{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,2]],"date-time":"2026-07-02T07:03:29Z","timestamp":1782975809576,"version":"3.54.5"},"reference-count":68,"publisher":"IEEE","license":[{"start":{"date-parts":[[2026,5,18]],"date-time":"2026-05-18T00:00:00Z","timestamp":1779062400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2026,5,18]],"date-time":"2026-05-18T00:00:00Z","timestamp":1779062400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2026,5,18]]},"DOI":"10.1109\/sp63933.2026.00237","type":"proceedings-article","created":{"date-parts":[[2026,7,1]],"date-time":"2026-07-01T19:34:20Z","timestamp":1782934460000},"page":"4165-4184","source":"Crossref","is-referenced-by-count":0,"title":["Web Application Vulnerability Repair Via Context-Aware Fault Localization and Directed Differential Fuzzing"],"prefix":"10.1109","author":[{"given":"Chenlin","family":"Wang","sequence":"first","affiliation":[{"name":"The Chinese University of Hong Kong"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Wei","family":"Meng","sequence":"additional","affiliation":[{"name":"The Chinese University of Hong Kong"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP.2017.14"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1145\/3548606.3559367"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.2022.3147265"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.2022.3156637"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/SP46214.2022.9833597"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-78800-3_24"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1145\/226295.226310"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2019.23126"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/SP40001.2021.00022"},{"key":"ref10","article-title":"Learning to repair software vulnerabilities with generative adversarial networks","author":"Harer","year":"2018","journal-title":"Advances in neural information processing systems"},{"key":"ref11","article-title":"A survey on automated program repair techniques","author":"Huang","year":"2023","journal-title":"arXiv preprint arXiv"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/ICSE.2013.6606626"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/ICSE.2007.20"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/ICSE.2012.6227211"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.2011.104"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/SP54263.2024.00197"},{"key":"ref17","article-title":"Sok: Towards effective automated vulnerability repair","author":"Li","year":"2025","journal-title":"arXiv preprint arXiv"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1145\/3548606.3559391"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1109\/TR.2015.2457411"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1145\/2566486.2568024"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/icse48619.2023.00127"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1109\/ISSREW.2019.00098"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1145\/3597503.3623321"},{"key":"ref24","article-title":"Appatch: Automated adaptive prompting large language models for real-world software vulnerability patching","volume-title":"Proceedings of the 34th USENIX Security Symposium (Security)","author":"Nong"},{"key":"ref25","article-title":"{Spider-Scents}: Grey-box databaseaware web scanning for stored XSS","volume-title":"Proceedings of the 33rd USENIX Security Symposium (Security)","author":"Olsson"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1109\/SP61157.2025.00136"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1109\/SP46215.2023.10179420"},{"key":"ref28","article-title":"Xssky: Detecting xss vulnerabilities through local path-persistent fuzzing","volume-title":"Proceedings of the 34th USENIX Security Symposium (Security)","author":"Shi"},{"key":"ref29","article-title":"Backporting security patches of web applications: A prototype design and implementation on injection vulnerability patches","volume-title":"Proceedings of the 31st USENIX Security Symposium (Security)","author":"Shi"},{"key":"ref30","article-title":"Fix me up: Repairing access-control bugs in web applications","volume-title":"Proceedings of the 20th Annual Network and Distributed System Security Symposium (NDSS)","author":"Son"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1109\/SP46215.2023.10179317"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1145\/1543135.1542486"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1109\/SP61157.2025.00066"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1109\/SP54263.2024.00198"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1109\/ICSE.2009.5070536"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1145\/3715718"},{"key":"ref37","article-title":"Racing on the negative force: Efficient vulnerability {Root-Cause} analysis through reinforcement learning on counterexamples","volume-title":"Proceedings of the 33rd USENIX Security Symposium (Security)","author":"Xu"},{"key":"ref38","article-title":"Patchagent: A practical program repair agent mimicking human expertise","volume-title":"Proceedings of the 34th USENIX Security Symposium (Security)","author":"Yu"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1145\/3799693"},{"key":"ref40","volume-title":"Addresssanitizerleaksanitizer","year":"2017"},{"key":"ref41","volume-title":"Awesome web pocs","year":"2025"},{"key":"ref42","volume-title":"Claude documentation","year":"2025"},{"key":"ref43","volume-title":"Cve - common vulnerabilities and exposures","year":"2025"},{"key":"ref44","volume-title":"Prompthub - deepseek-v3 model card","year":"2025"},{"key":"ref45","volume-title":"Doctor appointment booking system","year":"2020"},{"key":"ref46","volume-title":"Friendsofphp security advisories","year":"2025"},{"key":"ref47","volume-title":"Github advisory database","year":"2025"},{"key":"ref48","volume-title":"Google deepmind","year":"2025"},{"key":"ref49","volume-title":"Hospital management system","year":"2019"},{"key":"ref50","volume-title":"Huntr - vulnerability disclosure platform","year":"2025"},{"key":"ref51","volume-title":"Joomla!","year":"2025"},{"key":"ref52","volume-title":"Joomla security announcements","year":"2025"},{"key":"ref53","volume-title":"User login management system","year":"2020"},{"key":"ref54","volume-title":"Nvd - national vulnerability database","year":"2025"},{"key":"ref55","volume-title":"Openai documentation","year":"2025"},{"key":"ref56","volume-title":"Openemr","year":"2025"},{"key":"ref57","volume-title":"Openemr security announcements","year":"2025"},{"key":"ref58","volume-title":"phpipam","year":"2025"},{"key":"ref59","volume-title":"phpmyadmin","year":"2025"},{"key":"ref60","volume-title":"Php-parser","year":"2025"},{"key":"ref61","volume-title":"Piwigo","year":"2025"},{"key":"ref62","volume-title":"rconfig, fig 2025xs"},{"key":"ref63","volume-title":"Uk cyber security survey","year":"2025"},{"key":"ref64","volume-title":"Usage statistics of server-side programming languages for websites","year":"2025"},{"key":"ref65","volume-title":"Webchess","year":"2025"},{"key":"ref66","volume-title":"Webid","year":"2025"},{"key":"ref67","volume-title":"Wordpress","year":"2025"},{"key":"ref68","volume-title":"Xdebug","year":"2025"}],"event":{"name":"2026 IEEE Symposium on Security and Privacy (SP)","location":"San Francisco, CA, USA","start":{"date-parts":[[2026,5,18]]},"end":{"date-parts":[[2026,5,21]]}},"container-title":["2026 IEEE Symposium on Security and Privacy (SP)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/11573355\/11573356\/11573512.pdf?arnumber=11573512","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,7,2]],"date-time":"2026-07-02T05:35:45Z","timestamp":1782970545000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11573512\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,5,18]]},"references-count":68,"URL":"https:\/\/doi.org\/10.1109\/sp63933.2026.00237","relation":{},"subject":[],"published":{"date-parts":[[2026,5,18]]}}}