Index: lams_tool_preview/src/java/org/lamsfoundation/lams/tool/peerreview/service/PeerreviewServiceImpl.java =================================================================== RCS file: /usr/local/cvsroot/lams_tool_preview/src/java/org/lamsfoundation/lams/tool/peerreview/service/PeerreviewServiceImpl.java,v diff -u -r1.7.2.15 -r1.7.2.16 --- lams_tool_preview/src/java/org/lamsfoundation/lams/tool/peerreview/service/PeerreviewServiceImpl.java 26 Oct 2016 04:18:49 -0000 1.7.2.15 +++ lams_tool_preview/src/java/org/lamsfoundation/lams/tool/peerreview/service/PeerreviewServiceImpl.java 11 Nov 2016 04:08:46 -0000 1.7.2.16 @@ -496,15 +496,18 @@ private void generateRatingEntryForEmail(StringBuilder notificationMessage, RatingCriteria criteria, StyledCriteriaRatingDTO dto) { + String escapedTitle = StringEscapeUtils.escapeHtml(dto.getRatingCriteria().getTitle()); if (dto.getRatingDtos().size() >= 1) { if (criteria.isCommentRating()) { StringBuilder comments = new StringBuilder(); for (StyledRatingDTO ratingDto : dto.getRatingDtos()) { - if (ratingDto.getComment() != null) - comments.append("