Junglewise Threat Intelligence

goshs: SSH host key verification disabled, allowing transparent MITM of every tunnelled HTTP request

Severity: low · CVSS 3.1 · Published 2026-05-15

Technologies: goshs.de/goshs/v2 (Go). Vendors: Go.

Executive brief

goshs: SSH host key verification disabled, allowing transparent MITM of every tunnelled HTTP request

Affected products

  • Go goshs.de/goshs/v2

Related threats