PT-2026-40774 · Unknown · Hermes-Webui

Published

2026-05-13

·

Updated

2026-05-14

·

CVE-2026-22677

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Hermes WebUI versions prior to 0.51.44 Release T
Description A path traversal issue exists in the session import endpoint. Authenticated attackers can read arbitrary files by importing a crafted session containing an unrestricted workspace value. By supplying a blocked filesystem root in the workspace field and using relative paths in the session file API, an attacker can access any file readable by the WebUI process.
Recommendations Update to version 0.51.44 Release T or later.

Exploit

Fix

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2026-22677

Affected Products

Hermes-Webui