Cross-site scripting (XSS) vulnerability in the manager web interface in mod_cluster before 1.3.2.Alpha1 allows remote attackers to inject arbitrary web script or HTML via a crafted MCMP message.
No PoCs from references.
- https://github.com/ARPSyndicate/cvemon
- https://github.com/Karm/mod_cluster-dockerhub