Password Reset -

If your report is meant to suggest improvements, include these OWASP recommendations :

: Use a clear "From" name and brand logo in emails. password reset

Building a report for password resets - ServiceNow Community If your report is meant to suggest improvements,

: Explain what an attacker could do, such as a full account takeover. password reset

Manipulate the request (e.g., remove the token or change the JSON body).