hermes-agentGHSA-238w-f66p-w349
hermes-agent has an Injection issue
Medium7.3CVE-2026-9353 · Published May 26, 2026 · updated Jul 13, 2026
A security vulnerability has been detected in NousResearch hermes-agent up to 2026.4.23. Impacted is an unknown function of the file agent/skills_guard.py of the component Skills Guard Multi-Word Prompt Handler. The manipulation of the argument THREAT_PATTERNS leads to injection. Remote exploitation of the attack is possible. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| hermes-agent PyPI | < 0.15.0 | 0.15.0 |
Details and references
- CVSS 3.1
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
- Severity from
- GitHub (reviewed advisory)
- Weakness
- CWE-74
- Also known as
- CVE-2026-9353, PYSEC-2026-2509
- nvd.nist.gov/vuln/detail/CVE-2026-9353
- github.com/NousResearch/hermes-agent/pull/26852
- github.com/NousResearch/hermes-agent/commit/7ebebfbb8d10937cbf2219b4cf5e121b71e67428
- gist.github.com/YLChen-007/82a3539d6358842e69dfaef0a9fcf14a
- github.com/NousResearch/hermes-agent
- vuldb.com/submit/812216
- vuldb.com/vuln/365316
- vuldb.com/vuln/365316/cti
More hermes-agent advisories
All hermes-agent| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Jun 1 | hermes-agent has an Uncontrolled Resource Consumption issue | Medium5.3 | No fix yet |
| Jun 1 | hermes-agent has an Injection issue | Medium7.3 | No fix yet |
| Jun 1 | hermes-agent has an Injection issue | Low5.6 | 0.18.0 |
| May 26 | hermes-agent has an Incorrect Comparison | Low5.3 | 0.15.0 |
| May 26 | hermes-agent has a sandbox issue | Medium7.3 | 0.11.0 |
| May 26 | hermes-agent has an Injection issue | Medium7.3 | 0.15.0 |