CROP: Surfacing attack-relevant vulnerabilities across products via CPE-rooted ontology and node pruning | AI Sec Watch