CVE-2026-53869 – Hermes Agent < 0.16.0 – DNS Rebinding Bypass via WebSocket Endpoints
CVE ID :CVE-2026-53869 Published : June 17, 2026, 5:57 p.m. | 43 minutes ago Description :Hermes Agent before 0.16.0 contains a DNS rebinding vulnerability in WebSocket endpoints that allows remote attackers to bypass Host and Origin validation. FastAPI HTTP middleware does…
