{
  "_pruva_terminal_reconciliation": {
    "authored_artifact_closure_sha256": "338d6c81f32fcdb29e18f9e8d37b6f1b86448b69a8be6405a4181aba0b153c37",
    "authored_runtime_manifest_sha256": "b23558a11baf03789b9007496922fbe10caab3fa74c765bea03780ac1dbccedc",
    "authored_verdict_sha256": "55a2f51d58e9ae6eb1aafd44c0f364ab66f4e9c234a0995b57e329cf9ae14a2f",
    "claim_matching": "evaluated",
    "schema_version": 2,
    "status": "completed"
  },
  "accepted_exploit_knowledge_record_ids": [
    "abcb9605-80de-4983-bc45-f5270b1d5696",
    "a3ef3ae2-e032-496c-af77-6fcc570955a6"
  ],
  "attacker_controlled_input": "Authenticated Item/Configure config.xml transient object graph followed by attacker-selected Groovy in a forged Stapler route",
  "claim_outcome": "confirmed",
  "claimed_impact_class": "code_execution",
  "claimed_surface": "api_remote",
  "crash_observed": false,
  "end_to_end_target_reached": true,
  "evidence_scope": "production_path",
  "exploit_chain_demonstrated": true,
  "exploitability_confidence": "high",
  "inferred": false,
  "observed_impact_class": "code_execution",
  "read_write_primitive_observed": false,
  "repro_result": "confirmed",
  "sanitizer_used": false,
  "trigger_path": "POST /job/carrier/config.xml -> POST /job/carrier/pollingLog/run/project/parent/scriptText",
  "validated_surface": "api_remote"
}
