@FiloSottile requested issue #41682 to be considered for backport to the next 1.18 minor release.
If crypto/x509 aims to be compatible with the WebPKI, then I'm afraid this change has to be rolled back or limited to just certificate signatures.
You are, as always, correct :) we'll limit it to just certificates in Go 1.18.1.
Change https://go.dev/cl/394294 mentions this issue: crypto/x509: only disable SHA-1 verification for certificates
@gopherbot please open a backport issue for Go 1.18, we need to fix what's effectively a regression in WebPKI compatibility.
@FiloSottile requested issue #41682 to be considered for backport to the next 1.18 minor release.