Hermes WebUI before version 0.51.269 contains a profile isolation bypass vulnerability that allows authenticated users to access data belonging to other profiles by querying the session search endpoint without active-profile filtering. Attackers can send requests to the sessions search handler to retrieve session titles and transcript message content from profiles other than their own active profile.
History

Tue, 09 Jun 2026 16:30:00 +0000

Type Values Removed Values Added
Description Hermes WebUI before version 0.51.269 contains a profile isolation bypass vulnerability that allows authenticated users to access data belonging to other profiles by querying the session search endpoint without active-profile filtering. Attackers can send requests to the sessions search handler to retrieve session titles and transcript message content from profiles other than their own active profile.
Title Hermes WebUI < 0.51.269 Profile Isolation Bypass via sessions search
Weaknesses CWE-862
References
Metrics cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N'}

cvssV4_0

{'score': 7.1, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulnCheck

Published:

Updated: 2026-06-09T17:51:17.388Z

Reserved: 2026-06-02T16:30:15.232Z

Link: CVE-2026-49956

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-06-09T17:17:48.943

Modified: 2026-06-09T17:17:48.943

Link: CVE-2026-49956

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.