


Perceptive Security
SOC/SIEM Consultancy

Hermes Agent 0.18.2 prior to 0.19.0 contains a supply chain vulnerability in its bundled MCP catalog that allows a remote attacker to execute arbitrary code by …
Published:
28 augustus 2026 om 00:00:00
Alert date:
28 augustus 2026 om 23:18:32
Source:
nvd.nist.gov
Supply Chain & Dependencies, Zero-Day Vulnerabilities
Hermes Agent versions 0.18.2 prior to 0.19.0 contains a critical supply chain vulnerability in its bundled MCP catalog. The flaw arises from referencing a third-party upstream repository via a mutable branch instead of a pinned commit SHA. An attacker who compromises the upstream repository can inject malicious code that propagates automatically to every host installing the affected catalog entry. No further action is required by the operator for exploitation, making the attack vector particularly dangerous. The vulnerability allows remote arbitrary code execution across all affected deployments. A fix has been released in version 0.19.0, with the remediation tracked via a specific commit and pull request on GitHub. The issue was also documented by VulnCheck as a high-severity advisory. Organizations using the affected Hermes Agent versions should update immediately to mitigate risk.
Technical details
Mitigation steps:
Affected products:
Hermes Agent 0.18.2
Hermes Agent prior to 0.19.0
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-82021
https://github.com/NousResearch/hermes-agent/commit/9df5f879b4a5925c0f8f947e7e16ed8e845932c3
https://github.com/NousResearch/hermes-agent/pull/64463
https://github.com/NousResearch/hermes-agent/releases/tag/v2026.7.20
https://www.vulncheck.com/advisories/hermes-agent-mcp-catalog-supply-chain-rce-via-mutable-branch-reference
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
