make cmsec dnf updateinfo and kernel-update checks security-repo aware on Rocky in 132.00stable The CVE-updateinfo and available-kernel-update dnf queries used only the default-enabled repos, so on Rocky they never saw the opt-in `security` repo...