Description
A vulnerability was detected in NousResearch hermes-agent up to 2026.6.5. Affected by this issue is the function _check_slash_access of the file gateway/run.py of the component Quick Command Handler. The manipulation results in incorrect authorization. The attack can be launched remotely. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Published: 2026-08-04
Score: 5.3 Medium
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The flaw in the _check_slash_access function of the Quick Command Handler causes incorrect authorization checks. Attackers can remotely exploit this to gain unauthorized access to restricted operations. This results in potential confidentiality and integrity risks if malicious commands can be executed with the agent’s privileges. The issue is rooted in authorization and path validation weaknesses.

Affected Systems

The affected product is NousResearch hermes-agent, with vulnerability present in all releases up to version 2026.6.5.

Risk and Exploitability

The CVSS score of 5.3 indicates medium severity. No EPSS data is available, so the likelihood cannot be quantified precisely, but the flaw is publicly exploitable and can be launched remotely from external networks. It is not listed in the CISA KEV catalog. An attacker can bypass authorization checks, enabling use of the Quick Command Handler with the privileges of the running agent process.

Generated by OpenCVE AI on August 4, 2026 at 19:45 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade hermes-agent to the latest released version that fixes the _check_slash_access flaw
  • Restrict external access to the Quick Command Handler endpoint to trusted IP ranges or internal networks to reduce attack surface
  • Implement strict validation of slash paths to ensure the authority checks rely on correct input, mitigating the authorization bypass due to improper path handling

Generated by OpenCVE AI on August 4, 2026 at 19:45 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 04 Aug 2026 17:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 04 Aug 2026 15:45:00 +0000

Type Values Removed Values Added
Description A vulnerability was detected in NousResearch hermes-agent up to 2026.6.5. Affected by this issue is the function _check_slash_access of the file gateway/run.py of the component Quick Command Handler. The manipulation results in incorrect authorization. The attack can be launched remotely. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Title NousResearch hermes-agent Quick run.py _check_slash_access authorization
First Time appeared Nousresearch
Nousresearch hermes-agent
Weaknesses CWE-285
CWE-863
CPEs cpe:2.3:a:nousresearch:hermes-agent:*:*:*:*:*:*:*:*
Vendors & Products Nousresearch
Nousresearch hermes-agent
References
Metrics cvssV2_0

{'score': 6.5, 'vector': 'AV:N/AC:L/Au:S/C:P/I:P/A:P/E:POC/RL:ND/RC:UR'}

cvssV3_0

{'score': 6.3, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R'}

cvssV3_1

{'score': 6.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L/E:P/RL:X/RC:R'}

cvssV4_0

{'score': 5.3, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P'}


Subscriptions

Nousresearch Hermes-agent
cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-08-04T16:40:42.573Z

Reserved: 2026-08-04T07:35:35.152Z

Link: CVE-2026-18773

cve-icon Vulnrichment

Updated: 2026-08-04T16:40:37.488Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-04T19:45:03Z

Weaknesses