InfiBeyond / pe

0 stars 0 forks source link

Overzealous input validation for phone number #6

Open InfiBeyond opened 9 months ago

InfiBeyond commented 9 months ago

image.png

Although it is specified in the UG that only numbers with at least 3 digits will be allowed as phone numbers, but blocking the user from inputting multiple phone numbers can be an overzealous input validation. (please refer to the class tp pe website can see example 1 under feature flaw, Overzealous input validation).

nus-se-bot commented 9 months ago

Your response not required for this bug as the team has accepted the bug as it is.