libssh2 CVE-2026-55200 Shows Why Outbound SSH Is an Attack Surface
The critical libssh2 CVE-2026-55200 flaw inverts SSH security: the remote server attacks the connecting client, no credentials needed. A public PoC is out and the official patched release has not shipped.