Cyber Posture

CWE · MITRE source

CWE-565Reliance on Cookies without Validation and Integrity Checking

Abstraction: Base · CVEs in our corpus: 73

The product relies on the existence or values of cookies when performing security-critical operations, but it does not properly ensure that the setting is valid for the associated user.

Last updated: 19 May 2026 22:20 UTC

NIST 800-53 r5 controls that address this weakness (0)AI

Control Title Family Why it addresses this CWE
No NIST controls proposed yet.

Top CVEs of this weakness type, ranked by Risk Priority

CVE Risk CVSS EPSS Published
CVE-2023-358857.69.80.94122023-06-20
CVE-2020-70702.44.30.26092020-10-02
CVE-2008-5784 UPD2.39.80.05792008-12-31
CVE-2017-7279 UPD2.29.80.04462017-04-12
CVE-2019-72662.29.80.03832019-07-02
CVE-2018-54552.09.80.00452018-03-05
CVE-2018-51902.09.80.00442018-04-17
CVE-2018-205122.09.80.00722019-01-03
CVE-2021-281712.09.80.00272021-04-06
CVE-2022-281132.07.20.08782022-04-15
CVE-2022-382972.09.80.00442022-09-12
CVE-2023-30502.09.80.00042023-06-13
CVE-2023-410842.010.00.00072023-09-18
CVE-2023-451282.010.00.00152023-10-16
CVE-2023-327252.09.60.01062023-12-18
CVE-2024-282882.09.80.00102024-03-30
CVE-2024-09472.09.80.00132024-06-27
CVE-2025-23952.09.80.01232025-03-17
CVE-2025-144402.09.80.00142025-12-13
CVE-2025-652122.09.80.00112026-01-06
CVE-2022-509262.09.80.00142026-01-13
CVE-2014-125112 UPD2.09.80.00132026-03-26
CVE-2026-393242.09.80.00062026-04-07
CVE-2017-6896 UPD1.98.80.02522017-03-14
CVE-2012-56311.88.80.00512019-11-25