diff --git a/main/social/profile_friends_and_groups.inc.php b/main/social/profile_friends_and_groups.inc.php
index 111d2a7115..825bcc4291 100644
--- a/main/social/profile_friends_and_groups.inc.php
+++ b/main/social/profile_friends_and_groups.inc.php
@@ -74,8 +74,8 @@ if (isset($_GET['view']) && in_array($_GET['view'], $views)) {
$count_users_group = $count_users_group.' '.get_lang('Members');
}
$picture = GroupPortalManager::get_picture_group($result['id'], $result['picture_uri'],80);
- $item_name = '
'.$url_open.''.api_strtoupper($name).''. $icon.$url_close.'
';
- $item_description = ''.get_lang('DescriptionGroup').''.cut($result['description'],120,true).'
';
+ $item_name = ''.$url_open.''.api_xml_http_response_encode(api_strtoupper($name)).''. $icon.$url_close.'
';
+ $item_description = ''.api_xml_http_response_encode(get_lang('GroupDescription')).''.cut(api_xml_http_response_encode($result['description']),120,true).'
';
$result['picture_uri'] = '';
$item_actions = '';
if (api_get_user_id() == $user_id) {