We have identified and fixed an OS command injection vulnerability in the third-party Perforce library used by Bamboo.
- An attacker can take advantage of the vulnerability to execute arbitrary commands on a Bamboo server.
This issue is reported in our security advisory on this page:
http://confluence.atlassian.com/x/lwH6Dw
Patch is available, see the attached file.