The way is to go to package-lock and replace the integrity property of the conflicted library with the expected sha512 signature.