I received the security alert email about SourceTree.
I tried SourceTree 2.x and it's absolutely unusable in it's current state. The removal of the left side repository bar makes it a non-starter for me. You can't tell which repos is currently select or which repos have available pulls etc.
Will SourceTree 1.x receive any updates to resolve the security issue? If so, is there an ETA?
I'd rather not continue using a product with a known / disclosed security issue in production, but since 2.x is unusable, I need to know if 1.x will be updated so I can plan accordingly.
Just received this on my helpdesk ticket I put in:
___________________________________________________
Hello,
We will not be updating version 1.0 of SourceTree to address the security issue, however, as a workaround, you can download the latest version of Git at https://git-scm.com/downloads, and then switch to using System GIT in your preferences menu for SourceTree.
We do not test older versions of SourceTree against the latest versions of GIT, so we cannot guarantee that you will not run in to future issues.
Alternatively, you can uncheck the option "Use this version of SourceTree for UIR Association" in the Tools/Options/General Tab and remove the following registry key "HKEY_CURRENT_USER\SOFTWARE\Classes\sourcetree\shell\opencommand" - this disables the handling of the "sourcetree://" protocol.
Online forums and learning are now in one easy-to-use experience.
By continuing, you accept the updated Community Terms of Use and acknowledge the Privacy Policy. Your public name, photo, and achievements may be publicly visible and available in search engines.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.