The Jenkins project will publish a security advisory for Jenkins plugins on Wednesday, March 6. The highest severity is 'High' and affects plugins installed on between 25% and 75% of known instances. The most popular included plugins are installed on more than 75% of known instances and have 'Medium' severity issues. The advisory includes issues that will be published without a fix as outlined at
https://www.jenkins.io/security/plugins/
This affects only Jenkins plugins, there will be no corresponding security update for Jenkins itself.