Modcluster is an Apache HTTP Server module that provides dynamic load-balancing and clustering capabilities for application servers, with its vulnerability profile centered on the mod_proxy_cluster component. The observed weakness class reflects input-handling risks inherent to a web-facing proxy module that processes and forwards user-supplied data across cluster nodes, such as cross-site scripting vulnerabilities in dynamically generated pages. Current vulnerability counts, severity distribution, and exploitation status are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Modcluster over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-6710MEDIUM A flaw was found in the mod_proxy_cluster in the Apache server. This issue may allow a malicious user to add a script in the 'alias' parameter in the URL to trigger the stored cros | Dec 12, 2023 | 5.4 | 25 | NO | YES |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Modcluster.
Media articles that mention a CVE ID that affects a product developed by Modcluster — matched by CVE ID, not by vendor name.