x402 census · preflight402.com · f3500afffa4b · JSON
POST /v1/cve/check
unprobed
Call before acting on CVE identifiers produced by a model. Returns whether each CVE record exists and its state (published or rejected), with severity and the official CVE record link. Catches fabricated advisory references. Does not tell you whether to patch.
Verdict: not verified by an unpaid GET. not probed yet. This says nothing about whether the route works when called as declared.
Facts from the catalogs
| Field | Value |
|---|---|
| URL | https://preflight402.com/v1/cve/check |
| Method | POST |
| Price | $0.05 USDC = 50000 atomic units of 0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913 |
| Network | eip155:8453 (base) |
| payTo | 0xB9Db3966C7F18283624C97E860a84CEf7f9ba607 |
| Seller | preflight402.com |
| Catalogs | cdp (row updated 2026-09-28) |
| Listed since (lower bound) | 2026-09-28 (earliest catalog timestamp; catalogs report last-update times only) |
| Last catalog update | 2026-09-28 |
| CDP quality counters | 1 calls and 1 unique payers in 30 days, last call 2026-09-28 (catalog-reported, not verified on chain) |
| Category (keyword rule) | other/unknown |
| Templated path | no |
| x402Version in catalog | 2 |
| Service name / tags | Preflight · security, cve, vulnerabilities, cybersecurity, verification |
Unpaid probe (census of )
| Field | Value |
|---|---|
| Probe | not probed in this build |
No hourly re-probe has reached this resource yet; the cron covers a rotating slice of 150 per hour.
On-chain facts for the payTo (public address)
| Field | Value |
|---|---|
| Distinct payers | 2 |
| Payments | 2 |
| USDC volume | $0.10 |
| Median payment | $0.05 |
| First / last payment | 2026-09-17 / 2026-09-30 |
| Sampler-shaped share of payments | 100.0% |
| Payers that are not samplers | 0 |
| Source | forensics-2026-09-30 |
| Address | 0xB9Db3966C7F18283624C97E860a84CEf7f9ba607 |
Declared input and output (extensions.bazaar)
{
"input": {
"body": {
"ids": [
"CVE-2021-44228"
]
},
"bodyType": "json",
"method": "POST",
"type": "http"
},
"output": {
"type": "json",
"example": {
"checked_at": "2026-09-02T21:40:00Z",
"results": [
{
"cvss_v3": 7.5,
"exists": true,
"id": "CVE-2026-12345",
"official_url": "https://www.cve.org/CVERecord?id=CVE-2026-12345",
"state": "published"
}
]
}
}
}
Try it (unpaid: shows the 402)
curl -si -X POST 'https://preflight402.com/v1/cve/check' -H 'accept: application/json' -H 'content-type: application/json' --data '{}'
The catalog declares POST. A 402 answer carries the payment requirements in the JSON body and, for x402 v2, base64 in the PAYMENT-REQUIRED header. This page never sends a payment.
Paid checks (x402, USDC on Base)
GET https://bazaar.agentexchange.work/r/f3500afffa4b/probe.json re-runs this probe right now for $0.01 and writes the result here. POST https://bazaar.agentexchange.work/featured with {"id":"f3500afffa4b"} places this resource at the top of the report and search pages for 30 days for $1.00, labelled. Unpaid requests answer 402 with the terms. Pricing.
Catalog references: agentic.market (CDP Bazaar front end) · this record as JSON · all resources on preflight402.com.