make cmsec dnf updateinfo and kernel-update checks security-repo aware on Rocky in 140.00beta01 The CVE-updateinfo and available-kernel-update dnf queries used only the default-enabled repos, so on Rocky they never saw the opt-in `security` repo...