Vulnerability Description
Bio.Entrez in Biopython through 186 allows doctype XXE.
CVSS Score
4.9
MEDIUM
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:L/I:N/A:L
Related Weaknesses (CWE)
References
- https://github.com/biopython/biopython/blob/master/NEWS.rst
- https://github.com/biopython/biopython/commit/736c96f37b190732ecca9da80ad0cb9d49
- https://github.com/biopython/biopython/issues/5109
- https://pypi.org/project/biopython/1.87/
- http://www.openwall.com/lists/oss-security/2026/05/08/16
FAQ
What is CVE-2025-68463?
CVE-2025-68463 is a vulnerability with a CVSS score of 4.9 (MEDIUM). Bio.Entrez in Biopython through 186 allows doctype XXE.
How severe is CVE-2025-68463?
CVE-2025-68463 has been rated MEDIUM with a CVSS base score of 4.9/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-68463?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.