Bump golang.org/x/net to v0.56.0 to resolve CVEs
Bumps golang.org/x/net to v0.56.0 (and the dependent golang.org/x/* packages pulled in by minimum-version selection) to resolve the CVEs tracked in https://gitlab.com/gitlab-org/gitlab-runner/-/issues/39545.
This issue carries the security-fix-in-public label, so the fix is made directly on the public repository (re-opened here after the original security-mirror MR was closed).
Closes https://gitlab.com/gitlab-org/gitlab-runner/-/issues/39545
Edited by Lachlan Grant