryHandlingBehavior::Replace);
  1370. // 2. Set the ongoing navigation for targetNavigable to null.
  1371. set_ongoing_navigation({});
  1372. // 3. If initiatorOrigin is not same origin-domain with targetNavigable's active document's origin, then return.
  1373. if (!initiator_origin.is_same_origin_domain(active_document()->origin()))
  1374. return {};
  1375. // FIXME: 4. Let request be a new request whose URL is url.
  1376. // FIXME: 5. If the result of should navigation request of type be blocked by Content Security Policy? given request and cspNavigationType is "Blocked", then return.
  1377. (void)csp_navigation_type;
  1378. // 6. Let newDocument be the result of evaluating a javascript: URL given targetNavigable, url, and initiatorOrigin.
  1379. auto new_document = TRY(evaluate_javascript_url(url, initiator_origin, navigation_id));
  1380. // 7. If newDocument is null, then return.
  1381. if (!new_document) {
  1382. // NOTE: In this case, some JavaScript code was executed, but no new Document was created, so we will not perform a navigation.
  1383. return {};
  1384. }
  1385. // 8. Assert: initiatorOrigin is newDocument's origin.
  1386. VERIFY(initiator_origin == new_document->origin());
  1387. // 9. Let entryToReplace be targetNavigable's active session history entry.
  1388. auto entry_to_replace = active_session_history_entry();
  1389. // 10. Let oldDocState be entryToReplace's document state.
  1390. auto old_doc_state = entry_to_replace->document_state();
  1391. // 11. Let documentState be a new document state with
  1392. // document: newDocument
  1393. // history policy container: a clone of the oldDocState's history policy container if it is non-null; null otherwise
  1394. // request referrer: oldDocState's request referrer
  1395. // request referrer policy: oldDocState's request referrer policy
  1396. // initiator origin: initiatorOrigin
  1397. // origin: initiatorOrigin
  1398. // about base URL: oldDocState's about base URL
  1399. // resource: null
  1400. // ever populated: true
  1401. // navigable target name: oldDocState's navigable target name
  1402. JS::NonnullGCPtr<DocumentState> document_state = *heap().allocate_without_realm<DocumentState>();
  1403. document_state->set_document(new_document);
  1404. document_state->set_history_policy_container(old_doc_state->history_policy_container());
  1405. document_state->set_request_referrer(old_doc_state->request_referrer());
  1406. document_state->set_request_referrer_policy(old_doc_state->request_referrer_policy());
  1407. document_state->set_initiator_origin(initiator_origin);
  1408. document_state->set_origin(initiator_origin);
  1409. document_state->set_about_base_url(old_doc_state->about_base_url());
  1410. document_state->set_ever_populated(true);
  1411. document_state->set_navigable_target_name(old_doc_state->navigable_target_name());
  1412. // 12. Let historyEntry be a new session history entry, with
  1413. // URL: entryToReplace's URL
  1414. // document state: documentState
  1415. JS::NonnullGCPtr<SessionHistoryEntry> history_entry = *heap().allocate_without_realm<SessionHistoryEntry>();
  1416. history_entry->set_url(entry_to_replace->url());
  1417. history_entry->set_document_state(document_state);
  1418. // 13. Append session history traversal steps to targetNavigable's traversable to finalize a cross-document navigation with targetNavigable, historyHandling, and historyEntry.
  1419. traversable_navigable()->append_session_history_traversal_steps(JS::create_heap_function(heap(), [this, history_entry, history_handling, navigation_id] {
  1420. finalize_a_cross_document_navigation(*this, history_handling, history_entry);
  1421. }));
  1422. return {};
  1423. }
  1424. // https://html.spec.whatwg.org/multipage/browsing-the-web.html#reload
  1425. void Navigable::reload()
  1426. {
  1427. // 1. Set navigable's active session history entry's document state's reload pending to true.
  1428. active_session_history_entry()->document_state()->set_reload_pending(true);
  1429. // 2. Let traversable be navigable's traversable navigable.
  1430. auto traversable = traversable_navigable();
  1431. // 3. Append the following session history traversal steps to traversable:
  1432. traversable->append_session_history_traversal_steps(JS::create_heap_function(heap(), [traversable] {
  1433. // 1. Apply the reload history step to traversable.
  1434. traversable->apply_the_reload_history_step();
  1435. }));
  1436. }
  1437. // https://html.spec.whatwg.org/multipage/browsing-the-web.html#the-navigation-must-be-a-replace
  1438. bool navigation_must_be_a_replace(URL::URL const& url, DOM::Document const& document)
  1439. {
  1440. return url.scheme() == "javascript"sv || document.is_initial_about_blank();
  1441. }
  1442. // https://html.spec.whatwg.org/multipage/browsing-the-web.html#allowed-to-navigate
  1443. bool Navigable::allowed_by_sandboxing_to_navigate(Navigable const& target, SourceSnapshotParams const& source_snapshot_params)
  1444. {
  1445. auto& source = *this;
  1446. auto is_ancestor_of = [](Navigable const& a, Navigable const& b) {
  1447. for (auto parent = b.parent(); parent; parent = parent->parent()) {
  1448. if (parent.ptr() == &a)
  1449. return true;
  1450. }
  1451. return false;
  1452. };
  1453. // A navigable source is allowed by sandboxing to navigate a second navigable target,
  1454. // given a source snapshot params sourceSnapshotParams, if the following steps return true:
  1455. // 1. If source is target, then return true.
  1456. if (&source == &target)
  1457. return true;
  1458. // 2. If source is an ancestor of target, then return true.
  1459. if (is_ancestor_of(source, target))
  1460. return true;
  1461. // 3. If target is an ancestor of source, then:
  1462. if (is_ancestor_of(target, source)) {
  1463. // 1. If target is not a top-level traversable, then return true.
  1464. if (!target.is_top_level_traversable())
  1465. return true;
  1466. // 2. If sourceSnapshotParams's has transient activation is true, and sourceSnapshotParams's sandboxing flags's
  1467. // sandboxed top-level navigation with user activation browsing context flag is set, then return false.
  1468. if (source_snapshot_params.has_transient_activation && has_flag(source_snapshot_params.sandboxing_flags, SandboxingFlagSet::SandboxedTopLevelNavigationWithUserActivation))
  1469. return false;
  1470. // 3. If sourceSnapshotParams's has transient activation is false, and sourceSnapshotParams's sandboxing flags's
  1471. // sandboxed top-level navigation without user activation browsing context flag is set, then return false.
  1472. if (!source_snapshot_params.has_transient_activation && has_flag(source_snapshot_params.sandboxing_flags, SandboxingFlagSet::SandboxedTopLevelNavigationWithoutUserActivation))
  1473. return false;
  1474. // 4. Return true.
  1475. return true;
  1476. }
  1477. // 4. If target is a top-level traversable:
  1478. if (target.is_top_level_traversable()) {
  1479. // FIXME: 1. If source is the one permitted sandboxed navigator of target, then return true.
  1480. // 2. If sourceSnapshotParams's sandboxing flags's sandboxed navigation browsing context flag is set, then return false.
  1481. if (has_flag(source_snapshot_params.sandboxing_flags, SandboxingFlagSet::SandboxedNavigation))
  1482. return false;
  1483. // 3. Return true.
  1484. return true;
  1485. }
  1486. // 5. If sourceSnapshotParams's sandboxing flags's sandboxed navigation browsing context flag is set, then return false.
  1487. // 6. Return true.
  1488. return !has_flag(source_snapshot_params.sandboxing_flags, SandboxingFlagSet::SandboxedNavigation);
  1489. }
  1490. // https://html.spec.whatwg.org/multipage/browsing-the-web.html#snapshotting-target-snapshot-params
  1491. TargetSnapshotParams Navigable::snapshot_target_snapshot_params()
  1492. {
  1493. // To snapshot target snapshot params given a navigable targetNavigable, return a new target snapshot params
  1494. // with sandboxing flags set to the result of determining the creation sandboxing flags given targetNavigable's
  1495. // active browsing context and targetNavigable's container.
  1496. return { determine_the_creation_sandboxing_flags(*active_browsing_context(), container()) };
  1497. }
  1498. // https://html.spec.whatwg.org/multipage/browsing-the-web.html#finalize-a-cross-document-navigation
  1499. void finalize_a_cross_document_navigation(JS::NonnullGCPtr<Navigable> navigable, HistoryHandlingBehavior history_handling, JS::NonnullGCPtr<SessionHistoryEntry> history_entry)
  1500. {
  1501. // NOTE: This is not in the spec but we should not navigate destroyed navigable.
  1502. if (navigable->has_been_destroyed())
  1503. return;
  1504. // 1. FIXME: Assert: this is running on navigable's traversable navigable's session history traversal queue.
  1505. // 2. Set navigable's is delaying load events to false.
  1506. navigable->set_delaying_load_events(false);
  1507. // 3. If historyEntry's document is null, then return.
  1508. if (!history_entry->document())
  1509. return;
  1510. // 4. If all of the following are true:
  1511. // - navigable's parent is null;
  1512. // - historyEntry's document's browsing context is not an auxiliary browsing context whose opener browsing context is non-null; and
  1513. // - historyEntry's document's origin is not navigable's active document's origin
  1514. // then set historyEntry's document state's navigable target name to the empty string.
  1515. if (navigable->parent() == nullptr && history_entry->document()->browsing_context()->opener_browsing_context() != nullptr && history_entry->document()->origin() != navigable->active_document()->origin())
  1516. history_entry->document_state()->set_navigable_target_name(String {});
  1517. // 5. Let entryToReplace be navigable's active session history entry if historyHandling is "replace", otherwise null.
  1518. auto entry_to_replace = history_handling == HistoryHandlingBehavior::Replace ? navigable->active_session_history_entry() : nullptr;
  1519. // 6. Let traversable be navigable's traversable navigable.
  1520. auto traversable = navigable->traversable_navigable();
  1521. // 7. Let targetStep be null.
  1522. int target_step;
  1523. // 8. Let targetEntries be the result of getting session history entries for navigable.
  1524. auto& target_entries = navigable->get_session_history_entries();
  1525. // 9. If entryToReplace is null, then:
  1526. if (entry_to_replace == nullptr) {
  1527. // 1. Clear the forward session history of traversable.
  1528. traversable->clear_the_forward_session_history();
  1529. // 2. Set targetStep to traversable's current session history step + 1.
  1530. target_step = traversable->current_session_history_step() + 1;
  1531. // 3. Set historyEntry's step to targetStep.
  1532. history_entry->set_step(target_step);
  1533. // 4. Append historyEntry to targetEntries.
  1534. target_entries.append(history_entry);
  1535. } else {
  1536. // 1. Replace entryToReplace with historyEntry in targetEntries.
  1537. *(target_entries.find(*entry_to_replace)) = history_entry;
  1538. // 2. Set historyEntry's step to entryToReplace's step.
  1539. history_entry->set_step(entry_to_replace->step());
  1540. // 3. If historyEntry's document state's origin is same origin with entryToReplace's document state's origin,
  1541. // then set historyEntry's navigation API key to entryToReplace's navigation API key.
  1542. if (history_entry->document_state()->origin().has_value() && entry_to_replace->document_state()->origin().has_value() && history_entry->document_state()->origin()->is_same_origin(*entry_to_replace->document_state()->origin())) {
  1543. history_entry->set_navigation_api_key(entry_to_replace->navigation_api_key());
  1544. }
  1545. // 4. Set targetStep to traversable's current session history step.
  1546. target_step = traversable->current_session_history_step();
  1547. }
  1548. // 10. Apply the push/replace history step targetStep to traversable.
  1549. traversable->apply_the_push_or_replace_history_step(target_step, history_handling, TraversableNavigable::SynchronousNavigation::No);
  1550. }
  1551. // https://html.spec.whatwg.org/multipage/browsing-the-web.html#url-and-history-update-steps
  1552. void perform_url_and_history_update_steps(DOM::Document& document, URL::URL new_url, Optional<SerializationRecord> serialized_data, HistoryHandlingBehavior history_handling)
  1553. {
  1554. // 1. Let navigable be document's node navigable.
  1555. auto navigable = document.navigable();
  1556. // 2. Let activeEntry be navigable's active session history entry.
  1557. auto active_entry = navigable->active_session_history_entry();
  1558. // FIXME: Spec should be updated to say "classic history api state" instead of serialized state
  1559. // 3. Let newEntry be a new session history entry, with
  1560. // URL: newURL
  1561. // serialized state: if serializedData is not null, serializedData; otherwise activeEntry's classic history API state
  1562. // document state: activeEntry's document state
  1563. // scroll restoration mode: activeEntry's scroll restoration mode
  1564. // FIXME: persisted user state: activeEntry's persisted user state
  1565. JS::NonnullGCPtr<SessionHistoryEntry> new_entry = document.heap().allocate_without_realm<SessionHistoryEntry>();
  1566. new_entry->set_url(new_url);
  1567. new_entry->set_classic_history_api_state(serialized_data.value_or(active_entry->classic_history_api_state()));
  1568. new_entry->set_document_state(active_entry->document_state());
  1569. new_entry->set_scroll_restoration_mode(active_entry->scroll_restoration_mode());
  1570. // 4. If document's is initial about:blank is true, then set historyHandling to "replace".
  1571. if (document.is_initial_about_blank()) {
  1572. history_handling = HistoryHandlingBehavior::Replace;
  1573. }
  1574. // 5. Let entryToReplace be activeEntry if historyHandling is "replace", otherwise null.
  1575. auto entry_to_replace = history_handling == HistoryHandlingBehavior::Replace ? active_entry : nullptr;
  1576. // 6. If historyHandling is "push", then:
  1577. if (history_handling == HistoryHandlingBehavior::Push) {
  1578. // 1. Increment document's history object's index.
  1579. document.history()->m_index++;
  1580. // 2. Set document's history object's length to its index + 1.
  1581. document.history()->m_length = document.history()->m_index + 1;
  1582. }
  1583. // If serializedData is not null, then restore the history object state given document and newEntry.
  1584. if (serialized_data.has_value())
  1585. document.restore_the_history_object_state(new_entry);
  1586. // 8. Set document's URL to newURL.
  1587. document.set_url(new_url);
  1588. // 9. Set document's latest entry to newEntry.
  1589. document.set_latest_entry(new_entry);
  1590. // 10. Set navigable's active session history entry to newEntry.
  1591. navigable->set_active_session_history_entry(new_entry);
  1592. // 11. Update the navigation API entries for a same-document navigation given document's relevant global object's navigation API, newEntry, and historyHandling.
  1593. auto& relevant_global_object = verify_cast<Window>(HTML::relevant_global_object(document));
  1594. auto navigation_type = history_handling == HistoryHandlingBehavior::Push ? Bindings::NavigationType::Push : Bindings::NavigationType::Replace;
  1595. relevant_global_object.navigation()->update_the_navigation_api_entries_for_a_same_document_navigation(new_entry, navigation_type);
  1596. // 12. Let traversable be navigable's traversable navigable.
  1597. auto traversable = navigable->traversable_navigable();
  1598. // 13. Append the following session history synchronous navigation steps involving navigable to traversable:
  1599. traversable->append_session_history_synchronous_navigation_steps(*navigable, JS::create_heap_function(document.realm().heap(), [traversable, navigable, new_entry, entry_to_replace, history_handling] {
  1600. // 1. Finalize a same-document navigation given traversable, navigable, newEntry, and entryToReplace.
  1601. finalize_a_same_document_navigation(*traversable, *navigable, new_entry, entry_to_replace, history_handling);
  1602. }));
  1603. }
  1604. void Navigable::scroll_offset_did_change()
  1605. {
  1606. // https://w3c.github.io/csswg-drafts/cssom-view-1/#scrolling-events
  1607. // Whenever a viewport gets scrolled (whether in response to user interaction or by an API), the user agent must run these steps:
  1608. // 1. Let doc be the viewport’s associated Document.
  1609. auto doc = active_document();
  1610. VERIFY(doc);
  1611. // 2. If doc is already in doc’s pending scroll event targets, abort these steps.
  1612. for (auto& target : doc->pending_scroll_event_targets()) {
  1613. if (target.ptr() == doc)
  1614. return;
  1615. }
  1616. // 3. Append doc to doc’s pending scroll event targets.
  1617. doc->pending_scroll_event_targets().append(*doc);
  1618. }
  1619. CSSPixelRect Navigable::to_top_level_rect(CSSPixelRect const& a_rect)
  1620. {
  1621. auto rect = a_rect;
  1622. rect.set_location(to_top_level_position(a_rect.location()));
  1623. return rect;
  1624. }
  1625. CSSPixelPoint Navigable::to_top_level_position(CSSPixelPoint a_position)
  1626. {
  1627. auto position = a_position;
  1628. for (auto ancestor = parent(); ancestor; ancestor = ancestor->parent()) {
  1629. if (is<TraversableNavigable>(*ancestor))
  1630. break;
  1631. if (!ancestor->container())
  1632. return {};
  1633. if (!ancestor->container()->paintable())
  1634. return {};
  1635. position.translate_by(ancestor->container()->paintable()->box_type_agnostic_position());
  1636. }
  1637. return position;
  1638. }
  1639. void Navigable::set_viewport_size(CSSPixelSize size)
  1640. {
  1641. if (m_size == size)
  1642. return;
  1643. m_size = size;
  1644. if (auto document = active_document()) {
  1645. // NOTE: Resizing the viewport changes the reference value for viewport-relative CSS lengths.
  1646. document->invalidate_style();
  1647. document->set_needs_layout();
  1648. }
  1649. set_needs_display();
  1650. if (auto document = active_document()) {
  1651. document->inform_all_viewport_clients_about_the_current_viewport_rect();
  1652. // Schedule the HTML event loop to ensure that a `resize` event gets fired.
  1653. HTML::main_thread_event_loop().schedule();
  1654. }
  1655. }
  1656. void Navigable::perform_scroll_of_viewport(CSSPixelPoint new_position)
  1657. {
  1658. if (m_viewport_scroll_offset != new_position) {
  1659. m_viewport_scroll_offset = new_position;
  1660. scroll_offset_did_change();
  1661. set_needs_display();
  1662. if (auto document = active_document()) {
  1663. document->set_needs_to_refresh_scroll_state(true);
  1664. document->inform_all_viewport_clients_about_the_current_viewport_rect();
  1665. }
  1666. }
  1667. // Schedule the HTML event loop to ensure that a `resize` event gets fired.
  1668. HTML::main_thread_event_loop().schedule();
  1669. }
  1670. void Navigable::set_needs_display()
  1671. {
  1672. set_needs_display(viewport_rect());
  1673. }
  1674. void Navigable::set_needs_display(CSSPixelRect const&)
  1675. {
  1676. // FIXME: Ignore updates outside the visible viewport rect.
  1677. // This requires accounting for fixed-position elements in the input rect, which we don't do yet.
  1678. m_needs_repaint = true;
  1679. if (is<TraversableNavigable>(*this)) {
  1680. // Schedule the main thread event loop, which will, in turn, schedule a repaint.
  1681. Web::HTML::main_thread_event_loop().schedule();
  1682. return;
  1683. }
  1684. if (container() && container()->paintable())
  1685. container()->paintable()->set_needs_display();
  1686. }
  1687. // https://html.spec.whatwg.org/#rendering-opportunity
  1688. bool Navigable::has_a_rendering_opportunity() const
  1689. {
  1690. // A navigable has a rendering opportunity if the user agent is currently able to present
  1691. // the contents of the navigable to the user,
  1692. // accounting for hardware refresh rate constraints and user agent throttling for performance reasons,
  1693. // but considering content presentable even if it's outside the viewport.
  1694. // A navigable has no rendering opportunities if its active document is render-blocked
  1695. // or if it is suppressed for view transitions;
  1696. // otherwise, rendering opportunities are determined based on hardware constraints
  1697. // such as display refresh rates and other factors such as page performance
  1698. // or whether the document's visibility state is "visible".
  1699. // Rendering opportunities typically occur at regular intervals.
  1700. // FIXME: Return `false` here if we're an inactive browser tab.
  1701. auto browsing_context = const_cast<Navigable*>(this)->active_browsing_context();
  1702. if (!browsing_context)
  1703. return false;
  1704. return browsing_context->page().client().is_ready_to_paint();
  1705. }
  1706. // https://html.spec.whatwg.org/multipage/nav-history-apis.html#inform-the-navigation-api-about-aborting-navigation
  1707. void Navigable::inform_the_navigation_api_about_aborting_navigation()
  1708. {
  1709. // FIXME: 1. If this algorithm is running on navigable's active window's relevant agent's event loop, then continue on to the following steps.
  1710. // Otherwise, queue a global task on the navigation and traversal task source given navigable's active window to run the following steps.
  1711. queue_global_task(Task::Source::NavigationAndTraversal, *active_window(), JS::create_heap_function(heap(), [this] {
  1712. // 2. Let navigation be navigable's active window's navigation API.
  1713. auto navigation = active_window()->navigation();
  1714. // 3. If navigation's ongoing navigate event is null, then return.
  1715. if (navigation->ongoing_navigate_event() == nullptr)
  1716. return;
  1717. // 4. Abort the ongoing navigation given navigation.
  1718. navigation->abort_the_ongoing_navigation();
  1719. }));
  1720. }
  1721. RefPtr<Painting::DisplayList> Navigable::record_display_list(PaintConfig config)
  1722. {
  1723. auto document = active_document();
  1724. if (!document)
  1725. return {};
  1726. auto display_list = Painting::DisplayList::create();
  1727. Painting::DisplayListRecorder display_list_recorder(display_list);
  1728. if (config.canvas_fill_rect.has_value()) {
  1729. display_list_recorder.fill_rect(config.canvas_fill_rect.value(), CSS::SystemColor::canvas());
  1730. }
  1731. auto const& page = traversable_navigable()->page();
  1732. auto viewport_rect = page.css_to_device_rect(this->viewport_rect());
  1733. Gfx::IntRect bitmap_rect { {}, viewport_rect.size().to_type<int>() };
  1734. auto background_color = document->background_color();
  1735. display_list_recorder.fill_rect(bitmap_rect, background_color);
  1736. if (!document->paintable()) {
  1737. VERIFY_NOT_REACHED();
  1738. }
  1739. Web::PaintContext context(display_list_recorder, page.palette(), page.client().device_pixels_per_css_pixel());
  1740. context.set_device_viewport_rect(viewport_rect);
  1741. context.set_should_show_line_box_borders(config.should_show_line_box_borders);
  1742. context.set_should_paint_overlay(config.paint_overlay);
  1743. context.set_has_focus(config.has_focus);
  1744. document->update_paint_and_hit_testing_properties_if_needed();
  1745. auto& viewport_paintable = *document->paintable();
  1746. viewport_paintable.refresh_scroll_state();
  1747. viewport_paintable.paint_all_phases(context);
  1748. Vector<Gfx::IntPoint> scroll_offsets_by_frame_id;
  1749. scroll_offsets_by_frame_id.resize(viewport_paintable.scroll_state.size());
  1750. for (auto [_, scrollable_frame] : viewport_paintable.scroll_state) {
  1751. auto scroll_offset = context.rounded_device_point(scrollable_frame->offset).to_type<int>();
  1752. scroll_offsets_by_frame_id[scrollable_frame->id] = scroll_offset;
  1753. }
  1754. display_list_recorder.display_list().apply_scroll_offsets(scroll_offsets_by_frame_id);
  1755. m_needs_repaint = false;
  1756. return display_list;
  1757. }
  1758. // https://html.spec.whatwg.org/multipage/browsing-the-web.html#event-uni
  1759. UserNavigationInvolvement user_navigation_involvement(DOM::Event const& event)
  1760. {
  1761. // For convenience at certain call sites, the user navigation involvement for an Event event is defined as follows:
  1762. // 1. Assert: this algorithm is being called as part of an activation behavior definition.
  1763. // 2. Assert: event's type is "click".
  1764. VERIFY(event.type() == "click"_fly_string);
  1765. // 3. If event's isTrusted is initialized to true, then return "activation".
  1766. // 4. Return "none".
  1767. return event.is_trusted() ? UserNavigationInvolvement::Activation : UserNavigationInvolvement::None;
  1768. }
  1769. bool Navigable::is_focused() const
  1770. {
  1771. return &m_page->focused_navigable() == this;
  1772. }
  1773. static String visible_text_in_range(DOM::Range const& range)
  1774. {
  1775. // NOTE: This is an adaption of Range stringification, but we skip over DOM nodes that don't have a corresponding layout node.
  1776. StringBuilder builder;
  1777. if (range.start_container() == range.end_container() && is<DOM::Text>(*range.start_container())) {
  1778. if (!range.start_container()->layout_node())
  1779. return String {};
  1780. return MUST(static_cast<DOM::Text const&>(*range.start_container()).data().substring_from_byte_offset(range.start_offset(), range.end_offset() - range.start_offset()));
  1781. }
  1782. if (is<DOM::Text>(*range.start_container()) && range.start_container()->layout_node())
  1783. builder.append(static_cast<DOM::Text const&>(*range.start_container()).data().bytes_as_string_view().substring_view(range.start_offset()));
  1784. for (DOM::Node const* node = range.start_container(); node != range.end_container()->next_sibling(); node = node->next_in_pre_order()) {
  1785. if (is<DOM::Text>(*node) && range.contains_node(*node) && node->layout_node())
  1786. builder.append(static_cast<DOM::Text const&>(*node).data());
  1787. }
  1788. if (is<DOM::Text>(*range.end_container()) && range.end_container()->layout_node())
  1789. builder.append(static_cast<DOM::Text const&>(*range.end_container()).data().bytes_as_string_view().substring_view(0, range.end_offset()));
  1790. return MUST(builder.to_string());
  1791. }
  1792. String Navigable::selected_text() const
  1793. {
  1794. auto document = const_cast<Navigable*>(this)->active_document();
  1795. if (!document)
  1796. return String {};
  1797. auto selection = const_cast<DOM::Document&>(*document).get_selection();
  1798. auto range = selection->range();
  1799. if (!range)
  1800. return String {};
  1801. return visible_text_in_range(*range);
  1802. }
  1803. void Navigable::select_all()
  1804. {
  1805. auto document = active_document();
  1806. if (!document)
  1807. return;
  1808. auto* body = document->body();
  1809. if (!body)
  1810. return;
  1811. auto selection = document->get_selection();
  1812. if (!selection)
  1813. return;
  1814. (void)selection->select_all_children(*document->body());
  1815. }
  1816. void Navigable::paste(String const& text)
  1817. {
  1818. auto document = active_document();
  1819. if (!document)
  1820. return;
  1821. m_event_handler.handle_paste(text);
  1822. }
  1823. }