The express-xss-sanitizer (aka Express XSS Sanitizer) package through 2.0.0 for Node.js has an unbounded recursion depth in sanitize in lib/sanitize.js for a JSON request body.
| Software | From | Fixed in |
|---|---|---|
express-xss-sanitizer
|
- | 2.0.1 |