Jellyfin is a free software media system. Versions 10.7.2 and below are vulnerable to unauthenticated Server-Side Request Forgery (SSRF) attacks via the imageUrl parameter.
View the template here CVE-2021-29490.yaml
References:
https://github.com/Threekiii/Awesome-POC