CVE-2026-52698: Syed Balkhi Pushengage – Web Push Notifications, Ecommerce Automation & Chat Widget

High severity, CVSS 7.4. EPSS: 0.3% chance of exploitation in the next 30 days.

Subscriber Sensitive Data Exposure in PushEngage – Web Push Notifications, eCommerce Automation &amp; Chat Widget <= 4.2.3 versions.

Affected products

  • Syed Balkhi Pushengage – Web Push Notifications, Ecommerce Automation &amp; Chat Widget: up to and including 4.2.3

Published 2026-06-17. Last modified 2026-06-17.