diff --git a/web/scanEngine/static/scanEngine/js/custom_tools.js b/web/scanEngine/static/scanEngine/js/custom_tools.js
index fb3722d86..7af299d16 100644
--- a/web/scanEngine/static/scanEngine/js/custom_tools.js
+++ b/web/scanEngine/static/scanEngine/js/custom_tools.js
@@ -1,7 +1,7 @@
function load_gf_template(pattern_name){
$('#modal-size').removeClass('modal-xl');
$('#modal-size').addClass('modal-lg');
- $('.modal-title').html(`GF Pattern ` + pattern_name);
+ $('.modal-title').html(`GF Pattern ` + htmlEncode(pattern_name));
$('#exampleModal').modal('show');
$('.modal-text').empty();
$('.modal-text').append(`
`);
@@ -18,7 +18,7 @@ function load_gf_template(pattern_name){
function load_nuclei_template(pattern_name){
$('#modal-size').removeClass('modal-lg');
$('#modal-size').addClass('modal-xl');
- $('.modal-title').html(`Nuclei Pattern ` + pattern_name);
+ $('.modal-title').html(`Nuclei Pattern ` + htmlEncode(pattern_name));
$('#exampleModal').modal('show');
$('.modal-text').empty();
$('.modal-text').append(`
`);
diff --git a/web/scanEngine/templates/scanEngine/settings/tool.html b/web/scanEngine/templates/scanEngine/settings/tool.html
index 169f93e89..bb5c5e4b9 100644
--- a/web/scanEngine/templates/scanEngine/settings/tool.html
+++ b/web/scanEngine/templates/scanEngine/settings/tool.html
@@ -201,4 +201,5 @@