VU#718077: UEFI Shell module embedded in SPI Flash can be used to bypass Secure Boot
2026-09-08T20:52:01Z•54c047af576c663c4687bc739766a18675167162b8e8088c6e31f7bc00c35222
CVE-2025-20701CVE-2026-15630CVE-2026-19874CVE-2026-19912CVE-2026-19913CVE-2026-80047CVE-2026-84282BluetoothCERT/CCCasdoorHugging Face TransformersKalturaONLYOFFICESSRFSecure Boot bypassUEFIarbitrary file readarbitrary file writeauthorization bypassfirmwareheap buffer overflowinsecure deserializationmulti-tenancyownCloudremote coderemote code executionunauthenticated pairingvideo game securityvulnerability-disclosure
What happened
CERT/CC vulnerability notes report multiple security issues, including UEFI Secure Boot bypass via embedded UEFI Shell modules, unauthenticated Bluetooth pairing in Skullcandy Dime 3 earbuds, SSRF in the ONLYOFFICE ownCloud integration, Casdoor cross-tenant authorization bypass, unauthorized remote Python module writes in Hugging Face Transformers, arbitrary file read and remote code execution in legacy Kaltura Player V2, and remote code execution through a heap buffer overflow in Metal Gear Online 3. Additional truncated entries are also present.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- certcc_vulnotes
- Record identifier
- 54c047af576c663c4687bc739766a18675167162b8e8088c6e31f7bc00c35222
- Enrichment time
- 2026-09-08T20:52:01Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.