malcolmang / pe

0 stars 0 forks source link

Tampering with the xml can result in uncaught errors #7

Open malcolmang opened 2 years ago

malcolmang commented 2 years ago

image.png

If a negative sign is in front of the xml file, it allows the program to load in an expense with a negative amount. (In this case, the data was loaded in using merge-expense. The data loaded by an xml file should be validated to ensure the data is completely valid.

nus-pe-bot commented 2 years ago

Team's Response

Greetings,

Thank you for your bug report. After careful evaluation of your bug report, the development team is accepting your bug report. However, we are of the opinion that the severity of this issue should be low for the following reasons:

Best Regards.

Items for the Tester to Verify

:question: Issue severity

Team chose [severity.Low] Originally [severity.Medium]

Reason for disagreement: [replace this with your explanation]