Release : 15.x, 14.x
The main Tomcat build for recetn versions of DLP is currently 9.x.
Summaries of the releases which relate to this CVE (3 of them in all, search on the number "CVE-2020-9484") are here:
DLP does not use the PersistentManager with FileStore, which is a required pre-condition for the exploit, and hence is not impacted.