You might check your BIOS clock time too, if the certs are ‘expired’, it might be the future, or more likely, the past. Certs have validity timers that specify start and end.
It’s more likely that your BIOS is just old, and you’ll have to keep secure boot disabled from now on.