Vulnerabilities > Atlassian > Sourcetree

DATE CVE VULNERABILITY TITLE RISK
2019-06-14 CVE-2019-11582 Argument Injection or Modification vulnerability in Atlassian Sourcetree
An argument injection vulnerability in Atlassian Sourcetree for Windows's URI handlers, in all versions prior to 3.1.3, allows remote attackers to gain remote code execution through the use of a crafted URI.
network
low complexity
atlassian CWE-88
8.8
2019-03-08 CVE-2018-20236 Command Injection vulnerability in Atlassian Sourcetree
There was an command injection vulnerability in Sourcetree for Windows from version 0.5a before version 3.0.10 via URI handling.
network
low complexity
atlassian CWE-77
8.8
2019-03-08 CVE-2018-20235 Unspecified vulnerability in Atlassian Sourcetree
There was an argument injection vulnerability in Atlassian Sourcetree for Windows from version 0.5a before version 3.0.15 via filenames in Mercurial repositories.
network
low complexity
atlassian
8.8
2019-03-08 CVE-2018-20234 Argument Injection or Modification vulnerability in Atlassian Sourcetree
There was an argument injection vulnerability in Atlassian Sourcetree for macOS from version 1.2 before version 3.1.1 via filenames in Mercurial repositories.
network
low complexity
atlassian CWE-88
8.8
2018-11-05 CVE-2018-13397 Unspecified vulnerability in Atlassian Sourcetree
There was an argument injection vulnerability in Sourcetree for Windows from version 0.5.1.0 before version 3.0.0 via Git subrepositories in Mercurial repositories.
network
low complexity
atlassian
8.8
2018-11-05 CVE-2018-13396 Unspecified vulnerability in Atlassian Sourcetree
There was an argument injection vulnerability in Sourcetree for macOS from version 1.0b2 before version 3.0.0 via Git subrepositories in Mercurial repositories.
network
low complexity
atlassian
8.8
2018-07-24 CVE-2018-13386 Argument Injection or Modification vulnerability in Atlassian Sourcetree
There was an argument injection vulnerability in Sourcetree for Windows via filenames in Mercurial repositories.
network
high complexity
atlassian CWE-88
8.1
2018-07-24 CVE-2018-13385 Argument Injection or Modification vulnerability in Atlassian Sourcetree
There was an argument injection vulnerability in Sourcetree for macOS via filenames in Mercurial repositories.
network
low complexity
atlassian CWE-88
critical
9.8
2018-04-25 CVE-2018-5226 Unspecified vulnerability in Atlassian Sourcetree
There was an argument injection vulnerability in Sourcetree for Windows via Mercurial repository tag name that is going to be deleted.
network
low complexity
atlassian
8.8
2018-01-26 CVE-2017-14593 Command Injection vulnerability in Atlassian Sourcetree
Sourcetree for Windows had several argument and command injection bugs in Mercurial and Git repository handling.
network
low complexity
atlassian CWE-77
8.8