Loading

Experience Cloud: Why the Password Reset Link Redirects Back to Login or Forgot Password Page

Julkaisupäivä: Jun 6, 2025
Kuvaus

Steps to Reproduce:

  1. Navigate to the Forgot Password page of the Community site. 

  2. Enter your username and click on the "Reset Password" button.

  3. You will receive an email with a password reset link. Click the link to open the ForgotPasswordInterstitial page.

  4. On the ForgotPasswordInterstitial page, click the "Reset Password" button. You will be redirected to the Change Password page.

  5. Close the Change Password page without resetting the password.

  6. Now, return to the same password reset email and click the reset link again.

  7. You’ll be redirected once more to the ForgotPasswordInterstitial page. Click "Reset Password" again.

  8. This time, you’ll be redirected either to the Forgot Password page or the Login page, depending on session and security settings.

Ratkaisu

Working As Designed.

Once the Change Password page is accessed (even if not used), the token associated with that link becomes invalid for subsequent reset attempts. Clicking the same link again leads to redirection back to the Forgot Password or Login page.

In previous release salesforce introduce the "ForgotPasswordInterstitial" page in between the change password page and password link So The password reset link remains valid until the user clicks Reset Password on the confirmation page, or until it expires in 24 hours. This setting helps prevent users and email security tools from accidentally invalidating the password reset link

Knowledge-artikkelin numero

004980183

 
Ladataan
Salesforce Help | Article