CVE-2019-11582: Atlassian Sourcetree
High severity, CVSS 8.8. EPSS: 4.9% chance of exploitation in the next 30 days.
An argument injection vulnerability in Atlassian Sourcetree for Windows's URI handlers, in all versions prior to 3.1.3, allows remote attackers to gain remote code execution through the use of a crafted URI.
Affected products
- Atlassian Sourcetree: from 0.5a, before 3.1.3 (fixed in 3.1.3)
Published 2019-06-14. Last modified 2026-06-17.