diff --git a/lms/static/js/edxnotes/views/shim.js b/lms/static/js/edxnotes/views/shim.js index 453247039d..f5855f30f6 100644 --- a/lms/static/js/edxnotes/views/shim.js +++ b/lms/static/js/edxnotes/views/shim.js @@ -165,7 +165,7 @@ .addField({ load: function(field, annotation) { if (annotation.text) { - $(field).html(HtmlUtils.HTML(Utils.nl2br(annotation.text)).toString()); + $(field).html(HtmlUtils.HTML(Utils.nl2br(Annotator.Util.escape(annotation.text))).toString()); } else { // eslint-disable-next-line max-len $(field).html(HtmlUtils.joinHtml(HtmlUtils.HTML(''), _t('No Comment'), HtmlUtils.HTML('')).toString());