The Link Factory WordPress plugin is a backdoor. Distributed as a "homepage sentence publisher", it exposes an operator-controlled REST API under /wp-json/link-factory/v1/ - authenticated by a detached Ed25519 signature verified against a hardcoded operator public key (except for the health check).
Metrics
Affected Vendors & Products
References
History
Thu, 13 Aug 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-912 | |
| Metrics |
ssvc
|
Thu, 13 Aug 2026 08:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The Link Factory WordPress plugin is a backdoor. Distributed as a "homepage sentence publisher", it exposes an operator-controlled REST API under /wp-json/link-factory/v1/ - authenticated by a detached Ed25519 signature verified against a hardcoded operator public key (except for the health check). | |
| Title | Link Factory - Backdoor | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2026-08-13T14:23:20.581Z
Reserved: 2026-07-10T14:18:17.713Z
Link: CVE-2026-15413
Updated: 2026-08-13T14:22:49.466Z
Status : Received
Published: 2026-08-13T09:17:12.153
Modified: 2026-08-13T15:19:32.293
Link: CVE-2026-15413
No data.
OpenCVE Enrichment
Updated: 2026-08-13T09:30:07Z