CVE-2026-82020

Source
https://cve.org/CVERecord?id=CVE-2026-82020
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-82020.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-82020
Published
2026-08-28T18:47:06.377Z
Modified
2026-09-02T03:30:50.407849503Z
Severity
  • 7.6 (High) CVSS_V4 - CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:P/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N CVSS Calculator
Summary
Hermes Agent 0.16.0 < 0.17.0 Credential Store Overwrite via File-Write Tool
Details

Hermes Agent 0.16.0 prior to 0.17.0 contains an improper path restriction vulnerability that allows attackers who can influence ingested message content to overwrite the credential store by bypassing sensitive-path guards that excluded the auth.json file. Attackers can craft malicious messages directing the agent's file-write tooling to overwrite the credential store without triggering any path-based protection, enabling credential tampering or unauthorized access.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/82xxx/CVE-2026-82020.json",
    "unresolved_ranges": [
        {
            "source": "AFFECTED_FIELD",
            "extracted_events": [
                {
                    "introduced": "0.16.0"
                },
                {
                    "fixed": "0.17.0"
                }
            ]
        }
    ],
    "cna_assigner": "VulnCheck",
    "cwe_ids": [
        "CWE-552"
    ]
}
References

Affected packages

Git / github.com/nousresearch/hermes-agent

Affected ranges

Type
GIT
Repo
https://github.com/nousresearch/hermes-agent
Events
Database specific
Show details
{
    "source": [
        "AFFECTED_FIELD",
        "REFERENCES"
    ],
    "extracted_events": [
        {
            "introduced": "2026.6.5"
        },
        {
            "fixed": "2026.6.19"
        }
    ]
}

Affected versions

v2026.*
v2026.6.5

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-82020.json"