Research
Security News
Quasar RAT Disguised as an npm Package for Detecting Vulnerabilities in Ethereum Smart Contracts
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
@vue-storefront/magento
Advanced tools
<img src="https://upload.wikimedia.org/wikipedia/commons/thumb/5/55/Magento_Logo.svg/2560px-Magento_Logo.
If you are looking for Ve Storefront integration for Magento 2, please follow these links:
Please follow the installation guide
Want to contribute? Ping us on magento2
channel on our Discord!
Don't forget to change the Magento GraphQL Query Complexity and Depth values Magento 2 by default has a lower value for the complexity of 300, and a higher value for the depth of 20. Magento 2 - Issue #32427
The changes are required, due to the size of the queries and mutations in the
api-client
implementation.
To do this changes, you can use the Magento 2 module, which adds a configuration panel to your admin, or do this changes manually.
To install the Magento 2 GraphQL Config module, on your Magento installation execute:
composer require caravelx/module-graphql-config
php bin/magento module:enable Caravel_GraphQlConfig
php bin/magento setup:upgrade
php bin/magento setup:di:compile
php bin/magento setup:static-content:deploy
Find more information about the module GraphQl Custom Config
example:
git clone https://github.com/vuestorefront/magento2.git
cd magento2
git checkout develop
yarn
to install dependencies.env.example
to .env
$ cp packages/theme/.env.example packages/theme/.env
VSF_MAGENTO_GRAPHQL_URL
with url to Magento >=2.4.2 GraphQL endpoint, and the other variable accordingly to your store configurations.
VSF_MAGENTO_GRAPHQL_URL=https://{YOUR_SITE_FRONT_URL}/graphql
yarn build:api-client && yarn build:composables
yarn dev:theme
to run theme. You can find other commands in package.json
yarn dev:api-client
or yarn dev:composables
on a separate terminal window.If you have any questions about this integration we will be happy to answer them on magento2
channel on our Discord.
Thanks go to these wonderful people 🙌:
This project follows the all-contributors specification. Contributions of any kind welcome!
FAQs
<img src="https://upload.wikimedia.org/wikipedia/commons/thumb/5/55/Magento_Logo.svg/2560px-Magento_Logo.
We found that @vue-storefront/magento demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 8 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncover a malicious npm package posing as a tool for detecting vulnerabilities in Etherium smart contracts.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.