Sametime is impacted by a failure to invalidate sessions. The application is setting sensitive cookie values in a persistent manner in Sametime Web clients. When this happens, cookie values can remain valid even after a user has closed out their session.
| Software | From | Fixed in |
|---|---|---|
| hcltech / sametime | 11.5 | 12.0.2 |