Index: lams_tool_scratchie/src/java/org/lamsfoundation/lams/tool/scratchie/service/ScratchieServiceImpl.java =================================================================== RCS file: /usr/local/cvsroot/lams_tool_scratchie/src/java/org/lamsfoundation/lams/tool/scratchie/service/ScratchieServiceImpl.java,v diff -u -r1.25 -r1.26 --- lams_tool_scratchie/src/java/org/lamsfoundation/lams/tool/scratchie/service/ScratchieServiceImpl.java 20 Sep 2013 15:11:42 -0000 1.25 +++ lams_tool_scratchie/src/java/org/lamsfoundation/lams/tool/scratchie/service/ScratchieServiceImpl.java 24 Sep 2013 10:58:47 -0000 1.26 @@ -42,6 +42,7 @@ import java.util.SortedMap; import java.util.TreeSet; +import org.apache.commons.lang.StringEscapeUtils; import org.apache.commons.lang.StringUtils; import org.apache.log4j.Logger; import org.apache.poi.ss.usermodel.IndexedColors; @@ -909,7 +910,8 @@ ScratchieConstants.TOOL_SIGNATURE, user.getUserId().intValue()); if ((notebookEntry != null) && StringUtils.isNotBlank(notebookEntry.getEntry())) { ReflectDTO reflectDTO = new ReflectDTO(notebookEntry.getUser()); - reflectDTO.setReflection(notebookEntry.getEntry()); + String reflection = StringEscapeUtils.escapeJavaScript(notebookEntry.getEntry()); + reflectDTO.setReflection(reflection); reflectDTO.setIsGroupLeader(this.isUserGroupLeader(user, session)); reflections.add(reflectDTO);