CVE-2025-70845

Medium severity, CVSS 6.1. EPSS: 0.2% chance of exploitation in the next 30 days.

lty628 aidigu v1.9.1 is vulnerable to Cross Site Scripting (XSS) exists in the /setting/ page where the "intro" field is not properly sanitized or escaped.

Published 2026-02-12. Last modified 2026-06-17.