cedricbonhomme commited on
Commit
d4578cd
·
verified ·
1 Parent(s): b819db2

End of training

Browse files
Files changed (4) hide show
  1. README.md +34 -70
  2. config.json +1 -1
  3. model.safetensors +1 -1
  4. training_args.bin +2 -2
README.md CHANGED
@@ -1,69 +1,50 @@
1
  ---
2
  library_name: transformers
3
- license: cc-by-4.0
4
  base_model: roberta-base
5
- metrics:
6
- - accuracy
7
  tags:
8
  - generated_from_trainer
9
- - text-classification
10
- - classification
11
- - nlp
12
- - vulnerability
13
  model-index:
14
  - name: vulnerability-severity-classification-roberta-base
15
  results: []
16
- datasets:
17
- - CIRCL/vulnerability-scores
18
  ---
19
 
 
 
20
 
21
- # VLAI: A RoBERTa-Based Model for Automated Vulnerability Severity Classification
22
-
23
- # Severity classification
24
-
25
- This model is a fine-tuned version of [roberta-base](https://huggingface.co/roberta-base) on the dataset [CIRCL/vulnerability-scores](https://huggingface.co/datasets/CIRCL/vulnerability-scores).
26
-
27
- The model was presented in the paper [VLAI: A RoBERTa-Based Model for Automated Vulnerability Severity Classification](https://huggingface.co/papers/2507.03607) [[arXiv](https://arxiv.org/abs/2507.03607)].
28
-
29
- **Abstract:** VLAI is a transformer-based model that predicts software vulnerability severity levels directly from text descriptions. Built on RoBERTa, VLAI is fine-tuned on over 600,000 real-world vulnerabilities and achieves over 82% accuracy in predicting severity categories, enabling faster and more consistent triage ahead of manual CVSS scoring. The model and dataset are open-source and integrated into the Vulnerability-Lookup service.
30
-
31
- You can read [this page](https://www.vulnerability-lookup.org/user-manual/ai/) for more information.
32
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
33
 
34
  ## Model description
35
 
36
- It is a classification model and is aimed to assist in classifying vulnerabilities by severity based on their descriptions.
37
-
38
- ## How to get started with the model
39
-
40
- ```python
41
- from transformers import AutoModelForSequenceClassification, AutoTokenizer
42
- import torch
43
 
44
- labels = ["low", "medium", "high", "critical"]
45
 
46
- model_name = "CIRCL/vulnerability-severity-classification-roberta-base"
47
- tokenizer = AutoTokenizer.from_pretrained(model_name)
48
- model = AutoModelForSequenceClassification.from_pretrained(model_name)
49
- model.eval()
50
 
51
- print("Model revision:", model.config._commit_hash)
52
 
53
- test_description = "SAP NetWeaver Visual Composer Metadata Uploader is not protected with a proper authorization, allowing unauthenticated agent to upload potentially malicious executable binaries \
54
- that could severely harm the host system. This could significantly affect the confidentiality, integrity, and availability of the targeted system."
55
- inputs = tokenizer(test_description, return_tensors="pt", truncation=True, padding=True)
56
-
57
- # Run inference
58
- with torch.no_grad():
59
- outputs = model(**inputs)
60
- predictions = torch.nn.functional.softmax(outputs.logits, dim=-1)
61
-
62
- # Print results
63
- print("Predictions:", predictions)
64
- predicted_class = torch.argmax(predictions, dim=-1).item()
65
- print("Predicted severity:", labels[predicted_class])
66
- ```
67
 
68
  ## Training procedure
69
 
@@ -78,37 +59,20 @@ The following hyperparameters were used during training:
78
  - lr_scheduler_type: linear
79
  - num_epochs: 5
80
 
81
- It achieves the following results on the evaluation set:
82
- - Loss: 2.0444
83
- - Accuracy: 0.8151
84
- - F1 Macro: 0.7468
85
- - Low Precision: 0.6636
86
- - Low Recall: 0.5090
87
- - Low F1: 0.5761
88
- - Medium Precision: 0.8444
89
- - Medium Recall: 0.8694
90
- - Medium F1: 0.8567
91
- - High Precision: 0.8099
92
- - High Recall: 0.8094
93
- - High F1: 0.8097
94
- - Critical Precision: 0.7554
95
- - Critical Recall: 0.7342
96
- - Critical F1: 0.7446
97
-
98
  ### Training results
99
 
100
  | Training Loss | Epoch | Step | Validation Loss | Accuracy | F1 Macro | Low Precision | Low Recall | Low F1 | Medium Precision | Medium Recall | Medium F1 | High Precision | High Recall | High F1 | Critical Precision | Critical Recall | Critical F1 |
101
  |:-------------:|:-----:|:-----:|:---------------:|:--------:|:--------:|:-------------:|:----------:|:------:|:----------------:|:-------------:|:---------:|:--------------:|:-----------:|:-------:|:------------------:|:---------------:|:-----------:|
102
- | 2.7608 | 1.0 | 16685 | 2.5243 | 0.7411 | 0.6299 | 0.6253 | 0.2810 | 0.3877 | 0.7719 | 0.8474 | 0.8079 | 0.7165 | 0.7320 | 0.7242 | 0.6957 | 0.5270 | 0.5997 |
103
- | 2.3464 | 2.0 | 33370 | 2.3441 | 0.7670 | 0.6837 | 0.5518 | 0.4400 | 0.4896 | 0.8160 | 0.8279 | 0.8219 | 0.7451 | 0.7738 | 0.7591 | 0.7014 | 0.6306 | 0.6642 |
104
- | 1.7701 | 3.0 | 50055 | 2.1916 | 0.7895 | 0.7116 | 0.6944 | 0.4197 | 0.5232 | 0.8338 | 0.8397 | 0.8367 | 0.7599 | 0.8059 | 0.7822 | 0.7311 | 0.6793 | 0.7043 |
105
- | 1.8485 | 4.0 | 66740 | 2.0622 | 0.8059 | 0.7348 | 0.6377 | 0.5008 | 0.5610 | 0.8259 | 0.8765 | 0.8504 | 0.8062 | 0.7891 | 0.7976 | 0.7674 | 0.6964 | 0.7302 |
106
- | 1.4786 | 5.0 | 83425 | 2.0444 | 0.8151 | 0.7468 | 0.6636 | 0.5090 | 0.5761 | 0.8444 | 0.8694 | 0.8567 | 0.8099 | 0.8094 | 0.8097 | 0.7554 | 0.7342 | 0.7446 |
107
 
108
 
109
  ### Framework versions
110
 
111
- - Transformers 5.9.0
112
  - Pytorch 2.12.0+cu130
113
  - Datasets 4.8.5
114
  - Tokenizers 0.22.2
 
1
  ---
2
  library_name: transformers
3
+ license: mit
4
  base_model: roberta-base
 
 
5
  tags:
6
  - generated_from_trainer
7
+ metrics:
8
+ - accuracy
 
 
9
  model-index:
10
  - name: vulnerability-severity-classification-roberta-base
11
  results: []
 
 
12
  ---
13
 
14
+ <!-- This model card has been generated automatically according to the information the Trainer had access to. You
15
+ should probably proofread and complete it, then remove this comment. -->
16
 
17
+ # vulnerability-severity-classification-roberta-base
 
 
 
 
 
 
 
 
 
 
18
 
19
+ This model is a fine-tuned version of [roberta-base](https://huggingface.co/roberta-base) on an unknown dataset.
20
+ It achieves the following results on the evaluation set:
21
+ - Loss: 1.9981
22
+ - Accuracy: 0.8188
23
+ - F1 Macro: 0.7502
24
+ - Low Precision: 0.6490
25
+ - Low Recall: 0.5113
26
+ - Low F1: 0.572
27
+ - Medium Precision: 0.8488
28
+ - Medium Recall: 0.8681
29
+ - Medium F1: 0.8584
30
+ - High Precision: 0.8148
31
+ - High Recall: 0.8129
32
+ - High F1: 0.8138
33
+ - Critical Precision: 0.7592
34
+ - Critical Recall: 0.7543
35
+ - Critical F1: 0.7567
36
 
37
  ## Model description
38
 
39
+ More information needed
 
 
 
 
 
 
40
 
41
+ ## Intended uses & limitations
42
 
43
+ More information needed
 
 
 
44
 
45
+ ## Training and evaluation data
46
 
47
+ More information needed
 
 
 
 
 
 
 
 
 
 
 
 
 
48
 
49
  ## Training procedure
50
 
 
59
  - lr_scheduler_type: linear
60
  - num_epochs: 5
61
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
62
  ### Training results
63
 
64
  | Training Loss | Epoch | Step | Validation Loss | Accuracy | F1 Macro | Low Precision | Low Recall | Low F1 | Medium Precision | Medium Recall | Medium F1 | High Precision | High Recall | High F1 | Critical Precision | Critical Recall | Critical F1 |
65
  |:-------------:|:-----:|:-----:|:---------------:|:--------:|:--------:|:-------------:|:----------:|:------:|:----------------:|:-------------:|:---------:|:--------------:|:-----------:|:-------:|:------------------:|:---------------:|:-----------:|
66
+ | 2.9393 | 1.0 | 16760 | 2.5264 | 0.7363 | 0.6358 | 0.5562 | 0.3500 | 0.4297 | 0.7994 | 0.7985 | 0.7990 | 0.6842 | 0.7790 | 0.7286 | 0.7063 | 0.5008 | 0.5861 |
67
+ | 2.3025 | 2.0 | 33520 | 2.2776 | 0.7710 | 0.6785 | 0.6646 | 0.3369 | 0.4471 | 0.7978 | 0.8607 | 0.8280 | 0.7771 | 0.7286 | 0.7520 | 0.6673 | 0.7073 | 0.6867 |
68
+ | 1.7004 | 3.0 | 50280 | 2.1303 | 0.7911 | 0.7164 | 0.5839 | 0.4895 | 0.5325 | 0.8184 | 0.8623 | 0.8398 | 0.7968 | 0.7644 | 0.7803 | 0.7224 | 0.7041 | 0.7131 |
69
+ | 1.3977 | 4.0 | 67040 | 2.0143 | 0.8087 | 0.7335 | 0.6898 | 0.4418 | 0.5386 | 0.8412 | 0.8622 | 0.8516 | 0.7999 | 0.8029 | 0.8014 | 0.7357 | 0.7489 | 0.7422 |
70
+ | 1.5018 | 5.0 | 83800 | 1.9981 | 0.8188 | 0.7502 | 0.6490 | 0.5113 | 0.572 | 0.8488 | 0.8681 | 0.8584 | 0.8148 | 0.8129 | 0.8138 | 0.7592 | 0.7543 | 0.7567 |
71
 
72
 
73
  ### Framework versions
74
 
75
+ - Transformers 5.10.2
76
  - Pytorch 2.12.0+cu130
77
  - Datasets 4.8.5
78
  - Tokenizers 0.22.2
config.json CHANGED
@@ -34,7 +34,7 @@
34
  "pad_token_id": 1,
35
  "problem_type": "single_label_classification",
36
  "tie_word_embeddings": true,
37
- "transformers_version": "5.9.0",
38
  "type_vocab_size": 1,
39
  "use_cache": true,
40
  "vocab_size": 50265
 
34
  "pad_token_id": 1,
35
  "problem_type": "single_label_classification",
36
  "tie_word_embeddings": true,
37
+ "transformers_version": "5.10.2",
38
  "type_vocab_size": 1,
39
  "use_cache": true,
40
  "vocab_size": 50265
model.safetensors CHANGED
@@ -1,3 +1,3 @@
1
  version https://git-lfs.github.com/spec/v1
2
- oid sha256:b83d92aab85a78469a909f52b19999ff0d89b66bcf87f75be81d042674ee75ee
3
  size 498618976
 
1
  version https://git-lfs.github.com/spec/v1
2
+ oid sha256:9db51a05a81c9c2742f4ab7c4bc74483a10d50253498bead84c21974b9a23f8c
3
  size 498618976
training_args.bin CHANGED
@@ -1,3 +1,3 @@
1
  version https://git-lfs.github.com/spec/v1
2
- oid sha256:4fed503167938b6f5ae1dcf6f5ee14cb3ed1c9517c6dec60fa2d4cdf1068e8e0
3
- size 5329
 
1
  version https://git-lfs.github.com/spec/v1
2
+ oid sha256:3230fdbea3e5fcbdde4bdddd3a0baf1ab45352e7f7e091246067fa7a5608f2ab
3
+ size 5265