TOLL

What software pays for, recorded every six hours.

Snapshot
2026-09-15 21:20 UTC
Sweep
daily-2026-09-15 · finished 2026-09-15 07:10 UTC
Listed
16,178

vulnerability derived

telesint-api.onrender.comCommunicationsderived

GET https://telesint-api.onrender.com/vulnerability

passlisted in Coinbase#2 by calls of 4 on this host

0.03 USDC

per call, as the listing declares it on eip155:8453

Compare with anotherEvery figure as JSONCite this page

the price, as of 2026-09-15 21:20 UTC · method · pinnable

Validation state
pass
as of 2026-09-15 04:15 UTC · method · pinnable · sweep daily-2026-09-15
Uptime, 7 / 30 / 90 days
100% / 100% / 100%
as of 2026-09-15 04:15 UTC · method · pinnable · 5 of 5 in 7d, 5 of 5 in 30d, 5 of 5 in 90d
Calls, trailing 30 days
2
as of 2026-09-15 21:20 UTC · method · pinnable
Unique payers, trailing 30 days
2
as of 2026-09-15 21:20 UTC · method · pinnable
Last called
2026-08-30 15:54 UTC
as of 2026-09-15 21:20 UTC · method · pinnable
First observed by TOLLderived
2026-09-10
as of 2026-09-10 19:08 UTC · method · pinnable · observation began 10 September 2026; listings that predate it show that date
Pricederived
0.03 USDC
as of 2026-09-15 21:20 UTC · method · pinnable · on eip155:8453
Networks
1
as of 2026-09-15 21:20 UTC · method · pinnable

Counters

29 observations, 2 of them a change, fewer than the 3 a trace needs

How big is this endpoint among the ones like it?

1 call100,000this endpoint
Calls counted in the trailing thirty days across the 451 endpoints in Communications that carry counters, binned on a logarithmic scale because the range runs over five orders of magnitude. The marked bin is this endpoint, at 2: 196 in the category are counted higher and 254 lower.

No trace is drawn of this endpoint’s own volume. Its counters have changed 2 times across 29 observations, and 3 changes are the fewest this site will draw a trace through, because two points and a guess are not a series. Every observation is in the JSON.

In words

vulnerability, a GET endpoint on telesint-api.onrender.com, appears in the Coinbase registry; TOLL's taxonomy puts it in communications.

On Base, vulnerability asks 0.03 USDC per call.

The request to vulnerability is the query parameters tag, type, limit, since, offset and 2 others.

A response from vulnerability, as declared, includes items, limit, total, offset, source and endpoint.

vulnerability answered the sweep of 2026-09-15 with a valid 402, as at every sweep since 2026-09-11.

vulnerability shares telesint-api.onrender.com with 3 other listed endpoints and is tied 2nd by calls with 1 other.

vulnerability takes 14% of the calls counted across telesint-api.onrender.com.

The registry's counters give vulnerability 2 calls and 2 unique payers over 30 days, every call from a different payer.

The last call to vulnerability came 16 days before the snapshot, 2026-08-30.

Closest in price to vulnerability within communications: enrichment email at x402.orthogonal.com and email validate at api.kadec0.xyz.

vulnerability is priced above 77% of comparable listings in communications.

The payee wallet is shared by 4 listings on one host.

Payment options as declared

the payment options, as of 2026-09-15 21:20 UTC · method · pinnable

Every payment option declared on this listing
registrynetworkassetamountschemepay to
Coinbaseeip155:8453USDC0.03 USDCexact0x7F74cE…72570F

Preflight checks at the last sweep

the checks, as of 2026-09-15 04:15 UTC · method · pinnableendpoint answered HTTP 402

No named check failed.

Validation history, 90 days

Every sweep that observed this endpoint, newest first.

Validation observations over the last 90 days
observed, UTCstatefailed checkssweep
2026-09-15 04:15 UTCpass0daily-2026-09-15
2026-09-14 04:13 UTCpass0daily-2026-09-14
2026-09-13 04:12 UTCpass0daily-2026-09-13
2026-09-12 06:28 UTCpass0daily-2026-09-12
2026-09-11 09:56 UTCpass0daily-2026-09-11

Registry presence

Presence in a registry, not liveness of the service (method). Newest first.

  1. listed in Coinbase

Declared input and output, as listed

From the registry record, not validated by TOLL.the declared schema, as of 2026-08-30 15:54 UTC · method · live

The input and output block
{
  "input": {
    "type": "http",
    "method": "GET",
    "queryParams": {
      "tag": "cve",
      "type": "cve",
      "limit": 20,
      "since": "2026-05-01T00:00:00Z",
      "offset": 0,
      "severity": "high",
      "min_confidence": 60
    }
  },
  "output": {
    "type": "json",
    "example": {
      "items": [
        {
          "id": "v1u2l3n4-5678-90ab-cdef-vuln56789012",
          "ts": "2026-05-27T10:00:00Z",
          "tlp": "WHITE",
          "iocs": [
            {
              "type": "cve",
              "value": "CVE-2026-1234",
              "context": "Critical RCE in PAN-OS"
            },
            {
              "type": "url",
              "value": "https://github[.]com/exploit-db/CVE-2026-1234",
              "context": "PoC repository"
            }
          ],
          "tags": [
            "cve",
            "rce",
            "palo-alto",
            "pan-os",
            "poc",
            "exploit-in-the-wild"
          ],
          "ttps": [
            {
              "id": "T1190",
              "name": "Exploit Public-Facing Application",
              "tactic": "Initial Access"
            },
            {
              "id": "T1203",
              "name": "Exploitation for Client Execution",
              "tactic": "Execution"
            }
          ],
          "channel": "https://t[.]me/vxunderground",
          "summary": "PoC released for CVE-2026-1234 (CVSS 9.8): unauthenticated RCE in Palo Alto PAN-OS. Exploitation observed in the wild targeting government networks.",
          "category": "vulnerability",
          "severity": "critical",
          "confidence": 91
        }
      ],
      "limit": 20,
      "total": 34,
      "offset": 0,
      "source": "TeleSint",
      "endpoint": "vulnerability"
    }
  }
}
Cite this page

The pinned URL below renders this page from the snapshot of 2026-09-15 21:20 UTC and does not change; the live page does, every six hours. Data reuse is under CC BY 4.0 (terms).

Plain text

TOLL, "vulnerability on telesint-api.onrender.com", snapshot of 2026-09-15 21:20 UTC. https://tollindex.com/e/telesint-api-onrender-com-vulnerability-28ee9a/at/2026-09-15T21-20Z. Accessed [access date].

BibTeX

@misc{toll-e-telesint-api-onrender-com-vulnerability-28ee9a-2026-09-15T21-20Z,
  author = {TOLL},
  title = {vulnerability on telesint-api.onrender.com},
  howpublished = {\url{https://tollindex.com/e/telesint-api-onrender-com-vulnerability-28ee9a/at/2026-09-15T21-20Z}},
  year = {2026},
  month = {9},
  note = {Pinned view of the snapshot of 2026-09-15 21:20 UTC. Accessed [access date].}
}

Reports and replies about this endpoint

None yet. Anything submitted through the form below is published here with its outcome.

Report an error about vulnerability, or reply as the named seller

No account, no token. Published unedited with its outcome, upheld or not. Do not include personal data.

Kind

Published as typed. Optional.

10 to 4,000 characters.

Verify with the payee wallet (optional, EVM)

Sign this message with the wallet named on the page and paste the signature; it is checked, stored, never published. TOLL reply about endpoint 28ee9a486598f0352ffa335cc7ef5e03bb7bbaac692a9751b62ea838fe353cb6 from wallet 0x7F74cE6d34ee0180f0217A16Ce05f3B91272570F

The 0x address named as payee on this page, 42 characters.

The hex signature of the message above, starting 0x.