Quad9 deployed a certificate which uses a new Root SSL certificate from DigiCert.
MikroTik devices will need to download and import a new certificate manually if Certificate Validation is enabled. Devices which do not have the new certificate, and have Certificate Validation enabled, will stop being able to resolve DNS.
The new certificate should be able to be imported via the following CLI commands in Mikrotik: