Hi,
dom-to-image is a dependency in Charts
https://charts.carbondesignsystem.com
and there seems to be a new vulnerability report on the jQuery version that you're using
GHSA-mhpp-875w-9cpv
It does look like jQuery might not be actually used in the final dom-to-image.js file (at least to me), however that's not sufficient for most auditing processes
Please resolve this issue ASAP