Unrated severityNVD Advisory· Published Aug 6, 2026
NousResearch hermes-agent Memory Toolset model_tools.py access control
CVE-2026-18993
Description
A vulnerability was detected in NousResearch hermes-agent up to 0.16.0. Affected by this issue is some unknown functionality of the file hermes-agent/model_tools.py of the component Memory Toolset. The manipulation results in improper access controls. The attack can be executed remotely. The exploit is now public and may be used.
Affected products
1- Range: <=0.16.0
Patches
Vulnerability mechanics
References
7- github.com/NousResearch/hermes-agent/pull/46185mitreissue-trackingpatch
- github.com/NousResearch/hermes-agent/issues/48181mitreexploitissue-tracking
- vuldb.com/cve/CVE-2026-18993mitrethird-party-advisory
- vuldb.com/submit/862610mitrethird-party-advisory
- github.com/NousResearch/hermes-agent/issues/46171mitreissue-tracking
- vuldb.com/vuln/386377mitrevdb-entry
- vuldb.com/vuln/386377/ctimitresignaturepermissions-required
News mentions
0No linked articles in our index yet.