CVE-2023-38363 — IBM CICS TX Advanced 10.1 does not set the secure attribute on authorization tokens or session cookies. Attackers may be able to get the cookie values by sending a http:// link to a user or by plantin — CVE Database · The Intelligence Room