An insecure default to allow UEFI Shell in EDK2 was left enabled in Ubuntu's EDK2. This allows an OS-resident attacker to bypass Secure Boot.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-48733.json"