diff --git a/htdocs/core/class/commonobject.class.php b/htdocs/core/class/commonobject.class.php index 7aac8234b5f..b5dee2a3c76 100644 --- a/htdocs/core/class/commonobject.class.php +++ b/htdocs/core/class/commonobject.class.php @@ -2165,7 +2165,7 @@ abstract class CommonObject { if ($this->array_options[$key] != '') { - $sql.=",'".$this->array_options[$key]."'"; + $sql.=",'".$this->db->escape($this->array_options[$key])."'"; } else {