diff --git a/htdocs/usergroup.class.php b/htdocs/usergroup.class.php index 41e57f1f6fc..8e62a1a840c 100644 --- a/htdocs/usergroup.class.php +++ b/htdocs/usergroup.class.php @@ -383,7 +383,7 @@ class UserGroup { $sql = "INSERT into ".MAIN_DB_PREFIX."usergroup (datec,nom)"; - $sql .= " VALUES(now(),'$this->nom')"; + $sql .= " VALUES(now(),'".addslashes($this->nom)."')"; $result=$this->db->query($sql); if ($result)