Loading

Experience Cloud: Why the Password Reset Link Redirects Back to Login or Forgot Password Page

Fecha de publicación: Jun 6, 2025
Descripción

Steps to Reproduce:

  1. Navigate to the Forgot Password page of the Community site. 

  2. Enter your username and click on the "Reset Password" button.

  3. You will receive an email with a password reset link. Click the link to open the ForgotPasswordInterstitial page.

  4. On the ForgotPasswordInterstitial page, click the "Reset Password" button. You will be redirected to the Change Password page.

  5. Close the Change Password page without resetting the password.

  6. Now, return to the same password reset email and click the reset link again.

  7. You’ll be redirected once more to the ForgotPasswordInterstitial page. Click "Reset Password" again.

  8. This time, you’ll be redirected either to the Forgot Password page or the Login page, depending on session and security settings.

Solución

Working As Designed.

Once the Change Password page is accessed (even if not used), the token associated with that link becomes invalid for subsequent reset attempts. Clicking the same link again leads to redirection back to the Forgot Password or Login page.

In previous release salesforce introduce the "ForgotPasswordInterstitial" page in between the change password page and password link So The password reset link remains valid until the user clicks Reset Password on the confirmation page, or until it expires in 24 hours. This setting helps prevent users and email security tools from accidentally invalidating the password reset link

Número del artículo de conocimiento

004980183

 
Cargando
Salesforce Help | Article