Readonly Parameter

The Jenkins project announced an unresolved security vulnerability affecting the current version of this plugin (why?):
List of issues
KeySummaryCreatedUpdated
#4Solve 'Stored XSS vulnerability'
#3[SECURITY] Use HTTPS to resolve dependencies in Maven Build
#2Use HTTPS URLs in pom.xml
#1using pipeline script instruction