
Research
/Security News
Shai Hulud Strikes Again (v2)
Another wave of Shai-Hulud campaign has hit npm with more than 500 packages and 700+ versions affected.
@magento/venia-concept
Advanced tools
Documentation for Magento PWA Studio packages is located at https://developer.adobe.com/commerce/pwa-studio/.
14.4.0 Lighthouse scores
With each new release of PWA Studio, we perform Lighthouse audits on four Venia page types, each representing a different level of complexity. Shown below are the Lighthouse scores for the 14.4.0 release of these pages on desktop and mobile devices.
| | Home Page | Product Category | Product Details | Search Results |
|---------------:|:-------------------------------:|:-----------------------------------:|:----------------------------------:|:---------------------------------:|
| Desktop |
|
|
|
|
| Performance | |
|
|
|
| Accessibility |
|
|
|
|
| Best Practices |
|
|
|
|
| SEO |
|
|
|
|
| PWA |
|
|
|
|
| | Home Page | Product Category | Product Details | Search Results |
|---------------:|:---------------------------------:|:-----------------------------------:|:----------------------------------:|:---------------------------------:|
| Mobile |
|
|
|
|
| Performance | |
|
|
|
| Accessibility |
|
|
|
|
| Best Practices |
|
|
|
|
| SEO |
|
|
|
|
| PWA |
|
|
|
|
When a user logs out, that user's local storage session persists. As a result, the cart ID from the logged-out user is retrieved and assigned to the guest user on the same computer. This causes the following error when the guest user tries to check out: An error has occurred. Please check the input and try again.
To resolve this issue, try disabling graphql session sharing as described in the GraphQL documentation on session cookies here: https://devdocs.magento.com/guides/v2.4/graphql/authorization-tokens.html#session-cookies.
Use the steps outlined in this section to update your [scaffolded project][] from 14.3.1 to 14.4.0 See [Upgrading versions][] for more information about upgrading between PWA Studio versions.
Open your package.json file and update the PWA Studio package dependencies to the versions associated with this release.
The following table lists the latest versions of each package as of 14.4.0. The bolded versions with an asterisk (*) are the packages that were updated from PWA Studio 14.3.1.
NOTE: Your project may not depend on some packages listed in this table.
| Package | Latest version |
|----------------------------------------|----------------|
| babel-preset-peregrine | 1.3.3 |
| create-pwa | 2.5.8* |
| experience-platform-connector | 1.0.11* |
| upward-security-headers | 1.0.19* |
| venia-sample-backends | 0.0.13* |
| venia-sample-eventing | 0.0.12* |
| venia-sample-language-packs | 0.0.20* |
| venia-sample-payments-checkmo | 0.0.18* |
| venia-sample-payments-cashondelivery | 0.0.3* |
| venia-pwa-live-search | 1.0.1* |
| venia-product-recommendations | 1.0.2 |
| plugin-braintree-three-d-secure | 1.0.1 |
| pagebuilder | 9.3.6* |
| peregrine | 15.6.2* |
| pwa-buildpack | 11.5.5* |
| pwa-theme-venia | 2.4.0 |
| upward-js | 5.4.3* |
| upward-spec | 5.3.1 |
| venia-concept | 14.4.0* |
| venia-ui | 11.7.1* |
| magento2-pwa | 0.10.2 |
| magento2-pwa-commerce | 0.1.5 |
| magento-venia-sample-data-modules | 0.0.6 |
| magento-venia-sample-data-modules-ee | 0.0.6 |
| magento2-upward-connector | 2.1.5 |
| upward-php | 2.1.4 |
| pwa-live-search | 1.0.0 |
FAQs
Venia PWA Concept Storefront for Magento 2
We found that @magento/venia-concept demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 10 open source maintainers collaborating on the project.
Did you know?

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Research
/Security News
Another wave of Shai-Hulud campaign has hit npm with more than 500 packages and 700+ versions affected.

Product
Add real-time Socket webhook events to your workflows to automatically receive software supply chain alert changes in real time.

Security News
ENISA has become a CVE Program Root, giving the EU a central authority for coordinating vulnerability reporting, disclosure, and cross-border response.