{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,30]],"date-time":"2026-07-30T14:01:38Z","timestamp":1785420098651,"version":"3.56.0"},"reference-count":52,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","issue":"9","license":[{"start":{"date-parts":[[2025,9,1]],"date-time":"2025-09-01T00:00:00Z","timestamp":1756684800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2025,9,1]],"date-time":"2025-09-01T00:00:00Z","timestamp":1756684800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,9,1]],"date-time":"2025-09-01T00:00:00Z","timestamp":1756684800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100000923","name":"Australian Research Council","doi-asserted-by":"publisher","award":["FT220100391"],"award-info":[{"award-number":["FT220100391"]}],"id":[{"id":"10.13039\/501100000923","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100000923","name":"Australian Research Council","doi-asserted-by":"publisher","award":["DP250101396"],"award-info":[{"award-number":["DP250101396"]}],"id":[{"id":"10.13039\/501100000923","id-type":"DOI","asserted-by":"publisher"}]},{"name":"research gift from Intel Corporation and a gift from Google"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IIEEE Trans. Software Eng."],"published-print":{"date-parts":[[2025,9]]},"DOI":"10.1109\/tse.2025.3591934","type":"journal-article","created":{"date-parts":[[2025,7,23]],"date-time":"2025-07-23T18:43:03Z","timestamp":1753296183000},"page":"2533-2548","source":"Crossref","is-referenced-by-count":7,"title":["CGP-Tuning: Structure-Aware Soft Prompt Tuning for Code Vulnerability Detection"],"prefix":"10.1109","volume":"51","author":[{"ORCID":"https:\/\/orcid.org\/0000-0003-2167-2968","authenticated-orcid":false,"given":"Ruijun","family":"Feng","sequence":"first","affiliation":[{"name":"School of Computer Science and Engineering, University of New South Wales (UNSW), Sydney, NSW, Australia"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-3488-7004","authenticated-orcid":false,"given":"Hammond","family":"Pearce","sequence":"additional","affiliation":[{"name":"School of Computer Science and Engineering, University of New South Wales (UNSW), Sydney, NSW, Australia"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-5579-1696","authenticated-orcid":false,"given":"Pietro","family":"Liguori","sequence":"additional","affiliation":[{"name":"Department of Electrical Engineering and Information Technology, University of Naples Federico II, Napoli, Italy"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-9510-6574","authenticated-orcid":false,"given":"Yulei","family":"Sui","sequence":"additional","affiliation":[{"name":"School of Computer Science and Engineering, University of New South Wales (UNSW), Sydney, NSW, Australia"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1145\/2892208.2892235"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1145\/2338965.2336784"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/ase51524.2021.9678535"},{"key":"ref4","article-title":"Code Llama: Open foundation models for code","author":"Rozi\u00e8re","year":"2024"},{"key":"ref5","article-title":"CodeGemma: Open code models based on Gemma","author":"Team","year":"2024"},{"key":"ref6","article-title":"Qwen2.5-Coder technical report","author":"Hui","year":"2024"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1145\/3639476.3639762"},{"key":"ref8","first-page":"1","article-title":"Talk like a graph: Encoding graphs for large language models","volume-title":"Proc. 12th Int. Conf. Learn. Representations","author":"Fatemi","year":"2024"},{"key":"ref9","article-title":"GRACE: Empowering LLM-based software vulnerability detection with graph structure and in-context learning","volume-title":"J. Syst. Softw.","volume":"212","author":"Lu","year":"2024"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.48550\/ARXIV.1706.03762"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1145\/3637528.3671456"},{"key":"ref12","first-page":"7809","article-title":"LLaGA: Large language and graph assistant","volume-title":"Proc. 41st Int. Conf. Mach. Learn.","author":"Chen","year":"2024"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1145\/3626772.3657775"},{"key":"ref14","first-page":"391","article-title":"XRec: Large language models for explainable recommendation","volume-title":"Proc. Findings Assoc. Comput. Linguistics (EMNLP)","author":"Ma","year":"2024"},{"key":"ref15","first-page":"132876","article-title":"G-retriever: Retrieval-augmented generation for textual graph understanding and question answering","volume-title":"Proc. 38th Int. Conf. Neural Inf. Process. Syst.","author":"He","year":"2024"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v38i17.29875"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/sp.2014.44"},{"key":"ref18","first-page":"1","article-title":"Semi-supervised classification with graph convolutional networks","volume-title":"Proc. 5th Int. Conf. Learn. Representations","author":"Kipf","year":"2017"},{"key":"ref19","first-page":"1","article-title":"Graph attention networks","volume-title":"Proc. 6th Int. Conf. Learn. Representations","author":"Veli\u010dkovi\u0107","year":"2018"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1109\/TR.2024.3374410"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1145\/3436877"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2024.3392536"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.2024.3427815"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.2021.3087402"},{"key":"ref25","first-page":"1536","article-title":"CodeBERT: A pre-trained model for programming and natural languages","volume-title":"Proc. Findings Assoc. Comput. Linguistics (EMNLP)","author":"Feng","year":"2020"},{"key":"ref26","first-page":"8696","article-title":"Codet5: Identifier-aware unified pre-trained encoder-decoder models for code understanding and generation","volume-title":"Proc. Conf. Empirical Methods Natural Lang. Process.","author":"Wang","year":"2021"},{"key":"ref27","first-page":"1","article-title":"Large-scale randomized program generation with large language models","volume-title":"Proc. Int. Conf. High Perform. Comput., Netw., Storage Anal.","author":"Lam","year":"2024"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1145\/3695993"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.2024.3428324"},{"key":"ref30","first-page":"1","article-title":"GraphCodeBERT: Pre-training code representations with data flow","volume-title":"Proc. 9th Int. Conf. Learn. Representations","author":"Guo","year":"2021"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1145\/3564625.3567985"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1038\/s42256-023-00626-4"},{"key":"ref33","doi-asserted-by":"crossref","first-page":"61","DOI":"10.18653\/v1\/2022.acl-short.8","article-title":"P-tuning: Prompt tuning can be comparable to fine-tuning across scales and tasks","volume-title":"Proc. 60th Annu. Meeting Assoc. Comput. Linguistics (Volume 2: Short Papers)","author":"Liu","year":"2022"},{"key":"ref34","first-page":"3045","article-title":"The power of scale for parameter-efficient prompt tuning","volume-title":"Proc. Conf. Empirical Methods Natural Lang. Process.","author":"Lester","year":"2021"},{"key":"ref35","first-page":"4582","article-title":"Prefix-tuning: Optimizing continuous prompts for generation","volume-title":"Proc. 59th Annu. Meeting Assoc. Comput. Linguistics 11th Int. Joint Conf. Natural Lang. Process. (Volume 1: Long Papers)","author":"Li","year":"2021"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.2023.3313881"},{"key":"ref37","first-page":"1","article-title":"LoRA: Low-rank adaptation of large language models","volume-title":"Proc. 10th Int. Conf. Learn. Representations","author":"Hu","year":"2022"},{"key":"ref38","article-title":"Layer normalization","author":"Ba","year":"2016"},{"key":"ref39","article-title":"Deep learning using rectified linear units (ReLU)","author":"Agarap","year":"2019"},{"issue":"1","key":"ref40","first-page":"1929","article-title":"Dropout: A simple way to prevent neural networks from overfitting","volume":"15","author":"Srivastava","year":"2014","journal-title":"J. Mach. Learn. Res."},{"key":"ref41","first-page":"35084","article-title":"Demystifying oversmoothing in attention-based graph neural networks","volume-title":"Proc. 37th Int. Conf. Neural Inf. Process. Syst. (NIPS)","author":"Wu","year":"2024"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v34i04.5997"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.1145\/3607199.3607242"},{"key":"ref45","article-title":"Code vulnerability detection: A comparative analysis of emerging large language models","author":"Sultana","year":"2024"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-031-54252-7_9"},{"key":"ref47","first-page":"1","article-title":"A prompt pattern catalog to enhance prompt engineering with ChatGPT","volume-title":"Proc. 30th Conf. Pattern Lang. Programs (PLoP)","author":"White","year":"2023"},{"key":"ref48","article-title":"SCL-CVD: Supervised contrastive learning for code vulnerability detection via GraphCodeBERT","volume-title":"Comput. Secur.","volume":"145","author":"Wang","year":"2024"},{"key":"ref49","article-title":"Scaling laws for neural language models","author":"Kaplan","year":"2020"},{"key":"ref50","first-page":"12039","article-title":"Generalization or memorization: Data contamination and trustworthy evaluation for large language models","volume-title":"Proc. Findings Assoc. Comput. Linguistics (ACL)","author":"Dong","year":"2024"},{"key":"ref51","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.2024.3504286"},{"key":"ref52","doi-asserted-by":"publisher","DOI":"10.1145\/3597503.3623320"}],"container-title":["IEEE Transactions on Software Engineering"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/32\/11172729\/11091601.pdf?arnumber=11091601","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,9,19]],"date-time":"2025-09-19T17:37:10Z","timestamp":1758303430000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11091601\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,9]]},"references-count":52,"journal-issue":{"issue":"9"},"URL":"https:\/\/doi.org\/10.1109\/tse.2025.3591934","relation":{},"ISSN":["0098-5589","1939-3520","2326-3881"],"issn-type":[{"value":"0098-5589","type":"print"},{"value":"1939-3520","type":"electronic"},{"value":"2326-3881","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025,9]]}}}