# OS Command Injection CVEs (CWE-78)

**Use case:** 

3,570 CVEs in NVD are classified CWE-78, OS command injection. Routers, NAS boxes and firewalls make up most of it, which is why this class is over-represented in the CISA KEV catalogue.

## Input

```json
{
  "keyword": "",
  "severity": "",
  "kevOnly": false,
  "modifiedWithinDays": 0,
  "publishedWithinDays": 30,
  "cveId": "",
  "ransomwareOnly": false,
  "minCvss": 0,
  "minEpss": "",
  "minRiskScore": 0,
  "priorities": [],
  "vendors": [],
  "products": [],
  "cwe": [
    "CWE-78"
  ],
  "keywords": [],
  "excludeKeywords": [],
  "withPatchOnly": false,
  "withExploitOnly": false,
  "maxAgeDays": 0,
  "enrich": true,
  "includeDescription": true,
  "compactOutput": false,
  "excludeEmptyFields": false,
  "onlyNew": false,
  "emitUnchanged": false,
  "maxItems": 1000
}
```

## Output

```json
{
  "cve_id": {
    "label": "CVE",
    "format": "string"
  },
  "priority": {
    "label": "Priority",
    "format": "string"
  },
  "risk_score": {
    "label": "Risk 0-100",
    "format": "integer"
  },
  "cvss_score": {
    "label": "CVSS",
    "format": "integer"
  },
  "cvss_severity": {
    "label": "Severity",
    "format": "string"
  },
  "kev_listed": {
    "label": "Exploited now",
    "format": "boolean"
  },
  "kev_ransomware": {
    "label": "Ransomware",
    "format": "boolean"
  },
  "epss_score": {
    "label": "Exploit probability",
    "format": "integer"
  },
  "epss_percentile": {
    "label": "EPSS percentile",
    "format": "integer"
  },
  "vendors": {
    "label": "Vendors",
    "format": "array"
  },
  "products": {
    "label": "Products",
    "format": "array"
  },
  "description": {
    "label": "Description",
    "format": "string"
  },
  "cwe_ids": {
    "label": "CWE",
    "format": "array"
  },
  "cwe_names": {
    "label": "Weakness",
    "format": "array"
  },
  "attack_vector": {
    "label": "Attack vector",
    "format": "string"
  },
  "attack_complexity": {
    "label": "Complexity",
    "format": "string"
  },
  "privileges_required": {
    "label": "Privileges",
    "format": "string"
  },
  "user_interaction": {
    "label": "User interaction",
    "format": "string"
  },
  "scope_changed": {
    "label": "Scope changed",
    "format": "boolean"
  },
  "has_patch": {
    "label": "Patch referenced",
    "format": "boolean"
  },
  "has_exploit": {
    "label": "Exploit referenced",
    "format": "boolean"
  },
  "kev_due_date": {
    "label": "CISA due date",
    "format": "string"
  },
  "kev_date_added": {
    "label": "Added to KEV",
    "format": "string"
  },
  "kev_action": {
    "label": "Required action",
    "format": "string"
  },
  "published_at": {
    "label": "Published",
    "format": "string"
  },
  "last_modified": {
    "label": "Last modified",
    "format": "string"
  },
  "age_days": {
    "label": "Age in days",
    "format": "integer"
  },
  "vuln_status": {
    "label": "Status",
    "format": "string"
  },
  "cvss_v2_score": {
    "label": "CVSS v2",
    "format": "integer"
  },
  "cvss_v2_severity": {
    "label": "CVSS v2 severity",
    "format": "string"
  },
  "cpe_count": {
    "label": "Affected configs",
    "format": "integer"
  },
  "reference_count": {
    "label": "Reference count",
    "format": "integer"
  },
  "change_type": {
    "label": "Change",
    "format": "string"
  },
  "scraped_at": {
    "label": "Scraped at",
    "format": "string"
  }
}
```

## About this Actor

This example demonstrates how to use [CVE Feed Scraper - NVD, CISA KEV, EPSS Vulnerability Database](https://apify.com/snow_leo_data/cve-scraper.md) with a specific input configuration. Visit the [Actor detail page](https://apify.com/snow_leo_data/cve-scraper.md) to learn more, explore other use cases, and run it yourself.


## How to integrate an Actor?

This Task's input is already configured above. Use it as-is rather than inventing a new one.

Do not guess an integration path. Every one of them is in the agent quickstart at https://apify.com/agents.md: the Apify MCP server, Agent Skills with the Apify CLI, the JavaScript and Python clients, the REST API, and the account-free path for an agent with no human to sign in. It also carries the rule on stating cost before the first paid run.

For full API examples (JavaScript, Python, CLI, MCP, OpenAPI), see this Task's Actor page: https://apify.com/snow_leo_data/cve-scraper.md

Each client library has reference documentation the quickstart does not restate: [JavaScript/TypeScript](https://docs.apify.com/api/client/js/docs.md) (`npm install apify-client`) and [Python](https://docs.apify.com/api/client/python/docs.md) (`pip install apify-client`).
