High severity7.5NVD Advisory· Published Apr 17, 2025· Updated Jun 17, 2026
CVE-2024-13925
CVE-2024-13925
Description
The Klarna Checkout for WooCommerce WordPress plugin before 2.13.5 exposes an unauthenticated WooCommerce Ajax endpoint that allows an attacker to flood the log files with data at the maximum size allowed for a POST parameter per request. This can result in rapid consumption of disk space, potentially filling the entire disk.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- cpe:2.3:a:klarna:klarna_checkout_for_woocommerce:*:*:*:*:*:wordpress:*:*Range: <2.13.5
- Range: <2.13.5
- WordPress/Klarna Checkout for WooCommerce WordPress plugindescription
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/6aebb52f-d74a-4043-86c4-c24579f24ef4/nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.