
Media Author Security & Risk Analysis
wordpress.org/plugins/media-authorAllows you to change the author of a piece of media
Is Media Author Safe to Use in 2026?
Use With Caution
Score 63/100Media Author has 1 unpatched vulnerability. Evaluate alternatives or apply available mitigations.
The static analysis of the 'media-author' plugin v1.0.4 reveals a generally strong security posture, with no identified dangerous functions, all SQL queries using prepared statements, and all output being properly escaped. The absence of an attack surface and taint analysis findings further suggests that the core code implementation is robust against common code-level vulnerabilities. However, the plugin has a history of known vulnerabilities, with one currently unpatched medium-severity CVE related to Missing Authorization. This indicates a recurring pattern where authorization checks might be insufficient or absent in certain scenarios, which could be exploited by authenticated users.
Key Concerns
- Currently unpatched medium severity CVE
- Potential for missing authorization in historical vulns
Media Author Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
Media Author <= 1.0.4 - Missing Authorization
Media Author Release Timeline
Media Author Code Analysis
Media Author Attack Surface
WordPress Hooks 2
Maintenance & Trust
Media Author Maintenance & Trust
Maintenance Signals
Community Trust
Media Author Alternatives
DX Delete Attached Media
dx-delete-attached-media
Automatically deletes attached media from posts and custom post types added via the Media button.
Autoremove Attachments
autoremove-attachments
Remove child attachments when parent post, page or custom post type is deleted.
Bulk Change Media Author
bulk-change-media-author
Bulk change author for multiple media files, using the default WP Media Library.
LH Add Media From Url
lh-add-media-from-url
Upload files from an url to wordpress media library, either enter file urls in an onsite input box or click a bookmarklet.
Fix Media Library
wow-media-library-fix
Fix Media Library inconsistency between database and wp-content/uploads folder contents. Unused image files, broken media library entries, missing att …
Media Author Developer Profile
3 plugins · 120 total installs
How We Detect Media Author
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.