CVE-2026-9352: NousResearch hermes-agent Messaging Gateway local.py _make_run_env information disclosure

Published May 24, 2026
·
Updated

A weakness has been identified in NousResearch hermes-agent up to 2026.4.23. This issue affects the function makerunenv of the file tools/environments/local.py of the component Messaging Gateway Handler. Executing a manipulation can lead to information disclosure. The attack may be launched remotely. The exploit has been made available to the public and could be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.

Affected Software

1 affected component
NousResearch hermes-agent<=2026.4.23

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Remove

    Remove nousresearch/hermes-agent from your environment.

    If the hermes-agent is not required, uninstall or disable the component until a vendor fix is available; otherwise isolate the host running it from untrusted networks.

  2. Compensating control

    Restrict remote access to the NousResearch hermes-agent (Messaging Gateway Handler) so the vulnerable _make_run_env cannot be reached from untrusted networks. Implement firewall/ACL rules or place the service behind a VPN or management network and allow only trusted IPs/hosts to connect.

  3. Operational

    Monitor logs and network traffic for attempts to exploit the vulnerability (public exploit available). If compromise is suspected, isolate affected hosts, perform incident response and forensic analysis, and rotate any credentials or secrets that may have been disclosed. Apply vendor updates or patches immediately when they become available.

Event History

May 24, 2026
CVE Published
via MITRE·03:30 AM
Data Sourced
via MITRE·03:30 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:16 AM
DescriptionSeverityWeakness
Apr 28, 58520
Event
via FIRST·02:45 AM

Frequently Asked Questions

1

What is the severity of CVE-2026-9352?

The severity of CVE-2026-9352 is medium with a CVSS score of 5.3.

2

How do I fix CVE-2026-9352?

To fix CVE-2026-9352, update the NousResearch hermes-agent to a version greater than 2026.4.23.

3

What type of vulnerability is CVE-2026-9352?

CVE-2026-9352 is classified as an information disclosure vulnerability.

4

What component of NousResearch hermes-agent is affected by CVE-2026-9352?

CVE-2026-9352 affects the Messaging Gateway Handler component specifically in the _make_run_env function of local.py.

5

Can CVE-2026-9352 be exploited remotely?

Yes, CVE-2026-9352 can potentially be exploited through remote manipulation.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203