server: Apply security update to transitive dependency @xmldom/xmldom (#295)
Applying updates to indirect (transitive) dependencies is not supported by
Dependabot for NPM ecosystem [0].
[0] https://docs.github.com/en/code-security/reference/supply-chain-security/dependabot-options-reference#dependency-type-allow
authored by