CVE-2023-50053
About
An issue in Foundation.app Foundation platform 1.0 allows a remote attacker to obtain sensitive information via the Web3 authentication process of Foundation, the signed message lacks a nonce (random number)
Rainforest analyst review
Foundation platform 1.0's Web3 authentication signs a message that lacks a nonce — no random, single-use value binding the signature to one specific login attempt. Without that, a signature an attacker can capture or induce is replayable: the same signed message can be presented again to authenticate, because nothing ties it to a fresh challenge. The result is a sensitive-information and authentication weakness in the sign-in flow rather than a server break-in.
This is a design flaw in a specific Web3 authentication implementation, so the affected population is narrow — whoever integrates this Foundation flow — and exploitation depends on an attacker obtaining a valid signed message to replay. That's a meaningful weakness in the trust model of the auth process, but it's a targeted, protocol-level issue, not the kind of thing mass scanners spray at arbitrary hosts.
Our angle is scoped applicability. We first determine whether this Foundation Web3 auth path is actually part of any system we operate or depend on; for most estates it simply isn't present. Where it is, the correct framing is that signature replay undermines the authentication guarantee, so the fix — binding signatures to a server-issued nonce — is what matters, and we'd track it as an integration-level auth defect rather than a general-perimeter exposure.
References
Related CVEs
No related CVEs.
Frequently asked questions
What is CVE-2023-50053?
An issue in Foundation.app Foundation platform 1.0 allows a remote attacker to obtain sensitive information via the Web3 authentication process of Foundation, the signed message lacks a nonce (random number)
How severe is CVE-2023-50053?
CVE-2023-50053 carries a CVSS 3.1 base score of 7.6, rated high. On the Rainforest Risk Index — which weighs the severity alongside how easy the flaw is to reach and how broad its impact is — it scores 77 out of 100, in the high band.
How is CVE-2023-50053 exploited?
According to the CVSS vector (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L): attack vector Network, attack complexity Low, privileges required Low, user interaction None. Impact on confidentiality High, integrity Low and availability Low.
How do I fix CVE-2023-50053?
Apply the fix the vendor published — the references on this page link to the primary advisories and patches. When patching can't happen right away, reduce the exposure of the affected component and watch it for exploitation attempts. Rainforest customers see this vulnerability correlated to their own assets and prioritized by real exposure, not by score alone.
Empower Your Security Strategy with Rainforest
Discover vulnerabilities early, prioritize critical threats, and protect what truly matters. Rainforest streamlines your security operations, saving you time and reducing costs, so you can focus on what drives your business forward.
