Hermes Agent 0.16.0 prior to 0.17.0 contains an improper path restriction vulnerability that allows attackers who can influence ingested message content to overwrite the credential store by bypassing sensitive-path guards that excluded the auth.json file. Attackers can craft malicious messages directing the agent's file-write tooling to overwrite the credential store without triggering any path-based protection, enabling credential tampering or unauthorized access.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 28 Aug 2026 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Nousresearch
Nousresearch hermes-agent |
|
| Vendors & Products |
Nousresearch
Nousresearch hermes-agent |
Fri, 28 Aug 2026 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Hermes Agent 0.16.0 prior to 0.17.0 contains an improper path restriction vulnerability that allows attackers who can influence ingested message content to overwrite the credential store by bypassing sensitive-path guards that excluded the auth.json file. Attackers can craft malicious messages directing the agent's file-write tooling to overwrite the credential store without triggering any path-based protection, enabling credential tampering or unauthorized access. | |
| Title | Hermes Agent 0.16.0 < 0.17.0 Credential Store Overwrite via File-Write Tool | |
| Weaknesses | CWE-552 | |
| References |
|
|
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-08-28T19:59:03.517Z
Reserved: 2026-08-27T21:39:20.459Z
Link: CVE-2026-82020
No data.
Status : Received
Published: 2026-08-28T20:20:14.323
Modified: 2026-08-28T20:20:14.323
Link: CVE-2026-82020
No data.
OpenCVE Enrichment
Updated: 2026-08-28T22:15:04Z
Weaknesses