The vulnerability of the Log4j v2 can only be used to attack when a remote logging using JNDI interface is performed. Headwind MDM doesn't use JNDI, it writes logs to local text files only. So the known vulnerability can't be used to attack the Headwind MDM server.
Anyway, migration to a newer version of Log4J will be considered.