CVE-2026-3352 | Easy PHP Settings Plugin up to 1.0.4 on WordPress Setting wp-config.php update_wp_memory_constants code injection (EUVD-2026-10105)
A vulnerability identified as critical has been detected in Easy PHP Settings Plugin up to 1.0.4 on WordPress. The impacted element is the function update_wp_memory_constants of the file wp-config.php of the component Setting Handler. This manipulation causes code injection.
This vulnerability is tracked as CVE-2026-3352. The attack is possible to be carried out remotely. No exploit exists.