CVE-2026-0745 — The User Language Switch plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 1.6.10 due to missing URL validation on the 'download_language() — CVE Database · The Intelligence Room