Understanding Software Vulnerabilities in the Maven Ecosystem: Patterns, Timelines, and Risks
Fuente:
arXiv
Saved in:
| Main Authors: | Rabbi, Md Fazle, Paul, Rajshakhar, Champa, Arifa Islam, Zibran, Minhaz F. |
|---|---|
| Format: | Preprint |
| Published: |
2025
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
Chasing the Clock: How Fast Are Vulnerabilities Fixed in the Maven Ecosystem?
by: Rabbi, Md Fazle, et al.
Published: (2025)
by: Rabbi, Md Fazle, et al.
Published: (2025)
Insights into Dependency Maintenance Trends in the Maven Ecosystem
by: Chowdhury, Barisha, et al.
Published: (2025)
by: Chowdhury, Barisha, et al.
Published: (2025)
Faster Releases, Fewer Risks: A Study on Maven Artifact Vulnerabilities and Lifecycle Management
by: Shafin, Md Shafiullah, et al.
Published: (2025)
by: Shafin, Md Shafiullah, et al.
Published: (2025)
Insights into Security-Related AI-Generated Pull Requests
by: Rabbi, Md Fazle, et al.
Published: (2026)
by: Rabbi, Md Fazle, et al.
Published: (2026)
Decoding Dependency Risks: A Quantitative Study of Vulnerabilities in the Maven Ecosystem
by: Nachuma, Costain, et al.
Published: (2025)
by: Nachuma, Costain, et al.
Published: (2025)
A Task-Level Evaluation of AI Agents in Open-Source Projects
by: Rahman, Shojibur, et al.
Published: (2026)
by: Rahman, Shojibur, et al.
Published: (2026)
The Quiet Contributions: Insights into AI-Generated Silent Pull Requests
by: Hasan, S M Mahedy, et al.
Published: (2026)
by: Hasan, S M Mahedy, et al.
Published: (2026)
Dependency Update Adoption Patterns in the Maven Software Ecosystem
by: Berretta, Baltasar, et al.
Published: (2025)
by: Berretta, Baltasar, et al.
Published: (2025)
When AI Teammates Meet Code Review: Collaboration Signals Shaping the Integration of Agent-Authored Pull Requests
by: Nachuma, Costain, et al.
Published: (2026)
by: Nachuma, Costain, et al.
Published: (2026)
Understanding Abandonment and Slowdown Dynamics in the Maven Ecosystem
by: Hasan, Kazi Amit, et al.
Published: (2025)
by: Hasan, Kazi Amit, et al.
Published: (2025)
HEJ-Robust: A Robustness Benchmark for LLM-Based Automated Program Repair
by: Rabbi, Fazle, et al.
Published: (2026)
by: Rabbi, Fazle, et al.
Published: (2026)
A Multi-Language Perspective on the Robustness of LLM Code Generation
by: Rabbi, Fazle, et al.
Published: (2025)
by: Rabbi, Fazle, et al.
Published: (2025)
Discovery of Timeline and Crowd Reaction of Software Vulnerability Disclosures
by: Heng, Yi Wen, et al.
Published: (2024)
by: Heng, Yi Wen, et al.
Published: (2024)
Software Bills of Materials in Maven Central
by: Gamage, Yogya, et al.
Published: (2025)
by: Gamage, Yogya, et al.
Published: (2025)
Beyond Translation Accuracy: Addressing False Failures in LLM-Based Code Translation
by: Rabbi, Fazle, et al.
Published: (2026)
by: Rabbi, Fazle, et al.
Published: (2026)
Out of Sight, Still at Risk: The Lifecycle of Transitive Vulnerabilities in Maven
by: Przymus, Piotr, et al.
Published: (2025)
by: Przymus, Piotr, et al.
Published: (2025)
Bias Unveiled: Investigating Social Bias in LLM-Generated Code
by: Ling, Lin, et al.
Published: (2024)
by: Ling, Lin, et al.
Published: (2024)
Specification-Driven Code Translation Powered by Large Language Models: How Far Are We?
by: Saha, Soumit Kanti, et al.
Published: (2024)
by: Saha, Soumit Kanti, et al.
Published: (2024)
The Ripple Effect of Vulnerabilities in Maven Central: Prevalence, Propagation, and Mitigation Challenges
by: Haq, Ehtisham Ul, et al.
Published: (2025)
by: Haq, Ehtisham Ul, et al.
Published: (2025)
Tracing Vulnerabilities in Maven: A Study of CVE lifecycles and Dependency Networks
by: Yang-Smith, Corey, et al.
Published: (2025)
by: Yang-Smith, Corey, et al.
Published: (2025)
Structural and Connectivity Patterns in the Maven Central Software Dependency Network
by: Ogenrwot, Daniel, et al.
Published: (2025)
by: Ogenrwot, Daniel, et al.
Published: (2025)
Secure-Instruct: An Automated Pipeline for Synthesizing Instruction-Tuning Datasets Using LLMs for Secure Code Generation
by: Li, Junjie, et al.
Published: (2025)
by: Li, Junjie, et al.
Published: (2025)
Dependency Dilemmas: A Comparative Study of Independent and Dependent Artifacts in Maven Central Ecosystem
by: Shanto, Mehedi Hasan, et al.
Published: (2025)
by: Shanto, Mehedi Hasan, et al.
Published: (2025)
On the Freshness of Pinned Dependencies in Maven
by: Vikram, Vasudev, et al.
Published: (2025)
by: Vikram, Vasudev, et al.
Published: (2025)
Popularity and Innovation in Maven Central
by: Ede, Nkiru, et al.
Published: (2025)
by: Ede, Nkiru, et al.
Published: (2025)
Automated Identification of Sexual Orientation and Gender Identity Discriminatory Texts from Issue Comments
by: Sultana, Sayma, et al.
Published: (2023)
by: Sultana, Sayma, et al.
Published: (2023)
Understanding the Issue Types in Open Source Blockchain-based Software Projects with the Transformer-based BERTopic
by: Opu, Md Nahidul Islam, et al.
Published: (2025)
by: Opu, Md Nahidul Islam, et al.
Published: (2025)
Maven-Hijack: Software Supply Chain Attack Exploiting Packaging Order
by: Reyes, Frank, et al.
Published: (2024)
by: Reyes, Frank, et al.
Published: (2024)
Social Bias in LLM-Generated Code: Benchmark and Mitigation
by: Rabbi, Fazle, et al.
Published: (2026)
by: Rabbi, Fazle, et al.
Published: (2026)
On the Variability of Source Code in Maven Package Rebuilds
by: Dietrich, Jens, et al.
Published: (2026)
by: Dietrich, Jens, et al.
Published: (2026)
Towards Compatibly Mitigating Technical Lag in Maven Projects
by: Lu, Rui
Published: (2025)
by: Lu, Rui
Published: (2025)
Tracing Vulnerability Propagation Across Open Source Software Ecosystems
by: Ruohonen, Jukka, et al.
Published: (2025)
by: Ruohonen, Jukka, et al.
Published: (2025)
Understanding the Sneaky Patterns of Pop-up Windows in the Mobile Ecosystem
by: Wu, Dongpeng, et al.
Published: (2025)
by: Wu, Dongpeng, et al.
Published: (2025)
A Systematic Mapping Study on Risks and Vulnerabilities in Software Containers
by: Sroor, Maha, et al.
Published: (2025)
by: Sroor, Maha, et al.
Published: (2025)
BabelCoder: Agentic Code Translation with Specification Alignment
by: Rabbi, Fazle, et al.
Published: (2025)
by: Rabbi, Fazle, et al.
Published: (2025)
An Exploratory Study on Fine-Tuning Large Language Models for Secure Code Generation
by: Li, Junjie, et al.
Published: (2024)
by: Li, Junjie, et al.
Published: (2024)
Best Practices for Facing the Security Challenges of Internet of Things Devices Focusing on Software Development Life Cycle
by: Islam, Md Rafid, et al.
Published: (2024)
by: Islam, Md Rafid, et al.
Published: (2024)
Peer Code Review in Research Software Development: The Research Software Engineer Perspective
by: Malik, Md Ariful Islam, et al.
Published: (2025)
by: Malik, Md Ariful Islam, et al.
Published: (2025)
State of the Quantum Software Engineering Ecosystem
by: Siavash, Nazanin, et al.
Published: (2026)
by: Siavash, Nazanin, et al.
Published: (2026)
Exploring the Jupyter Ecosystem: An Empirical Study of Bugs and Vulnerabilities
by: Jiang, Wenyuan, et al.
Published: (2025)
by: Jiang, Wenyuan, et al.
Published: (2025)
Similar Items
-
Chasing the Clock: How Fast Are Vulnerabilities Fixed in the Maven Ecosystem?
by: Rabbi, Md Fazle, et al.
Published: (2025) -
Insights into Dependency Maintenance Trends in the Maven Ecosystem
by: Chowdhury, Barisha, et al.
Published: (2025) -
Faster Releases, Fewer Risks: A Study on Maven Artifact Vulnerabilities and Lifecycle Management
by: Shafin, Md Shafiullah, et al.
Published: (2025) -
Insights into Security-Related AI-Generated Pull Requests
by: Rabbi, Md Fazle, et al.
Published: (2026) -
Decoding Dependency Risks: A Quantitative Study of Vulnerabilities in the Maven Ecosystem
by: Nachuma, Costain, et al.
Published: (2025)