Impact
A flaw exists in NousResearch hermes-agent 0.18.0 where manipulation of the argument session_id within the internal _sess_nowait function allows an attacker to bypass authorization controls, enabling creation or access of sessions without proper authentication. The vulnerability resides in the Session Management component, and can be triggered remotely from outside the host; no local privileges or special conditions are outlined.
Affected Systems
The affected product is NousResearch hermes-agent version 0.18.0. No other versions are explicitly listed as impacted. Users running this specific release should assume the bug is present.
Risk and Exploitability
The CVSS score of 6.9 indicates moderate severity, while the EPSS score is not available, suggesting no current data on exploitation likelihood. The vulnerability is not listed in the CISA KEV catalog. Attackers can exploit the flaw over a remote network connection, and the absence of listed local privilege requirements implies the risk remains low to moderate but warrants mitigation to prevent unauthorized session access.
OpenCVE Enrichment