The latest version uses log4j2 2.17.2. Moving to the latest Rundeck version solves that issue and many others.
Here you can see all CVE reported.