{"uid":"cap_0mxEEFA7G-dSCdIlCYohf","slug":"preflight-cve-validator-6503adae","name":"Preflight CVE Validator","description":"Call before acting on CVE identifiers produced by a model. Returns whether each CVE record exists and its state (published or rejected), with severity and the official CVE record link. Catches fabricated advisory references. Does not tell you whether to patch.","url":"https://preflight402.com/v1/cve/check?utm_source=zero.xyz","method":"POST","headers":{},"bodySchema":{"type":"object","properties":{"ids":{"type":"array","items":{"type":"string","pattern":"^CVE-\\d{4}-\\d{4,}$"},"maxItems":20,"minItems":1}}},"responseSchema":null,"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.05","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.05/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.05","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.05","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_Zd0CGlK1_kA0QKHMCsA7R","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.05","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Checks whether CVE identifiers are real, published, or rejected — catching hallucinated vulnerability references before an agent acts on them.","exampleAgentPrompt":"Before we do anything with these CVEs — CVE-2024-12345, CVE-2023-99999, and CVE-2021-44228 — can you verify they're all real and not hallucinated, and tell me whether each one is published or rejected along with its severity?","exampleUseCases":[{"title":"Hallucination check in AI security reports","prompt":"A model just gave me a list of CVEs to remediate: CVE-2024-21762, CVE-2023-44487, and CVE-2024-00001. Before I forward this to the engineering team, can you confirm each one actually exists in the CVE database and isn't fabricated?"},{"title":"Validating advisory references before ticketing","prompt":"I'm about to file security tickets based on these CVE IDs from a vendor advisory: CVE-2022-30190, CVE-2023-23397, CVE-2021-34527. Can you check that they're all real and published, and grab the severity and official record link for each?"},{"title":"Screening LLM-generated patch recommendations","prompt":"Our AI assistant recommended patching for CVE-2024-3094 and CVE-2023-50164 — can you verify those CVE IDs actually exist and tell me their current state before we schedule the maintenance window?"}],"resultDescription":"For each submitted CVE ID, the endpoint returns whether the record exists in the official CVE database, its current state (published or rejected), its severity rating, and a direct link to the official CVE record. Does not provide patch recommendations.","failureModes":["CVE ID format does not match pattern (^CVE-\\d{4}-\\d{4,}$) — request rejected with validation error","Batch exceeds 20 IDs — request rejected","CVE ID is syntactically valid but not yet in the database — returned as non-existent","Payment failure via x402 protocol — call not processed","Network timeout or service unavailability"],"whenToPreferThis":"Use this endpoint when an AI model or agent has produced CVE identifiers and you need to confirm they are real before taking action — filing tickets, alerting teams, or scheduling patches. Prefer this over general web search when you need a structured, machine-readable existence and status check with severity and an authoritative record link, especially for detecting hallucinated advisory references in LLM outputs.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-10-02T00:40:01.739Z","isFirstParty":false,"canonicalSlug":"preflight-cve-validator-6503adae"}