### Steps to create Dataset
* Get raw data from MongoDB
* Map to target variables
* Convert target variable to int
* Split into Train/Test
* Downlaod Tokenizer
* Tokenize train/test set

In [1]:
import random

from transformers import AutoTokenizer, DistilBertTokenizerFast
from typing import List
from datasets import Dataset

import pandas as pd
from pandas import DataFrame
from pymongo import MongoClient
import numpy as np
import matplotlib.pyplot as plt
import seaborn as sns
from matplotlib.pyplot import figure

sns.set_style("white")

mongo_client = MongoClient("127.0.0.1")

mongo_db = mongo_client["nvd"]
mongo_collection = mongo_db["nvd_all"]

None of PyTorch, TensorFlow >= 2.0, or Flax have been found. Models won't be available and only tokenizers, configuration and file/data utilities can be used.


In [2]:
tokenizer: DistilBertTokenizerFast = AutoTokenizer.from_pretrained("distilbert-base-uncased")

## Get Descriptions into DataFrame

In [3]:
data_descriptions: List = list(mongo_collection.aggregate([
    {
        '$match': {
            'cvssv3': {
                '$nin': [
                    'None', ''
                ]
            }
        }
    }, {
        '$unwind': {
            'path': '$description'
        }
    }, {
        '$project': {
            'year': 0,
            'reference_data': 0,
            'cwe': 0,
            'cvssv2': 0,
            'cpe': 0,
            'references': 0
        }
    }, {
        '$project': {
            'text': '$description',
            'cvssv3': 1
        }
    }
]))
data_references: List = list(mongo_collection.aggregate([
    {
        '$match': {
            'cvssv3': {
                '$nin': [
                    'None', ''
                ]
            }
        }
    }, {
        '$unwind': {
            'path': '$reference_data'
        }
    }, {
        '$replaceRoot': {
            'newRoot': {
                '$mergeObjects': [
                    '$$ROOT', '$reference_data'
                ]
            }
        }
    }, {
        '$match': {
            'text_selenium': {
                '$exists': 1
            }
        }
    }, {
        '$project': {
            'year': 0,
            'reference_data': 0,
            'cwe': 0,
            'cvssv2': 0,
            'cpe': 0,
            'references': 0,
            'description': 0,
            'url': 0,
            'name': 0,
            'refsource': 0,
            'scraped_selenium': 0,
            'tags': 0
        }
    }, {
        '$project': {
            'text': '$text_selenium',
            'cvssv3': 1
        }
    }
]))

In [4]:
rows = []
data = data_references + data_descriptions
for row in data:
    id = row['_id']
    text = row['text']
    cvss = row['cvssv3']
    cvss_arr: List[str] = cvss.split('/')
    av: str = cvss_arr[1].replace('AV:', '')
    ac: str = cvss_arr[2].replace('AC:', '')
    pr: str = cvss_arr[3].replace('PR:', '')
    ui: str = cvss_arr[4].replace('UI:', '')
    s: str = cvss_arr[5].replace('S:', '')
    c: str = cvss_arr[6].replace('C:', '')
    i: str = cvss_arr[7].replace('I:', '')
    a: str = cvss_arr[8].replace('A:', '')
    score: float = float(cvss_arr[9].replace('Score:', ''))
    rows.append([id, text, av, ac, pr, ui, s, c, i, a, score])

df = pd.DataFrame(rows, columns=['id', 'text', 'av', 'ac', 'pr', 'ui', 's', 'c', 'i', 'a', 'score'])
df.to_csv('full_dataset.csv', index=False)
df.head()

Unnamed: 0,id,text,av,ac,pr,ui,s,c,i,a,score
0,CVE-2021-0001,A potential security vulnerability in the Inte...,L,H,L,N,U,H,N,N,4.7
1,CVE-2021-0002,Potential security vulnerabilities in some Int...,L,L,L,N,U,H,N,H,7.1
2,CVE-2021-0003,Potential security vulnerabilities in some Int...,L,L,L,N,U,H,N,N,5.5
3,CVE-2021-0004,Potential security vulnerabilities in the firm...,L,L,H,N,U,N,N,H,4.4
4,CVE-2021-0005,Potential security vulnerabilities in the firm...,L,L,H,N,U,N,N,H,4.4


In [5]:
df.shape

(101734, 11)

## Create Dataset

In [6]:
TEST_SPLIT = 25

df_group: DataFrame = df.groupby(['id'])
df_group.head()

Unnamed: 0,id,text,av,ac,pr,ui,s,c,i,a,score
0,CVE-2021-0001,A potential security vulnerability in the Inte...,L,H,L,N,U,H,N,N,4.7
1,CVE-2021-0002,Potential security vulnerabilities in some Int...,L,L,L,N,U,H,N,H,7.1
2,CVE-2021-0003,Potential security vulnerabilities in some Int...,L,L,L,N,U,H,N,N,5.5
3,CVE-2021-0004,Potential security vulnerabilities in the firm...,L,L,H,N,U,N,N,H,4.4
4,CVE-2021-0005,Potential security vulnerabilities in the firm...,L,L,H,N,U,N,N,H,4.4
...,...,...,...,...,...,...,...,...,...,...,...
101729,CVE-2016-9992,"IBM Kenexa LCMS Premier on Cloud 9.0, and 10.0...",N,L,L,N,U,H,L,N,7.1
101730,CVE-2016-9993,"IBM Kenexa LCMS Premier on Cloud 9.0, and 10.0...",N,L,L,N,U,H,L,N,7.1
101731,CVE-2016-9994,"IBM Kenexa LCMS Premier on Cloud 9.0, and 10.0...",N,L,L,N,U,H,L,N,7.1
101732,CVE-2016-9997,SPIP 3.1.x suffers from a Reflected Cross Site...,N,L,N,R,C,L,L,N,6.1


In [7]:
train_rows = []
test_rows = []
for id in df_group.groups.keys():
    ratio = len(train_rows) / (len(test_rows) + len(train_rows)) if len(train_rows) else 0
    if ratio > 0.75:
        g_df: DataFrame = df_group.get_group(id)
        test_rows.append(g_df.values)
    else:
        g_df: DataFrame = df_group.get_group(id)
        train_rows.append(g_df.values)


df_train = pd.DataFrame(train_rows, columns=['id', 'text', 'av', 'ac', 'pr', 'ui', 's', 'c', 'i', 'a', 'score'])
df_test = pd.DataFrame(test_rows, columns=['id', 'text', 'av', 'ac', 'pr', 'ui', 's', 'c', 'i', 'a', 'score'])
print(df_train.shape)
print(df_test.shape)

ValueError: Buffer has wrong number of dimensions (expected 1, got 2)

In [66]:
train_rows = []
test_rows = []

x = 0
for i, o in df_group.iterrows():
    x += o['obs']
    ratio = len(train_rows) / (len(test_rows) + len(train_rows)) if len(train_rows) else 0
    if ratio > 0.75:
        test_rows.append(df[df['id'] == o['id']])
    else:
        train_rows.append(df[df['id'] == o['id']])
    if x % 100 == 0:
        print(x)

df_train = pd.DataFrame(train_rows, columns=['id', 'text', 'av', 'ac', 'pr', 'ui', 's', 'c', 'i', 'a', 'score'])
df_test = pd.DataFrame(test_rows, columns=['id', 'text', 'av', 'ac', 'pr', 'ui', 's', 'c', 'i', 'a', 'score'])
print(df_train.shape)
print(df_test.shape)

700
800
900
1100
1400
1700
2000
2300
2500
2600
2700
2800
2900
3000
3100
3200
3300
3400
3500
3600
3700
3800
3900
4000
4100
4200
4300
4400
4500
4600
4700
4800
4900
5000
5100
5200
5300
5400
5500
5600
5700
5800
5900
6000
6100
6200
6300
6400
6500
6600
6700
6800
6900
7000
7100
7200
7300
7400
7500
7600
7700
7800
7900
8000
8100
8200
8300
8400
8500
8600
8700
8800
8900
9000
9100
9200
9300
9400
9500
9600
9700
9800
9900
10000
10100
10200
10300
10400
10500
10600
10700
10800
10900
11000
11100
11200
11300
11400
11500
11600
11700
11800
11900
12000
12100
12200
12300
12400
12500
12600
12700
12800
12900
13000
13100
13200
13300
13400
13500
13600
13700
13800
13900
14000
14100
14200
14300
14400
14500
14600
14700
14800
14900
15000
15100
15200
15300
15400
15500
15600
15700
15800
15900
16000
16100
16200
16300
16400
16500
16600
16700
16800
16900
17000
17100
17200
17300
17400
17500
17600
17700
17800
17900
18000
18100
18200
18300
18400
18500
18600
18700
18800
18900
19000
19100
19200
19300
19400
19500
19600
19700


  values = np.array([convert(v) for v in values])


ValueError: Shape of passed values is (66734, 1), indices imply (66734, 11)

In [61]:
df_train = pd.DataFrame()
df_test = pd.DataFrame()

train_rows = []
test_rows = []

for index, row in df.iterrows():
    if row['id'] in train_id:
        train_rows.append(row)
    else:
        test_rows.append(row)

df_train = pd.DataFrame(train_rows, columns=['id', 'text', 'av', 'ac', 'pr', 'ui', 's', 'c', 'i', 'a', 'score'])
df_test = pd.DataFrame(test_rows, columns=['id', 'text', 'av', 'ac', 'pr', 'ui', 's', 'c', 'i', 'a', 'score'])
df_train.shape

(75999, 11)

In [62]:
df_test.shape

(25735, 11)

In [63]:
df_test.head()

Unnamed: 0,id,text,av,ac,pr,ui,s,c,i,a,score
1,CVE-2021-0002,Potential security vulnerabilities in some Int...,L,L,L,N,U,H,N,H,7.1
20,CVE-2021-0061,Potential security vulnerabilities in some Int...,L,L,L,N,U,H,H,H,7.8
21,CVE-2021-0062,Potential security vulnerabilities in some Int...,L,L,L,N,U,H,H,H,7.8
22,CVE-2021-0063,Potential security vulnerabilities in some Int...,A,L,N,N,U,N,N,H,6.5
28,CVE-2021-0071,Potential security vulnerabilities in some Int...,A,L,N,N,U,H,H,H,8.8


In [64]:
75999 / (75999 + 25735)

0.7470363890144888

In [6]:
dataset = Dataset.from_pandas(df)
dataset

Dataset({
    features: ['id', 'text', 'av', 'ac', 'pr', 'ui', 's', 'c', 'i', 'a', 'score'],
    num_rows: 101734
})

In [8]:
dataset[0]

{'id': 'CVE-2021-0001',
 'text': 'A potential security vulnerability in the Intel® Integrated Performance Primitives (IPP) Crypto Library may allow information disclosure. Intel® IPP is used by Intel® Software Guard Extension (SGX), and Intel is releasing software updates to mitigate this potential vulnerability. Observable timing discrepancy in Intel(R) IPP before version 2020 update 1 may allow authorized user to potentially enable information disclosure via local access.',
 'av': 'L',
 'ac': 'H',
 'pr': 'L',
 'ui': 'N',
 's': 'U',
 'c': 'H',
 'i': 'N',
 'a': 'N',
 'score': 4.7}