{"uid":"cap_G3P552X_BYC5unxSeG-aM","slug":"github-security-advisories-for-maven-java-changes-feed-a8ab7edb","name":"GitHub Security Advisories for Maven/Java (Changes Feed)","description":"New security vulnerabilities and CVEs affecting Maven/Java packages published since a timestamp (GitHub's reviewed advisory database) — each with its CVE ID, CVSS/severity score, affected package names, and a link. Answers \"did a dependency I use get a new CVE or vulnerability I should patch?\"","url":"https://oracles-production.up.railway.app/v1/ghsa-maven/changes","method":"GET","headers":{},"bodySchema":{"type":"object","$schema":"https://json-schema.org/draft/2020-12/schema","required":["input"],"properties":{"input":{"type":"object","required":["type","method"],"properties":{"type":{"type":"string","const":"http"},"method":{"enum":["GET"],"type":"string"},"queryParams":{"type":"object","properties":{"limit":{"type":"integer","maximum":500,"minimum":1},"since":{"type":"string","format":"date-time","description":"Only changes detected after this ISO-8601 instant"},"min_significance":{"type":"integer","maximum":10,"minimum":1,"description":"Keep only changes scored at least this"}}}},"additionalProperties":false},"output":{"type":"object","required":["type"],"properties":{"type":{"type":"string"},"example":{"type":"object","properties":{"count":{"type":"integer"},"source":{"type":"string"},"changes":{"type":"array","items":{"type":"object","properties":{"type":{"type":"string"},"title":{"type":"string"},"detail":{"type":"object"},"summary":{"type":"string"},"entityId":{"type":"string"},"sourceUrl":{"type":["string","null"],"description":"Primary-source link for verification"},"detectedAt":{"type":"string","format":"date-time"},"significance":{"type":"integer","maximum":10,"minimum":1},"effectiveDate":{"type":["string","null"]}}}}}}}}}},"responseSchema":null,"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.05","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.05/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.05","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.05","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_Z_yHEX6pz9J6JKNjVshsf","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.05","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Returns GitHub security advisories (GHSAs) for Maven/Java packages published since a given timestamp, each scored by severity with affected package info and source links.","exampleAgentPrompt":"Pull all new GitHub security advisories for Maven packages detected since 2025-01-01T00:00:00Z, limit to 50 results, and only show me ones with a severity score of at least 7.","exampleUseCases":null,"resultDescription":"A JSON object containing a count, source label, and array of advisory change records — each with an advisory ID, title, plain-English summary, significance score (1–10), affected package details, a link to the primary source on GitHub, and detected/effective timestamps.","failureModes":["Invalid or missing 'since' date-time format returns a 400 error","'limit' out of range (< 1 or > 500) returns a 400 validation error","'min_significance' out of range (< 1 or > 10) returns a 400 validation error","No advisories in the requested window returns an empty changes array with count 0","Upstream GitHub Advisory Database unavailable causes 502/503 error","Payment not provided or insufficient (x402) returns a 402 Payment Required response"],"whenToPreferThis":"Use this endpoint when you need to monitor or audit new Java/Maven security vulnerabilities from the GitHub Advisory Database with severity scoring. Prefer it over general CVE feeds when you want pre-scored, Maven-specific advisories with direct GitHub source links. Ideal for CI/CD pipeline security checks, dependency auditing workflows, or automated security alerting for Java projects.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-14T17:52:21.711Z","isFirstParty":false}