CVE-2026-18976 Details
Description
A vulnerability was determined in NousResearch hermes-agent up to 0.16.0. This impacts the function get_tool_definitions of the file agent/agent_init.py of the component disabled_toolsets Handler. This manipulation causes incorrect privilege assignment. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized. The project was informed of the problem early through an issue report.
A vulnerability exists in NousResearch Hermes-Agent versions through 0.16.0, specifically within the disabled_toolsets Handler. The issue arises in the get_tool_definitions function of agent/agent_init.py, where memory-provider tools can bypass disabled toolset restrictions. This flaw allows tools like fact_store and fact_feedback to remain accessible and executable, even when the memory toolset is explicitly disabled. The vulnerability can be exploited remotely, leading to unauthorized persistence of sensitive information and disruption of memory management processes.
Users can update to Hermes-Agent version 0.20.0 or later, where this vulnerability has been fixed.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Aug 6, 2026CISA-ADP
Assessed Aug 6, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://github.com/NousResearch/hermes-agent/ | [email protected] | Source CodeVendor |
| https://github.com/NousResearch/hermes-agent/issues/46171 | [email protected] | Issue TrackingTechnical DescriptionVendor |
| https://github.com/NousResearch/hermes-agent/pull/46185 | [email protected] | Issue TrackingVendor |
| https://vuldb.com/cve/CVE-2026-18976 | [email protected] | AdvisoryPermission Required |
| https://vuldb.com/submit/862541 | [email protected] | Issue TrackingPermission Required |
| https://vuldb.com/vuln/386264 | [email protected] | BundlePermission Required |
| https://vuldb.com/vuln/386264/cti | [email protected] | Content Wall |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-266 | Incorrect Privilege Assignment | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| NousResearch hermes-agent | <= 0.16.0 (semver) |
CPE
Remediation
| |
Change History
2 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Aug 6, 2026 | CVE Modified | CISA-ADP |
| Aug 6, 2026 | New CVE Received | [email protected] |
Volerion