Open copernico opened 4 years ago
For example, this paper collects 3750 vulnerabilities from NVD (note: for some reason they rely on crawling and scraping instead of just downloading the data feeds from the NVD): https://dl.acm.org/doi/10.1145/3379597.3387501
Another (better) paper here: https://dl.acm.org/doi/10.1145/3468264.3473122
The NVD does contain fix-commits for some CVEs: extract them and represent them as statements.