Moderec develops a narrowly scoped tourism and travel management product portfolio, with Tourtella as its primary offering in this domain. The durable signal in the vendor's disclosure history centers on application-layer input-handling weaknesses, specifically SQL injection flaws that reflect the typical data-access patterns of web-facing travel booking systems. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Moderec over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-4784CRITICAL Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Moderec Tourtella allows SQL Injection.
This issue affects Tourtella: before | Jul 24, 2025 | 9.8 | 34 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Moderec.
Media articles that mention a CVE ID that affects a product developed by Moderec — matched by CVE ID, not by vendor name.