


Perceptive Security
SOC/SIEM Consultancy

A vulnerability was identified in NousResearch hermes-agent up to 0.12.0. Affected by this vulnerability is the function _compress_context of the file run_agent…
Published:
31 May 2026 at 22:00:00
Alert date:
1 June 2026 at 05:01:34
Source:
nvd.nist.gov
Enterprise Applications
A vulnerability was identified in NousResearch hermes-agent up to version 0.12.0. The vulnerability affects the _compress_context function in the run_agent.py file and leads to injection attacks. The vulnerability can be exploited remotely and a public exploit is available. The vendor was contacted about the disclosure but did not respond. This poses a high risk due to the remote attack vector and public availability of the exploit.
Technical details
Mitigation steps:
Affected products:
NousResearch hermes-agent
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-10221
https://gist.github.com/YLChen-007/d343fcfe2c009cd45f56dc475fd5ac03
https://vuldb.com/cve/CVE-2026-10221
https://vuldb.com/submit/822019
https://vuldb.com/vuln/367500
https://vuldb.com/vuln/367500/cti
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
