You should have a look at the one recommended in this question Sanitize/Rewrite HTML on the Client Side
And just to be sure that you don't need to do more about XSS, please review the answers to this one How to prevent Javascript injection attacks within user-generated HTML