{
  "_pruva_terminal_reconciliation": {
    "authored_artifact_closure_sha256": "7a54b76cff408cae6f13907b9600d5cd2951737cee3291c6995024e61d1d2cea",
    "authored_runtime_manifest_sha256": "2056e738bc60e36eb939254c5c3139d69f7326620a7441628b058d493f79b162",
    "authored_verdict_sha256": "195879f25916e158442e0471b945bad1b69aaf3bce92008635f8667bd4230323",
    "claim_matching": "evaluated",
    "schema_version": 2,
    "status": "completed"
  },
  "accepted_exploit_knowledge_record_ids": [
    "caea7956-0a97-47f1-843d-34f9c17fe87c"
  ],
  "attacker_controlled_input": "An HTTPS peer certificate trusted by the cached CA store but rejected after the CURLOPT_SSL_CTX_FUNCTION callback replaces the trust store with an empty store",
  "claim_outcome": "confirmed",
  "claimed_impact_class": "authz_bypass",
  "claimed_surface": "library_api",
  "crash_observed": false,
  "end_to_end_target_reached": true,
  "evidence_scope": "realistic_harness",
  "exploit_chain_demonstrated": true,
  "exploitability_confidence": "high",
  "inferred": false,
  "observed_impact_class": "authz_bypass",
  "read_write_primitive_observed": false,
  "repro_result": "confirmed",
  "sanitizer_used": false,
  "trigger_path": "curl_multi API -> first CAfile transfer populates wolfSSL CA cache -> fresh second transfer invokes CURLOPT_SSL_CTX_FUNCTION -> vulnerable Curl_wssl_setup_x509_store rerun reinstalls cached store",
  "validated_surface": "library_api"
}
