IS Sonar Developer edition version 9.2.4 affected by Spring Framework Vulenrability CVE-2022-22963

I would also like to see an announcement from Sonarqube - as done with Log4Shell SonarQube, SonarCloud, and the Log4J vulnerability - #142 by jf2009 - about if Sonarqube 8.9.x LTS, 9.x are affected or not.

SonarQube 8.9.7 and 8.9.8 has


which caused our scanner to trigger an incident regarding the CVE.

UPDATE: SonarQube, SonarCloud, and Spring4Shell