Portabilis develops a compact portfolio of educational management and classroom diary applications, primarily i-Educar and i-Diário, that serve school districts and educational institutions. Despite the focused product scope, the vendor's vulnerability footprint is well-represented in the landscape, reflecting the web-facing, data-rich nature of educational administration platforms. The recurring exposure concentrates on application-layer input-handling weaknesses, including cross-site scripting, SQL injection, code injection, and related improper neutralization flaws, alongside privilege-assignment issues that are characteristic of role-based administrative systems. Defenders should prioritize input validation and access-control hardening across these platforms, particularly where they handle sensitive student and institutional data; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Portabilis over time
Signals from CVEs in this vendor scope (107 CVEs).
107 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-9686HIGH A security flaw has been discovered in Portabilis i-Educar up to 2.10. This issue affects some unknown processing of the file /module/AreaConhecimento/edit of the component Listage | Aug 30, 2025 | 8.8 | 33 | NO | NO |
CVE-2026-2015HIGH A weakness has been identified in Portabilis i-Educar up to 2.10. Affected is an unknown function of the file FinalStatusImportService.php of the component Final Status Import. Exe | Feb 6, 2026 | 8.8 | 29 | NO | NO |
CVE-2025-11048HIGH A security vulnerability has been detected in Portabilis i-Educar up to 2.10. Affected by this vulnerability is an unknown functionality of the file /consulta-dispensas. Such manip | Sep 26, 2025 | 8.8 | 28 | NO | NO |
CVE-2025-10846HIGH A vulnerability was determined in Portabilis i-Educar up to 2.10. This vulnerability affects unknown code of the file /module/ComponenteCurricular/edit. This manipulation of the ar | Sep 23, 2025 | 8.8 | 28 | NO | NO |
CVE-2025-10845HIGH A vulnerability was found in Portabilis i-Educar up to 2.10. This affects an unknown part of the file /module/ComponenteCurricular/view. The manipulation of the argument ID results | Sep 23, 2025 | 8.8 | 28 | NO | NO |
CVE-2025-10844HIGH A vulnerability has been found in Portabilis i-Educar up to 2.10. Affected by this issue is some unknown functionality of the file /module/Cadastro/aluno. The manipulation of the a | Sep 23, 2025 | 8.8 | 28 | NO | NO |
CVE-2025-9687HIGH A weakness has been identified in Portabilis i-Educar up to 2.10. Impacted is an unknown function of the file /module/HistoricoEscolar/processamentoApi. Executing manipulation can | Aug 30, 2025 | 8.8 | 28 | NO | NO |
CVE-2025-9685HIGH A vulnerability was identified in Portabilis i-Educar up to 2.10. This vulnerability affects unknown code of the file /module/AreaConhecimento/view of the component Listagem de áre | Aug 30, 2025 | 8.8 | 28 | NO | NO |
CVE-2025-9684HIGH A vulnerability was determined in Portabilis i-Educar up to 2.10. This affects an unknown part of the file /module/FormulaMedia/edit of the component Formula de Cálculo de Média Pa | Aug 30, 2025 | 8.8 | 28 | NO | NO |
CVE-2025-9236HIGH A vulnerability has been found in Portabilis i-Educar up to 2.10. This affects an unknown function of the file /intranet/educar_tipo_usuario_lst.php of the component Tipos de usuàr | Aug 20, 2025 | 8.8 | 28 | NO | NO |
Signals from CVEs in this vendor scope (107 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Portabilis.
Media articles that mention a CVE ID that affects a product developed by Portabilis — matched by CVE ID, not by vendor name.