Nousresearch
Nousresearch Hermes-agent: vulnerabilidades y CVE
Nousresearch Hermes-agent tiene 39 vulnerabilidades publicadas, 39 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE39
Últimos 12 meses39
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-85107 | Media (5.3) | 0.51% | — | 3 sept 2026 | A vulnerability was found in NousResearch hermes-agent 0.18.0. This vulnerability affects the function resourceBufferFromUrl of the file apps/desktop/electron/main.ts of the component Electron Main Process. Performing a… |
| CVE-2026-85106 | Media (5.3) | 0.35% | — | 3 sept 2026 | A vulnerability has been found in NousResearch hermes-agent 0.18.0. This affects the function fetchLinkTitle of the file apps/desktop/src/app/artifacts/index.tsx of the component Link Title Fetch. Such manipulation of… |
| CVE-2026-85105 | Media (6.9) | 0.50% | — | 3 sept 2026 | A flaw has been found in NousResearch hermes-agent 0.18.0. Affected by this issue is the function _sess_nowait of the file s71.py of the component Session Management. This manipulation of the argument session_id causes… |
| CVE-2026-84289 | Baja (2.1) | 0.47% | — | 1 sept 2026 | A vulnerability was found in NousResearch hermes-agent up to 0.18.2. This vulnerability affects the function list_tools of the file tools/mcp_tool.py of the component MCP Tool. Performing a manipulation results in… |
| CVE-2026-84288 | Baja (2.1) | 0.47% | — | 1 sept 2026 | A vulnerability has been found in NousResearch hermes-agent up to 0.18.2. This affects the function HermesACPAgent.prompt of the file acp_adapter/session.py of the component ACP Prompt Workflow. Such manipulation leads… |
| CVE-2026-84287 | Baja (2.1) | 0.52% | — | 1 sept 2026 | A flaw has been found in NousResearch hermes-agent 0.18.0. Affected by this issue is some unknown functionality of the file gateway/platforms/api_server.py of the component Session Chat Interface. This manipulation… |
| CVE-2026-18993 | Baja (2.1) | 0.37% | — | 6 ago 2026 | A vulnerability was detected in NousResearch hermes-agent up to 0.16.0. Affected by this issue is some unknown functionality of the file hermes-agent/model_tools.py of the component Memory Toolset. The manipulation… |
| CVE-2026-18976 | Baja (2.1) | 0.37% | — | 6 ago 2026 | A vulnerability was determined in NousResearch hermes-agent up to 0.16.0. This impacts the function get_tool_definitions of the file agent/agent_init.py of the component disabled_toolsets Handler. This manipulation… |
| CVE-2026-18775 | Baja (2.1) | 0.38% | — | 4 ago 2026 | A vulnerability has been found in NousResearch hermes-agent up to 0.16.0. This vulnerability affects the function browser_snapshot of the file tools/browser_tool.py of the component Browser Tooling. Such manipulation… |
| CVE-2026-18774 | Baja (2.1) | 0.35% | — | 4 ago 2026 | A flaw has been found in NousResearch hermes-agent up to 0.16.0. This affects the function save_url_image of the file agent/image_gen_provider.py of the component xAI Image Generation Provider. This manipulation causes… |
| CVE-2026-18773 | Baja (2.1) | 0.35% | — | 4 ago 2026 | A vulnerability was detected in NousResearch hermes-agent up to 2026.6.5. Affected by this issue is the function _check_slash_access of the file gateway/run.py of the component Quick Command Handler. The manipulation… |
| CVE-2026-17432 | Baja (1.3) | 0.36% | — | 26 jul 2026 | A vulnerability was detected in NousResearch hermes-agent 2026.6.5. Affected by this vulnerability is an unknown functionality of the file hermes-agent/plugins/platforms/simplex/adapter.py of the component SimpleX… |
| CVE-2026-15311 | Baja (2) | 0.36% | — | 10 jul 2026 | A vulnerability was identified in NousResearch hermes-agent up to 2026.5.29.2. Affected by this issue is the function MatrixAdapter._markdown_to_html of the file gateway/platforms/matrix.py of the component Matrix… |
| CVE-2026-14783 | Baja (2.1) | 0.48% | — | 6 jul 2026 | A vulnerability was determined in NousResearch hermes-agent 2026.5.29.2. The impacted element is the function skill_view of the file tools/skills_tool.py. Executing a manipulation of the argument Name can lead to path… |
| CVE-2026-14628 | Media (5.5) | 0.77% | — | 4 jul 2026 | A vulnerability was detected in NousResearch hermes-agent up to 2026.5.16. This impacts the function extract_media of the file gateway/platforms/base.py of the component Live Webhook Endpoint. Performing a manipulation… |
| CVE-2026-14627 | Baja (2.9) | 0.55% | — | 4 jul 2026 | A security vulnerability has been detected in NousResearch hermes-agent up to 0.15.2. This affects the function DiscordAdapter._is_allowed_user of the file gateway/platforms/discord.py of the component Discord Platform… |
| CVE-2026-14626 | Baja (2.1) | 0.47% | — | 4 jul 2026 | A weakness has been identified in NousResearch hermes-agent up to 2026.4.30. The impacted element is the function AIAgent.run_conversation of the file run_agent.py of the component HTTP API. This manipulation of the… |
| CVE-2026-14625 | Baja (2.1) | 0.38% | — | 4 jul 2026 | A security flaw has been discovered in NousResearch hermes-agent up to 0.15.2. The affected element is the function shell.exec of the file tui_gateway/server.py. The manipulation results in protection mechanism failure.… |
| CVE-2026-14617 | Baja (1.3) | 0.37% | — | 3 jul 2026 | A security vulnerability has been detected in NousResearch hermes-agent up to 2026.4.30. Affected is the function GatewayStreamConsumer._filter_and_accumulate of the file gateway/stream_consumer.py of the component… |
| CVE-2026-11461 | Baja (2.1) | 0.22% | — | 7 jun 2026 | A vulnerability has been found in NousResearch hermes-agent up to 0.12.0. This affects the function resolve_session_by_title of the file hermes_state.py of the component resume Endpoint. Such manipulation of the… |
| CVE-2026-10548 | Baja (1.9) | 0.14% | — | 2 jun 2026 | A security flaw has been discovered in NousResearch hermes-agent up to 2026.4.23. This affects the function _sync_anthropic_entry_from_credentials_file of the file agent/credential_pool.py of the component Credential… |
| CVE-2026-10224 | Media (5.5) | 0.37% | — | 1 jun 2026 | A security vulnerability has been detected in NousResearch hermes-agent up to 2026.4.30. This vulnerability affects the function _handle_webhook_request of the file gateway/platforms/feishu.py of the component Webhook… |
| CVE-2026-10223 | Baja (2.1) | 0.23% | — | 1 jun 2026 | A weakness has been identified in NousResearch hermes-agent up to 2026.4.30. This affects the function _scan_memory_content of the file tools/memory_tool.py. This manipulation causes injection. The attack can be… |
| CVE-2026-10222 | Baja (2.9) | 0.27% | — | 1 jun 2026 | A security flaw has been discovered in NousResearch hermes-agent up to 2026.4.30. Affected by this issue is the function _sanitize_env_lines of the file hermes_cli/config.py. The manipulation results in injection. It is… |
| CVE-2026-10221 | Media (5.5) | 0.30% | — | 1 jun 2026 | A vulnerability was identified in NousResearch hermes-agent up to 0.12.0. Affected by this vulnerability is the function _compress_context of the file run_agent.py. The manipulation leads to injection. It is possible to… |
| CVE-2026-10220 | Media (5.5) | 0.30% | — | 1 jun 2026 | A vulnerability was determined in NousResearch hermes-agent up to 2026.4.30. Affected is the function _serve_plugin_skill/skill_view of the file tools/skills_tool.py. Executing a manipulation can lead to injection. The… |
| CVE-2026-9369 | Baja (1.9) | 0.32% | — | 24 may 2026 | A security flaw has been discovered in NousResearch hermes-agent 2026.4.23. Affected is the function _discover_dashboard_plugins of the file hermes_cli/web_server.py of the component CLI web-dashboard Interface.… |
| CVE-2026-9368 | Media (5.5) | 0.64% | — | 24 may 2026 | A vulnerability was identified in NousResearch hermes-agent up to 2026.4.16. This impacts the function execute_code of the file tools/code_execution_tool.py of the component Environment Variable Handler. Such… |
| CVE-2026-9367 | Media (5.5) | 3.2% | — | 24 may 2026 | A vulnerability was determined in NousResearch hermes-agent up to 5157f5427f19488b31c6fdebbacd15d798ce7f63. This affects the function detect_dangerous_command of the file tools/approval.py of the component… |
| CVE-2026-9366 | Media (5.5) | 0.52% | — | 24 may 2026 | A vulnerability was found in NousResearch hermes-agent 2026.4.23. The impacted element is the function _scan_context_content of the file agent/prompt_builder.py. The manipulation results in injection. The attack may be… |