diff --git a/include/rssfuncs.php b/include/rssfuncs.php index af62a5041..e413743b6 100644 --- a/include/rssfuncs.php +++ b/include/rssfuncs.php @@ -770,8 +770,8 @@ } # sanitize content - $entry_content = sanitize($link, $entry_content, $owner_uid, $site_url); - $entry_title = strip_tags($entry_title); + $entry_content = db_escape_string(sanitize($link, $entry_content, $owner_uid, $site_url)); + $entry_title = db_escape_string(strip_tags($entry_title)); if ($debug_enabled) { _debug("update_rss_feed: done collecting data [TITLE:$entry_title]");