{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,7]],"date-time":"2026-07-07T01:21:26Z","timestamp":1783387286416,"version":"3.54.6"},"reference-count":31,"publisher":"Springer Science and Business Media LLC","issue":"1","license":[{"start":{"date-parts":[[2025,9,9]],"date-time":"2025-09-09T00:00:00Z","timestamp":1757376000000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2025,9,9]],"date-time":"2025-09-09T00:00:00Z","timestamp":1757376000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"funder":[{"name":"Open Project of Key Laboratory Ministry of Industry and Information Technology","award":["HK202303526"],"award-info":[{"award-number":["HK202303526"]}]},{"DOI":"10.13039\/501100003453","name":"Natural Science Foundation of Guangdong Province","doi-asserted-by":"publisher","award":["2023A1515010746"],"award-info":[{"award-number":["2023A1515010746"]}],"id":[{"id":"10.13039\/501100003453","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Autom Softw Eng"],"published-print":{"date-parts":[[2026,5]]},"DOI":"10.1007\/s10515-025-00550-4","type":"journal-article","created":{"date-parts":[[2025,9,9]],"date-time":"2025-09-09T02:29:10Z","timestamp":1757384950000},"update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":3,"title":["GPTVD: vulnerability detection and analysis method based on LLM\u2019s chain of thoughts"],"prefix":"10.1007","volume":"33","author":[{"given":"Yinan","family":"Chen","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Yuan","family":"Huang","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Xiangping","family":"Chen","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Pengfei","family":"Shen","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Lei","family":"Yun","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2025,9,9]]},"reference":[{"key":"550_CR1","doi-asserted-by":"publisher","unstructured":"Cheng, X., Wang, H., Hua, J., Xu, G., Sui, Y.: Deepwukong: Statically detecting software vulnerabilities using deep graph neural network. ACM Trans. Softw. Eng. Methodol. 30(3) (2021) https:\/\/doi.org\/10.1145\/3436877","DOI":"10.1145\/3436877"},{"key":"550_CR2","doi-asserted-by":"crossref","unstructured":"Dong, Q., Li, L., Dai, D., Zheng, C., Wu, Z., Chang, B., Sun, X., Xu, J., Li, L., Sui, Z.: A Survey on In-context Learning (2023)","DOI":"10.18653\/v1\/2024.emnlp-main.64"},{"key":"550_CR3","doi-asserted-by":"publisher","unstructured":"Fu, M., Tantithamthavorn, C.K., Nguyen, V., Le, T.: Chatgpt for vulnerability detection, classification, and repair: How far are we? In: 2023 30th Asia-Pacific Software Engineering Conference (APSEC), pp. 632\u2013636 (2023). https:\/\/doi.org\/10.1109\/APSEC60848.2023.00085","DOI":"10.1109\/APSEC60848.2023.00085"},{"key":"550_CR4","doi-asserted-by":"publisher","unstructured":"Fu, M., Tantithamthavorn, C.: Linevul: A transformer-based line-level vulnerability prediction. In: 2022 IEEE\/ACM 19th International Conference on Mining Software Repositories (MSR), pp. 608\u2013620 (2022). https:\/\/doi.org\/10.1145\/3524842.3528452","DOI":"10.1145\/3524842.3528452"},{"issue":"11","key":"550_CR5","doi-asserted-by":"publisher","first-page":"2575","DOI":"10.1109\/TSE.2019.2956932","volume":"47","author":"J Gao","year":"2021","unstructured":"Gao, J., Jiang, Y., Liu, Z., Yang, X., Wang, C., Jiao, X., Yang, Z., Sun, J.: Semantic learning and emulation based cross-platform binary vulnerability seeker. IEEE Trans. Softw. Eng. 47(11), 2575\u20132589 (2021). https:\/\/doi.org\/10.1109\/TSE.2019.2956932","journal-title":"IEEE Trans. Softw. Eng."},{"key":"550_CR6","doi-asserted-by":"publisher","unstructured":"Hin, D., Kan, A., Chen, H., Babar, M.A.: Linevd: Statement-level vulnerability detection using graph neural networks. In: 2022 IEEE\/ACM 19th International Conference on Mining Software Repositories (MSR), pp. 596\u2013607 (2022). https:\/\/doi.org\/10.1145\/3524842.3527949","DOI":"10.1145\/3524842.3527949"},{"issue":"8","key":"550_CR7","doi-asserted-by":"publisher","first-page":"1735","DOI":"10.1162\/neco.1997.9.8.1735","volume":"9","author":"S Hochreiter","year":"1997","unstructured":"Hochreiter, S., Schmidhuber, J.: Long short-term memory. Neural Comput. 9(8), 1735\u20131780 (1997). https:\/\/doi.org\/10.1162\/neco.1997.9.8.1735","journal-title":"Neural Comput."},{"key":"550_CR8","doi-asserted-by":"publisher","unstructured":"Li, Y., Wang, S., Nguyen, T.N.: Vulnerability detection with fine-grained interpretations. In: Proceedings of the 29th ACM Joint Meeting on European Software Engineering Conference and Symposium on the Foundations of Software Engineering. ESEC\/FSE 2021, pp. 292\u2013303. Association for Computing Machinery, New York, NY, USA (2021). https:\/\/doi.org\/10.1145\/3468264.3468597","DOI":"10.1145\/3468264.3468597"},{"key":"550_CR9","doi-asserted-by":"crossref","unstructured":"Li, Z., Zou, D., Xu, S., Ou, X., Jin, H., Wang, S., Deng, Z., Zhong, Y.: Vuldeepecker: A deep learning-based system for vulnerability detection (2018)","DOI":"10.14722\/ndss.2018.23158"},{"issue":"4","key":"550_CR10","doi-asserted-by":"publisher","first-page":"2244","DOI":"10.1109\/TDSC.2021.3051525","volume":"19","author":"Z Li","year":"2022","unstructured":"Li, Z., Zou, D., Xu, S., Jin, H., Zhu, Y., Chen, Z.: Sysevr: A framework for using deep learning to detect software vulnerabilities. IEEE Trans. Depend. Secur. Comput. 19(4), 2244\u20132258 (2022). https:\/\/doi.org\/10.1109\/TDSC.2021.3051525","journal-title":"IEEE Trans. Depend. Secur. Comput."},{"issue":"4","key":"550_CR11","doi-asserted-by":"publisher","first-page":"2821","DOI":"10.1109\/TDSC.2021.3076142","volume":"19","author":"Z Li","year":"2022","unstructured":"Li, Z., Zou, D., Xu, S., Chen, Z., Zhu, Y., Jin, H.: Vuldeelocator: A deep learning-based fine-grained vulnerability detector. IEEE Trans. Depend. Secure Comput. 19(4), 2821\u20132837 (2022). https:\/\/doi.org\/10.1109\/TDSC.2021.3076142","journal-title":"IEEE Trans. Depend. Secure Comput."},{"key":"550_CR12","unstructured":"Marjam\u00e4ki, D.: Cppcheck: A tool for static C\/C++ code analysis (n.d.).\u00a0http:\/\/cppcheck.net\/"},{"key":"550_CR13","unstructured":"Nong, Y., Aldeen, M., Cheng, L., Hu, H., Chen, F., Cai, H.: Chain-of-Thought Prompting of Large Language Models for Discovering and Fixing Software Vulnerabilities (2024). https:\/\/arxiv.org\/abs\/2402.17230"},{"key":"550_CR14","doi-asserted-by":"publisher","unstructured":"Peng, Y., Wang, C., Wang, W., Gao, C., Lyu, M.R.: Generative type inference for python. In: 2023 38th IEEE\/ACM International Conference on Automated Software Engineering (ASE), pp. 988\u2013999 (2023). https:\/\/doi.org\/10.1109\/ASE56229.2023.00031","DOI":"10.1109\/ASE56229.2023.00031"},{"issue":"1","key":"550_CR15","doi-asserted-by":"publisher","first-page":"84","DOI":"10.1109\/TSE.2022.3144348","volume":"49","author":"C Pornprasit","year":"2023","unstructured":"Pornprasit, C., Tantithamthavorn, C.K.: Deeplinedp: Towards a deep learning approach for line-level defect prediction. IEEE Trans. Softw. Eng. 49(1), 84\u201398 (2023). https:\/\/doi.org\/10.1109\/TSE.2022.3144348","journal-title":"IEEE Trans. Softw. Eng."},{"key":"550_CR16","doi-asserted-by":"publisher","unstructured":"Shiralinasab\u00a0Langari, A., Yeganeh, L., Khoa\u00a0Nguyen, K.: Grothendieck graph neural network (ggnn): A path-based framework for network modelling. In: GLOBECOM 2023 - 2023 IEEE Global Communications Conference, pp. 6548\u20136553 (2023). https:\/\/doi.org\/10.1109\/GLOBECOM54140.2023.10437032","DOI":"10.1109\/GLOBECOM54140.2023.10437032"},{"key":"550_CR17","doi-asserted-by":"publisher","unstructured":"Steenhoek, B., Rahman, M.M., Jiles, R., Le, W.: An Empirical Study of Deep Learning Models for Vulnerability Detection. In: 2023 IEEE\/ACM 45th International Conference on Software Engineering (ICSE), pp. 2237\u20132248. IEEE Computer Society, Los Alamitos, CA, USA (2023). https:\/\/doi.org\/10.1109\/ICSE48619.2023.00188 . https:\/\/doi.ieeecomputersociety.org\/10.1109\/ICSE48619.2023.00188","DOI":"10.1109\/ICSE48619.2023.00188"},{"key":"550_CR18","unstructured":"Vaswani, A., Shazeer, N., Parmar, N., Uszkoreit, J., Jones, L., Gomez, A.N., Kaiser, L., Polosukhin, I.: Attention is all you need. In: Proceedings of the 31st International Conference on Neural Information Processing Systems. NIPS\u201917, pp. 6000\u20136010. Curran Associates Inc., Red Hook, NY, USA (2017)"},{"key":"550_CR19","doi-asserted-by":"publisher","unstructured":"Wang, C., Yang, Y., Gao, C., Peng, Y., Zhang, H., Lyu, M.R.: No more fine-tuning? an experimental evaluation of prompt tuning in code intelligence. In: Proceedings of the 30th ACM Joint European Software Engineering Conference and Symposium on the Foundations of Software Engineering. ESEC\/FSE 2022, pp. 382\u2013394. Association for Computing Machinery, New York, NY, USA (2022). https:\/\/doi.org\/10.1145\/3540250.3549113","DOI":"10.1145\/3540250.3549113"},{"key":"550_CR20","doi-asserted-by":"publisher","unstructured":"Wang, H., Ye, G., Tang, Z., Tan, S.H., Huang, S., Fang, D., Feng, Y., Bian, L., Wang, Z.: Combining graph-based learning with automated data collection for code vulnerability detection. IEEE Trans. Inf. Foren. Secur. 16, 1943\u20131958 (2021) https:\/\/doi.org\/10.1109\/TIFS.2020.3044773","DOI":"10.1109\/TIFS.2020.3044773"},{"issue":"11","key":"550_CR21","doi-asserted-by":"publisher","first-page":"4869","DOI":"10.1109\/TSE.2023.3313881","volume":"49","author":"C Wang","year":"2023","unstructured":"Wang, C., Yang, Y., Gao, C., Peng, Y., Zhang, H., Lyu, M.R.: Prompt tuning in code intelligence: An experimental evaluation. IEEE Trans. Softw. Eng. 49(11), 4869\u20134885 (2023). https:\/\/doi.org\/10.1109\/TSE.2023.3313881","journal-title":"IEEE Trans. Softw. Eng."},{"key":"550_CR22","doi-asserted-by":"publisher","unstructured":"Wu, T., Chen, L., Du, G., Meng, D., Shi, G.: Ultravcs: Ultra-fine-grained variable-based code slicing for automated vulnerability detection. IEEE Trans. Inf. Foren. Secur. 19, 3986\u20134000 (2024) https:\/\/doi.org\/10.1109\/TIFS.2024.3374219","DOI":"10.1109\/TIFS.2024.3374219"},{"key":"550_CR23","doi-asserted-by":"publisher","unstructured":"Wu, B., Zou, F., Yi, P., Wu, Y., Zhang, L.: Slicedlocator: Code vulnerability locator based on sliced dependence graph. Comput. Secur. 134, 103469 (2023) https:\/\/doi.org\/10.1016\/j.cose.2023.103469","DOI":"10.1016\/j.cose.2023.103469"},{"key":"550_CR24","doi-asserted-by":"publisher","unstructured":"Xu, J., Cui, Z., Zhao, Y., Zhang, X., He, S., He, P., Li, L., Kang, Y., Lin, Q., Dang, Y., Rajmohan, S., Zhang, D.: Unilog: Automatic logging via llm and in-context learning. In: Proceedings of the IEEE\/ACM 46th International Conference on Software Engineering. ICSE \u201924. Association for Computing Machinery, New York, NY, USA (2024). https:\/\/doi.org\/10.1145\/3597503.3623326","DOI":"10.1145\/3597503.3623326"},{"key":"550_CR25","volume-title":"GNNExplainer: generating explanations for graph neural networks","author":"R Ying","year":"2019","unstructured":"Ying, R., Bourgeois, D., You, J., Zitnik, M., Leskovec, J.: GNNExplainer: generating explanations for graph neural networks. Curran Associates Inc., Red Hook, NY, USA (2019)"},{"issue":"7","key":"550_CR26","doi-asserted-by":"publisher","first-page":"8033","DOI":"10.1109\/JIOT.2025.3541090","volume":"12","author":"X Zhang","year":"2025","unstructured":"Zhang, X., Guo, H., Zhang, Z., Tang, G., Sun, J., Shen, Y., Ma, J.: Effectively detecting software vulnerabilities via leveraging features on program slices. IEEE Internet of Things J. 12(7), 8033\u20138048 (2025). https:\/\/doi.org\/10.1109\/JIOT.2025.3541090","journal-title":"IEEE Internet of Things J."},{"key":"550_CR27","doi-asserted-by":"publisher","unstructured":"Zheng, W., Jiang, Y., Su, X.: Vu1spg: Vulnerability detection based on slice property graph representation learning. In: 2021 IEEE 32nd International Symposium on Software Reliability Engineering (ISSRE), pp. 457\u2013467 (2021). https:\/\/doi.org\/10.1109\/ISSRE52982.2021.00054","DOI":"10.1109\/ISSRE52982.2021.00054"},{"key":"550_CR28","doi-asserted-by":"publisher","unstructured":"Zhou, X., Cao, S., Sun, X., Lo, D.: Large language model for vulnerability detection and repair: Literature review and the road ahead. ACM Trans. Softw. Eng. Methodol. 34(5) (2025) https:\/\/doi.org\/10.1145\/3708522","DOI":"10.1145\/3708522"},{"key":"550_CR29","volume-title":"Devign: effective vulnerability identification by learning comprehensive program semantics via graph neural networks","author":"Y Zhou","year":"2019","unstructured":"Zhou, Y., Liu, S., Siow, J., Du, X., Liu, Y.: Devign: effective vulnerability identification by learning comprehensive program semantics via graph neural networks. Curran Associates Inc., Red Hook, NY, USA (2019)"},{"key":"550_CR30","doi-asserted-by":"publisher","unstructured":"Zou, D., Zhu, Y., Xu, S., Li, Z., Jin, H., Ye, H.: Interpreting deep learning-based vulnerability detector predictions based on heuristic searching. ACM Trans. Softw. Eng. Methodol. 30(2) (2021) https:\/\/doi.org\/10.1145\/3429444","DOI":"10.1145\/3429444"},{"issue":"5","key":"550_CR31","doi-asserted-by":"publisher","first-page":"2224","DOI":"10.1109\/TDSC.2019.2942930","volume":"18","author":"D Zou","year":"2021","unstructured":"Zou, D., Wang, S., Xu, S., Li, Z., Jin, H.: $$\\mu$$vuldeepecker: A deep learning-based system for multiclass vulnerability detection. IEEE Trans. Depend. Secur. Comput. 18(5), 2224\u20132236 (2021). https:\/\/doi.org\/10.1109\/TDSC.2019.2942930","journal-title":"IEEE Trans. Depend. Secur. Comput."}],"container-title":["Automated Software Engineering"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s10515-025-00550-4.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s10515-025-00550-4","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s10515-025-00550-4.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,1,19]],"date-time":"2026-01-19T11:14:51Z","timestamp":1768821291000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s10515-025-00550-4"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,9,9]]},"references-count":31,"journal-issue":{"issue":"1","published-print":{"date-parts":[[2026,5]]}},"alternative-id":["550"],"URL":"https:\/\/doi.org\/10.1007\/s10515-025-00550-4","relation":{"has-preprint":[{"id-type":"doi","id":"10.21203\/rs.3.rs-6275325\/v1","asserted-by":"object"}]},"ISSN":["0928-8910","1573-7535"],"issn-type":[{"value":"0928-8910","type":"print"},{"value":"1573-7535","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025,9,9]]},"assertion":[{"value":"21 March 2025","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"4 August 2025","order":2,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"9 September 2025","order":3,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Declarations"}},{"value":"The authors declare no competing interests.","order":2,"name":"Ethics","group":{"name":"EthicsHeading","label":"Competing Interests"}}],"article-number":"3"}}