PatchSiren cyber security CVE debrief
CVE-2026-82020 NousResearch CVE debrief
CVE-2026-82020 is an improper path restriction vulnerability in Hermes Agent versions 0.16.0 prior to 0.17.0. Attackers who can influence ingested message content can overwrite the credential store by bypassing sensitive-path guards, enabling credential tampering or unauthorized access. This vulnerability allows attackers to craft malicious messages directing the agent's file-write tooling to overwrite the credential store without triggering any path-based protection. The vulnerability has a high severity score and requires immediate attention from defenders. Defenders should assess exposure and prioritize verification and remediation efforts for systems using Hermes Agent versions
- Vendor
- NousResearch
- Product
- hermes-agent
- CVSS
- HIGH 7.6
- CISA KEV
- Not listed in stored evidence
- Original CVE published
- 2026-08-28
- Original CVE updated
- 2026-09-08
- Advisory published
- 2026-08-28
- Advisory updated
- 2026-09-08
Who should care
Defenders responsible for systems using Hermes Agent versions 0.16.0 or earlier should assess exposure and prioritize verification and remediation efforts. They should review the supplied official advisory or CVE record to validate affected scope, severity, and vendor guidance. Defenders should also plan vendor-supported updates or mitigations through normal change control where exposure is confirmed. Additionally, defenders should check relevant
Why it matters
CVE-2026-82020 is a high-severity vulnerability in Hermes Agent that allows attackers to overwrite the credential store, enabling credential tampering or unauthorized access. Defenders should prioritize verifying exposure and assessing the impact on their systems, especially those using Hermes Agent versions 0.16.0 or earlier.
- Credential tampering or unauthorized access may occur if the vulnerability is exploited
- Defenders must verify exposure and assess the impact on their systems
- Remediation priority is high for systems using Hermes Agent versions 0.16.0 or earlier
Technical summary
The Hermes Agent's improper path restriction vulnerability allows attackers to influence ingested message content to overwrite the credential store by bypassing sensitive-path guards that excluded the auth.json file. This vulnerability enables credential tampering or unauthorized access. Attackers can craft malicious messages directing the agent's file-write tooling to overwrite the credential store without triggering any path-based protection. The affected product is Hermes Agent versions 0.16.0 prior to 0.17.0. Defenders should prioritize verifying exposure and assessing the impact on their systems, especially those using Hermes Agent versions 0.16.0 or earlier. The vulnerability has a high severity score and
Defensive priority
Defenders should prioritize verifying exposure and assessing the impact of this vulnerability on their systems, especially those using Hermes Agent versions 0.16.0 or earlier.
Recommended defensive actions
- Verify the version of Hermes Agent in use and assess exposure
- Review and update the credential store to prevent unauthorized access
- Implement additional monitoring and logging to detect potential attacks
- Review compensating controls for exposed systems while remediation is scheduled and verified
- Check relevant monitoring, detection, and logs for exposed assets that need extra review
- Track exceptions, retest remediated assets, and close the item only after evidence is documented
- Confirm whether affected product deployments exist in managed environments and assign an owner for follow-up
Evidence notes
The CVE record and NVD entry provide details about the vulnerability, but the scope of affected systems and versions requires further verification. The Hermes Agent's credential store overwrite vulnerability allows attackers to craft malicious messages to bypass path-based protections.
Sources and references
Verified primary and authoritative sources
-
CVE-2026-82020 CVE Program record
Publisher, destination, and source semantics verified
URL: https://www.cve.org/CVERecord?id=CVE-2026-82020
CVE Program - Official CVE Program record with source-provided CVE metadata.
-
CVE-2026-82020 NVD vulnerability detail
Publisher, destination, and source semantics verified
URL: https://nvd.nist.gov/vuln/detail/CVE-2026-82020
NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.
Supplemental references
-
Source reference
Unverified legacy reference
URL: https://github.com/NousResearch/hermes-agent/commit/2b67e96aec2aa2abd5e94b544cda8e564c75f9f5
-
Source reference
Unverified legacy reference
URL: https://github.com/NousResearch/hermes-agent/commit/da28d5d113956dcf803d5cff552a120740a96a59
-
Source reference
Unverified legacy reference
URL: https://github.com/NousResearch/hermes-agent/pull/45821
-
Source reference
Unverified legacy reference
URL: https://github.com/NousResearch/hermes-agent/releases/tag/v2026.6.19
-
Source reference
Unverified legacy reference
URL: https://www.vulncheck.com/advisories/hermes-agent-credential-store-overwrite-via-file-write-tool
Methodology and review provenance
AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.