Common Weakness Enumeration

    CWE Definition / CWE-565

    CWE-565: Reliance on Cookies without Validation and Integrity Checking

    The product relies on the existence or values of cookies when performing security-critical operations, but it does not properly ensure that the setting is valid for the associated user.

    Published:19 Jul 2006
    Organization:MITRE
    Modified:11 Dec 2025

    Related Weakness

    CWE-642: External Control of Critical State Data

    CWE-669: Incorrect Resource Transfer Between Spheres

    CWE-602: Client-Side Enforcement of Server-Side Security