Sandbox protection in Jenkins Script Security Plugin 1.70 and earlier could be circumvented through crafted method calls on objects that implement GroovyInterceptable.
https://github.com/minhangxiaohui/Weblogic_Coherence_try
https://github.com/advisories/GHSA-qvhf-3567-pc4v
https://jenkins.io/security/advisory/2020-03-09/#SECURITY-1754