CVE-2026-17432 | NousResearch hermes-agent 2026.6.5 SimpleX Gateway Authorization adapter.py contactId access control (44729/44730)
A vulnerability labeled as critical has been found in NousResearch hermes-agent 2026.6.5. Affected by this vulnerability is an unknown functionality of the file hermes-agent/plugins/platforms/simplex/adapter.py of the component SimpleX Gateway Authorization. The manipulation of the argument contactId results in improper access controls.
This vulnerability is cataloged as CVE-2026-17432. The attack may be launched remotely. Furthermore, there is an exploit available.
Applying a patch is advised to resolve this issue.VulDB Recent EntriesRead More