npm›@casl/ability›CVE-2026-17749.8 CRITICALCASL Ability is Vulnerable to Prototype PollutionCASL Ability, versions 2.4.0 through 6.7.4, contains a prototype pollution vulnerability.