SemVul: Semantic-Enhanced Graph Neural Networks for Code Property Graph-based Vulnerability Detection

๐Ÿ“… 2026-09-05
๐Ÿ“ˆ Citations: 0
โœจ Influential: 0
๐Ÿ“„ PDF
๐Ÿ“ Abstract
Vulnerabilities in source code are often the root cause of cyberattacks worldwide, as attackers exploit weaknesses in software to gain unauthorized access, steal data, or disrupt services. In this study, we evaluated existing research approaches and propose SemVul, a vulnerability detection pipeline that demonstrates better generalization and higher accuracy in learning vulnerable code patterns. We propose a Code Property Graph-based vulnerability-detection approach combined with semantic-level enhancement, enabling the model to capture both the program's structural flow and the semantic meaning of the code. Our approach integrates both node-level and edge-level semantic embeddings using pre-trained code embedding techniques. We systematically evaluate multiple GNN architectures on publicly available benchmark datasets. SemVul is generic with respect to the programming language and supports multiple architectures. By integrating structural and semantic information, the proposed approach improves vulnerability detection performance. Our results show that SemVul outperforms existing approaches and provides better generalization.
Problem

Research questions and friction points this paper is trying to address.

vulnerability detection
source code
cyberattacks
Code Property Graph
semantic enhancement
Innovation

Methods, ideas, or system contributions that make the work stand out.

Semantic-Enhanced
Graph Neural Networks
Code Property Graph
Vulnerability Detection
Pre-trained Code Embeddings
๐Ÿ’ผ Related Jobs
No related jobs found.