CVE-2026-91140
EUVD-2026-9339706.10.2026, 14:17
An OS command injection vulnerability in the shell-based temporary-file cleanup instructions in Progress Software Autonomous REST Connector GenAI Agents ARCGenAI-Generator version 2.0 allows an attacker who supplies a crafted Swagger/OpenAPI document to execute arbitrary commands on a developer's machine when a user invokes the generator.
Awaiting analysis
This vulnerability is currently awaiting analysis.