Windows LPE (RegPwn, CVE)

CVE-2026-24291: Windows LPE (RegPwn)

Exploit: https://github.com/mdsecactivebreach/RegPwn

Blog: https://www.mdsec.co.uk/2026/03/rip-regpwn/

BOF: https://github.com/Flangvik/RegPwnBOF

Tested versions:
Windows 11 25h2
Windows 11 24h2
Windows 10 21h2
Windows Servers 2016/2019/2022


Patched: Mar 10, 2026