Issues within CWE 320 stem from mishandling cryptographic keys. Avoid key exchange without entity authentication, reusing a nonce, key pair in encryption, and using a key past its expiration date.
Issues within this specific category stem from mishandling cryptographic keys.