Customer timeline data hotfix
diff --git a/erpnext/accounts/party.py b/erpnext/accounts/party.py
index a09c0a8..f6fc0bb 100644
--- a/erpnext/accounts/party.py
+++ b/erpnext/accounts/party.py
@@ -417,7 +417,7 @@
 		where reference_doctype='{doctype}' and reference_name='{name}'
 		and status!='Success' and creation > {after}
 		{group_by} order by creation desc
-		""".format(doctype=doctype, name=name, fields=fields,
+		""".format(doctype=frappe.db.escape(doctype), name=frappe.db.escape(name), fields=fields,
 			group_by=group_by, after=after), as_dict=False)
 
 	timeline_items = dict(data)