CVE-2026-9366Disclosure

LOWCVSS 5.5 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A vulnerability was found in NousResearch hermes-agent 2026.4.23. The impacted element is the function _scan_context_content of the file agent/prompt_builder.py. The manipulation results in injection. The attack may be performed from remote. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-74CWE-707

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Disclosure: 1 classified signal
  • General: 1 classified signal
  • Peaked 1d ago at 1 mentions (2026-05-24); latest day: 1
  • 2 total mentions across 2 days

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-05-24: 1Mentions · 2026-06-08: 105-2406-08
Signal classification2 categories
Disclosure
150.0%
General
150.0%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-05-241
Disclosure1
2026-06-081
General1
Full discourse2 posts
  • CVETrends@CVEShield
    General

    Top 5 Trending CVEs: 1 - CVE-2026-9366 2 - CVE-2026-42945 3 - CVE-2026-46640 4 - CVE-2026-49261 5 - CVE-2020-0022 #cve #cvetrends #cveshield #cybersecurity https://www.cveshield.com/dashboard

    Post summary

    The text simply lists five trending CVE identifiers without providing any additional technical, exploit, or mitigation details.

    00010130
    1.7K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-9366 A vulnerability was found in NousResearch hermes-agent 2026.4.23. The impacted element is the function _scan_context_content of the file agent/prompt_builder.py. The ma… https://www.cve.org/CVERecord?id=CVE-2026-9366

    Post summary

    A new vulnerability (CVE‑2026‑9366) has been identified in NousResearch hermes‑agent 2026.4.23, affecting the _scan_context_content function, but no exploit evidence or patch information is provided.

    00000188
    57.5K followersView on X

Explore more