ZAST AI[verified]@zast_aiDisclosure
The tweet announces a new CVE (2026-3352) affecting the Easy PHP Settings WordPress plugin, but provides no technical details, mitigations, or evidence of active exploitation.
Geng Yang[verified]@geng_zastDisclosure
The ZAST engine verifies CVE‑2026‑3352 in Easy PHP Settings versions <=1.0.4, where a flaw allows attacker‑controlled PHP to be written to wp‑config.php. With over 1,000 active installations, the vulnerability is potentially widely impactful.
CRAC Learning - Tech@cracbotDisclosure
The post announces CVE‑2026‑3352 as a PHP code injection flaw in the Easy PHP Settings plugin with a CVSS score of 7.2, noting it is awaiting analysis and linking to the NVD entry.
CVE@CVEnewDisclosure
The Easy PHP Settings plugin for WordPress has a PHP code injection vulnerability (CVE-2026-3352) affecting versions up to 1.0.4 via the update_wp_memory_constants() method; no PoC, exploit code, patch, or active exploitation is mentioned.
RedPacket Security@RedPacketSecGeneral
The tweet announces a CVE alert for CVE-2026-3352 but provides no technical, exploit, or mitigation details.