{
  "_pruva_terminal_reconciliation": {
    "authored_artifact_closure_sha256": "f6ce8b19df27ee93d46f90335e275c118360fe6b36f35413df72797db25f8ff9",
    "authored_runtime_manifest_sha256": "4dccb7e9688277abfc3678cf79e3d5b70d7d556af240f192f59777ef1a842e5e",
    "authored_verdict_sha256": "002257104ab9eacbdcb59e92a24ad23ca01ffbdca5fd6760d5df30bd220e2cc9",
    "claim_matching": "evaluated",
    "schema_version": 2,
    "status": "completed"
  },
  "accepted_exploit_knowledge_record_ids": [
    "0a050d8a-4b74-4176-85ec-ce830d194833",
    "7b326933-9757-4019-a8bd-56d07048acaf"
  ],
  "attacker_controlled_input": "Authenticated crafted job config.xml with nested SCMTrigger.BuildAction -> FreeStyleBuild -> FreeStyleProject -> Hudson and attacker Groovy posted to the forged Stapler route",
  "claim_outcome": "confirmed",
  "claimed_impact_class": "code_execution",
  "claimed_surface": "api_remote",
  "crash_observed": false,
  "end_to_end_target_reached": true,
  "evidence_scope": "production_path",
  "exploit_chain_demonstrated": true,
  "exploitability_confidence": "high",
  "inferred": false,
  "observed_impact_class": "code_execution",
  "read_write_primitive_observed": false,
  "repro_result": "confirmed",
  "sanitizer_used": false,
  "trigger_path": "POST /job/carrier/config.xml then POST /job/carrier/pollingLog/run/project/parent/scriptText",
  "validated_surface": "api_remote"
}
