I am new to sourcetree, I was checking it before installing it and I read about the command injection issue. I've also checked the question in this link:
I would like to know if this: SourceTreeSetup-126.96.36.199
is the latest and has the issue solved?
Thanks for your reply, I am really glad to hear.
I have one last question though: according to: https://www.cvedetails.com/vulnerability-list.php?vendor_id=3578
the version effected was 2.5c and prior, the one in SourceTree offical site is 188.8.131.52. This is confusing since 2.0 is prior to 2.5?
Thanks in advance,
Hi! For official information regarding the vulnerability, my recommendation is that you check our official source. You can find it at SourceTree Security Advisory.
Note that the site you linked is not even differentiating between Mac and Windows versions. Whilst this is not mentioned in that website, they're probably referring to the Mac version of SourceTree (which is currently 2.5.2).
Hope this clears your concerns :)
A vulnerability has been published today in regards to Sourcetree for Windows. The goal of this article is to give you a summary of information we have gathered from Atlassian Community as a st...
Connect with like-minded Atlassian users at free events near you!Find an event
Connect with like-minded Atlassian users at free events near you!
Unfortunately there are no Community Events near you at the moment.Host an event