Password Reset -
If your report is meant to suggest improvements, include these OWASP recommendations :
: Use a clear "From" name and brand logo in emails. password reset
Building a report for password resets - ServiceNow Community If your report is meant to suggest improvements,
: Explain what an attacker could do, such as a full account takeover. password reset
Manipulate the request (e.g., remove the token or change the JSON body).