CVE-2020-28038: WordPress before 5.5.2 allows stored XSS… Posted on November 1, 2020 by Autobot WordPress before 5.5.2 allows stored XSS via post slugs. View Original Source Source