Hermes WebUI before 0.51.368 contains an authorization bypass vulnerability in the get_profile_cookie() function that accepts…
VulnCheck·CWE-565·Published 2026-06-17