CVE-2025-8356: Xerox Freeflow Core
Critical severity, CVSS 9.8. EPSS: 19.1% chance of exploitation in the next 30 days.
In Xerox FreeFlow Core version 8.0.4, an attacker can exploit a Path Traversal vulnerability to access unauthorized files on the server. This can lead to Remote Code Execution (RCE), allowing the attacker to run arbitrary commands on the system.
Affected products
- Xerox Freeflow Core: version 8.0.4 only
Published 2025-08-08. Last modified 2026-06-17.