Old session tokens can be used to authenticate to the application and send authenticated requests.
{
"cwe_ids": [
"CWE-613"
],
"nvd_published_at": "2022-07-05T09:15:00Z",
"github_reviewed_at": "2022-07-06T19:58:37Z",
"severity": "HIGH",
"github_reviewed": true
}