About CVE-2021-26084, if WAF block ScriptEngine, or check param queryString, you can try this https://t.co/LHhe2BLuCA
and write shell to ../confluence/noop.jsp.* to bypass. https://t.co/iSllNp3rYd