diff --git a/modules/communication/communication.controller.php b/modules/communication/communication.controller.php index 69cba0d09..964570383 100644 --- a/modules/communication/communication.controller.php +++ b/modules/communication/communication.controller.php @@ -131,8 +131,8 @@ class communicationController extends communication $view_url = Context::getRequestUri(); $content = sprintf("%s

From : %s", $content, $view_url, $view_url); $oMail = new Mail(); - $oMail->setTitle($title); - $oMail->setContent($content); + $oMail->setTitle(htmlspecialchars($title, ENT_COMPAT | ENT_HTML401, 'UTF-8', false);); + $oMail->setContent(removeHackTag($content)); $oMail->setSender($logged_info->nick_name, $logged_info->email_address); $oMail->setReceiptor($receiver_member_info->nick_name, $receiver_member_info->email_address); $oMail->send();