A security vulnerability has been discovered in a plugin for WordPress called WPML. This vulnerability could allow someone to access a website using the plugin in an unauthorized way. The vulnerability exists in versions of the plugin from 2.9.3 to 3.2.6. It is related to the Accept-Language HTTP header.