{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,23]],"date-time":"2026-05-23T10:05:46Z","timestamp":1779530746691,"version":"3.53.1"},"reference-count":78,"publisher":"Springer Science and Business Media LLC","issue":"6","license":[{"start":{"date-parts":[[2026,5,23]],"date-time":"2026-05-23T00:00:00Z","timestamp":1779494400000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2026,5,23]],"date-time":"2026-05-23T00:00:00Z","timestamp":1779494400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"funder":[{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62372421"],"award-info":[{"award-number":["62372421"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62402465"],"award-info":[{"award-number":["62402465"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100007129","name":"Natural Science Foundation of Shandong Province","doi-asserted-by":"publisher","award":["2024HWYQ-034"],"award-info":[{"award-number":["2024HWYQ-034"]}],"id":[{"id":"10.13039\/501100007129","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100007129","name":"Natural Science Foundation of Shandong Province","doi-asserted-by":"publisher","award":["ZR2024QF164"],"award-info":[{"award-number":["ZR2024QF164"]}],"id":[{"id":"10.13039\/501100007129","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100010029","name":"Taishan Scholar Foundation of Shandong Province","doi-asserted-by":"publisher","award":["tstp20250536"],"award-info":[{"award-number":["tstp20250536"]}],"id":[{"id":"10.13039\/501100010029","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100012476","name":"Fundamental Research Funds for Central Universities of the Central South University","doi-asserted-by":"publisher","award":["202413038"],"award-info":[{"award-number":["202413038"]}],"id":[{"id":"10.13039\/501100012476","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100012476","name":"Fundamental Research Funds for Central Universities of the Central South University","doi-asserted-by":"publisher","award":["202442005"],"award-info":[{"award-number":["202442005"]}],"id":[{"id":"10.13039\/501100012476","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Empir Software Eng"],"published-print":{"date-parts":[[2026,11]]},"DOI":"10.1007\/s10664-026-10886-4","type":"journal-article","created":{"date-parts":[[2026,5,23]],"date-time":"2026-05-23T09:34:02Z","timestamp":1779528842000},"update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["CMF-Vul: Advancing automated vulnerability detection via contrastive multimodal fusion and challenge-driven representation learning"],"prefix":"10.1007","volume":"31","author":[{"given":"Quanfeng","family":"Li","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Guiyuan","family":"Jiang","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-7411-2801","authenticated-orcid":false,"given":"Peilan","family":"He","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Wenwen","family":"Liu","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Junyu","family":"Dong","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Yidan","family":"Sun","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Jiahui","family":"Wu","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2026,5,23]]},"reference":[{"key":"10886_CR1","unstructured":"Black PE et\u00a0al (2017) Sard: A software assurance reference dataset. In: Anonymous cybersecurity innovation forum, vol 85"},{"issue":"2","key":"10886_CR2","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/1455518.1455522","volume":"12","author":"C Cadar","year":"2008","unstructured":"Cadar C, Ganesh V, Pawlowski PM, Dill DL, Engler DR (2008) Exe: Automatically generating inputs of death. ACM Trans Inf Syst Secur (TISSEC) 12(2):1\u201338","journal-title":"ACM Trans Inf Syst Secur (TISSEC)"},{"key":"10886_CR3","doi-asserted-by":"crossref","unstructured":"Cao S, Sun X, Bo L, Wu R, Li B, Tao C (2022) Mvd: memory-related vulnerability detection based on flow-sensitive graph neural networks. In: Proceedings of the 44th international conference on software engineering, pp 1456\u20131468","DOI":"10.1145\/3510003.3510219"},{"key":"10886_CR4","doi-asserted-by":"crossref","unstructured":"Cao S, Sun X, Wu X, Lo D, Bo L, Li B, Liu W (2024a) Coca: Improving and explaining graph neural network-based vulnerability detection systems. In: Proceedings of the IEEE\/ACM 46th international conference on software engineering, pp 1\u201313","DOI":"10.1145\/3597503.3639168"},{"key":"10886_CR5","doi-asserted-by":"crossref","unstructured":"Cao S, Sun X, Wu X, Lo D, Bo L, Li B, Liu X, Lin X, Liu W (2024b) Snopy: Bridging sample denoising with causal graph learning for effective vulnerability detection. In: Proceedings of the 39th IEEE\/ACM international conference on automated software engineering, pp 606\u2013618","DOI":"10.1145\/3691620.3695057"},{"key":"10886_CR6","doi-asserted-by":"crossref","unstructured":"Ceccato M, Scandariato R (2016) Static analysis and penetration testing from the perspective of maintenance teams. In: Proceedings of the 10th ACM\/IEEE international symposium on empirical software engineering and measurement, pp 1\u20136","DOI":"10.1145\/2961111.2962611"},{"issue":"9","key":"10886_CR7","doi-asserted-by":"publisher","first-page":"3280","DOI":"10.1109\/TSE.2021.3087402","volume":"48","author":"S Chakraborty","year":"2021","unstructured":"Chakraborty S, Krishna R, Ding Y, Ray B (2021) Deep learning based vulnerability detection: Are we there yet? IEEE Trans Software Eng 48(9):3280\u20133296","journal-title":"IEEE Trans Software Eng"},{"key":"10886_CR8","doi-asserted-by":"crossref","unstructured":"Chen J, Hu K, Yu Y, Chen Z, Xuan Q, Liu Y, Filkov V (2020a) Software visualization and deep transfer learning for effective software defect prediction. In: Proceedings of the ACM\/IEEE 42nd international conference on software engineering, pp 578\u2013589","DOI":"10.1145\/3377811.3380389"},{"key":"10886_CR9","unstructured":"Chen T, Kornblith S, Norouzi M, Hinton G (2020b) A simple framework for contrastive learning of visual representations. In: International conference on machine learning, pp 1597\u20131607. PmLR"},{"issue":"3","key":"10886_CR10","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/3436877","volume":"30","author":"X Cheng","year":"2021","unstructured":"Cheng X, Wang H, Hua J, Xu G, Sui Y (2021) Deepwukong: Statically detecting software vulnerabilities using deep graph neural network. ACM Trans Softw Eng Methodol (TOSEM) 30(3):1\u201333","journal-title":"ACM Trans Softw Eng Methodol (TOSEM)"},{"key":"10886_CR11","unstructured":"Cozby PC (2017) Methods in behavioral research"},{"issue":"1","key":"10886_CR12","doi-asserted-by":"publisher","first-page":"67","DOI":"10.1109\/TSE.2018.2881961","volume":"47","author":"HK Dam","year":"2018","unstructured":"Dam HK, Tran T, Pham T, Ng SW, Grundy J, Ghose A (2018) Automatic feature learning for predicting vulnerable software components. IEEE Trans Software Eng 47(1):67\u201385","journal-title":"IEEE Trans Software Eng"},{"key":"10886_CR13","unstructured":"Deutsch A (2003) Static verification of dynamic properties. In: ACM SIGAda 2003 conference"},{"issue":"2","key":"10886_CR14","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/2089125.2089126","volume":"44","author":"M Egele","year":"2008","unstructured":"Egele M, Scholte T, Kirda E, Kruegel C (2008) A survey on automated dynamic malware-analysis techniques and tools. ACM Comput Surv (CSUR) 44(2):1\u201342","journal-title":"ACM Comput Surv (CSUR)"},{"issue":"5","key":"10886_CR15","doi-asserted-by":"publisher","first-page":"57","DOI":"10.1145\/502059.502041","volume":"35","author":"D Engler","year":"2001","unstructured":"Engler D, Chen DY, Hallem S, Chou A, Chelf B (2001) Bugs as deviant behavior: A general approach to inferring errors in systems code. ACM SIGOPS Operat Syst Rev 35(5):57\u201372","journal-title":"ACM SIGOPS Operat Syst Rev"},{"key":"10886_CR16","doi-asserted-by":"crossref","unstructured":"Fan J, Li Y, Wang S, Nguyen TN (2020) Ac\/c++ code vulnerability dataset with code changes and cve summaries. In: Proceedings of the 17th international conference on mining software repositories, pp 508\u2013512","DOI":"10.1145\/3379597.3387501"},{"key":"10886_CR17","unstructured":"Farago D, Merz F, Sinz C (2014) Automatic heavy-weight static analysis tools for finding bugs in safety-critical embedded c\/c++ code. In: Softwaretechnik-trends band 34, Heft 3. Geselllschaft f\u00fcr Informatik eV"},{"key":"10886_CR18","doi-asserted-by":"crossref","unstructured":"Feng Z, Guo D, Tang D, Duan N, Feng X, Gong M, Shou L, Qin B, Liu T, Jiang D et\u00a0al (2020) Codebert: A pre-trained model for programming and natural languages. arXiv preprint arXiv:2002.08155","DOI":"10.18653\/v1\/2020.findings-emnlp.139"},{"key":"10886_CR19","doi-asserted-by":"crossref","unstructured":"Fukushima T, Kamei Y, McIntosh S, Yamashita K, Ubayashi N (2014) An empirical study of just-in-time defect prediction using cross-project models. In: Proceedings of the 11th working conference on mining software repositories, pp 172\u2013181","DOI":"10.1145\/2597073.2597075"},{"key":"10886_CR20","doi-asserted-by":"crossref","unstructured":"Fu M, Tantithamthavorn C (2022) Linevul: A transformer-based line-level vulnerability prediction. In: Proceedings of the 19th international conference on mining software repositories, pp 608\u2013620","DOI":"10.1145\/3524842.3528452"},{"issue":"7","key":"10886_CR21","doi-asserted-by":"publisher","first-page":"169","DOI":"10.1007\/s10664-022-10197-4","volume":"27","author":"A Garg","year":"2022","unstructured":"Garg A, Degiovanni R, Jimenez M, Cordy M, Papadakis M, Le Traon Y (2022) Learning from what we know: How to perform vulnerability prediction using noisy historical data. Empir Softw Eng 27(7):169","journal-title":"Empir Softw Eng"},{"key":"10886_CR22","doi-asserted-by":"crossref","unstructured":"Guo D, Lu S, Duan N, Wang Y, Zhou M, Yin J (2022) Unixcoder: Unified cross-modal pre-training for code representation. arXiv preprint arXiv:2203.03850","DOI":"10.18653\/v1\/2022.acl-long.499"},{"key":"10886_CR23","unstructured":"Guo D, Ren S, Lu S, Feng Z, Tang D, Liu S, Zhou L, Duan N, Svyatkovskiy A, Fu S et\u00a0al (2020) Graphcodebert: Pre-training code representations with data flow. arXiv preprint arXiv:2009.08366"},{"key":"10886_CR24","doi-asserted-by":"crossref","unstructured":"He K, Fan H, Wu Y, Xie S, Girshick R (2020) Momentum contrast for unsupervised visual representation learning. In: Proceedings of the IEEE\/CVF conference on computer vision and pattern recognition, pp 9729\u20139738","DOI":"10.1109\/CVPR42600.2020.00975"},{"key":"10886_CR25","doi-asserted-by":"crossref","unstructured":"Hin D, Kan A, Chen H, Babar MA (2022) Linevd: Statement-level vulnerability detection using graph neural networks. In: Proceedings of the 19th international conference on mining software repositories, pp 596\u2013607","DOI":"10.1145\/3524842.3527949"},{"issue":"12","key":"10886_CR26","doi-asserted-by":"publisher","first-page":"92","DOI":"10.1145\/1052883.1052895","volume":"39","author":"D Hovemeyer","year":"2004","unstructured":"Hovemeyer D, Pugh W (2004) Finding bugs is easy. Acm Sigplan Notices 39(12):92\u2013106","journal-title":"Acm Sigplan Notices"},{"key":"10886_CR27","doi-asserted-by":"crossref","unstructured":"Jain P, Jain A, Zhang T, Abbeel P, Gonzalez JE, Stoica I (2020) Contrastive code representation learning. arXiv preprint arXiv:2007.04973","DOI":"10.18653\/v1\/2021.emnlp-main.482"},{"issue":"6","key":"10886_CR28","doi-asserted-by":"publisher","first-page":"163","DOI":"10.1007\/s10664-024-10441-z","volume":"29","author":"M Khajezade","year":"2024","unstructured":"Khajezade M, Fard FH, Shehata MS (2024) Evaluating few-shot and contrastive learning methods for code clone detection. Empir Softw Eng 29(6):163","journal-title":"Empir Softw Eng"},{"key":"10886_CR29","unstructured":"Kingma DP, Ba J (2014) Adam: A method for stochastic optimization. arXiv preprint arXiv:1412.6980"},{"key":"10886_CR30","unstructured":"Kipf TN, Welling M (2016) Semi-supervised classification with graph convolutional networks. arXiv preprint arXiv:1609.02907"},{"key":"10886_CR31","doi-asserted-by":"crossref","unstructured":"Li Z, Zou D, Xu S, Ou X, Jin H, Wang S, Deng Z, Zhong Y (2018) Vuldeepecker: A deep learning-based system for vulnerability detection. arXiv preprint arXiv:1801.01681","DOI":"10.14722\/ndss.2018.23158"},{"key":"10886_CR32","doi-asserted-by":"crossref","unstructured":"Li Y, Wang S, Nguyen TN (2021a) Vulnerability detection with fine-grained interpretations. In: Proceedings of the 29th ACM joint meeting on european software engineering conference and symposium on the foundations of software engineering, pp 292\u2013303","DOI":"10.1145\/3468264.3468597"},{"issue":"4","key":"10886_CR33","doi-asserted-by":"publisher","first-page":"2821","DOI":"10.1109\/TDSC.2021.3076142","volume":"19","author":"Z Li","year":"2021","unstructured":"Li Z, Zou D, Xu S, Chen Z, Zhu Y, Jin H (2021b) Vuldeelocator: a deep learning-based fine-grained vulnerability detector. IEEE Trans Dependable Secure Comput 19(4):2821\u20132837","journal-title":"IEEE Trans Dependable Secure Comput"},{"issue":"4","key":"10886_CR34","doi-asserted-by":"publisher","first-page":"2244","DOI":"10.1109\/TDSC.2021.3051525","volume":"19","author":"Z Li","year":"2021","unstructured":"Li Z, Zou D, Xu S, Jin H, Zhu Y, Chen Z (2021c) Sysevr: A framework for using deep learning to detect software vulnerabilities. IEEE Trans Dependable Secure Comput 19(4):2244\u20132258","journal-title":"IEEE Trans Dependable Secure Comput"},{"issue":"7","key":"10886_CR35","doi-asserted-by":"publisher","first-page":"3289","DOI":"10.1109\/TII.2018.2821768","volume":"14","author":"G Lin","year":"2018","unstructured":"Lin G, Zhang J, Luo W, Pan L, Xiang Y, De Vel O, Montague P (2018) Cross-project transfer representation learning for vulnerable function discovery. IEEE Trans Industr Inf 14(7):3289\u20133297","journal-title":"IEEE Trans Industr Inf"},{"issue":"2","key":"10886_CR36","doi-asserted-by":"publisher","first-page":"1397","DOI":"10.1109\/COMST.2018.2800740","volume":"20","author":"L Liu","year":"2018","unstructured":"Liu L, De Vel O, Han QL, Zhang J, Xiang Y (2018) Detecting and preventing cyber insider threats: A survey. IEEE Commun Surv Tutor 20(2):1397\u20131417","journal-title":"IEEE Commun Surv Tutor"},{"key":"10886_CR37","doi-asserted-by":"crossref","unstructured":"Liu Z, Hu H, Lin Y, Yao Z, Xie Z, Wei Y, Ning J, Cao Y, Zhang Z, Dong L et\u00a0al (2022) Swin transformer v2: Scaling up capacity and resolution. In: Proceedings of the IEEE\/CVF conference on computer vision and pattern recognition, pp 12,009\u201312,019","DOI":"10.1109\/CVPR52688.2022.01170"},{"key":"10886_CR38","unstructured":"Liu R, Wang Y, Xu H, Liu B, Sun J, Guo Z, Ma W (2024) Source code vulnerability detection: Combining code language models and code property graphs. arXiv preprint arXiv:2404.14719"},{"key":"10886_CR39","doi-asserted-by":"crossref","unstructured":"Liu S, Wu B, Xie X, Meng G, Liu Y (2023) Contrabert: Enhancing code pre-trained models via contrastive learning. In: 2023 IEEE\/ACM 45th International Conference on Software Engineering (ICSE), pp 2476\u20132487. IEEE","DOI":"10.1109\/ICSE48619.2023.00207"},{"key":"10886_CR40","unstructured":"Livshits B (2006) Improving software security with precise static and runtime analysis, vol 67"},{"key":"10886_CR41","unstructured":"Livshits, V.B., Lam, M.S.: Finding security vulnerabilities in java applications with static analysis. In: USENIX security symposium, vol.\u00a014, pp. 18\u201318 (2005)"},{"issue":"2","key":"10886_CR42","doi-asserted-by":"publisher","first-page":"38","DOI":"10.1007\/s10664-022-10276-6","volume":"28","author":"K Napier","year":"2023","unstructured":"Napier K, Bhowmik T, Wang S (2023) An empirical study of text-based machine learning models for vulnerability detection. Empir Softw Eng 28(2):38","journal-title":"Empir Softw Eng"},{"issue":"5","key":"10886_CR43","doi-asserted-by":"publisher","first-page":"113","DOI":"10.1007\/s10664-024-10519-8","volume":"29","author":"K Napier","year":"2024","unstructured":"Napier K, Bhowmik T, Chen Z (2024) Explaining poor performance of text-based machine learning models for vulnerability detection. Empir Softw Eng 29(5):113","journal-title":"Empir Softw Eng"},{"key":"10886_CR44","unstructured":"Neelakantan A, Xu T, Puri R, Radford A, Han JM, Tworek J, Yuan Q, Tezak N, Kim JW, Hallacy C et\u00a0al (2022) Text and code embeddings by contrastive pre-training. arXiv preprint arXiv:2201.10005"},{"key":"10886_CR45","doi-asserted-by":"crossref","unstructured":"Neuhaus S, Zimmermann T, Holler C, Zeller A (2007) Predicting vulnerable software components. In: Proceedings of the 14th ACM conference on computer and communications security, pp 529\u2013540","DOI":"10.1145\/1315245.1315311"},{"key":"10886_CR46","doi-asserted-by":"crossref","unstructured":"Nguyen VA, Nguyen DQ, Nguyen V, Le T, Tran QH, Phung D (2022) Regvd: Revisiting graph neural networks for vulnerability detection. In: Proceedings of the ACM\/IEEE 44th international conference on software engineering: companion proceedings, pp 178\u2013182","DOI":"10.1145\/3510454.3516865"},{"key":"10886_CR47","doi-asserted-by":"publisher","first-page":"107,406","DOI":"10.1016\/j.infsof.2024.107406","volume":"169","author":"TT Nguyen","year":"2024","unstructured":"Nguyen TT, Vo HD (2024) Context-based statement-level vulnerability localization. Inf Softw Technol 169:107,406","journal-title":"Inf Softw Technol"},{"key":"10886_CR48","doi-asserted-by":"crossref","unstructured":"Ni C, Guo X, Zhu Y, Xu X, Yang X (2023) Function-level vulnerability detection through fusing multi-modal knowledge. In: 2023 38th IEEE\/ACM international conference on Automated Software Engineering (ASE), pp 1911\u20131918. IEEE","DOI":"10.1109\/ASE56229.2023.00084"},{"key":"10886_CR49","doi-asserted-by":"crossref","unstructured":"Ni C, Yin X, Li X, Xu X, Yu Z (2025) Abundant modalities offer more nutrients: Multi-modal-based function-level vulnerability detection. ACM Trans Softw Eng Methodol","DOI":"10.1145\/3731557"},{"key":"10886_CR50","doi-asserted-by":"crossref","unstructured":"Qiu F, Liu Z, Hu X, Xia X, Chen G, Wang X (2024) Vulnerability detection via multiple-graph-based code representation. IEEE Trans Softw Eng","DOI":"10.1109\/TSE.2024.3427815"},{"key":"10886_CR51","unstructured":"Radford A, Kim JW, Hallacy C, Ramesh A, Goh G, Agarwal S, Sastry G, Askell A, Mishkin P, Clark J et\u00a0al (2021) Learning transferable visual models from natural language supervision. In: International conference on machine learning, pp 8748\u20138763. PmLR"},{"key":"10886_CR52","doi-asserted-by":"crossref","unstructured":"Russell R, Kim L, Hamilton L, Lazovich T, Harer J, Ozdemir O, Ellingwood P, McConley M (2018) Automated vulnerability detection in source code using deep representation learning. In: 2018 17th IEEE International Conference on Machine Learning and Applications (ICMLA), pp 757\u2013762. IEEE","DOI":"10.1109\/ICMLA.2018.00120"},{"issue":"10","key":"10886_CR53","doi-asserted-by":"publisher","first-page":"993","DOI":"10.1109\/TSE.2014.2340398","volume":"40","author":"R Scandariato","year":"2014","unstructured":"Scandariato R, Walden J, Hovsepyan A, Joosen W (2014) Predicting vulnerable software components via text mining. IEEE Trans Software Eng 40(10):993\u20131006","journal-title":"IEEE Trans Software Eng"},{"issue":"6","key":"10886_CR54","doi-asserted-by":"publisher","first-page":"688","DOI":"10.1109\/TDSC.2014.2373377","volume":"12","author":"LK Shar","year":"2014","unstructured":"Shar LK, Briand LC, Tan HBK (2014) Web application vulnerability prediction using hybrid program analysis and machine learning. IEEE Trans Dependable Secure Comput 12(6):688\u2013707","journal-title":"IEEE Trans Dependable Secure Comput"},{"key":"10886_CR55","doi-asserted-by":"crossref","unstructured":"Shastry B, Yamaguchi F, Rieck K, Seifert JP (2016) Towards vulnerability discovery using staged program analysis. In: International conference on detection of intrusions and malware, and vulnerability assessment, pp 78\u201397. Springer","DOI":"10.1007\/978-3-319-40667-1_5"},{"issue":"6","key":"10886_CR56","doi-asserted-by":"publisher","first-page":"772","DOI":"10.1109\/TSE.2010.81","volume":"37","author":"Y Shin","year":"2010","unstructured":"Shin Y, Meneely A, Williams L, Osborne JA (2010) Evaluating complexity, code churn, and developer activity metrics as indicators of software vulnerabilities. IEEE Trans Software Eng 37(6):772\u2013787","journal-title":"IEEE Trans Software Eng"},{"key":"10886_CR57","unstructured":"Srivastava RK, Greff K, Schmidhuber J (2015) Highway networks. arXiv preprint arXiv:1505.00387"},{"key":"10886_CR58","doi-asserted-by":"crossref","unstructured":"Sun H, Liu Y, Ding Z, Xiao Y, Hao Z, Zhu H (2023) An enhanced vulnerability detection in software using a heterogeneous encoding ensemble. In: 2023 IEEE Symposium on Computers and Communications (ISCC), pp 1214\u20131220. IEEE","DOI":"10.1109\/ISCC58397.2023.10217978"},{"key":"10886_CR59","doi-asserted-by":"publisher","first-page":"121,865","DOI":"10.1016\/j.eswa.2023.121865","volume":"238","author":"Z Tian","year":"2024","unstructured":"Tian Z, Tian B, Lv J, Chen Y, Chen L (2024) Enhancing vulnerability detection via ast decomposition and neural sub-tree encoding. Expert Syst Appl 238:121,865","journal-title":"Expert Syst Appl"},{"key":"10886_CR60","unstructured":"Vaswani A, Shazeer N, Parmar N, Uszkoreit J, Jones L, Gomez AN, Kaiser \u0141, Polosukhin I (2017) Attention is all you need. Adv Neural Inf Process Syst 30"},{"key":"10886_CR61","doi-asserted-by":"publisher","first-page":"1943","DOI":"10.1109\/TIFS.2020.3044773","volume":"16","author":"H Wang","year":"2020","unstructured":"Wang H, Ye G, Tang Z, Tan SH, Huang S, Fang D, Feng Y, Bian L, Wang Z (2020) Combining graph-based learning with automated data collection for code vulnerability detection. IEEE Trans Inf Forensics Secur 16:1943\u20131958","journal-title":"IEEE Trans Inf Forensics Secur"},{"issue":"8","key":"10886_CR62","doi-asserted-by":"publisher","first-page":"1631","DOI":"10.1002\/spe.3205","volume":"53","author":"S Wang","year":"2023","unstructured":"Wang S, Huang C, Yu D, Chen X (2023) Vulgrab: Graph-embedding-based code vulnerability detection with bi-directional gated graph neural network. Softw Pract Exper 53(8):1631\u20131658","journal-title":"Softw Pract Exper"},{"key":"10886_CR63","doi-asserted-by":"publisher","first-page":"103,994","DOI":"10.1016\/j.cose.2024.103994","volume":"145","author":"R Wang","year":"2024","unstructured":"Wang R, Xu S, Tian Y, Ji X, Sun X, Jiang S (2024) Scl-cvd: Supervised contrastive learning for code vulnerability detection via graphcodebert. Comput Secur 145:103,994","journal-title":"Comput Secur"},{"key":"10886_CR64","doi-asserted-by":"crossref","unstructured":"Wang D, Ding N, Li P, Zheng HT (2021a) Cline: Contrastive learning with semantic negative examples for natural language understanding. arXiv preprint arXiv:2107.00440","DOI":"10.18653\/v1\/2021.acl-long.181"},{"key":"10886_CR65","doi-asserted-by":"crossref","unstructured":"Wang Y, Wang W, Joty S, Hoi SC (2021b) Codet5: Identifier-aware unified pre-trained encoder-decoder models for code understanding and generation. arXiv preprint arXiv:2109.00859","DOI":"10.18653\/v1\/2021.emnlp-main.685"},{"key":"10886_CR66","doi-asserted-by":"crossref","unstructured":"Wen XC, Chen Y, Gao C, Zhang H, Zhang JM, Liao Q (2023) Vulnerability detection with graph simplification and enhanced graph representation learning. In: 2023 IEEE\/ACM 45th International Conference on Software Engineering (ICSE), pp 2275\u20132286. IEEE","DOI":"10.1109\/ICSE48619.2023.00191"},{"key":"10886_CR67","doi-asserted-by":"crossref","unstructured":"Wong WE, Debroy V, Surampudi A, Kim H, Siok MF (2010) Recent catastrophic accidents: Investigating how software was responsible","DOI":"10.1109\/SSIRI.2010.38"},{"key":"10886_CR68","doi-asserted-by":"crossref","unstructured":"Wu Y, Zou D, Dou S, Yang W, Xu D, Jin H (2022) Vulcnn: An image-inspired scalable vulnerability detection system. In: Proceedings of the 44th international conference on software engineering, pp 2365\u20132376","DOI":"10.1145\/3510003.3510229"},{"key":"10886_CR69","doi-asserted-by":"crossref","unstructured":"Xu FF, Alon U, Neubig G, Hellendoorn VJ (2022) A systematic evaluation of large language models of code. In: Proceedings of the 6th ACM SIGPLAN international symposium on machine programming, pp 1\u201310","DOI":"10.1145\/3520312.3534862"},{"key":"10886_CR70","doi-asserted-by":"crossref","unstructured":"Yamaguchi F, Golde N, Arp D, Rieck K (2014) Modeling and discovering vulnerabilities with code property graphs. In: 2014 IEEE symposium on security and privacy, pp 590\u2013604. IEEE","DOI":"10.1109\/SP.2014.44"},{"issue":"2","key":"10886_CR71","doi-asserted-by":"publisher","first-page":"50","DOI":"10.1007\/s10664-023-10439-z","volume":"29","author":"F Yang","year":"2024","unstructured":"Yang F, Zhong F, Zeng G, Xiao P, Zheng W (2024) Lineflowdp: A deep learning-based two-phase approach for line-level defect prediction. Empir Softw Eng 29(2):50","journal-title":"Empir Softw Eng"},{"key":"10886_CR72","doi-asserted-by":"crossref","unstructured":"Zhang R, Ji Y, Zhang Y, Passonneau RJ (2022) Contrastive data and learning for natural language processing. In: Proceedings of the 2022 conference of the North American chapter of the association for computational linguistics: human language technologies: tutorial abstracts, pp 39\u201347","DOI":"10.18653\/v1\/2022.naacl-tutorials.6"},{"key":"10886_CR73","doi-asserted-by":"publisher","first-page":"111,108","DOI":"10.1016\/j.jss.2021.111108","volume":"184","author":"Z Zhao","year":"2022","unstructured":"Zhao Z, Yang B, Li G, Liu H, Jin Z (2022) Precise learning of source code contextual semantics via hierarchical dependence structure and graph attention networks. J Syst Softw 184:111,108","journal-title":"J Syst Softw"},{"key":"10886_CR74","doi-asserted-by":"crossref","unstructured":"Zhao Y, Gong L, Huang Z, Wang Y, Wei M, Wu F (2024) Coding-ptms: How to find optimal code pre-trained models for code embedding in vulnerability detection? In: Proceedings of the 39th IEEE\/ACM international conference on automated software engineering, pp 1732\u20131744","DOI":"10.1145\/3691620.3695539"},{"key":"10886_CR75","unstructured":"Zhou Y, Liu S, Siow J, Du X, Liu Y (2019) Devign: Effective vulnerability identification by learning comprehensive program semantics via graph neural networks. Adv Neural Inf Process Syst 32"},{"key":"10886_CR76","doi-asserted-by":"crossref","unstructured":"Zimmermann T, Nagappan N, Gall H, Giger E, Murphy B (2009) Cross-project defect prediction: a large scale experiment on data vs. domain vs. process. In: Proceedings of the 7th joint meeting of the European software engineering conference and the ACM SIGSOFT symposium on The foundations of software engineering, pp 91\u2013100","DOI":"10.1145\/1595696.1595713"},{"key":"10886_CR77","doi-asserted-by":"crossref","unstructured":"Zimmermann T, Nagappan N, Williams L (2010) Searching for a needle in a haystack: Predicting security vulnerabilities for windows vista. In: 2010 Third international conference on software testing, verification and validation, pp 421\u2013428. IEEE","DOI":"10.1109\/ICST.2010.32"},{"issue":"5","key":"10886_CR78","first-page":"2224","volume":"18","author":"D Zou","year":"2019","unstructured":"Zou D, Wang S, Xu S, Li Z, Jin H (2019) $$\\mu $$ vuldeepecker: A deep learning-based system for multiclass vulnerability detection. IEEE Trans Dependable Secure Comput 18(5):2224\u20132236","journal-title":"IEEE Trans Dependable Secure Comput"}],"container-title":["Empirical Software Engineering"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s10664-026-10886-4.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s10664-026-10886-4","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s10664-026-10886-4.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,5,23]],"date-time":"2026-05-23T09:34:13Z","timestamp":1779528853000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s10664-026-10886-4"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,5,23]]},"references-count":78,"journal-issue":{"issue":"6","published-print":{"date-parts":[[2026,11]]}},"alternative-id":["10886"],"URL":"https:\/\/doi.org\/10.1007\/s10664-026-10886-4","relation":{},"ISSN":["1382-3256","1573-7616"],"issn-type":[{"value":"1382-3256","type":"print"},{"value":"1573-7616","type":"electronic"}],"subject":[],"published":{"date-parts":[[2026,5,23]]},"assertion":[{"value":"27 June 2025","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"12 May 2026","order":2,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"23 May 2026","order":3,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Declarations"}},{"value":"Not applicable.","order":2,"name":"Ethics","group":{"name":"EthicsHeading","label":"Ethical Approval"}},{"value":"Not applicable.","order":3,"name":"Ethics","group":{"name":"EthicsHeading","label":"Informed Consent"}},{"value":"The authors declared that they have no conflict of interest.","order":4,"name":"Ethics","group":{"name":"EthicsHeading","label":"Conflicts of Interest"}},{"value":"Not applicable.","order":5,"name":"Ethics","group":{"name":"EthicsHeading","label":"Clinical Trial Number"}}],"article-number":"152"}}