Is sonarqube 7.9.5 vulnerable to (CVE-2021-44228) log4j vulnerabilities

Hi @sahmed and welcome to the community :wave:

Your version is past EOL. You should upgrade to either the latest version or the current LTS at your earliest convenience. Your upgrade path is:

7.9.5 → 7.9.6 → 8.9.3 → 9.2.1 (last step optional)

You may find the Upgrade Guide and the LTS-to-LTS Upgrade Notes helpful. If you have questions about upgrading, feel free to open a new thread for that here.

for general information about CVE-2021-44228 you can read our announcement here.