resources/Open Source Filings/GET /x402/security/cve/:cve_id
GETorigin + 2 sourcesqualified signals

OSF CVE Exploit Check (CISA KEV, EPSS, CVSS)GET /x402/security/cve/:cve_id · x402 API by Open Source Filings

Vulnerability exploitation check by CVE id. Returns whether a CVE is actively exploited in the wild (US CISA Known Exploited Vulnerabilities catalog), its EPSS exploit probability score, and its CVSS severity, each with a provenance URL to the authoritative US government source, plus a hashed audit receipt. $0.02 USDC per check on Base. For vulnerability management, patch prioritization, threat intelligence, and DevSecOps agent workflows.

https://api.osf-master-server.com/x402/security/cve/:cve_id

What does this x402 API do?

OSF CVE Exploit Check (CISA KEV, EPSS, CVSS). This is an x402-gated GET API resource from Open Source Filings. TOLL·402 did not invoke this route automatically because doing so was not considered safe. No normalized USD price is recorded; the listing names Base. No settled paid call has been verified.

Published price
No normalized USD price is recorded
Networks
Base
Latest evidence
TOLL·402 did not invoke this route automatically because doing so was not considered safe
Resource ID
8bc3789a1378f14b9a664023
USE THIS RESOURCE

Start with a quote-only recipe. Payment signing stays in your project.

CODE
AI CODING TOOLS
quote-check.ts
const response = await fetch("https://api.osf-master-server.com/x402/security/cve/:cve_id", {
  method: "GET",
});

console.log(response.status);
console.log(Object.fromEntries(response.headers));
console.log((await response.text()).slice(0, 1000));

// A valid 402 is a quote, not a completed paid call.

This sends no payment. Inspect the 402 response before adding a wallet-enabled client.

STATUS HISTORY

  1. Exact route checked

    not safely testable · unresolved-url-template

  2. Origin reachable

    OPTIONS https://api.osf-master-server.com/ returned 405.

  3. Observed in cdp-bazaar

    The registry record was observed and retained with provenance.

  4. Observed in 402-index

    Discovered through self-registered.

  5. Registry record checked

    Registry health: healthy.

What evidence supports this listing?

cdp-bazaarobserved 2026-07-10 · open source record ↗
402-indexobserved 2026-07-10 · open source record ↗
origin checkOPTIONS https://api.osf-master-server.com/ → 405 on 2026-07-21
route quotenot invoked automatically · unresolved-url-template · 2026-07-21

Each record has an exact-route quote outcome. Unresolved templates and potentially mutating methods are labeled instead of being invoked without provider-specific test input. A quote is still separate from a settled paid call. Read the discovery and verification methodology →

Which networks and payment options does it accept?

The normalized listing price is No normalized USD price is recorded. Raw protocol requirements remain visible below for implementation and audit use.

Baseexact20000 atomic · 0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913
Open Source Filings GET /x402/security/cve/: · 8bc378 x402 API · TOLL·402