📦 Freeflow Core

by Xerox

🔍 What is Freeflow Core?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-8356

CRITICAL CVSS 9.8 Aug 8, 2025

CVE-2025-8356 is a critical path traversal vulnerability in Xerox FreeFlow Core version 8.0.4 that allows attackers to access unauthorized files on the server. This can lead to remote code execution, ...

CVE-2025-8355

HIGH CVSS 7.5 Aug 8, 2025

Xerox FreeFlow Core version 8.0.4 has an XML External Entity (XXE) vulnerability that allows Server-Side Request Forgery (SSRF). Attackers can inject malicious XML to make the server request internal ...

CVE-2024-47556

HIGH CVSS 8.3 Oct 7, 2024

This vulnerability allows unauthenticated remote attackers to execute arbitrary code on affected Xerox FreeFlow Core systems via path traversal. Attackers can exploit this to gain full control of vuln...

CVE-2024-47558

HIGH CVSS 7.6 Oct 7, 2024

This vulnerability allows authenticated attackers to execute arbitrary code on affected Xerox FreeFlow Core systems via path traversal. Attackers can exploit improper input validation to write malicio...