Team Ai
Datasetpublic

regularpooria/CVE_CWE_Software_Mapping_Dataset

CVE-CWE Software Weakness Mapping Dataset Dataset description This dataset maps Common Vulnerabilities and Exposures (CVEs) to Common Weakness Enumeration (CWE) entries in the CWE-699 Software category. It combines CVE descriptions with CWE descriptions and parent-category information for security research and vulnerability classification. Dataset structure The dataset is provided as Global_Dataset.csv. Its main fields include: CVE-ID: CVE… See the full description on the dataset page: https://huggingface.co/datasets/regularpooria/CVE_CWE_Software_Mapping_Dataset.

sourceHugging Faceapache-2.0updated 1mo agoView on Hugging Face
0likes129downloads
README.md57 linesDownload Raw Back to root
1---2language:3- en4tags:5- cybersecurity6- vulnerability7- cve8- cwe9- software-security10task_categories:11- text-classification12pretty_name: CVE-CWE Software Weakness Mapping Dataset13license: apache-2.014---15 16# CVE-CWE Software Weakness Mapping Dataset17 18## Dataset description19 20This dataset maps Common Vulnerabilities and Exposures (CVEs) to Common Weakness Enumeration (CWE) entries in the CWE-699 Software category. It combines CVE descriptions with CWE descriptions and parent-category information for security research and vulnerability classification.21 22## Dataset structure23 24The dataset is provided as `Global_Dataset.csv`. Its main fields include:25 26- `CVE-ID`: CVE identifier.27- `CVE-DESCRIPTION`: Description of the vulnerability.28- `CWE-ID`: Associated CWE identifier.29- `CWE-DESCRIPTION`: Description of the associated weakness.30- `PARENTS`: Parent CWE category or categories.31- `YEAR`: Year extracted from the CVE identifier.32- `IS-IN-CWE699`: Whether the CWE belongs to the CWE-699 Software category.33 34## Data sources35 36- CVE-to-CWE mappings and vulnerability descriptions are sourced from the `zefang-liu/cve-and-cwe-mapping-dataset` dataset on Hugging Face.37- CWE descriptions and hierarchy information are collected from the CWE software-category data scraped by this project.38 39The dataset is generated by `dataset/generate_dataset.ipynb`.40 41## Intended uses42 43This dataset is intended for research and experimentation involving:44 45- CVE-to-CWE classification.46- Vulnerability search and retrieval.47- Security text embedding and similarity experiments.48- Analysis of software weakness categories.49 50## Limitations51 52The mappings reflect the upstream data sources and may contain incomplete, ambiguous, or changing vulnerability information. The dataset should not be treated as a definitive security assessment or as a replacement for reviewing the original NVD and CWE records.53 54## License and attribution55 56Please review and follow the licenses and attribution requirements of the upstream CVE and CWE sources before redistributing or using this dataset.57