A vulnerability labeled as problematic has been found in moneyspace Money Space Plugin up to 2.13.9 on WordPress. This vulnerability affects unknown code of the component Mspaylink Endpoint. The manipulation of the argument PAN/card holder name/expiry month/year/CVV results in information disclosure.

This vulnerability is cataloged as CVE-2025-13371. The attack may be launched remotely. There is no exploit available.