Force Update Translations

Force Update Translations has one disclosed vulnerability in the WordSec catalog, all reported in 2025; it is fixed as of September 2026. Their average CVSS score is 4.3, and the most serious one scores 4.3 out of 10.

The most common weakness is Cross-Site Request Forgery (CSRF), behind 1 of the records (100%).

The one issue recorded for Force Update Translations has a vendor fix available, so running the current release closes it.

All of these findings were reported by Nabil Irawan. Force Update Translations is installed on roughly 1,000 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 6.9.7.

Strategic Overview

Avg CVSSMedium
4.3/ 10
Patch Coverage100%
Open

0

Fixed

1

Get automatic notifications for all Force Update Translations vulnerabilities before they are exploited.

Highest severity on recordCVSS 4.3CVE-2025-58236

Force Update Translations <= 0.5 - Cross-Site Request Forgery

Read the full analysis

Vulnerability Records

1 records
Force Update Translations banner
Latestv0.6.2

Force Update Translations

Mayo Moriyama

Author

Mayo Moriyama

4.6(10)
92/100
Last Updated
2025-12-22 (9mo ago)
Active Installs
1,000+
Downloads
23,842
Requires WP
4.7+
Requires PHP
5.6+
Tested up to
WP 6.9.7
Created
2018-08-29 (8y ago)

Apply WordPress.org theme and plugin translations to a site even if translations are not yet approved or language packs have not been released. Note about Translation Playground: The Translation Playground is now available for quick translation testing. However, if you need to test translations on your actual site, this plugin may remain the practical solution. ⚠️ Warning ⚠️ Currently this plugin downloads only strings from Development project instead of Stable for plugins. Please wait for an update or see the issue on GitHub. ⚠️ Warning ⚠️ Currently this plugin is not able to generate the JSON files that is needed for JavaScript to consume some translations. Please wait for update or see the issue on GitHub. Theme translation To download the translation files for a theme: Activate the theme you want to get the translation files. Visit &#8216;Appearance’ > &#8216;Update translation’ in WordPress menu, or click &#8216;Update translation’ on theme details of current theme on &#8216;Themes’ page. Click the &#8216;Update Translations’ button. Plugin translation To download the translation files for a plugin: Visit &#8216;Plugins’ in WordPress menu. Click &#8216;Update translation’ under the name of the plugin for which you want to get the translation files.

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C