jenkins before versions 2.44, 2.32.2 is vulnerable to a persisted cross-site scripting in search suggestions due to improperly escaping users with less-than and greater-than characters in their names (SECURITY-388).
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-2610.json"