plugin

Themeruby Multi Authors Vulnerabilities

1 known security issue reported for the Themeruby Multi Authors WordPress plugin. Most recent disclosed Jan 23, 2026.

1 medium

Running Themeruby Multi Authors on your site? Check whether your installed version is affected.

Scan your site free

ThemeRuby Multi Authors <= 1.0.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'before' and 'after' Shortcode Attributes

medium

The ThemeRuby Multi Authors – Assign Multiple Writers to Posts plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'before' and 'after' shortcode attributes in all versions up to, and including, 1.0.0 due to insufficient input sanitization and output escaping. This makes it possible for authentica...

CVSS:
6.4
Affected:
up to 1.0.0
Fixed in:
1.1.0
Disclosed:
Jan 23, 2026

CVE-2026-1097 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database