Is Keycloak affected by CVE-2022-46364?

It looks like Keycloak is using org.apache.cxf : cxf-core : 3.4.5 which has this vulnerability. Is Keycloak affected?