Exiting high security mode takes the user to /auth/session/downgrade/ where they click "Continue" and are then taken to /settings/user/{username}/page/sessions/.
I think a better workflow would be to return the user to whatever page they were on when they clicked the "Your session is in high security mode" notice: