Serena SRA Deploy

The Jenkins project announced an unresolved security vulnerability affecting the current version of this plugin (why?):
List of issues
#6Bump jettison from 1.3 to 1.5.4
#3Use HTTPS URLs in pom.xml
#2Move Pattern compilation to only compile once to improve performance.
JENKINS-27868Serena Deploy plugin requires libraries in Jenkins WEB-INF/lib
#1No version in Jenkins respository