{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/cpes/cpe2.3aprogressautonomous_rest_connector_genai_agents_arcgenai_generator/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:progress:autonomous_rest_connector_genai_agents_arcgenai_generator:*:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":9.6,"id":"CVE-2026-91140"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["Autonomous REST Connector GenAI Agents ARCGenAI-Generator (\u003c 2.1)"],"_cs_severities":["high"],"_cs_tags":["vulnerability","cve-2026-91140","supply-chain"],"_cs_type":"advisory","_cs_vendors":["Progress"],"content_html":"\u003cp\u003eProgress Software has disclosed a critical security vulnerability, identified as CVE-2026-91140, impacting the Autonomous REST Connector GenAI Agents (ARCGenAI-Generator) product. This vulnerability affects all versions of the product prior to 2.1. The flaw was detailed in a security bulletin published in September 2026. Given the nature of the software, which facilitates connectivity for Generative AI agents, this vulnerability could potentially lead to unauthorized access or manipulation of data streams if successfully exploited. Administrators are advised to apply the mandatory updates provided by Progress to secure their deployments against this risk.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eThe vulnerability poses a significant risk to organizations integrating ARCGenAI-Generator into their AI infrastructure. Successful exploitation could compromise the integrity and confidentiality of the data being processed or transmitted by the GenAI agents, potentially leading to unauthorized information disclosure or service disruption within the enterprise network.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpgrade Progress Autonomous REST Connector GenAI Agents ARCGenAI-Generator to version 2.1 or later immediately.\u003c/li\u003e\n\u003cli\u003eReview the Progress DataDirect Critical Security Alert Bulletin for specific guidance on CVE-2026-91140.\u003c/li\u003e\n\u003cli\u003eAudit network logs for anomalous traffic patterns originating from or destined for servers hosting the ARCGenAI-Generator component.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-10-07T04:37:25Z","date_published":"2026-10-07T04:37:25Z","id":"https://feed.craftedsignal.io/briefs/2026-10-progress-arcgenai/","summary":"Progress Software has released a security advisory regarding CVE-2026-91140, a critical vulnerability affecting the ARCGenAI-Generator component in versions prior to 2.1.","title":"Progress Autonomous REST Connector GenAI Agents Vulnerability","url":"https://feed.craftedsignal.io/briefs/2026-10-progress-arcgenai/"}],"language":"en","title":"CraftedSignal Threat Feed - Cpe:2.3:a:progress:autonomous_rest_connector_genai_agents_arcgenai_generator:*:*:*:*:*:*:*:*","version":"https://jsonfeed.org/version/1.1"}