Part of making Update Manager support HTTPS required changes to the \Drupal\update\UpdateFetcher class, which now needs access to the settings service. If this dependency is not passed in to the constructor as the third parameter, a deprecation warning is generated. In Drupal 10.0.0, this will no longer be an optional parameter and there will be no fallback if it is not defined.
Similarly, the \Drupal\update\Controller\UpdateController class now needs access to the renderer service. If this dependency is not passed in to the constructor as the second parameter, a deprecation warning is generated. In Drupal 10.0.0, this will no longer be an optional parameter and there will be no fallback if it is not defined.
For more about Update Manager and HTTPS, see the PHP OpenSSL requirements handbook page.