Perform security audit on npm/node dependency lockfiles using trivy offline scanner. Identifies HIGH and CRITICAL vulnerabilities and produces a structured CSV report with package, version, CVE, severity, CVSS score, fixed version, title, and reference URL.