$ npm i cas-authentication && npm audit xml2js <0.5.0 Severity: moderate xml2js is vulnerable to prototype pollution - https://github.com/advisories/GHSA-776f-qx25-q3cc No fix available 2 moderate severity vulnerabilities