The
JDK parameter plugin was last released 9 years ago. There have only been three pull requests to the plugin since the 1.0 release 9 years ago. I've seen no mention from anyone of any plan to fix that vulnerability or to modernize the plugin.
If the plugin matters to your employer, you could ask your employer to allow you or one of your colleagues to maintain the plugin. That would meet your need for the plugin and would help the other 4000+ installations of the plugin.
Mark Waite