CWE-784: Reliance on Cookies without Validation and Integrity Checking in a Security Decision

low-risk

The product uses a protection mechanism that relies on the existence or values of a cookie, but it does not properly ensure that the cookie is valid for the associated user.

Abstraction: Variant

Common Consequences

Access Control Bypass Protection Mechanism

Real-World Examples (4)

CVE CVSS EPSS KEV
CVE-2020-8184 7.5 1.1%
CVE-2022-3083 3.9 0.2%
CVE-2024-9820 6.5 0.1%
CVE-2023-3050 9.8 0.0%
0
/ 100
low-risk
Active Threat 0/50 · Minimal
Exploit Availability 0/50 · Minimal