| ID | Alert | Status | Risk | Type |
|---|---|---|---|---|
| 40013-1 | Session ID Transmitted Insecurely | beta | Medium | Active |
| 40013-2 | Session ID Cookie Accessible to JavaScript | beta | Low | Active |
| 40013-3 | Session ID Expiry Time/Max-Age is Excessive | beta | High | Active |
| 40013-4 | Session Fixation | beta | Informational | Active |
| 40013-5 | Exposed Session ID | beta | Medium | Active |
| 40013-6 | Session Fixation | beta | Medium | Active |
| 220001-1 | Disallow direct document.cookie assignment (incl. bracket access) | alpha | Medium | Tool |
| 220001-2 | DOM-based Cookie Manipulation (taint flow) | alpha | Medium | Tool |