Detect vulnerable use of log4j

The question was asked earlier, and I don’t think I saw an answer, can sonarqube be used to detect/search for places in a codebase where problematic calls to log4j are made.

