CVE-2026-15311: Cross Site Scripting in NousResearch hermes-agent
A vulnerability was identified in NousResearch hermes-agent up to 2026.5.29.2. Affected by this issue is the function MatrixAdapter._markdown_to_html of the file gateway/platforms/matrix.py of the component Matrix Adapter. Such manipulation leads to cross site scripting. The attack can be executed remotely. The exploit is publicly available and might be used. The pull request to fix this issue awaits acceptance.
AI Analysis
Technical Summary
The NousResearch hermes-agent contains a cross-site scripting vulnerability in the MatrixAdapter._markdown_to_html function within gateway/platforms/matrix.py. This flaw allows remote attackers to execute script code by manipulating markdown input that is converted to HTML without proper sanitization. The vulnerability affects versions 2026.5.29.0 through 2026.5.29.2. Although a pull request with a fix exists, it has not yet been merged or officially released. No official patch or remediation is currently available.
Potential Impact
Successful exploitation of this vulnerability could allow an attacker to execute arbitrary scripts in the context of the victim's browser, potentially leading to session hijacking, defacement, or other malicious actions. The vulnerability requires low attack complexity and no privileges but does require user interaction. The impact is limited to cross-site scripting without direct code execution or privilege escalation.
Mitigation Recommendations
No official patch or fix has been released yet; the pull request to fix the issue is awaiting acceptance. Users should monitor the vendor's repository or advisory channels for the official fix. Until then, consider applying any available temporary mitigations such as input sanitization or disabling markdown rendering if feasible. Avoid exposing the vulnerable component to untrusted users where possible.
CVE-2026-15311: Cross Site Scripting in NousResearch hermes-agent
Description
A vulnerability was identified in NousResearch hermes-agent up to 2026.5.29.2. Affected by this issue is the function MatrixAdapter._markdown_to_html of the file gateway/platforms/matrix.py of the component Matrix Adapter. Such manipulation leads to cross site scripting. The attack can be executed remotely. The exploit is publicly available and might be used. The pull request to fix this issue awaits acceptance.
CVSS v4.0
Score 5.1medium
Affected software
pkg:github/nousresearch/hermes-agentcpe:2.3:a:nousresearch:hermes-agent:*:*:*:*:*:*:*:*Run on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
The NousResearch hermes-agent contains a cross-site scripting vulnerability in the MatrixAdapter._markdown_to_html function within gateway/platforms/matrix.py. This flaw allows remote attackers to execute script code by manipulating markdown input that is converted to HTML without proper sanitization. The vulnerability affects versions 2026.5.29.0 through 2026.5.29.2. Although a pull request with a fix exists, it has not yet been merged or officially released. No official patch or remediation is currently available.
Potential Impact
Successful exploitation of this vulnerability could allow an attacker to execute arbitrary scripts in the context of the victim's browser, potentially leading to session hijacking, defacement, or other malicious actions. The vulnerability requires low attack complexity and no privileges but does require user interaction. The impact is limited to cross-site scripting without direct code execution or privilege escalation.
Mitigation Recommendations
No official patch or fix has been released yet; the pull request to fix the issue is awaiting acceptance. Users should monitor the vendor's repository or advisory channels for the official fix. Until then, consider applying any available temporary mitigations such as input sanitization or disabling markdown rendering if feasible. Avoid exposing the vulnerable component to untrusted users where possible.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- VulDB
- Date Reserved
- 2026-07-09T17:49:30.256Z
- Cvss Version
- 4.0
- State
- PUBLISHED
- Remediation Level
- null
Threat ID: 6a503a4168715ace434e6a78
Added to database: 07/10/2026, 00:18:09 UTC
Last enriched: 07/17/2026, 09:52:21 UTC
Last updated: 08/22/2026, 10:52:07 UTC
Views: 128
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.