15 citations · 21 across the 4 of their papers we have counts for
4 papers
Empirical Analysis of Vulnerabilities Life Cycle in Golang Ecosystem
Jinchang Hu, Lyuye Zhang, Chengwei Liu +3
Open-source software (OSS) greatly facilitates program development for developers. However, the high number of vulnerabilities in open-source software is a major concern, including…
Mitigating Persistence of Open-Source Vulnerabilities in Maven Ecosystem
Lyuye Zhang, Chengwei Liu, Sen Chen +5
Vulnerabilities from third-party libraries (TPLs) have been unveiled to threaten the Maven ecosystem. Despite patches being released promptly after vulnerabilities are disclosed, t…
Compatible Remediation on Vulnerabilities from Third-Party Libraries for Java Projects
Lyuye Zhang, Chengwei Liu, Zhengzi Xu +5
With the increasing disclosure of vulnerabilities in open-source software, software composition analysis (SCA) has been widely applied to reveal third-party libraries and the assoc…
Has My Release Disobeyed Semantic Versioning? Static Detection Based on Semantic Differencing
Lyuye Zhang, Chengwei Liu, Zhengzi Xu +4
To enhance the compatibility in the version control of Java Third-party Libraries (TPLs), Maven adopts Semantic Versioning (SemVer) to standardize the underlying meaning of version…