Faster Releases, Fewer Risks: A Study on Maven Artifact Vulnerabilities and Lifecycle Management
Fuente:
arXiv
Saved in:
| Main Authors: | Shafin, Md Shafiullah, Rabbi, Md Fazle, Hasan, S. M. Mahedy, Zibran, Minhaz F. |
|---|---|
| Format: | Preprint |
| Published: |
2025
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
Insights into Dependency Maintenance Trends in the Maven Ecosystem
by: Chowdhury, Barisha, et al.
Published: (2025)
by: Chowdhury, Barisha, et al.
Published: (2025)
The Quiet Contributions: Insights into AI-Generated Silent Pull Requests
by: Hasan, S M Mahedy, et al.
Published: (2026)
by: Hasan, S M Mahedy, et al.
Published: (2026)
Understanding Software Vulnerabilities in the Maven Ecosystem: Patterns, Timelines, and Risks
by: Rabbi, Md Fazle, et al.
Published: (2025)
by: Rabbi, Md Fazle, et al.
Published: (2025)
Chasing the Clock: How Fast Are Vulnerabilities Fixed in the Maven Ecosystem?
by: Rabbi, Md Fazle, et al.
Published: (2025)
by: Rabbi, Md Fazle, et al.
Published: (2025)
A Task-Level Evaluation of AI Agents in Open-Source Projects
by: Rahman, Shojibur, et al.
Published: (2026)
by: Rahman, Shojibur, et al.
Published: (2026)
Decoding Dependency Risks: A Quantitative Study of Vulnerabilities in the Maven Ecosystem
by: Nachuma, Costain, et al.
Published: (2025)
by: Nachuma, Costain, et al.
Published: (2025)
Insights into Security-Related AI-Generated Pull Requests
by: Rabbi, Md Fazle, et al.
Published: (2026)
by: Rabbi, Md Fazle, et al.
Published: (2026)
Out of Sight, Still at Risk: The Lifecycle of Transitive Vulnerabilities in Maven
by: Przymus, Piotr, et al.
Published: (2025)
by: Przymus, Piotr, et al.
Published: (2025)
When AI Teammates Meet Code Review: Collaboration Signals Shaping the Integration of Agent-Authored Pull Requests
by: Nachuma, Costain, et al.
Published: (2026)
by: Nachuma, Costain, et al.
Published: (2026)
HEJ-Robust: A Robustness Benchmark for LLM-Based Automated Program Repair
by: Rabbi, Fazle, et al.
Published: (2026)
by: Rabbi, Fazle, et al.
Published: (2026)
Dependency Dilemmas: A Comparative Study of Independent and Dependent Artifacts in Maven Central Ecosystem
by: Shanto, Mehedi Hasan, et al.
Published: (2025)
by: Shanto, Mehedi Hasan, et al.
Published: (2025)
A Multi-Language Perspective on the Robustness of LLM Code Generation
by: Rabbi, Fazle, et al.
Published: (2025)
by: Rabbi, Fazle, et al.
Published: (2025)
Tracing Vulnerabilities in Maven: A Study of CVE lifecycles and Dependency Networks
by: Yang-Smith, Corey, et al.
Published: (2025)
by: Yang-Smith, Corey, et al.
Published: (2025)
Beyond Translation Accuracy: Addressing False Failures in LLM-Based Code Translation
by: Rabbi, Fazle, et al.
Published: (2026)
by: Rabbi, Fazle, et al.
Published: (2026)
Bias Unveiled: Investigating Social Bias in LLM-Generated Code
by: Ling, Lin, et al.
Published: (2024)
by: Ling, Lin, et al.
Published: (2024)
Specification-Driven Code Translation Powered by Large Language Models: How Far Are We?
by: Saha, Soumit Kanti, et al.
Published: (2024)
by: Saha, Soumit Kanti, et al.
Published: (2024)
The Ripple Effect of Vulnerabilities in Maven Central: Prevalence, Propagation, and Mitigation Challenges
by: Haq, Ehtisham Ul, et al.
Published: (2025)
by: Haq, Ehtisham Ul, et al.
Published: (2025)
Understanding Abandonment and Slowdown Dynamics in the Maven Ecosystem
by: Hasan, Kazi Amit, et al.
Published: (2025)
by: Hasan, Kazi Amit, et al.
Published: (2025)
Secure-Instruct: An Automated Pipeline for Synthesizing Instruction-Tuning Datasets Using LLMs for Secure Code Generation
by: Li, Junjie, et al.
Published: (2025)
by: Li, Junjie, et al.
Published: (2025)
Maven-Lockfile: High Integrity Rebuild of Past Java Releases
by: Schmid, Larissa, et al.
Published: (2025)
by: Schmid, Larissa, et al.
Published: (2025)
On the Freshness of Pinned Dependencies in Maven
by: Vikram, Vasudev, et al.
Published: (2025)
by: Vikram, Vasudev, et al.
Published: (2025)
Popularity and Innovation in Maven Central
by: Ede, Nkiru, et al.
Published: (2025)
by: Ede, Nkiru, et al.
Published: (2025)
Moving Faster and Reducing Risk: Using LLMs in Release Deployment
by: Abreu, Rui, et al.
Published: (2024)
by: Abreu, Rui, et al.
Published: (2024)
Software Bills of Materials in Maven Central
by: Gamage, Yogya, et al.
Published: (2025)
by: Gamage, Yogya, et al.
Published: (2025)
An Exploratory Study on Fine-Tuning Large Language Models for Secure Code Generation
by: Li, Junjie, et al.
Published: (2024)
by: Li, Junjie, et al.
Published: (2024)
Social Bias in LLM-Generated Code: Benchmark and Mitigation
by: Rabbi, Fazle, et al.
Published: (2026)
by: Rabbi, Fazle, et al.
Published: (2026)
On the Variability of Source Code in Maven Package Rebuilds
by: Dietrich, Jens, et al.
Published: (2026)
by: Dietrich, Jens, et al.
Published: (2026)
Evaluating Software Process Models for Multi-Agent Class-Level Code Generation
by: Shafin, Wasique Islam, et al.
Published: (2025)
by: Shafin, Wasique Islam, et al.
Published: (2025)
An Empirical Evaluation of LLM-Based Approaches for Code Vulnerability Detection: RAG, SFT, and Dual-Agent Systems
by: Saju, Md Hasan, et al.
Published: (2026)
by: Saju, Md Hasan, et al.
Published: (2026)
Dependency Update Adoption Patterns in the Maven Software Ecosystem
by: Berretta, Baltasar, et al.
Published: (2025)
by: Berretta, Baltasar, et al.
Published: (2025)
Towards Compatibly Mitigating Technical Lag in Maven Projects
by: Lu, Rui
Published: (2025)
by: Lu, Rui
Published: (2025)
xNose: A Test Smell Detector for C#
by: Paul, Partha P., et al.
Published: (2024)
by: Paul, Partha P., et al.
Published: (2024)
BabelCoder: Agentic Code Translation with Specification Alignment
by: Rabbi, Fazle, et al.
Published: (2025)
by: Rabbi, Fazle, et al.
Published: (2025)
Context Before Code: An Experience Report on Vibe Coding in Practice
by: Shuvo, Md Nasir Uddin, et al.
Published: (2026)
by: Shuvo, Md Nasir Uddin, et al.
Published: (2026)
A Comprehensive Study on Automated Testing with the Software Lifecycle
by: Ali, Hussein Mohammed, et al.
Published: (2024)
by: Ali, Hussein Mohammed, et al.
Published: (2024)
Code Change Intention, Development Artifact and History Vulnerability: Putting Them Together for Vulnerability Fix Detection by LLM
by: Yang, Xu, et al.
Published: (2025)
by: Yang, Xu, et al.
Published: (2025)
ESG Reporting Lifecycle Management with Large Language Models and AI Agents
by: Hoang, Thong, et al.
Published: (2026)
by: Hoang, Thong, et al.
Published: (2026)
Establishing Traceability Links between Release Notes & Software Artifacts: Practitioners' Perspectives
by: Nath, Sristy Sumana, et al.
Published: (2025)
by: Nath, Sristy Sumana, et al.
Published: (2025)
A Systematic Mapping Study on Risks and Vulnerabilities in Software Containers
by: Sroor, Maha, et al.
Published: (2025)
by: Sroor, Maha, et al.
Published: (2025)
Deep Learning Aided Software Vulnerability Detection: A Survey
by: Uddin, Md Nizam, et al.
Published: (2025)
by: Uddin, Md Nizam, et al.
Published: (2025)
Similar Items
-
Insights into Dependency Maintenance Trends in the Maven Ecosystem
by: Chowdhury, Barisha, et al.
Published: (2025) -
The Quiet Contributions: Insights into AI-Generated Silent Pull Requests
by: Hasan, S M Mahedy, et al.
Published: (2026) -
Understanding Software Vulnerabilities in the Maven Ecosystem: Patterns, Timelines, and Risks
by: Rabbi, Md Fazle, et al.
Published: (2025) -
Chasing the Clock: How Fast Are Vulnerabilities Fixed in the Maven Ecosystem?
by: Rabbi, Md Fazle, et al.
Published: (2025) -
A Task-Level Evaluation of AI Agents in Open-Source Projects
by: Rahman, Shojibur, et al.
Published: (2026)