Vmware vRealize CodeStream

The Jenkins project announced an unresolved security vulnerability affecting the current version of this plugin (why?):
List of issues
KeySummaryCreatedUpdated
JENKINS-34769Need commit access to Code stream plugin