Description:
User is able to access the side menu from the login screen after initially opening the app. When not logged in, tapping on one of the items in the side menu brings the user back to the login screen, after which the side bar is not accessible in the same way.
Addendum: After accessing the sidemenu from the login screen, and then selecting an item in the menu, the app quickly opens the page associated with that selected item, but then quickly switches to the login screen if the user is not logged in. The side menu cannot be accessed in the same way as before, however if the user swipes from the far left side of the screen and to the right, the still-not-logged-in user can access the page associated to the item they previously selected in the side menu, such as the main menu. I doubt this poses any security threats, since no content appears when any of the items are selected.
Summary: Side menu accessible from login screen
Severity: Blocker
Description: User is able to access the side menu from the login screen after initially opening the app. When not logged in, tapping on one of the items in the side menu brings the user back to the login screen, after which the side bar is not accessible in the same way.
Addendum: After accessing the sidemenu from the login screen, and then selecting an item in the menu, the app quickly opens the page associated with that selected item, but then quickly switches to the login screen if the user is not logged in. The side menu cannot be accessed in the same way as before, however if the user swipes from the far left side of the screen and to the right, the still-not-logged-in user can access the page associated to the item they previously selected in the side menu, such as the main menu. I doubt this poses any security threats, since no content appears when any of the items are selected.