And if it is a version impacted by the latest log4j vulnerability, then does anyone know how to fix it?
NeoLoad 7.11.1 uses log4j 2.11.2 so IT IS affected. There is a new 7.11.2 version available that fixes the vulnerability.
You can check your NeoLoad installation by looking at <Path to NeoLoad>\lib folder and check the log4j-* files for their version.