The firewall filters are executed on the data plane and therefore are able to match on anything which is carried inside the packet (src/dst IP address, src/dst port, protocols, etc.). BGP communities are control plane information which are not carried inside an IP packet, so no way to match on them.
Cheers,
Carsten