Expired cookies session

mrbubu | Last updated: Aug 01, 2023 09:34AM UTC

Hi all, I am still learning, so correct me if iam wrong. I reported the 'bug', but it was dissmissed as informative. I logged in into some account and in BURP I had request with cookie and parameter in it 'session_token'. I logged out and if I used this cookies I was able to log in with it. Should not be this token expired and not usable anymore ? It was told me, that I just copied the cookie. Thank you

Dominyque, PortSwigger Agent | Last updated: Aug 01, 2023 10:23AM UTC

Hi Can you please clarify the issue? Did you see this on a site that you are testing?

