The application relates to an automatic
vulnerability and code warehouse mapping framework based on a
software entity, a
vulnerability code snapshot acquisition method and
system and a storage medium, and the method comprises the following steps: S101, collecting
vulnerability related information, carrying out link filtering and
verification, and obtaining an initial CVE to code warehouse mapping set; S102, grouping CVEs based on
software entities associated with the CVEs, obtaining CVE groups corresponding to the
software entities, constructing a mapping relationship between the software entities and the code warehouses, and applying the mapping relationship to other CVEs in the groups; S103, locating accurate code states containing the vulnerabilities; S104, integrating the results of the step S103, and outputting final structured data; S105, based on continuous input of new CVE records, updating and verifying a mapping
knowledge base of the software entities and the code warehouses, and realizing continuous evolution of the
system. The application breaks through various bottlenecks in the prior art.