Open Source Filings
GET api.osf-master-server.com/x402/security/cve/:cve_id
Why an agent can trust this route.
Sonar evidence is advisory. Paid delivery is shown as verified only when paid probes are available; otherwise route estimates use the unpaid handshake as a clearly labeled proxy.
Observed outcomes
CVE lookup and exploit check by CVE id. Answers is this CVE actively exploited in the wild using the US CISA Known Exploited Vulnerabilities (KEV) catalog, with the EPSS exploitation probability score and CVSS severity. Each field carries a provenance URL to the official US source. For vulnerability management, patch prioritization, threat intelligence, and DevSecOps agents.
Resource: api.osf-master-server.com/x402/security/cve/:cve_id
Network: eip155:8453 · Asset: 0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913 · Pay to: 0x72f62dE8b70d6CFa8Cc2dF6f21F243f289F3396c
Payment methods: — · Last validation: 2026-09-14 11:22:51.46+00
{
"input": {
"type": "object",
"required": [
"type",
"method"
],
"properties": {
"type": {
"type": "string",
"const": "http"
},
"method": {
"enum": [
"GET",
"HEAD",
"DELETE"
],
"type": "string"
},
"pathParams": {
"type": "object"
},
"queryParams": {
"type": "object",
"required": [
"format"
],
"properties": {
"format": {
"type": "string",
"description": "Response format (json)."
}
}
}
},
"additionalProperties": false
},
"output": {
"type": "object",
"required": [
"type"
],
"properties": {
"type": {
"type": "string"
},
"example": {
"type": "object",
"required": [
"service",
"query",
"result",
"actively_exploited",
"compliance_note",
"audit_receipt"
],
"properties": {
"nvd": {
"type": "object"
},
"epss": {
"type": "object"
},
"query": {
"type": "string"
},
"result": {
"type": "string",
"description": "FOUND, NOT_FOUND, or INVALID_INPUT"
},
"service": {
"type": "string"
},
"audit_receipt": {
"type": "object"
},
"coverage_note": {
"type": "string"
},
"compliance_note": {
"type": "string"
},
"provenance_urls": {
"type": "object"
},
"actively_exploited": {
"type": "boolean",
"description": "True if on the CISA KEV catalog."
},
"exploitation_summary": {
"type": "string"
}
}
}
}
},
"paymentRequirements": [
{
"raw": {
"asset": "0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913",
"extra": {
"name": "USD Coin",
"version": "2"
},
"payTo": "0x72f62dE8b70d6CFa8Cc2dF6f21F243f289F3396c",
"amount": "50000",
"scheme": "exact",
"network": "eip155:8453",
"maxTimeoutSeconds": 300
},
"asset": "0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913",
"payTo": "0x72f62dE8b70d6CFa8Cc2dF6f21F243f289F3396c",
"scheme": "exact",
"network": "eip155:8453",
"amountAtomic": "50000"
}
]
}Source catalog records are retained separately from live endpoint observations. Sonar score, uptime, and latency are advisory metrics. CDP indexing is not inferred from validation.