CVE-2025-58465 — A cross-site scripting (XSS) vulnerability has been reported to affect Download Station. If a remote attacker gains a user account, they can then exploit the vulnerability to bypass security mechanism — CVE Database · The Intelligence Room