Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2026-82020— Hermes Agent 0.16.0 < 0.17.0 Credential Store Overwrite via File-Write Tool

Quick assessment

Affected
NousResearch hermes-agent
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Hermes Agent 在 0.16.0 至 0.17.0 之前的版本中存在一个路径限制不当(improper path restriction)漏洞,允许能够影响被摄取消息内容的攻击者通过绕过排除 文件的敏感路径保护机制,覆盖凭证存储(credential store)。 攻击者可以构造恶意消息,引导 Agent 的文件写入工具直接覆盖凭证存储,而不会触发任何基于路径的保护机制,从而可能导致凭证被篡改或未授权的访问。

CVSS 6.8 · Medium

Affected Version Matrix 2

VendorProduct Version RangeStatus
NousResearch hermes-agent 0.16.0< 0.17.0 affected
2026.6.5< 2026.6.19 affected
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-82020

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Hermes Agent 0.16.0 < 0.17.0 Credential Store Overwrite via File-Write Tool
Source: CVE Program / CVE List V5
Vulnerability Description
Hermes Agent 0.16.0 prior to 0.17.0 contains an improper path restriction vulnerability that allows attackers who can influence ingested message content to overwrite the credential store by bypassing sensitive-path guards that excluded the auth.json file. Attackers can craft malicious messages directing the agent's file-write tooling to overwrite the credential store without triggering any path-based protection, enabling credential tampering or unauthorized access.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:N
Source: CVE Program / CVE List V5
Vulnerability Type
对外部实体的文件或目录可访问
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
NousResearch hermes-agent 0.16.0 ~ 0.17.0 -

II. Public POCs for CVE-2026-82020

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-82020

登录查看更多情报信息。

Patches & Fixes for CVE-2026-82020 (3)

Vendor Advisories for CVE-2026-82020 (1)

Vendor Pages for CVE-2026-82020 (1)

IV. Related Vulnerabilities

V. Comments for CVE-2026-82020

No comments yet


Leave a comment