📦 Sherpa Orchestrator

by Sherparpa

🔍 What is Sherpa Orchestrator?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-46545

MEDIUM CVSS 4.4 Apr 25, 2025

This vulnerability allows stored cross-site scripting (XSS) attacks in Sherpa Orchestrator version 141851. Administrators can inject malicious scripts through the license name parameter, which execute...

CVE-2025-46547

MEDIUM CVSS 5.4 Apr 25, 2025

Sherpa Orchestrator 141851 lacks CSRF protection, allowing attackers to trick authenticated users into performing unauthorized actions. This can lead to XSS attacks, unauthorized user/role creation, o...