diff --git a/NEWS b/NEWS
index 2508f4e6..df466fe5 100644
--- a/NEWS
+++ b/NEWS
@@ -1,3 +1,4 @@
+ - escape html entities in html_options (Monte)
- fixed bug with label for html_options (Monte)
- added caching to config file loading (Monte)
- added "extra" parameter to mailto function (Monte,
diff --git a/libs/plugins/function.html_options.php b/libs/plugins/function.html_options.php
index e68f6c93..ed5d06f6 100644
--- a/libs/plugins/function.html_options.php
+++ b/libs/plugins/function.html_options.php
@@ -43,10 +43,11 @@ function smarty_function_html_options($params, &$smarty)
function smarty_function_html_options_optoutput($key, $value, $selected) {
if(!is_array($value)) {
- $html_result = "