On Wed, 17 Jul 2024 19:47:44 GMT, Chen Liang <li...@openjdk.org> wrote:

> `Class` has 2 VM-injected fields that can be made explicit: `Object[] 
> signers` and `ProtectionDomain protectionDomain`. We make the signers field 
> explicit. (The ProtectionDomain can be revisited when SecurityManager is 
> removed, as SecurityManager is accessing it via JNI as well.)
> 
> Migrate the JNI code to Java. The getter previously had a redundant primitive 
> type check, which is dropped in the migrated Java code. The `Object[] 
> getSigners` is no longer `native`, thus requiring a CSR record. Reviewers 
> please help review the associated CSR.

The relocation of the field to Java looks good. But I am concerned that the 
field is now exposed to reflection.

-------------

PR Review: https://git.openjdk.org/jdk/pull/20223#pullrequestreview-2184157888

Reply via email to