HighVulnerability
Hermes Agent - Pre-Authentication Disk Consumption
- Published
- Record updated
Summary
Hermes Agent's public POST /auth/password-login route copies the client-supplied provider value into the audit log without any size limit, before rejecting an unknown provider. Because the route is treated as public, an unauthenticated client can cause arbitrarily large, attacker-controlled data to be written persistently to disk. Testing showed a 100 MiB request reduced free disk space from 919 MB to 819 MB, and repeated requests could exhaust disk space and degrade availability.
Mitigation
The source does not state a fix yet. Check the original advisory for updates.
Related items
- MediumHermes Agent - Pre-Authentication Memory ExhaustionSimilar attack · Tenable Research Advisories
- MediumGHSA-v36g-jcw9-x7cw: Pydantic AI: Excessive resource use when local web fetching converts nested HTMLSimilar attack · GitHub Advisory Database
- MediumGHSA-v2xh-2vp8-57h8: Pydantic AI: Unbounded memory use when downloading remote content via web_fetch or FileUrlSimilar attack · GitHub Advisory Database
- MediumGHSA-fpf4-vwcp-v4hp: Pydantic AI: Event loop blocked by quadratic title extraction in `web_fetch`Similar attack · GitHub Advisory Database
- HighCVE-2026-107286: Pydantic AI streamed requests leak concurrency slots, causing denial of serviceSimilar attack · NVD/CVE Database