I'd like to point out that I upgraded PVE 8 to 9, and PBS from 3 to 4.
I already had kernel 6.14.8-2 installed before the upgrade, but the first reboot broke the boot. I completely reinstalled Mortar, after disabling SecureBoot. Now it's working again; the TPM unlocks the boot disk properly.