H-ISAC TLP White Threat Bulletin: Security Researchers Discover and Disclose Two High-Severity Xerox FreeFlow Core Flaws
On August 13, 2025, HORIZON3.ai security researchers published an Attack Blog regarding two high-severity vulnerabilities, CVE-2025-8355 and CVE-2025-8356, affecting Xerox FreeFlow Core version 8.0.4.
The security researchers discovered that these flaws could be exploited to execute Server-Side Request Forgery (SSRF) (CVE-2025-8355) and Remote Code Execution (RCE) (CVE-2025-8356) attacks. While there is no current evidence of active exploitation, these vulnerabilities pose a significant risk to infrastructure where vulnerable FreeFlow Core instances are implemented.
Health-ISAC provides this information to increase situational awareness, encourage users to assess their level of risk to these vulnerabilities, and apply the available patch to affected instances.
View the detailed bulletin below.
For help with Cybersecurity and Risk Advisory Services exclusively for AHA members, contact: