# Saylor Innovations CVE Vulnerability Report

> Saylor Innovations CVE Vulnerability Report is a paid API for AI agents from saylorinnovations.com, paid per call via x402, $0.003/call, status unknown (last checked 2026-10-03).

Resolves a CVE identifier into its published description, CVSS metrics, status, weakness identifiers (CWEs), and reference links from the NVD.

## Facts

- Endpoint: GET https://saylorinnovations.com/api/security/cve?utm_source=zero.xyz
- Price: $0.003/call
- Payment: x402
- Status: unknown
- Last checked: 2026-10-03
- Activations on Zero: 0
- Tags: x402
- Canonical page: https://www.zero.xyz/c/saylor-innovations-cve-vulnerability-report-b3f3a780
- Structured record (JSON): https://api.zero.xyz/v1/capabilities/cap_n33Cd2JY8r7VFRlSJZ6wT

Status and success rate cover calls made through Zero and Zero's own probes. Third-party monitors may report differently.

## How to call it through Zero

Zero handles the 402 payment challenge and records the run. With the Zero CLI installed (`npm i -g @zeroxyz/cli`):

```sh
zero fetch --capability saylor-innovations-cve-vulnerability-report-b3f3a780
```

Example prompt: Can you pull up the full CVE report for CVE-2021-44228 — I need the description, CVSS score, severity, and any CWE weakness identifiers?

## When to prefer this

Use this endpoint when you need structured, machine-readable CVE details — including CVSS metrics, CWEs, and references — from a single API call without standing up your own NVD integration. Prefer it over raw NVD API access when working in an x402 micropayment context or when you want a normalized, pre-parsed response rather than raw JSON from NIST. Not appropriate for scanning live systems or determining whether a specific host is actually vulnerable.

## Known failure modes

- Invalid or malformed CVE identifier returns an error or empty report
- CVE not yet indexed in the NVD returns no results
- Upstream NVD service unavailability causes lookup failure
- Very recently published CVEs may not yet have CVSS scores or full analysis

## How this service works

Resolve a CVE into its published description, status, CVSS metrics, weakness identifiers and vendor/reference links. This does not scan a system or prove safety.

## Output

Returns a structured JSON object containing the CVE ID, human-readable description, publication and modification dates, status (e.g. Analyzed, Modified), an array of CVSS metric objects (each with version, score, severity, vector, and source), an array of CWE weakness identifiers, an array of reference URLs with tags, a source attribution object, and a limitations disclaimer noting this does not scan systems or prove safety.

## Request schema (JSON Schema)

```json
{
 "type": "object",
 "$schema": "https://json-schema.org/draft/2020-12/schema",
 "required": [
  "input"
 ],
 "properties": {
  "input": {
   "type": "object",
   "required": [
    "type",
    "method",
    "queryParams"
   ],
   "properties": {
    "type": {
     "type": "string",
     "const": "http"
    },
    "method": {
     "enum": [
      "GET",
      "POST",
      "PUT",
      "PATCH",
      "DELETE",
      "HEAD"
     ],
     "type": "string"
    },
    "queryParams": {
     "type": "object",
     "required": [
      "cve"
     ],
     "properties": {
      "cve": {
       "type": "string",
       "description": "CVE identifier, for example CVE-2021-44228."
      }
     }
    }
   },
   "additionalProperties": false
  },
  "output": {
   "type": "object",
   "required": [
    "type"
   ],
   "properties": {
    "type": {
     "type": "string",
     "const": "json"
    },
    "example": {
     "type": "object",
     "required": [
      "service",
      "subject",
      "retrievedAt",
      "source",
      "report"
     ],
     "properties": {
      "report": {
       "type": "object",
       "required": [
        "id",
        "metrics",
        "weaknesses",
        "references",
        "limitations"
       ],
       "properties": {
        "id": {
         "type": "string"
        },
        "status": {
         "type": [
          "string",
          "null"
         ]
        },
        "metrics": {
         "type": "array",
         "items": {
          "type": "object",
          "properties": {
           "score": {
            "type": [
             "number",
             "null"
            ]
           },
           "source": {
            "type": [
             "string",
             "null"
            ]
           },
           "vector": {
            "type": [
             "string",
             "null"
            ]
           },
           "version": {
            "type": [
             "string",
             "null"
            ]
           },
           "severity": {
            "type": [
             "string",
             "null"
            ]
           }
          }
         }
        },
        "modified": {
         "type": [
          "string",
          "null"
         ]
        },
        "published": {
         "type": [
          "string",
          "null"
         ]
        },
        "references": {
         "type": "array",
         "items": {
          "type": "object",
          "properties": {
           "url": {
    
… (truncated)
```

## More

- Live health (JSON, refreshed every minute): https://www.zero.xyz/c/saylor-innovations-cve-vulnerability-report-b3f3a780/health.json
- [Zero catalog index](https://www.zero.xyz/llms.txt)
- [Other services from saylorinnovations.com](https://www.zero.xyz/host/saylorinnovations.com/llms.txt)
