Update yq to 4.53.3 - Backport to 19-0
What does this MR do?
Update yq to 4.53.3 to resolve a number of security vulnerabilities in golang.
The Changelog includes an update and rebuild against the latest golang (1.26.4) which resolves several high vulnerabilities.
Backport from !2965 (merged)
Related issues
- Customer request: https://gitlab.com/gitlab-com/gl-security/product-security/vulnerability-management/vulnerability-management-internal/vulnerability-management-tracker/-/work_items/34200624
- !2965 (merged)
Checklist
See Definition of done.
For anything in this list which will not be completed, please provide a reason in the MR discussion
Required
- Merge Request Title, and Description are up to date, accurate, and descriptive
- MR targeting the appropriate branch
- MR has a green pipeline on GitLab.com
- When ready for review, MR is labeled "~workflow::ready for review" per the Distribution MR workflow
Expected (please provide an explanation if not completing)
- Test plan indicating conditions for success has been posted and passes
- Documentation created/updated
- Integration tests added to GitLab QA
- The impact any change in container size has should be evaluated
- New dependencies are managed with GitLab forked renovatebot
Closes #19