x402 census · x402-hono-api.inraby.workers.dev · 8dfdaf0569c7 · JSON
POST /api/v1/cve-lookup
unprobed
CVE lookup and vulnerability search — resolve a CVE ID via OSV and return summary, severity, affected packages, and references for agent triage.
Verdict: not verified by an unpaid GET. not probed yet. This says nothing about whether the route works when called as declared.
Facts from the catalogs
| Field | Value |
|---|---|
| URL | https://x402-hono-api.inraby.workers.dev/api/v1/cve-lookup |
| Method | POST |
| Price | $0.01 USDC = 10000 atomic units of 0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913 |
| Network | eip155:8453 (base) |
| payTo | 0xe2433f056f953b7d4c946cffb1201d2e9601eabf |
| Seller | x402-hono-api.inraby.workers.dev |
| Catalogs | cdp (row updated 2026-09-29) |
| Listed since (lower bound) | 2026-09-29 (earliest catalog timestamp; catalogs report last-update times only) |
| Last catalog update | 2026-09-29 |
| CDP quality counters | 3 calls and 2 unique payers in 30 days, last call 2026-09-29 (catalog-reported, not verified on chain) |
| Category (keyword rule) | research/reports |
| Templated path | no |
| x402Version in catalog | 2 |
| Service name / tags | CVE / Vulnerability Lookup · cve, cve lookup, vulnerability lookup, vulnerability, security |
Unpaid probe (census of )
| Field | Value |
|---|---|
| Probe | not probed in this build |
No hourly re-probe has reached this resource yet; the cron covers a rotating slice of 150 per hour.
On-chain facts for the payTo (public address)
| Field | Value |
|---|---|
| Distinct payers | 6 |
| Payments | 13 |
| USDC volume | $0.52 |
| Median payment | $0.03 |
| First / last payment | 2026-07-22 / 2026-09-11 |
| Sampler-shaped share of payments | 100.0% |
| Payers that are not samplers | 0 |
| Source | forensics-2026-09-30 |
| Address | 0xe2433f056f953b7d4c946cffb1201d2e9601eabf (contract: EIP7702Proxy) |
Declared input and output (extensions.bazaar)
{
"input": {
"body": {
"cveId": "CVE-2021-44228"
},
"bodyType": "json",
"method": "POST",
"type": "http"
},
"output": {
"type": "json",
"example": {
"affectedPackages": [
{
"ecosystem": "Maven",
"name": "log4j-core",
"versions": [
"2.14.1"
]
}
],
"cveId": "CVE-2021-44228",
"issues": [],
"references": [
"https://nvd.nist.gov/vuln/detail/CVE-2021-44228"
],
"severity": "CVSS_V3:10.0",
"status": "found",
"summary": "Apache Log4j2 remote code execution via JNDI injection"
}
}
}
Try it (unpaid: shows the 402)
curl -si -X POST 'https://x402-hono-api.inraby.workers.dev/api/v1/cve-lookup' -H 'accept: application/json' -H 'content-type: application/json' --data '{}'
The catalog declares POST. A 402 answer carries the payment requirements in the JSON body and, for x402 v2, base64 in the PAYMENT-REQUIRED header. This page never sends a payment.
Paid checks (x402, USDC on Base)
GET https://bazaar.agentexchange.work/r/8dfdaf0569c7/probe.json re-runs this probe right now for $0.01 and writes the result here. POST https://bazaar.agentexchange.work/featured with {"id":"8dfdaf0569c7"} places this resource at the top of the report and search pages for 30 days for $1.00, labelled. Unpaid requests answer 402 with the terms. Pricing.
Catalog references: agentic.market (CDP Bazaar front end) · this record as JSON · all resources on x402-hono-api.inraby.workers.dev.