2 papers
cs.SE2026
Linux Kernel Recency Matters, CVE Severity Doesn't, and History Fades
Piotr Przymus, Witold Weiner, Krzysztof Rykaczewski +1
In 2024, the Linux kernel became its own Common Vulnerabilities and Exposures (CVE) Numbering Authority (CNA), formalizing how kernel vulnerabilities are identified and tracked. We…
cs.SE2025
Out of Sight, Still at Risk: The Lifecycle of Transitive Vulnerabilities in Maven
Piotr Przymus, MikoÅaj Fejzer, Jakub NarÄbski +2
The modern software development landscape heavily relies on transitive dependencies. They enable seamless integration of third-party libraries. However, they also introduce securit…