biopython
Official git repository for Biopython (originally converted from CVS)
Activity
- Latest release
- 1mo ago
- Total releases
- 65
- Cadence
- ~daily
- Last 12 months
- 3
Reach
- Stars
- 5.2k
Details
- License
- unknown
- First release
- Apr 28, 2009
| Version | Released | |
|---|---|---|
1.88
minor
| ||
1.87
minor
| ||
1.86
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.85
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.84
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.83
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.82
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.81
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.80
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.79
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.78
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.77
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.76
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.75
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.74
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.73
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.72
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.71
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.70
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.69
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.68
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.67
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.66
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.63b
pre
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.62b
pre
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.55b
pre
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.54b
pre
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.51b
pre
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.50b
pre
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.49
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.49b
pre
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.48
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.47
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.46
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.45
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.44
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.43
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.42
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.41
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.40b
pre
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.30
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.24
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.23
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.22
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.21
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.20
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.10
initial
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.00a4
pre
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.00a3
pre
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev | ||
1.65
minor
1 CVE
CVE-2025-68463
PYSEC-2026-1221
GHSA-x3vf-39hj-gxr4
Jul 07, 2026
Biopython is vulnerable to doctype XML external entity (XXE) injection through Bio.Entrez
4.9
/ 10
Medium
Network
High
Low
None
Changed
Low
None
Low
Bio.Entrez in Biopython through 1.86 allows doctype XXE. Affected versions
1.00a3
1.00a4
1.10
1.20
1.21
1.22
1.23
1.24
1.30
1.40b
1.41
1.42
+ 51 more Show less
1.43
1.44
1.45
1.46
1.47
1.48
1.49
1.49b
1.50
1.50b
1.51
1.51b
1.52
1.53
1.54
1.54b
1.55
1.55b
1.56
1.57
1.58
1.59
1.60
1.61
1.62
1.62b
1.63
1.63b
1.64
1.65
1.66
1.67
1.68
1.69
1.70
1.71
1.72
1.73
1.74
1.75
1.76
1.77
1.78
1.79
1.80
1.81
1.82
1.83
1.84
1.85
1.86
Fixed in
1.87
References
Updated Jul 07, 2026 · Source: OSV.dev |