
⚠️ ‘RegPwn’ Windows Registry Vulnerability Enables Full System Access to Attackers Source: https://cybersecuritynews.com/regpwn-windows-registry-vulnerability/ A high-severity Windows vulnerability dubbed “RegPwn” (CVE-2026-24291) is an elevation-of-privilege flaw that allows low-privileged users to gain full SYSTEM access. The attack targets the way Windows manages its built-in accessibility features, such as the On-Screen Keyboard and Narrator. Windows Accessibility features are designed to help users navigate the operating system, operating primarily in the user’s context but with high-integrity access. When a user launches a tool like the On-Screen Keyboard, Windows creates a specific registry key to store its configuration. #cybersecuritynews
Post summary
This article discloses a new high‑severity Windows elevation‑of‑privilege flaw (CVE‑2026‑24291) that exploits accessibility features such as the On‑Screen Keyboard, offering no PoC, exploit code, or patch details.


















