cedricbonhomme commited on
Commit
7d660b6
·
verified ·
1 Parent(s): b2bad61

End of training

Browse files
Files changed (4) hide show
  1. README.md +23 -58
  2. model.safetensors +1 -1
  3. tokenizer.json +1 -1
  4. tokenizer_config.json +2 -44
README.md CHANGED
@@ -1,68 +1,37 @@
1
  ---
2
  library_name: transformers
3
- license: cc-by-4.0
4
  base_model: roberta-base
5
- metrics:
6
- - accuracy
7
  tags:
8
  - generated_from_trainer
9
- - text-classification
10
- - classification
11
- - nlp
12
- - vulnerability
13
  model-index:
14
  - name: vulnerability-severity-classification-roberta-base
15
  results: []
16
- datasets:
17
- - CIRCL/vulnerability-scores
18
  ---
19
 
 
 
20
 
21
- # VLAI: A RoBERTa-Based Model for Automated Vulnerability Severity Classification
22
-
23
- # Severity classification
24
-
25
- This model is a fine-tuned version of [roberta-base](https://huggingface.co/roberta-base) on the dataset [CIRCL/vulnerability-scores](https://huggingface.co/datasets/CIRCL/vulnerability-scores).
26
-
27
- The model was presented in the paper [VLAI: A RoBERTa-Based Model for Automated Vulnerability Severity Classification](https://huggingface.co/papers/2507.03607) [[arXiv](https://arxiv.org/abs/2507.03607)].
28
-
29
- **Abstract:** VLAI is a transformer-based model that predicts software vulnerability severity levels directly from text descriptions. Built on RoBERTa, VLAI is fine-tuned on over 600,000 real-world vulnerabilities and achieves over 82% accuracy in predicting severity categories, enabling faster and more consistent triage ahead of manual CVSS scoring. The model and dataset are open-source and integrated into the Vulnerability-Lookup service.
30
-
31
- You can read [this page](https://www.vulnerability-lookup.org/user-manual/ai/) for more information.
32
 
 
 
 
 
33
 
34
  ## Model description
35
 
36
- It is a classification model and is aimed to assist in classifying vulnerabilities by severity based on their descriptions.
37
-
38
- ## How to get started with the model
39
-
40
- ```python
41
- from transformers import AutoModelForSequenceClassification, AutoTokenizer
42
- import torch
43
 
44
- labels = ["low", "medium", "high", "critical"]
45
 
46
- model_name = "CIRCL/vulnerability-severity-classification-roberta-base"
47
- tokenizer = AutoTokenizer.from_pretrained(model_name)
48
- model = AutoModelForSequenceClassification.from_pretrained(model_name)
49
- model.eval()
50
 
51
- test_description = "SAP NetWeaver Visual Composer Metadata Uploader is not protected with a proper authorization, allowing unauthenticated agent to upload potentially malicious executable binaries \
52
- that could severely harm the host system. This could significantly affect the confidentiality, integrity, and availability of the targeted system."
53
- inputs = tokenizer(test_description, return_tensors="pt", truncation=True, padding=True)
54
-
55
- # Run inference
56
- with torch.no_grad():
57
- outputs = model(**inputs)
58
- predictions = torch.nn.functional.softmax(outputs.logits, dim=-1)
59
-
60
- # Print results
61
- print("Predictions:", predictions)
62
- predicted_class = torch.argmax(predictions, dim=-1).item()
63
- print("Predicted severity:", labels[predicted_class])
64
- ```
65
 
 
66
 
67
  ## Training procedure
68
 
@@ -77,24 +46,20 @@ The following hyperparameters were used during training:
77
  - lr_scheduler_type: linear
78
  - num_epochs: 5
79
 
80
- It achieves the following results on the evaluation set:
81
- - Loss: 0.4941
82
- - Accuracy: 0.8231
83
-
84
  ### Training results
85
 
86
  | Training Loss | Epoch | Step | Validation Loss | Accuracy |
87
  |:-------------:|:-----:|:-----:|:---------------:|:--------:|
88
- | 0.6002 | 1.0 | 15170 | 0.6387 | 0.7427 |
89
- | 0.5361 | 2.0 | 30340 | 0.5631 | 0.7751 |
90
- | 0.4608 | 3.0 | 45510 | 0.5208 | 0.7970 |
91
- | 0.3383 | 4.0 | 60680 | 0.4975 | 0.8150 |
92
- | 0.3325 | 5.0 | 75850 | 0.4941 | 0.8231 |
93
 
94
 
95
  ### Framework versions
96
 
97
- - Transformers 4.57.3
98
- - Pytorch 2.9.1+cu128
99
- - Datasets 4.4.2
100
  - Tokenizers 0.22.2
 
1
  ---
2
  library_name: transformers
3
+ license: mit
4
  base_model: roberta-base
 
 
5
  tags:
6
  - generated_from_trainer
7
+ metrics:
8
+ - accuracy
 
 
9
  model-index:
10
  - name: vulnerability-severity-classification-roberta-base
11
  results: []
 
 
12
  ---
13
 
14
+ <!-- This model card has been generated automatically according to the information the Trainer had access to. You
15
+ should probably proofread and complete it, then remove this comment. -->
16
 
17
+ # vulnerability-severity-classification-roberta-base
 
 
 
 
 
 
 
 
 
 
18
 
19
+ This model is a fine-tuned version of [roberta-base](https://huggingface.co/roberta-base) on an unknown dataset.
20
+ It achieves the following results on the evaluation set:
21
+ - Loss: 2.0264
22
+ - Accuracy: 0.8207
23
 
24
  ## Model description
25
 
26
+ More information needed
 
 
 
 
 
 
27
 
28
+ ## Intended uses & limitations
29
 
30
+ More information needed
 
 
 
31
 
32
+ ## Training and evaluation data
 
 
 
 
 
 
 
 
 
 
 
 
 
33
 
34
+ More information needed
35
 
36
  ## Training procedure
37
 
 
46
  - lr_scheduler_type: linear
47
  - num_epochs: 5
48
 
 
 
 
 
49
  ### Training results
50
 
51
  | Training Loss | Epoch | Step | Validation Loss | Accuracy |
52
  |:-------------:|:-----:|:-----:|:---------------:|:--------:|
53
+ | 2.3559 | 1.0 | 15202 | 2.5301 | 0.7425 |
54
+ | 2.2821 | 2.0 | 30404 | 2.2508 | 0.7737 |
55
+ | 2.0705 | 3.0 | 45606 | 2.1307 | 0.7943 |
56
+ | 1.9612 | 4.0 | 60808 | 2.0244 | 0.8115 |
57
+ | 1.3880 | 5.0 | 76010 | 2.0264 | 0.8207 |
58
 
59
 
60
  ### Framework versions
61
 
62
+ - Transformers 5.0.0
63
+ - Pytorch 2.10.0+cu128
64
+ - Datasets 4.5.0
65
  - Tokenizers 0.22.2
model.safetensors CHANGED
@@ -1,3 +1,3 @@
1
  version https://git-lfs.github.com/spec/v1
2
- oid sha256:a6ebf29a82cfd62d9e9c545449c61b1fd0664ceb068baa1ef840a38afca676e4
3
  size 498618952
 
1
  version https://git-lfs.github.com/spec/v1
2
+ oid sha256:6d7be584f282015b62437c57066da9868a258b1f50b087e3fec163cf1fb2f22e
3
  size 498618952
tokenizer.json CHANGED
@@ -59,7 +59,7 @@
59
  "single_word": false,
60
  "lstrip": true,
61
  "rstrip": false,
62
- "normalized": false,
63
  "special": true
64
  }
65
  ],
 
59
  "single_word": false,
60
  "lstrip": true,
61
  "rstrip": false,
62
+ "normalized": true,
63
  "special": true
64
  }
65
  ],
tokenizer_config.json CHANGED
@@ -1,53 +1,11 @@
1
  {
2
  "add_prefix_space": false,
3
- "added_tokens_decoder": {
4
- "0": {
5
- "content": "<s>",
6
- "lstrip": false,
7
- "normalized": true,
8
- "rstrip": false,
9
- "single_word": false,
10
- "special": true
11
- },
12
- "1": {
13
- "content": "<pad>",
14
- "lstrip": false,
15
- "normalized": true,
16
- "rstrip": false,
17
- "single_word": false,
18
- "special": true
19
- },
20
- "2": {
21
- "content": "</s>",
22
- "lstrip": false,
23
- "normalized": true,
24
- "rstrip": false,
25
- "single_word": false,
26
- "special": true
27
- },
28
- "3": {
29
- "content": "<unk>",
30
- "lstrip": false,
31
- "normalized": true,
32
- "rstrip": false,
33
- "single_word": false,
34
- "special": true
35
- },
36
- "50264": {
37
- "content": "<mask>",
38
- "lstrip": true,
39
- "normalized": false,
40
- "rstrip": false,
41
- "single_word": false,
42
- "special": true
43
- }
44
- },
45
  "bos_token": "<s>",
46
- "clean_up_tokenization_spaces": false,
47
  "cls_token": "<s>",
48
  "eos_token": "</s>",
49
  "errors": "replace",
50
- "extra_special_tokens": {},
51
  "mask_token": "<mask>",
52
  "model_max_length": 512,
53
  "pad_token": "<pad>",
 
1
  {
2
  "add_prefix_space": false,
3
+ "backend": "tokenizers",
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
4
  "bos_token": "<s>",
 
5
  "cls_token": "<s>",
6
  "eos_token": "</s>",
7
  "errors": "replace",
8
+ "is_local": false,
9
  "mask_token": "<mask>",
10
  "model_max_length": 512,
11
  "pad_token": "<pad>",