Extract the boot.stl file automatically from the .wim image, to allow Windows 11 24H2 and newer to boot (debugged with [color=var(--fgColor-accent, var(--color-accent-fg))]2Pint Software).
Add support for automatically selecting bootmgfw_EX.efi as the next-stage bootloader on systems that trust the "Windows UEFI CA 2023" certificate.
Update tests to use KVM within GitHub Actions where possible.
Drop Windows 7 UEFI test, since upstream OVMF no longer provides the necessary VbeShim support.
Add support for enabling UEFI Secure Boot during tests.
Add Windows 11 tests (including a test with Secure Boot enabled).