Is there anything specific for Hyper-V VMs (e.g. something needs to be changed on the VM settings)?
I set the registry key on a server 2022 VM (running on server 2022 host, both with the November CU) and it now shows WindowsUEFICA2023Capable = 2 , UEFICA2023Status = InProgress, and UEFICA2023Error = 80070013.
In the event viewer, event 1795 says (I excluded the bucket ID lines):
The system firmware returned an error The media is write protected. when attempting to update a Secure Boot variable 4. This device signature information is included here.
DeviceAttributes: FirmwareManufacturer:Microsoft Corporation;FirmwareVersion:Hyper-V UEFI Release v4.1;OEMModelNumber:Virtual Machine;OEMManufacturerName:Microsoft Corporation;OSArchitecture:amd64;
In the VM's settings on the host, the secure boot template is set to "Microsoft Windows" (the other options are Microsoft UEFI Certificate Authority and Open Source Shielded VM).