Customer timeline data hotfix
diff --git a/erpnext/accounts/party.py b/erpnext/accounts/party.py
index a09c0a8..f6fc0bb 100644
--- a/erpnext/accounts/party.py
+++ b/erpnext/accounts/party.py
@@ -417,7 +417,7 @@
where reference_doctype='{doctype}' and reference_name='{name}'
and status!='Success' and creation > {after}
{group_by} order by creation desc
- """.format(doctype=doctype, name=name, fields=fields,
+ """.format(doctype=frappe.db.escape(doctype), name=frappe.db.escape(name), fields=fields,
group_by=group_by, after=after), as_dict=False)
timeline_items = dict(data)