I'm developing a simple chat application based on node.js and socket.io. There is an XSS vulnerability. How can I filter HTML codes in input data entries?
btn.addEventListener('click', function(){
    socket.emit('chat', {   
        message: message.value,
        kullanıcıadı: kullanıcıadı.value
    });
 
    