VendorsGooglemod_pagespeedall versions
Vulnerabilities

Google mod_pagespeed

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2012-4001
The mod_pagespeed module before 0.10.22.6 for the Apache HTTP Server does not properly verify its host name, which allows remote attackers to trigger HTTP requests to arbitrary hosts via unspecified vectors, as demonstrated by requests to intranet servers.
Published 2012-09-15 · Modified
5.0EPSS 0.007
CVE-2012-4360
Cross-site scripting (XSS) vulnerability in the mod_pagespeed module 0.10.19.1 through 0.10.22.4 for the Apache HTTP Server allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Published 2012-09-15 · Modified
4.3EPSS 0.011