{
  "openapi": "3.0.1",
  "info": {
    "title": "CISA KEV Known Exploited Vulnerabilities Scraper",
    "description": "Scrape the CISA Known Exploited Vulnerabilities catalog: CVEs actively exploited in the wild. Filter by vendor, product, CVE, CWE, ransomware use, date added and due date. Enrich each CVE with EPSS score, percentile and urgency. JSON, CSV, Excel.",
    "version": "0.1",
    "x-build-id": "0dQyLXzqFusdBlhg2"
  },
  "servers": [
    {
      "url": "https://api.apify.com/v2"
    }
  ],
  "paths": {
    "/acts/scrapers_lat~cisa-kev-exploited-vulns-scraper/run-sync-get-dataset-items": {
      "post": {
        "operationId": "run-sync-get-dataset-items-scrapers_lat-cisa-kev-exploited-vulns-scraper",
        "x-openai-isConsequential": false,
        "summary": "Executes an Actor, waits for its completion, and returns Actor's dataset items in response.",
        "tags": [
          "Run Actor"
        ],
        "requestBody": {
          "required": true,
          "content": {
            "application/json": {
              "schema": {
                "$ref": "#/components/schemas/inputSchema"
              }
            }
          }
        },
        "parameters": [
          {
            "name": "token",
            "in": "query",
            "required": true,
            "schema": {
              "type": "string"
            },
            "description": "Enter your Apify token here"
          }
        ],
        "responses": {
          "200": {
            "description": "OK"
          }
        }
      }
    },
    "/acts/scrapers_lat~cisa-kev-exploited-vulns-scraper/runs": {
      "post": {
        "operationId": "runs-sync-scrapers_lat-cisa-kev-exploited-vulns-scraper",
        "x-openai-isConsequential": false,
        "summary": "Executes an Actor and returns information about the initiated run in response.",
        "tags": [
          "Run Actor"
        ],
        "requestBody": {
          "required": true,
          "content": {
            "application/json": {
              "schema": {
                "$ref": "#/components/schemas/inputSchema"
              }
            }
          }
        },
        "parameters": [
          {
            "name": "token",
            "in": "query",
            "required": true,
            "schema": {
              "type": "string"
            },
            "description": "Enter your Apify token here"
          }
        ],
        "responses": {
          "200": {
            "description": "OK",
            "content": {
              "application/json": {
                "schema": {
                  "$ref": "#/components/schemas/runsResponseSchema"
                }
              }
            }
          }
        }
      }
    },
    "/acts/scrapers_lat~cisa-kev-exploited-vulns-scraper/run-sync": {
      "post": {
        "operationId": "run-sync-scrapers_lat-cisa-kev-exploited-vulns-scraper",
        "x-openai-isConsequential": false,
        "summary": "Executes an Actor, waits for completion, and returns the OUTPUT from Key-value store in response.",
        "tags": [
          "Run Actor"
        ],
        "requestBody": {
          "required": true,
          "content": {
            "application/json": {
              "schema": {
                "$ref": "#/components/schemas/inputSchema"
              }
            }
          }
        },
        "parameters": [
          {
            "name": "token",
            "in": "query",
            "required": true,
            "schema": {
              "type": "string"
            },
            "description": "Enter your Apify token here"
          }
        ],
        "responses": {
          "200": {
            "description": "OK"
          }
        }
      }
    }
  },
  "components": {
    "schemas": {
      "inputSchema": {
        "type": "object",
        "properties": {
          "vendor": {
            "title": "Vendor / Project",
            "type": "string",
            "description": "Filter by the vendor or project name, for example Microsoft, Cisco or Apache. Case-insensitive contains match against vendorProject."
          },
          "product": {
            "title": "Product",
            "type": "string",
            "description": "Filter by product name, for example Windows, Exchange Server or Log4j. Case-insensitive contains match against product."
          },
          "cveId": {
            "title": "CVE ID(s)",
            "type": "array",
            "description": "One or more exact CVE IDs, for example CVE-2021-44228. Returns only these CVEs if present in the KEV catalog.",
            "items": {
              "type": "string"
            }
          },
          "cwe": {
            "title": "CWE ID",
            "type": "string",
            "description": "Filter to CVEs whose weakness list contains this CWE, for example CWE-79 or CWE-502."
          },
          "ransomwareOnly": {
            "title": "Ransomware Campaigns Only",
            "type": "boolean",
            "description": "Only include CVEs known to be used in ransomware campaigns (knownRansomwareCampaignUse = Known).",
            "default": false
          },
          "addedFrom": {
            "title": "Date Added From",
            "type": "string",
            "description": "Only include CVEs added to the KEV catalog on or after this date (YYYY-MM-DD)."
          },
          "addedTo": {
            "title": "Date Added To",
            "type": "string",
            "description": "Only include CVEs added to the KEV catalog on or before this date (YYYY-MM-DD)."
          },
          "dueBefore": {
            "title": "Remediation Due Before",
            "type": "string",
            "description": "Only include CVEs with a federal remediation due date on or before this date (YYYY-MM-DD). Useful for overdue or upcoming deadlines."
          },
          "includeEpss": {
            "title": "Enrich with EPSS score",
            "type": "boolean",
            "description": "Enrich each CVE with its EPSS exploitation-probability score, percentile and a likelihood label. Adds a few network calls.",
            "default": true
          },
          "nvdEnrich": {
            "title": "Enrich with NVD CVSS + CPE (paid add-on)",
            "type": "boolean",
            "description": "Opt-in paid add-on ($0.012 per CVE). For each KEV CVE, make an extra call to the NVD API to add the full CVSS v3.1 base score, vector and severity, the CWE weakness list and the affected-product CPE match list that the KEV feed itself does not include. Charged only when NVD returns the vulnerability. Disabled for free Apify users.",
            "default": false
          },
          "aiSummary": {
            "title": "AI remediation guidance (paid add-on)",
            "type": "boolean",
            "description": "Opt-in AI paid add-on ($0.012 per CVE). Uses AI (OpenRouter gpt-4o-mini) to write a concise plain-English remediation guidance paragraph: what the vulnerability is, why it is urgent given active exploitation and the federal due date, and concrete patch or mitigation steps. Charged only when usable AI output is produced. Disabled for free Apify users.",
            "default": false
          },
          "sortBy": {
            "title": "Sort By",
            "enum": [
              "dateAdded",
              "dueDate",
              "epssScore",
              "priority"
            ],
            "type": "string",
            "description": "Sort order of the results.",
            "default": "dateAdded"
          },
          "maxResults": {
            "title": "Max Results",
            "minimum": 1,
            "maximum": 100000,
            "type": "integer",
            "description": "Maximum number of CVEs to collect. Free Apify plans are capped at 10 per run."
          },
          "proxyConfiguration": {
            "title": "Proxy Configuration",
            "type": "object",
            "description": "Optional. The KEV catalog and EPSS API are open and need no proxy, but you can route requests through an Apify proxy if you prefer.",
            "default": {
              "useApifyProxy": false
            }
          }
        }
      },
      "runsResponseSchema": {
        "type": "object",
        "properties": {
          "data": {
            "type": "object",
            "properties": {
              "id": {
                "type": "string"
              },
              "actId": {
                "type": "string"
              },
              "userId": {
                "type": "string"
              },
              "startedAt": {
                "type": "string",
                "format": "date-time",
                "example": "2025-01-08T00:00:00.000Z"
              },
              "finishedAt": {
                "type": "string",
                "format": "date-time",
                "example": "2025-01-08T00:00:00.000Z"
              },
              "status": {
                "type": "string",
                "example": "READY"
              },
              "meta": {
                "type": "object",
                "properties": {
                  "origin": {
                    "type": "string",
                    "example": "API"
                  },
                  "userAgent": {
                    "type": "string"
                  }
                }
              },
              "stats": {
                "type": "object",
                "properties": {
                  "inputBodyLen": {
                    "type": "integer",
                    "example": 2000
                  },
                  "rebootCount": {
                    "type": "integer",
                    "example": 0
                  },
                  "restartCount": {
                    "type": "integer",
                    "example": 0
                  },
                  "resurrectCount": {
                    "type": "integer",
                    "example": 0
                  },
                  "computeUnits": {
                    "type": "integer",
                    "example": 0
                  }
                }
              },
              "options": {
                "type": "object",
                "properties": {
                  "build": {
                    "type": "string",
                    "example": "latest"
                  },
                  "timeoutSecs": {
                    "type": "integer",
                    "example": 300
                  },
                  "memoryMbytes": {
                    "type": "integer",
                    "example": 1024
                  },
                  "diskMbytes": {
                    "type": "integer",
                    "example": 2048
                  }
                }
              },
              "buildId": {
                "type": "string"
              },
              "defaultKeyValueStoreId": {
                "type": "string"
              },
              "defaultDatasetId": {
                "type": "string"
              },
              "defaultRequestQueueId": {
                "type": "string"
              },
              "buildNumber": {
                "type": "string",
                "example": "1.0.0"
              },
              "containerUrl": {
                "type": "string"
              },
              "usage": {
                "type": "object",
                "properties": {
                  "ACTOR_COMPUTE_UNITS": {
                    "type": "integer",
                    "example": 0
                  },
                  "DATASET_READS": {
                    "type": "integer",
                    "example": 0
                  },
                  "DATASET_WRITES": {
                    "type": "integer",
                    "example": 0
                  },
                  "KEY_VALUE_STORE_READS": {
                    "type": "integer",
                    "example": 0
                  },
                  "KEY_VALUE_STORE_WRITES": {
                    "type": "integer",
                    "example": 1
                  },
                  "KEY_VALUE_STORE_LISTS": {
                    "type": "integer",
                    "example": 0
                  },
                  "REQUEST_QUEUE_READS": {
                    "type": "integer",
                    "example": 0
                  },
                  "REQUEST_QUEUE_WRITES": {
                    "type": "integer",
                    "example": 0
                  },
                  "DATA_TRANSFER_INTERNAL_GBYTES": {
                    "type": "integer",
                    "example": 0
                  },
                  "DATA_TRANSFER_EXTERNAL_GBYTES": {
                    "type": "integer",
                    "example": 0
                  },
                  "PROXY_RESIDENTIAL_TRANSFER_GBYTES": {
                    "type": "integer",
                    "example": 0
                  },
                  "PROXY_SERPS": {
                    "type": "integer",
                    "example": 0
                  }
                }
              },
              "usageTotalUsd": {
                "type": "number",
                "example": 0.00005
              },
              "usageUsd": {
                "type": "object",
                "properties": {
                  "ACTOR_COMPUTE_UNITS": {
                    "type": "integer",
                    "example": 0
                  },
                  "DATASET_READS": {
                    "type": "integer",
                    "example": 0
                  },
                  "DATASET_WRITES": {
                    "type": "integer",
                    "example": 0
                  },
                  "KEY_VALUE_STORE_READS": {
                    "type": "integer",
                    "example": 0
                  },
                  "KEY_VALUE_STORE_WRITES": {
                    "type": "number",
                    "example": 0.00005
                  },
                  "KEY_VALUE_STORE_LISTS": {
                    "type": "integer",
                    "example": 0
                  },
                  "REQUEST_QUEUE_READS": {
                    "type": "integer",
                    "example": 0
                  },
                  "REQUEST_QUEUE_WRITES": {
                    "type": "integer",
                    "example": 0
                  },
                  "DATA_TRANSFER_INTERNAL_GBYTES": {
                    "type": "integer",
                    "example": 0
                  },
                  "DATA_TRANSFER_EXTERNAL_GBYTES": {
                    "type": "integer",
                    "example": 0
                  },
                  "PROXY_RESIDENTIAL_TRANSFER_GBYTES": {
                    "type": "integer",
                    "example": 0
                  },
                  "PROXY_SERPS": {
                    "type": "integer",
                    "example": 0
                  }
                }
              }
            }
          }
        }
      }
    }
  }
}