
CVE-2026-0745 The User Language Switch plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 1.6.10 due to missing URL validation on… https://www.cve.org/CVERecord?id=CVE-2026-0745
Post summary
The User Language Switch plugin for WordPress (up to v1.6.10) suffers from an SSRF flaw (CVE-2026-0745) caused by missing URL validation; the post provides the vulnerability detail but no PoC, exploit code, patch, or evidence of active exploitation.


