Hermes Agent 0.16.0 prior to 0.17.0 contains an improper path restriction vulnerability that allows attackers who can influence ingested message content to overwrite the credential store by bypassing sensitive-path guards that excluded the auth.json file. Attackers can craft malicious messages directing the agent's file-write tooling to overwrite the credential store without triggering any path-based protection, enabling credential tampering or unauthorized access.
Metrics
Affected Vendors & Products
References
History
Tue, 01 Sep 2026 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 28 Aug 2026 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Nousresearch
Nousresearch hermes-agent |
|
| Vendors & Products |
Nousresearch
Nousresearch hermes-agent |
Fri, 28 Aug 2026 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Hermes Agent 0.16.0 prior to 0.17.0 contains an improper path restriction vulnerability that allows attackers who can influence ingested message content to overwrite the credential store by bypassing sensitive-path guards that excluded the auth.json file. Attackers can craft malicious messages directing the agent's file-write tooling to overwrite the credential store without triggering any path-based protection, enabling credential tampering or unauthorized access. | |
| Title | Hermes Agent 0.16.0 < 0.17.0 Credential Store Overwrite via File-Write Tool | |
| Weaknesses | CWE-552 | |
| References |
|
|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2026-08-28T18:47:06.377Z
Updated: 2026-09-01T01:53:18.869Z
Reserved: 2026-08-27T21:39:20.459Z
Link: CVE-2026-82020
Updated: 2026-09-01T01:53:13.139Z
Status : Deferred
Published: 2026-08-28T20:20:14.323
Modified: 2026-09-08T20:23:49.880
Link: CVE-2026-82020
No data.