CVE-2026-66906 is a relative path traversal vulnerability in Apache Camel's camel-azure-storage-blob component. In affected versions, the downloadBlobToFile operation constructs a local download path by joining the configured fileDir with an Azure Blob name without lexical normalization or verification that the resulting path remains within fileDir. The consumer enumerates blob names from its configured container and processes them without default name filtering. An attacker who can influence a consumed container's blob names can use parent-directory segments to cause the Camel process to create or overwrite files outside the intended download directory.
Mallory correlates every CVE against your assets, your vendors, and active adversary campaigns. Know which vulnerabilities matter for you, not just which ones are loud.
What it means. What to do now. Patch path, mitigations, and the assume-compromise checklist.
What an attacker gets, and what they’ve been doing with it.
If you can’t patch tonight, do this now.
Patch, then assume compromise.
1 valid exploit after Mallory filtered fakes, detection scripts, and README-only repos.
This repository is a runnable proof-of-concept for CVE-2026-66906 affecting Apache Camel's camel-azure-storage-blob consumer. It contains two self-contained implementations of the same exploit scenario: camel-spring-boot/ using Spring Boot 3.5.13 with Camel 4.18.2, and camel-quarkus/ using Quarkus 3.36.0 / Camel Quarkus 3.36.0 bundling Camel 4.20.0. Both versions are explicitly identified as vulnerable. Core exploit capability: the code demonstrates a path traversal leading to arbitrary file write. The vulnerable Camel consumer downloads every blob from a container into a configured local directory via fileDir=/app/downloads, but constructs the destination path by joining fileDir with the remote blob name without normalization or containment checks. By seeding a blob named ../../../../../../tmp/pwned-66906.txt, the consumer writes outside /app/downloads and creates /tmp/pwned-66906.txt. Repository structure: each variant includes a Dockerfile, docker-compose.yml, Maven pom.xml, application code, and a variant-specific README. The Spring Boot variant uses Application.java as the app entry point, BlobConfig.java to configure the BlobServiceClient and seed the Azurite container, VictimRoute.java for the vulnerable Camel route, and ExploitController.java to report exploitation success. The Quarkus variant uses BlobClientProducer.java to expose the BlobServiceClient, Seeder.java to seed the container at startup, VictimRoute.java for the vulnerable route, and ExploitResource.java as the observation endpoint. Operational flow: docker-compose starts Azurite and the vulnerable app; startup code creates or opens the victim-container and uploads both a benign blob (report.txt) and the traversal-named blob; the Camel azure-storage-blob consumer polls the container and downloads blobs to /app/downloads; due to the flaw, the malicious blob escapes to /tmp/pwned-66906.txt; the HTTP endpoint /exploit/attack waits briefly, lists files in /app/downloads, and confirms whether the out-of-directory file exists and contains the marker text. This is a real exploit PoC rather than a scanner or detection-only script. It does not deliver a shell or remote code execution payload; instead it provides a controlled arbitrary file write demonstration against affected Camel deployments that consume attacker-influenced blob names.
Products and vendors Mallory has correlated with this vulnerability. Open in Mallory to drill down to specific CPE configurations and version ranges.
Vendor-confirmed product mapping. Mallory continuously reconciles this list against your asset inventory.
4 sources tracked across advisories, community write-ups, and news. New activity surfaces here as Mallory finds it.
Query your assets running an affected version, and investigate the blast radius.
Every observed campaign linking this CVE to a named adversary.
Malware families riding this exploit, with evidence and IOCs.
YARA, Sigma, Snort, and vendor rules, auto-deployed to your SIEM.
Cross-references every affected SKU, including bundled OEM variants.
Community discussion across Reddit, Mastodon, and other social sources.