Failure to set the "Secure" attribute in cookie configuration can result in unauthorized third-party access. Enabling this attribute ensures that cookies are transmitted to the server exclusively over HTTPS, thereby bolstering security and thwarting potential eavesdropping.
Remediation Guidelines
Ensure to set the setSecure attribute to true to enforce cookies transmission only over HTTPS.