CVE-2020-2170
Jenkins RapidDeploy Plugin 4.2 and earlier does not escape package names in the table of packages obtained from a remote server, resulting in a stored XSS vulnerability.
Date published : 2020-03-25
https://jenkins.io/security/advisory/2020-03-25/#SECURITY-1676