Hermes Agent 0.18.2(早于 0.19.0 的版本)存在一个供应链漏洞,源于其捆绑的 MCP 目录(catalog)中通过可变分支(mutable branch)而非固定的提交 SHA 引用第三方上游仓库。远程攻击者若控制了该上游仓库,即可向所有安装了受影响目录条目的主机传播恶意代码,无需操作员进行额外操作即可执行任意代码。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| NousResearch | hermes-agent | 0.18.2< 0.19.0 |
affected |
2026.7.7.2< 2026.7.20 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| NousResearch | hermes-agent | 0.18.2 ~ 0.19.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet