In Gatling Enterprise versions below 1.25.0, a user logging-out can still use his session token to continue using the application without expiration, due to incorrect session management.
https://github.com/Flo354/vulnerabilities/tree/main/gatling-enterprise