Description
Hi,
I noticed that uvu depends on the diff package with the version range: "diff": "^5.0.0"
A recent GitHub Security Advisory reports a Denial of Service vulnerability in diff < 8.0.3
GHSA-73rr-hh4g-fpgx
the above issue is now being flagged by npm audit and other dependency security scanners for projects that depend on uvu.