---
id: CVE-2026-10221
aliases:
  - GHSA-xq8w-9jvx-gm3v
title: hermes-agent has an Injection issue
summary: hermes-agent has an Injection issue
severity: high
cvss: 7.3
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L'
vendor: hermes-agent
product: hermes-agent
ecosystem: pip
affected:
  - hermes-agent <= 0.19.0
published: '2026-06-01'
updated: '2026-07-28'
source: OSV
sourceUrl: 'https://osv.dev/vulnerability/GHSA-xq8w-9jvx-gm3v'
references:
  - url: 'https://nvd.nist.gov/vuln/detail/CVE-2026-10221'
  - url: 'https://github.com/NousResearch/hermes-agent/issues/26979'
  - url: 'https://github.com/NousResearch/hermes-agent/pull/69860'
  - url: >-
      https://github.com/NousResearch/hermes-agent/commit/2ca38e5df43411afe11aedfc34bfd71a2eecd4bb
  - url: 'https://gist.github.com/YLChen-007/d343fcfe2c009cd45f56dc475fd5ac03'
  - url: 'https://github.com/NousResearch/hermes-agent'
  - url: 'https://vuldb.com/cve/CVE-2026-10221'
  - url: 'https://vuldb.com/submit/822019'
  - url: 'https://vuldb.com/vuln/367500'
  - url: 'https://vuldb.com/vuln/367500/cti'
tags:
  - osv
  - pip
epss: 0.00304
epssPercentile: 0.20596
ingestedAt: '2026-07-28T19:09:12.789Z'
---

## Overview

A vulnerability was identified in NousResearch hermes-agent up to 0.12.0. Affected by this vulnerability is the function _compress_context of the file run_agent.py. The manipulation leads to injection. It is possible to initiate the attack remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.

## Affected packages

- `hermes-agent <= 0.19.0`

## Remediation

Refer to the advisory for the patched release.
