Web applications require better session management to keep tracking the state of application and it’s users’ activities. Insecure session management can leads to attacks such as session prediction, hijacking, fixation and replay attacks.
Read more about session management
https://www.owasp.org/index.php/Session_Management_Cheat_Shee