vulnerability in AWX 15.0.0

Hi,

We found the following vulnerabilities in AWX 15.0.0.

The following cookies were issued by the application and do not have the HttpOnly flag set:

  • csrftoken
  • current_user
    Please suggest on how to fix this vulnerability.

Regards,
Swathi